
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
policie čr prosim o radu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: policie čr prosim o radu
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RpcSsnlasvc [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeChangeNotifyPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 64 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\netprofm\Parameters]
"ServiceDll" = %SystemRoot%\System32\netprofm.dll -- [2008.01.21 03:24:23 | 000,237,056 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NetTcpPortSharing]
"DisplayName" = @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8201
"ErrorControl" = 1
"ImagePath" = "%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe" -- [2009.02.18 19:38:43 | 000,129,880 | ---- | M] (Microsoft Corporation)
"Start" = 4
"Type" = 32
"Description" = @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8200
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 3
"RequiredPrivileges" = SeCreateGlobalPrivilege [binary data]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NetTcpPortSharing\Security]
"Security" = 01 00 04 80 84 00 00 00 90 00 00 00 00 00 00 00 14 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nfrd960]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\nfrd960.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nfrd960\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nfrd960\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NlaSvc]
"DisplayName" = @%SystemRoot%\System32\nlasvc.dll,-1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\nlasvc.dll,-2
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = NSIRpcSsTcpIp [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeImperson [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NlaSvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\nlasvc.dll -- [2008.01.21 03:23:44 | 000,168,448 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NlaSvc\Parameters\Fuser]
"Tlag" = 500
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NlaSvc\Parameters\Internet]
"PassivePollPeriod" = 5
"StaleThreshold" = 30
"WebTimeout" = 10
"EnableActiveProbing" = 1
"ActiveWebProbeHost" = www.msftncsi.com
"ActiveWebProbePath" = ncsi.txt
"ActiveWebProbeContent" = Microsoft NCSI
"ActiveDnsProbeHost" = dns.msftncsi.com
"ActiveDnsProbeContent" = 131.107.255.255
"KnownProxylessGateways" = 64-70-02-bb-17-06 150459
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NlaSvc\Parameters\Internet\ManualProxies]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NlaSvc\Parameters\PMux]
"Tresolve" = 2000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NlaSvc\Security]
"Security" = 01 00 14 98 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 05 00 00 00 00 02 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 02 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 1D 00 02 00 01 06 00 00 00 00 00 05 50 00 00 00 44 3E 41 BB 45 BA A8 7A 6C BD 92 68 F4 AD 64 8F D5 E6 70 E9 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nmwcd]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 28
"ImagePath" = system32\drivers\nmwcd.sys -- [2007.02.22 09:15:56 | 000,137,216 | ---- | M] (Nokia)
"DisplayName" = Nokia USB Phone Parent
"Group" = Extended Base
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Npfs]
"ErrorControl" = 1
"Group" = File system
"Start" = 1
"Type" = 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Npfs\Aliases]
"lsass" = protected_storagenetlogonlsarpcsamr [binary data]
"ntsvcs" = svcctl [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Npfs\Enum]
"0" = Root\LEGACY_NPFS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nsi]
"DisplayName" = @%SystemRoot%\system32\nsisvc.dll,-200
"ImagePath" = %systemroot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\nsisvc.dll,-201
"ObjectName" = NT Authority\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = nsiproxy [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nsi\Parameters]
"ServiceDll" = %systemroot%\system32\nsisvc.dll -- [2008.01.21 03:24:47 | 000,018,432 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nsiproxy]
"DisplayName" = NSI proxy service
"ImagePath" = system32\drivers\nsiproxy.sys -- [2008.01.21 03:24:47 | 000,016,384 | ---- | M] (Microsoft Corporation)
"Description" = NSI proxy service
"ErrorControl" = 1
"Start" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nsiproxy\Enum]
"0" = Root\LEGACY_NSIPROXY\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NTDS]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NTDS\RID Values]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Ntfs]
"Group" = FileSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Ntfs\Enum]
"0" = Root\LEGACY_NTFS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ntrigdigi]
"DisplayName" = N-trig HID Tablet Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\ntrigdigi.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Null]
"ErrorControl" = 1
"Group" = Base
"Start" = 1
"Tag" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Null\Enum]
"0" = Root\LEGACY_NULL\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NVENETFD]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 23
"ImagePath" = system32\DRIVERS\nvmfdx32.sys -- [2008.07.08 11:32:51 | 001,050,656 | ---- | M] (NVIDIA Corporation)
"DisplayName" = NVIDIA nForce 10/100/1000 Mbps Ethernet
"Group" = NDIS
"BootFlags" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NVENETFD\Enum]
"0" = PCI\VEN_10DE&DEV_0AB0&SUBSYS_12151043&REV_B1\3&267a616a&0&50
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NVHDA]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\drivers\nvhda32v.sys -- [2008.06.25 06:05:05 | 000,044,064 | ---- | M] (NVIDIA Corporation)
"DisplayName" = Service for NVIDIA High Definition Audio Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NVHDA\Enum]
"0" = HDAUDIO\FUNC_01&VEN_10DE&DEV_0007&SUBSYS_10DE0101&REV_1001\4&10d89169&0&0301
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvlddmkm]
"Type" = 1
"Start" = 3
"ErrorControl" = 0
"Tag" = 3
"ImagePath" = system32\DRIVERS\nvlddmkm.sys -- [2008.07.25 09:30:59 | 007,547,552 | ---- | M] (NVIDIA Corporation)
"Group" = Video
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvlddmkm\Device0]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvlddmkm\Device1]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvlddmkm\Device2]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvlddmkm\Device3]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvlddmkm\Enum]
"0" = PCI\VEN_10DE&DEV_086F&SUBSYS_16B21043&REV_B1\4&eddcb02&0&0080
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvraid]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\nvraid.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
"DisplayName" = NVIDIA nForce RAID Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvsmu]
"Type" = 1
"Start" = 3
"ErrorControl" = 0
"ImagePath" = system32\DRIVERS\nvsmu.sys -- [2008.07.22 03:21:07 | 000,015,872 | ---- | M] (NVIDIA Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvsmu\Enum]
"0" = PCI\VEN_10DE&DEV_0AA3&SUBSYS_1A871043&REV_B1\3&267a616a&0&1D
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvstor]
"DisableFilterCache" = 1
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\nvstor.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvstor\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvstor\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvsvc]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\nvvsvc.exe -- [2008.07.25 09:30:59 | 000,196,608 | ---- | M] (NVIDIA Corporation)
"DisplayName" = NVIDIA Display Driver Service
"Group" = Video
"DependOnService" = nvlddmkm [binary data]
"ObjectName" = LocalSystem
"Description" = Provides system and desktop level support to the NVIDIA display driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nv_agp]
"DisplayName" = NVIDIA nForce AGP Bus Filter
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\nv_agp.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NwlnkFlt]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\nwlnkflt.sys
"DisplayName" = IPX Traffic Filter Driver
"DependOnService" = NwlnkFwd [binary data]
"Description" = IPX Traffic Filter Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NwlnkFwd]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\nwlnkfwd.sys
"DisplayName" = IPX Traffic Forwarder Driver
"Description" = IPX Traffic Forwarder Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ohci1394]
"DisplayName" = RICOH OHCI Compliant IEEE 1394 Host Controller
"ImagePath" = system32\DRIVERS\ohci1394.sys -- [2008.01.21 03:23:21 | 000,061,952 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\p2pimsvc]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8004
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8005
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E0 93 04 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\p2pimsvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = IMServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\p2pimsvc\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\p2psvc]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8006
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8007
"DependOnService" = p2pimsvcPNRPSvc [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E0 93 04 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\p2psvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = GroupServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\p2psvc\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Parport]
"DisplayName" = Parallel port driver
"Group" = Parallel arbitrator
"ImagePath" = \SystemRoot\system32\drivers\parport.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\partmgr]
"DisplayName" = Partition Manager
"Group" = Boot Bus Extender
"ImagePath" = System32\drivers\partmgr.sys -- [2012.03.21 00:28:50 | 000,053,120 | ---- | M] (Microsoft Corporation)
"Description" = Disk class filter driver that auctions out partitions to volume managers
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\partmgr\Parameters]
"956741f3" = 1
"146f99cd" = 1
"SanPolicy" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\partmgr\Enum]
"0" = Root\LEGACY_PARTMGR\0000
"Count" = 2
"NextInstance" = 2
"1" = IDE\DiskWDC_WD3200BEVT-22ZCT0___________________11.01A11\5&5f44344&0&0.0.0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Parvdm]
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\parvdm.sys
"ErrorControl" = 0
"Start" = 2
"Type" = 1
"DependOnGroup" = Parallel arbitrator [binary data]
"DependOnService" = Parport [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Parvdm\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PcaSvc]
"DisplayName" = @%SystemRoot%\system32\pcasvc.dll,-1
"ErrorControl" = 1
"ImagePath" = %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%SystemRoot%\system32\pcasvc.dll,-2
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeDebugPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PcaSvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = ServiceMain
"ServiceDll" = %SystemRoot%\System32\pcasvc.dll -- [2008.01.21 03:23:29 | 000,037,888 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PcaSvc\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pci]
"Tag" = 3
"DisplayName" = Řadič sběrnice PCI
"Group" = Boot Bus Extender
"ImagePath" = system32\drivers\pci.sys -- [2009.04.11 07:32:55 | 000,149,480 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pci\Enum]
"0" = ACPI\PNP0A03\0
"Count" = 7
"NextInstance" = 7
"1" = PCI\VEN_10DE&DEV_0AAB&SUBSYS_1A871043&REV_B1\3&267a616a&0&48
"2" = PCI\VEN_10DE&DEV_0AA0&SUBSYS_1A871043&REV_B1\3&267a616a&0&80
"3" = PCI\VEN_10DE&DEV_0AC6&SUBSYS_1A871043&REV_B1\3&267a616a&0&A8
"4" = PCI\VEN_10DE&DEV_0AC7&SUBSYS_1A871043&REV_B1\3&267a616a&0&B0
"5" = PCI\VEN_10DE&DEV_0AC7&SUBSYS_1A871043&REV_B1\3&267a616a&0&B8
"6" = PCI\VEN_10DE&DEV_0AC7&SUBSYS_1A871043&REV_B1\3&267a616a&0&C0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pciide]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\pciide.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pcmcia]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\pcmcia.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PEAUTH]
"DataPath" = C:\ProgramData\Microsoft\MF -- [2006.11.02 13:37:34 | 000,000,000 | ---D | M]
"Options" = 0
"DisplayName" = PEAUTH
"ImagePath" = system32\drivers\peauth.sys -- [2006.11.02 10:04:35 | 000,878,080 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 2
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PEAUTH\Instances]
"DefaultInstance" = PEAUTH
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PEAUTH\Enum]
"0" = Root\LEGACY_PEAUTH\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfDisk]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfDisk\Performance]
"Close" = CloseDiskObject
"Collect" = CollectDiskObjectData
"Collect Timeout" = 2000
"Library" = perfdisk.dll -- [2009.04.11 07:28:23 | 000,031,744 | ---- | M] (Microsoft Corporation)
"Object List" = 234 236
"Open" = OpenDiskObject
"Open Timeout" = 5000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfNet]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfNet\Performance]
"Close" = CloseNetSvcsObject
"Collect" = CollectNetSvcsObjectData
"Collect Timeout" = 5000
"Library" = perfnet.dll -- [2008.01.21 03:24:17 | 000,019,968 | ---- | M] (Microsoft Corporation)
"Object List" = 52 262 330 1300
"Open" = OpenNetSvcsObject
"Open Timeout" = 8000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfOS]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfOS\Performance]
"Close" = CloseOSObject
"Collect" = CollectOSObjectData
"Collect Timeout" = 8000
"Library" = perfos.dll -- [2006.11.02 10:46:12 | 000,028,672 | ---- | M] (Microsoft Corporation)
"Object List" = 2 4 86 238 260 700
"Open" = OpenOSObject
"Open Timeout" = 5000
"Disable Performance Counters" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfProc]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfProc\Performance]
"Close" = CloseSysProcessObject
"Collect" = CollectSysProcessObjectData
"Collect Timeout" = 8000
"Library" = perfproc.dll -- [2006.11.02 10:46:12 | 000,035,840 | ---- | M] (Microsoft Corporation)
"Object List" = 230 232 786 740 816 1408 1500 1548 1760
"Open" = OpenSysProcessObject
"Open Timeout" = 10000
"Disable Performance Counters" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pla]
"DisplayName" = @%systemroot%\system32\pla.dll,-500
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\pla.dll,-501
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 3
"RequiredPrivileges" = SeImpersonatePrivilege [binary data]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pla\Configuration]
"EventBookmark" = 3C 00 42 00 6F 00 6F 00 6B 00 6D 00 61 00 72 00 6B 00 4C 00 69 00 73 00 74 00 3E 00 0D 00 0A 00 20 00 20 00 3C 00 42 00 6F 00 6F 00 6B 00 6D 00 61 00 72 00 6B 00 20 00 43 00 68 00 61 00 6E 00 6E 00 65 00 6C 00 3D 00 27 00 4D 00 69 00 63 00 72 00 6F 00 73 00 6F 00 66 00 74 00 2D 00 57 00 69 00 6E 00 64 00 6F 00 77 00 73 00 2D 00 54 00 61 00 73 00 6B 00 53 00 63 00 68 00 65 00 64 00 75 00 6C 00 65 00 72 00 2F 00 4F 00 70 00 65 00 72 00 61 00 74 00 69 00 6F 00 6E 00 61 00 6C 00 27 00 20 00 52 00 65 00 63 00 6F 00 72 00 64 00 49 00 64 00 3D 00 27 00 35 00 36 00 32 00 38 00 34 00 38 00 27 00 20 00 49 00 73 00 43 00 75 00 72 00 72 00 65 00 6E 00 74 00 3D 00 27 00 74 00 72 00 75 00 65 00 27 00 2F 00 3E 00 0D 00 0A 00 3C 00 2F 00 42 00 6F 00 6F 00 6B 00 6D 00 61 00 72 00 6B 00 4C 00 69 00 73 00 74 00 3E 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pla\Parameters]
"ServiceDll" = %systemroot%\system32\pla.dll -- [2008.01.21 03:24:03 | 001,502,208 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pla\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 14 00 95 01 00 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PlugPlay]
"DisplayName" = @%SystemRoot%\system32\umpnpmgr.dll,-100
"Group" = PlugPlay
"ImagePath" = %SystemRoot%\system32\svchost.exe -k DcomLaunch -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\umpnpmgr.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeTcbPrivilegeSeSecurityPrivilege [Binary data over 200 bytes]
"FailureActions" = 00 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 02 00 00 00 60 EA 00 00 02 00 00 00 60 EA 00 00 02 00 00 00 60 EA 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PlugPlay\Parameters]
"ServiceDll" = %SystemRoot%\system32\umpnpmgr.dll -- [2009.04.11 07:28:25 | 000,222,720 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PnkBstrA]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = C:\Windows\system32\PnkBstrA.exe -- [2009.02.09 17:15:39 | 000,070,968 | ---- | M] ()
"DisplayName" = PnkBstrA
"ObjectName" = LocalSystem
"Description" = PunkBuster Service Component [v1030] http://www.evenbalance.com
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PNRPAutoReg]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8002
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8003
"DependOnService" = pnrpsvc [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PNRPAutoReg\parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = PnrpAutoSVCServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PNRPAutoReg\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PNRPsvc]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8000
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8001
"DependOnService" = p2pimsvc [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E0 93 04 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PNRPsvc\parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = SVCServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PNRPsvc\Performance]
"Close" = PrfData_Close
"Open" = PrfData_Open_Client
"Collect" = PrfData_Collect
"Library" = %SystemRoot%\system32\pnrpperf.dll -- [2006.11.02 13:35:38 | 000,018,944 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = pnrpclientperfcounters.ini
"First Counter" = 4028
"Last Counter" = 4038
"First Help" = 4029
"Last Help" = 4039
"Object List" = 4028
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PNRPsvc\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PolicyAgent]
"DisplayName" = @%SystemRoot%\System32\polstore.dll,-5010
"ImagePath" = %SystemRoot%\system32\svchost.exe -k NetworkServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\polstore.dll,-5011
"ObjectName" = NT Authority\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = Tcpipbfe [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PolicyAgent\Parameters]
"ServiceDll" = %SystemRoot%\System32\ipsecsvc.dll -- [2009.04.11 07:28:20 | 000,364,032 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = SpdServiceMain
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PolicyAgent\Parameters\Cache]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PolicyAgent\Performance]
"Open" = OpenIPSecPerformanceData
"Close" = CloseIPSecPerformanceData
"Collect" = CollectIPSecPerformanceData
"Library" = %SystemRoot%\System32\ipsecsvc.dll -- [2009.04.11 07:28:20 | 000,364,032 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PortProxy]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PptpMiniport]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\raspptp.sys -- [2008.01.21 03:24:55 | 000,062,976 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32006
"Description" = @%systemroot%\system32\rascfg.dll,-32006
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PptpMiniport\Enum]
"0" = Root\MS_PPTPMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Processor]
"DisplayName" = Processor Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\processr.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ProfSvc]
"DisplayName" = @%systemroot%\system32\profsvc.dll,-300
"Group" = profsvc_group
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\profsvc.dll,-301
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"RequiredPrivileges" = SeBackupPrivilegeSeRestorePrivile [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ProfSvc\Parameters]
"ServiceDll" = %systemroot%\system32\profsvc.dll -- [2009.04.11 07:28:23 | 000,153,088 | ---- | M] (Microsoft Corporation)
"ServiceMain" = UserProfileServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ProtectedStorage]
"DisplayName" = @%systemroot%\system32\psbase.dll,-300
"ImagePath" = %SystemRoot%\system32\lsass.exe -- [2011.11.16 15:12:25 | 000,009,728 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\psbase.dll,-301
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ProtectedStorage\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched]
"Type" = 1
"Start" = 1
"ErrorControl" = 1
"Tag" = 17
"ImagePath" = system32\DRIVERS\pacer.sys -- [2009.04.11 05:45:51 | 000,072,192 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%SystemRoot%\System32\drivers\pacer.sys,-101
"Group" = NDIS
"Description" = @%SystemRoot%\System32\drivers\pacer.sys,-101
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters]
"DefaultFilterSettings" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{418FCFE1-E4E6-4B68-ADA4-EFC98CC311E6}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{418FCFE1-E4E6-4B68-ADA4-EFC98CC311E6}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{9C642153-BFE0-4511-A0B6-E778DDD5EA9E}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{9C642153-BFE0-4511-A0B6-E778DDD5EA9E}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{BA32A50A-3D27-4FAE-8591-5916311409BE}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{BA32A50A-3D27-4FAE-8591-5916311409BE}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{F50C0996-5B4A-4C6A-A322-6E991D4CAA0E}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{F50C0996-5B4A-4C6A-A322-6E991D4CAA0E}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{F70A361F-6437-4FCC-91A4-CD88D468D91B}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{F70A361F-6437-4FCC-91A4-CD88D468D91B}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}]
"InterfaceGuid" = F5 A8 21 C0 71 D5 DF 11 88 EB 00 22 43 A1 E9 98 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{1E26EC88-A56D-4921-A26F-BE842C7AD246}]
"InterfaceGuid" = 75 CF 27 A5 24 F5 DD 11 9F 20 00 22 43 A1 E9 98 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{24930843-A943-4314-AA1C-FC23C28C2A26}]
"InterfaceGuid" = 60 F4 45 89 22 97 DD 11 BD 00 00 22 43 A1 E9 98 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
"InterfaceGuid" = 90 F4 45 89 22 97 DD 11 BD 00 00 23 54 43 34 CE [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{418FCFE1-E4E6-4B68-ADA4-EFC98CC311E6}]
"InterfaceGuid" = 58 50 9D 0A 63 0C DD 11 8D 1E A1 E6 96 58 09 2D [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{56CA9B10-546C-4A22-A19C-BBF2900D9CF0}]
"InterfaceGuid" = 8F 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{9C642153-BFE0-4511-A0B6-E778DDD5EA9E}]
"InterfaceGuid" = 90 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{BA0AE3CF-C69A-4397-A782-412626636A30}]
"InterfaceGuid" = DF 06 2F 33 CA C7 DC 11 B0 9E 00 14 22 0D 9F 3B [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{BA32A50A-3D27-4FAE-8591-5916311409BE}]
"InterfaceGuid" = AA E6 2B C9 C0 C7 DC 11 8F F1 E0 20 EA 82 FC 39 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{BD7DEB58-51D3-419D-98CF-6D5E2CBDC4D0}]
"InterfaceGuid" = 91 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}]
"InterfaceGuid" = 64 EF CF EA 68 9F E1 11 87 FB BD 91 02 63 B8 8C [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{EAE456AC-9095-4125-B655-830A8A22A5A6}]
"InterfaceGuid" = 38 A6 AF B2 AC 29 E0 11 AD 9D 9E F5 B7 98 77 3C [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{F50C0996-5B4A-4C6A-A322-6E991D4CAA0E}]
"InterfaceGuid" = 92 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{F70A361F-6437-4FCC-91A4-CD88D468D91B}]
"InterfaceGuid" = AB E6 2B C9 C0 C7 DC 11 8F F1 00 14 22 0D 9F 3A [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Winsock]
"HelperDllName" = %Systemroot%\System32\wshqos.dll -- [2006.11.02 10:46:14 | 000,013,824 | ---- | M] (Microsoft Corporation)
"MaxSockAddrLength" = 28
"MinSockAddrLength" = 16
"Mapping" = 0C 00 00 00 03 00 00 00 17 00 00 00 01 00 00 00 06 00 00 00 17 00 00 00 01 00 00 00 00 00 00 00 17 00 00 00 00 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 00 00 00 00 02 00 00 00 00 00 00 00 06 00 00 00 17 00 00 00 02 00 00 00 11 00 00 00 17 00 00 00 02 00 00 00 00 00 00 00 17 00 00 00 00 00 00 00 11 00 00 00 02 00 00 00 02 00 00 00 11 00 00 00 02 00 00 00 02 00 00 00 00 00 00 00 02 00 00 00 00 00 00 00 11 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Performance]
"Library" = pacerprf.dll -- [2006.11.02 10:46:12 | 000,015,360 | ---- | M] (Microsoft Corporation)
"Open" = OpenPacerPerformanceData
"Close" = ClosePacerPerformanceData
"Collect" = CollectPacerPerformanceData
"PerfIniFile" = pacerprf.ini -- [2006.09.18 22:37:10 | 000,013,750 | ---- | M] ()
"Last Counter" = 4462
"Last Help" = 4463
"First Counter" = 4386
"First Help" = 4387
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Enum]
"0" = Root\LEGACY_PSCHED\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\qcusbsersny]
"QCDriverSelectiveSuspendIdleTime" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ql2300]
"DisplayName" = QLogic Fibre Channel Miniport Driver
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\ql2300.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ql2300\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ql2300\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ql40xx]
"DisplayName" = QLogic iSCSI Miniport Driver
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\ql40xx.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ql40xx\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ql40xx\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\QWAVE]
"DisplayName" = @%SystemRoot%\system32\qwave.dll,-1
"ErrorControl" = 1
"ImagePath" = %windir%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\qwave.dll,-2
"DependOnService" = rpcsspschedQWAVEdrvLLTDIO [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\QWAVE\Parameters]
"ETWTrace" = 0
"LLTD" = 1
"ProbegapTrace" = 0
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = ServiceMain
"ServiceDll" = %windir%\system32\qwave.dll -- [2008.01.21 03:23:31 | 000,243,712 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\QWAVE\Security]
"Security" = 01 00 04 80 5C 00 00 00 68 00 00 00 00 00 00 00 14 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 14 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\QWAVEdrv]
"DisplayName" = @%SystemRoot%\system32\drivers\qwavedrv.sys,-1
"ErrorControl" = 1
"ImagePath" = \SystemRoot\system32\drivers\qwavedrv.sys
"Start" = 3
"Type" = 1
"Description" = @%SystemRoot%\system32\drivers\qwavedrv.sys,-2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\QWAVEdrv\Security]
"Security" = 01 00 04 80 5C 00 00 00 68 00 00 00 00 00 00 00 14 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 14 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasAcd]
"Type" = 1
"Start" = 1
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RpcSsnlasvc [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeChangeNotifyPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 64 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\netprofm\Parameters]
"ServiceDll" = %SystemRoot%\System32\netprofm.dll -- [2008.01.21 03:24:23 | 000,237,056 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NetTcpPortSharing]
"DisplayName" = @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8201
"ErrorControl" = 1
"ImagePath" = "%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe" -- [2009.02.18 19:38:43 | 000,129,880 | ---- | M] (Microsoft Corporation)
"Start" = 4
"Type" = 32
"Description" = @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8200
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 3
"RequiredPrivileges" = SeCreateGlobalPrivilege [binary data]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NetTcpPortSharing\Security]
"Security" = 01 00 04 80 84 00 00 00 90 00 00 00 00 00 00 00 14 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nfrd960]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\nfrd960.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nfrd960\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nfrd960\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NlaSvc]
"DisplayName" = @%SystemRoot%\System32\nlasvc.dll,-1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\nlasvc.dll,-2
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = NSIRpcSsTcpIp [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeImperson [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NlaSvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\nlasvc.dll -- [2008.01.21 03:23:44 | 000,168,448 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NlaSvc\Parameters\Fuser]
"Tlag" = 500
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NlaSvc\Parameters\Internet]
"PassivePollPeriod" = 5
"StaleThreshold" = 30
"WebTimeout" = 10
"EnableActiveProbing" = 1
"ActiveWebProbeHost" = www.msftncsi.com
"ActiveWebProbePath" = ncsi.txt
"ActiveWebProbeContent" = Microsoft NCSI
"ActiveDnsProbeHost" = dns.msftncsi.com
"ActiveDnsProbeContent" = 131.107.255.255
"KnownProxylessGateways" = 64-70-02-bb-17-06 150459
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NlaSvc\Parameters\Internet\ManualProxies]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NlaSvc\Parameters\PMux]
"Tresolve" = 2000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NlaSvc\Security]
"Security" = 01 00 14 98 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 05 00 00 00 00 02 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 02 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 1D 00 02 00 01 06 00 00 00 00 00 05 50 00 00 00 44 3E 41 BB 45 BA A8 7A 6C BD 92 68 F4 AD 64 8F D5 E6 70 E9 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nmwcd]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 28
"ImagePath" = system32\drivers\nmwcd.sys -- [2007.02.22 09:15:56 | 000,137,216 | ---- | M] (Nokia)
"DisplayName" = Nokia USB Phone Parent
"Group" = Extended Base
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Npfs]
"ErrorControl" = 1
"Group" = File system
"Start" = 1
"Type" = 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Npfs\Aliases]
"lsass" = protected_storagenetlogonlsarpcsamr [binary data]
"ntsvcs" = svcctl [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Npfs\Enum]
"0" = Root\LEGACY_NPFS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nsi]
"DisplayName" = @%SystemRoot%\system32\nsisvc.dll,-200
"ImagePath" = %systemroot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\nsisvc.dll,-201
"ObjectName" = NT Authority\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = nsiproxy [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nsi\Parameters]
"ServiceDll" = %systemroot%\system32\nsisvc.dll -- [2008.01.21 03:24:47 | 000,018,432 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nsiproxy]
"DisplayName" = NSI proxy service
"ImagePath" = system32\drivers\nsiproxy.sys -- [2008.01.21 03:24:47 | 000,016,384 | ---- | M] (Microsoft Corporation)
"Description" = NSI proxy service
"ErrorControl" = 1
"Start" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nsiproxy\Enum]
"0" = Root\LEGACY_NSIPROXY\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NTDS]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NTDS\RID Values]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Ntfs]
"Group" = FileSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Ntfs\Enum]
"0" = Root\LEGACY_NTFS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ntrigdigi]
"DisplayName" = N-trig HID Tablet Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\ntrigdigi.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Null]
"ErrorControl" = 1
"Group" = Base
"Start" = 1
"Tag" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Null\Enum]
"0" = Root\LEGACY_NULL\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NVENETFD]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 23
"ImagePath" = system32\DRIVERS\nvmfdx32.sys -- [2008.07.08 11:32:51 | 001,050,656 | ---- | M] (NVIDIA Corporation)
"DisplayName" = NVIDIA nForce 10/100/1000 Mbps Ethernet
"Group" = NDIS
"BootFlags" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NVENETFD\Enum]
"0" = PCI\VEN_10DE&DEV_0AB0&SUBSYS_12151043&REV_B1\3&267a616a&0&50
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NVHDA]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\drivers\nvhda32v.sys -- [2008.06.25 06:05:05 | 000,044,064 | ---- | M] (NVIDIA Corporation)
"DisplayName" = Service for NVIDIA High Definition Audio Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NVHDA\Enum]
"0" = HDAUDIO\FUNC_01&VEN_10DE&DEV_0007&SUBSYS_10DE0101&REV_1001\4&10d89169&0&0301
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvlddmkm]
"Type" = 1
"Start" = 3
"ErrorControl" = 0
"Tag" = 3
"ImagePath" = system32\DRIVERS\nvlddmkm.sys -- [2008.07.25 09:30:59 | 007,547,552 | ---- | M] (NVIDIA Corporation)
"Group" = Video
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvlddmkm\Device0]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvlddmkm\Device1]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvlddmkm\Device2]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvlddmkm\Device3]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvlddmkm\Enum]
"0" = PCI\VEN_10DE&DEV_086F&SUBSYS_16B21043&REV_B1\4&eddcb02&0&0080
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvraid]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\nvraid.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
"DisplayName" = NVIDIA nForce RAID Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvsmu]
"Type" = 1
"Start" = 3
"ErrorControl" = 0
"ImagePath" = system32\DRIVERS\nvsmu.sys -- [2008.07.22 03:21:07 | 000,015,872 | ---- | M] (NVIDIA Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvsmu\Enum]
"0" = PCI\VEN_10DE&DEV_0AA3&SUBSYS_1A871043&REV_B1\3&267a616a&0&1D
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvstor]
"DisableFilterCache" = 1
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\nvstor.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvstor\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvstor\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nvsvc]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\nvvsvc.exe -- [2008.07.25 09:30:59 | 000,196,608 | ---- | M] (NVIDIA Corporation)
"DisplayName" = NVIDIA Display Driver Service
"Group" = Video
"DependOnService" = nvlddmkm [binary data]
"ObjectName" = LocalSystem
"Description" = Provides system and desktop level support to the NVIDIA display driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\nv_agp]
"DisplayName" = NVIDIA nForce AGP Bus Filter
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\nv_agp.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NwlnkFlt]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\nwlnkflt.sys
"DisplayName" = IPX Traffic Filter Driver
"DependOnService" = NwlnkFwd [binary data]
"Description" = IPX Traffic Filter Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NwlnkFwd]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\nwlnkfwd.sys
"DisplayName" = IPX Traffic Forwarder Driver
"Description" = IPX Traffic Forwarder Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ohci1394]
"DisplayName" = RICOH OHCI Compliant IEEE 1394 Host Controller
"ImagePath" = system32\DRIVERS\ohci1394.sys -- [2008.01.21 03:23:21 | 000,061,952 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\p2pimsvc]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8004
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8005
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E0 93 04 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\p2pimsvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = IMServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\p2pimsvc\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\p2psvc]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8006
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8007
"DependOnService" = p2pimsvcPNRPSvc [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E0 93 04 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\p2psvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = GroupServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\p2psvc\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Parport]
"DisplayName" = Parallel port driver
"Group" = Parallel arbitrator
"ImagePath" = \SystemRoot\system32\drivers\parport.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\partmgr]
"DisplayName" = Partition Manager
"Group" = Boot Bus Extender
"ImagePath" = System32\drivers\partmgr.sys -- [2012.03.21 00:28:50 | 000,053,120 | ---- | M] (Microsoft Corporation)
"Description" = Disk class filter driver that auctions out partitions to volume managers
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\partmgr\Parameters]
"956741f3" = 1
"146f99cd" = 1
"SanPolicy" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\partmgr\Enum]
"0" = Root\LEGACY_PARTMGR\0000
"Count" = 2
"NextInstance" = 2
"1" = IDE\DiskWDC_WD3200BEVT-22ZCT0___________________11.01A11\5&5f44344&0&0.0.0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Parvdm]
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\parvdm.sys
"ErrorControl" = 0
"Start" = 2
"Type" = 1
"DependOnGroup" = Parallel arbitrator [binary data]
"DependOnService" = Parport [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Parvdm\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PcaSvc]
"DisplayName" = @%SystemRoot%\system32\pcasvc.dll,-1
"ErrorControl" = 1
"ImagePath" = %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%SystemRoot%\system32\pcasvc.dll,-2
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeDebugPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PcaSvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = ServiceMain
"ServiceDll" = %SystemRoot%\System32\pcasvc.dll -- [2008.01.21 03:23:29 | 000,037,888 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PcaSvc\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pci]
"Tag" = 3
"DisplayName" = Řadič sběrnice PCI
"Group" = Boot Bus Extender
"ImagePath" = system32\drivers\pci.sys -- [2009.04.11 07:32:55 | 000,149,480 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pci\Enum]
"0" = ACPI\PNP0A03\0
"Count" = 7
"NextInstance" = 7
"1" = PCI\VEN_10DE&DEV_0AAB&SUBSYS_1A871043&REV_B1\3&267a616a&0&48
"2" = PCI\VEN_10DE&DEV_0AA0&SUBSYS_1A871043&REV_B1\3&267a616a&0&80
"3" = PCI\VEN_10DE&DEV_0AC6&SUBSYS_1A871043&REV_B1\3&267a616a&0&A8
"4" = PCI\VEN_10DE&DEV_0AC7&SUBSYS_1A871043&REV_B1\3&267a616a&0&B0
"5" = PCI\VEN_10DE&DEV_0AC7&SUBSYS_1A871043&REV_B1\3&267a616a&0&B8
"6" = PCI\VEN_10DE&DEV_0AC7&SUBSYS_1A871043&REV_B1\3&267a616a&0&C0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pciide]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\pciide.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pcmcia]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\pcmcia.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PEAUTH]
"DataPath" = C:\ProgramData\Microsoft\MF -- [2006.11.02 13:37:34 | 000,000,000 | ---D | M]
"Options" = 0
"DisplayName" = PEAUTH
"ImagePath" = system32\drivers\peauth.sys -- [2006.11.02 10:04:35 | 000,878,080 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 2
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PEAUTH\Instances]
"DefaultInstance" = PEAUTH
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PEAUTH\Enum]
"0" = Root\LEGACY_PEAUTH\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfDisk]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfDisk\Performance]
"Close" = CloseDiskObject
"Collect" = CollectDiskObjectData
"Collect Timeout" = 2000
"Library" = perfdisk.dll -- [2009.04.11 07:28:23 | 000,031,744 | ---- | M] (Microsoft Corporation)
"Object List" = 234 236
"Open" = OpenDiskObject
"Open Timeout" = 5000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfNet]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfNet\Performance]
"Close" = CloseNetSvcsObject
"Collect" = CollectNetSvcsObjectData
"Collect Timeout" = 5000
"Library" = perfnet.dll -- [2008.01.21 03:24:17 | 000,019,968 | ---- | M] (Microsoft Corporation)
"Object List" = 52 262 330 1300
"Open" = OpenNetSvcsObject
"Open Timeout" = 8000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfOS]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfOS\Performance]
"Close" = CloseOSObject
"Collect" = CollectOSObjectData
"Collect Timeout" = 8000
"Library" = perfos.dll -- [2006.11.02 10:46:12 | 000,028,672 | ---- | M] (Microsoft Corporation)
"Object List" = 2 4 86 238 260 700
"Open" = OpenOSObject
"Open Timeout" = 5000
"Disable Performance Counters" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfProc]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PerfProc\Performance]
"Close" = CloseSysProcessObject
"Collect" = CollectSysProcessObjectData
"Collect Timeout" = 8000
"Library" = perfproc.dll -- [2006.11.02 10:46:12 | 000,035,840 | ---- | M] (Microsoft Corporation)
"Object List" = 230 232 786 740 816 1408 1500 1548 1760
"Open" = OpenSysProcessObject
"Open Timeout" = 10000
"Disable Performance Counters" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pla]
"DisplayName" = @%systemroot%\system32\pla.dll,-500
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\pla.dll,-501
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 3
"RequiredPrivileges" = SeImpersonatePrivilege [binary data]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pla\Configuration]
"EventBookmark" = 3C 00 42 00 6F 00 6F 00 6B 00 6D 00 61 00 72 00 6B 00 4C 00 69 00 73 00 74 00 3E 00 0D 00 0A 00 20 00 20 00 3C 00 42 00 6F 00 6F 00 6B 00 6D 00 61 00 72 00 6B 00 20 00 43 00 68 00 61 00 6E 00 6E 00 65 00 6C 00 3D 00 27 00 4D 00 69 00 63 00 72 00 6F 00 73 00 6F 00 66 00 74 00 2D 00 57 00 69 00 6E 00 64 00 6F 00 77 00 73 00 2D 00 54 00 61 00 73 00 6B 00 53 00 63 00 68 00 65 00 64 00 75 00 6C 00 65 00 72 00 2F 00 4F 00 70 00 65 00 72 00 61 00 74 00 69 00 6F 00 6E 00 61 00 6C 00 27 00 20 00 52 00 65 00 63 00 6F 00 72 00 64 00 49 00 64 00 3D 00 27 00 35 00 36 00 32 00 38 00 34 00 38 00 27 00 20 00 49 00 73 00 43 00 75 00 72 00 72 00 65 00 6E 00 74 00 3D 00 27 00 74 00 72 00 75 00 65 00 27 00 2F 00 3E 00 0D 00 0A 00 3C 00 2F 00 42 00 6F 00 6F 00 6B 00 6D 00 61 00 72 00 6B 00 4C 00 69 00 73 00 74 00 3E 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pla\Parameters]
"ServiceDll" = %systemroot%\system32\pla.dll -- [2008.01.21 03:24:03 | 001,502,208 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\pla\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 14 00 95 01 00 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PlugPlay]
"DisplayName" = @%SystemRoot%\system32\umpnpmgr.dll,-100
"Group" = PlugPlay
"ImagePath" = %SystemRoot%\system32\svchost.exe -k DcomLaunch -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\umpnpmgr.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeTcbPrivilegeSeSecurityPrivilege [Binary data over 200 bytes]
"FailureActions" = 00 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 02 00 00 00 60 EA 00 00 02 00 00 00 60 EA 00 00 02 00 00 00 60 EA 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PlugPlay\Parameters]
"ServiceDll" = %SystemRoot%\system32\umpnpmgr.dll -- [2009.04.11 07:28:25 | 000,222,720 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PnkBstrA]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = C:\Windows\system32\PnkBstrA.exe -- [2009.02.09 17:15:39 | 000,070,968 | ---- | M] ()
"DisplayName" = PnkBstrA
"ObjectName" = LocalSystem
"Description" = PunkBuster Service Component [v1030] http://www.evenbalance.com
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PNRPAutoReg]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8002
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8003
"DependOnService" = pnrpsvc [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PNRPAutoReg\parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = PnrpAutoSVCServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PNRPAutoReg\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PNRPsvc]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8000
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8001
"DependOnService" = p2pimsvc [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E0 93 04 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PNRPsvc\parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = SVCServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PNRPsvc\Performance]
"Close" = PrfData_Close
"Open" = PrfData_Open_Client
"Collect" = PrfData_Collect
"Library" = %SystemRoot%\system32\pnrpperf.dll -- [2006.11.02 13:35:38 | 000,018,944 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = pnrpclientperfcounters.ini
"First Counter" = 4028
"Last Counter" = 4038
"First Help" = 4029
"Last Help" = 4039
"Object List" = 4028
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PNRPsvc\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PolicyAgent]
"DisplayName" = @%SystemRoot%\System32\polstore.dll,-5010
"ImagePath" = %SystemRoot%\system32\svchost.exe -k NetworkServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\polstore.dll,-5011
"ObjectName" = NT Authority\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = Tcpipbfe [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PolicyAgent\Parameters]
"ServiceDll" = %SystemRoot%\System32\ipsecsvc.dll -- [2009.04.11 07:28:20 | 000,364,032 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = SpdServiceMain
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PolicyAgent\Parameters\Cache]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PolicyAgent\Performance]
"Open" = OpenIPSecPerformanceData
"Close" = CloseIPSecPerformanceData
"Collect" = CollectIPSecPerformanceData
"Library" = %SystemRoot%\System32\ipsecsvc.dll -- [2009.04.11 07:28:20 | 000,364,032 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PortProxy]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PptpMiniport]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\raspptp.sys -- [2008.01.21 03:24:55 | 000,062,976 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32006
"Description" = @%systemroot%\system32\rascfg.dll,-32006
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PptpMiniport\Enum]
"0" = Root\MS_PPTPMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Processor]
"DisplayName" = Processor Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\processr.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ProfSvc]
"DisplayName" = @%systemroot%\system32\profsvc.dll,-300
"Group" = profsvc_group
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\profsvc.dll,-301
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"RequiredPrivileges" = SeBackupPrivilegeSeRestorePrivile [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ProfSvc\Parameters]
"ServiceDll" = %systemroot%\system32\profsvc.dll -- [2009.04.11 07:28:23 | 000,153,088 | ---- | M] (Microsoft Corporation)
"ServiceMain" = UserProfileServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ProtectedStorage]
"DisplayName" = @%systemroot%\system32\psbase.dll,-300
"ImagePath" = %SystemRoot%\system32\lsass.exe -- [2011.11.16 15:12:25 | 000,009,728 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\psbase.dll,-301
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ProtectedStorage\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched]
"Type" = 1
"Start" = 1
"ErrorControl" = 1
"Tag" = 17
"ImagePath" = system32\DRIVERS\pacer.sys -- [2009.04.11 05:45:51 | 000,072,192 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%SystemRoot%\System32\drivers\pacer.sys,-101
"Group" = NDIS
"Description" = @%SystemRoot%\System32\drivers\pacer.sys,-101
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters]
"DefaultFilterSettings" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{418FCFE1-E4E6-4B68-ADA4-EFC98CC311E6}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{418FCFE1-E4E6-4B68-ADA4-EFC98CC311E6}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{9C642153-BFE0-4511-A0B6-E778DDD5EA9E}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{9C642153-BFE0-4511-A0B6-E778DDD5EA9E}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{BA32A50A-3D27-4FAE-8591-5916311409BE}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{BA32A50A-3D27-4FAE-8591-5916311409BE}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{F50C0996-5B4A-4C6A-A322-6E991D4CAA0E}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{F50C0996-5B4A-4C6A-A322-6E991D4CAA0E}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{F70A361F-6437-4FCC-91A4-CD88D468D91B}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Adapters\{F70A361F-6437-4FCC-91A4-CD88D468D91B}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}]
"InterfaceGuid" = F5 A8 21 C0 71 D5 DF 11 88 EB 00 22 43 A1 E9 98 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{1E26EC88-A56D-4921-A26F-BE842C7AD246}]
"InterfaceGuid" = 75 CF 27 A5 24 F5 DD 11 9F 20 00 22 43 A1 E9 98 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{24930843-A943-4314-AA1C-FC23C28C2A26}]
"InterfaceGuid" = 60 F4 45 89 22 97 DD 11 BD 00 00 22 43 A1 E9 98 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
"InterfaceGuid" = 90 F4 45 89 22 97 DD 11 BD 00 00 23 54 43 34 CE [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{418FCFE1-E4E6-4B68-ADA4-EFC98CC311E6}]
"InterfaceGuid" = 58 50 9D 0A 63 0C DD 11 8D 1E A1 E6 96 58 09 2D [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{56CA9B10-546C-4A22-A19C-BBF2900D9CF0}]
"InterfaceGuid" = 8F 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{9C642153-BFE0-4511-A0B6-E778DDD5EA9E}]
"InterfaceGuid" = 90 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{BA0AE3CF-C69A-4397-A782-412626636A30}]
"InterfaceGuid" = DF 06 2F 33 CA C7 DC 11 B0 9E 00 14 22 0D 9F 3B [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{BA32A50A-3D27-4FAE-8591-5916311409BE}]
"InterfaceGuid" = AA E6 2B C9 C0 C7 DC 11 8F F1 E0 20 EA 82 FC 39 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{BD7DEB58-51D3-419D-98CF-6D5E2CBDC4D0}]
"InterfaceGuid" = 91 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}]
"InterfaceGuid" = 64 EF CF EA 68 9F E1 11 87 FB BD 91 02 63 B8 8C [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{EAE456AC-9095-4125-B655-830A8A22A5A6}]
"InterfaceGuid" = 38 A6 AF B2 AC 29 E0 11 AD 9D 9E F5 B7 98 77 3C [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{F50C0996-5B4A-4C6A-A322-6E991D4CAA0E}]
"InterfaceGuid" = 92 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\NdisAdapters\{F70A361F-6437-4FCC-91A4-CD88D468D91B}]
"InterfaceGuid" = AB E6 2B C9 C0 C7 DC 11 8F F1 00 14 22 0D 9F 3A [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Parameters\Winsock]
"HelperDllName" = %Systemroot%\System32\wshqos.dll -- [2006.11.02 10:46:14 | 000,013,824 | ---- | M] (Microsoft Corporation)
"MaxSockAddrLength" = 28
"MinSockAddrLength" = 16
"Mapping" = 0C 00 00 00 03 00 00 00 17 00 00 00 01 00 00 00 06 00 00 00 17 00 00 00 01 00 00 00 00 00 00 00 17 00 00 00 00 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 00 00 00 00 02 00 00 00 00 00 00 00 06 00 00 00 17 00 00 00 02 00 00 00 11 00 00 00 17 00 00 00 02 00 00 00 00 00 00 00 17 00 00 00 00 00 00 00 11 00 00 00 02 00 00 00 02 00 00 00 11 00 00 00 02 00 00 00 02 00 00 00 00 00 00 00 02 00 00 00 00 00 00 00 11 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Performance]
"Library" = pacerprf.dll -- [2006.11.02 10:46:12 | 000,015,360 | ---- | M] (Microsoft Corporation)
"Open" = OpenPacerPerformanceData
"Close" = ClosePacerPerformanceData
"Collect" = CollectPacerPerformanceData
"PerfIniFile" = pacerprf.ini -- [2006.09.18 22:37:10 | 000,013,750 | ---- | M] ()
"Last Counter" = 4462
"Last Help" = 4463
"First Counter" = 4386
"First Help" = 4387
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\PSched\Enum]
"0" = Root\LEGACY_PSCHED\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\qcusbsersny]
"QCDriverSelectiveSuspendIdleTime" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ql2300]
"DisplayName" = QLogic Fibre Channel Miniport Driver
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\ql2300.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ql2300\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ql2300\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ql40xx]
"DisplayName" = QLogic iSCSI Miniport Driver
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\ql40xx.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ql40xx\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ql40xx\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\QWAVE]
"DisplayName" = @%SystemRoot%\system32\qwave.dll,-1
"ErrorControl" = 1
"ImagePath" = %windir%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\qwave.dll,-2
"DependOnService" = rpcsspschedQWAVEdrvLLTDIO [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\QWAVE\Parameters]
"ETWTrace" = 0
"LLTD" = 1
"ProbegapTrace" = 0
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = ServiceMain
"ServiceDll" = %windir%\system32\qwave.dll -- [2008.01.21 03:23:31 | 000,243,712 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\QWAVE\Security]
"Security" = 01 00 04 80 5C 00 00 00 68 00 00 00 00 00 00 00 14 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 14 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\QWAVEdrv]
"DisplayName" = @%SystemRoot%\system32\drivers\qwavedrv.sys,-1
"ErrorControl" = 1
"ImagePath" = \SystemRoot\system32\drivers\qwavedrv.sys
"Start" = 3
"Type" = 1
"Description" = @%SystemRoot%\system32\drivers\qwavedrv.sys,-2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\QWAVEdrv\Security]
"Security" = 01 00 04 80 5C 00 00 00 68 00 00 00 00 00 00 00 14 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 14 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasAcd]
"Type" = 1
"Start" = 1
"ErrorControl" = 1
Re: policie čr prosim o radu
"Tag" = 1
"ImagePath" = System32\DRIVERS\rasacd.sys -- [2008.01.21 03:24:19 | 000,011,776 | ---- | M] (Microsoft Corporation)
"DisplayName" = Remote Access Auto Connection Driver
"Group" = Streams Drivers
"Description" = Remote Access Auto Connection Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasAcd\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasAcd\Security]
"Security" = 01 00 14 88 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasAcd\Enum]
"0" = Root\LEGACY_RASACD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasAuto]
"DisplayName" = @%Systemroot%\system32\rasauto.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\rasauto.dll,-201
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RasManTapisrv [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeTcbPrivil [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasAuto\Parameters]
"ServiceDll" = %SystemRoot%\System32\rasauto.dll -- [2008.01.21 03:24:19 | 000,090,624 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasAuto\Security]
"Security" = 01 00 14 88 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Rasl2tp]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\rasl2tp.sys -- [2008.01.21 03:24:55 | 000,076,288 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32005
"Description" = @%systemroot%\system32\rascfg.dll,-32005
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Rasl2tp\Enum]
"0" = Root\MS_L2TPMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan]
"DisplayName" = @%Systemroot%\system32\rasmans.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\rasmans.dll,-201
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = TapisrvSstpSvc [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeIncreaseQ [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\Parameters]
"ServiceDll" = %SystemRoot%\System32\rasmans.dll -- [2009.04.11 07:28:24 | 000,262,144 | ---- | M] (Microsoft Corporation)
"Medias" = rastapi [binary data] -- [2009.04.11 07:28:24 | 000,069,632 | ---- | M] (Microsoft Corporation)
"CustomDLL" = [binary data]
"ServiceDllUnloadOnStop" = 1
"AllowL2TPWeakCrypto" = 0
"AllowPPTPWeakCrypto" = 0
"KeepRasConnections" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\Parameters\Quarantine]
"AutoRefreshEnabled" = 0
"AutoRefreshTimeout" = 25200000
"Enabled" = 1
"WorkItemTimeout" = 3000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP]
"MaxConfigure" = 10
"MaxFailure" = 10
"MaxReject" = 5
"MaxTerminate" = 2
"Multilink" = 0
"NegotiateTime" = 150
"RestartTimer" = 3
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP\ControlProtocols]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP\ControlProtocols\BuiltIn]
"Path" = %SystemRoot%\System32\rasppp.dll -- [2009.04.11 07:28:24 | 000,259,584 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP\ControlProtocols\Chap]
"Path" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP\EAP]
"Path" = %SystemRoot%\System32\rasppp.dll -- [2009.04.11 07:28:24 | 000,259,584 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP\EAP\13]
"FriendlyName" = @%SystemRoot%\system32\rastls.dll,-2001 -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"Path" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"ConfigCLSID" = {58AB2366-D597-11d1-B90E-00C04FC9B263}
"ConfigUiPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"IdentityPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InteractiveUIPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InvokePasswordDialog" = 0
"InvokeUsernameDialog" = 0
"MPPEEncryptionSupported" = 1
"NoRootRevocationCheck" = 1
"PerPolicyConfig" = 1
"RolesSupported" = 3
"StandaloneSupported" = 0
"Properties" = 7133359
"" = Microsoft
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP\EAP\25]
"FriendlyName" = @%SystemRoot%\system32\rastls.dll,-2002 -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"Path" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"ConfigCLSID" = {58AB2366-D597-11d1-B90E-00C04FC9B263}
"ConfigUiPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"IdentityPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InteractiveUIPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InvokePasswordDialog" = 0
"InvokeUsernameDialog" = 0
"MPPEEncryptionSupported" = 1
"NoRootRevocationCheck" = 1
"PerPolicyConfig" = 1
"RolesSupported" = 35
"StandaloneSupported" = 1
"Properties" = 8321215
"" = Microsoft
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP\EAP\26]
"FriendlyName" = @%SystemRoot%\system32\raschap.dll,-2002 -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"Path" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"ConfigCLSID" = {2af6bcaa-f526-4803-aeb8-5777ce386647}
"ConfigUiPath" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"IdentityPath" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"InteractiveUIPath" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"InvokePasswordDialog" = 0
"InvokeUsernameDialog" = 0
"MPPEEncryptionSupported" = 1
"PerPolicyConfig" = 1
"RolesSupported" = 23
"StandaloneSupported" = 1
"Properties" = 7094382
"" = Microsoft
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\Security]
"Security" = 01 00 14 88 64 00 00 00 70 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 34 00 02 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasPppoe]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\raspppoe.sys -- [2009.04.11 05:46:30 | 000,041,472 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32007
"Description" = @%systemroot%\system32\rascfg.dll,-32007
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasPppoe\Linkage]
"Bind" = \Device\{DB5A0E6A-4A5D-47A0-8E63-B [Binary data over 200 bytes]
"Route" = "{DB5A0E6A-4A5D-47A0-8E63-B3C6DAAC [Binary data over 200 bytes]
"Export" = \Device\RasPppoe_{DB5A0E6A-4A5D-47 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasPppoe\Enum]
"0" = Root\MS_PPPOEMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasSstp]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\rassstp.sys -- [2009.04.11 05:46:40 | 000,069,120 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\sstpsvc.dll,-202
"Description" = @%systemroot%\system32\sstpsvc.dll,-202
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasSstp\Enum]
"0" = Root\MS_SSTPMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\rdbss]
"DisplayName" = Redirected Buffering Sub Sysytem
"Group" = Network
"ImagePath" = system32\DRIVERS\rdbss.sys -- [2009.04.11 05:14:29 | 000,225,280 | ---- | M] (Microsoft Corporation)
"Description" = Provides the framework for network mini-redirectors
"ErrorControl" = 1
"Start" = 1
"Tag" = 4
"Type" = 2
"DependOnService" = Mup [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\rdbss\Enum]
"0" = Root\LEGACY_RDBSS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPCDD]
"DisplayName" = RDPCDD
"Group" = Video Save
"ImagePath" = System32\DRIVERS\RDPCDD.sys -- [2008.01.21 03:24:06 | 000,006,144 | ---- | M] (Microsoft Corporation)
"Description" = RDPDD Chained DD
"ErrorControl" = 0
"Start" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPCDD\Device0]
"Device Description" = RDPDD Chained DD -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"InstalledDisplayDrivers" = RDPDD [binary data] -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"MirrorDriver" = 1
"VgaCompatible" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPCDD\Video]
"VideoID" = {DEB039CC-B704-4F53-B43E-9DD4432FA2E9}
"Service" = RDPCDD
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPCDD\Enum]
"0" = Root\LEGACY_RDPCDD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPDD]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPDD\Device0]
"Attach.RelativeX" = 0
"Attach.RelativeY" = 0
"Attach.ToDesktop" = 1
"DefaultSettings.XResolution" = 800
"DefaultSettings.YResolution" = 600
"Device Description" = RDPDD Chained DD -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"InstalledDisplayDrivers" = RDPDD [binary data] -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"VgaCompatible" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\rdpdr]
"DisplayName" = Terminal Server Device Redirector Driver
"ImagePath" = \SystemRoot\system32\drivers\rdpdr.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPENCDD]
"DisplayName" = RDP Encoder Mirror Driver
"Group" = Video Save
"ImagePath" = system32\drivers\rdpencdd.sys -- [2008.01.21 03:24:50 | 000,006,144 | ---- | M] (Microsoft Corporation)
"Description" = RDP Encoder Mirror Driver
"ErrorControl" = 0
"Start" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPENCDD\Device0]
"Device Description" = RDP Encoder Mirror Driver
"InstalledDisplayDrivers" = RDPENCDD [binary data] -- [2008.01.21 03:24:50 | 000,118,272 | ---- | M] (Microsoft Corporation)
"MirrorDriver" = 1
"VgaCompatible" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPENCDD\Video]
"VideoID" = {42cf9257-1d96-4c9d-87f3-0d8e74595f78}
"Service" = RDPENCDD -- [2008.01.21 03:24:50 | 000,118,272 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPENCDD\Enum]
"0" = Root\LEGACY_RDPENCDD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPNP]
"Description" = @%systemroot%\system32\drprov.dll,-101
"DisplayName" = @%systemroot%\system32\drprov.dll,-100
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPNP\NetworkProvider]
"DeviceName" = \Device\RdpDr
"Name" = Microsoft Terminal Services
"DisplayName" = @%systemroot%\system32\drprov.dll,-100
"ProviderPath" = %SystemRoot%\System32\drprov.dll -- [2006.11.02 10:46:04 | 000,017,920 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPWD]
"DisplayName" = RDP Winstation Driver
"ErrorControl" = 0
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess]
"DisplayName" = @%Systemroot%\system32\mprdim.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\mprdim.dll,-201
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 4
"Type" = 32
"DependOnGroup" = NetBIOSGroup [binary data]
"DependOnService" = RpcSSRasManbfe [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeLoadDriv [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
"ConfigurationFlags" = 0
"" =
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Accounting]
"AccountSessionIdStart" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Accounting\Providers]
"ActiveProvider" = {1AA7F846-C7F5-11D0-A376-00C04FC9DA04}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Accounting\Providers\{1AA7F840-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid" = {1AA7F840-C7F5-11D0-A376-00C04FC9DA04}
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-202
"VendorName" = Microsoft
"ProviderTypeGUID" = {76560D00-2BFD-11d2-9539-3078302C2030}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Accounting\Providers\{1AA7F846-C7F5-11D0-A376-00C04FC9DA04}]
"Path" = %SystemRoot%\System32\mprddm.dll -- [2008.01.21 03:24:48 | 000,104,960 | ---- | M] (Microsoft Corporation)
"ConfigClsid" =
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-203
"ProviderTypeGUID" = {76560D81-2BFD-11d2-9539-3078302C2030}
"VendorName" = Microsoft
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Authentication]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Authentication\Providers]
"ActiveProvider" = {1AA7F841-C7F5-11D0-A376-00C04FC9DA04}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Authentication\Providers\{1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid" = {1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-201
"VendorName" = Microsoft
"ProviderTypeGUID" = {76560D00-2BFD-11d2-9539-3078302C2030}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Authentication\Providers\{1AA7F841-C7F5-11D0-A376-00C04FC9DA04}]
"Path" = %SystemRoot%\System32\mprddm.dll -- [2008.01.21 03:24:48 | 000,104,960 | ---- | M] (Microsoft Corporation)
"ConfigClsid" =
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-200
"VendorName" = Microsoft
"ProviderTypeGUID" = {76560D01-2BFD-11d2-9539-3078302C2030}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\DemandDialManager]
"DllPath" = %SystemRoot%\System32\mprddm.dll -- [2008.01.21 03:24:48 | 000,104,960 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces]
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\0]
"InterfaceName" = Zpětná smyčka
"Type" = 5
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\0\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\0\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\1]
"InterfaceName" = Vnitřní
"Type" = 4
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\1\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\1\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\2]
"InterfaceName" = {DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\2\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\2\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\3]
"InterfaceName" = {1E26EC88-A56D-4921-A26F-BE842C7AD246}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\3\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\3\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\4]
"InterfaceName" = {3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\4\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\4\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\5]
"InterfaceName" = {24930843-A943-4314-AA1C-FC23C28C2A26}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\5\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\5\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\6]
"InterfaceName" = {D51F2DDE-409B-4945-8CE3-E679E832F0D6}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\6\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\6\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Parameters]
"ServiceDLL" = %SystemRoot%\System32\mprdim.dll -- [2008.01.21 03:24:20 | 000,068,608 | ---- | M] (Microsoft Corporation)
"QuarantineInstalled" = 1
"LoggingFlags" = 2
"ServerFlags" = 8398338
"ServiceDllUnloadOnStop" = 1
"Stamp" = 0
"UsersConfigured" = 0
"RouterType" = 7
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Parameters\Ip]
"AllowNetworkAccess" = 1
"EnableIn" = 1
"EnableRoute" = 1
"IpAddress" = 0.0.0.0
"IpMask" = 0.0.0.0
"UseDhcpAddressing" = 1
"EnableNetbtBcastFwd" = 1
"AllowClientIpAddresses" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Parameters\Ipv6]
"AllowNetworkAccess" = 1
"EnableIn" = 0
"EnableRoute" = 1
"UseDhcpAddressing" = 0
"AdvertiseDefaultRoute" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Parameters\Nbf]
"AllowNetworkAccess" = 1
"EnableIn" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Performance]
"Library" = rasctrs.dll -- [2008.01.21 03:24:23 | 000,015,360 | ---- | M] (Microsoft Corporation)
"Open" = OpenRasPerformanceData
"Close" = CloseRasPerformanceData
"Collect" = CollectRasPerformanceData
"InstallType" = 1
"PerfIniFile" = rasctrs.ini
"First Counter" = 1868
"Last Counter" = 1906
"First Help" = 1869
"Last Help" = 1907
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy]
"Allow LM Authentication" = 0
"ProductDir" = %SystemRoot%\System32\IAS -- [2008.01.21 03:34:27 | 000,000,000 | ---D | M]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\01]
"" = IAS.ProxyPolicyEnforcer
"Requests" = 0 1 2
"Responses" = 0 1 2 3 4
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\02]
"" = IAS.Realm
"Providers" = 1
"Requests" = 0 1
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\03]
"" = IAS.Realm
"Requests" = 0 1
"Responses" = 0
"Providers" = 0 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\04]
"" = IAS.NTSamNames
"Providers" = 1
"Responses" = 0
"Requests" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\05]
"" = IAS.CRPBasedEAP
"Providers" = 1
"Requests" = 0 2
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\06]
"" = IAS.Realm
"Providers" = 1
"Requests" = 0
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\07]
"" = IAS.NTSamNames
"Providers" = 1
"Requests" = 0
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\08]
"" = IAS.MachineNameMapper
"Providers" = 1
"Requests" = 0
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\09]
"" = IAS.BaseCampHost
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\10]
"" = IAS.RadiusProxy
"Providers" = 2
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\11]
"" = IAS.ExternalAuthNames
"Providers" = 2
"Requests" = 0
"Responses" = 1
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\12]
"" = IAS.NTSamAuthentication
"Requests" = 0
"Responses" = 0 1 2
"Providers" = 1
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\13]
"" = IAS.UserAccountValidation
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\14]
"" = IAS.MachineAccountValidation
"Providers" = 1
"Requests" = 0
"Responses" = 0 1
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\15]
"" = IAS.EAPIdentity
"Providers" = 1
"Requests" = 0
"Replays" = 0
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\16]
"" = IAS.QuarantineEvaluator
"Providers" = 1
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\17]
"" = IAS.PolicyEnforcer
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\18]
"" = IAS.NTSamPerUser
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\19]
"" = IAS.URHandler
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\20]
"" = IAS.RAPBasedEAP
"Providers" = 1
"Requests" = 0 2
"Replays" = 0
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\21]
"" = IAS.PostEapRestrictions
"Providers" = 0 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\22]
"" = IAS.PostQuarantineEvaluator
"Providers" = 1
"Requests" = 0
"Replays" = 0
"Responses" = 1 2 5
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\23]
"" = IAS.ChangePassword
"Providers" = 1
"Requests" = 0
"Replays" = 0
"Responses" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\24]
"" = IAS.AuthorizationHost
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\25]
"" = IAS.EAPTerminator
"Providers" = 0 1
"Requests" = 0 2
"Replays" = 0
"Responses" = 1 2 3 5
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\26]
"" = IAS.Accounting
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\27]
"" = IAS.DatabaseAccounting
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\28]
"" = IAS.MSChapErrorReporter
"Providers" = 0 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\RouterManagers]
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\RouterManagers\Ip]
"ProtocolId" = 33
"GlobalInfo" = 01 00 00 00 78 00 00 00 02 00 00 00 03 00 FF FF 08 00 00 00 01 00 00 00 30 00 00 00 06 00 FF FF 34 00 00 00 01 00 00 00 38 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 03 00 00 00 0A 00 00 00 16 27 00 00 03 00 00 00 17 27 00 00 05 00 00 00 12 27 00 00 07 00 00 00 08 00 00 00 78 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"DLLPath" = %SystemRoot%\System32\iprtrmgr.dll -- [2008.01.21 03:24:20 | 000,252,416 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\RouterManagers\Ipv6]
"ProtocolId" = 87
"GlobalInfo" = 01 00 00 00 78 00 00 00 02 00 00 00 03 00 FF FF 08 00 00 00 01 00 00 00 30 00 00 00 06 00 FF FF 34 00 00 00 01 00 00 00 38 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 16 27 00 00 03 00 00 00 17 27 00 00 05 00 00 00 12 27 00 00 07 00 00 00 03 00 00 00 0A 00 00 00 08 00 00 00 78 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"DLLPath" = %SystemRoot%\System32\iprtrmgr.dll -- [2008.01.21 03:24:20 | 000,252,416 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\RoutingTableManager]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\RoutingTableManager\Instance 00000]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\RoutingTableManager\Instance 00000\AddressFamily 00002]
"AddressSize" = 4
"MaxChangeNotifyRegistrations" = 16
"MaxHandlesReturnedInEnum" = 25
"MaxNextHopsInRoute" = 3
"MaxOpaqueInfoPointers" = 5
"ViewsSupported" = 3
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\RoutingTableManager\Instance 00000\AddressFamily 00023]
"AddressSize" = 16
"MaxChangeNotifyRegistrations" = 16
"MaxHandlesReturnedInEnum" = 25
"MaxNextHopsInRoute" = 3
"MaxOpaqueInfoPointers" = 5
"ViewsSupported" = 3
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Security]
"Security" = 01 00 14 88 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteRegistry]
"DisplayName" = @regsvc.dll,-1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k regsvc -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @regsvc.dll,-2
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteRegistry\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\system32\regsvc.dll -- [2009.04.11 07:28:24 | 000,107,008 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RFCOMM]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 10
"ImagePath" = system32\DRIVERS\rfcomm.sys -- [2009.04.11 05:43:12 | 000,148,992 | ---- | M] (Microsoft Corporation)
"DisplayName" = Zařízení Bluetooth (RFCOMM protokol TDI)
"Group" = PNP_TDI
"Description" = Zařízení Bluetooth (RFCOMM protokol TDI)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RFCOMM\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RFCOMM\Parameters\Winsock]
"HelperDllName" = %SystemRoot%\System32\wshBth.dll -- [2009.04.11 07:28:26 | 000,034,304 | ---- | M] (Microsoft Corporation)
"MaxSockAddrLength" = 50
"MinSockAddrLength" = 28
"Mapping" = 04 00 00 00 03 00 00 00 20 00 00 00 01 00 00 00 00 01 00 00 20 00 00 00 00 00 00 00 00 01 00 00 20 00 00 00 01 00 00 00 03 00 00 00 20 00 00 00 00 00 00 00 03 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RpcLocator]
"DisplayName" = @%systemroot%\system32\Locator.exe,-2
"ImagePath" = %SystemRoot%\system32\locator.exe -- [2006.11.02 10:45:21 | 000,007,680 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\Locator.exe,-3
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RpcSs]
"DisplayName" = @oleres.dll,-5010
"Group" = COM Infrastructure
"ImagePath" = %SystemRoot%\system32\svchost.exe -k rpcss -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @oleres.dll,-5011
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = DcomLaunch [binary data]
"FailureActions" = 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 02 00 00 00 60 EA 00 00 [binary data]
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"ServiceSidType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RpcSs\Parameters]
"ServiceDll" = %SystemRoot%\system32\rpcss.dll -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RpcSs\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 00 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 85 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 FF 00 0E 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FD 00 0E 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 95 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\rspndr]
"Type" = 1
"Start" = 2
"ErrorControl" = 1
"Tag" = 14
"ImagePath" = system32\DRIVERS\rspndr.sys -- [2008.01.21 03:24:37 | 000,060,416 | ---- | M] (Microsoft Corporation)
"DisplayName" = Link-Layer Topology Discovery Responder
"Group" = NDIS
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\rspndr\Linkage]
"Bind" = \Device\{DB5A0E6A-4A5D-47A0-8E63-B [Binary data over 200 bytes]
"Route" = "{DB5A0E6A-4A5D-47A0-8E63-B3C6DAAC [Binary data over 200 bytes]
"Export" = \Device\rspndr_{DB5A0E6A-4A5D-47A0 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\rspndr\Enum]
"0" = Root\LEGACY_RSPNDR\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SamSs]
"Description" = @%SystemRoot%\system32\samsrv.dll,-2
"DisplayName" = @%SystemRoot%\system32\samsrv.dll,-1
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\lsass.exe -- [2011.11.16 15:12:25 | 000,009,728 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"Start" = 2
"Type" = 32
"Group" = MS_WindowsLocalValidation
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SamSs\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 8D 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sbp2port]
"DisplayName" = SBP-2 Transport/Protocol Bus Driver
"ImagePath" = \SystemRoot\system32\drivers\sbp2port.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ScanUSBET]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\etScan.sys -- [2008.01.31 12:18:57 | 000,006,528 | ---- | M] (eMPIA Technology, Inc.)
"DisplayName" = ET USB Still Image Capture Device
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ScanUSBET\Enum]
"0" = USB\VID_04F2&PID_B033&MI_00\6&3a4885d&0&0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SCardSvr]
"DisplayName" = @%SystemRoot%\System32\SCardSvr.dll,-1
"Group" = SmartCardGroup
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\SCardSvr.dll,-5
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = PlugPlay [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeChangeNo [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SCardSvr\Parameters]
"ServiceDll" = %SystemRoot%\System32\SCardSvr.dll -- [2009.04.11 07:28:24 | 000,095,232 | ---- | M] (Microsoft Corporation)
"ServiceMain" = CalaisMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SCardSvr\Security]
"Security" = 01 00 14 90 90 00 00 00 A0 00 00 00 14 00 00 00 34 00 00 00 02 00 20 00 01 00 00 00 02 C0 18 00 00 00 0C 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 02 00 5C 00 04 00 00 00 00 02 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Schedule]
"AtTaskMaxHours" = 72
"DisplayName" = @%SystemRoot%\system32\schedsvc.dll,-100
"Group" = SchedulerGroup
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\schedsvc.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RPCSSEventLog [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeIncreaseQuotaPrivilegeSeChangeN [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Schedule\Parameters]
"ServiceDll" = %systemroot%\system32\schedsvc.dll -- [2010.11.04 19:55:12 | 000,601,600 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = ServiceMain
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Schedule\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 DD 01 0E 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 8D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SCPolicySvc]
"DisplayName" = @%SystemRoot%\System32\certprop.dll,-13
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\certprop.dll,-14
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeTcbPrivi [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SCPolicySvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\certprop.dll -- [2009.04.11 07:28:18 | 000,040,448 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ScPolicyServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SCPolicySvc\Security]
"Security" = 01 00 14 90 90 00 00 00 A0 00 00 00 14 00 00 00 34 00 00 00 02 00 20 00 01 00 00 00 02 C0 18 00 00 00 0C 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 02 00 5C 00 04 00 00 00 00 02 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sdbus]
"Type" = 1
"ImagePath" = System32\DRIVERS\rasacd.sys -- [2008.01.21 03:24:19 | 000,011,776 | ---- | M] (Microsoft Corporation)
"DisplayName" = Remote Access Auto Connection Driver
"Group" = Streams Drivers
"Description" = Remote Access Auto Connection Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasAcd\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasAcd\Security]
"Security" = 01 00 14 88 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasAcd\Enum]
"0" = Root\LEGACY_RASACD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasAuto]
"DisplayName" = @%Systemroot%\system32\rasauto.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\rasauto.dll,-201
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RasManTapisrv [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeTcbPrivil [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasAuto\Parameters]
"ServiceDll" = %SystemRoot%\System32\rasauto.dll -- [2008.01.21 03:24:19 | 000,090,624 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasAuto\Security]
"Security" = 01 00 14 88 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Rasl2tp]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\rasl2tp.sys -- [2008.01.21 03:24:55 | 000,076,288 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32005
"Description" = @%systemroot%\system32\rascfg.dll,-32005
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Rasl2tp\Enum]
"0" = Root\MS_L2TPMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan]
"DisplayName" = @%Systemroot%\system32\rasmans.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\rasmans.dll,-201
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = TapisrvSstpSvc [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeIncreaseQ [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\Parameters]
"ServiceDll" = %SystemRoot%\System32\rasmans.dll -- [2009.04.11 07:28:24 | 000,262,144 | ---- | M] (Microsoft Corporation)
"Medias" = rastapi [binary data] -- [2009.04.11 07:28:24 | 000,069,632 | ---- | M] (Microsoft Corporation)
"CustomDLL" = [binary data]
"ServiceDllUnloadOnStop" = 1
"AllowL2TPWeakCrypto" = 0
"AllowPPTPWeakCrypto" = 0
"KeepRasConnections" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\Parameters\Quarantine]
"AutoRefreshEnabled" = 0
"AutoRefreshTimeout" = 25200000
"Enabled" = 1
"WorkItemTimeout" = 3000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP]
"MaxConfigure" = 10
"MaxFailure" = 10
"MaxReject" = 5
"MaxTerminate" = 2
"Multilink" = 0
"NegotiateTime" = 150
"RestartTimer" = 3
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP\ControlProtocols]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP\ControlProtocols\BuiltIn]
"Path" = %SystemRoot%\System32\rasppp.dll -- [2009.04.11 07:28:24 | 000,259,584 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP\ControlProtocols\Chap]
"Path" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP\EAP]
"Path" = %SystemRoot%\System32\rasppp.dll -- [2009.04.11 07:28:24 | 000,259,584 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP\EAP\13]
"FriendlyName" = @%SystemRoot%\system32\rastls.dll,-2001 -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"Path" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"ConfigCLSID" = {58AB2366-D597-11d1-B90E-00C04FC9B263}
"ConfigUiPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"IdentityPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InteractiveUIPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InvokePasswordDialog" = 0
"InvokeUsernameDialog" = 0
"MPPEEncryptionSupported" = 1
"NoRootRevocationCheck" = 1
"PerPolicyConfig" = 1
"RolesSupported" = 3
"StandaloneSupported" = 0
"Properties" = 7133359
"" = Microsoft
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP\EAP\25]
"FriendlyName" = @%SystemRoot%\system32\rastls.dll,-2002 -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"Path" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"ConfigCLSID" = {58AB2366-D597-11d1-B90E-00C04FC9B263}
"ConfigUiPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"IdentityPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InteractiveUIPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InvokePasswordDialog" = 0
"InvokeUsernameDialog" = 0
"MPPEEncryptionSupported" = 1
"NoRootRevocationCheck" = 1
"PerPolicyConfig" = 1
"RolesSupported" = 35
"StandaloneSupported" = 1
"Properties" = 8321215
"" = Microsoft
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\PPP\EAP\26]
"FriendlyName" = @%SystemRoot%\system32\raschap.dll,-2002 -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"Path" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"ConfigCLSID" = {2af6bcaa-f526-4803-aeb8-5777ce386647}
"ConfigUiPath" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"IdentityPath" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"InteractiveUIPath" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"InvokePasswordDialog" = 0
"InvokeUsernameDialog" = 0
"MPPEEncryptionSupported" = 1
"PerPolicyConfig" = 1
"RolesSupported" = 23
"StandaloneSupported" = 1
"Properties" = 7094382
"" = Microsoft
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasMan\Security]
"Security" = 01 00 14 88 64 00 00 00 70 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 34 00 02 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasPppoe]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\raspppoe.sys -- [2009.04.11 05:46:30 | 000,041,472 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32007
"Description" = @%systemroot%\system32\rascfg.dll,-32007
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasPppoe\Linkage]
"Bind" = \Device\{DB5A0E6A-4A5D-47A0-8E63-B [Binary data over 200 bytes]
"Route" = "{DB5A0E6A-4A5D-47A0-8E63-B3C6DAAC [Binary data over 200 bytes]
"Export" = \Device\RasPppoe_{DB5A0E6A-4A5D-47 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasPppoe\Enum]
"0" = Root\MS_PPPOEMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasSstp]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\rassstp.sys -- [2009.04.11 05:46:40 | 000,069,120 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\sstpsvc.dll,-202
"Description" = @%systemroot%\system32\sstpsvc.dll,-202
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RasSstp\Enum]
"0" = Root\MS_SSTPMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\rdbss]
"DisplayName" = Redirected Buffering Sub Sysytem
"Group" = Network
"ImagePath" = system32\DRIVERS\rdbss.sys -- [2009.04.11 05:14:29 | 000,225,280 | ---- | M] (Microsoft Corporation)
"Description" = Provides the framework for network mini-redirectors
"ErrorControl" = 1
"Start" = 1
"Tag" = 4
"Type" = 2
"DependOnService" = Mup [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\rdbss\Enum]
"0" = Root\LEGACY_RDBSS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPCDD]
"DisplayName" = RDPCDD
"Group" = Video Save
"ImagePath" = System32\DRIVERS\RDPCDD.sys -- [2008.01.21 03:24:06 | 000,006,144 | ---- | M] (Microsoft Corporation)
"Description" = RDPDD Chained DD
"ErrorControl" = 0
"Start" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPCDD\Device0]
"Device Description" = RDPDD Chained DD -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"InstalledDisplayDrivers" = RDPDD [binary data] -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"MirrorDriver" = 1
"VgaCompatible" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPCDD\Video]
"VideoID" = {DEB039CC-B704-4F53-B43E-9DD4432FA2E9}
"Service" = RDPCDD
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPCDD\Enum]
"0" = Root\LEGACY_RDPCDD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPDD]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPDD\Device0]
"Attach.RelativeX" = 0
"Attach.RelativeY" = 0
"Attach.ToDesktop" = 1
"DefaultSettings.XResolution" = 800
"DefaultSettings.YResolution" = 600
"Device Description" = RDPDD Chained DD -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"InstalledDisplayDrivers" = RDPDD [binary data] -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"VgaCompatible" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\rdpdr]
"DisplayName" = Terminal Server Device Redirector Driver
"ImagePath" = \SystemRoot\system32\drivers\rdpdr.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPENCDD]
"DisplayName" = RDP Encoder Mirror Driver
"Group" = Video Save
"ImagePath" = system32\drivers\rdpencdd.sys -- [2008.01.21 03:24:50 | 000,006,144 | ---- | M] (Microsoft Corporation)
"Description" = RDP Encoder Mirror Driver
"ErrorControl" = 0
"Start" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPENCDD\Device0]
"Device Description" = RDP Encoder Mirror Driver
"InstalledDisplayDrivers" = RDPENCDD [binary data] -- [2008.01.21 03:24:50 | 000,118,272 | ---- | M] (Microsoft Corporation)
"MirrorDriver" = 1
"VgaCompatible" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPENCDD\Video]
"VideoID" = {42cf9257-1d96-4c9d-87f3-0d8e74595f78}
"Service" = RDPENCDD -- [2008.01.21 03:24:50 | 000,118,272 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPENCDD\Enum]
"0" = Root\LEGACY_RDPENCDD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPNP]
"Description" = @%systemroot%\system32\drprov.dll,-101
"DisplayName" = @%systemroot%\system32\drprov.dll,-100
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPNP\NetworkProvider]
"DeviceName" = \Device\RdpDr
"Name" = Microsoft Terminal Services
"DisplayName" = @%systemroot%\system32\drprov.dll,-100
"ProviderPath" = %SystemRoot%\System32\drprov.dll -- [2006.11.02 10:46:04 | 000,017,920 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RDPWD]
"DisplayName" = RDP Winstation Driver
"ErrorControl" = 0
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess]
"DisplayName" = @%Systemroot%\system32\mprdim.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\mprdim.dll,-201
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 4
"Type" = 32
"DependOnGroup" = NetBIOSGroup [binary data]
"DependOnService" = RpcSSRasManbfe [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeLoadDriv [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
"ConfigurationFlags" = 0
"" =
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Accounting]
"AccountSessionIdStart" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Accounting\Providers]
"ActiveProvider" = {1AA7F846-C7F5-11D0-A376-00C04FC9DA04}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Accounting\Providers\{1AA7F840-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid" = {1AA7F840-C7F5-11D0-A376-00C04FC9DA04}
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-202
"VendorName" = Microsoft
"ProviderTypeGUID" = {76560D00-2BFD-11d2-9539-3078302C2030}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Accounting\Providers\{1AA7F846-C7F5-11D0-A376-00C04FC9DA04}]
"Path" = %SystemRoot%\System32\mprddm.dll -- [2008.01.21 03:24:48 | 000,104,960 | ---- | M] (Microsoft Corporation)
"ConfigClsid" =
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-203
"ProviderTypeGUID" = {76560D81-2BFD-11d2-9539-3078302C2030}
"VendorName" = Microsoft
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Authentication]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Authentication\Providers]
"ActiveProvider" = {1AA7F841-C7F5-11D0-A376-00C04FC9DA04}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Authentication\Providers\{1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid" = {1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-201
"VendorName" = Microsoft
"ProviderTypeGUID" = {76560D00-2BFD-11d2-9539-3078302C2030}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Authentication\Providers\{1AA7F841-C7F5-11D0-A376-00C04FC9DA04}]
"Path" = %SystemRoot%\System32\mprddm.dll -- [2008.01.21 03:24:48 | 000,104,960 | ---- | M] (Microsoft Corporation)
"ConfigClsid" =
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-200
"VendorName" = Microsoft
"ProviderTypeGUID" = {76560D01-2BFD-11d2-9539-3078302C2030}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\DemandDialManager]
"DllPath" = %SystemRoot%\System32\mprddm.dll -- [2008.01.21 03:24:48 | 000,104,960 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces]
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\0]
"InterfaceName" = Zpětná smyčka
"Type" = 5
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\0\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\0\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\1]
"InterfaceName" = Vnitřní
"Type" = 4
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\1\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\1\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\2]
"InterfaceName" = {DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\2\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\2\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\3]
"InterfaceName" = {1E26EC88-A56D-4921-A26F-BE842C7AD246}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\3\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\3\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\4]
"InterfaceName" = {3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\4\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\4\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\5]
"InterfaceName" = {24930843-A943-4314-AA1C-FC23C28C2A26}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\5\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\5\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\6]
"InterfaceName" = {D51F2DDE-409B-4945-8CE3-E679E832F0D6}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\6\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Interfaces\6\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Parameters]
"ServiceDLL" = %SystemRoot%\System32\mprdim.dll -- [2008.01.21 03:24:20 | 000,068,608 | ---- | M] (Microsoft Corporation)
"QuarantineInstalled" = 1
"LoggingFlags" = 2
"ServerFlags" = 8398338
"ServiceDllUnloadOnStop" = 1
"Stamp" = 0
"UsersConfigured" = 0
"RouterType" = 7
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Parameters\Ip]
"AllowNetworkAccess" = 1
"EnableIn" = 1
"EnableRoute" = 1
"IpAddress" = 0.0.0.0
"IpMask" = 0.0.0.0
"UseDhcpAddressing" = 1
"EnableNetbtBcastFwd" = 1
"AllowClientIpAddresses" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Parameters\Ipv6]
"AllowNetworkAccess" = 1
"EnableIn" = 0
"EnableRoute" = 1
"UseDhcpAddressing" = 0
"AdvertiseDefaultRoute" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Parameters\Nbf]
"AllowNetworkAccess" = 1
"EnableIn" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Performance]
"Library" = rasctrs.dll -- [2008.01.21 03:24:23 | 000,015,360 | ---- | M] (Microsoft Corporation)
"Open" = OpenRasPerformanceData
"Close" = CloseRasPerformanceData
"Collect" = CollectRasPerformanceData
"InstallType" = 1
"PerfIniFile" = rasctrs.ini
"First Counter" = 1868
"Last Counter" = 1906
"First Help" = 1869
"Last Help" = 1907
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy]
"Allow LM Authentication" = 0
"ProductDir" = %SystemRoot%\System32\IAS -- [2008.01.21 03:34:27 | 000,000,000 | ---D | M]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\01]
"" = IAS.ProxyPolicyEnforcer
"Requests" = 0 1 2
"Responses" = 0 1 2 3 4
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\02]
"" = IAS.Realm
"Providers" = 1
"Requests" = 0 1
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\03]
"" = IAS.Realm
"Requests" = 0 1
"Responses" = 0
"Providers" = 0 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\04]
"" = IAS.NTSamNames
"Providers" = 1
"Responses" = 0
"Requests" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\05]
"" = IAS.CRPBasedEAP
"Providers" = 1
"Requests" = 0 2
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\06]
"" = IAS.Realm
"Providers" = 1
"Requests" = 0
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\07]
"" = IAS.NTSamNames
"Providers" = 1
"Requests" = 0
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\08]
"" = IAS.MachineNameMapper
"Providers" = 1
"Requests" = 0
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\09]
"" = IAS.BaseCampHost
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\10]
"" = IAS.RadiusProxy
"Providers" = 2
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\11]
"" = IAS.ExternalAuthNames
"Providers" = 2
"Requests" = 0
"Responses" = 1
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\12]
"" = IAS.NTSamAuthentication
"Requests" = 0
"Responses" = 0 1 2
"Providers" = 1
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\13]
"" = IAS.UserAccountValidation
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\14]
"" = IAS.MachineAccountValidation
"Providers" = 1
"Requests" = 0
"Responses" = 0 1
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\15]
"" = IAS.EAPIdentity
"Providers" = 1
"Requests" = 0
"Replays" = 0
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\16]
"" = IAS.QuarantineEvaluator
"Providers" = 1
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\17]
"" = IAS.PolicyEnforcer
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\18]
"" = IAS.NTSamPerUser
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\19]
"" = IAS.URHandler
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\20]
"" = IAS.RAPBasedEAP
"Providers" = 1
"Requests" = 0 2
"Replays" = 0
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\21]
"" = IAS.PostEapRestrictions
"Providers" = 0 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\22]
"" = IAS.PostQuarantineEvaluator
"Providers" = 1
"Requests" = 0
"Replays" = 0
"Responses" = 1 2 5
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\23]
"" = IAS.ChangePassword
"Providers" = 1
"Requests" = 0
"Replays" = 0
"Responses" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\24]
"" = IAS.AuthorizationHost
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\25]
"" = IAS.EAPTerminator
"Providers" = 0 1
"Requests" = 0 2
"Replays" = 0
"Responses" = 1 2 3 5
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\26]
"" = IAS.Accounting
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\27]
"" = IAS.DatabaseAccounting
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\28]
"" = IAS.MSChapErrorReporter
"Providers" = 0 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\RouterManagers]
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\RouterManagers\Ip]
"ProtocolId" = 33
"GlobalInfo" = 01 00 00 00 78 00 00 00 02 00 00 00 03 00 FF FF 08 00 00 00 01 00 00 00 30 00 00 00 06 00 FF FF 34 00 00 00 01 00 00 00 38 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 03 00 00 00 0A 00 00 00 16 27 00 00 03 00 00 00 17 27 00 00 05 00 00 00 12 27 00 00 07 00 00 00 08 00 00 00 78 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"DLLPath" = %SystemRoot%\System32\iprtrmgr.dll -- [2008.01.21 03:24:20 | 000,252,416 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\RouterManagers\Ipv6]
"ProtocolId" = 87
"GlobalInfo" = 01 00 00 00 78 00 00 00 02 00 00 00 03 00 FF FF 08 00 00 00 01 00 00 00 30 00 00 00 06 00 FF FF 34 00 00 00 01 00 00 00 38 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 16 27 00 00 03 00 00 00 17 27 00 00 05 00 00 00 12 27 00 00 07 00 00 00 03 00 00 00 0A 00 00 00 08 00 00 00 78 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"DLLPath" = %SystemRoot%\System32\iprtrmgr.dll -- [2008.01.21 03:24:20 | 000,252,416 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\RoutingTableManager]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\RoutingTableManager\Instance 00000]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\RoutingTableManager\Instance 00000\AddressFamily 00002]
"AddressSize" = 4
"MaxChangeNotifyRegistrations" = 16
"MaxHandlesReturnedInEnum" = 25
"MaxNextHopsInRoute" = 3
"MaxOpaqueInfoPointers" = 5
"ViewsSupported" = 3
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\RoutingTableManager\Instance 00000\AddressFamily 00023]
"AddressSize" = 16
"MaxChangeNotifyRegistrations" = 16
"MaxHandlesReturnedInEnum" = 25
"MaxNextHopsInRoute" = 3
"MaxOpaqueInfoPointers" = 5
"ViewsSupported" = 3
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteAccess\Security]
"Security" = 01 00 14 88 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteRegistry]
"DisplayName" = @regsvc.dll,-1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k regsvc -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @regsvc.dll,-2
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RemoteRegistry\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\system32\regsvc.dll -- [2009.04.11 07:28:24 | 000,107,008 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RFCOMM]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 10
"ImagePath" = system32\DRIVERS\rfcomm.sys -- [2009.04.11 05:43:12 | 000,148,992 | ---- | M] (Microsoft Corporation)
"DisplayName" = Zařízení Bluetooth (RFCOMM protokol TDI)
"Group" = PNP_TDI
"Description" = Zařízení Bluetooth (RFCOMM protokol TDI)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RFCOMM\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RFCOMM\Parameters\Winsock]
"HelperDllName" = %SystemRoot%\System32\wshBth.dll -- [2009.04.11 07:28:26 | 000,034,304 | ---- | M] (Microsoft Corporation)
"MaxSockAddrLength" = 50
"MinSockAddrLength" = 28
"Mapping" = 04 00 00 00 03 00 00 00 20 00 00 00 01 00 00 00 00 01 00 00 20 00 00 00 00 00 00 00 00 01 00 00 20 00 00 00 01 00 00 00 03 00 00 00 20 00 00 00 00 00 00 00 03 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RpcLocator]
"DisplayName" = @%systemroot%\system32\Locator.exe,-2
"ImagePath" = %SystemRoot%\system32\locator.exe -- [2006.11.02 10:45:21 | 000,007,680 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\Locator.exe,-3
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RpcSs]
"DisplayName" = @oleres.dll,-5010
"Group" = COM Infrastructure
"ImagePath" = %SystemRoot%\system32\svchost.exe -k rpcss -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @oleres.dll,-5011
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = DcomLaunch [binary data]
"FailureActions" = 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 02 00 00 00 60 EA 00 00 [binary data]
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"ServiceSidType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RpcSs\Parameters]
"ServiceDll" = %SystemRoot%\system32\rpcss.dll -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\RpcSs\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 00 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 85 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 FF 00 0E 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FD 00 0E 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 95 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\rspndr]
"Type" = 1
"Start" = 2
"ErrorControl" = 1
"Tag" = 14
"ImagePath" = system32\DRIVERS\rspndr.sys -- [2008.01.21 03:24:37 | 000,060,416 | ---- | M] (Microsoft Corporation)
"DisplayName" = Link-Layer Topology Discovery Responder
"Group" = NDIS
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\rspndr\Linkage]
"Bind" = \Device\{DB5A0E6A-4A5D-47A0-8E63-B [Binary data over 200 bytes]
"Route" = "{DB5A0E6A-4A5D-47A0-8E63-B3C6DAAC [Binary data over 200 bytes]
"Export" = \Device\rspndr_{DB5A0E6A-4A5D-47A0 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\rspndr\Enum]
"0" = Root\LEGACY_RSPNDR\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SamSs]
"Description" = @%SystemRoot%\system32\samsrv.dll,-2
"DisplayName" = @%SystemRoot%\system32\samsrv.dll,-1
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\lsass.exe -- [2011.11.16 15:12:25 | 000,009,728 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"Start" = 2
"Type" = 32
"Group" = MS_WindowsLocalValidation
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SamSs\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 8D 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sbp2port]
"DisplayName" = SBP-2 Transport/Protocol Bus Driver
"ImagePath" = \SystemRoot\system32\drivers\sbp2port.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ScanUSBET]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\etScan.sys -- [2008.01.31 12:18:57 | 000,006,528 | ---- | M] (eMPIA Technology, Inc.)
"DisplayName" = ET USB Still Image Capture Device
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ScanUSBET\Enum]
"0" = USB\VID_04F2&PID_B033&MI_00\6&3a4885d&0&0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SCardSvr]
"DisplayName" = @%SystemRoot%\System32\SCardSvr.dll,-1
"Group" = SmartCardGroup
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\SCardSvr.dll,-5
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = PlugPlay [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeChangeNo [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SCardSvr\Parameters]
"ServiceDll" = %SystemRoot%\System32\SCardSvr.dll -- [2009.04.11 07:28:24 | 000,095,232 | ---- | M] (Microsoft Corporation)
"ServiceMain" = CalaisMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SCardSvr\Security]
"Security" = 01 00 14 90 90 00 00 00 A0 00 00 00 14 00 00 00 34 00 00 00 02 00 20 00 01 00 00 00 02 C0 18 00 00 00 0C 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 02 00 5C 00 04 00 00 00 00 02 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Schedule]
"AtTaskMaxHours" = 72
"DisplayName" = @%SystemRoot%\system32\schedsvc.dll,-100
"Group" = SchedulerGroup
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\schedsvc.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RPCSSEventLog [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeIncreaseQuotaPrivilegeSeChangeN [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Schedule\Parameters]
"ServiceDll" = %systemroot%\system32\schedsvc.dll -- [2010.11.04 19:55:12 | 000,601,600 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = ServiceMain
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Schedule\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 DD 01 0E 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 8D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SCPolicySvc]
"DisplayName" = @%SystemRoot%\System32\certprop.dll,-13
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\certprop.dll,-14
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeTcbPrivi [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SCPolicySvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\certprop.dll -- [2009.04.11 07:28:18 | 000,040,448 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ScPolicyServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SCPolicySvc\Security]
"Security" = 01 00 14 90 90 00 00 00 A0 00 00 00 14 00 00 00 34 00 00 00 02 00 20 00 01 00 00 00 02 C0 18 00 00 00 0C 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 02 00 5C 00 04 00 00 00 00 02 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sdbus]
"Type" = 1
Re: policie čr prosim o radu
"Start" = 4
"ErrorControl" = 1
"Tag" = 16
"ImagePath" = system32\DRIVERS\sdbus.sys -- [2008.01.21 03:23:21 | 000,088,576 | ---- | M] (Microsoft Corporation)
"Group" = System Bus Extender
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sdbus\Parameters]
"SdCmdFlags" = 06 01 09 19 0A 19 0D 11 10 01 11 01 12 01 18 05 19 05 19 01 1A 01 1B 01 1C 01 20 05 21 05 26 05 2A 01 34 02 35 02 37 01 38 01 22 01 23 05 24 01 25 01 [binary data]
"SdAppCmdFlags" = 06 01 0D 01 16 01 17 01 33 01 12 01 19 01 1A 01 26 01 2B 01 2C 01 2D 01 2E 01 2F 01 30 01 31 01 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SDRSVC]
"DisplayName" = @%SystemRoot%\system32\sdrsvc.dll,-107
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k SDRSVC -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 16
"Description" = @%SystemRoot%\system32\sdrsvc.dll,-102
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = localSystem
"ServiceSidType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SDRSVC\Parameters]
"ServiceDll" = %Systemroot%\System32\SDRSVC.dll -- [2008.01.21 03:23:27 | 000,104,960 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SeaPort]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe" -- [2010.07.27 14:46:08 | 000,249,136 | ---- | M] (Microsoft Corporation)
"DisplayName" = SeaPort
"ObjectName" = LocalSystem
"Description" = Enables the detection, download and installation of up-to-date configuration files for Microsoft Search Enhancement applications. Also provides server communication for the customer experience improvement program. If this service is disabled, search enhancement features such as search history may not work correctly.
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\secdrv]
"DisplayName" = Security Driver
"ErrorControl" = 1
"Start" = 2
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\secdrv\Security]
"Security" = 01 00 14 80 8C 00 00 00 98 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 5C 00 04 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\secdrv\Enum]
"0" = Root\LEGACY_SECDRV\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\seclogon]
"DisplayName" = @%SystemRoot%\system32\seclogon.dll,-7001
"ImagePath" = %windir%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\seclogon.dll,-7000
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"RequiredPrivileges" = SeTcbPrivilegeSeRestorePrivilege [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\seclogon\Parameters]
"ServiceDll" = %windir%\system32\seclogon.dll -- [2008.01.21 03:24:35 | 000,019,968 | ---- | M] (Microsoft Corporation)
"ServiceMain" = SvcEntry_Seclogon
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SENS]
"DisplayName" = @%SystemRoot%\system32\Sens.dll,-200
"Group" = ProfSvc_Group
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\Sens.dll,-201
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = EventSystem [binary data]
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SENS\Parameters]
"ServiceDll" = %SystemRoot%\System32\sens.dll -- [2008.01.21 03:24:44 | 000,047,104 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SENS\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Serenum]
"DisplayName" = Serenum Filter Driver
"Group" = PNP Filter
"ImagePath" = \SystemRoot\system32\drivers\serenum.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Serial]
"DisplayName" = Serial Port Driver
"Group" = Extended base
"ImagePath" = \SystemRoot\system32\drivers\serial.sys
"ErrorControl" = 0
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sermouse]
"DisplayName" = Serial Mouse Driver
"Group" = Pointer Port
"ImagePath" = \SystemRoot\system32\drivers\sermouse.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ServiceLayer]
"Type" = 272
"Start" = 3
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\PC Connectivity Solution\ServiceLayer.exe" -- [2007.03.26 12:06:24 | 000,292,864 | ---- | M] (Nokia.)
"DisplayName" = ServiceLayer
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ServiceModelEndpoint 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ServiceModelEndpoint 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 655362726963206553665536272696 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = CallsCalls Per SecondCalls Outst [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _ServiceModelEndpointPerfCounters_D.ini
"First Counter" = 4302
"Last Counter" = 4340
"First Help" = 4303
"Last Help" = 4341
"Object List" = 4302
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ServiceModelOperation 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ServiceModelOperation 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 655362726963206553665536272696 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = CallsCalls Per SecondCalls Outst [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _ServiceModelOperationPerfCounters_D.ini
"First Counter" = 4040
"Last Counter" = 4070
"First Help" = 4041
"Last Help" = 4071
"Object List" = 4040
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ServiceModelService 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ServiceModelService 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 655362726963206553665536272696 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = CallsCalls Per SecondCalls Outst [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _ServiceModelServicePerfCounters_D.ini
"First Counter" = 4100
"Last Counter" = 4166
"First Help" = 4101
"Last Help" = 4167
"Object List" = 4100
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SessionEnv]
"DisplayName" = @%SystemRoot%\System32\SessEnv.dll,-1026
"ImagePath" = %SystemRoot%\System32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\SessEnv.dll,-1027
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RPCSSLanmanWorkstation [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 60 EA 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SessionEnv\Parameters]
"ServiceDLL" = %SystemRoot%\system32\sessenv.dll -- [2008.01.21 03:24:55 | 000,084,992 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SessionEnv\Security]
"Security" = 01 00 14 88 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 30 00 00 00 01 06 00 00 00 00 00 05 50 00 00 00 66 34 96 1A B9 AA F1 5C 19 30 12 F8 95 CE 48 74 A0 FD 4E 30 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sffdisk]
"DisplayName" = SFF Storage Class Driver
"ImagePath" = \SystemRoot\system32\drivers\sffdisk.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sffp_mmc]
"DisplayName" = SFF Storage Protocol Driver for MMC
"ImagePath" = \SystemRoot\system32\drivers\sffp_mmc.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sffp_mmc\Parameters]
"SdCmdFlags" = 09 01 0A 01 0D 01 20 01 21 01 26 01 22 01 23 01 24 01 25 01 32 01 39 01 [binary data]
"SdAppCmdFlags" = 0D 01 12 01 19 01 1A 01 26 01 2B 01 2C 01 2D 01 2E 01 2F 01 30 01 31 01 33 01 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sffp_sd]
"DisplayName" = SFF Storage Protocol Driver for SDBus
"ImagePath" = \SystemRoot\system32\drivers\sffp_sd.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sffp_sd\Parameters]
"SdCmdFlags" = 09 01 0A 01 0D 01 20 01 21 01 26 01 22 01 23 01 24 01 25 01 32 01 39 01 [binary data]
"SdAppCmdFlags" = 0D 01 12 01 19 01 1A 01 26 01 2B 01 2C 01 2D 01 2E 01 2F 01 30 01 31 01 33 01 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sfloppy]
"AutoRun" = 0
"DisplayName" = High-Capacity Floppy Disk Drive
"ImagePath" = system32\DRIVERS\sfloppy.sys -- [2008.01.21 03:23:20 | 000,013,312 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess]
"DisplayName" = @%SystemRoot%\system32\ipnathlp.dll,-106
"ImagePath" = %SystemRoot%\System32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\ipnathlp.dll,-107
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = NetmanWinMgmtRasManBFE [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy]
"IPSecExempt" = 1
"DisableStatefulFTP" = 0
"DisableStatefulPPTP" = 0
"PolicyVersion" = 513
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\DomainProfile\Logging]
"LogFileSize" = 4096
"LogFilePath" = %systemroot%\system32\LogFiles\Firewall\pfirewall.log -- [2008.01.21 03:57:52 | 000,594,772 | ---- | M] ()
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\FirewallRules]
"PerfLogsAlerts-PLASrv-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\plasrv.exe|Name=@PlaSrv.exe,-10000|Desc=@PlaSrv.exe,-10001|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"PerfLogsAlerts-DCOM-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=135|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\svchost.exe|Svc=rpcss|Name=@PlaSrv.exe,-10002|Desc=@PlaSrv.exe,-10003|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"PerfLogsAlerts-PLASrv-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%systemroot%\system32\plasrv.exe|Name=@PlaSrv.exe,-10000|Desc=@PlaSrv.exe,-10001|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"PerfLogsAlerts-DCOM-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=135|App=%systemroot%\system32\svchost.exe|Svc=rpcss|Name=@PlaSrv.exe,-10002|Desc=@PlaSrv.exe,-10003|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"WMP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31003|Desc=@FirewallAPI.dll,-31006|EmbedCtxt=@FirewallAPI.dll,-31002|Edge=FALSE|
"WMP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31007|Desc=@FirewallAPI.dll,-31010|EmbedCtxt=@FirewallAPI.dll,-31002|Edge=FALSE|
"WMP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31011|Desc=@FirewallAPI.dll,-31014|EmbedCtxt=@FirewallAPI.dll,-31002|Edge=FALSE|
"WMPNSS-QWave-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31253|Desc=@FirewallAPI.dll,-31256|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31257|Desc=@FirewallAPI.dll,-31260|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31261|Desc=@FirewallAPI.dll,-31264|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31265|Desc=@FirewallAPI.dll,-31268|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=10243|App=System|Name=@FirewallAPI.dll,-31285|Desc=@FirewallAPI.dll,-31288|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=10243|App=System|Name=@FirewallAPI.dll,-31289|Desc=@FirewallAPI.dll,-31292|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31293|Desc=@FirewallAPI.dll,-31296|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31297|Desc=@FirewallAPI.dll,-31300|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31301|Desc=@FirewallAPI.dll,-31304|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31305|Desc=@FirewallAPI.dll,-31308|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31309|Desc=@FirewallAPI.dll,-31312|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31313|Desc=@FirewallAPI.dll,-31316|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31317|Desc=@FirewallAPI.dll,-31320|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31253|Desc=@FirewallAPI.dll,-31256|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31257|Desc=@FirewallAPI.dll,-31260|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31261|Desc=@FirewallAPI.dll,-31264|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31265|Desc=@FirewallAPI.dll,-31268|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ssdpsrv|Name=@FirewallAPI.dll,-31269|Desc=@FirewallAPI.dll,-31272|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ssdpsrv|Name=@FirewallAPI.dll,-31273|Desc=@FirewallAPI.dll,-31276|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31277|Desc=@FirewallAPI.dll,-31280|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31281|Desc=@FirewallAPI.dll,-31284|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=10243|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31285|Desc=@FirewallAPI.dll,-31288|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=10243|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31289|Desc=@FirewallAPI.dll,-31292|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31293|Desc=@FirewallAPI.dll,-31296|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31297|Desc=@FirewallAPI.dll,-31300|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31301|Desc=@FirewallAPI.dll,-31304|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31305|Desc=@FirewallAPI.dll,-31308|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31309|Desc=@FirewallAPI.dll,-31312|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31313|Desc=@FirewallAPI.dll,-31316|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31317|Desc=@FirewallAPI.dll,-31320|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-31321|Desc=@FirewallAPI.dll,-31322|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"MCX-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30753|Desc=@FirewallAPI.dll,-30756|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30757|Desc=@FirewallAPI.dll,-30760|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=554|LPort=8554|LPort=8555|LPort=8556|LPort=8557|LPort=8558|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30761|Desc=@FirewallAPI.dll,-30764|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30765|Desc=@FirewallAPI.dll,-30768|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30769|Desc=@FirewallAPI.dll,-30772|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30773|Desc=@FirewallAPI.dll,-30776|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30777|Desc=@FirewallAPI.dll,-30780|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30781|Desc=@FirewallAPI.dll,-30784|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-HTTPSTR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=10244|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30785|Desc=@FirewallAPI.dll,-30788|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-HTTPSTR-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=10244|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30789|Desc=@FirewallAPI.dll,-30792|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-TERMSRV-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=3390|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30793|Desc=@FirewallAPI.dll,-30796|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=7777|LPort=7778|LPort=7779|LPort=7780|LPort=7781|LPort=5004|LPort=5005|LPort=50004|LPort=50005|LPort=50006|LPort=50007|LPort=50008|LPort=50009|LPort=50010|LPort=50011|LPort=50012|LPort=50013|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30801|Desc=@FirewallAPI.dll,-30804|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30805|Desc=@FirewallAPI.dll,-30808|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-MCX2SVC-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=mcx2svc|Name=@FirewallAPI.dll,-30810|Desc=@FirewallAPI.dll,-30811|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-Prov-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\mcx2prov.exe|Name=@FirewallAPI.dll,-30812|Desc=@FirewallAPI.dll,-30813|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"WinCollab-DFSR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=5722|App=%SystemRoot%\system32\dfsr.exe|Svc=Dfsr|Name=@FirewallAPI.dll,-32253|Desc=@FirewallAPI.dll,-32256|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"WinCollab-DFSR-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=5722|App=%SystemRoot%\system32\dfsr.exe|Svc=Dfsr|Name=@FirewallAPI.dll,-32257|Desc=@FirewallAPI.dll,-32260|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"WinCollab-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32261|Desc=@FirewallAPI.dll,-32264|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"WinCollab-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32265|Desc=@FirewallAPI.dll,-32268|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"WinCollab-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32269|Desc=@FirewallAPI.dll,-32272|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"WinCollab-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32273|Desc=@FirewallAPI.dll,-32276|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"WinCollab-P2P-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=3587|App=%SystemRoot%\system32\svchost.exe|Svc=P2PSvc|Name=@FirewallAPI.dll,-32277|Desc=@FirewallAPI.dll,-32280|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"WinCollab-P2P-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=3587|App=%SystemRoot%\system32\svchost.exe|Svc=P2PSvc|Name=@FirewallAPI.dll,-32281|Desc=@FirewallAPI.dll,-32284|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"RemoteAdmin-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=*|Name=@FirewallAPI.dll,-29753|Desc=@FirewallAPI.dll,-29756|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-NP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-29757|Desc=@FirewallAPI.dll,-29760|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29765|Desc=@FirewallAPI.dll,-29768|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=*|Name=@FirewallAPI.dll,-29753|Desc=@FirewallAPI.dll,-29756|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-NP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-29757|Desc=@FirewallAPI.dll,-29760|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29765|Desc=@FirewallAPI.dll,-29768|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"MsiScsi-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29003|Desc=@FirewallAPI.dll,-29006|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"MsiScsi-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29007|Desc=@FirewallAPI.dll,-29010|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"MsiScsi-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29003|Desc=@FirewallAPI.dll,-29006|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"MsiScsi-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29007|Desc=@FirewallAPI.dll,-29010|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"Collab-P2PHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32003|Desc=@FirewallAPI.dll,-32006|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=TRUE|
"Collab-P2PHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32007|Desc=@FirewallAPI.dll,-32010|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-P2PHost-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32011|Desc=@FirewallAPI.dll,-32014|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-P2PHost-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32015|Desc=@FirewallAPI.dll,-32018|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-PNRP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-32019|Desc=@FirewallAPI.dll,-32022|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=TRUE|
"Collab-PNRP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-32023|Desc=@FirewallAPI.dll,-32026|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-PNRP-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32027|Desc=@FirewallAPI.dll,-32030|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-PNRP-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32031|Desc=@FirewallAPI.dll,-32034|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"RVM-VDS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\vds.exe|Svc=vds|Name=@FirewallAPI.dll,-34502|Desc=@FirewallAPI.dll,-34503|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-VDSLDR-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\vdsldr.exe|Name=@FirewallAPI.dll,-34504|Desc=@FirewallAPI.dll,-34505|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-34506|Desc=@FirewallAPI.dll,-34507|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-VDS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\vds.exe|Svc=vds|Name=@FirewallAPI.dll,-34502|Desc=@FirewallAPI.dll,-34503|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-VDSLDR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\vdsldr.exe|Name=@FirewallAPI.dll,-34504|Desc=@FirewallAPI.dll,-34505|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-34506|Desc=@FirewallAPI.dll,-34507|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"WMI-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=135|App=%SystemRoot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-34252|Desc=@FirewallAPI.dll,-34253|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34254|Desc=@FirewallAPI.dll,-34255|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34258|Desc=@FirewallAPI.dll,-34259|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-ASYNC-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%systemroot%\system32\wbem\unsecapp.exe|Name=@FirewallAPI.dll,-34256|Desc=@FirewallAPI.dll,-34257|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=135|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-34252|Desc=@FirewallAPI.dll,-34253|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34254|Desc=@FirewallAPI.dll,-34255|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34258|Desc=@FirewallAPI.dll,-34259|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-ASYNC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\wbem\unsecapp.exe|Name=@FirewallAPI.dll,-34256|Desc=@FirewallAPI.dll,-34257|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"PNRPMNRS-PNRP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-34003|Desc=@FirewallAPI.dll,-34004|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=TRUE|
"PNRPMNRS-PNRP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-34005|Desc=@FirewallAPI.dll,-34006|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=FALSE|
"PNRPMNRS-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-34007|Desc=@FirewallAPI.dll,-34008|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=FALSE|
"PNRPMNRS-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-34009|Desc=@FirewallAPI.dll,-34010|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=FALSE|
"RemoteEventLogSvc-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=Eventlog|Name=@FirewallAPI.dll,-29253|Desc=@FirewallAPI.dll,-29256|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-NP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-29257|Desc=@FirewallAPI.dll,-29260|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29265|Desc=@FirewallAPI.dll,-29268|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Eventlog|Name=@FirewallAPI.dll,-29253|Desc=@FirewallAPI.dll,-29256|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-NP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-29257|Desc=@FirewallAPI.dll,-29260|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29265|Desc=@FirewallAPI.dll,-29268|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteSvcAdmin-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\services.exe|Name=@FirewallAPI.dll,-29503|Desc=@FirewallAPI.dll,-29506|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-NP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-29507|Desc=@FirewallAPI.dll,-29510|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29515|Desc=@FirewallAPI.dll,-29518|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\services.exe|Name=@FirewallAPI.dll,-29503|Desc=@FirewallAPI.dll,-29506|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-NP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-29507|Desc=@FirewallAPI.dll,-29510|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29515|Desc=@FirewallAPI.dll,-29518|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteFwAdmin-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=policyagent|Name=@FirewallAPI.dll,-30003|Desc=@FirewallAPI.dll,-30006|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"RemoteFwAdmin-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-30007|Desc=@FirewallAPI.dll,-30010|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"RemoteFwAdmin-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=policyagent|Name=@FirewallAPI.dll,-30003|Desc=@FirewallAPI.dll,-30006|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"RemoteFwAdmin-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-30007|Desc=@FirewallAPI.dll,-30010|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"BITSSVC-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=bits|Name=@FirewallAPI.dll,-28254|Desc=@FirewallAPI.dll,-28257|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=bits|Name=@FirewallAPI.dll,-28258|Desc=@FirewallAPI.dll,-28261|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2178|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28262|Desc=@FirewallAPI.dll,-28265|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=2178|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28266|Desc=@FirewallAPI.dll,-28269|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-RPC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=bits|Name=@FirewallAPI.dll,-28270|Desc=@FirewallAPI.dll,-28273|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-28274|Desc=@FirewallAPI.dll,-28277|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"RemoteTask-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=schedule|Name=@FirewallAPI.dll,-33253|Desc=@FirewallAPI.dll,-33256|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"RemoteTask-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33257|Desc=@FirewallAPI.dll,-33260|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"RemoteTask-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=schedule|Name=@FirewallAPI.dll,-33253|Desc=@FirewallAPI.dll,-33256|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"RemoteTask-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33257|Desc=@FirewallAPI.dll,-33260|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"MSDTC-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33503|Desc=@FirewallAPI.dll,-33506|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33507|Desc=@FirewallAPI.dll,-33510|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-KTMRM-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=ktmrm|Name=@FirewallAPI.dll,-33511|Desc=@FirewallAPI.dll,-33512|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33513|Desc=@FirewallAPI.dll,-33514|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33503|Desc=@FirewallAPI.dll,-33506|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33507|Desc=@FirewallAPI.dll,-33510|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-KTMRM-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ktmrm|Name=@FirewallAPI.dll,-33511|Desc=@FirewallAPI.dll,-33512|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33513|Desc=@FirewallAPI.dll,-33514|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"RemoteAssistance-RAServer-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\raserver.exe|Name=@FirewallAPI.dll,-33011|Desc=@FirewallAPI.dll,-33014|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-RAServer-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\raserver.exe|Name=@FirewallAPI.dll,-33015|Desc=@FirewallAPI.dll,-33018|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-DCOM-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-33035|Desc=@FirewallAPI.dll,-33036|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-In-TCP-EdgeScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Public|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33003|Desc=@FirewallAPI.dll,-33006|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=TRUE|
"RemoteAssistance-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Public|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33007|Desc=@FirewallAPI.dll,-33010|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33019|Desc=@FirewallAPI.dll,-33022|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33023|Desc=@FirewallAPI.dll,-33026|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33027|Desc=@FirewallAPI.dll,-33030|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33031|Desc=@FirewallAPI.dll,-33034|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-33037|Desc=@FirewallAPI.dll,-33038|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-In-TCP-EdgeScope-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33003|Desc=@FirewallAPI.dll,-33006|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=TRUE|
"RemoteAssistance-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33007|Desc=@FirewallAPI.dll,-33010|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33019|Desc=@FirewallAPI.dll,-33022|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33023|Desc=@FirewallAPI.dll,-33026|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33027|Desc=@FirewallAPI.dll,-33030|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33031|Desc=@FirewallAPI.dll,-33034|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnP-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-33037|Desc=@FirewallAPI.dll,-33038|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"WINRM-HTTP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=80|App=System|Name=@FirewallAPI.dll,-30253|Desc=@FirewallAPI.dll,-30256|EmbedCtxt=@FirewallAPI.dll,-30252|Edge=FALSE|
"WINRM-HTTP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=80|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30253|Desc=@FirewallAPI.dll,-30256|EmbedCtxt=@FirewallAPI.dll,-30252|Edge=FALSE|
"RRAS-L2TP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1701|App=System|Name=@FirewallAPI.dll,-33753|Desc=@FirewallAPI.dll,-33756|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"RRAS-L2TP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1701|App=System|Name=@FirewallAPI.dll,-33757|Desc=@FirewallAPI.dll,-33760|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"RRAS-PPTP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=1723|App=System|Name=@FirewallAPI.dll,-33765|Desc=@FirewallAPI.dll,-33768|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"RRAS-PPTP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=1723|App=System|Name=@FirewallAPI.dll,-33761|Desc=@FirewallAPI.dll,-33764|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"WPDMTP-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\wudfhost.exe|Name=@FirewallAPI.dll,-30503|Desc=@FirewallAPI.dll,-30506|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\wudfhost.exe|Name=@FirewallAPI.dll,-30503|Desc=@FirewallAPI.dll,-30506|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30507|Desc=@FirewallAPI.dll,-30510|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30511|Desc=@FirewallAPI.dll,-30514|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30515|Desc=@FirewallAPI.dll,-30518|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30519|Desc=@FirewallAPI.dll,-30522|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-30523|Desc=@FirewallAPI.dll,-30524|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"NetPres-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31761|Desc=@FirewallAPI.dll,-31764|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31765|Desc=@FirewallAPI.dll,-31768|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5357|App=System|Name=@FirewallAPI.dll,-31769|Desc=@FirewallAPI.dll,-31770|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5357|App=System|Name=@FirewallAPI.dll,-31771|Desc=@FirewallAPI.dll,-31772|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNTS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5358|App=System|Name=@FirewallAPI.dll,-31773|Desc=@FirewallAPI.dll,-31774|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNTS-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5358|App=System|Name=@FirewallAPI.dll,-31775|Desc=@FirewallAPI.dll,-31776|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31753|Desc=@FirewallAPI.dll,-31756|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31757|Desc=@FirewallAPI.dll,-31760|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31761|Desc=@FirewallAPI.dll,-31764|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31765|Desc=@FirewallAPI.dll,-31768|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31769|Desc=@FirewallAPI.dll,-31770|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31771|Desc=@FirewallAPI.dll,-31772|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNTS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31773|Desc=@FirewallAPI.dll,-31774|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNTS-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31775|Desc=@FirewallAPI.dll,-31776|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"Netlogon-NamedPipe-In" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=445|App=System|Name=@netlogon.dll,-1003|Desc=@netlogon.dll,-1006|EmbedCtxt=@netlogon.dll,-1010|Edge=FALSE|
"SNMPTRAP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=162|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@snmptrap.exe,-7|Desc=@snmptrap.exe,-8|EmbedCtxt=@snmptrap.exe,-3|Edge=FALSE|
"SNMPTRAP-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=162|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@snmptrap.exe,-7|Desc=@snmptrap.exe,-8|EmbedCtxt=@snmptrap.exe,-3|Edge=FALSE|
"SSTP-IN-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=443|App=System|Name=@sstpsvc.dll,-35002|Desc=@sstpsvc.dll,-35003|EmbedCtxt=@sstpsvc.dll,-35001|Edge=FALSE|
"NETDIS-UPnPHost-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=2869|App=System|Name=@FirewallAPI.dll,-32761|Desc=@FirewallAPI.dll,-32764|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=System|Name=@FirewallAPI.dll,-32765|Desc=@FirewallAPI.dll,-32768|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=137|App=System|Name=@FirewallAPI.dll,-32769|Desc=@FirewallAPI.dll,-32772|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=137|App=System|Name=@FirewallAPI.dll,-32773|Desc=@FirewallAPI.dll,-32776|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=138|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=138|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5358|App=System|Name=@FirewallAPI.dll,-32813|Desc=@FirewallAPI.dll,-32814|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5358|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5357|App=System|Name=@FirewallAPI.dll,-32817|Desc=@FirewallAPI.dll,-32818|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"ErrorControl" = 1
"Tag" = 16
"ImagePath" = system32\DRIVERS\sdbus.sys -- [2008.01.21 03:23:21 | 000,088,576 | ---- | M] (Microsoft Corporation)
"Group" = System Bus Extender
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sdbus\Parameters]
"SdCmdFlags" = 06 01 09 19 0A 19 0D 11 10 01 11 01 12 01 18 05 19 05 19 01 1A 01 1B 01 1C 01 20 05 21 05 26 05 2A 01 34 02 35 02 37 01 38 01 22 01 23 05 24 01 25 01 [binary data]
"SdAppCmdFlags" = 06 01 0D 01 16 01 17 01 33 01 12 01 19 01 1A 01 26 01 2B 01 2C 01 2D 01 2E 01 2F 01 30 01 31 01 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SDRSVC]
"DisplayName" = @%SystemRoot%\system32\sdrsvc.dll,-107
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k SDRSVC -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 16
"Description" = @%SystemRoot%\system32\sdrsvc.dll,-102
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = localSystem
"ServiceSidType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SDRSVC\Parameters]
"ServiceDll" = %Systemroot%\System32\SDRSVC.dll -- [2008.01.21 03:23:27 | 000,104,960 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SeaPort]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe" -- [2010.07.27 14:46:08 | 000,249,136 | ---- | M] (Microsoft Corporation)
"DisplayName" = SeaPort
"ObjectName" = LocalSystem
"Description" = Enables the detection, download and installation of up-to-date configuration files for Microsoft Search Enhancement applications. Also provides server communication for the customer experience improvement program. If this service is disabled, search enhancement features such as search history may not work correctly.
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\secdrv]
"DisplayName" = Security Driver
"ErrorControl" = 1
"Start" = 2
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\secdrv\Security]
"Security" = 01 00 14 80 8C 00 00 00 98 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 5C 00 04 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\secdrv\Enum]
"0" = Root\LEGACY_SECDRV\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\seclogon]
"DisplayName" = @%SystemRoot%\system32\seclogon.dll,-7001
"ImagePath" = %windir%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\seclogon.dll,-7000
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"RequiredPrivileges" = SeTcbPrivilegeSeRestorePrivilege [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\seclogon\Parameters]
"ServiceDll" = %windir%\system32\seclogon.dll -- [2008.01.21 03:24:35 | 000,019,968 | ---- | M] (Microsoft Corporation)
"ServiceMain" = SvcEntry_Seclogon
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SENS]
"DisplayName" = @%SystemRoot%\system32\Sens.dll,-200
"Group" = ProfSvc_Group
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\Sens.dll,-201
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = EventSystem [binary data]
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SENS\Parameters]
"ServiceDll" = %SystemRoot%\System32\sens.dll -- [2008.01.21 03:24:44 | 000,047,104 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SENS\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Serenum]
"DisplayName" = Serenum Filter Driver
"Group" = PNP Filter
"ImagePath" = \SystemRoot\system32\drivers\serenum.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Serial]
"DisplayName" = Serial Port Driver
"Group" = Extended base
"ImagePath" = \SystemRoot\system32\drivers\serial.sys
"ErrorControl" = 0
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sermouse]
"DisplayName" = Serial Mouse Driver
"Group" = Pointer Port
"ImagePath" = \SystemRoot\system32\drivers\sermouse.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ServiceLayer]
"Type" = 272
"Start" = 3
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\PC Connectivity Solution\ServiceLayer.exe" -- [2007.03.26 12:06:24 | 000,292,864 | ---- | M] (Nokia.)
"DisplayName" = ServiceLayer
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ServiceModelEndpoint 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ServiceModelEndpoint 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 655362726963206553665536272696 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = CallsCalls Per SecondCalls Outst [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _ServiceModelEndpointPerfCounters_D.ini
"First Counter" = 4302
"Last Counter" = 4340
"First Help" = 4303
"Last Help" = 4341
"Object List" = 4302
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ServiceModelOperation 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ServiceModelOperation 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 655362726963206553665536272696 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = CallsCalls Per SecondCalls Outst [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _ServiceModelOperationPerfCounters_D.ini
"First Counter" = 4040
"Last Counter" = 4070
"First Help" = 4041
"Last Help" = 4071
"Object List" = 4040
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ServiceModelService 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ServiceModelService 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 655362726963206553665536272696 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = CallsCalls Per SecondCalls Outst [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _ServiceModelServicePerfCounters_D.ini
"First Counter" = 4100
"Last Counter" = 4166
"First Help" = 4101
"Last Help" = 4167
"Object List" = 4100
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SessionEnv]
"DisplayName" = @%SystemRoot%\System32\SessEnv.dll,-1026
"ImagePath" = %SystemRoot%\System32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\SessEnv.dll,-1027
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RPCSSLanmanWorkstation [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 60 EA 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SessionEnv\Parameters]
"ServiceDLL" = %SystemRoot%\system32\sessenv.dll -- [2008.01.21 03:24:55 | 000,084,992 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SessionEnv\Security]
"Security" = 01 00 14 88 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 30 00 00 00 01 06 00 00 00 00 00 05 50 00 00 00 66 34 96 1A B9 AA F1 5C 19 30 12 F8 95 CE 48 74 A0 FD 4E 30 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sffdisk]
"DisplayName" = SFF Storage Class Driver
"ImagePath" = \SystemRoot\system32\drivers\sffdisk.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sffp_mmc]
"DisplayName" = SFF Storage Protocol Driver for MMC
"ImagePath" = \SystemRoot\system32\drivers\sffp_mmc.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sffp_mmc\Parameters]
"SdCmdFlags" = 09 01 0A 01 0D 01 20 01 21 01 26 01 22 01 23 01 24 01 25 01 32 01 39 01 [binary data]
"SdAppCmdFlags" = 0D 01 12 01 19 01 1A 01 26 01 2B 01 2C 01 2D 01 2E 01 2F 01 30 01 31 01 33 01 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sffp_sd]
"DisplayName" = SFF Storage Protocol Driver for SDBus
"ImagePath" = \SystemRoot\system32\drivers\sffp_sd.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sffp_sd\Parameters]
"SdCmdFlags" = 09 01 0A 01 0D 01 20 01 21 01 26 01 22 01 23 01 24 01 25 01 32 01 39 01 [binary data]
"SdAppCmdFlags" = 0D 01 12 01 19 01 1A 01 26 01 2B 01 2C 01 2D 01 2E 01 2F 01 30 01 31 01 33 01 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sfloppy]
"AutoRun" = 0
"DisplayName" = High-Capacity Floppy Disk Drive
"ImagePath" = system32\DRIVERS\sfloppy.sys -- [2008.01.21 03:23:20 | 000,013,312 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess]
"DisplayName" = @%SystemRoot%\system32\ipnathlp.dll,-106
"ImagePath" = %SystemRoot%\System32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\ipnathlp.dll,-107
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = NetmanWinMgmtRasManBFE [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy]
"IPSecExempt" = 1
"DisableStatefulFTP" = 0
"DisableStatefulPPTP" = 0
"PolicyVersion" = 513
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\DomainProfile\Logging]
"LogFileSize" = 4096
"LogFilePath" = %systemroot%\system32\LogFiles\Firewall\pfirewall.log -- [2008.01.21 03:57:52 | 000,594,772 | ---- | M] ()
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\FirewallRules]
"PerfLogsAlerts-PLASrv-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\plasrv.exe|Name=@PlaSrv.exe,-10000|Desc=@PlaSrv.exe,-10001|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"PerfLogsAlerts-DCOM-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=135|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\svchost.exe|Svc=rpcss|Name=@PlaSrv.exe,-10002|Desc=@PlaSrv.exe,-10003|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"PerfLogsAlerts-PLASrv-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%systemroot%\system32\plasrv.exe|Name=@PlaSrv.exe,-10000|Desc=@PlaSrv.exe,-10001|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"PerfLogsAlerts-DCOM-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=135|App=%systemroot%\system32\svchost.exe|Svc=rpcss|Name=@PlaSrv.exe,-10002|Desc=@PlaSrv.exe,-10003|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"WMP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31003|Desc=@FirewallAPI.dll,-31006|EmbedCtxt=@FirewallAPI.dll,-31002|Edge=FALSE|
"WMP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31007|Desc=@FirewallAPI.dll,-31010|EmbedCtxt=@FirewallAPI.dll,-31002|Edge=FALSE|
"WMP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31011|Desc=@FirewallAPI.dll,-31014|EmbedCtxt=@FirewallAPI.dll,-31002|Edge=FALSE|
"WMPNSS-QWave-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31253|Desc=@FirewallAPI.dll,-31256|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31257|Desc=@FirewallAPI.dll,-31260|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31261|Desc=@FirewallAPI.dll,-31264|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31265|Desc=@FirewallAPI.dll,-31268|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=10243|App=System|Name=@FirewallAPI.dll,-31285|Desc=@FirewallAPI.dll,-31288|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=10243|App=System|Name=@FirewallAPI.dll,-31289|Desc=@FirewallAPI.dll,-31292|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31293|Desc=@FirewallAPI.dll,-31296|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31297|Desc=@FirewallAPI.dll,-31300|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31301|Desc=@FirewallAPI.dll,-31304|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31305|Desc=@FirewallAPI.dll,-31308|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31309|Desc=@FirewallAPI.dll,-31312|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31313|Desc=@FirewallAPI.dll,-31316|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31317|Desc=@FirewallAPI.dll,-31320|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31253|Desc=@FirewallAPI.dll,-31256|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31257|Desc=@FirewallAPI.dll,-31260|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31261|Desc=@FirewallAPI.dll,-31264|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31265|Desc=@FirewallAPI.dll,-31268|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ssdpsrv|Name=@FirewallAPI.dll,-31269|Desc=@FirewallAPI.dll,-31272|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ssdpsrv|Name=@FirewallAPI.dll,-31273|Desc=@FirewallAPI.dll,-31276|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31277|Desc=@FirewallAPI.dll,-31280|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31281|Desc=@FirewallAPI.dll,-31284|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=10243|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31285|Desc=@FirewallAPI.dll,-31288|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=10243|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31289|Desc=@FirewallAPI.dll,-31292|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31293|Desc=@FirewallAPI.dll,-31296|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31297|Desc=@FirewallAPI.dll,-31300|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31301|Desc=@FirewallAPI.dll,-31304|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31305|Desc=@FirewallAPI.dll,-31308|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31309|Desc=@FirewallAPI.dll,-31312|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31313|Desc=@FirewallAPI.dll,-31316|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31317|Desc=@FirewallAPI.dll,-31320|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-31321|Desc=@FirewallAPI.dll,-31322|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"MCX-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30753|Desc=@FirewallAPI.dll,-30756|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30757|Desc=@FirewallAPI.dll,-30760|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=554|LPort=8554|LPort=8555|LPort=8556|LPort=8557|LPort=8558|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30761|Desc=@FirewallAPI.dll,-30764|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30765|Desc=@FirewallAPI.dll,-30768|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30769|Desc=@FirewallAPI.dll,-30772|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30773|Desc=@FirewallAPI.dll,-30776|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30777|Desc=@FirewallAPI.dll,-30780|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30781|Desc=@FirewallAPI.dll,-30784|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-HTTPSTR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=10244|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30785|Desc=@FirewallAPI.dll,-30788|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-HTTPSTR-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=10244|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30789|Desc=@FirewallAPI.dll,-30792|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-TERMSRV-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=3390|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30793|Desc=@FirewallAPI.dll,-30796|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=7777|LPort=7778|LPort=7779|LPort=7780|LPort=7781|LPort=5004|LPort=5005|LPort=50004|LPort=50005|LPort=50006|LPort=50007|LPort=50008|LPort=50009|LPort=50010|LPort=50011|LPort=50012|LPort=50013|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30801|Desc=@FirewallAPI.dll,-30804|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30805|Desc=@FirewallAPI.dll,-30808|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-MCX2SVC-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=mcx2svc|Name=@FirewallAPI.dll,-30810|Desc=@FirewallAPI.dll,-30811|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-Prov-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\mcx2prov.exe|Name=@FirewallAPI.dll,-30812|Desc=@FirewallAPI.dll,-30813|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"WinCollab-DFSR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=5722|App=%SystemRoot%\system32\dfsr.exe|Svc=Dfsr|Name=@FirewallAPI.dll,-32253|Desc=@FirewallAPI.dll,-32256|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"WinCollab-DFSR-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=5722|App=%SystemRoot%\system32\dfsr.exe|Svc=Dfsr|Name=@FirewallAPI.dll,-32257|Desc=@FirewallAPI.dll,-32260|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"WinCollab-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32261|Desc=@FirewallAPI.dll,-32264|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"WinCollab-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32265|Desc=@FirewallAPI.dll,-32268|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"WinCollab-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32269|Desc=@FirewallAPI.dll,-32272|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"WinCollab-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32273|Desc=@FirewallAPI.dll,-32276|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"WinCollab-P2P-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=3587|App=%SystemRoot%\system32\svchost.exe|Svc=P2PSvc|Name=@FirewallAPI.dll,-32277|Desc=@FirewallAPI.dll,-32280|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"WinCollab-P2P-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=3587|App=%SystemRoot%\system32\svchost.exe|Svc=P2PSvc|Name=@FirewallAPI.dll,-32281|Desc=@FirewallAPI.dll,-32284|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"RemoteAdmin-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=*|Name=@FirewallAPI.dll,-29753|Desc=@FirewallAPI.dll,-29756|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-NP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-29757|Desc=@FirewallAPI.dll,-29760|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29765|Desc=@FirewallAPI.dll,-29768|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=*|Name=@FirewallAPI.dll,-29753|Desc=@FirewallAPI.dll,-29756|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-NP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-29757|Desc=@FirewallAPI.dll,-29760|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29765|Desc=@FirewallAPI.dll,-29768|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"MsiScsi-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29003|Desc=@FirewallAPI.dll,-29006|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"MsiScsi-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29007|Desc=@FirewallAPI.dll,-29010|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"MsiScsi-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29003|Desc=@FirewallAPI.dll,-29006|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"MsiScsi-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29007|Desc=@FirewallAPI.dll,-29010|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"Collab-P2PHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32003|Desc=@FirewallAPI.dll,-32006|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=TRUE|
"Collab-P2PHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32007|Desc=@FirewallAPI.dll,-32010|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-P2PHost-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32011|Desc=@FirewallAPI.dll,-32014|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-P2PHost-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32015|Desc=@FirewallAPI.dll,-32018|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-PNRP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-32019|Desc=@FirewallAPI.dll,-32022|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=TRUE|
"Collab-PNRP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-32023|Desc=@FirewallAPI.dll,-32026|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-PNRP-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32027|Desc=@FirewallAPI.dll,-32030|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-PNRP-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32031|Desc=@FirewallAPI.dll,-32034|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"RVM-VDS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\vds.exe|Svc=vds|Name=@FirewallAPI.dll,-34502|Desc=@FirewallAPI.dll,-34503|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-VDSLDR-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\vdsldr.exe|Name=@FirewallAPI.dll,-34504|Desc=@FirewallAPI.dll,-34505|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-34506|Desc=@FirewallAPI.dll,-34507|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-VDS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\vds.exe|Svc=vds|Name=@FirewallAPI.dll,-34502|Desc=@FirewallAPI.dll,-34503|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-VDSLDR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\vdsldr.exe|Name=@FirewallAPI.dll,-34504|Desc=@FirewallAPI.dll,-34505|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-34506|Desc=@FirewallAPI.dll,-34507|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"WMI-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=135|App=%SystemRoot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-34252|Desc=@FirewallAPI.dll,-34253|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34254|Desc=@FirewallAPI.dll,-34255|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34258|Desc=@FirewallAPI.dll,-34259|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-ASYNC-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%systemroot%\system32\wbem\unsecapp.exe|Name=@FirewallAPI.dll,-34256|Desc=@FirewallAPI.dll,-34257|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=135|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-34252|Desc=@FirewallAPI.dll,-34253|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34254|Desc=@FirewallAPI.dll,-34255|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34258|Desc=@FirewallAPI.dll,-34259|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-ASYNC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\wbem\unsecapp.exe|Name=@FirewallAPI.dll,-34256|Desc=@FirewallAPI.dll,-34257|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"PNRPMNRS-PNRP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-34003|Desc=@FirewallAPI.dll,-34004|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=TRUE|
"PNRPMNRS-PNRP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-34005|Desc=@FirewallAPI.dll,-34006|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=FALSE|
"PNRPMNRS-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-34007|Desc=@FirewallAPI.dll,-34008|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=FALSE|
"PNRPMNRS-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-34009|Desc=@FirewallAPI.dll,-34010|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=FALSE|
"RemoteEventLogSvc-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=Eventlog|Name=@FirewallAPI.dll,-29253|Desc=@FirewallAPI.dll,-29256|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-NP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-29257|Desc=@FirewallAPI.dll,-29260|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29265|Desc=@FirewallAPI.dll,-29268|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Eventlog|Name=@FirewallAPI.dll,-29253|Desc=@FirewallAPI.dll,-29256|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-NP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-29257|Desc=@FirewallAPI.dll,-29260|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29265|Desc=@FirewallAPI.dll,-29268|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteSvcAdmin-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\services.exe|Name=@FirewallAPI.dll,-29503|Desc=@FirewallAPI.dll,-29506|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-NP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-29507|Desc=@FirewallAPI.dll,-29510|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29515|Desc=@FirewallAPI.dll,-29518|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\services.exe|Name=@FirewallAPI.dll,-29503|Desc=@FirewallAPI.dll,-29506|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-NP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-29507|Desc=@FirewallAPI.dll,-29510|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29515|Desc=@FirewallAPI.dll,-29518|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteFwAdmin-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=policyagent|Name=@FirewallAPI.dll,-30003|Desc=@FirewallAPI.dll,-30006|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"RemoteFwAdmin-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-30007|Desc=@FirewallAPI.dll,-30010|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"RemoteFwAdmin-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=policyagent|Name=@FirewallAPI.dll,-30003|Desc=@FirewallAPI.dll,-30006|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"RemoteFwAdmin-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-30007|Desc=@FirewallAPI.dll,-30010|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"BITSSVC-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=bits|Name=@FirewallAPI.dll,-28254|Desc=@FirewallAPI.dll,-28257|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=bits|Name=@FirewallAPI.dll,-28258|Desc=@FirewallAPI.dll,-28261|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2178|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28262|Desc=@FirewallAPI.dll,-28265|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=2178|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28266|Desc=@FirewallAPI.dll,-28269|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-RPC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=bits|Name=@FirewallAPI.dll,-28270|Desc=@FirewallAPI.dll,-28273|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-28274|Desc=@FirewallAPI.dll,-28277|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"RemoteTask-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=schedule|Name=@FirewallAPI.dll,-33253|Desc=@FirewallAPI.dll,-33256|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"RemoteTask-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33257|Desc=@FirewallAPI.dll,-33260|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"RemoteTask-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=schedule|Name=@FirewallAPI.dll,-33253|Desc=@FirewallAPI.dll,-33256|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"RemoteTask-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33257|Desc=@FirewallAPI.dll,-33260|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"MSDTC-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33503|Desc=@FirewallAPI.dll,-33506|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33507|Desc=@FirewallAPI.dll,-33510|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-KTMRM-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=ktmrm|Name=@FirewallAPI.dll,-33511|Desc=@FirewallAPI.dll,-33512|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33513|Desc=@FirewallAPI.dll,-33514|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33503|Desc=@FirewallAPI.dll,-33506|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33507|Desc=@FirewallAPI.dll,-33510|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-KTMRM-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ktmrm|Name=@FirewallAPI.dll,-33511|Desc=@FirewallAPI.dll,-33512|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33513|Desc=@FirewallAPI.dll,-33514|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"RemoteAssistance-RAServer-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\raserver.exe|Name=@FirewallAPI.dll,-33011|Desc=@FirewallAPI.dll,-33014|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-RAServer-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\raserver.exe|Name=@FirewallAPI.dll,-33015|Desc=@FirewallAPI.dll,-33018|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-DCOM-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-33035|Desc=@FirewallAPI.dll,-33036|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-In-TCP-EdgeScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Public|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33003|Desc=@FirewallAPI.dll,-33006|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=TRUE|
"RemoteAssistance-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Public|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33007|Desc=@FirewallAPI.dll,-33010|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33019|Desc=@FirewallAPI.dll,-33022|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33023|Desc=@FirewallAPI.dll,-33026|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33027|Desc=@FirewallAPI.dll,-33030|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33031|Desc=@FirewallAPI.dll,-33034|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-33037|Desc=@FirewallAPI.dll,-33038|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-In-TCP-EdgeScope-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33003|Desc=@FirewallAPI.dll,-33006|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=TRUE|
"RemoteAssistance-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33007|Desc=@FirewallAPI.dll,-33010|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33019|Desc=@FirewallAPI.dll,-33022|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33023|Desc=@FirewallAPI.dll,-33026|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33027|Desc=@FirewallAPI.dll,-33030|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33031|Desc=@FirewallAPI.dll,-33034|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnP-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-33037|Desc=@FirewallAPI.dll,-33038|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"WINRM-HTTP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=80|App=System|Name=@FirewallAPI.dll,-30253|Desc=@FirewallAPI.dll,-30256|EmbedCtxt=@FirewallAPI.dll,-30252|Edge=FALSE|
"WINRM-HTTP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=80|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30253|Desc=@FirewallAPI.dll,-30256|EmbedCtxt=@FirewallAPI.dll,-30252|Edge=FALSE|
"RRAS-L2TP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1701|App=System|Name=@FirewallAPI.dll,-33753|Desc=@FirewallAPI.dll,-33756|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"RRAS-L2TP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1701|App=System|Name=@FirewallAPI.dll,-33757|Desc=@FirewallAPI.dll,-33760|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"RRAS-PPTP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=1723|App=System|Name=@FirewallAPI.dll,-33765|Desc=@FirewallAPI.dll,-33768|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"RRAS-PPTP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=1723|App=System|Name=@FirewallAPI.dll,-33761|Desc=@FirewallAPI.dll,-33764|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"WPDMTP-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\wudfhost.exe|Name=@FirewallAPI.dll,-30503|Desc=@FirewallAPI.dll,-30506|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\wudfhost.exe|Name=@FirewallAPI.dll,-30503|Desc=@FirewallAPI.dll,-30506|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30507|Desc=@FirewallAPI.dll,-30510|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30511|Desc=@FirewallAPI.dll,-30514|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30515|Desc=@FirewallAPI.dll,-30518|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30519|Desc=@FirewallAPI.dll,-30522|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-30523|Desc=@FirewallAPI.dll,-30524|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"NetPres-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31761|Desc=@FirewallAPI.dll,-31764|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31765|Desc=@FirewallAPI.dll,-31768|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5357|App=System|Name=@FirewallAPI.dll,-31769|Desc=@FirewallAPI.dll,-31770|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5357|App=System|Name=@FirewallAPI.dll,-31771|Desc=@FirewallAPI.dll,-31772|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNTS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5358|App=System|Name=@FirewallAPI.dll,-31773|Desc=@FirewallAPI.dll,-31774|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNTS-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5358|App=System|Name=@FirewallAPI.dll,-31775|Desc=@FirewallAPI.dll,-31776|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31753|Desc=@FirewallAPI.dll,-31756|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31757|Desc=@FirewallAPI.dll,-31760|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31761|Desc=@FirewallAPI.dll,-31764|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31765|Desc=@FirewallAPI.dll,-31768|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31769|Desc=@FirewallAPI.dll,-31770|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31771|Desc=@FirewallAPI.dll,-31772|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNTS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31773|Desc=@FirewallAPI.dll,-31774|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNTS-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31775|Desc=@FirewallAPI.dll,-31776|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"Netlogon-NamedPipe-In" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=445|App=System|Name=@netlogon.dll,-1003|Desc=@netlogon.dll,-1006|EmbedCtxt=@netlogon.dll,-1010|Edge=FALSE|
"SNMPTRAP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=162|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@snmptrap.exe,-7|Desc=@snmptrap.exe,-8|EmbedCtxt=@snmptrap.exe,-3|Edge=FALSE|
"SNMPTRAP-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=162|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@snmptrap.exe,-7|Desc=@snmptrap.exe,-8|EmbedCtxt=@snmptrap.exe,-3|Edge=FALSE|
"SSTP-IN-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=443|App=System|Name=@sstpsvc.dll,-35002|Desc=@sstpsvc.dll,-35003|EmbedCtxt=@sstpsvc.dll,-35001|Edge=FALSE|
"NETDIS-UPnPHost-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=2869|App=System|Name=@FirewallAPI.dll,-32761|Desc=@FirewallAPI.dll,-32764|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=System|Name=@FirewallAPI.dll,-32765|Desc=@FirewallAPI.dll,-32768|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=137|App=System|Name=@FirewallAPI.dll,-32769|Desc=@FirewallAPI.dll,-32772|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=137|App=System|Name=@FirewallAPI.dll,-32773|Desc=@FirewallAPI.dll,-32776|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=138|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=138|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5358|App=System|Name=@FirewallAPI.dll,-32813|Desc=@FirewallAPI.dll,-32814|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5358|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5357|App=System|Name=@FirewallAPI.dll,-32817|Desc=@FirewallAPI.dll,-32818|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
Re: policie čr prosim o radu
"NETDIS-WSDEVNT-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5357|App=System|Name=@FirewallAPI.dll,-32819|Desc=@FirewallAPI.dll,-32820|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-SSDPSrv-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32753|Desc=@FirewallAPI.dll,-32756|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-SSDPSrv-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32757|Desc=@FirewallAPI.dll,-32760|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32761|Desc=@FirewallAPI.dll,-32764|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32765|Desc=@FirewallAPI.dll,-32768|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnP-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-32821|Desc=@FirewallAPI.dll,-32822|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32769|Desc=@FirewallAPI.dll,-32772|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32773|Desc=@FirewallAPI.dll,-32776|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32785|Desc=@FirewallAPI.dll,-32788|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32789|Desc=@FirewallAPI.dll,-32792|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32801|Desc=@FirewallAPI.dll,-32804|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32805|Desc=@FirewallAPI.dll,-32808|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32809|Desc=@FirewallAPI.dll,-32810|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32811|Desc=@FirewallAPI.dll,-32812|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32813|Desc=@FirewallAPI.dll,-32814|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32817|Desc=@FirewallAPI.dll,-32818|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32819|Desc=@FirewallAPI.dll,-32820|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32753|Desc=@FirewallAPI.dll,-32756|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32757|Desc=@FirewallAPI.dll,-32760|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-32821|Desc=@FirewallAPI.dll,-32822|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32761|Desc=@FirewallAPI.dll,-32764|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32765|Desc=@FirewallAPI.dll,-32768|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Public|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32769|Desc=@FirewallAPI.dll,-32772|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Public|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32773|Desc=@FirewallAPI.dll,-32776|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Public|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Public|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32785|Desc=@FirewallAPI.dll,-32788|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32789|Desc=@FirewallAPI.dll,-32792|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Public|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32801|Desc=@FirewallAPI.dll,-32804|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Public|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32805|Desc=@FirewallAPI.dll,-32808|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32809|Desc=@FirewallAPI.dll,-32810|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32811|Desc=@FirewallAPI.dll,-32812|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|LPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32813|Desc=@FirewallAPI.dll,-32814|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Public|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|LPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32817|Desc=@FirewallAPI.dll,-32818|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Public|RPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32819|Desc=@FirewallAPI.dll,-32820|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"FPS-NB_Session-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=139|App=System|Name=@FirewallAPI.dll,-28503|Desc=@FirewallAPI.dll,-28506|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Session-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=139|App=System|Name=@FirewallAPI.dll,-28507|Desc=@FirewallAPI.dll,-28510|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-28511|Desc=@FirewallAPI.dll,-28514|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=445|App=System|Name=@FirewallAPI.dll,-28515|Desc=@FirewallAPI.dll,-28518|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=137|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=137|App=System|Name=@FirewallAPI.dll,-28523|Desc=@FirewallAPI.dll,-28526|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=138|App=System|Name=@FirewallAPI.dll,-28527|Desc=@FirewallAPI.dll,-28530|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=138|App=System|Name=@FirewallAPI.dll,-28531|Desc=@FirewallAPI.dll,-28534|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SpoolSvc-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\spoolsv.exe|Svc=Spooler|Name=@FirewallAPI.dll,-28535|Desc=@FirewallAPI.dll,-28538|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|Svc=Rpcss|Name=@FirewallAPI.dll,-28539|Desc=@FirewallAPI.dll,-28542|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-In-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=1|Profile=Domain|ICMP4=8:*|Name=@FirewallAPI.dll,-28543|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-Out-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=1|Profile=Domain|ICMP4=8:*|Name=@FirewallAPI.dll,-28544|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP6-ERQ-In-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=58|Profile=Domain|ICMP6=128:*|Name=@FirewallAPI.dll,-28545|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP6-ERQ-Out-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=58|Profile=Domain|ICMP6=128:*|Name=@FirewallAPI.dll,-28546|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Session-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28503|Desc=@FirewallAPI.dll,-28506|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Session-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28507|Desc=@FirewallAPI.dll,-28510|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28511|Desc=@FirewallAPI.dll,-28514|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28515|Desc=@FirewallAPI.dll,-28518|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28523|Desc=@FirewallAPI.dll,-28526|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28527|Desc=@FirewallAPI.dll,-28530|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28531|Desc=@FirewallAPI.dll,-28534|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SpoolSvc-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\spoolsv.exe|Svc=Spooler|Name=@FirewallAPI.dll,-28535|Desc=@FirewallAPI.dll,-28538|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|Svc=Rpcss|Name=@FirewallAPI.dll,-28539|Desc=@FirewallAPI.dll,-28542|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-In" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=1|Profile=Private|Profile=Public|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28543|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-Out" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=1|Profile=Private|Profile=Public|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28544|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP6-ERQ-In" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=58|Profile=Private|Profile=Public|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28545|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP6-ERQ-Out" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=58|Profile=Private|Profile=Public|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28546|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"CoreNet-ICMP6-DU-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=1:*|App=System|Name=@FirewallAPI.dll,-25110|Desc=@FirewallAPI.dll,-25112|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-PTB-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=2:*|App=System|Name=@FirewallAPI.dll,-25001|Desc=@FirewallAPI.dll,-25007|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-PTB-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=2:*|Name=@FirewallAPI.dll,-25002|Desc=@FirewallAPI.dll,-25007|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-TE-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=3:*|App=System|Name=@FirewallAPI.dll,-25113|Desc=@FirewallAPI.dll,-25115|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-TE-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=3:*|Name=@FirewallAPI.dll,-25114|Desc=@FirewallAPI.dll,-25115|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-PP-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=4:*|App=System|Name=@FirewallAPI.dll,-25116|Desc=@FirewallAPI.dll,-25118|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-PP-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=4:*|Name=@FirewallAPI.dll,-25117|Desc=@FirewallAPI.dll,-25118|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-NDS-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=135:*|App=System|Name=@FirewallAPI.dll,-25019|Desc=@FirewallAPI.dll,-25025|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-NDS-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=135:*|Name=@FirewallAPI.dll,-25020|Desc=@FirewallAPI.dll,-25025|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-NDA-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=136:*|App=System|Name=@FirewallAPI.dll,-25026|Desc=@FirewallAPI.dll,-25032|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-NDA-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=136:*|Name=@FirewallAPI.dll,-25027|Desc=@FirewallAPI.dll,-25032|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RA-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=134:*|RA6=fe80::/64|App=System|Name=@FirewallAPI.dll,-25012|Desc=@FirewallAPI.dll,-25018|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RA-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=134:*|LA6=fe80::/64|RA6=LocalSubnet|RA6=fe80::/64|RA6=ff02::1|Name=@FirewallAPI.dll,-25013|Desc=@FirewallAPI.dll,-25018|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RS-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=133:*|App=System|Name=@FirewallAPI.dll,-26106|Desc=@FirewallAPI.dll,-25011|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RS-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=133:*|RA6=LocalSubnet|RA6=fe80::/64|RA6=ff02::2|Name=@FirewallAPI.dll,-25008|Desc=@FirewallAPI.dll,-25011|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LQ-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=130:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25061|Desc=@FirewallAPI.dll,-25067|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LQ-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=130:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25062|Desc=@FirewallAPI.dll,-25067|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=131:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25068|Desc=@FirewallAPI.dll,-25074|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=131:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25069|Desc=@FirewallAPI.dll,-25074|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR2-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=143:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25075|Desc=@FirewallAPI.dll,-25081|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR2-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=143:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25076|Desc=@FirewallAPI.dll,-25081|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LD-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=132:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25082|Desc=@FirewallAPI.dll,-25088|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LD-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=132:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25083|Desc=@FirewallAPI.dll,-25088|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP4-DUFRAG-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=1|ICMP4=3:4|App=System|Name=@FirewallAPI.dll,-25251|Desc=@FirewallAPI.dll,-25257|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IGMP-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=2|App=System|Name=@FirewallAPI.dll,-25376|Desc=@FirewallAPI.dll,-25382|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IGMP-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=2|App=System|Name=@FirewallAPI.dll,-25377|Desc=@FirewallAPI.dll,-25382|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-DHCP-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=68|RPort=67|App=%SystemRoot%\system32\svchost.exe|Svc=dhcp|Name=@FirewallAPI.dll,-25301|Desc=@FirewallAPI.dll,-25303|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-DHCP-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|LPort=68|RPort=67|App=%SystemRoot%\system32\svchost.exe|Svc=dhcp|Name=@FirewallAPI.dll,-25302|Desc=@FirewallAPI.dll,-25303|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"NETDIS-SSDPSrv-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32753|Desc=@FirewallAPI.dll,-32756|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-SSDPSrv-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32757|Desc=@FirewallAPI.dll,-32760|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32761|Desc=@FirewallAPI.dll,-32764|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32765|Desc=@FirewallAPI.dll,-32768|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnP-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-32821|Desc=@FirewallAPI.dll,-32822|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32769|Desc=@FirewallAPI.dll,-32772|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32773|Desc=@FirewallAPI.dll,-32776|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32785|Desc=@FirewallAPI.dll,-32788|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32789|Desc=@FirewallAPI.dll,-32792|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32801|Desc=@FirewallAPI.dll,-32804|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32805|Desc=@FirewallAPI.dll,-32808|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32809|Desc=@FirewallAPI.dll,-32810|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32811|Desc=@FirewallAPI.dll,-32812|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32813|Desc=@FirewallAPI.dll,-32814|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32817|Desc=@FirewallAPI.dll,-32818|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32819|Desc=@FirewallAPI.dll,-32820|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32753|Desc=@FirewallAPI.dll,-32756|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32757|Desc=@FirewallAPI.dll,-32760|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-32821|Desc=@FirewallAPI.dll,-32822|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32761|Desc=@FirewallAPI.dll,-32764|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32765|Desc=@FirewallAPI.dll,-32768|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Public|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32769|Desc=@FirewallAPI.dll,-32772|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Public|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32773|Desc=@FirewallAPI.dll,-32776|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Public|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Public|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32785|Desc=@FirewallAPI.dll,-32788|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32789|Desc=@FirewallAPI.dll,-32792|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Public|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32801|Desc=@FirewallAPI.dll,-32804|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Public|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32805|Desc=@FirewallAPI.dll,-32808|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32809|Desc=@FirewallAPI.dll,-32810|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32811|Desc=@FirewallAPI.dll,-32812|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|LPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32813|Desc=@FirewallAPI.dll,-32814|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Public|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|LPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32817|Desc=@FirewallAPI.dll,-32818|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Public|RPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32819|Desc=@FirewallAPI.dll,-32820|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"FPS-NB_Session-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=139|App=System|Name=@FirewallAPI.dll,-28503|Desc=@FirewallAPI.dll,-28506|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Session-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=139|App=System|Name=@FirewallAPI.dll,-28507|Desc=@FirewallAPI.dll,-28510|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-28511|Desc=@FirewallAPI.dll,-28514|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=445|App=System|Name=@FirewallAPI.dll,-28515|Desc=@FirewallAPI.dll,-28518|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=137|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=137|App=System|Name=@FirewallAPI.dll,-28523|Desc=@FirewallAPI.dll,-28526|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=138|App=System|Name=@FirewallAPI.dll,-28527|Desc=@FirewallAPI.dll,-28530|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=138|App=System|Name=@FirewallAPI.dll,-28531|Desc=@FirewallAPI.dll,-28534|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SpoolSvc-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\spoolsv.exe|Svc=Spooler|Name=@FirewallAPI.dll,-28535|Desc=@FirewallAPI.dll,-28538|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|Svc=Rpcss|Name=@FirewallAPI.dll,-28539|Desc=@FirewallAPI.dll,-28542|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-In-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=1|Profile=Domain|ICMP4=8:*|Name=@FirewallAPI.dll,-28543|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-Out-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=1|Profile=Domain|ICMP4=8:*|Name=@FirewallAPI.dll,-28544|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP6-ERQ-In-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=58|Profile=Domain|ICMP6=128:*|Name=@FirewallAPI.dll,-28545|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP6-ERQ-Out-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=58|Profile=Domain|ICMP6=128:*|Name=@FirewallAPI.dll,-28546|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Session-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28503|Desc=@FirewallAPI.dll,-28506|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Session-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28507|Desc=@FirewallAPI.dll,-28510|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28511|Desc=@FirewallAPI.dll,-28514|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28515|Desc=@FirewallAPI.dll,-28518|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28523|Desc=@FirewallAPI.dll,-28526|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28527|Desc=@FirewallAPI.dll,-28530|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28531|Desc=@FirewallAPI.dll,-28534|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SpoolSvc-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\spoolsv.exe|Svc=Spooler|Name=@FirewallAPI.dll,-28535|Desc=@FirewallAPI.dll,-28538|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|Svc=Rpcss|Name=@FirewallAPI.dll,-28539|Desc=@FirewallAPI.dll,-28542|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-In" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=1|Profile=Private|Profile=Public|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28543|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-Out" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=1|Profile=Private|Profile=Public|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28544|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP6-ERQ-In" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=58|Profile=Private|Profile=Public|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28545|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP6-ERQ-Out" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=58|Profile=Private|Profile=Public|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28546|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"CoreNet-ICMP6-DU-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=1:*|App=System|Name=@FirewallAPI.dll,-25110|Desc=@FirewallAPI.dll,-25112|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-PTB-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=2:*|App=System|Name=@FirewallAPI.dll,-25001|Desc=@FirewallAPI.dll,-25007|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-PTB-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=2:*|Name=@FirewallAPI.dll,-25002|Desc=@FirewallAPI.dll,-25007|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-TE-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=3:*|App=System|Name=@FirewallAPI.dll,-25113|Desc=@FirewallAPI.dll,-25115|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-TE-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=3:*|Name=@FirewallAPI.dll,-25114|Desc=@FirewallAPI.dll,-25115|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-PP-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=4:*|App=System|Name=@FirewallAPI.dll,-25116|Desc=@FirewallAPI.dll,-25118|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-PP-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=4:*|Name=@FirewallAPI.dll,-25117|Desc=@FirewallAPI.dll,-25118|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-NDS-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=135:*|App=System|Name=@FirewallAPI.dll,-25019|Desc=@FirewallAPI.dll,-25025|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-NDS-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=135:*|Name=@FirewallAPI.dll,-25020|Desc=@FirewallAPI.dll,-25025|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-NDA-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=136:*|App=System|Name=@FirewallAPI.dll,-25026|Desc=@FirewallAPI.dll,-25032|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-NDA-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=136:*|Name=@FirewallAPI.dll,-25027|Desc=@FirewallAPI.dll,-25032|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RA-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=134:*|RA6=fe80::/64|App=System|Name=@FirewallAPI.dll,-25012|Desc=@FirewallAPI.dll,-25018|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RA-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=134:*|LA6=fe80::/64|RA6=LocalSubnet|RA6=fe80::/64|RA6=ff02::1|Name=@FirewallAPI.dll,-25013|Desc=@FirewallAPI.dll,-25018|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RS-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=133:*|App=System|Name=@FirewallAPI.dll,-26106|Desc=@FirewallAPI.dll,-25011|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RS-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=133:*|RA6=LocalSubnet|RA6=fe80::/64|RA6=ff02::2|Name=@FirewallAPI.dll,-25008|Desc=@FirewallAPI.dll,-25011|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LQ-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=130:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25061|Desc=@FirewallAPI.dll,-25067|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LQ-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=130:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25062|Desc=@FirewallAPI.dll,-25067|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=131:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25068|Desc=@FirewallAPI.dll,-25074|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=131:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25069|Desc=@FirewallAPI.dll,-25074|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR2-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=143:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25075|Desc=@FirewallAPI.dll,-25081|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR2-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=143:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25076|Desc=@FirewallAPI.dll,-25081|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LD-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=132:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25082|Desc=@FirewallAPI.dll,-25088|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LD-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=132:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25083|Desc=@FirewallAPI.dll,-25088|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP4-DUFRAG-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=1|ICMP4=3:4|App=System|Name=@FirewallAPI.dll,-25251|Desc=@FirewallAPI.dll,-25257|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IGMP-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=2|App=System|Name=@FirewallAPI.dll,-25376|Desc=@FirewallAPI.dll,-25382|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IGMP-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=2|App=System|Name=@FirewallAPI.dll,-25377|Desc=@FirewallAPI.dll,-25382|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-DHCP-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=68|RPort=67|App=%SystemRoot%\system32\svchost.exe|Svc=dhcp|Name=@FirewallAPI.dll,-25301|Desc=@FirewallAPI.dll,-25303|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-DHCP-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|LPort=68|RPort=67|App=%SystemRoot%\system32\svchost.exe|Svc=dhcp|Name=@FirewallAPI.dll,-25302|Desc=@FirewallAPI.dll,-25303|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
Re: policie čr prosim o radu
CoreNet-Teredo-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=Teredo|App=%SystemRoot%\system32\svchost.exe|Svc=iphlpsvc|Name=@FirewallAPI.dll,-25326|Desc=@FirewallAPI.dll,-25332|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-Teredo-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=iphlpsvc|Name=@FirewallAPI.dll,-25327|Desc=@FirewallAPI.dll,-25333|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IPv6-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=41|App=System|Name=@FirewallAPI.dll,-25351|Desc=@FirewallAPI.dll,-25357|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IPv6-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=41|App=System|Name=@FirewallAPI.dll,-25352|Desc=@FirewallAPI.dll,-25358|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-GP-NP-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|RPort=445|App=System|Name=@FirewallAPI.dll,-25401|Desc=@FirewallAPI.dll,-25401|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-GP-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Name=@FirewallAPI.dll,-25403|Desc=@FirewallAPI.dll,-25404|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-DNS-Out-UDP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|RPort=53|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-25405|Desc=@FirewallAPI.dll,-25406|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|LSM=TRUE|
"CoreNet-GP-LSASS-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\lsass.exe|Name=@FirewallAPI.dll,-25407|Desc=@FirewallAPI.dll,-25408|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\PublicProfile\Logging]
"LogFileSize" = 4096
"LogFilePath" = %systemroot%\system32\LogFiles\Firewall\pfirewall.log -- [2008.01.21 03:57:52 | 000,594,772 | ---- | M] ()
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\StandardProfile\Logging]
"LogFileSize" = 4096
"LogFilePath" = %systemroot%\system32\LogFiles\Firewall\pfirewall.log -- [2008.01.21 03:57:52 | 000,594,772 | ---- | M] ()
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Epoch]
"Epoch" = 1268
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters]
"ServiceDll" = %SystemRoot%\System32\ipnathlp.dll -- [2008.01.21 03:24:09 | 000,288,256 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"ScopeAddress" = 192.168.0.1
"ScopeAddressBackup" = 192.168.0.1
"SharedAutoDial" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy]
"DisableStatefulFTP" = 0
"PolicyVersion" = 513
"DisableStatefulPPTP" = 0
"IPSecExempt" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\Logging]
"LogFileSize" = 4096
"LogFilePath" = %systemroot%\system32\LogFiles\Firewall\pfirewall.log -- [2008.01.21 03:57:52 | 000,594,772 | ---- | M] ()
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"CoreNet-GP-LSASS-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\lsass.exe|Name=@FirewallAPI.dll,-25407|Desc=@FirewallAPI.dll,-25408|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-DNS-Out-UDP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|RPort=53|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-25405|Desc=@FirewallAPI.dll,-25406|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|LSM=TRUE|
"CoreNet-GP-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Name=@FirewallAPI.dll,-25403|Desc=@FirewallAPI.dll,-25404|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-GP-NP-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|RPort=445|App=System|Name=@FirewallAPI.dll,-25401|Desc=@FirewallAPI.dll,-25401|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IPv6-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=41|App=System|Name=@FirewallAPI.dll,-25352|Desc=@FirewallAPI.dll,-25358|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IPv6-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=41|App=System|Name=@FirewallAPI.dll,-25351|Desc=@FirewallAPI.dll,-25357|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-Teredo-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=iphlpsvc|Name=@FirewallAPI.dll,-25327|Desc=@FirewallAPI.dll,-25333|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-Teredo-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=Teredo|App=%SystemRoot%\system32\svchost.exe|Svc=iphlpsvc|Name=@FirewallAPI.dll,-25326|Desc=@FirewallAPI.dll,-25332|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-DHCP-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|LPort=68|RPort=67|App=%SystemRoot%\system32\svchost.exe|Svc=dhcp|Name=@FirewallAPI.dll,-25302|Desc=@FirewallAPI.dll,-25303|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-DHCP-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=68|RPort=67|App=%SystemRoot%\system32\svchost.exe|Svc=dhcp|Name=@FirewallAPI.dll,-25301|Desc=@FirewallAPI.dll,-25303|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IGMP-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=2|App=System|Name=@FirewallAPI.dll,-25377|Desc=@FirewallAPI.dll,-25382|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IGMP-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=2|App=System|Name=@FirewallAPI.dll,-25376|Desc=@FirewallAPI.dll,-25382|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP4-DUFRAG-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=1|ICMP4=3:4|App=System|Name=@FirewallAPI.dll,-25251|Desc=@FirewallAPI.dll,-25257|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LD-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=132:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25083|Desc=@FirewallAPI.dll,-25088|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LD-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=132:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25082|Desc=@FirewallAPI.dll,-25088|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR2-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=143:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25076|Desc=@FirewallAPI.dll,-25081|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR2-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=143:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25075|Desc=@FirewallAPI.dll,-25081|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=131:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25069|Desc=@FirewallAPI.dll,-25074|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=131:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25068|Desc=@FirewallAPI.dll,-25074|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LQ-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=130:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25062|Desc=@FirewallAPI.dll,-25067|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LQ-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=130:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25061|Desc=@FirewallAPI.dll,-25067|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RS-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=133:*|RA6=LocalSubnet|RA6=fe80::/64|RA6=ff02::2|Name=@FirewallAPI.dll,-25008|Desc=@FirewallAPI.dll,-25011|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RS-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=133:*|App=System|Name=@FirewallAPI.dll,-26106|Desc=@FirewallAPI.dll,-25011|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RA-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=134:*|LA6=fe80::/64|RA6=LocalSubnet|RA6=fe80::/64|RA6=ff02::1|Name=@FirewallAPI.dll,-25013|Desc=@FirewallAPI.dll,-25018|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RA-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=134:*|RA6=fe80::/64|App=System|Name=@FirewallAPI.dll,-25012|Desc=@FirewallAPI.dll,-25018|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-NDA-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=136:*|Name=@FirewallAPI.dll,-25027|Desc=@FirewallAPI.dll,-25032|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-NDA-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=136:*|App=System|Name=@FirewallAPI.dll,-25026|Desc=@FirewallAPI.dll,-25032|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-NDS-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=135:*|Name=@FirewallAPI.dll,-25020|Desc=@FirewallAPI.dll,-25025|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-NDS-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=135:*|App=System|Name=@FirewallAPI.dll,-25019|Desc=@FirewallAPI.dll,-25025|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-PP-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=4:*|Name=@FirewallAPI.dll,-25117|Desc=@FirewallAPI.dll,-25118|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-PP-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=4:*|App=System|Name=@FirewallAPI.dll,-25116|Desc=@FirewallAPI.dll,-25118|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-TE-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=3:*|Name=@FirewallAPI.dll,-25114|Desc=@FirewallAPI.dll,-25115|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-TE-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=3:*|App=System|Name=@FirewallAPI.dll,-25113|Desc=@FirewallAPI.dll,-25115|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-PTB-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=2:*|Name=@FirewallAPI.dll,-25002|Desc=@FirewallAPI.dll,-25007|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-PTB-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=2:*|App=System|Name=@FirewallAPI.dll,-25001|Desc=@FirewallAPI.dll,-25007|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-DU-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=1:*|App=System|Name=@FirewallAPI.dll,-25110|Desc=@FirewallAPI.dll,-25112|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"FPS-ICMP6-ERQ-Out" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=58|Profile=Private|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28546|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP6-ERQ-In" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=58|Profile=Private|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28545|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-Out" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=1|Profile=Private|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28544|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-In" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=1|Profile=Private|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28543|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|Svc=Rpcss|Name=@FirewallAPI.dll,-28539|Desc=@FirewallAPI.dll,-28542|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SpoolSvc-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\spoolsv.exe|Svc=Spooler|Name=@FirewallAPI.dll,-28535|Desc=@FirewallAPI.dll,-28538|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28531|Desc=@FirewallAPI.dll,-28534|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28527|Desc=@FirewallAPI.dll,-28530|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28523|Desc=@FirewallAPI.dll,-28526|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|RPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28515|Desc=@FirewallAPI.dll,-28518|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28511|Desc=@FirewallAPI.dll,-28514|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Session-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|RPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28507|Desc=@FirewallAPI.dll,-28510|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Session-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|LPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28503|Desc=@FirewallAPI.dll,-28506|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP6-ERQ-Out-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=58|Profile=Domain|ICMP6=128:*|Name=@FirewallAPI.dll,-28546|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP6-ERQ-In-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=58|Profile=Domain|ICMP6=128:*|Name=@FirewallAPI.dll,-28545|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-Out-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=1|Profile=Domain|ICMP4=8:*|Name=@FirewallAPI.dll,-28544|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-In-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=1|Profile=Domain|ICMP4=8:*|Name=@FirewallAPI.dll,-28543|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|Svc=Rpcss|Name=@FirewallAPI.dll,-28539|Desc=@FirewallAPI.dll,-28542|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SpoolSvc-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\spoolsv.exe|Svc=Spooler|Name=@FirewallAPI.dll,-28535|Desc=@FirewallAPI.dll,-28538|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=138|App=System|Name=@FirewallAPI.dll,-28531|Desc=@FirewallAPI.dll,-28534|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=138|App=System|Name=@FirewallAPI.dll,-28527|Desc=@FirewallAPI.dll,-28530|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=137|App=System|Name=@FirewallAPI.dll,-28523|Desc=@FirewallAPI.dll,-28526|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=137|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=445|App=System|Name=@FirewallAPI.dll,-28515|Desc=@FirewallAPI.dll,-28518|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-28511|Desc=@FirewallAPI.dll,-28514|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Session-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=139|App=System|Name=@FirewallAPI.dll,-28507|Desc=@FirewallAPI.dll,-28510|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Session-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=139|App=System|Name=@FirewallAPI.dll,-28503|Desc=@FirewallAPI.dll,-28506|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"NETDIS-WSDEVNT-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Public|RPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32819|Desc=@FirewallAPI.dll,-32820|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-In-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|LPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32817|Desc=@FirewallAPI.dll,-32818|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Public|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-In-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|LPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32813|Desc=@FirewallAPI.dll,-32814|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32811|Desc=@FirewallAPI.dll,-32812|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32809|Desc=@FirewallAPI.dll,-32810|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32805|Desc=@FirewallAPI.dll,-32808|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32801|Desc=@FirewallAPI.dll,-32804|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32789|Desc=@FirewallAPI.dll,-32792|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32785|Desc=@FirewallAPI.dll,-32788|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-Out-UDP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-In-UDP" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-Out-UDP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32773|Desc=@FirewallAPI.dll,-32776|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-In-UDP" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32769|Desc=@FirewallAPI.dll,-32772|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32765|Desc=@FirewallAPI.dll,-32768|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32761|Desc=@FirewallAPI.dll,-32764|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-32821|Desc=@FirewallAPI.dll,-32822|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32757|Desc=@FirewallAPI.dll,-32760|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32753|Desc=@FirewallAPI.dll,-32756|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32819|Desc=@FirewallAPI.dll,-32820|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32817|Desc=@FirewallAPI.dll,-32818|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32813|Desc=@FirewallAPI.dll,-32814|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32811|Desc=@FirewallAPI.dll,-32812|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32809|Desc=@FirewallAPI.dll,-32810|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32805|Desc=@FirewallAPI.dll,-32808|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32801|Desc=@FirewallAPI.dll,-32804|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32789|Desc=@FirewallAPI.dll,-32792|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32785|Desc=@FirewallAPI.dll,-32788|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32773|Desc=@FirewallAPI.dll,-32776|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32769|Desc=@FirewallAPI.dll,-32772|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnP-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-32821|Desc=@FirewallAPI.dll,-32822|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32765|Desc=@FirewallAPI.dll,-32768|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32761|Desc=@FirewallAPI.dll,-32764|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-SSDPSrv-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32757|Desc=@FirewallAPI.dll,-32760|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-SSDPSrv-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32753|Desc=@FirewallAPI.dll,-32756|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5357|App=System|Name=@FirewallAPI.dll,-32819|Desc=@FirewallAPI.dll,-32820|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5357|App=System|Name=@FirewallAPI.dll,-32817|Desc=@FirewallAPI.dll,-32818|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5358|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5358|App=System|Name=@FirewallAPI.dll,-32813|Desc=@FirewallAPI.dll,-32814|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=138|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=138|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=137|App=System|Name=@FirewallAPI.dll,-32773|Desc=@FirewallAPI.dll,-32776|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=137|App=System|Name=@FirewallAPI.dll,-32769|Desc=@FirewallAPI.dll,-32772|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=System|Name=@FirewallAPI.dll,-32765|Desc=@FirewallAPI.dll,-32768|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=2869|App=System|Name=@FirewallAPI.dll,-32761|Desc=@FirewallAPI.dll,-32764|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"CoreNet-Teredo-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=iphlpsvc|Name=@FirewallAPI.dll,-25327|Desc=@FirewallAPI.dll,-25333|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IPv6-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=41|App=System|Name=@FirewallAPI.dll,-25351|Desc=@FirewallAPI.dll,-25357|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IPv6-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=41|App=System|Name=@FirewallAPI.dll,-25352|Desc=@FirewallAPI.dll,-25358|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-GP-NP-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|RPort=445|App=System|Name=@FirewallAPI.dll,-25401|Desc=@FirewallAPI.dll,-25401|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-GP-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Name=@FirewallAPI.dll,-25403|Desc=@FirewallAPI.dll,-25404|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-DNS-Out-UDP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|RPort=53|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-25405|Desc=@FirewallAPI.dll,-25406|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|LSM=TRUE|
"CoreNet-GP-LSASS-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\lsass.exe|Name=@FirewallAPI.dll,-25407|Desc=@FirewallAPI.dll,-25408|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\PublicProfile\Logging]
"LogFileSize" = 4096
"LogFilePath" = %systemroot%\system32\LogFiles\Firewall\pfirewall.log -- [2008.01.21 03:57:52 | 000,594,772 | ---- | M] ()
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Defaults\FirewallPolicy\StandardProfile\Logging]
"LogFileSize" = 4096
"LogFilePath" = %systemroot%\system32\LogFiles\Firewall\pfirewall.log -- [2008.01.21 03:57:52 | 000,594,772 | ---- | M] ()
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Epoch]
"Epoch" = 1268
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters]
"ServiceDll" = %SystemRoot%\System32\ipnathlp.dll -- [2008.01.21 03:24:09 | 000,288,256 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"ScopeAddress" = 192.168.0.1
"ScopeAddressBackup" = 192.168.0.1
"SharedAutoDial" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy]
"DisableStatefulFTP" = 0
"PolicyVersion" = 513
"DisableStatefulPPTP" = 0
"IPSecExempt" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\Logging]
"LogFileSize" = 4096
"LogFilePath" = %systemroot%\system32\LogFiles\Firewall\pfirewall.log -- [2008.01.21 03:57:52 | 000,594,772 | ---- | M] ()
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"CoreNet-GP-LSASS-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\lsass.exe|Name=@FirewallAPI.dll,-25407|Desc=@FirewallAPI.dll,-25408|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-DNS-Out-UDP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|RPort=53|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-25405|Desc=@FirewallAPI.dll,-25406|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|LSM=TRUE|
"CoreNet-GP-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Name=@FirewallAPI.dll,-25403|Desc=@FirewallAPI.dll,-25404|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-GP-NP-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Domain|RPort=445|App=System|Name=@FirewallAPI.dll,-25401|Desc=@FirewallAPI.dll,-25401|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IPv6-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=41|App=System|Name=@FirewallAPI.dll,-25352|Desc=@FirewallAPI.dll,-25358|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IPv6-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=41|App=System|Name=@FirewallAPI.dll,-25351|Desc=@FirewallAPI.dll,-25357|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-Teredo-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=iphlpsvc|Name=@FirewallAPI.dll,-25327|Desc=@FirewallAPI.dll,-25333|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-Teredo-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=Teredo|App=%SystemRoot%\system32\svchost.exe|Svc=iphlpsvc|Name=@FirewallAPI.dll,-25326|Desc=@FirewallAPI.dll,-25332|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-DHCP-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|LPort=68|RPort=67|App=%SystemRoot%\system32\svchost.exe|Svc=dhcp|Name=@FirewallAPI.dll,-25302|Desc=@FirewallAPI.dll,-25303|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-DHCP-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=68|RPort=67|App=%SystemRoot%\system32\svchost.exe|Svc=dhcp|Name=@FirewallAPI.dll,-25301|Desc=@FirewallAPI.dll,-25303|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IGMP-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=2|App=System|Name=@FirewallAPI.dll,-25377|Desc=@FirewallAPI.dll,-25382|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-IGMP-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=2|App=System|Name=@FirewallAPI.dll,-25376|Desc=@FirewallAPI.dll,-25382|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP4-DUFRAG-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=1|ICMP4=3:4|App=System|Name=@FirewallAPI.dll,-25251|Desc=@FirewallAPI.dll,-25257|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LD-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=132:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25083|Desc=@FirewallAPI.dll,-25088|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LD-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=132:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25082|Desc=@FirewallAPI.dll,-25088|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR2-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=143:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25076|Desc=@FirewallAPI.dll,-25081|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR2-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=143:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25075|Desc=@FirewallAPI.dll,-25081|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=131:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25069|Desc=@FirewallAPI.dll,-25074|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LR-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=131:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25068|Desc=@FirewallAPI.dll,-25074|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LQ-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=130:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-25062|Desc=@FirewallAPI.dll,-25067|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-LQ-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=130:*|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-25061|Desc=@FirewallAPI.dll,-25067|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RS-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=133:*|RA6=LocalSubnet|RA6=fe80::/64|RA6=ff02::2|Name=@FirewallAPI.dll,-25008|Desc=@FirewallAPI.dll,-25011|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RS-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=133:*|App=System|Name=@FirewallAPI.dll,-26106|Desc=@FirewallAPI.dll,-25011|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RA-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=134:*|LA6=fe80::/64|RA6=LocalSubnet|RA6=fe80::/64|RA6=ff02::1|Name=@FirewallAPI.dll,-25013|Desc=@FirewallAPI.dll,-25018|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-RA-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=134:*|RA6=fe80::/64|App=System|Name=@FirewallAPI.dll,-25012|Desc=@FirewallAPI.dll,-25018|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-NDA-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=136:*|Name=@FirewallAPI.dll,-25027|Desc=@FirewallAPI.dll,-25032|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-NDA-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=136:*|App=System|Name=@FirewallAPI.dll,-25026|Desc=@FirewallAPI.dll,-25032|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-NDS-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=135:*|Name=@FirewallAPI.dll,-25020|Desc=@FirewallAPI.dll,-25025|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-NDS-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=135:*|App=System|Name=@FirewallAPI.dll,-25019|Desc=@FirewallAPI.dll,-25025|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-PP-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=4:*|Name=@FirewallAPI.dll,-25117|Desc=@FirewallAPI.dll,-25118|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-PP-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=4:*|App=System|Name=@FirewallAPI.dll,-25116|Desc=@FirewallAPI.dll,-25118|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-TE-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=3:*|Name=@FirewallAPI.dll,-25114|Desc=@FirewallAPI.dll,-25115|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-TE-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=3:*|App=System|Name=@FirewallAPI.dll,-25113|Desc=@FirewallAPI.dll,-25115|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-PTB-Out" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|ICMP6=2:*|Name=@FirewallAPI.dll,-25002|Desc=@FirewallAPI.dll,-25007|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=FALSE|
"CoreNet-ICMP6-PTB-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=2:*|App=System|Name=@FirewallAPI.dll,-25001|Desc=@FirewallAPI.dll,-25007|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"CoreNet-ICMP6-DU-In" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|ICMP6=1:*|App=System|Name=@FirewallAPI.dll,-25110|Desc=@FirewallAPI.dll,-25112|EmbedCtxt=@FirewallAPI.dll,-25000|Edge=TRUE|
"FPS-ICMP6-ERQ-Out" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=58|Profile=Private|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28546|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP6-ERQ-In" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=58|Profile=Private|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28545|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-Out" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=1|Profile=Private|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28544|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-In" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=1|Profile=Private|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28543|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|Svc=Rpcss|Name=@FirewallAPI.dll,-28539|Desc=@FirewallAPI.dll,-28542|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SpoolSvc-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\spoolsv.exe|Svc=Spooler|Name=@FirewallAPI.dll,-28535|Desc=@FirewallAPI.dll,-28538|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28531|Desc=@FirewallAPI.dll,-28534|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28527|Desc=@FirewallAPI.dll,-28530|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28523|Desc=@FirewallAPI.dll,-28526|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|RPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28515|Desc=@FirewallAPI.dll,-28518|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28511|Desc=@FirewallAPI.dll,-28514|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Session-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|RPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28507|Desc=@FirewallAPI.dll,-28510|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Session-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|LPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28503|Desc=@FirewallAPI.dll,-28506|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP6-ERQ-Out-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=58|Profile=Domain|ICMP6=128:*|Name=@FirewallAPI.dll,-28546|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP6-ERQ-In-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=58|Profile=Domain|ICMP6=128:*|Name=@FirewallAPI.dll,-28545|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-Out-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=1|Profile=Domain|ICMP4=8:*|Name=@FirewallAPI.dll,-28544|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-ICMP4-ERQ-In-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=1|Profile=Domain|ICMP4=8:*|Name=@FirewallAPI.dll,-28543|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|Svc=Rpcss|Name=@FirewallAPI.dll,-28539|Desc=@FirewallAPI.dll,-28542|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SpoolSvc-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\spoolsv.exe|Svc=Spooler|Name=@FirewallAPI.dll,-28535|Desc=@FirewallAPI.dll,-28538|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=138|App=System|Name=@FirewallAPI.dll,-28531|Desc=@FirewallAPI.dll,-28534|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Datagram-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=138|App=System|Name=@FirewallAPI.dll,-28527|Desc=@FirewallAPI.dll,-28530|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=137|App=System|Name=@FirewallAPI.dll,-28523|Desc=@FirewallAPI.dll,-28526|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Name-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=137|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=445|App=System|Name=@FirewallAPI.dll,-28515|Desc=@FirewallAPI.dll,-28518|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-SMB-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-28511|Desc=@FirewallAPI.dll,-28514|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Session-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=139|App=System|Name=@FirewallAPI.dll,-28507|Desc=@FirewallAPI.dll,-28510|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"FPS-NB_Session-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=139|App=System|Name=@FirewallAPI.dll,-28503|Desc=@FirewallAPI.dll,-28506|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"NETDIS-WSDEVNT-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Public|RPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32819|Desc=@FirewallAPI.dll,-32820|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-In-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|LPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32817|Desc=@FirewallAPI.dll,-32818|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Public|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-In-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|LPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32813|Desc=@FirewallAPI.dll,-32814|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32811|Desc=@FirewallAPI.dll,-32812|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32809|Desc=@FirewallAPI.dll,-32810|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32805|Desc=@FirewallAPI.dll,-32808|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32801|Desc=@FirewallAPI.dll,-32804|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32789|Desc=@FirewallAPI.dll,-32792|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32785|Desc=@FirewallAPI.dll,-32788|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-Out-UDP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-In-UDP" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-Out-UDP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32773|Desc=@FirewallAPI.dll,-32776|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-In-UDP" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32769|Desc=@FirewallAPI.dll,-32772|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32765|Desc=@FirewallAPI.dll,-32768|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32761|Desc=@FirewallAPI.dll,-32764|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-32821|Desc=@FirewallAPI.dll,-32822|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32757|Desc=@FirewallAPI.dll,-32760|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32753|Desc=@FirewallAPI.dll,-32756|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32819|Desc=@FirewallAPI.dll,-32820|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32817|Desc=@FirewallAPI.dll,-32818|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32813|Desc=@FirewallAPI.dll,-32814|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32811|Desc=@FirewallAPI.dll,-32812|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDRESPUB-WSD-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32809|Desc=@FirewallAPI.dll,-32810|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32805|Desc=@FirewallAPI.dll,-32808|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-LLMNR-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32801|Desc=@FirewallAPI.dll,-32804|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32789|Desc=@FirewallAPI.dll,-32792|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-FDPHOST-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32785|Desc=@FirewallAPI.dll,-32788|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32773|Desc=@FirewallAPI.dll,-32776|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32769|Desc=@FirewallAPI.dll,-32772|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnP-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-32821|Desc=@FirewallAPI.dll,-32822|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32765|Desc=@FirewallAPI.dll,-32768|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32761|Desc=@FirewallAPI.dll,-32764|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-SSDPSrv-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32757|Desc=@FirewallAPI.dll,-32760|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-SSDPSrv-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32753|Desc=@FirewallAPI.dll,-32756|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5357|App=System|Name=@FirewallAPI.dll,-32819|Desc=@FirewallAPI.dll,-32820|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNT-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5357|App=System|Name=@FirewallAPI.dll,-32817|Desc=@FirewallAPI.dll,-32818|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5358|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-WSDEVNTS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5358|App=System|Name=@FirewallAPI.dll,-32813|Desc=@FirewallAPI.dll,-32814|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=138|App=System|Name=@FirewallAPI.dll,-32781|Desc=@FirewallAPI.dll,-32784|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Datagram-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=138|App=System|Name=@FirewallAPI.dll,-32777|Desc=@FirewallAPI.dll,-32780|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=137|App=System|Name=@FirewallAPI.dll,-32773|Desc=@FirewallAPI.dll,-32776|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-NB_Name-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=137|App=System|Name=@FirewallAPI.dll,-32769|Desc=@FirewallAPI.dll,-32772|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=System|Name=@FirewallAPI.dll,-32765|Desc=@FirewallAPI.dll,-32768|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"NETDIS-UPnPHost-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=2869|App=System|Name=@FirewallAPI.dll,-32761|Desc=@FirewallAPI.dll,-32764|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
Re: policie čr prosim o radu
SSTP-IN-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=443|App=System|Name=@sstpsvc.dll,-35002|Desc=@sstpsvc.dll,-35003|EmbedCtxt=@sstpsvc.dll,-35001|Edge=FALSE|
"SNMPTRAP-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=162|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@snmptrap.exe,-7|Desc=@snmptrap.exe,-8|EmbedCtxt=@snmptrap.exe,-3|Edge=FALSE|
"SNMPTRAP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=162|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@snmptrap.exe,-7|Desc=@snmptrap.exe,-8|EmbedCtxt=@snmptrap.exe,-3|Edge=FALSE|
"Netlogon-NamedPipe-In" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=445|App=System|Name=@netlogon.dll,-1003|Desc=@netlogon.dll,-1006|EmbedCtxt=@netlogon.dll,-1010|Edge=FALSE|
"NetPres-WSDEVNTS-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31775|Desc=@FirewallAPI.dll,-31776|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNTS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31773|Desc=@FirewallAPI.dll,-31774|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31771|Desc=@FirewallAPI.dll,-31772|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31769|Desc=@FirewallAPI.dll,-31770|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31765|Desc=@FirewallAPI.dll,-31768|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31761|Desc=@FirewallAPI.dll,-31764|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31757|Desc=@FirewallAPI.dll,-31760|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31753|Desc=@FirewallAPI.dll,-31756|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNTS-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5358|App=System|Name=@FirewallAPI.dll,-31775|Desc=@FirewallAPI.dll,-31776|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNTS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5358|App=System|Name=@FirewallAPI.dll,-31773|Desc=@FirewallAPI.dll,-31774|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5357|App=System|Name=@FirewallAPI.dll,-31771|Desc=@FirewallAPI.dll,-31772|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5357|App=System|Name=@FirewallAPI.dll,-31769|Desc=@FirewallAPI.dll,-31770|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31765|Desc=@FirewallAPI.dll,-31768|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31761|Desc=@FirewallAPI.dll,-31764|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"WPDMTP-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-30523|Desc=@FirewallAPI.dll,-30524|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30519|Desc=@FirewallAPI.dll,-30522|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30515|Desc=@FirewallAPI.dll,-30518|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30511|Desc=@FirewallAPI.dll,-30514|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30507|Desc=@FirewallAPI.dll,-30510|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\wudfhost.exe|Name=@FirewallAPI.dll,-30503|Desc=@FirewallAPI.dll,-30506|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\wudfhost.exe|Name=@FirewallAPI.dll,-30503|Desc=@FirewallAPI.dll,-30506|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"RRAS-PPTP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=1723|App=System|Name=@FirewallAPI.dll,-33761|Desc=@FirewallAPI.dll,-33764|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"RRAS-PPTP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=1723|App=System|Name=@FirewallAPI.dll,-33765|Desc=@FirewallAPI.dll,-33768|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"RRAS-L2TP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1701|App=System|Name=@FirewallAPI.dll,-33757|Desc=@FirewallAPI.dll,-33760|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"RRAS-L2TP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1701|App=System|Name=@FirewallAPI.dll,-33753|Desc=@FirewallAPI.dll,-33756|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"WINRM-HTTP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=5985|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=Vzdálená správa systému Windows (HTTP-In)|Desc=@WsmRes.dll,-52|EmbedCtxt=@FirewallAPI.dll,-30252|Edge=FALSE|
"WINRM-HTTP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5985|App=System|Name=Vzdálená správa systému Windows (HTTP-In)|Desc=@WsmRes.dll,-52|EmbedCtxt=@FirewallAPI.dll,-30252|Edge=FALSE|
"RemoteAssistance-UPnP-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-33037|Desc=@FirewallAPI.dll,-33038|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33031|Desc=@FirewallAPI.dll,-33034|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33027|Desc=@FirewallAPI.dll,-33030|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33023|Desc=@FirewallAPI.dll,-33026|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33019|Desc=@FirewallAPI.dll,-33022|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33007|Desc=@FirewallAPI.dll,-33010|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-In-TCP-EdgeScope-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33003|Desc=@FirewallAPI.dll,-33006|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=TRUE|
"RemoteAssistance-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-33037|Desc=@FirewallAPI.dll,-33038|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33031|Desc=@FirewallAPI.dll,-33034|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33027|Desc=@FirewallAPI.dll,-33030|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33023|Desc=@FirewallAPI.dll,-33026|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33019|Desc=@FirewallAPI.dll,-33022|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Public|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33007|Desc=@FirewallAPI.dll,-33010|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-In-TCP-EdgeScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Public|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33003|Desc=@FirewallAPI.dll,-33006|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=TRUE|
"RemoteAssistance-DCOM-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-33035|Desc=@FirewallAPI.dll,-33036|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-RAServer-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\raserver.exe|Name=@FirewallAPI.dll,-33015|Desc=@FirewallAPI.dll,-33018|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-RAServer-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\raserver.exe|Name=@FirewallAPI.dll,-33011|Desc=@FirewallAPI.dll,-33014|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"MSDTC-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33513|Desc=@FirewallAPI.dll,-33514|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-KTMRM-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ktmrm|Name=@FirewallAPI.dll,-33511|Desc=@FirewallAPI.dll,-33512|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33507|Desc=@FirewallAPI.dll,-33510|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33503|Desc=@FirewallAPI.dll,-33506|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33513|Desc=@FirewallAPI.dll,-33514|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-KTMRM-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=ktmrm|Name=@FirewallAPI.dll,-33511|Desc=@FirewallAPI.dll,-33512|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33507|Desc=@FirewallAPI.dll,-33510|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33503|Desc=@FirewallAPI.dll,-33506|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"RemoteTask-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33257|Desc=@FirewallAPI.dll,-33260|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"RemoteTask-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=schedule|Name=@FirewallAPI.dll,-33253|Desc=@FirewallAPI.dll,-33256|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"RemoteTask-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33257|Desc=@FirewallAPI.dll,-33260|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"RemoteTask-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=schedule|Name=@FirewallAPI.dll,-33253|Desc=@FirewallAPI.dll,-33256|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"BITSSVC-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-28274|Desc=@FirewallAPI.dll,-28277|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-RPC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=bits|Name=@FirewallAPI.dll,-28270|Desc=@FirewallAPI.dll,-28273|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=2178|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28266|Desc=@FirewallAPI.dll,-28269|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2178|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28262|Desc=@FirewallAPI.dll,-28265|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=bits|Name=@FirewallAPI.dll,-28258|Desc=@FirewallAPI.dll,-28261|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=bits|Name=@FirewallAPI.dll,-28254|Desc=@FirewallAPI.dll,-28257|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"RemoteFwAdmin-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-30007|Desc=@FirewallAPI.dll,-30010|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"RemoteFwAdmin-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=policyagent|Name=@FirewallAPI.dll,-30003|Desc=@FirewallAPI.dll,-30006|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"RemoteFwAdmin-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-30007|Desc=@FirewallAPI.dll,-30010|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"RemoteFwAdmin-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=policyagent|Name=@FirewallAPI.dll,-30003|Desc=@FirewallAPI.dll,-30006|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"RemoteSvcAdmin-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29515|Desc=@FirewallAPI.dll,-29518|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-NP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-29507|Desc=@FirewallAPI.dll,-29510|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\services.exe|Name=@FirewallAPI.dll,-29503|Desc=@FirewallAPI.dll,-29506|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29515|Desc=@FirewallAPI.dll,-29518|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-NP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-29507|Desc=@FirewallAPI.dll,-29510|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\services.exe|Name=@FirewallAPI.dll,-29503|Desc=@FirewallAPI.dll,-29506|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteEventLogSvc-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29265|Desc=@FirewallAPI.dll,-29268|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-NP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-29257|Desc=@FirewallAPI.dll,-29260|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Eventlog|Name=@FirewallAPI.dll,-29253|Desc=@FirewallAPI.dll,-29256|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29265|Desc=@FirewallAPI.dll,-29268|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-NP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-29257|Desc=@FirewallAPI.dll,-29260|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=Eventlog|Name=@FirewallAPI.dll,-29253|Desc=@FirewallAPI.dll,-29256|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"PNRPMNRS-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-34009|Desc=@FirewallAPI.dll,-34010|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=FALSE|
"PNRPMNRS-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-34007|Desc=@FirewallAPI.dll,-34008|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=FALSE|
"PNRPMNRS-PNRP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-34005|Desc=@FirewallAPI.dll,-34006|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=FALSE|
"PNRPMNRS-PNRP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-34003|Desc=@FirewallAPI.dll,-34004|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=TRUE|
"WMI-ASYNC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\wbem\unsecapp.exe|Name=@FirewallAPI.dll,-34256|Desc=@FirewallAPI.dll,-34257|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34258|Desc=@FirewallAPI.dll,-34259|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34254|Desc=@FirewallAPI.dll,-34255|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=135|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-34252|Desc=@FirewallAPI.dll,-34253|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-ASYNC-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%systemroot%\system32\wbem\unsecapp.exe|Name=@FirewallAPI.dll,-34256|Desc=@FirewallAPI.dll,-34257|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34258|Desc=@FirewallAPI.dll,-34259|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34254|Desc=@FirewallAPI.dll,-34255|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=135|App=%SystemRoot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-34252|Desc=@FirewallAPI.dll,-34253|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"RVM-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-34506|Desc=@FirewallAPI.dll,-34507|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-VDSLDR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\vdsldr.exe|Name=@FirewallAPI.dll,-34504|Desc=@FirewallAPI.dll,-34505|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-VDS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\vds.exe|Svc=vds|Name=@FirewallAPI.dll,-34502|Desc=@FirewallAPI.dll,-34503|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-34506|Desc=@FirewallAPI.dll,-34507|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-VDSLDR-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\vdsldr.exe|Name=@FirewallAPI.dll,-34504|Desc=@FirewallAPI.dll,-34505|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-VDS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\vds.exe|Svc=vds|Name=@FirewallAPI.dll,-34502|Desc=@FirewallAPI.dll,-34503|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"Collab-PNRP-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32031|Desc=@FirewallAPI.dll,-32034|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-PNRP-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32027|Desc=@FirewallAPI.dll,-32030|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-PNRP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-32023|Desc=@FirewallAPI.dll,-32026|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-PNRP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-32019|Desc=@FirewallAPI.dll,-32022|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=TRUE|
"Collab-P2PHost-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32015|Desc=@FirewallAPI.dll,-32018|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-P2PHost-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32011|Desc=@FirewallAPI.dll,-32014|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-P2PHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32007|Desc=@FirewallAPI.dll,-32010|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-P2PHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32003|Desc=@FirewallAPI.dll,-32006|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=TRUE|
"MsiScsi-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29007|Desc=@FirewallAPI.dll,-29010|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"MsiScsi-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29003|Desc=@FirewallAPI.dll,-29006|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"MsiScsi-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29007|Desc=@FirewallAPI.dll,-29010|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"MsiScsi-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29003|Desc=@FirewallAPI.dll,-29006|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"RemoteAdmin-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29765|Desc=@FirewallAPI.dll,-29768|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-NP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-29757|Desc=@FirewallAPI.dll,-29760|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=*|Name=@FirewallAPI.dll,-29753|Desc=@FirewallAPI.dll,-29756|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29765|Desc=@FirewallAPI.dll,-29768|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-NP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-29757|Desc=@FirewallAPI.dll,-29760|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=*|Name=@FirewallAPI.dll,-29753|Desc=@FirewallAPI.dll,-29756|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"WinCollab-P2P-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=3587|App=%SystemRoot%\system32\svchost.exe|Svc=P2PSvc|Name=@FirewallAPI.dll,-32281|Desc=@FirewallAPI.dll,-32284|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"WinCollab-P2P-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=3587|App=%SystemRoot%\system32\svchost.exe|Svc=P2PSvc|Name=@FirewallAPI.dll,-32277|Desc=@FirewallAPI.dll,-32280|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"WinCollab-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32273|Desc=@FirewallAPI.dll,-32276|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"WinCollab-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32269|Desc=@FirewallAPI.dll,-32272|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"WinCollab-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32265|Desc=@FirewallAPI.dll,-32268|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"WinCollab-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32261|Desc=@FirewallAPI.dll,-32264|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"WinCollab-DFSR-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=5722|App=%SystemRoot%\system32\dfsr.exe|Svc=Dfsr|Name=@FirewallAPI.dll,-32257|Desc=@FirewallAPI.dll,-32260|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"WinCollab-DFSR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=5722|App=%SystemRoot%\system32\dfsr.exe|Svc=Dfsr|Name=@FirewallAPI.dll,-32253|Desc=@FirewallAPI.dll,-32256|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"MCX-Prov-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\mcx2prov.exe|Name=@FirewallAPI.dll,-30812|Desc=@FirewallAPI.dll,-30813|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-MCX2SVC-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=mcx2svc|Name=@FirewallAPI.dll,-30810|Desc=@FirewallAPI.dll,-30811|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30805|Desc=@FirewallAPI.dll,-30808|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=7777|LPort=7778|LPort=7779|LPort=7780|LPort=7781|LPort=5004|LPort=5005|LPort=50004|LPort=50005|LPort=50006|LPort=50007|LPort=50008|LPort=50009|LPort=50010|LPort=50011|LPort=50012|LPort=50013|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30801|Desc=@FirewallAPI.dll,-30804|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-TERMSRV-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=3390|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30793|Desc=@FirewallAPI.dll,-30796|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-HTTPSTR-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=10244|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30789|Desc=@FirewallAPI.dll,-30792|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-HTTPSTR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=10244|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30785|Desc=@FirewallAPI.dll,-30788|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30781|Desc=@FirewallAPI.dll,-30784|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30777|Desc=@FirewallAPI.dll,-30780|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30773|Desc=@FirewallAPI.dll,-30776|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30769|Desc=@FirewallAPI.dll,-30772|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30765|Desc=@FirewallAPI.dll,-30768|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=554|LPort=8554|LPort=8555|LPort=8556|LPort=8557|LPort=8558|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30761|Desc=@FirewallAPI.dll,-30764|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30757|Desc=@FirewallAPI.dll,-30760|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30753|Desc=@FirewallAPI.dll,-30756|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"WMPNSS-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-31321|Desc=@FirewallAPI.dll,-31322|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31317|Desc=@FirewallAPI.dll,-31320|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31313|Desc=@FirewallAPI.dll,-31316|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31309|Desc=@FirewallAPI.dll,-31312|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31305|Desc=@FirewallAPI.dll,-31308|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31301|Desc=@FirewallAPI.dll,-31304|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31297|Desc=@FirewallAPI.dll,-31300|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31293|Desc=@FirewallAPI.dll,-31296|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=10243|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31289|Desc=@FirewallAPI.dll,-31292|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=10243|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31285|Desc=@FirewallAPI.dll,-31288|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31281|Desc=@FirewallAPI.dll,-31284|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31277|Desc=@FirewallAPI.dll,-31280|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ssdpsrv|Name=@FirewallAPI.dll,-31273|Desc=@FirewallAPI.dll,-31276|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ssdpsrv|Name=@FirewallAPI.dll,-31269|Desc=@FirewallAPI.dll,-31272|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31265|Desc=@FirewallAPI.dll,-31268|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31261|Desc=@FirewallAPI.dll,-31264|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31257|Desc=@FirewallAPI.dll,-31260|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31253|Desc=@FirewallAPI.dll,-31256|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31317|Desc=@FirewallAPI.dll,-31320|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31313|Desc=@FirewallAPI.dll,-31316|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31309|Desc=@FirewallAPI.dll,-31312|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31305|Desc=@FirewallAPI.dll,-31308|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31301|Desc=@FirewallAPI.dll,-31304|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31297|Desc=@FirewallAPI.dll,-31300|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31293|Desc=@FirewallAPI.dll,-31296|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=10243|App=System|Name=@FirewallAPI.dll,-31289|Desc=@FirewallAPI.dll,-31292|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=10243|App=System|Name=@FirewallAPI.dll,-31285|Desc=@FirewallAPI.dll,-31288|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31265|Desc=@FirewallAPI.dll,-31268|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31261|Desc=@FirewallAPI.dll,-31264|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31257|Desc=@FirewallAPI.dll,-31260|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31253|Desc=@FirewallAPI.dll,-31256|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31011|Desc=@FirewallAPI.dll,-31014|EmbedCtxt=@FirewallAPI.dll,-31002|Edge=FALSE|
"WMP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31007|Desc=@FirewallAPI.dll,-31010|EmbedCtxt=@FirewallAPI.dll,-31002|Edge=FALSE|
"WMP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31003|Desc=@FirewallAPI.dll,-31006|EmbedCtxt=@FirewallAPI.dll,-31002|Edge=FALSE|
"PerfLogsAlerts-DCOM-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=135|App=%systemroot%\system32\svchost.exe|Svc=rpcss|Name=@PlaSrv.exe,-10002|Desc=@PlaSrv.exe,-10003|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"PerfLogsAlerts-PLASrv-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%systemroot%\system32\plasrv.exe|Name=@PlaSrv.exe,-10000|Desc=@PlaSrv.exe,-10001|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"PerfLogsAlerts-DCOM-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=135|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\svchost.exe|Svc=rpcss|Name=@PlaSrv.exe,-10002|Desc=@PlaSrv.exe,-10003|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"PerfLogsAlerts-PLASrv-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\plasrv.exe|Name=@PlaSrv.exe,-10000|Desc=@PlaSrv.exe,-10001|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"TCP Query User{932EC050-1C32-40B9-A72C-BC81A3FDAF3E}C:\program files\codemasters\dirt\dirt.exe" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\program files\codemasters\dirt\dirt.exe|Name=DiRT Executable|Desc=DiRT Executable|Edge=FALSE|
"UDP Query User{05A4B052-4B78-4970-B157-080CB21B71F3}C:\program files\codemasters\dirt\dirt.exe" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\program files\codemasters\dirt\dirt.exe|Name=DiRT Executable|Desc=DiRT Executable|Edge=FALSE|
"{FD985059-A20A-4AB5-9AE7-3181BDD10B27}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Windows\System32\PnkBstrA.exe|Name=PnkBstrA|Edge=FALSE|
"{132C0A67-1280-4AE2-BE54-E82B474F3F12}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Windows\System32\PnkBstrA.exe|Name=PnkBstrA|Edge=FALSE|
"{208945A4-3D9E-4981-937E-0414B2DAC6C7}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Windows\System32\PnkBstrB.exe|Name=PnkBstrB|Edge=FALSE|
"{879DA05D-EDFD-47E3-B593-11D330EB1C00}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Windows\System32\PnkBstrB.exe|Name=PnkBstrB|Edge=FALSE|
"{5D942588-6F48-41BA-A3F0-D7BFE4E101ED}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe|Name=Call of Duty(R) - World at War(TM)|Edge=FALSE|
"{08A089C3-A695-4DFC-AE9E-1D18B34EF66F}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe|Name=Call of Duty(R) - World at War(TM)|Edge=FALSE|
"{10AFA3F8-3421-4540-884E-A8C94C85EB13}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files\Activision\Call of Duty - World at War\CoDWaW.exe|Name=Call of Duty(R) - World at War(TM)|Edge=FALSE|
"{50A25BBB-815B-4912-AB7E-7B5C70E831A7}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files\Activision\Call of Duty - World at War\CoDWaW.exe|Name=Call of Duty(R) - World at War(TM)|Edge=FALSE|
"TCP Query User{F82B1B8C-3CF1-4F9B-B5CF-801855692849}C:\program files\activision\call of duty 2\cod2mp_s.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\program files\activision\call of duty 2\cod2mp_s.exe|Name=CoD2MP_s|Desc=CoD2MP_s|Edge=FALSE|
"UDP Query User{3BA9D0E4-C13E-4969-9DF0-154CD5634EC8}C:\program files\activision\call of duty 2\cod2mp_s.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\program files\activision\call of duty 2\cod2mp_s.exe|Name=CoD2MP_s|Desc=CoD2MP_s|Edge=FALSE|
"{C40C84A6-2ADE-4902-AB6E-97BC1803A9E4}" = v2.0|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files\Skype\Phone\Skype.exe|Name=Skype|Edge=FALSE|
"{FFF6FB94-0BE1-4295-BC7D-44F612711140}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|LPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28503|Desc=@FirewallAPI.dll,-28506|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{09224C8D-266C-4670-A10A-6622D6D909A4}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Public|RPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28507|Desc=@FirewallAPI.dll,-28510|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{A05DE562-A942-4C25-9052-9D35929BFF11}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28511|Desc=@FirewallAPI.dll,-28514|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{16FECA7E-8AC6-46E3-90CB-26021C618D3D}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Public|RPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28515|Desc=@FirewallAPI.dll,-28518|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{032466EA-0243-4144-97E1-C57A506306B8}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{2FEB5CA4-AF47-46D0-92F5-AE87B10F182E}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28523|Desc=@FirewallAPI.dll,-28526|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{2C7CDBE5-C3ED-4C71-B789-B01C9E7AE253}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28527|Desc=@FirewallAPI.dll,-28530|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{D45B880B-0BEC-4988-9BFA-4B6190217AFE}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28531|Desc=@FirewallAPI.dll,-28534|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{FA46A6AC-8E9D-444D-A941-700EAD399355}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\spoolsv.exe|Svc=Spooler|Name=@FirewallAPI.dll,-28535|Desc=@FirewallAPI.dll,-28538|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{7694C4DD-D555-4FAA-B678-0D3F8CE48EA8}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|Svc=Rpcss|Name=@FirewallAPI.dll,-28539|Desc=@FirewallAPI.dll,-28542|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{49337672-A1BE-41BA-80CD-AF10EA2A992B}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=1|Profile=Public|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28543|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{CAC62A0E-7863-4B12-893C-5D126B1CF588}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=1|Profile=Public|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28544|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{B6305F3B-1D04-43C3-975E-D67AD5EEBC51}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|Profile=Public|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28545|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{5158580C-E45F-44CB-A795-2B4ED3F6992A}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|Profile=Public|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28546|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"TCP Query User{352AC63A-8A2B-431F-89AC-4E7E0AC40DF3}C:\users\pc\desktop\call of duty 2\cod2mp_s.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\users\pc\desktop\call of duty 2\cod2mp_s.exe|Name=cod2mp_s.exe|Desc=cod2mp_s.exe|Edge=FALSE|
"UDP Query User{B156402D-F223-4FD2-AD88-9F71013A67CD}C:\users\pc\desktop\call of duty 2\cod2mp_s.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\users\pc\desktop\call of duty 2\cod2mp_s.exe|Name=cod2mp_s.exe|Desc=cod2mp_s.exe|Edge=FALSE|
"TCP Query User{E54A6331-F1DE-4435-A2AE-B062156DA644}C:\program files\icq6.5\icq.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\program files\icq6.5\icq.exe|Name=ICQ|Desc=ICQ|Edge=FALSE|
"UDP Query User{643776AC-8F07-433B-8AC8-E962E456A204}C:\program files\icq6.5\icq.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\program files\icq6.5\icq.exe|Name=ICQ|Desc=ICQ|Edge=FALSE|
"TCP Query User{8428A869-6E0F-4078-8354-0FEBA4A757DF}C:\program files\internet explorer\iexplore.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\program files\internet explorer\iexplore.exe|Name=Internet Explorer|Desc=Internet Explorer|Edge=FALSE|
"UDP Query User{617413B6-F42E-496C-A779-719D7EE4F941}C:\program files\internet explorer\iexplore.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\program files\internet explorer\iexplore.exe|Name=Internet Explorer|Desc=Internet Explorer|Edge=FALSE|
"TCP Query User{098B18BE-DFE7-4DAF-ADAC-658E1309C886}C:\users\pc\desktop\battlefield 2\bf2.exe" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\users\pc\desktop\battlefield 2\bf2.exe|Name=bf2.exe|Desc=bf2.exe|Edge=FALSE|
"UDP Query User{EBFE2FD4-8011-4EC9-95D2-21059095F92F}C:\users\pc\desktop\battlefield 2\bf2.exe" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\users\pc\desktop\battlefield 2\bf2.exe|Name=bf2.exe|Desc=bf2.exe|Edge=FALSE|
"TCP Query User{317EB333-CED0-4E7F-A611-714A286A3374}C:\users\pc\desktop\cs 1.6\hl.exe" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\users\pc\desktop\cs 1.6\hl.exe|Name=hl.exe|Desc=hl.exe|Edge=FALSE|
"UDP Query User{0AA84A11-BA3B-4374-99E9-2B26C737A0A3}C:\users\pc\desktop\cs 1.6\hl.exe" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\users\pc\desktop\cs 1.6\hl.exe|Name=hl.exe|Desc=hl.exe|Edge=FALSE|
"{36389926-3AE1-4BCD-B64E-5E5A961C7F6B}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files\EA GAMES\Battlefield 2\BF2.exe|Name=Battlefield 2|Edge=FALSE|
"{5738FC9A-1A56-4A51-8C52-30751A28BF6C}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files\EA GAMES\Battlefield 2\BF2.exe|Name=Battlefield 2|Edge=FALSE|
"{54B05A6D-DEBC-463D-BCA0-8830C8BC51A0}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files\GameSpy Arcade\Aphex.exe|Name=GameSpy Arcade|Edge=FALSE|
"{9C5335CA-5E04-4EAE-B71F-1F2BF4791BB3}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files\GameSpy Arcade\Aphex.exe|Name=GameSpy Arcade|Edge=FALSE|
"TCP Query User{0591E0DF-F3FB-4BD7-BCBE-EA7F55A54A5A}C:\users\pc\desktop\cs 1.6\hltv.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\users\pc\desktop\cs 1.6\hltv.exe|Name=hltv.exe|Desc=hltv.exe|Edge=FALSE|
"UDP Query User{49B5A37E-B549-4782-BAF4-F19502F1581F}C:\users\pc\desktop\cs 1.6\hltv.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\users\pc\desktop\cs 1.6\hltv.exe|Name=hltv.exe|Desc=hltv.exe|Edge=FALSE|
"{CBC2AEA9-F892-48FC-8CFC-EDC6C03DB0F4}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32753|Desc=@FirewallAPI.dll,-32756|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{0B1CA95C-6FB1-4300-92F3-AD0B3D684115}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32757|Desc=@FirewallAPI.dll,-32760|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{90915751-C0D7-4970-85BE-047D077E0C2F}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-32821|Desc=@FirewallAPI.dll,-32822|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{EA2EB658-A30F-438B-A865-0EB9013A9F6D}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32785|Desc=@FirewallAPI.dll,-32788|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{5BFE7FF2-11A6-4CCC-AFFE-CEBB901FD431}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32789|Desc=@FirewallAPI.dll,-32792|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{C624BD5D-C711-422B-8132-5E2A12D881BA}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32801|Desc=@FirewallAPI.dll,-32804|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{381B4DC7-8E8F-4530-A616-05CD029139E4}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32805|Desc=@FirewallAPI.dll,-32808|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{A1E8A9D7-84DF-4365-A0A1-46A59C85B6BC}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32809|Desc=@FirewallAPI.dll,-32810|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{5413DB9A-CBF7-4FD1-A90C-F7031F26A5A0}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32811|Desc=@FirewallAPI.dll,-32812|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{418DFD12-B122-42B4-8DA4-396CE73DA515}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Profile=Domain|Profile=Private|Profile=Public|App=C:\Program Files\Skype\Plugin Manager\skypePM.exe|Name=Skype Extras Manager|Edge=TRUE|
"{11158B55-0A3D-40A5-A9B7-41DA6B16360C}" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|LPort=80|Name=@WsmRes.dll,-50|Desc=@WsmRes.dll,-51|EmbedCtxt=@FirewallAPI.dll,-30252|Edge=FALSE|
"{2158669B-32D4-477C-9A9C-C249BEA72EAD}" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=80|Name=@WsmRes.dll,-50|Desc=@WsmRes.dll,-51|EmbedCtxt=@FirewallAPI.dll,-30252|Edge=FALSE|
"{D59C0E58-8643-4294-AEE1-DD9B472426D0}" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|LPort=80|Name=@WsmRes.dll,-50|Desc=@WsmRes.dll,-51|EmbedCtxt=@FirewallAPI.dll,-30252|Edge=FALSE|
"{FB4A07E5-8123-4275-9AC9-9643C9DB11CB}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\USBSetup.exe|Name=Instalace zařízení HP|Edge=FALSE|
"{8D5F2026-CE55-48B3-94B9-189178C6A4C8}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\USBSetup.exe|Name=Instalace zařízení HP|Edge=FALSE|
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile\AuthorizedApplications]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile\GloballyOpenPorts]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile\Logging]
"LogFileSize" = 4096
"LogFilePath" = %systemroot%\system32\LogFiles\Firewall\pfirewall.log -- [2008.01.21 03:57:52 | 000,594,772 | ---- | M] ()
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\RestrictedServices]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\RestrictedServices\Configurable]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\RestrictedServices\Static]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\RestrictedServices\Static\System]
"Eventlog-1" = V2.0|Action=Allow|Dir=In|LPort=RPC|Protocol=6|App=%SystemRoot%\system32\svchost.exe|Svc=EventLog|Name=Allow RPC/TCP traffic to EventLog|
"Eventlog-2" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=EventLog|Name=Block any traffic to EventLog|
"Eventlog-3" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=EventLog|Name=Block any traffic from EventLog|
"DPS-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=DPS|Name=Block any other traffic to and from DPS|
"DPS-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=DPS|Name=Block any other traffic to and from DPS|
"WdiSystemHost-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=WdiSystemHost|Name=Block any other traffic to and from WdiSystemHost|
"WdiSystemHost-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=WdiSystemHost|Name=Block any other traffic to and from WdiSystemHost|
"DHCP-1" = V2.0|Action=Allow|Dir=Out|LPORT=68|RPort=67|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=DHCP|Name=@%SystemRoot%\system32\dhcpcsvc.dll,-102|Desc=@%SystemRoot%\system32\dhcpcsvc.dll,-102|
"DHCP-1-1" = V2.0|Action=Allow|Dir=In|LPORT=68|RPort=67|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=DHCP|Name=@%SystemRoot%\system32\dhcpcsvc.dll,-102|Desc=@%SystemRoot%\system32\dhcpcsvc.dll,-102|
"DHCP-2" = V2.0|Action=Allow|Dir=In|LPORT=546|RPort=547|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=DHCP|Name=@%SystemRoot%\system32\dhcpcsvc.dll,-102|Desc=@%SystemRoot%\system32\dhcpcsvc.dll,-102|
"DHCP-3" = V2.0|Action=Allow|Dir=Out|LPORT=546|RPort=547|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=DHCP|Name=@%SystemRoot%\system32\dhcpcsvc.dll,-102|Desc=@%SystemRoot%\system32\dhcpcsvc.dll,-102|
"DHCP-4" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=DHCP|Name=@%SystemRoot%\system32\dhcpcsvc.dll,-102|
"DHCP-5" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=DHCP|Name=@%SystemRoot%\system32\dhcpcsvc.dll,-102|
"dot3svc-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\System32\svchost.exe|Svc=dot3svc|Name=Block any traffic to and from dot3svc|
"dot3svc-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\System32\svchost.exe|Svc=dot3svc|Name=Block any traffic to and from dot3svc|
"Netman-1" = V2.0|Dir=In|Action=Block|App=%SystemRoot%\System32\svchost.exe|Svc=Netman|Name=Block all inbound traffic to Netman|
"Netman-2" = V2.0|Dir=Out|Action=Block|App=%SystemRoot%\System32\svchost.exe|Svc=Netman|Name=Block all outbound traffic from Netman|
"HidServ-1" = V2.0|Action=Block|Dir=in|App=%windir%\System32\svchost.exe|Svc=HidServ|Name=Block any traffic to HidServ|
"HidServ-2" = V2.0|Action=Block|Dir=out|App=%windir%\System32\svchost.exe|Svc=HidServ|Name=Block any traffic from HidServ|
"WcsPlugInService-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=WcsPlugInService|Name=@mscms.dll,-160|
"WcsPlugInService-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=WcsPlugInService|Name=@mscms.dll,-161|
"BFE-1" = V2.0|Action=Block|Dir=in|App=%SystemRoot%\System32\svchost.exe|Svc=BFE|Name=Block inbound traffic to BFE|
"BFE-2" = V2.0|Action=Block|Dir=out|App=%SystemRoot%\System32\svchost.exe|Svc=BFE|Name=Block outbound traffic from BFE|
"PolicyAgent-1" = V2.0|Action=Allow|Dir=Out|RPort=389|Protocol=6|App=%SystemRoot%\system32\svchost.exe|Svc=PolicyAgent|Name=@FirewallAPI.dll,-23300|Desc=@FirewallAPI.dll,-23301|
"PolicyAgent-2" = V2.0|Action=Allow|Dir=Out|RPort=389|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=PolicyAgent|Name=@FirewallAPI.dll,-23302|Desc=@FirewallAPI.dll,-23303|
"PolicyAgent-3" = V2.0|Action=Allow|Dir=In|LPort=RPC|Protocol=6|App=%SystemRoot%\system32\svchost.exe|Svc=PolicyAgent|Name=@FirewallAPI.dll,-5010|Desc=@FirewallAPI.dll,-5011|
"PolicyAgent-4" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=PolicyAgent|Name=@FirewallAPI.dll,-23304|
"PolicyAgent-5" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=PolicyAgent|Name=@FirewallAPI.dll,-23305|
"Trkwks-1" = V2.0|Action=Block|Dir=in|App=%windir%\System32\svchost.exe|Svc=trkwks|Name=Block any traffic to TrkWks service|
"Trkwks-2" = V2.0|Action=Block|Dir=out|App=%windir%\System32\svchost.exe|Svc=trkwks|Name=Block any traffic from TrkWks service|
"AVEndpointBuilder-1" = V2.0|Action=Block|Dir=in|App=%SystemRoot%\system32\svchost.exe|Svc=AudioEndpointBuilder|Name=Block any inbound traffic to AudioEndpointBuilder|
"LMHosts-1" = V2.0|Action=Allow|Dir=Out|RPort=53|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=lmhosts|Name=@%SystemRoot%\system32\lmhsvc.dll,-103|
"LMHosts-2" = V2.0|Action=Allow|Dir=Out|RPort=53|Protocol=6|App=%SystemRoot%\system32\svchost.exe|Svc=lmhosts|Name=@%SystemRoot%\system32\lmhsvc.dll,-103|
"LMHosts-3" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=lmhosts|Name=@%SystemRoot%\system32\lmhsvc.dll,-103|
"LMHosts-4" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=lmhosts|Name=@%SystemRoot%\system32\lmhsvc.dll,-103|
"MPSSVC-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=Mpssvc|Name=@FirewallAPI.dll,-23306|
"MPSSVC-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=Mpssvc|Name=@FirewallAPI,-23307|
"WerSvc-1" = V2.0|Action=Block|Dir=In|app=%windir%\System32\svchost.exe|Svc=WerSvc|Name=WerSvc_In_Block|Desc=Network rules for inbound traffic to WerSvc|
"WerSvc-2" = V2.0|Action=Block|Dir=Out|app=%windir%\System32\svchost.exe|Svc=WerSvc|Name=WerSvc_Out_Block|Desc=Network rules for outbound traffic from WerSvc|
"Sysmain-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=sysmain|Name=Block inbound access to sysmain|
"Sysmain-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=sysmain|Name=Block outbound access to sysmain|
"SNMPTRAP-1" = V2.0|Action=Allow|Dir=In|Protocol=17|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@%SystemRoot%\system32\snmptrap.exe,-5|
"SNMPTRAP-2" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@%SystemRoot%\system32\snmptrap.exe,-6|
"SNMPTRAP-3" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@%SystemRoot%\system32\snmptrap.exe,-6|
"clr_optimization_v2.0.50727_32-2" = V2.0|Action=Block|Dir=Out|App=C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe|Svc=clr_optimization_v2.0.50727_32|Name=Block traffic for clr_optimization_v2.0.50727_32|
"clr_optimization_v2.0.50727_32-1" = V2.0|Action=Block|Dir=In|App=C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe|Svc=clr_optimization_v2.0.50727_32|Name=Block traffic for clr_optimization_v2.0.50727_32|
"UI0Detect-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\System32\UI0Detect.exe|Svc=UI0Detect|Name=Block any traffic to and from UI0Detect|
"UI0Detect-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\System32\UI0Detect.exe|Svc=UI0Detect|Name=Block any traffic to and from UI0Detect|
"uxsms-1" = V2.0|Action=Block|Dir=in|App=%SystemRoot%\System32\svchost.exe|Svc=uxsms|Name=Block inbound traffic to uxsms|
"uxsms-2" = V2.0|Action=Block|Dir=out|App=%SystemRoot%\System32\svchost.exe|Svc=uxsms|Name=Block outbound traffic from uxsms|
"IPBusEnum-1" = V2.0|Action=Block|Dir=in|App=%SystemRoot%\system32\svchost.exe|Svc=IPBusEnum|Name=Block any inbound traffic to IPBusEnum|
"IPBusEnum-2" = V2.0|Action=Block|Dir=out|App=%SystemRoot%\system32\svchost.exe|Svc=IPBusEnum|Name=Block any outbound traffic from IPBusEnum|
"PNRP Allow Out" = v2.0|Action=Allow|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|LPort=3540|Protocol=17|Name=Allow PNRP to send to port 3540|
"TabletInputService-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=TabletInputService|Name=Block any traffic to TabletInputService|
"Wlansvc-2" = V2.0|Dir=Out|Action=Block|App=%SystemRoot%\System32\svchost.exe|Svc=Wlansvc|Name=Block any traffic to and from Wlansvc|
"EMDMgmt-1" = V2.0|Action=Block|Dir=in|App=%SystemRoot%\System32\svchost.exe|Svc=EMDMgmt|Name=Block any traffic to and from EMDMgmt Service|
"WindowsDefender-Out" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\\system32\\svchost.exe|Svc=WinDefend|Name=Block any traffic from WinDefend|
"P2P Grouping Block In" = v2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=p2psvc|Name=Block Grouping from all other ports|
"PNRP Block Out" = v2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=Block PNRP from all other ports|
"TabletInputService-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=TabletInputService|Name=Block any traffic from TabletInputService|
"PcaSvc-1" = V2.0|Action=Block|Dir=in|App=%SystemRoot%\system32\svchost.exe|Svc=PcaSvc|Name=@pcasvc.dll,-3|Desc=@pcasvc.dll,-5|
"SearchIndexer-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\SearchIndexer.exe|Svc=WSearch|Name=Block all outbound traffic from SearchIndexer|
"SearchFilterHost-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\SearchFilterHost.exe|Name=Block all inbound traffic to SearchFilterHost|
"SearchFilterHost-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\SearchFilterHost.exe|Name=Block all outbound traffic from SearchFilterHost|
"PcaSvc-2" = V2.0|Action=Block|Dir=out|App=%SystemRoot%\system32\svchost.exe|Svc=PcaSvc|Name=@pcasvc.dll,-4|Desc=@pcasvc.dll,-6|
"SearchIndexer-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\SearchIndexer.exe|Svc=WSearch|Name=Block all inbound traffic to SearchIndexer|
"P2P Ident Block Out" = v2.0|Action=Block|Dir=out|App=%SystemRoot%\system32\svchost.exe|Svc=p2pimsvc|Name=Block Idman from all other ports|
"PNRP Allow In" = v2.0|Action=Allow|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|LPort=3540|Protocol=17|Name=Allow PNRP to send to port 3540|
"Wlansvc-1" = V2.0|Dir=In|Action=Block|App=%SystemRoot%\System32\svchost.exe|Svc=Wlansvc|Name=Block any traffic to and from Wlansvc|
"EHSTART-2" = V2.0|Action=Block|Dir=out|App=%SystemRoot%\system32\svchost.exe|Svc=ehstart|Name=Block any outbound traffic from ehstart|
"PNRP Block In" = v2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=Block PNRP from all other ports|
"EMDMgmt-2" = V2.0|Action=Block|Dir=out|App=%SystemRoot%\System32\svchost.exe|Svc=EMDMgmt|Name=Block any traffic to and from EMDMgmt Service|
"WindowsDefender-In" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\\system32\\svchost.exe|Svc=WinDefend|Name=Block any traffic to WinDefend|
"P2P Grouping Allow Out" = v2.0|Action=Allow|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=P2PSvc|RPort=3587|Protocol=6|Name=Allow Grouping to send to port 3587|
"P2P Ident Block In" = v2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=p2pimsvc|Name=Block Idman from all other ports|
"P2P Grouping Block Out" = v2.0|Action=Block|Dir=out|App=%SystemRoot%\system32\svchost.exe|Svc=p2psvc|Name=Block Grouping from all other ports|
"EHSTART-1" = V2.0|Action=Block|Dir=in|App=%SystemRoot%\system32\svchost.exe|Svc=ehstart|Name=Block any inbound traffic to ehstart|
"P2P Grouping Allow In" = v2.0|Action=Allow|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=P2PSvc|LPort=3587|Protocol=6|Name=Allow Grouping to receive from port 3587|
"clr_optimization_v4.0.30319_32-1" = V4.0|Action=Block|Dir=In|App=C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe|Svc=clr_optimization_v4.0.30319_32|Name=Block traffic for clr_optimization_v4.0.30319_32|
"clr_optimization_v4.0.30319_32-2" = V4.0|Action=Block|Dir=Out|App=C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe|Svc=clr_optimization_v4.0.30319_32|Name=Block traffic for clr_optimization_v4.0.30319_32|
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"SNMPTRAP-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=162|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@snmptrap.exe,-7|Desc=@snmptrap.exe,-8|EmbedCtxt=@snmptrap.exe,-3|Edge=FALSE|
"SNMPTRAP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=162|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@snmptrap.exe,-7|Desc=@snmptrap.exe,-8|EmbedCtxt=@snmptrap.exe,-3|Edge=FALSE|
"Netlogon-NamedPipe-In" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=445|App=System|Name=@netlogon.dll,-1003|Desc=@netlogon.dll,-1006|EmbedCtxt=@netlogon.dll,-1010|Edge=FALSE|
"NetPres-WSDEVNTS-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31775|Desc=@FirewallAPI.dll,-31776|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNTS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31773|Desc=@FirewallAPI.dll,-31774|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31771|Desc=@FirewallAPI.dll,-31772|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=5357|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31769|Desc=@FirewallAPI.dll,-31770|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31765|Desc=@FirewallAPI.dll,-31768|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31761|Desc=@FirewallAPI.dll,-31764|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31757|Desc=@FirewallAPI.dll,-31760|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31753|Desc=@FirewallAPI.dll,-31756|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNTS-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5358|App=System|Name=@FirewallAPI.dll,-31775|Desc=@FirewallAPI.dll,-31776|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNTS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5358|App=System|Name=@FirewallAPI.dll,-31773|Desc=@FirewallAPI.dll,-31774|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=5357|App=System|Name=@FirewallAPI.dll,-31771|Desc=@FirewallAPI.dll,-31772|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-WSDEVNT-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5357|App=System|Name=@FirewallAPI.dll,-31769|Desc=@FirewallAPI.dll,-31770|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31765|Desc=@FirewallAPI.dll,-31768|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"NetPres-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\netproj.exe|Name=@FirewallAPI.dll,-31761|Desc=@FirewallAPI.dll,-31764|EmbedCtxt=@FirewallAPI.dll,-31752|Edge=FALSE|
"WPDMTP-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-30523|Desc=@FirewallAPI.dll,-30524|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30519|Desc=@FirewallAPI.dll,-30522|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30515|Desc=@FirewallAPI.dll,-30518|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30511|Desc=@FirewallAPI.dll,-30514|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30507|Desc=@FirewallAPI.dll,-30510|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\wudfhost.exe|Name=@FirewallAPI.dll,-30503|Desc=@FirewallAPI.dll,-30506|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"WPDMTP-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\wudfhost.exe|Name=@FirewallAPI.dll,-30503|Desc=@FirewallAPI.dll,-30506|EmbedCtxt=@FirewallAPI.dll,-30502|Edge=FALSE|
"RRAS-PPTP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=1723|App=System|Name=@FirewallAPI.dll,-33761|Desc=@FirewallAPI.dll,-33764|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"RRAS-PPTP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=1723|App=System|Name=@FirewallAPI.dll,-33765|Desc=@FirewallAPI.dll,-33768|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"RRAS-L2TP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1701|App=System|Name=@FirewallAPI.dll,-33757|Desc=@FirewallAPI.dll,-33760|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"RRAS-L2TP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1701|App=System|Name=@FirewallAPI.dll,-33753|Desc=@FirewallAPI.dll,-33756|EmbedCtxt=@FirewallAPI.dll,-33752|Edge=FALSE|
"WINRM-HTTP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=5985|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=Vzdálená správa systému Windows (HTTP-In)|Desc=@WsmRes.dll,-52|EmbedCtxt=@FirewallAPI.dll,-30252|Edge=FALSE|
"WINRM-HTTP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=5985|App=System|Name=Vzdálená správa systému Windows (HTTP-In)|Desc=@WsmRes.dll,-52|EmbedCtxt=@FirewallAPI.dll,-30252|Edge=FALSE|
"RemoteAssistance-UPnP-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-33037|Desc=@FirewallAPI.dll,-33038|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33031|Desc=@FirewallAPI.dll,-33034|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-In-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33027|Desc=@FirewallAPI.dll,-33030|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-Out-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33023|Desc=@FirewallAPI.dll,-33026|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-In-UDP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33019|Desc=@FirewallAPI.dll,-33022|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-Out-TCP-Active" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33007|Desc=@FirewallAPI.dll,-33010|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-In-TCP-EdgeScope-Active" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33003|Desc=@FirewallAPI.dll,-33006|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=TRUE|
"RemoteAssistance-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-33037|Desc=@FirewallAPI.dll,-33038|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33031|Desc=@FirewallAPI.dll,-33034|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-33027|Desc=@FirewallAPI.dll,-33030|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33023|Desc=@FirewallAPI.dll,-33026|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-33019|Desc=@FirewallAPI.dll,-33022|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Public|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33007|Desc=@FirewallAPI.dll,-33010|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-In-TCP-EdgeScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Public|App=%SystemRoot%\system32\msra.exe|Name=@FirewallAPI.dll,-33003|Desc=@FirewallAPI.dll,-33006|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=TRUE|
"RemoteAssistance-DCOM-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-33035|Desc=@FirewallAPI.dll,-33036|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-RAServer-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\raserver.exe|Name=@FirewallAPI.dll,-33015|Desc=@FirewallAPI.dll,-33018|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"RemoteAssistance-RAServer-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\raserver.exe|Name=@FirewallAPI.dll,-33011|Desc=@FirewallAPI.dll,-33014|EmbedCtxt=@FirewallAPI.dll,-33002|Edge=FALSE|
"MSDTC-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33513|Desc=@FirewallAPI.dll,-33514|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-KTMRM-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ktmrm|Name=@FirewallAPI.dll,-33511|Desc=@FirewallAPI.dll,-33512|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33507|Desc=@FirewallAPI.dll,-33510|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33503|Desc=@FirewallAPI.dll,-33506|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33513|Desc=@FirewallAPI.dll,-33514|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-KTMRM-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=ktmrm|Name=@FirewallAPI.dll,-33511|Desc=@FirewallAPI.dll,-33512|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33507|Desc=@FirewallAPI.dll,-33510|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"MSDTC-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33503|Desc=@FirewallAPI.dll,-33506|EmbedCtxt=@FirewallAPI.dll,-33502|Edge=FALSE|
"RemoteTask-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33257|Desc=@FirewallAPI.dll,-33260|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"RemoteTask-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=schedule|Name=@FirewallAPI.dll,-33253|Desc=@FirewallAPI.dll,-33256|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"RemoteTask-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-33257|Desc=@FirewallAPI.dll,-33260|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"RemoteTask-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=schedule|Name=@FirewallAPI.dll,-33253|Desc=@FirewallAPI.dll,-33256|EmbedCtxt=@FirewallAPI.dll,-33252|Edge=FALSE|
"BITSSVC-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-28274|Desc=@FirewallAPI.dll,-28277|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-RPC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=bits|Name=@FirewallAPI.dll,-28270|Desc=@FirewallAPI.dll,-28273|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=2178|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28266|Desc=@FirewallAPI.dll,-28269|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2178|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28262|Desc=@FirewallAPI.dll,-28265|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=bits|Name=@FirewallAPI.dll,-28258|Desc=@FirewallAPI.dll,-28261|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"BITSSVC-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=bits|Name=@FirewallAPI.dll,-28254|Desc=@FirewallAPI.dll,-28257|EmbedCtxt=@FirewallAPI.dll,-28252|Edge=FALSE|
"RemoteFwAdmin-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-30007|Desc=@FirewallAPI.dll,-30010|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"RemoteFwAdmin-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=policyagent|Name=@FirewallAPI.dll,-30003|Desc=@FirewallAPI.dll,-30006|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"RemoteFwAdmin-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-30007|Desc=@FirewallAPI.dll,-30010|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"RemoteFwAdmin-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=policyagent|Name=@FirewallAPI.dll,-30003|Desc=@FirewallAPI.dll,-30006|EmbedCtxt=@FirewallAPI.dll,-30002|Edge=FALSE|
"RemoteSvcAdmin-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29515|Desc=@FirewallAPI.dll,-29518|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-NP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-29507|Desc=@FirewallAPI.dll,-29510|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\services.exe|Name=@FirewallAPI.dll,-29503|Desc=@FirewallAPI.dll,-29506|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29515|Desc=@FirewallAPI.dll,-29518|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-NP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-29507|Desc=@FirewallAPI.dll,-29510|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteSvcAdmin-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\services.exe|Name=@FirewallAPI.dll,-29503|Desc=@FirewallAPI.dll,-29506|EmbedCtxt=@FirewallAPI.dll,-29502|Edge=FALSE|
"RemoteEventLogSvc-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29265|Desc=@FirewallAPI.dll,-29268|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-NP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-29257|Desc=@FirewallAPI.dll,-29260|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Eventlog|Name=@FirewallAPI.dll,-29253|Desc=@FirewallAPI.dll,-29256|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29265|Desc=@FirewallAPI.dll,-29268|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-NP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-29257|Desc=@FirewallAPI.dll,-29260|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"RemoteEventLogSvc-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=Eventlog|Name=@FirewallAPI.dll,-29253|Desc=@FirewallAPI.dll,-29256|EmbedCtxt=@FirewallAPI.dll,-29252|Edge=FALSE|
"PNRPMNRS-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-34009|Desc=@FirewallAPI.dll,-34010|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=FALSE|
"PNRPMNRS-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-34007|Desc=@FirewallAPI.dll,-34008|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=FALSE|
"PNRPMNRS-PNRP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-34005|Desc=@FirewallAPI.dll,-34006|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=FALSE|
"PNRPMNRS-PNRP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-34003|Desc=@FirewallAPI.dll,-34004|EmbedCtxt=@FirewallAPI.dll,-34002|Edge=TRUE|
"WMI-ASYNC-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\wbem\unsecapp.exe|Name=@FirewallAPI.dll,-34256|Desc=@FirewallAPI.dll,-34257|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34258|Desc=@FirewallAPI.dll,-34259|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34254|Desc=@FirewallAPI.dll,-34255|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=135|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-34252|Desc=@FirewallAPI.dll,-34253|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-ASYNC-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%systemroot%\system32\wbem\unsecapp.exe|Name=@FirewallAPI.dll,-34256|Desc=@FirewallAPI.dll,-34257|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34258|Desc=@FirewallAPI.dll,-34259|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-WINMGMT-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=winmgmt|Name=@FirewallAPI.dll,-34254|Desc=@FirewallAPI.dll,-34255|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"WMI-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=135|App=%SystemRoot%\system32\svchost.exe|Svc=rpcss|Name=@FirewallAPI.dll,-34252|Desc=@FirewallAPI.dll,-34253|EmbedCtxt=@FirewallAPI.dll,-34251|Edge=FALSE|
"RVM-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-34506|Desc=@FirewallAPI.dll,-34507|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-VDSLDR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\vdsldr.exe|Name=@FirewallAPI.dll,-34504|Desc=@FirewallAPI.dll,-34505|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-VDS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\vds.exe|Svc=vds|Name=@FirewallAPI.dll,-34502|Desc=@FirewallAPI.dll,-34503|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-34506|Desc=@FirewallAPI.dll,-34507|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-VDSLDR-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\vdsldr.exe|Name=@FirewallAPI.dll,-34504|Desc=@FirewallAPI.dll,-34505|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"RVM-VDS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\vds.exe|Svc=vds|Name=@FirewallAPI.dll,-34502|Desc=@FirewallAPI.dll,-34503|EmbedCtxt=@FirewallAPI.dll,-34501|Edge=FALSE|
"Collab-PNRP-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32031|Desc=@FirewallAPI.dll,-32034|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-PNRP-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32027|Desc=@FirewallAPI.dll,-32030|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-PNRP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-32023|Desc=@FirewallAPI.dll,-32026|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-PNRP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3540|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=@FirewallAPI.dll,-32019|Desc=@FirewallAPI.dll,-32022|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=TRUE|
"Collab-P2PHost-WSD-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32015|Desc=@FirewallAPI.dll,-32018|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-P2PHost-WSD-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32011|Desc=@FirewallAPI.dll,-32014|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-P2PHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32007|Desc=@FirewallAPI.dll,-32010|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=FALSE|
"Collab-P2PHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%SystemRoot%\system32\p2phost.exe|Name=@FirewallAPI.dll,-32003|Desc=@FirewallAPI.dll,-32006|EmbedCtxt=@FirewallAPI.dll,-32002|Edge=TRUE|
"MsiScsi-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29007|Desc=@FirewallAPI.dll,-29010|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"MsiScsi-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29003|Desc=@FirewallAPI.dll,-29006|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"MsiScsi-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29007|Desc=@FirewallAPI.dll,-29010|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"MsiScsi-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\svchost.exe|Svc=Msiscsi|Name=@FirewallAPI.dll,-29003|Desc=@FirewallAPI.dll,-29006|EmbedCtxt=@FirewallAPI.dll,-29002|Edge=FALSE|
"RemoteAdmin-RPCSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29765|Desc=@FirewallAPI.dll,-29768|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-NP-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-29757|Desc=@FirewallAPI.dll,-29760|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=*|Name=@FirewallAPI.dll,-29753|Desc=@FirewallAPI.dll,-29756|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-RPCSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC-EPMap|App=%SystemRoot%\system32\svchost.exe|Svc=RPCSS|Name=@FirewallAPI.dll,-29765|Desc=@FirewallAPI.dll,-29768|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-NP-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=445|App=System|Name=@FirewallAPI.dll,-29757|Desc=@FirewallAPI.dll,-29760|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"RemoteAdmin-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=RPC|App=%SystemRoot%\system32\svchost.exe|Svc=*|Name=@FirewallAPI.dll,-29753|Desc=@FirewallAPI.dll,-29756|EmbedCtxt=@FirewallAPI.dll,-29752|Edge=FALSE|
"WinCollab-P2P-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=3587|App=%SystemRoot%\system32\svchost.exe|Svc=P2PSvc|Name=@FirewallAPI.dll,-32281|Desc=@FirewallAPI.dll,-32284|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"WinCollab-P2P-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=3587|App=%SystemRoot%\system32\svchost.exe|Svc=P2PSvc|Name=@FirewallAPI.dll,-32277|Desc=@FirewallAPI.dll,-32280|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"WinCollab-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32273|Desc=@FirewallAPI.dll,-32276|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"WinCollab-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32269|Desc=@FirewallAPI.dll,-32272|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"WinCollab-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32265|Desc=@FirewallAPI.dll,-32268|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"WinCollab-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Collaboration\WinCollab.exe|Name=@FirewallAPI.dll,-32261|Desc=@FirewallAPI.dll,-32264|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"WinCollab-DFSR-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=5722|App=%SystemRoot%\system32\dfsr.exe|Svc=Dfsr|Name=@FirewallAPI.dll,-32257|Desc=@FirewallAPI.dll,-32260|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=FALSE|
"WinCollab-DFSR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=5722|App=%SystemRoot%\system32\dfsr.exe|Svc=Dfsr|Name=@FirewallAPI.dll,-32253|Desc=@FirewallAPI.dll,-32256|EmbedCtxt=@FirewallAPI.dll,-32252|Edge=TRUE|
"MCX-Prov-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\mcx2prov.exe|Name=@FirewallAPI.dll,-30812|Desc=@FirewallAPI.dll,-30813|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-MCX2SVC-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=mcx2svc|Name=@FirewallAPI.dll,-30810|Desc=@FirewallAPI.dll,-30811|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30805|Desc=@FirewallAPI.dll,-30808|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=7777|LPort=7778|LPort=7779|LPort=7780|LPort=7781|LPort=5004|LPort=5005|LPort=50004|LPort=50005|LPort=50006|LPort=50007|LPort=50008|LPort=50009|LPort=50010|LPort=50011|LPort=50012|LPort=50013|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30801|Desc=@FirewallAPI.dll,-30804|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-TERMSRV-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=3390|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30793|Desc=@FirewallAPI.dll,-30796|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-HTTPSTR-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=10244|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30789|Desc=@FirewallAPI.dll,-30792|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-HTTPSTR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=10244|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30785|Desc=@FirewallAPI.dll,-30788|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30781|Desc=@FirewallAPI.dll,-30784|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30777|Desc=@FirewallAPI.dll,-30780|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30773|Desc=@FirewallAPI.dll,-30776|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-QWave-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-30769|Desc=@FirewallAPI.dll,-30772|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30765|Desc=@FirewallAPI.dll,-30768|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=554|LPort=8554|LPort=8555|LPort=8556|LPort=8557|LPort=8558|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\ehome\ehshell.exe|Name=@FirewallAPI.dll,-30761|Desc=@FirewallAPI.dll,-30764|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30757|Desc=@FirewallAPI.dll,-30760|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"MCX-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-30753|Desc=@FirewallAPI.dll,-30756|EmbedCtxt=@FirewallAPI.dll,-30752|Edge=FALSE|
"WMPNSS-UPnP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-31321|Desc=@FirewallAPI.dll,-31322|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31317|Desc=@FirewallAPI.dll,-31320|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31313|Desc=@FirewallAPI.dll,-31316|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31309|Desc=@FirewallAPI.dll,-31312|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31305|Desc=@FirewallAPI.dll,-31308|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31301|Desc=@FirewallAPI.dll,-31304|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31297|Desc=@FirewallAPI.dll,-31300|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31293|Desc=@FirewallAPI.dll,-31296|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=10243|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31289|Desc=@FirewallAPI.dll,-31292|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=10243|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31285|Desc=@FirewallAPI.dll,-31288|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-UPnPHost-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31281|Desc=@FirewallAPI.dll,-31284|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-UPnPHost-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-31277|Desc=@FirewallAPI.dll,-31280|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-SSDPSrv-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ssdpsrv|Name=@FirewallAPI.dll,-31273|Desc=@FirewallAPI.dll,-31276|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-SSDPSrv-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=ssdpsrv|Name=@FirewallAPI.dll,-31269|Desc=@FirewallAPI.dll,-31272|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31265|Desc=@FirewallAPI.dll,-31268|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31261|Desc=@FirewallAPI.dll,-31264|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Private|Profile=Public|RPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31257|Desc=@FirewallAPI.dll,-31260|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=2177|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31253|Desc=@FirewallAPI.dll,-31256|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31317|Desc=@FirewallAPI.dll,-31320|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31313|Desc=@FirewallAPI.dll,-31316|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31309|Desc=@FirewallAPI.dll,-31312|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmpnetwk.exe|Name=@FirewallAPI.dll,-31305|Desc=@FirewallAPI.dll,-31308|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31301|Desc=@FirewallAPI.dll,-31304|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31297|Desc=@FirewallAPI.dll,-31300|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-WMP-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31293|Desc=@FirewallAPI.dll,-31296|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=10243|App=System|Name=@FirewallAPI.dll,-31289|Desc=@FirewallAPI.dll,-31292|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-HTTPSTR-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=10243|App=System|Name=@FirewallAPI.dll,-31285|Desc=@FirewallAPI.dll,-31288|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|RPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31265|Desc=@FirewallAPI.dll,-31268|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31261|Desc=@FirewallAPI.dll,-31264|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-Out-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|RPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31257|Desc=@FirewallAPI.dll,-31260|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMPNSS-QWave-In-UDP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|LPort=2177|App=%SystemRoot%\system32\svchost.exe|Svc=Qwave|Name=@FirewallAPI.dll,-31253|Desc=@FirewallAPI.dll,-31256|EmbedCtxt=@FirewallAPI.dll,-31252|Edge=FALSE|
"WMP-Out-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31011|Desc=@FirewallAPI.dll,-31014|EmbedCtxt=@FirewallAPI.dll,-31002|Edge=FALSE|
"WMP-Out-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=Out|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31007|Desc=@FirewallAPI.dll,-31010|EmbedCtxt=@FirewallAPI.dll,-31002|Edge=FALSE|
"WMP-In-UDP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Domain|Profile=Private|Profile=Public|App=%ProgramFiles%\Windows Media Player\wmplayer.exe|Name=@FirewallAPI.dll,-31003|Desc=@FirewallAPI.dll,-31006|EmbedCtxt=@FirewallAPI.dll,-31002|Edge=FALSE|
"PerfLogsAlerts-DCOM-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=135|App=%systemroot%\system32\svchost.exe|Svc=rpcss|Name=@PlaSrv.exe,-10002|Desc=@PlaSrv.exe,-10003|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"PerfLogsAlerts-PLASrv-In-TCP-NoScope" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%systemroot%\system32\plasrv.exe|Name=@PlaSrv.exe,-10000|Desc=@PlaSrv.exe,-10001|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"PerfLogsAlerts-DCOM-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|LPort=135|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\svchost.exe|Svc=rpcss|Name=@PlaSrv.exe,-10002|Desc=@PlaSrv.exe,-10003|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"PerfLogsAlerts-PLASrv-In-TCP" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%systemroot%\system32\plasrv.exe|Name=@PlaSrv.exe,-10000|Desc=@PlaSrv.exe,-10001|EmbedCtxt=@PlaSrv.exe,-10005|Edge=FALSE|
"TCP Query User{932EC050-1C32-40B9-A72C-BC81A3FDAF3E}C:\program files\codemasters\dirt\dirt.exe" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\program files\codemasters\dirt\dirt.exe|Name=DiRT Executable|Desc=DiRT Executable|Edge=FALSE|
"UDP Query User{05A4B052-4B78-4970-B157-080CB21B71F3}C:\program files\codemasters\dirt\dirt.exe" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\program files\codemasters\dirt\dirt.exe|Name=DiRT Executable|Desc=DiRT Executable|Edge=FALSE|
"{FD985059-A20A-4AB5-9AE7-3181BDD10B27}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Windows\System32\PnkBstrA.exe|Name=PnkBstrA|Edge=FALSE|
"{132C0A67-1280-4AE2-BE54-E82B474F3F12}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Windows\System32\PnkBstrA.exe|Name=PnkBstrA|Edge=FALSE|
"{208945A4-3D9E-4981-937E-0414B2DAC6C7}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Windows\System32\PnkBstrB.exe|Name=PnkBstrB|Edge=FALSE|
"{879DA05D-EDFD-47E3-B593-11D330EB1C00}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Windows\System32\PnkBstrB.exe|Name=PnkBstrB|Edge=FALSE|
"{5D942588-6F48-41BA-A3F0-D7BFE4E101ED}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe|Name=Call of Duty(R) - World at War(TM)|Edge=FALSE|
"{08A089C3-A695-4DFC-AE9E-1D18B34EF66F}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files\Activision\Call of Duty - World at War\CoDWaWmp.exe|Name=Call of Duty(R) - World at War(TM)|Edge=FALSE|
"{10AFA3F8-3421-4540-884E-A8C94C85EB13}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files\Activision\Call of Duty - World at War\CoDWaW.exe|Name=Call of Duty(R) - World at War(TM)|Edge=FALSE|
"{50A25BBB-815B-4912-AB7E-7B5C70E831A7}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files\Activision\Call of Duty - World at War\CoDWaW.exe|Name=Call of Duty(R) - World at War(TM)|Edge=FALSE|
"TCP Query User{F82B1B8C-3CF1-4F9B-B5CF-801855692849}C:\program files\activision\call of duty 2\cod2mp_s.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\program files\activision\call of duty 2\cod2mp_s.exe|Name=CoD2MP_s|Desc=CoD2MP_s|Edge=FALSE|
"UDP Query User{3BA9D0E4-C13E-4969-9DF0-154CD5634EC8}C:\program files\activision\call of duty 2\cod2mp_s.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\program files\activision\call of duty 2\cod2mp_s.exe|Name=CoD2MP_s|Desc=CoD2MP_s|Edge=FALSE|
"{C40C84A6-2ADE-4902-AB6E-97BC1803A9E4}" = v2.0|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files\Skype\Phone\Skype.exe|Name=Skype|Edge=FALSE|
"{FFF6FB94-0BE1-4295-BC7D-44F612711140}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|LPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28503|Desc=@FirewallAPI.dll,-28506|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{09224C8D-266C-4670-A10A-6622D6D909A4}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Public|RPort=139|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28507|Desc=@FirewallAPI.dll,-28510|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{A05DE562-A942-4C25-9052-9D35929BFF11}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|LPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28511|Desc=@FirewallAPI.dll,-28514|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{16FECA7E-8AC6-46E3-90CB-26021C618D3D}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Public|RPort=445|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28515|Desc=@FirewallAPI.dll,-28518|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{032466EA-0243-4144-97E1-C57A506306B8}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28519|Desc=@FirewallAPI.dll,-28522|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{2FEB5CA4-AF47-46D0-92F5-AE87B10F182E}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=137|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28523|Desc=@FirewallAPI.dll,-28526|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{2C7CDBE5-C3ED-4C71-B789-B01C9E7AE253}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28527|Desc=@FirewallAPI.dll,-28530|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{D45B880B-0BEC-4988-9BFA-4B6190217AFE}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=138|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-28531|Desc=@FirewallAPI.dll,-28534|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{FA46A6AC-8E9D-444D-A941-700EAD399355}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|LPort=RPC|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\spoolsv.exe|Svc=Spooler|Name=@FirewallAPI.dll,-28535|Desc=@FirewallAPI.dll,-28538|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{7694C4DD-D555-4FAA-B678-0D3F8CE48EA8}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|LPort=RPC-EPMap|RA4=LocalSubnet|RA6=LocalSubnet|Svc=Rpcss|Name=@FirewallAPI.dll,-28539|Desc=@FirewallAPI.dll,-28542|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{49337672-A1BE-41BA-80CD-AF10EA2A992B}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=1|Profile=Public|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28543|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{CAC62A0E-7863-4B12-893C-5D126B1CF588}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=1|Profile=Public|ICMP4=8:*|RA4=LocalSubnet|Name=@FirewallAPI.dll,-28544|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{B6305F3B-1D04-43C3-975E-D67AD5EEBC51}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=58|Profile=Public|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28545|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"{5158580C-E45F-44CB-A795-2B4ED3F6992A}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=58|Profile=Public|ICMP6=128:*|RA6=LocalSubnet|Name=@FirewallAPI.dll,-28546|Desc=@FirewallAPI.dll,-28547|EmbedCtxt=@FirewallAPI.dll,-28502|Edge=FALSE|
"TCP Query User{352AC63A-8A2B-431F-89AC-4E7E0AC40DF3}C:\users\pc\desktop\call of duty 2\cod2mp_s.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\users\pc\desktop\call of duty 2\cod2mp_s.exe|Name=cod2mp_s.exe|Desc=cod2mp_s.exe|Edge=FALSE|
"UDP Query User{B156402D-F223-4FD2-AD88-9F71013A67CD}C:\users\pc\desktop\call of duty 2\cod2mp_s.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\users\pc\desktop\call of duty 2\cod2mp_s.exe|Name=cod2mp_s.exe|Desc=cod2mp_s.exe|Edge=FALSE|
"TCP Query User{E54A6331-F1DE-4435-A2AE-B062156DA644}C:\program files\icq6.5\icq.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\program files\icq6.5\icq.exe|Name=ICQ|Desc=ICQ|Edge=FALSE|
"UDP Query User{643776AC-8F07-433B-8AC8-E962E456A204}C:\program files\icq6.5\icq.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\program files\icq6.5\icq.exe|Name=ICQ|Desc=ICQ|Edge=FALSE|
"TCP Query User{8428A869-6E0F-4078-8354-0FEBA4A757DF}C:\program files\internet explorer\iexplore.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\program files\internet explorer\iexplore.exe|Name=Internet Explorer|Desc=Internet Explorer|Edge=FALSE|
"UDP Query User{617413B6-F42E-496C-A779-719D7EE4F941}C:\program files\internet explorer\iexplore.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\program files\internet explorer\iexplore.exe|Name=Internet Explorer|Desc=Internet Explorer|Edge=FALSE|
"TCP Query User{098B18BE-DFE7-4DAF-ADAC-658E1309C886}C:\users\pc\desktop\battlefield 2\bf2.exe" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\users\pc\desktop\battlefield 2\bf2.exe|Name=bf2.exe|Desc=bf2.exe|Edge=FALSE|
"UDP Query User{EBFE2FD4-8011-4EC9-95D2-21059095F92F}C:\users\pc\desktop\battlefield 2\bf2.exe" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\users\pc\desktop\battlefield 2\bf2.exe|Name=bf2.exe|Desc=bf2.exe|Edge=FALSE|
"TCP Query User{317EB333-CED0-4E7F-A611-714A286A3374}C:\users\pc\desktop\cs 1.6\hl.exe" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\users\pc\desktop\cs 1.6\hl.exe|Name=hl.exe|Desc=hl.exe|Edge=FALSE|
"UDP Query User{0AA84A11-BA3B-4374-99E9-2B26C737A0A3}C:\users\pc\desktop\cs 1.6\hl.exe" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\users\pc\desktop\cs 1.6\hl.exe|Name=hl.exe|Desc=hl.exe|Edge=FALSE|
"{36389926-3AE1-4BCD-B64E-5E5A961C7F6B}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files\EA GAMES\Battlefield 2\BF2.exe|Name=Battlefield 2|Edge=FALSE|
"{5738FC9A-1A56-4A51-8C52-30751A28BF6C}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files\EA GAMES\Battlefield 2\BF2.exe|Name=Battlefield 2|Edge=FALSE|
"{54B05A6D-DEBC-463D-BCA0-8830C8BC51A0}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files\GameSpy Arcade\Aphex.exe|Name=GameSpy Arcade|Edge=FALSE|
"{9C5335CA-5E04-4EAE-B71F-1F2BF4791BB3}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files\GameSpy Arcade\Aphex.exe|Name=GameSpy Arcade|Edge=FALSE|
"TCP Query User{0591E0DF-F3FB-4BD7-BCBE-EA7F55A54A5A}C:\users\pc\desktop\cs 1.6\hltv.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\users\pc\desktop\cs 1.6\hltv.exe|Name=hltv.exe|Desc=hltv.exe|Edge=FALSE|
"UDP Query User{49B5A37E-B549-4782-BAF4-F19502F1581F}C:\users\pc\desktop\cs 1.6\hltv.exe" = v2.0|Action=Block|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\users\pc\desktop\cs 1.6\hltv.exe|Name=hltv.exe|Desc=hltv.exe|Edge=FALSE|
"{CBC2AEA9-F892-48FC-8CFC-EDC6C03DB0F4}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32753|Desc=@FirewallAPI.dll,-32756|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{0B1CA95C-6FB1-4300-92F3-AD0B3D684115}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=1900|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=Ssdpsrv|Name=@FirewallAPI.dll,-32757|Desc=@FirewallAPI.dll,-32760|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{90915751-C0D7-4970-85BE-047D077E0C2F}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=upnphost|Name=@FirewallAPI.dll,-32821|Desc=@FirewallAPI.dll,-32822|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{EA2EB658-A30F-438B-A865-0EB9013A9F6D}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32785|Desc=@FirewallAPI.dll,-32788|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{5BFE7FF2-11A6-4CCC-AFFE-CEBB901FD431}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdphost|Name=@FirewallAPI.dll,-32789|Desc=@FirewallAPI.dll,-32792|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{C624BD5D-C711-422B-8132-5E2A12D881BA}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32801|Desc=@FirewallAPI.dll,-32804|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{381B4DC7-8E8F-4530-A616-05CD029139E4}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=5355|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=dnscache|Name=@FirewallAPI.dll,-32805|Desc=@FirewallAPI.dll,-32808|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{A1E8A9D7-84DF-4365-A0A1-46A59C85B6BC}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|LPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32809|Desc=@FirewallAPI.dll,-32810|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{5413DB9A-CBF7-4FD1-A90C-F7031F26A5A0}" = v2.0|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Public|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32811|Desc=@FirewallAPI.dll,-32812|EmbedCtxt=@FirewallAPI.dll,-32752|Edge=FALSE|
"{418DFD12-B122-42B4-8DA4-396CE73DA515}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Profile=Domain|Profile=Private|Profile=Public|App=C:\Program Files\Skype\Plugin Manager\skypePM.exe|Name=Skype Extras Manager|Edge=TRUE|
"{11158B55-0A3D-40A5-A9B7-41DA6B16360C}" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Private|LPort=80|Name=@WsmRes.dll,-50|Desc=@WsmRes.dll,-51|EmbedCtxt=@FirewallAPI.dll,-30252|Edge=FALSE|
"{2158669B-32D4-477C-9A9C-C249BEA72EAD}" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|LPort=80|Name=@WsmRes.dll,-50|Desc=@WsmRes.dll,-51|EmbedCtxt=@FirewallAPI.dll,-30252|Edge=FALSE|
"{D59C0E58-8643-4294-AEE1-DD9B472426D0}" = v2.0|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Public|LPort=80|Name=@WsmRes.dll,-50|Desc=@WsmRes.dll,-51|EmbedCtxt=@FirewallAPI.dll,-30252|Edge=FALSE|
"{FB4A07E5-8123-4275-9AC9-9643C9DB11CB}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\USBSetup.exe|Name=Instalace zařízení HP|Edge=FALSE|
"{8D5F2026-CE55-48B3-94B9-189178C6A4C8}" = v2.0|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|RA4=LocalSubnet|RA6=LocalSubnet|App=C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\USBSetup.exe|Name=Instalace zařízení HP|Edge=FALSE|
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile\AuthorizedApplications]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile\GloballyOpenPorts]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile\Logging]
"LogFileSize" = 4096
"LogFilePath" = %systemroot%\system32\LogFiles\Firewall\pfirewall.log -- [2008.01.21 03:57:52 | 000,594,772 | ---- | M] ()
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\RestrictedServices]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\RestrictedServices\Configurable]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\RestrictedServices\Static]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\RestrictedServices\Static\System]
"Eventlog-1" = V2.0|Action=Allow|Dir=In|LPort=RPC|Protocol=6|App=%SystemRoot%\system32\svchost.exe|Svc=EventLog|Name=Allow RPC/TCP traffic to EventLog|
"Eventlog-2" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=EventLog|Name=Block any traffic to EventLog|
"Eventlog-3" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=EventLog|Name=Block any traffic from EventLog|
"DPS-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=DPS|Name=Block any other traffic to and from DPS|
"DPS-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=DPS|Name=Block any other traffic to and from DPS|
"WdiSystemHost-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=WdiSystemHost|Name=Block any other traffic to and from WdiSystemHost|
"WdiSystemHost-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=WdiSystemHost|Name=Block any other traffic to and from WdiSystemHost|
"DHCP-1" = V2.0|Action=Allow|Dir=Out|LPORT=68|RPort=67|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=DHCP|Name=@%SystemRoot%\system32\dhcpcsvc.dll,-102|Desc=@%SystemRoot%\system32\dhcpcsvc.dll,-102|
"DHCP-1-1" = V2.0|Action=Allow|Dir=In|LPORT=68|RPort=67|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=DHCP|Name=@%SystemRoot%\system32\dhcpcsvc.dll,-102|Desc=@%SystemRoot%\system32\dhcpcsvc.dll,-102|
"DHCP-2" = V2.0|Action=Allow|Dir=In|LPORT=546|RPort=547|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=DHCP|Name=@%SystemRoot%\system32\dhcpcsvc.dll,-102|Desc=@%SystemRoot%\system32\dhcpcsvc.dll,-102|
"DHCP-3" = V2.0|Action=Allow|Dir=Out|LPORT=546|RPort=547|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=DHCP|Name=@%SystemRoot%\system32\dhcpcsvc.dll,-102|Desc=@%SystemRoot%\system32\dhcpcsvc.dll,-102|
"DHCP-4" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=DHCP|Name=@%SystemRoot%\system32\dhcpcsvc.dll,-102|
"DHCP-5" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=DHCP|Name=@%SystemRoot%\system32\dhcpcsvc.dll,-102|
"dot3svc-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\System32\svchost.exe|Svc=dot3svc|Name=Block any traffic to and from dot3svc|
"dot3svc-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\System32\svchost.exe|Svc=dot3svc|Name=Block any traffic to and from dot3svc|
"Netman-1" = V2.0|Dir=In|Action=Block|App=%SystemRoot%\System32\svchost.exe|Svc=Netman|Name=Block all inbound traffic to Netman|
"Netman-2" = V2.0|Dir=Out|Action=Block|App=%SystemRoot%\System32\svchost.exe|Svc=Netman|Name=Block all outbound traffic from Netman|
"HidServ-1" = V2.0|Action=Block|Dir=in|App=%windir%\System32\svchost.exe|Svc=HidServ|Name=Block any traffic to HidServ|
"HidServ-2" = V2.0|Action=Block|Dir=out|App=%windir%\System32\svchost.exe|Svc=HidServ|Name=Block any traffic from HidServ|
"WcsPlugInService-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=WcsPlugInService|Name=@mscms.dll,-160|
"WcsPlugInService-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=WcsPlugInService|Name=@mscms.dll,-161|
"BFE-1" = V2.0|Action=Block|Dir=in|App=%SystemRoot%\System32\svchost.exe|Svc=BFE|Name=Block inbound traffic to BFE|
"BFE-2" = V2.0|Action=Block|Dir=out|App=%SystemRoot%\System32\svchost.exe|Svc=BFE|Name=Block outbound traffic from BFE|
"PolicyAgent-1" = V2.0|Action=Allow|Dir=Out|RPort=389|Protocol=6|App=%SystemRoot%\system32\svchost.exe|Svc=PolicyAgent|Name=@FirewallAPI.dll,-23300|Desc=@FirewallAPI.dll,-23301|
"PolicyAgent-2" = V2.0|Action=Allow|Dir=Out|RPort=389|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=PolicyAgent|Name=@FirewallAPI.dll,-23302|Desc=@FirewallAPI.dll,-23303|
"PolicyAgent-3" = V2.0|Action=Allow|Dir=In|LPort=RPC|Protocol=6|App=%SystemRoot%\system32\svchost.exe|Svc=PolicyAgent|Name=@FirewallAPI.dll,-5010|Desc=@FirewallAPI.dll,-5011|
"PolicyAgent-4" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=PolicyAgent|Name=@FirewallAPI.dll,-23304|
"PolicyAgent-5" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=PolicyAgent|Name=@FirewallAPI.dll,-23305|
"Trkwks-1" = V2.0|Action=Block|Dir=in|App=%windir%\System32\svchost.exe|Svc=trkwks|Name=Block any traffic to TrkWks service|
"Trkwks-2" = V2.0|Action=Block|Dir=out|App=%windir%\System32\svchost.exe|Svc=trkwks|Name=Block any traffic from TrkWks service|
"AVEndpointBuilder-1" = V2.0|Action=Block|Dir=in|App=%SystemRoot%\system32\svchost.exe|Svc=AudioEndpointBuilder|Name=Block any inbound traffic to AudioEndpointBuilder|
"LMHosts-1" = V2.0|Action=Allow|Dir=Out|RPort=53|Protocol=17|App=%SystemRoot%\system32\svchost.exe|Svc=lmhosts|Name=@%SystemRoot%\system32\lmhsvc.dll,-103|
"LMHosts-2" = V2.0|Action=Allow|Dir=Out|RPort=53|Protocol=6|App=%SystemRoot%\system32\svchost.exe|Svc=lmhosts|Name=@%SystemRoot%\system32\lmhsvc.dll,-103|
"LMHosts-3" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=lmhosts|Name=@%SystemRoot%\system32\lmhsvc.dll,-103|
"LMHosts-4" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=lmhosts|Name=@%SystemRoot%\system32\lmhsvc.dll,-103|
"MPSSVC-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=Mpssvc|Name=@FirewallAPI.dll,-23306|
"MPSSVC-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=Mpssvc|Name=@FirewallAPI,-23307|
"WerSvc-1" = V2.0|Action=Block|Dir=In|app=%windir%\System32\svchost.exe|Svc=WerSvc|Name=WerSvc_In_Block|Desc=Network rules for inbound traffic to WerSvc|
"WerSvc-2" = V2.0|Action=Block|Dir=Out|app=%windir%\System32\svchost.exe|Svc=WerSvc|Name=WerSvc_Out_Block|Desc=Network rules for outbound traffic from WerSvc|
"Sysmain-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=sysmain|Name=Block inbound access to sysmain|
"Sysmain-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=sysmain|Name=Block outbound access to sysmain|
"SNMPTRAP-1" = V2.0|Action=Allow|Dir=In|Protocol=17|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@%SystemRoot%\system32\snmptrap.exe,-5|
"SNMPTRAP-2" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@%SystemRoot%\system32\snmptrap.exe,-6|
"SNMPTRAP-3" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@%SystemRoot%\system32\snmptrap.exe,-6|
"clr_optimization_v2.0.50727_32-2" = V2.0|Action=Block|Dir=Out|App=C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe|Svc=clr_optimization_v2.0.50727_32|Name=Block traffic for clr_optimization_v2.0.50727_32|
"clr_optimization_v2.0.50727_32-1" = V2.0|Action=Block|Dir=In|App=C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe|Svc=clr_optimization_v2.0.50727_32|Name=Block traffic for clr_optimization_v2.0.50727_32|
"UI0Detect-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\System32\UI0Detect.exe|Svc=UI0Detect|Name=Block any traffic to and from UI0Detect|
"UI0Detect-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\System32\UI0Detect.exe|Svc=UI0Detect|Name=Block any traffic to and from UI0Detect|
"uxsms-1" = V2.0|Action=Block|Dir=in|App=%SystemRoot%\System32\svchost.exe|Svc=uxsms|Name=Block inbound traffic to uxsms|
"uxsms-2" = V2.0|Action=Block|Dir=out|App=%SystemRoot%\System32\svchost.exe|Svc=uxsms|Name=Block outbound traffic from uxsms|
"IPBusEnum-1" = V2.0|Action=Block|Dir=in|App=%SystemRoot%\system32\svchost.exe|Svc=IPBusEnum|Name=Block any inbound traffic to IPBusEnum|
"IPBusEnum-2" = V2.0|Action=Block|Dir=out|App=%SystemRoot%\system32\svchost.exe|Svc=IPBusEnum|Name=Block any outbound traffic from IPBusEnum|
"PNRP Allow Out" = v2.0|Action=Allow|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|LPort=3540|Protocol=17|Name=Allow PNRP to send to port 3540|
"TabletInputService-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=TabletInputService|Name=Block any traffic to TabletInputService|
"Wlansvc-2" = V2.0|Dir=Out|Action=Block|App=%SystemRoot%\System32\svchost.exe|Svc=Wlansvc|Name=Block any traffic to and from Wlansvc|
"EMDMgmt-1" = V2.0|Action=Block|Dir=in|App=%SystemRoot%\System32\svchost.exe|Svc=EMDMgmt|Name=Block any traffic to and from EMDMgmt Service|
"WindowsDefender-Out" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\\system32\\svchost.exe|Svc=WinDefend|Name=Block any traffic from WinDefend|
"P2P Grouping Block In" = v2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=p2psvc|Name=Block Grouping from all other ports|
"PNRP Block Out" = v2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=Block PNRP from all other ports|
"TabletInputService-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=TabletInputService|Name=Block any traffic from TabletInputService|
"PcaSvc-1" = V2.0|Action=Block|Dir=in|App=%SystemRoot%\system32\svchost.exe|Svc=PcaSvc|Name=@pcasvc.dll,-3|Desc=@pcasvc.dll,-5|
"SearchIndexer-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\SearchIndexer.exe|Svc=WSearch|Name=Block all outbound traffic from SearchIndexer|
"SearchFilterHost-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\SearchFilterHost.exe|Name=Block all inbound traffic to SearchFilterHost|
"SearchFilterHost-2" = V2.0|Action=Block|Dir=Out|App=%SystemRoot%\system32\SearchFilterHost.exe|Name=Block all outbound traffic from SearchFilterHost|
"PcaSvc-2" = V2.0|Action=Block|Dir=out|App=%SystemRoot%\system32\svchost.exe|Svc=PcaSvc|Name=@pcasvc.dll,-4|Desc=@pcasvc.dll,-6|
"SearchIndexer-1" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\SearchIndexer.exe|Svc=WSearch|Name=Block all inbound traffic to SearchIndexer|
"P2P Ident Block Out" = v2.0|Action=Block|Dir=out|App=%SystemRoot%\system32\svchost.exe|Svc=p2pimsvc|Name=Block Idman from all other ports|
"PNRP Allow In" = v2.0|Action=Allow|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|LPort=3540|Protocol=17|Name=Allow PNRP to send to port 3540|
"Wlansvc-1" = V2.0|Dir=In|Action=Block|App=%SystemRoot%\System32\svchost.exe|Svc=Wlansvc|Name=Block any traffic to and from Wlansvc|
"EHSTART-2" = V2.0|Action=Block|Dir=out|App=%SystemRoot%\system32\svchost.exe|Svc=ehstart|Name=Block any outbound traffic from ehstart|
"PNRP Block In" = v2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=PNRPSvc|Name=Block PNRP from all other ports|
"EMDMgmt-2" = V2.0|Action=Block|Dir=out|App=%SystemRoot%\System32\svchost.exe|Svc=EMDMgmt|Name=Block any traffic to and from EMDMgmt Service|
"WindowsDefender-In" = V2.0|Action=Block|Dir=In|App=%SystemRoot%\\system32\\svchost.exe|Svc=WinDefend|Name=Block any traffic to WinDefend|
"P2P Grouping Allow Out" = v2.0|Action=Allow|Dir=Out|App=%SystemRoot%\system32\svchost.exe|Svc=P2PSvc|RPort=3587|Protocol=6|Name=Allow Grouping to send to port 3587|
"P2P Ident Block In" = v2.0|Action=Block|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=p2pimsvc|Name=Block Idman from all other ports|
"P2P Grouping Block Out" = v2.0|Action=Block|Dir=out|App=%SystemRoot%\system32\svchost.exe|Svc=p2psvc|Name=Block Grouping from all other ports|
"EHSTART-1" = V2.0|Action=Block|Dir=in|App=%SystemRoot%\system32\svchost.exe|Svc=ehstart|Name=Block any inbound traffic to ehstart|
"P2P Grouping Allow In" = v2.0|Action=Allow|Dir=In|App=%SystemRoot%\system32\svchost.exe|Svc=P2PSvc|LPort=3587|Protocol=6|Name=Allow Grouping to receive from port 3587|
"clr_optimization_v4.0.30319_32-1" = V4.0|Action=Block|Dir=In|App=C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe|Svc=clr_optimization_v4.0.30319_32|Name=Block traffic for clr_optimization_v4.0.30319_32|
"clr_optimization_v4.0.30319_32-2" = V4.0|Action=Block|Dir=Out|App=C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe|Svc=clr_optimization_v4.0.30319_32|Name=Block traffic for clr_optimization_v4.0.30319_32|
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
Re: policie čr prosim o radu
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\Logging]
"LogFileSize" = 4096
"LogFilePath" = %systemroot%\system32\LogFiles\Firewall\pfirewall.log -- [2008.01.21 03:57:52 | 000,594,772 | ---- | M] ()
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ShellHWDetection]
"Type" = 32
"Start" = 2
"ErrorControl" = 0
"ImagePath" = %SystemRoot%\System32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%SystemRoot%\System32\shsvcs.dll,-12288
"Group" = ShellSvcGroup
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"Description" = @%SystemRoot%\System32\shsvcs.dll,-12289
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ShellHWDetection\Parameters]
"EtwSqmEnabled" = 1
"ServiceDll" = %SystemRoot%\System32\shsvcs.dll -- [2009.07.10 12:47:42 | 000,247,808 | ---- | M] (Microsoft Corporation)
"ServiceMain" = HardwareDetectionServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sisagp]
"DisplayName" = SIS AGP Bus Filter
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\sisagp.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SiSRaid2]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\sisraid2.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SiSRaid2\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SiSRaid2\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SiSRaid4]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\sisraid4.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SiSRaid4\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SiSRaid4\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SkypeUpdate]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Skype\Updater\Updater.exe" -- [2012.02.15 12:30:18 | 000,158,856 | R--- | M] (Skype Technologies)
"DisplayName" = Skype Updater
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"Description" = Enables the detection, download and installation of updates for Skype.
"RequiredPrivileges" = SeAssignPrimaryTokenPrivilegeSeCh [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\slsvc]
"DisplayName" = @%SystemRoot%\system32\SLsvc.exe,-101
"Group" = ProfSvc_Group
"ImagePath" = %SystemRoot%\system32\SLsvc.exe -- [2009.04.11 07:27:49 | 003,408,896 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\SLsvc.exe,-102
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 16
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SLUINotify]
"DisplayName" = @%SystemRoot%\system32\SLUINotify.dll,-103
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\SLUINotify.dll,-102
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = SLSvcnetprofmEventSystem [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E0 93 04 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SLUINotify\Parameters]
"ServiceDll" = %SystemRoot%\system32\SLUINotify.dll -- [2009.04.11 07:28:24 | 000,060,928 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SLUINotify\Security]
"Security" = 01 00 14 80 C8 00 00 00 D4 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 98 00 06 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 28 00 FD 01 02 00 01 06 00 00 00 00 00 05 50 00 00 00 6C 00 56 7E A3 9C B5 F7 D1 54 EC AE FD 0A 58 1E C8 C9 51 16 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Smb]
"Type" = 1
"Start" = 1
"ErrorControl" = 1
"Tag" = 9
"ImagePath" = system32\DRIVERS\smb.sys -- [2009.04.11 05:45:22 | 000,066,560 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%SystemRoot%\system32\tcpipcfg.dll,-50005
"Group" = PNP_TDI
"DependOnService" = Tcpip [binary data]
"Description" = @%SystemRoot%\system32\tcpipcfg.dll,-50006
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Smb\Linkage]
"Bind" = \Device\Tcpip_{DB5A0E6A-4A5D-47A0- [Binary data over 200 bytes]
"Route" = "Tcpip" "{DB5A0E6A-4A5D-47A0-8E63- [Binary data over 200 bytes]
"Export" = \Device\Smb_Tcpip_{DB5A0E6A-4A5D-4 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Smb\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Smb\Enum]
"0" = Root\LEGACY_SMB\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\smserial]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\smserial.sys -- [2007.08.28 04:53:47 | 001,019,136 | ---- | M] (Motorola Inc.)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\smserial\Parameters]
"DosDevice" = \DosDevices\COM3 -- [1601.01.01 01:00:00 | 000,000,000 | ---- | M] ()
"NtDevice" = \Device\SmSrl
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\smserial\Enum]
"0" = HDAUDIO\FUNC_02&VEN_1057&DEV_3055&SUBSYS_10573055&REV_1007\4&10d89169&0&0101
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SMSvcHost 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SMSvcHost 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 65536655366553665536655366553 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = Protocol Failures over net.tcpPro [Binary data over 200 bytes]
"IsMultiInstance" = 0
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _SMSvcHostPerfCounters_D.ini
"First Counter" = 4272
"Last Counter" = 4300
"First Help" = 4273
"Last Help" = 4301
"Object List" = 4272
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SMSvcHost 4.0.0.0]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SMSvcHost 4.0.0.0\Performance]
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Close" = ClosePerformanceData
"Counter Types" = 65536655366553665536655366553 [Binary data over 200 bytes]
"Counter Names" = Protocol Failures over net.tcpPro [Binary data over 200 bytes]
"IsMultiInstance" = 0
"CategoryOptions" = 3
"PerfIniFile" = _SMSvcHostPerfCounters.ini
"Last Counter" = 9844
"Last Help" = 9845
"First Counter" = 9816
"First Help" = 9817
"Object List" = 9816
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SNMPTRAP]
"DisplayName" = @%SystemRoot%\system32\snmptrap.exe,-3
"ImagePath" = %SystemRoot%\System32\snmptrap.exe -- [2006.11.02 10:45:46 | 000,012,800 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\snmptrap.exe,-4
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = FF FF FF FF 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\spldr]
"DisplayName" = Security Processor Loader Driver
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\spldr\Enum]
"0" = Root\LEGACY_SPLDR\0000
"Count" = 1
"NextInstance" = 1
"INITSTARTFAILED" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\spmgr]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe -- [2007.08.03 20:24:54 | 000,125,496 | ---- | M] ()
"DisplayName" = spmgr
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Spooler]
"DisplayName" = @%systemroot%\system32\spoolsv.exe,-1
"Group" = SpoolerGroup
"ImagePath" = %SystemRoot%\System32\spoolsv.exe -- [2010.08.17 15:11:37 | 000,128,000 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\spoolsv.exe,-2
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 272
"DependOnService" = RPCSShttp [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeTcbPrivilegeSeImpersonatePrivil [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Spooler\Performance]
"Close" = PerfClose
"Collect" = PerfCollect
"Collect Timeout" = 2000
"Library" = winspool.drv -- [2011.01.20 17:07:42 | 000,258,048 | ---- | M] (Microsoft Corporation)
"Object List" = 1450
"Open" = PerfOpen
"Open Timeout" = 4000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Spooler\Security]
"Security" = 01 00 14 80 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sptd]
"Type" = 1
"Start" = 0
"ErrorControl" = 1
"Tag" = 7
"ImagePath" = System32\Drivers\sptd.sys -- [2009.01.03 15:39:47 | 000,717,296 | ---- | M] ()
"Group" = Boot Bus Extender
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sptd\Cfg]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sptd\Enum]
"0" = Root\LEGACY_SPTD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\srv]
"Group" = Network
"ImagePath" = System32\DRIVERS\srv.sys -- [2011.02.18 15:03:32 | 000,305,152 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 2
"DependOnService" = srv2 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\srv\Enum]
"0" = Root\LEGACY_SRV\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\srv2]
"DisplayName" = srv2
"Group" = Network
"ImagePath" = System32\DRIVERS\srv2.sys -- [2011.04.29 14:25:10 | 000,146,432 | ---- | M] (Microsoft Corporation)
"Description" = Default SDDL for Windows Resource Protected file
"ErrorControl" = 1
"Start" = 3
"Type" = 2
"DependOnService" = srvnet [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\srv2\Enum]
"0" = Root\LEGACY_SRV2\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\srvnet]
"Group" = Network
"ImagePath" = System32\DRIVERS\srvnet.sys -- [2011.04.29 14:25:09 | 000,102,400 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\srvnet\Enum]
"0" = Root\LEGACY_SRVNET\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SSDPSRV]
"DisplayName" = @%systemroot%\system32\ssdpsrv.dll,-100
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\ssdpsrv.dll,-101
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = HTTP [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGlobalPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SSDPSRV\Parameters]
"ServiceDll" = %SystemRoot%\System32\ssdpsrv.dll -- [2008.01.21 03:24:49 | 000,155,648 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SSDPSRV\Security]
"Security" = 01 00 14 88 B8 00 00 00 C4 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 88 00 06 00 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 13 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 14 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SstpSvc]
"DisplayName" = @%SystemRoot%\system32\sstpsvc.dll,-200
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\sstpsvc.dll,-201
"ObjectName" = NT Authority\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SstpSvc\Parameters]
"ListenerPort" = 0
"UseHttps" = 1
"ServiceDllUnloadOnStop" = 1
"ServerURI" = /sra_{BA195980-CD49-458b-9E23-C84EE0ADCD75}/
"ServiceDll" = %SystemRoot%\system32\sstpsvc.dll -- [2008.01.21 03:25:05 | 000,116,736 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SstpSvc\Parameters\ConfigStore]
"V4CertPlumbedBySstp" = 0
"UseHttps" = 1
"V6CertPlumbedBySstp" = 0
"ListenerPort" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SstpSvc\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FD 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2C 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\stisvc]
"Start" = 2
"DisplayName" = @%SystemRoot%\system32\wiaservc.dll,-9
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k imgsvc -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Type" = 16
"Description" = @%SystemRoot%\system32\wiaservc.dll,-10
"DependOnService" = RpcSsShellHWDetection [binary data]
"ObjectName" = NT Authority\LocalService
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"ServiceSidType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\stisvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\wiaservc.dll -- [2009.04.11 07:28:25 | 000,453,120 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\stisvc\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum]
"DisplayName" = Softwarový ovladač sběrnice
"ImagePath" = system32\DRIVERS\swenum.sys -- [2008.01.21 03:23:01 | 000,015,288 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{96e080c7-143c-11d1-b40f-00a0c9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{96e080c7-143c-11d1-b40f-00a0c9223196}\{3C0D501A-140B-11D1-B40F-00A0C9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{96e080c7-143c-11d1-b40f-00a0c9223196}\{3C0D501A-140B-11D1-B40F-00A0C9223196}\{3c0d501a-140b-11d1-b40f-00a0c9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{97ebaacc-95bd-11d0-a3ea-00a0c9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{97ebaacc-95bd-11d0-a3ea-00a0c9223196}\{53172480-4791-11D0-A5D6-28DB04C10000}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{97ebaacc-95bd-11d0-a3ea-00a0c9223196}\{53172480-4791-11D0-A5D6-28DB04C10000}\{53172480-4791-11d0-a5d6-28db04c10000}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{cfd669f1-9bc2-11d0-8299-0000f822fe8a}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{cfd669f1-9bc2-11d0-8299-0000f822fe8a}\{0A4252A0-7E70-11D0-A5D6-28DB04C10000}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{cfd669f1-9bc2-11d0-8299-0000f822fe8a}\{0A4252A0-7E70-11D0-A5D6-28DB04C10000}\{0a4252a0-7e70-11d0-a5d6-28db04c10000}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{cfd669f1-9bc2-11d0-8299-0000f822fe8a}\{CF1DDA2C-9743-11D0-A3EE-00A0C9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{cfd669f1-9bc2-11d0-8299-0000f822fe8a}\{CF1DDA2C-9743-11D0-A3EE-00A0C9223196}\{cf1dda2c-9743-11d0-a3ee-00a0c9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{ddf4358e-bb2c-11d0-a42f-00a0c9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{ddf4358e-bb2c-11d0-a42f-00a0c9223196}\{97EBAACB-95BD-11D0-A3EA-00A0C9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{ddf4358e-bb2c-11d0-a42f-00a0c9223196}\{97EBAACB-95BD-11D0-A3EA-00A0C9223196}\{97ebaacb-95bd-11d0-a3ea-00a0c9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{eeab7790-c514-11d1-b42b-00805fc1270e}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{eeab7790-c514-11d1-b42b-00805fc1270e}\asyncmac]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{eeab7790-c514-11d1-b42b-00805fc1270e}\asyncmac\{ad498944-762f-11d0-8dcb-00c04fc3358c}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}\{ABD61E00-9350-47e2-A632-4438B90C6641}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}\{ABD61E00-9350-47e2-A632-4438B90C6641}\{ffbb6e3f-ccfe-4d84-90d9-421418b03a8e}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Enum]
"0" = Root\SYSTEM\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swprv]
"DisplayName" = @%SystemRoot%\System32\swprv.dll,-103
"ImagePath" = %SystemRoot%\System32\svchost.exe -k swprv -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\swprv.dll,-102
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"RequiredPrivileges" = SeBackupPrivilegeSeChangeNotifyPr [Binary data over 200 bytes]
"ServiceSidType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swprv\Parameters]
"ServiceDll" = %Systemroot%\System32\swprv.dll -- [2009.04.11 07:28:24 | 000,311,808 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Symc8xx]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\symc8xx.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Symc8xx\Parameters]
"BusType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Symc8xx\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Sym_hi]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\sym_hi.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Sym_hi\Parameters]
"BusType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Sym_hi\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Sym_u3]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\sym_u3.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Sym_u3\Parameters]
"BusType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Sym_u3\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SynTP]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 5
"ImagePath" = system32\DRIVERS\SynTP.sys -- [2007.08.17 08:12:27 | 000,190,512 | ---- | M] (Synaptics, Inc.)
"DisplayName" = Synaptics TouchPad Driver
"Group" = Pointer Port
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SynTP\Parameters]
"DetectTimeMS" = 721
"EnableKey" = 0
"DisableKey" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SynTP\Parameters\PNPDisableExclusionList]
"ASUS_01" = USB\VID_0A81&PID_0103&MI_00*
"ASUS_02" = USB\VID_0A81&PID_0103&MI_01*
"ASUS_03" = HID\Vid_046d&Pid_c50e&Rev_2500
"ASUS_04" = HID\Vid_046d&Pid_c50e&Rev_2510
"ASUS_05" = HID\Vid_0A81&Pid_0103&MI_01&Col02
"ASUS_06" = HID\Vid_0A81&Pid_0103&MI_01&Col03
"ASUS_07" = HID\Vid_04B8&Pid_030E&Rev_0100&MI_*
"ASUS_08" = HID\Vid_05E3&Pid_FFE2&Rev_0001&MI_*
"ASUS_09" = HID\Vid_0A81&Pid_0103&Rev_0110&MI_*
"BTC_01" = USB\VID_0637&PID_0001*
"BTC_02" = HID\Vid_046e&Pid_6782&MI_00
"BTC_03" = HID\Vid_046e&Pid_6782&MI_01&Col01
"BTC_04" = HID\Vid_046e&Pid_6782&MI_01&Col02
"BTC_05" = HID\Vid_046e&Pid_6782&Rev_2110&MI_00
"BTC_06" = HID\Vid_046e&Pid_6782&Rev_2110&MI_01&Col01
"BTC_07" = HID\Vid_046e&Pid_6782&Rev_2110&MI_01&Col02
"Dell_355" = HID\VID_0A5C&PID_4503&REV_0100&Col01
"Fujitsu_01" = SERENUM\FJC5000
"Fujitsu_02" = HID\Vid_0430&Pid_0002&Rev_0100&MI_00
"Fujitsu_03" = HID\Vid_0430&Pid_0002&Rev_0100&MI_01
"Fujitsu_04" = HID\Vid_0430&Pid_0002&MI_00
"Fujitsu_05" = HID\Vid_0430&Pid_0002&MI_01
"Fujitsu_06" = HID\FUJ02E5&Col02
"Fujitsu_07" = HID\FUJ02E6&Col02
"Fujitsu_08" = HID\WACOMVIRTUALHID&Col03
"Fujitsu_09" = HID\Vid_0430&Pid_0501&Rev_5001
"Fujitsu_10" = HID\Vid_0430&Pid_0501
"Fujitsu_11" = HID\Vid_0430&Pid_0530&Rev_5001
"Fujitsu_12" = HID\Vid_0430&Pid_0530
"IBM_01" = IBM0057
"IBM_02" = *IBM0057
"IBM_03" = ACPI\IBM0057
"Microsoft_01" = HID\IrDevice&Col08
"Sharp_01" = HID\VID_044F&PID_E000
"Sharp_02" = HID\VID_04F2&PID_0001&MI_01
"Sharp_03" = HID\VID_044F&PID_B304&REV_0100&COL02
"Sharp_04" = HID\Vid_04f2&Pid_0001&Rev_0100&MI_00
"Sharp_05" = HID\Vid_04f2&Pid_0001&Rev_0100&MI_01
"Toshiba_01" = HID\TOS_BT_MOU_0004&0005
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\Logging]
"LogFileSize" = 4096
"LogFilePath" = %systemroot%\system32\LogFiles\Firewall\pfirewall.log -- [2008.01.21 03:57:52 | 000,594,772 | ---- | M] ()
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ShellHWDetection]
"Type" = 32
"Start" = 2
"ErrorControl" = 0
"ImagePath" = %SystemRoot%\System32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%SystemRoot%\System32\shsvcs.dll,-12288
"Group" = ShellSvcGroup
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"Description" = @%SystemRoot%\System32\shsvcs.dll,-12289
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ShellHWDetection\Parameters]
"EtwSqmEnabled" = 1
"ServiceDll" = %SystemRoot%\System32\shsvcs.dll -- [2009.07.10 12:47:42 | 000,247,808 | ---- | M] (Microsoft Corporation)
"ServiceMain" = HardwareDetectionServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sisagp]
"DisplayName" = SIS AGP Bus Filter
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\sisagp.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SiSRaid2]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\sisraid2.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SiSRaid2\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SiSRaid2\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SiSRaid4]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\sisraid4.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SiSRaid4\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SiSRaid4\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SkypeUpdate]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Skype\Updater\Updater.exe" -- [2012.02.15 12:30:18 | 000,158,856 | R--- | M] (Skype Technologies)
"DisplayName" = Skype Updater
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"Description" = Enables the detection, download and installation of updates for Skype.
"RequiredPrivileges" = SeAssignPrimaryTokenPrivilegeSeCh [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\slsvc]
"DisplayName" = @%SystemRoot%\system32\SLsvc.exe,-101
"Group" = ProfSvc_Group
"ImagePath" = %SystemRoot%\system32\SLsvc.exe -- [2009.04.11 07:27:49 | 003,408,896 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\SLsvc.exe,-102
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 16
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SLUINotify]
"DisplayName" = @%SystemRoot%\system32\SLUINotify.dll,-103
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\SLUINotify.dll,-102
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = SLSvcnetprofmEventSystem [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E0 93 04 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SLUINotify\Parameters]
"ServiceDll" = %SystemRoot%\system32\SLUINotify.dll -- [2009.04.11 07:28:24 | 000,060,928 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SLUINotify\Security]
"Security" = 01 00 14 80 C8 00 00 00 D4 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 98 00 06 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 28 00 FD 01 02 00 01 06 00 00 00 00 00 05 50 00 00 00 6C 00 56 7E A3 9C B5 F7 D1 54 EC AE FD 0A 58 1E C8 C9 51 16 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Smb]
"Type" = 1
"Start" = 1
"ErrorControl" = 1
"Tag" = 9
"ImagePath" = system32\DRIVERS\smb.sys -- [2009.04.11 05:45:22 | 000,066,560 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%SystemRoot%\system32\tcpipcfg.dll,-50005
"Group" = PNP_TDI
"DependOnService" = Tcpip [binary data]
"Description" = @%SystemRoot%\system32\tcpipcfg.dll,-50006
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Smb\Linkage]
"Bind" = \Device\Tcpip_{DB5A0E6A-4A5D-47A0- [Binary data over 200 bytes]
"Route" = "Tcpip" "{DB5A0E6A-4A5D-47A0-8E63- [Binary data over 200 bytes]
"Export" = \Device\Smb_Tcpip_{DB5A0E6A-4A5D-4 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Smb\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Smb\Enum]
"0" = Root\LEGACY_SMB\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\smserial]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\smserial.sys -- [2007.08.28 04:53:47 | 001,019,136 | ---- | M] (Motorola Inc.)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\smserial\Parameters]
"DosDevice" = \DosDevices\COM3 -- [1601.01.01 01:00:00 | 000,000,000 | ---- | M] ()
"NtDevice" = \Device\SmSrl
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\smserial\Enum]
"0" = HDAUDIO\FUNC_02&VEN_1057&DEV_3055&SUBSYS_10573055&REV_1007\4&10d89169&0&0101
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SMSvcHost 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SMSvcHost 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 65536655366553665536655366553 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = Protocol Failures over net.tcpPro [Binary data over 200 bytes]
"IsMultiInstance" = 0
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _SMSvcHostPerfCounters_D.ini
"First Counter" = 4272
"Last Counter" = 4300
"First Help" = 4273
"Last Help" = 4301
"Object List" = 4272
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SMSvcHost 4.0.0.0]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SMSvcHost 4.0.0.0\Performance]
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Close" = ClosePerformanceData
"Counter Types" = 65536655366553665536655366553 [Binary data over 200 bytes]
"Counter Names" = Protocol Failures over net.tcpPro [Binary data over 200 bytes]
"IsMultiInstance" = 0
"CategoryOptions" = 3
"PerfIniFile" = _SMSvcHostPerfCounters.ini
"Last Counter" = 9844
"Last Help" = 9845
"First Counter" = 9816
"First Help" = 9817
"Object List" = 9816
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SNMPTRAP]
"DisplayName" = @%SystemRoot%\system32\snmptrap.exe,-3
"ImagePath" = %SystemRoot%\System32\snmptrap.exe -- [2006.11.02 10:45:46 | 000,012,800 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\snmptrap.exe,-4
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = FF FF FF FF 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\spldr]
"DisplayName" = Security Processor Loader Driver
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\spldr\Enum]
"0" = Root\LEGACY_SPLDR\0000
"Count" = 1
"NextInstance" = 1
"INITSTARTFAILED" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\spmgr]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe -- [2007.08.03 20:24:54 | 000,125,496 | ---- | M] ()
"DisplayName" = spmgr
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Spooler]
"DisplayName" = @%systemroot%\system32\spoolsv.exe,-1
"Group" = SpoolerGroup
"ImagePath" = %SystemRoot%\System32\spoolsv.exe -- [2010.08.17 15:11:37 | 000,128,000 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\spoolsv.exe,-2
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 272
"DependOnService" = RPCSShttp [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeTcbPrivilegeSeImpersonatePrivil [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Spooler\Performance]
"Close" = PerfClose
"Collect" = PerfCollect
"Collect Timeout" = 2000
"Library" = winspool.drv -- [2011.01.20 17:07:42 | 000,258,048 | ---- | M] (Microsoft Corporation)
"Object List" = 1450
"Open" = PerfOpen
"Open Timeout" = 4000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Spooler\Security]
"Security" = 01 00 14 80 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sptd]
"Type" = 1
"Start" = 0
"ErrorControl" = 1
"Tag" = 7
"ImagePath" = System32\Drivers\sptd.sys -- [2009.01.03 15:39:47 | 000,717,296 | ---- | M] ()
"Group" = Boot Bus Extender
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sptd\Cfg]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\sptd\Enum]
"0" = Root\LEGACY_SPTD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\srv]
"Group" = Network
"ImagePath" = System32\DRIVERS\srv.sys -- [2011.02.18 15:03:32 | 000,305,152 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 2
"DependOnService" = srv2 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\srv\Enum]
"0" = Root\LEGACY_SRV\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\srv2]
"DisplayName" = srv2
"Group" = Network
"ImagePath" = System32\DRIVERS\srv2.sys -- [2011.04.29 14:25:10 | 000,146,432 | ---- | M] (Microsoft Corporation)
"Description" = Default SDDL for Windows Resource Protected file
"ErrorControl" = 1
"Start" = 3
"Type" = 2
"DependOnService" = srvnet [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\srv2\Enum]
"0" = Root\LEGACY_SRV2\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\srvnet]
"Group" = Network
"ImagePath" = System32\DRIVERS\srvnet.sys -- [2011.04.29 14:25:09 | 000,102,400 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\srvnet\Enum]
"0" = Root\LEGACY_SRVNET\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SSDPSRV]
"DisplayName" = @%systemroot%\system32\ssdpsrv.dll,-100
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\ssdpsrv.dll,-101
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = HTTP [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGlobalPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SSDPSRV\Parameters]
"ServiceDll" = %SystemRoot%\System32\ssdpsrv.dll -- [2008.01.21 03:24:49 | 000,155,648 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SSDPSRV\Security]
"Security" = 01 00 14 88 B8 00 00 00 C4 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 88 00 06 00 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 13 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 14 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SstpSvc]
"DisplayName" = @%SystemRoot%\system32\sstpsvc.dll,-200
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\sstpsvc.dll,-201
"ObjectName" = NT Authority\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SstpSvc\Parameters]
"ListenerPort" = 0
"UseHttps" = 1
"ServiceDllUnloadOnStop" = 1
"ServerURI" = /sra_{BA195980-CD49-458b-9E23-C84EE0ADCD75}/
"ServiceDll" = %SystemRoot%\system32\sstpsvc.dll -- [2008.01.21 03:25:05 | 000,116,736 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SstpSvc\Parameters\ConfigStore]
"V4CertPlumbedBySstp" = 0
"UseHttps" = 1
"V6CertPlumbedBySstp" = 0
"ListenerPort" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SstpSvc\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FD 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2C 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\stisvc]
"Start" = 2
"DisplayName" = @%SystemRoot%\system32\wiaservc.dll,-9
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k imgsvc -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Type" = 16
"Description" = @%SystemRoot%\system32\wiaservc.dll,-10
"DependOnService" = RpcSsShellHWDetection [binary data]
"ObjectName" = NT Authority\LocalService
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"ServiceSidType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\stisvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\wiaservc.dll -- [2009.04.11 07:28:25 | 000,453,120 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\stisvc\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum]
"DisplayName" = Softwarový ovladač sběrnice
"ImagePath" = system32\DRIVERS\swenum.sys -- [2008.01.21 03:23:01 | 000,015,288 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{96e080c7-143c-11d1-b40f-00a0c9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{96e080c7-143c-11d1-b40f-00a0c9223196}\{3C0D501A-140B-11D1-B40F-00A0C9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{96e080c7-143c-11d1-b40f-00a0c9223196}\{3C0D501A-140B-11D1-B40F-00A0C9223196}\{3c0d501a-140b-11d1-b40f-00a0c9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{97ebaacc-95bd-11d0-a3ea-00a0c9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{97ebaacc-95bd-11d0-a3ea-00a0c9223196}\{53172480-4791-11D0-A5D6-28DB04C10000}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{97ebaacc-95bd-11d0-a3ea-00a0c9223196}\{53172480-4791-11D0-A5D6-28DB04C10000}\{53172480-4791-11d0-a5d6-28db04c10000}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{cfd669f1-9bc2-11d0-8299-0000f822fe8a}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{cfd669f1-9bc2-11d0-8299-0000f822fe8a}\{0A4252A0-7E70-11D0-A5D6-28DB04C10000}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{cfd669f1-9bc2-11d0-8299-0000f822fe8a}\{0A4252A0-7E70-11D0-A5D6-28DB04C10000}\{0a4252a0-7e70-11d0-a5d6-28db04c10000}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{cfd669f1-9bc2-11d0-8299-0000f822fe8a}\{CF1DDA2C-9743-11D0-A3EE-00A0C9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{cfd669f1-9bc2-11d0-8299-0000f822fe8a}\{CF1DDA2C-9743-11D0-A3EE-00A0C9223196}\{cf1dda2c-9743-11d0-a3ee-00a0c9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{ddf4358e-bb2c-11d0-a42f-00a0c9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{ddf4358e-bb2c-11d0-a42f-00a0c9223196}\{97EBAACB-95BD-11D0-A3EA-00A0C9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{ddf4358e-bb2c-11d0-a42f-00a0c9223196}\{97EBAACB-95BD-11D0-A3EA-00A0C9223196}\{97ebaacb-95bd-11d0-a3ea-00a0c9223196}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{eeab7790-c514-11d1-b42b-00805fc1270e}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{eeab7790-c514-11d1-b42b-00805fc1270e}\asyncmac]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{eeab7790-c514-11d1-b42b-00805fc1270e}\asyncmac\{ad498944-762f-11d0-8dcb-00c04fc3358c}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}\{ABD61E00-9350-47e2-A632-4438B90C6641}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Devices\{eec12db6-ad9c-4168-8658-b03daef417fe}\{ABD61E00-9350-47e2-A632-4438B90C6641}\{ffbb6e3f-ccfe-4d84-90d9-421418b03a8e}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swenum\Enum]
"0" = Root\SYSTEM\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swprv]
"DisplayName" = @%SystemRoot%\System32\swprv.dll,-103
"ImagePath" = %SystemRoot%\System32\svchost.exe -k swprv -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\swprv.dll,-102
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"RequiredPrivileges" = SeBackupPrivilegeSeChangeNotifyPr [Binary data over 200 bytes]
"ServiceSidType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\swprv\Parameters]
"ServiceDll" = %Systemroot%\System32\swprv.dll -- [2009.04.11 07:28:24 | 000,311,808 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Symc8xx]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\symc8xx.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Symc8xx\Parameters]
"BusType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Symc8xx\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Sym_hi]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\sym_hi.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Sym_hi\Parameters]
"BusType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Sym_hi\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Sym_u3]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\sym_u3.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Sym_u3\Parameters]
"BusType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Sym_u3\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SynTP]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 5
"ImagePath" = system32\DRIVERS\SynTP.sys -- [2007.08.17 08:12:27 | 000,190,512 | ---- | M] (Synaptics, Inc.)
"DisplayName" = Synaptics TouchPad Driver
"Group" = Pointer Port
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SynTP\Parameters]
"DetectTimeMS" = 721
"EnableKey" = 0
"DisableKey" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SynTP\Parameters\PNPDisableExclusionList]
"ASUS_01" = USB\VID_0A81&PID_0103&MI_00*
"ASUS_02" = USB\VID_0A81&PID_0103&MI_01*
"ASUS_03" = HID\Vid_046d&Pid_c50e&Rev_2500
"ASUS_04" = HID\Vid_046d&Pid_c50e&Rev_2510
"ASUS_05" = HID\Vid_0A81&Pid_0103&MI_01&Col02
"ASUS_06" = HID\Vid_0A81&Pid_0103&MI_01&Col03
"ASUS_07" = HID\Vid_04B8&Pid_030E&Rev_0100&MI_*
"ASUS_08" = HID\Vid_05E3&Pid_FFE2&Rev_0001&MI_*
"ASUS_09" = HID\Vid_0A81&Pid_0103&Rev_0110&MI_*
"BTC_01" = USB\VID_0637&PID_0001*
"BTC_02" = HID\Vid_046e&Pid_6782&MI_00
"BTC_03" = HID\Vid_046e&Pid_6782&MI_01&Col01
"BTC_04" = HID\Vid_046e&Pid_6782&MI_01&Col02
"BTC_05" = HID\Vid_046e&Pid_6782&Rev_2110&MI_00
"BTC_06" = HID\Vid_046e&Pid_6782&Rev_2110&MI_01&Col01
"BTC_07" = HID\Vid_046e&Pid_6782&Rev_2110&MI_01&Col02
"Dell_355" = HID\VID_0A5C&PID_4503&REV_0100&Col01
"Fujitsu_01" = SERENUM\FJC5000
"Fujitsu_02" = HID\Vid_0430&Pid_0002&Rev_0100&MI_00
"Fujitsu_03" = HID\Vid_0430&Pid_0002&Rev_0100&MI_01
"Fujitsu_04" = HID\Vid_0430&Pid_0002&MI_00
"Fujitsu_05" = HID\Vid_0430&Pid_0002&MI_01
"Fujitsu_06" = HID\FUJ02E5&Col02
"Fujitsu_07" = HID\FUJ02E6&Col02
"Fujitsu_08" = HID\WACOMVIRTUALHID&Col03
"Fujitsu_09" = HID\Vid_0430&Pid_0501&Rev_5001
"Fujitsu_10" = HID\Vid_0430&Pid_0501
"Fujitsu_11" = HID\Vid_0430&Pid_0530&Rev_5001
"Fujitsu_12" = HID\Vid_0430&Pid_0530
"IBM_01" = IBM0057
"IBM_02" = *IBM0057
"IBM_03" = ACPI\IBM0057
"Microsoft_01" = HID\IrDevice&Col08
"Sharp_01" = HID\VID_044F&PID_E000
"Sharp_02" = HID\VID_04F2&PID_0001&MI_01
"Sharp_03" = HID\VID_044F&PID_B304&REV_0100&COL02
"Sharp_04" = HID\Vid_04f2&Pid_0001&Rev_0100&MI_00
"Sharp_05" = HID\Vid_04f2&Pid_0001&Rev_0100&MI_01
"Toshiba_01" = HID\TOS_BT_MOU_0004&0005
Re: policie čr prosim o radu
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SynTP\Parameters\Wdf]
"KmdfLibraryVersion" = 1.0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SynTP\Enum]
"0" = ACPI\SYN0A06\4&323124ef&0
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SysMain]
"DisplayName" = @%SystemRoot%\system32\sysmain.dll,-1000
"Description" = @%SystemRoot%\system32\sysmain.dll,-1001
"ImagePath" = %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"ErrorControl" = 0
"Start" = 2
"Type" = 32
"DependOnService" = rpcssfileinfo [binary data]
"RequiredPrivileges" = SeTcbPrivilegeSeProfileSingleProc [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SysMain\Parameters]
"ServiceDll" = %systemroot%\system32\sysmain.dll -- [2009.04.11 07:28:24 | 000,558,080 | ---- | M] (Microsoft Corporation)
"ServiceMain" = SysMtServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TabletInputService]
"DisplayName" = @%SystemRoot%\system32\TabSvc.dll,-100
"ErrorControl" = 1
"Group" = PlugPlay
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%SystemRoot%\system32\TabSvc.dll,-101
"DependOnService" = PlugPlayRpcSs [binary data]
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeTcbPrivilegeSeImpersonatePrivil [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TabletInputService\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\System32\TabSvc.dll -- [2006.11.02 13:35:24 | 000,068,096 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TapiSrv]
"DisplayName" = @%SystemRoot%\system32\tapisrv.dll,-10100
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\tapisrv.dll,-10101
"DependOnService" = PlugPlayRpcSs [binary data]
"ObjectName" = NT AUTHORITY\NetworkService
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TapiSrv\Parameters]
"ServiceDll" = %SystemRoot%\System32\tapisrv.dll -- [2009.04.11 07:28:24 | 000,242,688 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TapiSrv\Performance]
"Close" = CloseTapiPerformanceData
"Collect" = CollectTapiPerformanceData
"Library" = tapiperf.dll -- [2006.11.02 10:46:13 | 000,008,704 | ---- | M] (Microsoft Corporation)
"ObjectList" = 1150
"Open" = OpenTapiPerformanceData
"InstallType" = 1
"PerfIniFile" = tapiperf.ini
"First Counter" = 1848
"Last Counter" = 1866
"First Help" = 1849
"Last Help" = 1867
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TapiSrv\Security]
"Security" = 01 00 14 80 8C 00 00 00 98 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 5C 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TBS]
"DisplayName" = @%SystemRoot%\system32\tbssvc.dll,-100
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\tbssvc.dll,-101
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeAuditPri [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"DelayedAutoStart" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TBS\Parameters]
"ServiceDll" = %SystemRoot%\System32\tbssvc.dll -- [2008.01.21 03:24:30 | 000,056,320 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TBS\Security]
"Security" = 01 00 14 80 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 06 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 14 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 13 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip]
"DisplayName" = @%SystemRoot%\system32\tcpipcfg.dll,-50003
"Group" = PNP_TDI
"ImagePath" = System32\drivers\tcpip.sys -- [2012.03.30 13:39:11 | 000,905,600 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 0
"Tag" = 3
"Type" = 1
"Description" = @%SystemRoot%\system32\tcpipcfg.dll,-50003
"BootFlags" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Linkage]
"Bind" = \Device\{DB5A0E6A-4A5D-47A0-8E63-B [Binary data over 200 bytes]
"Route" = "{DB5A0E6A-4A5D-47A0-8E63-B3C6DAAC [Binary data over 200 bytes]
"Export" = \Device\Tcpip_{DB5A0E6A-4A5D-47A0- [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters]
"ICSDomain" = mshome.net
"SyncDomainWithMembership" = 1
"NV Hostname" = pc-PC
"DataBasePath" = %SystemRoot%\System32\drivers\etc -- [2006.11.02 12:18:37 | 000,000,000 | ---D | M]
"NameServer" =
"ForwardBroadcasts" = 0
"IPEnableRouter" = 0
"Domain" =
"Hostname" = pc-PC
"SearchList" =
"UseDomainNameDevolution" = 1
"EnableICMPRedirect" = 1
"DeadGWDetectDefault" = 1
"DontAddDefaultGatewayDefault" = 0
"EnablePMTUDiscovery" = 255
"TcpUseRFC1122UrgentPointer" = 255
"DisableTaskOffload" = 255
"TcpMaxDataRetransmissions" = 255
"KeepAliveTime" = -1
"KeepAliveInterval" = -1
"TcpTimedWaitDelay" = -1
"TcpFinWait2Delay" = -1
"EnablePMTUBHDetect" = 255
"Tcp1323Opts" = 0
"OverrideDefaultAddressSelection" = 1
"EnableWsd" = 1
"QualifyingDestinationThreshold" = 3
"TcpWindowSize" = 64240
"DhcpNameServer" = 192.168.0.1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}]
"LLInterface" =
"IpConfig" = Tcpip\Parameters\Interfaces\{1BA29 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{1E26EC88-A56D-4921-A26F-BE842C7AD246}]
"LLInterface" =
"IpConfig" = Tcpip\Parameters\Interfaces\{1E26E [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{24930843-A943-4314-AA1C-FC23C28C2A26}]
"LLInterface" =
"IpConfig" = Tcpip\Parameters\Interfaces\{24930 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
"LLInterface" =
"IpConfig" = Tcpip\Parameters\Interfaces\{3DDD5 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{D51F2DDE-409B-4945-8CE3-E679E832F0D6}]
"LLInterface" =
"IpConfig" = Tcpip\Parameters\Interfaces\{D51F2 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}]
"LLInterface" =
"IpConfig" = Tcpip\Parameters\Interfaces\{DB5A0 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{EAE456AC-9095-4125-B655-830A8A22A5A6}]
"LLInterface" =
"IpConfig" = Tcpip\Parameters\Interfaces\{EAE45 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\DNSRegisteredAdapters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}]
"UseZeroBroadcast" = 0
"EnableDeadGWDetect" = 1
"EnableDHCP" = 1
"NameServer" =
"Domain" =
"RegistrationEnabled" = 1
"RegisterAdapterName" = 0
"DhcpIPAddress" = 0.0.0.0
"DhcpSubnetMask" = 255.0.0.0
"DhcpServer" = 255.255.255.255
"Lease" = 0
"LeaseObtainedTime" = 0
"T1" = 0
"T2" = 0
"LeaseTerminatesTime" = 0
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{1E26EC88-A56D-4921-A26F-BE842C7AD246}]
"UseZeroBroadcast" = 0
"EnableDeadGWDetect" = 1
"EnableDHCP" = 1
"NameServer" =
"Domain" =
"RegistrationEnabled" = 0
"RegisterAdapterName" = 0
"DhcpIPAddress" = 5.156.134.182
"DhcpSubnetMask" = 255.0.0.0
"DhcpServer" = 5.0.0.1
"Lease" = 31536000
"LeaseObtainedTime" = 1359555195
"T1" = 1375323195
"T2" = 1387149195
"LeaseTerminatesTime" = 1391091195
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 1
"IPAutoconfigurationEnabled" = 0
"DisableDynamicUpdate" = 1
"DefaultGateway" = 5.0.0.1 [binary data]
"InterfaceMetric" = 9000
"DhcpInterfaceOptions" = FC 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 7E 2A 09 51 01 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 FB 5D EA 52 FF 00 00 00 33 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 FB 5D EA 52 01 E1 33 80 36 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 FB 5D EA 52 05 00 00 01 35 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 FB 5D EA 52 05 00 00 00 [Binary data over 200 bytes] -- [2009.04.11 07:27:36 | 000,019,968 | ---- | M] (Microsoft Corporation)
"DhcpSubnetMaskOpt" = 255.0.0.0 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{24930843-A943-4314-AA1C-FC23C28C2A26}]
"UseZeroBroadcast" = 0
"EnableDeadGWDetect" = 1
"EnableDHCP" = 1
"NameServer" =
"Domain" =
"RegistrationEnabled" = 1
"RegisterAdapterName" = 0
"DhcpServer" = 255.255.255.255
"Lease" = 0
"LeaseObtainedTime" = 0
"T1" = 0
"T2" = 0
"LeaseTerminatesTime" = 0
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 1
"IPAddress" = [binary data]
"SubnetMask" = [binary data]
"DefaultGateway" = [binary data]
"DefaultGatewayMetric" = [binary data]
"DhcpIPAddress" = 0.0.0.0
"DhcpSubnetMask" = 255.0.0.0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{25BB4C6E-2FDB-45BB-97E8-5B834DFD8C87}]
"DhcpIPAddress" = 0.0.0.0
"DhcpSubnetMask" = 0.0.0.0
"Domain" =
"NameServer" =
"RegistrationEnabled" = 0
"RegisterAdapterName" = 0
"DhcpServer" = 255.255.255.255
"Lease" = 0
"LeaseObtainedTime" = 0
"T1" = 0
"T2" = 0
"LeaseTerminatesTime" = 0
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{3a539854-6a70-11db-887c-806e6f6e6963}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
"UseZeroBroadcast" = 0
"EnableDeadGWDetect" = 1
"EnableDHCP" = 1
"NameServer" =
"Domain" =
"RegistrationEnabled" = 1
"RegisterAdapterName" = 0
"DhcpIPAddress" = 192.168.0.103
"DhcpSubnetMask" = 255.255.255.0
"DhcpServer" = 192.168.0.1
"Lease" = 7200
"LeaseObtainedTime" = 1359555312
"T1" = 1359558912
"T2" = 1359561612
"LeaseTerminatesTime" = 1359562512
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 1
"DhcpInterfaceOptions" = 06 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 10 47 09 51 C0 A8 00 01 03 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 10 47 09 51 C0 A8 00 01 01 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 10 47 09 51 FF FF FF 00 33 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 10 47 09 51 00 00 1C 20 36 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 10 47 09 51 C0 A8 00 01 35 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 10 47 09 51 05 00 00 00 [Binary data over 200 bytes]
"DhcpNameServer" = 192.168.0.1
"DhcpDefaultGateway" = 192.168.0.1 [binary data]
"DhcpSubnetMaskOpt" = 255.255.255.0 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{D51F2DDE-409B-4945-8CE3-E679E832F0D6}]
"UseZeroBroadcast" = 0
"EnableDeadGWDetect" = 1
"EnableDHCP" = 1
"NameServer" =
"Domain" =
"RegistrationEnabled" = 1
"RegisterAdapterName" = 0
"DhcpIPAddress" = 0.0.0.0
"DhcpSubnetMask" = 255.0.0.0
"DhcpServer" = 255.255.255.255
"Lease" = 0
"LeaseObtainedTime" = 0
"T1" = 0
"T2" = 0
"LeaseTerminatesTime" = 0
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}]
"UseZeroBroadcast" = 0
"EnableDeadGWDetect" = 1
"EnableDHCP" = 1
"NameServer" =
"Domain" =
"RegistrationEnabled" = 1
"RegisterAdapterName" = 0
"DhcpIPAddress" = 0.0.0.0
"DhcpSubnetMask" = 255.0.0.0
"DhcpServer" = 255.255.255.255
"Lease" = 0
"LeaseObtainedTime" = 0
"T1" = 0
"T2" = 0
"LeaseTerminatesTime" = 0
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{DD1627B1-E574-4274-804F-217EB4C76F3C}]
"DhcpIPAddress" = 0.0.0.0
"DhcpSubnetMask" = 0.0.0.0
"Domain" =
"NameServer" =
"RegistrationEnabled" = 0
"RegisterAdapterName" = 0
"DhcpInterfaceOptions" = 0F 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 97 FC D6 4F 79 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 97 FC D6 4F 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 97 FC D6 4F 2B 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 97 FC D6 4F 2C 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 97 FC D6 4F 06 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 97 FC D6 4F [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{EAE456AC-9095-4125-B655-830A8A22A5A6}]
"UseZeroBroadcast" = 0
"EnableDeadGWDetect" = 1
"EnableDHCP" = 1
"NameServer" =
"Domain" =
"RegistrationEnabled" = 1
"RegisterAdapterName" = 0
"DhcpIPAddress" = 0.0.0.0
"DhcpSubnetMask" = 255.0.0.0
"DhcpServer" = 255.255.255.255
"Lease" = 0
"LeaseObtainedTime" = 0
"T1" = 0
"T2" = 0
"LeaseTerminatesTime" = 0
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\PersistentRoutes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock]
"HelperDllName" = %SystemRoot%\System32\wshtcpip.dll -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
"MaxSockAddrLength" = 16
"MinSockAddrLength" = 16
"Mapping" = 08 00 00 00 03 00 00 00 02 00 00 00 01 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 00 00 00 00 02 00 00 00 00 00 00 00 06 00 00 00 02 00 00 00 02 00 00 00 11 00 00 00 02 00 00 00 02 00 00 00 00 00 00 00 02 00 00 00 00 00 00 00 11 00 00 00 02 00 00 00 03 00 00 00 FF 00 00 00 02 00 00 00 03 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"UseDelayedAcceptance" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Performance]
"Close" = CloseTcpIpPerformanceData
"Collect" = CollectTcpIpPerformanceData
"Library" = Perfctrs.dll -- [2006.11.02 10:46:12 | 000,039,424 | ---- | M] (Microsoft Corporation)
"Open" = OpenTcpIpPerformanceData
"Object List" = 502 510 546 548 582 638 658 1530 1532 1534
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\ServiceProvider]
"Class" = 8
"DnsPriority" = 2000
"HostsPriority" = 500
"LocalPriority" = 499
"Name" = TCP/IP
"NetbtPriority" = 2001
"ProviderPath" = %SystemRoot%\System32\wsock32.dll -- [2008.01.21 03:23:45 | 000,015,360 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Enum]
"0" = Root\LEGACY_TCPIP\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 8
"ImagePath" = system32\DRIVERS\tcpip.sys -- [2012.03.30 13:39:11 | 000,905,600 | ---- | M] (Microsoft Corporation)
"DisplayName" = Microsoft IPv6 Protocol Driver
"Group" = PNP_TDI
"DependOnService" = Tcpip [binary data]
"Description" = Microsoft IPv6 Protocol Driver
"TextModeFlags" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Linkage]
"Bind" = \Device\{20F4AEF5-3354-44AB-B8E8-4 [Binary data over 200 bytes]
"Route" = "{20F4AEF5-3354-44AB-B8E8-4EFA20A7 [Binary data over 200 bytes]
"Export" = \Device\Tcpip6_{20F4AEF5-3354-44AB [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters]
"Dhcpv6DUID" = 00 01 00 01 10 81 9F F9 00 23 54 43 34 CE [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{0339501d-f3e1-49b7-9c3b-312868514ebb}]
"Dhcpv6Iaid" = 922746880
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{09398d43-63ae-4d5c-8a1e-f1046a4bb277}]
"Dhcpv6Iaid" = 369098752
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{09ba5c01-4582-4ffa-a6f5-a4582883a4fd}]
"Dhcpv6Iaid" = 335544320
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{0f1874c3-4ca4-4be7-991d-b7cac97c8160}]
"Dhcpv6Iaid" = 587202560
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{1ba29d5d-cd71-4dce-b37c-6b601037aa56}]
"Dhcpv6Iaid" = 637575366
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{1e26ec88-a56d-4921-a26f-be842c7ad246}]
"Dhcpv6Iaid" = 410679552
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{20f4aef5-3354-44ab-b8e8-4efa20a7704d}]
"Dhcpv6Iaid" = 956301312
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{24930843-a943-4314-aa1c-fc23c28c2a26}]
"Dhcpv6Iaid" = 268444500
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{32d33aac-5872-4fa4-abbb-049390d4d3ff}]
"Dhcpv6Iaid" = 738197504
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{37d20c46-6a4f-4518-8b37-fde0fb26127d}]
"Dhcpv6Iaid" = 872415232
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{3ddd54e0-283f-4e9d-93a3-affbe73ab2de}]
"Dhcpv6Iaid" = 335553091
"Dhcpv6State" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{3e838cd3-757a-4c38-a31e-aecf8b5e747e}]
"Dhcpv6Iaid" = 687865856
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{40e0f815-121c-4859-8d0e-ccb2cfdbfc11}]
"Dhcpv6Iaid" = 671088640
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{418fcfe1-e4e6-4b68-ada4-efc98cc311e6}]
"Dhcpv6Iaid" = 251666060
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{42f6500b-cba2-4f6f-a836-c2f42b3fe9ae}]
"Dhcpv6Iaid" = 1056964608
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{53fd7e2e-bf79-48df-accf-63f9cfef28d5}]
"Dhcpv6Iaid" = 822083584
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{55dabea2-8e82-47e1-8f27-b78f3af24615}]
"Dhcpv6Iaid" = 603979776
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{5ee8ed2f-a15c-4026-aa7c-877fd989cc43}]
"Dhcpv6Iaid" = 738197504
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{6123f9c6-2d8d-4322-8497-e7d0fd1abc85}]
"Dhcpv6Iaid" = 704643072
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{7202ce6c-45ce-4be4-b88e-2401b6947712}]
"Dhcpv6Iaid" = 889192448
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{785d1898-0fc5-4a41-859b-dbacae455396}]
"Dhcpv6Iaid" = 687865856
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{837e8c36-9797-4077-97ce-6b4f41dd1c70}]
"Dhcpv6Iaid" = 603979776
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{874ba284-8c8f-4e26-84f3-3781184864df}]
"Dhcpv6Iaid" = 654311424
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{8cb6b681-3723-49d0-b0f8-8b590b03ad70}]
"Dhcpv6Iaid" = 620756992
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{8d932108-42df-4aa4-a286-5dbf87acf2b2}]
"Dhcpv6Iaid" = 587202560
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{9c642153-bfe0-4511-a0b6-e778ddd5ea9e}]
"Dhcpv6Iaid" = 117445666
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{9e9bf04a-59b2-44b6-9f20-12cd7646a51b}]
"Dhcpv6Iaid" = 754974720
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{9ef3c1c9-1f3e-45f3-bd73-a5a1877b36fe}]
"Dhcpv6Iaid" = 536870912
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{adcf5aff-480a-468a-b923-fd575093df33}]
"Dhcpv6Iaid" = 486539264
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{b3539b68-3b73-458d-95dc-dd5579af0bdb}]
"Dhcpv6Iaid" = 956301312
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{b6d6f7d9-0100-447c-a985-f853d73ffcb8}]
"Dhcpv6Iaid" = 905969664
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{ba32a50a-3d27-4fae-8591-5916311409be}]
"Dhcpv6Iaid" = 201331746
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{bc51d4b0-2664-4556-87d6-22d654fd56c6}]
"Dhcpv6Iaid" = 620756992
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{c5020803-7794-4ebc-be07-256b3a4e6d45}]
"Dhcpv6Iaid" = 922746880
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{ccfc0674-9654-461d-94d6-23af6d250326}]
"Dhcpv6Iaid" = 905969664
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{d51f2dde-409b-4945-8ce3-e679e832f0d6}]
"Dhcpv6Iaid" = 184558147
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{db5a0e6a-4a5d-47a0-8e63-b3c6daaca1fc}]
"Dhcpv6Iaid" = 889200144
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{dc388186-6276-45c2-98f5-9b9aa5e7d7af}]
"Dhcpv6Iaid" = 822083584
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{e2f60fc7-78ad-483e-bd9c-72a72c49e2c7}]
"Dhcpv6Iaid" = 721420288
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{e75edeea-ab86-413b-a216-d3ffc33a8ed9}]
"Dhcpv6Iaid" = 805306368
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{e9141a6b-f2d4-4d41-bee9-bfc7c3ea625f}]
"Dhcpv6Iaid" = 637534208
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{eae456ac-9095-4125-b655-830a8a22a5a6}]
"Dhcpv6Iaid" = 721461446
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{ee09acde-dfd6-4bc3-ab57-040e96bfd1d0}]
"Dhcpv6Iaid" = 386007124
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{f50c0996-5b4a-4c6a-a322-6e991d4caa0e}]
"Dhcpv6Iaid" = 100668450
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{f70a361f-6437-4fcc-91a4-cd88d468d91b}]
"Dhcpv6Iaid" = 234886178
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Winsock]
"UseDelayedAcceptance" = 0
"HelperDllName" = %SystemRoot%\System32\wship6.dll -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
"MaxSockAddrLength" = 28
"MinSockAddrLength" = 28
"Mapping" = 08 00 00 00 03 00 00 00 17 00 00 00 01 00 00 00 06 00 00 00 17 00 00 00 01 00 00 00 00 00 00 00 17 00 00 00 00 00 00 00 06 00 00 00 17 00 00 00 02 00 00 00 11 00 00 00 17 00 00 00 02 00 00 00 00 00 00 00 17 00 00 00 00 00 00 00 11 00 00 00 17 00 00 00 03 00 00 00 FF 00 00 00 17 00 00 00 03 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tcpipreg]
"DisplayName" = TCP/IP Registry Compatibility
"ImagePath" = System32\drivers\tcpipreg.sys -- [2009.12.08 18:26:18 | 000,030,720 | ---- | M] (Microsoft Corporation)
"Description" = Provides compatibility for legacy applications which interact with TCP/IP through the registry. If this service is stopped, certain applications may have impaired functionality.
"ErrorControl" = 1
"Start" = 2
"Type" = 1
"DependOnService" = tcpip [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tcpipreg\Enum]
"0" = Root\LEGACY_TCPIPREG\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TDPIPE]
"DisplayName" = TDPIPE
"ImagePath" = system32\drivers\tdpipe.sys -- [2008.01.21 03:24:08 | 000,017,920 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TDTCP]
"DisplayName" = TDTCP
"ImagePath" = system32\drivers\tdtcp.sys -- [2008.01.21 03:24:08 | 000,029,184 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tdx]
"DisplayName" = @%SystemRoot%\system32\tcpipcfg.dll,-50004
"Group" = PNP_TDI
"ImagePath" = system32\DRIVERS\tdx.sys -- [2009.04.11 05:45:56 | 000,072,192 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 1
"Tag" = 4
"Type" = 1
"DependOnService" = Tcpip [binary data]
"Description" = @%SystemRoot%\system32\tcpipcfg.dll,-50004
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tdx\Enum]
"0" = Root\LEGACY_TDX\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TermDD]
"PortDriverEnable" = 1
"DisplayName" = Ovladač terminálového zařízení
"ImagePath" = system32\DRIVERS\termdd.sys -- [2009.04.11 07:32:52 | 000,053,224 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TermDD\Enum]
"0" = Root\RDP_KBD\0000
"Count" = 2
"NextInstance" = 2
"1" = Root\RDP_MOU\0000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TermService]
"DisplayName" = @%SystemRoot%\System32\termsrv.dll,-268
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\termsrv.dll,-267
"ObjectName" = NT Authority\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RPCSSTermDD [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeAssignPrimaryTokenPrivilegeSeAu [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 60 EA 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TermService\Parameters]
"ServiceDll" = %SystemRoot%\System32\termsrv.dll -- [2009.04.11 07:28:24 | 000,449,024 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TermService\Performance]
"Close" = CloseTSObject
"Collect Timeout" = 1000
"Collect" = CollectTSObjectData
"Open Timeout" = 1000
"Open" = OpenTSObject
"Library" = perfts.dll -- [2008.01.21 03:24:07 | 000,017,408 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = tslabels.ini
"First Counter" = 4712
"Last Counter" = 4832
"First Help" = 4713
"Last Help" = 4833
"Object List" = 4712
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Themes]
"DisplayName" = @%SystemRoot%\System32\shsvcs.dll,-8192
"Group" = ProfSvc_Group
"ImagePath" = %SystemRoot%\System32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\shsvcs.dll,-8193
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"RequiredPrivileges" = SeAssignPrimaryTokenPrivilegeSeDe [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Themes\Parameters]
"ServiceDll" = %SystemRoot%\system32\shsvcs.dll -- [2009.07.10 12:47:42 | 000,247,808 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ThemeServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\THREADORDER]
"DisplayName" = @%systemroot%\system32\mmcss.dll,-102
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\mmcss.dll,-103
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\THREADORDER\Parameters]
"ServiceDll" = %SystemRoot%\system32\mmcss.dll -- [2008.01.21 03:24:54 | 000,045,056 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ToServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\THREADORDER\Parameters\APN]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TPM]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\drivers\tpm.sys -- [2008.01.21 03:23:26 | 000,045,624 | ---- | M] (Microsoft Corporation)
"DisplayName" = Čip TPM
"Description" = Ovladač čipu TPM
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TPM\Enum]
"0" = ACPI\IFX0102\1
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TrkWks]
"ServiceDll" = %SystemRoot%\System32\trkwks.dll -- [2008.01.21 03:24:05 | 000,075,264 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%SystemRoot%\system32\trkwks.dll,-1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\trkwks.dll,-2
"KmdfLibraryVersion" = 1.0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SynTP\Enum]
"0" = ACPI\SYN0A06\4&323124ef&0
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SysMain]
"DisplayName" = @%SystemRoot%\system32\sysmain.dll,-1000
"Description" = @%SystemRoot%\system32\sysmain.dll,-1001
"ImagePath" = %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"ErrorControl" = 0
"Start" = 2
"Type" = 32
"DependOnService" = rpcssfileinfo [binary data]
"RequiredPrivileges" = SeTcbPrivilegeSeProfileSingleProc [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\SysMain\Parameters]
"ServiceDll" = %systemroot%\system32\sysmain.dll -- [2009.04.11 07:28:24 | 000,558,080 | ---- | M] (Microsoft Corporation)
"ServiceMain" = SysMtServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TabletInputService]
"DisplayName" = @%SystemRoot%\system32\TabSvc.dll,-100
"ErrorControl" = 1
"Group" = PlugPlay
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%SystemRoot%\system32\TabSvc.dll,-101
"DependOnService" = PlugPlayRpcSs [binary data]
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeTcbPrivilegeSeImpersonatePrivil [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TabletInputService\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\System32\TabSvc.dll -- [2006.11.02 13:35:24 | 000,068,096 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TapiSrv]
"DisplayName" = @%SystemRoot%\system32\tapisrv.dll,-10100
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\tapisrv.dll,-10101
"DependOnService" = PlugPlayRpcSs [binary data]
"ObjectName" = NT AUTHORITY\NetworkService
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TapiSrv\Parameters]
"ServiceDll" = %SystemRoot%\System32\tapisrv.dll -- [2009.04.11 07:28:24 | 000,242,688 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TapiSrv\Performance]
"Close" = CloseTapiPerformanceData
"Collect" = CollectTapiPerformanceData
"Library" = tapiperf.dll -- [2006.11.02 10:46:13 | 000,008,704 | ---- | M] (Microsoft Corporation)
"ObjectList" = 1150
"Open" = OpenTapiPerformanceData
"InstallType" = 1
"PerfIniFile" = tapiperf.ini
"First Counter" = 1848
"Last Counter" = 1866
"First Help" = 1849
"Last Help" = 1867
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TapiSrv\Security]
"Security" = 01 00 14 80 8C 00 00 00 98 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 5C 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TBS]
"DisplayName" = @%SystemRoot%\system32\tbssvc.dll,-100
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\tbssvc.dll,-101
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeAuditPri [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"DelayedAutoStart" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TBS\Parameters]
"ServiceDll" = %SystemRoot%\System32\tbssvc.dll -- [2008.01.21 03:24:30 | 000,056,320 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TBS\Security]
"Security" = 01 00 14 80 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 06 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 14 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 13 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip]
"DisplayName" = @%SystemRoot%\system32\tcpipcfg.dll,-50003
"Group" = PNP_TDI
"ImagePath" = System32\drivers\tcpip.sys -- [2012.03.30 13:39:11 | 000,905,600 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 0
"Tag" = 3
"Type" = 1
"Description" = @%SystemRoot%\system32\tcpipcfg.dll,-50003
"BootFlags" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Linkage]
"Bind" = \Device\{DB5A0E6A-4A5D-47A0-8E63-B [Binary data over 200 bytes]
"Route" = "{DB5A0E6A-4A5D-47A0-8E63-B3C6DAAC [Binary data over 200 bytes]
"Export" = \Device\Tcpip_{DB5A0E6A-4A5D-47A0- [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters]
"ICSDomain" = mshome.net
"SyncDomainWithMembership" = 1
"NV Hostname" = pc-PC
"DataBasePath" = %SystemRoot%\System32\drivers\etc -- [2006.11.02 12:18:37 | 000,000,000 | ---D | M]
"NameServer" =
"ForwardBroadcasts" = 0
"IPEnableRouter" = 0
"Domain" =
"Hostname" = pc-PC
"SearchList" =
"UseDomainNameDevolution" = 1
"EnableICMPRedirect" = 1
"DeadGWDetectDefault" = 1
"DontAddDefaultGatewayDefault" = 0
"EnablePMTUDiscovery" = 255
"TcpUseRFC1122UrgentPointer" = 255
"DisableTaskOffload" = 255
"TcpMaxDataRetransmissions" = 255
"KeepAliveTime" = -1
"KeepAliveInterval" = -1
"TcpTimedWaitDelay" = -1
"TcpFinWait2Delay" = -1
"EnablePMTUBHDetect" = 255
"Tcp1323Opts" = 0
"OverrideDefaultAddressSelection" = 1
"EnableWsd" = 1
"QualifyingDestinationThreshold" = 3
"TcpWindowSize" = 64240
"DhcpNameServer" = 192.168.0.1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}]
"LLInterface" =
"IpConfig" = Tcpip\Parameters\Interfaces\{1BA29 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{1E26EC88-A56D-4921-A26F-BE842C7AD246}]
"LLInterface" =
"IpConfig" = Tcpip\Parameters\Interfaces\{1E26E [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{24930843-A943-4314-AA1C-FC23C28C2A26}]
"LLInterface" =
"IpConfig" = Tcpip\Parameters\Interfaces\{24930 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
"LLInterface" =
"IpConfig" = Tcpip\Parameters\Interfaces\{3DDD5 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{D51F2DDE-409B-4945-8CE3-E679E832F0D6}]
"LLInterface" =
"IpConfig" = Tcpip\Parameters\Interfaces\{D51F2 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}]
"LLInterface" =
"IpConfig" = Tcpip\Parameters\Interfaces\{DB5A0 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Adapters\{EAE456AC-9095-4125-B655-830A8A22A5A6}]
"LLInterface" =
"IpConfig" = Tcpip\Parameters\Interfaces\{EAE45 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\DNSRegisteredAdapters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}]
"UseZeroBroadcast" = 0
"EnableDeadGWDetect" = 1
"EnableDHCP" = 1
"NameServer" =
"Domain" =
"RegistrationEnabled" = 1
"RegisterAdapterName" = 0
"DhcpIPAddress" = 0.0.0.0
"DhcpSubnetMask" = 255.0.0.0
"DhcpServer" = 255.255.255.255
"Lease" = 0
"LeaseObtainedTime" = 0
"T1" = 0
"T2" = 0
"LeaseTerminatesTime" = 0
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{1E26EC88-A56D-4921-A26F-BE842C7AD246}]
"UseZeroBroadcast" = 0
"EnableDeadGWDetect" = 1
"EnableDHCP" = 1
"NameServer" =
"Domain" =
"RegistrationEnabled" = 0
"RegisterAdapterName" = 0
"DhcpIPAddress" = 5.156.134.182
"DhcpSubnetMask" = 255.0.0.0
"DhcpServer" = 5.0.0.1
"Lease" = 31536000
"LeaseObtainedTime" = 1359555195
"T1" = 1375323195
"T2" = 1387149195
"LeaseTerminatesTime" = 1391091195
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 1
"IPAutoconfigurationEnabled" = 0
"DisableDynamicUpdate" = 1
"DefaultGateway" = 5.0.0.1 [binary data]
"InterfaceMetric" = 9000
"DhcpInterfaceOptions" = FC 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 7E 2A 09 51 01 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 FB 5D EA 52 FF 00 00 00 33 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 FB 5D EA 52 01 E1 33 80 36 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 FB 5D EA 52 05 00 00 01 35 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 FB 5D EA 52 05 00 00 00 [Binary data over 200 bytes] -- [2009.04.11 07:27:36 | 000,019,968 | ---- | M] (Microsoft Corporation)
"DhcpSubnetMaskOpt" = 255.0.0.0 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{24930843-A943-4314-AA1C-FC23C28C2A26}]
"UseZeroBroadcast" = 0
"EnableDeadGWDetect" = 1
"EnableDHCP" = 1
"NameServer" =
"Domain" =
"RegistrationEnabled" = 1
"RegisterAdapterName" = 0
"DhcpServer" = 255.255.255.255
"Lease" = 0
"LeaseObtainedTime" = 0
"T1" = 0
"T2" = 0
"LeaseTerminatesTime" = 0
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 1
"IPAddress" = [binary data]
"SubnetMask" = [binary data]
"DefaultGateway" = [binary data]
"DefaultGatewayMetric" = [binary data]
"DhcpIPAddress" = 0.0.0.0
"DhcpSubnetMask" = 255.0.0.0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{25BB4C6E-2FDB-45BB-97E8-5B834DFD8C87}]
"DhcpIPAddress" = 0.0.0.0
"DhcpSubnetMask" = 0.0.0.0
"Domain" =
"NameServer" =
"RegistrationEnabled" = 0
"RegisterAdapterName" = 0
"DhcpServer" = 255.255.255.255
"Lease" = 0
"LeaseObtainedTime" = 0
"T1" = 0
"T2" = 0
"LeaseTerminatesTime" = 0
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{3a539854-6a70-11db-887c-806e6f6e6963}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
"UseZeroBroadcast" = 0
"EnableDeadGWDetect" = 1
"EnableDHCP" = 1
"NameServer" =
"Domain" =
"RegistrationEnabled" = 1
"RegisterAdapterName" = 0
"DhcpIPAddress" = 192.168.0.103
"DhcpSubnetMask" = 255.255.255.0
"DhcpServer" = 192.168.0.1
"Lease" = 7200
"LeaseObtainedTime" = 1359555312
"T1" = 1359558912
"T2" = 1359561612
"LeaseTerminatesTime" = 1359562512
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 1
"DhcpInterfaceOptions" = 06 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 10 47 09 51 C0 A8 00 01 03 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 10 47 09 51 C0 A8 00 01 01 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 10 47 09 51 FF FF FF 00 33 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 10 47 09 51 00 00 1C 20 36 00 00 00 00 00 00 00 04 00 00 00 00 00 00 00 10 47 09 51 C0 A8 00 01 35 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 10 47 09 51 05 00 00 00 [Binary data over 200 bytes]
"DhcpNameServer" = 192.168.0.1
"DhcpDefaultGateway" = 192.168.0.1 [binary data]
"DhcpSubnetMaskOpt" = 255.255.255.0 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{D51F2DDE-409B-4945-8CE3-E679E832F0D6}]
"UseZeroBroadcast" = 0
"EnableDeadGWDetect" = 1
"EnableDHCP" = 1
"NameServer" =
"Domain" =
"RegistrationEnabled" = 1
"RegisterAdapterName" = 0
"DhcpIPAddress" = 0.0.0.0
"DhcpSubnetMask" = 255.0.0.0
"DhcpServer" = 255.255.255.255
"Lease" = 0
"LeaseObtainedTime" = 0
"T1" = 0
"T2" = 0
"LeaseTerminatesTime" = 0
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}]
"UseZeroBroadcast" = 0
"EnableDeadGWDetect" = 1
"EnableDHCP" = 1
"NameServer" =
"Domain" =
"RegistrationEnabled" = 1
"RegisterAdapterName" = 0
"DhcpIPAddress" = 0.0.0.0
"DhcpSubnetMask" = 255.0.0.0
"DhcpServer" = 255.255.255.255
"Lease" = 0
"LeaseObtainedTime" = 0
"T1" = 0
"T2" = 0
"LeaseTerminatesTime" = 0
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{DD1627B1-E574-4274-804F-217EB4C76F3C}]
"DhcpIPAddress" = 0.0.0.0
"DhcpSubnetMask" = 0.0.0.0
"Domain" =
"NameServer" =
"RegistrationEnabled" = 0
"RegisterAdapterName" = 0
"DhcpInterfaceOptions" = 0F 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 97 FC D6 4F 79 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 97 FC D6 4F 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 97 FC D6 4F 2B 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 97 FC D6 4F 2C 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 97 FC D6 4F 06 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 97 FC D6 4F [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{EAE456AC-9095-4125-B655-830A8A22A5A6}]
"UseZeroBroadcast" = 0
"EnableDeadGWDetect" = 1
"EnableDHCP" = 1
"NameServer" =
"Domain" =
"RegistrationEnabled" = 1
"RegisterAdapterName" = 0
"DhcpIPAddress" = 0.0.0.0
"DhcpSubnetMask" = 255.0.0.0
"DhcpServer" = 255.255.255.255
"Lease" = 0
"LeaseObtainedTime" = 0
"T1" = 0
"T2" = 0
"LeaseTerminatesTime" = 0
"AddressType" = 0
"IsServerNapAware" = 0
"DhcpConnForceBroadcastFlag" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\PersistentRoutes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Parameters\Winsock]
"HelperDllName" = %SystemRoot%\System32\wshtcpip.dll -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
"MaxSockAddrLength" = 16
"MinSockAddrLength" = 16
"Mapping" = 08 00 00 00 03 00 00 00 02 00 00 00 01 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 00 00 00 00 02 00 00 00 00 00 00 00 06 00 00 00 02 00 00 00 02 00 00 00 11 00 00 00 02 00 00 00 02 00 00 00 00 00 00 00 02 00 00 00 00 00 00 00 11 00 00 00 02 00 00 00 03 00 00 00 FF 00 00 00 02 00 00 00 03 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"UseDelayedAcceptance" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Performance]
"Close" = CloseTcpIpPerformanceData
"Collect" = CollectTcpIpPerformanceData
"Library" = Perfctrs.dll -- [2006.11.02 10:46:12 | 000,039,424 | ---- | M] (Microsoft Corporation)
"Open" = OpenTcpIpPerformanceData
"Object List" = 502 510 546 548 582 638 658 1530 1532 1534
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\ServiceProvider]
"Class" = 8
"DnsPriority" = 2000
"HostsPriority" = 500
"LocalPriority" = 499
"Name" = TCP/IP
"NetbtPriority" = 2001
"ProviderPath" = %SystemRoot%\System32\wsock32.dll -- [2008.01.21 03:23:45 | 000,015,360 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip\Enum]
"0" = Root\LEGACY_TCPIP\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 8
"ImagePath" = system32\DRIVERS\tcpip.sys -- [2012.03.30 13:39:11 | 000,905,600 | ---- | M] (Microsoft Corporation)
"DisplayName" = Microsoft IPv6 Protocol Driver
"Group" = PNP_TDI
"DependOnService" = Tcpip [binary data]
"Description" = Microsoft IPv6 Protocol Driver
"TextModeFlags" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Linkage]
"Bind" = \Device\{20F4AEF5-3354-44AB-B8E8-4 [Binary data over 200 bytes]
"Route" = "{20F4AEF5-3354-44AB-B8E8-4EFA20A7 [Binary data over 200 bytes]
"Export" = \Device\Tcpip6_{20F4AEF5-3354-44AB [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters]
"Dhcpv6DUID" = 00 01 00 01 10 81 9F F9 00 23 54 43 34 CE [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{0339501d-f3e1-49b7-9c3b-312868514ebb}]
"Dhcpv6Iaid" = 922746880
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{09398d43-63ae-4d5c-8a1e-f1046a4bb277}]
"Dhcpv6Iaid" = 369098752
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{09ba5c01-4582-4ffa-a6f5-a4582883a4fd}]
"Dhcpv6Iaid" = 335544320
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{0f1874c3-4ca4-4be7-991d-b7cac97c8160}]
"Dhcpv6Iaid" = 587202560
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{1ba29d5d-cd71-4dce-b37c-6b601037aa56}]
"Dhcpv6Iaid" = 637575366
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{1e26ec88-a56d-4921-a26f-be842c7ad246}]
"Dhcpv6Iaid" = 410679552
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{20f4aef5-3354-44ab-b8e8-4efa20a7704d}]
"Dhcpv6Iaid" = 956301312
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{24930843-a943-4314-aa1c-fc23c28c2a26}]
"Dhcpv6Iaid" = 268444500
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{32d33aac-5872-4fa4-abbb-049390d4d3ff}]
"Dhcpv6Iaid" = 738197504
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{37d20c46-6a4f-4518-8b37-fde0fb26127d}]
"Dhcpv6Iaid" = 872415232
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{3ddd54e0-283f-4e9d-93a3-affbe73ab2de}]
"Dhcpv6Iaid" = 335553091
"Dhcpv6State" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{3e838cd3-757a-4c38-a31e-aecf8b5e747e}]
"Dhcpv6Iaid" = 687865856
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{40e0f815-121c-4859-8d0e-ccb2cfdbfc11}]
"Dhcpv6Iaid" = 671088640
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{418fcfe1-e4e6-4b68-ada4-efc98cc311e6}]
"Dhcpv6Iaid" = 251666060
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{42f6500b-cba2-4f6f-a836-c2f42b3fe9ae}]
"Dhcpv6Iaid" = 1056964608
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{53fd7e2e-bf79-48df-accf-63f9cfef28d5}]
"Dhcpv6Iaid" = 822083584
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{55dabea2-8e82-47e1-8f27-b78f3af24615}]
"Dhcpv6Iaid" = 603979776
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{5ee8ed2f-a15c-4026-aa7c-877fd989cc43}]
"Dhcpv6Iaid" = 738197504
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{6123f9c6-2d8d-4322-8497-e7d0fd1abc85}]
"Dhcpv6Iaid" = 704643072
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{7202ce6c-45ce-4be4-b88e-2401b6947712}]
"Dhcpv6Iaid" = 889192448
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{785d1898-0fc5-4a41-859b-dbacae455396}]
"Dhcpv6Iaid" = 687865856
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{837e8c36-9797-4077-97ce-6b4f41dd1c70}]
"Dhcpv6Iaid" = 603979776
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{874ba284-8c8f-4e26-84f3-3781184864df}]
"Dhcpv6Iaid" = 654311424
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{8cb6b681-3723-49d0-b0f8-8b590b03ad70}]
"Dhcpv6Iaid" = 620756992
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{8d932108-42df-4aa4-a286-5dbf87acf2b2}]
"Dhcpv6Iaid" = 587202560
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{9c642153-bfe0-4511-a0b6-e778ddd5ea9e}]
"Dhcpv6Iaid" = 117445666
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{9e9bf04a-59b2-44b6-9f20-12cd7646a51b}]
"Dhcpv6Iaid" = 754974720
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{9ef3c1c9-1f3e-45f3-bd73-a5a1877b36fe}]
"Dhcpv6Iaid" = 536870912
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{adcf5aff-480a-468a-b923-fd575093df33}]
"Dhcpv6Iaid" = 486539264
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{b3539b68-3b73-458d-95dc-dd5579af0bdb}]
"Dhcpv6Iaid" = 956301312
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{b6d6f7d9-0100-447c-a985-f853d73ffcb8}]
"Dhcpv6Iaid" = 905969664
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{ba32a50a-3d27-4fae-8591-5916311409be}]
"Dhcpv6Iaid" = 201331746
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{bc51d4b0-2664-4556-87d6-22d654fd56c6}]
"Dhcpv6Iaid" = 620756992
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{c5020803-7794-4ebc-be07-256b3a4e6d45}]
"Dhcpv6Iaid" = 922746880
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{ccfc0674-9654-461d-94d6-23af6d250326}]
"Dhcpv6Iaid" = 905969664
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{d51f2dde-409b-4945-8ce3-e679e832f0d6}]
"Dhcpv6Iaid" = 184558147
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{db5a0e6a-4a5d-47a0-8e63-b3c6daaca1fc}]
"Dhcpv6Iaid" = 889200144
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{dc388186-6276-45c2-98f5-9b9aa5e7d7af}]
"Dhcpv6Iaid" = 822083584
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{e2f60fc7-78ad-483e-bd9c-72a72c49e2c7}]
"Dhcpv6Iaid" = 721420288
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{e75edeea-ab86-413b-a216-d3ffc33a8ed9}]
"Dhcpv6Iaid" = 805306368
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{e9141a6b-f2d4-4d41-bee9-bfc7c3ea625f}]
"Dhcpv6Iaid" = 637534208
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{eae456ac-9095-4125-b655-830a8a22a5a6}]
"Dhcpv6Iaid" = 721461446
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{ee09acde-dfd6-4bc3-ab57-040e96bfd1d0}]
"Dhcpv6Iaid" = 386007124
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{f50c0996-5b4a-4c6a-a322-6e991d4caa0e}]
"Dhcpv6Iaid" = 100668450
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Interfaces\{f70a361f-6437-4fcc-91a4-cd88d468d91b}]
"Dhcpv6Iaid" = 234886178
"Dhcpv6State" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Tcpip6\Parameters\Winsock]
"UseDelayedAcceptance" = 0
"HelperDllName" = %SystemRoot%\System32\wship6.dll -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
"MaxSockAddrLength" = 28
"MinSockAddrLength" = 28
"Mapping" = 08 00 00 00 03 00 00 00 17 00 00 00 01 00 00 00 06 00 00 00 17 00 00 00 01 00 00 00 00 00 00 00 17 00 00 00 00 00 00 00 06 00 00 00 17 00 00 00 02 00 00 00 11 00 00 00 17 00 00 00 02 00 00 00 00 00 00 00 17 00 00 00 00 00 00 00 11 00 00 00 17 00 00 00 03 00 00 00 FF 00 00 00 17 00 00 00 03 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tcpipreg]
"DisplayName" = TCP/IP Registry Compatibility
"ImagePath" = System32\drivers\tcpipreg.sys -- [2009.12.08 18:26:18 | 000,030,720 | ---- | M] (Microsoft Corporation)
"Description" = Provides compatibility for legacy applications which interact with TCP/IP through the registry. If this service is stopped, certain applications may have impaired functionality.
"ErrorControl" = 1
"Start" = 2
"Type" = 1
"DependOnService" = tcpip [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tcpipreg\Enum]
"0" = Root\LEGACY_TCPIPREG\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TDPIPE]
"DisplayName" = TDPIPE
"ImagePath" = system32\drivers\tdpipe.sys -- [2008.01.21 03:24:08 | 000,017,920 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TDTCP]
"DisplayName" = TDTCP
"ImagePath" = system32\drivers\tdtcp.sys -- [2008.01.21 03:24:08 | 000,029,184 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tdx]
"DisplayName" = @%SystemRoot%\system32\tcpipcfg.dll,-50004
"Group" = PNP_TDI
"ImagePath" = system32\DRIVERS\tdx.sys -- [2009.04.11 05:45:56 | 000,072,192 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 1
"Tag" = 4
"Type" = 1
"DependOnService" = Tcpip [binary data]
"Description" = @%SystemRoot%\system32\tcpipcfg.dll,-50004
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tdx\Enum]
"0" = Root\LEGACY_TDX\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TermDD]
"PortDriverEnable" = 1
"DisplayName" = Ovladač terminálového zařízení
"ImagePath" = system32\DRIVERS\termdd.sys -- [2009.04.11 07:32:52 | 000,053,224 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TermDD\Enum]
"0" = Root\RDP_KBD\0000
"Count" = 2
"NextInstance" = 2
"1" = Root\RDP_MOU\0000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TermService]
"DisplayName" = @%SystemRoot%\System32\termsrv.dll,-268
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\termsrv.dll,-267
"ObjectName" = NT Authority\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RPCSSTermDD [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeAssignPrimaryTokenPrivilegeSeAu [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 60 EA 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TermService\Parameters]
"ServiceDll" = %SystemRoot%\System32\termsrv.dll -- [2009.04.11 07:28:24 | 000,449,024 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TermService\Performance]
"Close" = CloseTSObject
"Collect Timeout" = 1000
"Collect" = CollectTSObjectData
"Open Timeout" = 1000
"Open" = OpenTSObject
"Library" = perfts.dll -- [2008.01.21 03:24:07 | 000,017,408 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = tslabels.ini
"First Counter" = 4712
"Last Counter" = 4832
"First Help" = 4713
"Last Help" = 4833
"Object List" = 4712
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Themes]
"DisplayName" = @%SystemRoot%\System32\shsvcs.dll,-8192
"Group" = ProfSvc_Group
"ImagePath" = %SystemRoot%\System32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\shsvcs.dll,-8193
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"RequiredPrivileges" = SeAssignPrimaryTokenPrivilegeSeDe [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Themes\Parameters]
"ServiceDll" = %SystemRoot%\system32\shsvcs.dll -- [2009.07.10 12:47:42 | 000,247,808 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ThemeServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\THREADORDER]
"DisplayName" = @%systemroot%\system32\mmcss.dll,-102
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\mmcss.dll,-103
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\THREADORDER\Parameters]
"ServiceDll" = %SystemRoot%\system32\mmcss.dll -- [2008.01.21 03:24:54 | 000,045,056 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ToServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\THREADORDER\Parameters\APN]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TPM]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\drivers\tpm.sys -- [2008.01.21 03:23:26 | 000,045,624 | ---- | M] (Microsoft Corporation)
"DisplayName" = Čip TPM
"Description" = Ovladač čipu TPM
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TPM\Enum]
"0" = ACPI\IFX0102\1
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TrkWks]
"ServiceDll" = %SystemRoot%\System32\trkwks.dll -- [2008.01.21 03:24:05 | 000,075,264 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%SystemRoot%\system32\trkwks.dll,-1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\trkwks.dll,-2
Re: policie čr prosim o radu
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeRestorePrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TrkWks\Parameters]
"ServiceDll" = %SystemRoot%\System32\trkwks.dll -- [2008.01.21 03:24:05 | 000,075,264 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TrustedInstaller]
"DisplayName" = @%SystemRoot%\servicing\TrustedInstaller.exe,-100
"ImagePath" = %SystemRoot%\servicing\TrustedInstaller.exe -- [2009.04.11 07:28:07 | 000,039,424 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\servicing\TrustedInstaller.exe,-101
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"ServiceSidType" = 1
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
"BlockTime" = 10800
"PreshutdownTimeout" = 3600000
"Group" = ProfSvc_Group
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TrustedInstaller\Security]
"Security" = 01 00 14 90 90 00 00 00 A0 00 00 00 14 00 00 00 34 00 00 00 02 00 20 00 01 00 00 00 02 C0 18 00 00 00 0C 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 02 00 5C 00 04 00 00 00 00 02 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TSDDD]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TSDDD\Device0]
"InstalledDisplayDrivers" = TSDDD [binary data] -- [2008.01.21 03:24:12 | 000,014,336 | ---- | M] (Microsoft Corporation)
"VgaCompatible" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tssecsrv]
"DisplayName" = Terminal Services Security Filter Driver
"ImagePath" = System32\DRIVERS\tssecsrv.sys -- [2008.01.21 03:24:59 | 000,023,552 | ---- | M] (Microsoft Corporation)
"Description" = Terminal Services Security Filter Driver
"ErrorControl" = 0
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tunmp]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 25
"ImagePath" = system32\DRIVERS\tunmp.sys -- [2008.01.21 03:24:25 | 000,015,360 | ---- | M] (Microsoft Corporation)
"DisplayName" = Microsoft Tun Miniport Adapter Driver
"Group" = NDIS
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tunmp\Enum]
"0" = Root\*TUNMP\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tunnel]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 19
"ImagePath" = system32\DRIVERS\tunnel.sys -- [2010.02.18 12:28:13 | 000,025,088 | ---- | M] (Microsoft Corporation)
"DisplayName" = Microsoft IPv6 Tunnel Miniport Adapter Driver
"Group" = NDIS
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tunnel\Enum]
"0" = Root\*6TO4MP\0000
"Count" = 38
"NextInstance" = 38
"1" = Root\*6TO4MP\0003
"2" = Root\*6TO4MP\0005
"3" = Root\*6TO4MP\0006
"4" = Root\*6TO4MP\0022
"5" = Root\*6TO4MP\0027
"6" = Root\*6TO4MP\0028
"7" = Root\*6TO4MP\0029
"8" = Root\*6TO4MP\0030
"9" = Root\*6TO4MP\0031
"10" = Root\*6TO4MP\0032
"11" = Root\*6TO4MP\0044
"12" = Root\*6TO4MP\0058
"13" = Root\*6TO4MP\0063
"14" = Root\*6TO4MP\0068
"15" = Root\*6TO4MP\0075
"16" = Root\*6TO4MP\0117
"17" = Root\*6TO4MP\0135
"18" = Root\*6TO4MP\0165
"19" = Root\*6TO4MP\0200
"20" = Root\*6TO4MP\0221
"21" = Root\*6TO4MP\0268
"22" = Root\*ISATAP\0000
"23" = Root\*ISATAP\0002
"24" = Root\*ISATAP\0004
"25" = Root\*ISATAP\0005
"26" = Root\*ISATAP\0007
"27" = Root\*ISATAP\0008
"28" = Root\*ISATAP\0009
"29" = Root\*ISATAP\0010
"30" = Root\*ISATAP\0011
"31" = Root\*ISATAP\0012
"32" = Root\*ISATAP\0013
"33" = Root\*ISATAP\0014
"34" = Root\*ISATAP\0015
"35" = Root\*ISATAP\0020
"36" = Root\*ISATAP\0030
"37" = Root\*ISATAP\0036
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\uagp35]
"DisplayName" = Microsoft AGPv3.5 Filter
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\uagp35.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\uagp35\Parameters]
"1106316800" = 0 [binary data]
"1106316802" = 0 [binary data]
"1106316803" = 0 [binary data]
"1106318900" = p [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\udfs]
"DisplayName" = udfs
"Group" = File System
"ImagePath" = system32\DRIVERS\udfs.sys -- [2009.04.11 05:13:59 | 000,226,816 | ---- | M] (Microsoft Corporation)
"Description" = Reads/Writes UDF 1.02,1.5,2.0x,2.5 disc formats, usually found on C/DVD discs. (Core) (All pieces)
"ErrorControl" = 1
"Start" = 4
"Type" = 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\udfs\Enum]
"0" = Root\LEGACY_UDFS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UGatherer]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UGatherer\Performance]
"Close" = Close
"Open" = Open
"Collect" = Collect
"Library" = %systemroot%\system32\msscntrs.dll -- [2009.04.11 07:28:22 | 000,060,416 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = gsrvctr.ini
"First Counter" = 3722
"Last Counter" = 3826
"First Help" = 3723
"Last Help" = 3827
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UGTHRSVC]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UGTHRSVC\Performance]
"Close" = Close
"Open" = Open
"Collect" = Collect
"Library" = %systemroot%\system32\msscntrs.dll -- [2009.04.11 07:28:22 | 000,060,416 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = gthrctr.ini
"First Counter" = 3828
"Last Counter" = 3898
"First Help" = 3829
"Last Help" = 3899
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UI0Detect]
"DisplayName" = @%SystemRoot%\system32\ui0detect.exe,-101
"ImagePath" = %SystemRoot%\system32\UI0Detect.exe -- [2008.01.21 03:24:08 | 000,035,840 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\ui0detect.exe,-102
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 272
"ServiceSidType" = 1
"RequiredPrivileges" = SeTcbPrivilegeSeAssignPrimaryToke [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\uliagpkx]
"DisplayName" = Uli AGP Bus Filter
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\uliagpkx.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\uliahci]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\uliahci.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\uliahci\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\uliahci\Parameters\Device]
"EnableNCQ" = [binary data]
"DisableWC" = [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\uliahci\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UlSata]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\ulsata.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UlSata\Parameters]
"BusType" = 11
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UlSata\Parameters\Cache]
"DefSize" = 9437184
"Flag" = TRUE
"CACHEON" = 1
"DrvSetting" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UlSata\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ulsata2]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\ulsata2.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ulsata2\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ulsata2\Parameters\Cache]
"LongBurstDisable" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ulsata2\Parameters\Capabilities]
"TAG_CMD" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ulsata2\Parameters\Device]
"NumberOfRequests" = 128
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ulsata2\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\umbus]
"DisplayName" = Ovladač sběrnice UMBus Enumerator
"Group" = Extended Base
"ImagePath" = system32\DRIVERS\umbus.sys -- [2008.01.21 03:23:22 | 000,034,816 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 10
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\umbus\Enum]
"0" = Root\UMBUS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\upnphost]
"DisplayName" = @%systemroot%\system32\upnphost.dll,-213
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\upnphost.dll,-214
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = SSDPSRVHTTP [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\upnphost\Parameters]
"ServiceDll" = %SystemRoot%\System32\upnphost.dll -- [2008.01.21 03:24:04 | 000,259,072 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\upnphost\Security]
"Security" = 01 00 14 88 B8 00 00 00 C4 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 88 00 06 00 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 13 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 14 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usb]
"FastS4_OverrideBiosS4" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbccgp]
"DisplayName" = Obecný nadřazený ovladač Microsoft USB
"Group" = Base
"ImagePath" = system32\DRIVERS\usbccgp.sys -- [2008.01.21 03:23:20 | 000,073,216 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 20
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbccgp\Enum]
"0" = USB\VID_04F2&PID_B033\5&fc962aa&0&7
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbcir]
"DisplayName" = eHome Infrared Receiver (USBCIR)
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\usbcir.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbcir\PowerKey]
"PowerKey" = 00 00 00 00 1F 00 B9 D1 C4 8E EE 91 0C 90 89 A1 87 EE 1A AA DE 35 9B EC 14 F5 8D C1 1B AA 42 4D 4F CB 6F BE 9D E6 5C FA 47 E1 C1 F2 84 A6 1F 20 34 8F E7 71 EE 13 5F 55 82 FE 09 50 56 2A 28 EF 64 F1 97 46 AB AA 03 15 6C AB 62 0B 23 55 9F 03 1F 86 C1 AD 63 17 3D 6E 1F 40 FA 46 4A 77 33 58 82 E1 1F 81 AB E7 D8 6A 07 3E 51 83 60 6C 19 5B 18 4F 67 C1 74 53 01 F2 87 DE E2 C1 99 E6 22 9A 85 A6 1F 60 A1 78 FB 07 AB 5D DB 47 3F 63 2B B6 DE F2 B4 82 30 A3 6D 53 67 D6 15 35 61 4D F4 D5 31 5D AF 55 2B CE BB DB 87 7A E0 88 1F 80 DC FE AD 50 17 39 9B 97 03 3C 46 37 01 A5 8C 0F 5D 52 D8 6D 5C 0C A5 84 A7 80 06 ED AB 81 B1 4C 13 38 29 95 DA 85 63 D9 1F A0 D1 D9 FD 08 B7 84 37 45 AB 34 F6 C7 67 DA 97 2F 94 FD 78 68 AE E8 57 E1 4B BC 5A 47 61 3F F0 97 51 04 16 E1 2A 99 DA 31 1F C0 B3 86 EF B0 F6 60 9F 19 01 33 0D 99 F9 92 7A B1 B5 6D 2C 5F 6E EF 1A 5D 18 DE 88 25 EE 48 12 10 BE DB 1B E2 8E BA 19 2A 1F E0 8B 14 2F 74 BB 27 4C CD 85 AB 23 CF 57 5D A5 75 81 0D F4 41 45 10 9A AA DF 23 41 1E AE E9 94 EA D6 23 37 DE EB FA 5D 7B [Binary data over 200 bytes]
"PowerKeyRxOnly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inary data over 200 bytes]
"PowerKeySamsung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inary data over 200 bytes]
"PowerKeyRC6All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inary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbehci]
"DisplayName" = Ovladač Miniport vylepšeného hostitelského řadiče Microsoft USB 2.0
"Group" = Base
"ImagePath" = system32\DRIVERS\usbehci.sys -- [2009.04.11 05:42:52 | 000,039,936 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 18
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbehci\Enum]
"0" = PCI\VEN_10DE&DEV_0AA6&SUBSYS_1A871043&REV_B1\3&267a616a&0&21
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbhub]
"DisplayName" = Rozbočovač umožňující USB2
"Group" = Base
"ImagePath" = system32\DRIVERS\usbhub.sys -- [2009.04.11 05:43:16 | 000,196,096 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 19
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbhub\Performance]
"Library" = %SystemRoot%\system32\usbperf.dll -- [2008.01.21 03:24:24 | 000,011,264 | ---- | M] (Microsoft Corporation)
"Open" = OpenUsbPerformanceData
"Close" = CloseUsbPerformanceData
"Collect" = CollectUsbPerformanceData
"InstallType" = 1
"PerfIniFile" = usbperf.ini
"First Counter" = 3424
"Last Counter" = 3458
"First Help" = 3425
"Last Help" = 3459
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbhub\Enum]
"0" = USB\ROOT_HUB\4&31cffac&0
"Count" = 2
"NextInstance" = 2
"1" = USB\ROOT_HUB20\4&34a359cc&0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbohci]
"DisplayName" = Ovladač Miniport otevřeného hostitelského řadiče Microsoft USB
"Group" = Base
"ImagePath" = system32\DRIVERS\usbohci.sys -- [2009.04.11 05:42:52 | 000,019,456 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 21
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbohci\Enum]
"0" = PCI\VEN_10DE&DEV_0AA5&SUBSYS_1A871043&REV_B1\3&267a616a&0&20
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbprint]
"DisplayName" = Třída USB Printer
"Group" = extended base
"ImagePath" = system32\DRIVERS\usbprint.sys -- [2008.01.21 03:23:22 | 000,018,944 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 26
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbscan]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 24
"ImagePath" = system32\DRIVERS\usbscan.sys -- [2008.01.21 03:23:27 | 000,035,328 | ---- | M] (Microsoft Corporation)
"DisplayName" = Ovladač skeneru USB
"Group" = Base
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\USBSTOR]
"DisplayName" = Ovladač velkokapacitního paměťového zařízení USB
"ImagePath" = system32\DRIVERS\USBSTOR.SYS -- [2009.04.11 05:42:55 | 000,065,536 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"massfilter" = 1
"massfilter_hs" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\USBSTOR\Enum]
"Count" = 0
"NextInstance" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbuhci]
"DisplayName" = Microsoft USB Universal Host Controller Miniport Driver
"Group" = Base
"ImagePath" = system32\DRIVERS\usbuhci.sys -- [2008.01.21 03:23:03 | 000,023,552 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 4
"Type" = 1
"Tag" = 17
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbvideo]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = System32\Drivers\usbvideo.sys -- [2008.01.21 03:23:26 | 000,134,016 | ---- | M] (Microsoft Corporation)
"DisplayName" = USB Video Device (WDM)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\USBZTECCID]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ZTEusbccid.sys -- [2010.02.22 17:26:36 | 000,014,336 | ---- | M] (ZTE)
"DisplayName" = ZTE USB Smartcard Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UxSms]
"DisplayName" = @%SystemRoot%\system32\dwm.exe,-2000
"Group" = UIGroup
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\dwm.exe,-2001
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeAssignPrimaryTokenPrivilegeSeCr [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UxSms\Parameters]
"ServiceDll" = %SystemRoot%\System32\uxsms.dll -- [2009.04.11 07:28:25 | 000,029,184 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = ServiceMain
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vds]
"DisplayName" = @%SystemRoot%\system32\vds.exe,-100
"ImagePath" = %SystemRoot%\System32\vds.exe -- [2009.04.11 07:28:09 | 000,385,536 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\vds.exe,-112
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"DependOnService" = RpcSsPlugPlay [binary data]
"ServiceSidType" = 1
"FailureActions" = 78 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
"DisableReenumDelay" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vds\Alignment]
"" = Alignment Settings in Bytes
"Between4_8GB" = 1048576
"Between8_32GB" = 1048576
"GreaterThan32GB" = 1048576
"LessThan4GB" = 65536
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vds\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 70 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 27 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vds\SoftwareProviders]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vds\SoftwareProviders\{A86AE501-EF73-4C8D-827E-98BA5046B05F}]
"" = Microsoft Virtual Disk Service Dynamic Provider
"Clsid" = {02A3586C-D264-40BF-97F7-FE40F7E3A882}
"Version" = 2.0.0.1
"VersionId" = {61CBC199-5CCA-4214-BBA8-BFBFCE740CFD}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vds\SoftwareProviders\{CA7DE14F-5BC8-48fd-93DE-A19527B0459E}]
"" = Microsoft Virtual Disk Service Basic Provider
"Clsid" = {DE010DA1-289B-4232-8CD0-5112DCA6A7B3}
"Version" = 2.0.0.1
"VersionId" = {f5a11d0a-cd5d-43f9-b6a1-9e4ff8cfee7a}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vga]
"Type" = 1
"Start" = 3
"ErrorControl" = 0
"Tag" = 2
"ImagePath" = system32\DRIVERS\vgapnp.sys -- [2008.01.21 03:23:02 | 000,026,112 | ---- | M] (Microsoft Corporation)
"Group" = Video
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vga\Device0]
"InstalledDisplayDrivers" = vgaframebufvga256vga64k [binary data]
"VgaCompatible" = 1
"Device Description" = Standard VGA Graphics Adapter
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vga\Video]
"Service" = vga -- [2008.01.21 03:24:50 | 000,010,752 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VgaSave]
"Group" = Video Save
"ImagePath" = \SystemRoot\System32\drivers\vga.sys
"ErrorControl" = 0
"Start" = 1
"Tag" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VgaSave\Device0]
"InstalledDisplayDrivers" = vgaframebufvga256vga64k [binary data]
"RequestedResources" = 000003B0 00000000 0000000C 0000010 [Binary data over 200 bytes]
"VgaCompatible" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VgaSave\Video]
"Service" = VgaSave
"VideoID" = {23A77BF7-ED96-40EC-AF06-9B1F4867732A}
"InstalledDisplayDrivers" = vgaframebufvga256vga64k [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VgaSave\Enum]
"0" = Root\LEGACY_VGASAVE\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\viaagp]
"DisplayName" = VIA AGP Bus Filter
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\viaagp.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ViaC7]
"DisplayName" = VIA C7 Processor Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\viac7.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\viaide]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\viaide.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\volmgr]
"DisplayName" = Ovladač správce svazků
"Group" = System Bus Extender
"ImagePath" = system32\drivers\volmgr.sys -- [2008.01.21 03:23:01 | 000,052,792 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
"Tag" = 9
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\volmgr\Enum]
"0" = Root\volmgr\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\volmgrx]
"DisplayName" = Dynamic Volume Manager
"Group" = System Bus Extender
"ImagePath" = System32\drivers\volmgrx.sys -- [2009.04.11 07:33:03 | 000,292,840 | ---- | M] (Microsoft Corporation)
"Description" = Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks
"ErrorControl" = 3
"Start" = 0
"Type" = 1
"Tag" = 10
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\volmgrx\Enum]
"0" = Root\LEGACY_VOLMGRX\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\volsnap]
"DisplayName" = Svazky úložiště
"ImagePath" = system32\drivers\volsnap.sys -- [2012.08.21 12:47:42 | 000,224,640 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\volsnap\Enum]
"0" = Root\LEGACY_VOLSNAP\0000
"Count" = 4
"NextInstance" = 4
"1" = STORAGE\Volume\1&19f7e59c&0&Signature97646C29Offset7E00Length27115F800
"2" = STORAGE\Volume\1&19f7e59c&0&Signature97646C29Offset271200000Length2542E00000
"3" = STORAGE\Volume\1&19f7e59c&0&Signature97646C29Offset27B4100000Length22D1B00000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vsmraid]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\vsmraid.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vsmraid\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vsmraid\Parameters\Device]
"CreateInitiatorLU" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vsmraid\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS]
"DisplayName" = @%systemroot%\system32\vssvc.exe,-102
"ImagePath" = %systemroot%\system32\vssvc.exe -- [2009.04.11 07:28:10 | 001,055,232 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\vssvc.exe,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Diag]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Diag\SPP]
"SppCreate (Enter)" = 40 00 00 00 00 00 00 00 A0 D3 76 23 4C FE CD 01 FC 15 00 00 44 10 00 00 D0 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppGatherWriterMetadata (Enter)" = 40 00 00 00 00 00 00 00 14 32 D5 37 35 2B C9 01 80 12 00 00 24 0C 00 00 D3 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppGatherWriterMetadata (Leave)" = 40 00 00 00 00 00 00 00 94 0C 2D 3A 35 2B C9 01 80 12 00 00 24 0C 00 00 D3 07 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppAddInterestingComponents (Enter)" = 40 00 00 00 00 00 00 00 54 CF 31 3A 35 2B C9 01 80 12 00 00 24 0C 00 00 D4 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppAddInterestingComponents (Leave)" = 40 00 00 00 00 00 00 00 F4 8E 68 3A 35 2B C9 01 80 12 00 00 24 0C 00 00 D4 07 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppCreate (Leave)" = 40 00 00 00 00 00 00 00 A0 D3 76 23 4C FE CD 01 FC 15 00 00 44 10 00 00 D0 07 00 00 01 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppEnumGroups (Enter)" = 40 00 00 00 00 00 00 00 30 F5 22 C5 D8 FE CD 01 4C 10 00 00 40 10 00 00 D1 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppGetSnapshots (Enter)" = 40 00 00 00 00 00 00 00 30 F5 22 C5 D8 FE CD 01 4C 10 00 00 40 10 00 00 D2 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppGetSnapshots (Leave)" = 40 00 00 00 00 00 00 00 F0 B7 27 C5 D8 FE CD 01 4C 10 00 00 40 10 00 00 D2 07 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppEnumGroups (Leave)" = 40 00 00 00 00 00 00 00 F0 B7 27 C5 D8 FE CD 01 4C 10 00 00 40 10 00 00 D1 07 00 00 01 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Diag\SystemRestore]
"SrCreateRp (Enter)" = 40 00 00 00 00 00 00 00 20 4E 6D 23 4C FE CD 01 FC 15 00 00 44 10 00 00 D5 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SrCreateRp (Leave)" = 40 00 00 00 00 00 00 00 A0 D3 76 23 4C FE CD 01 FC 15 00 00 44 10 00 00 D5 07 00 00 01 00 00 00 00 00 00 00 22 04 07 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Diag\VolSnap]
"VolumesSafeForWrite (Enter)" = 40 00 00 00 00 00 00 00 BE 14 EF D0 F4 FE CD 01 00 00 00 00 00 00 00 00 1E 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"VolumesSafeForWrite (Leave)" = 40 00 00 00 00 00 00 00 C0 2F 8C D1 F4 FE CD 01 00 00 00 00 00 00 00 00 1F 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Providers]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Providers\{b5946137-7b9f-4925-af80-51abd60b20d5}]
"" = Microsoft Software Shadow Copy provider 1.0
"Type" = 1
"Version" = 1.0.0.7
"VersionId" = {00000001-0000-0000-0007-000000000001}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Providers\{b5946137-7b9f-4925-af80-51abd60b20d5}\CLSID]
"" = {65EE1DBA-8FF4-4a58-AC1C-3470EE2F376A}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Settings]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Settings\WritersBlockingRevert]
"{2707761B-2324-473D-88EB-EB007A359533}" = DFS-R Writer
"{D76F5A28-3092-4589-BA48-2958FB88CE29}" = FRS Writer
"{B2014C9E-8711-4C5C-A5A9-3CF384484757}" = AD Writer
"{DD846AAA-A1B6-42a8-AAF8-03DCB6114BFD}" = ADAM Writer
"TornComponentsBlockRevert" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\VssAccessControl]
"NT Authority\NetworkService" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time]
"DisplayName" = @%SystemRoot%\system32\w32time.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\w32time.dll,-201
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time\Config]
"FrequencyCorrectRate" = 4
"PollAdjustFactor" = 5
"LargePhaseOffset" = 50000000
"SpikeWatchPeriod" = 900
"LocalClockDispersion" = 10
"HoldPeriod" = 5
"PhaseCorrectRate" = 1
"UpdateInterval" = 360000
"EventLogFlags" = 2
"AnnounceFlags" = 10
"TimeJumpAuditOffset" = 28800
"MinPollInterval" = 10
"MaxPollInterval" = 15
"MaxNegPhaseCorrection" = 54000
"MaxPosPhaseCorrection" = 54000
"MaxAllowedPhaseOffset" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time\Parameters]
"ServiceDll" = %systemroot%\system32\w32time.dll -- [2009.04.11 07:28:25 | 000,282,624 | ---- | M] (Microsoft Corporation)
"ServiceMain" = SvchostEntry_W32Time
"ServiceDllUnloadOnStop" = 1
"Type" = NTP
"NtpServer" = time.windows.com,0x9
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time\TimeProviders]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time\TimeProviders\NtpClient]
"DllName" = %systemroot%\system32\w32time.dll -- [2009.04.11 07:28:25 | 000,282,624 | ---- | M] (Microsoft Corporation)
"Enabled" = 1
"InputProvider" = 1
"AllowNonstandardModeCombinations" = 1
"CrossSiteSyncFlags" = 2
"ResolvePeerBackoffMinutes" = 15
"ResolvePeerBackoffMaxTimes" = 7
"CompatibilityFlags" = -2147483648
"EventLogFlags" = 1
"LargeSampleSkew" = 3
"SpecialPollInterval" = 604800
"SpecialPollTimeRemaining" = time.windows.com,7c02c99 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time\TimeProviders\NtpServer]
"DllName" = %systemroot%\system32\w32time.dll -- [2009.04.11 07:28:25 | 000,282,624 | ---- | M] (Microsoft Corporation)
"Enabled" = 0
"InputProvider" = 0
"AllowNonstandardModeCombinations" = 1
"EventLogFlags" = 0
"ChainEntryTimeout" = 16
"ChainMaxEntries" = 128
"ChainMaxHostEntries" = 4
"ChainDisable" = 0
"ChainLoggingRate" = 30
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W3SVC]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W3SVC\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W3SVC\Parameters\ADCLaunch]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W3SVC\Parameters\ADCLaunch\AdvancedDataFactory]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W3SVC\Parameters\ADCLaunch\RDSServer.DataFactory]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WacomPen]
"DisplayName" = Wacom Serial Pen HID Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\wacompen.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wanarp]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\wanarp.sys -- [2008.01.21 03:24:25 | 000,062,464 | ---- | M] (Microsoft Corporation)
"DisplayName" = Remote Access IP ARP Driver
"Description" = Remote Access IP ARP Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wanarp\Linkage]
"Bind" = \Device\NdisWanIp [binary data]
"Route" = "NdisWanIp" [binary data]
"Export" = \Device\Wanarp_NdisWanIp [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wanarpv6]
"Type" = 1
"Start" = 1
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\wanarp.sys -- [2008.01.21 03:24:25 | 000,062,464 | ---- | M] (Microsoft Corporation)
"DisplayName" = Remote Access IPv6 ARP Driver
"Description" = Remote Access IPv6 ARP Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wanarpv6\Linkage]
"Bind" = \Device\NdisWanIpv6 [binary data]
"Route" = "NdisWanIpv6" [binary data]
"Export" = \Device\Wanarpv6_NdisWanIpv6 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wanarpv6\Enum]
"0" = Root\LEGACY_WANARPV6\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wcncsvc]
"DisplayName" = @%SystemRoot%\system32\wcncsvc.dll,-3
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\wcncsvc.dll,-4
"DependOnService" = rpcss [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeChangeNotifyPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wcncsvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\System32\wcncsvc.dll -- [2009.04.11 07:28:25 | 000,413,696 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WcsPlugInService]
"DisplayName" = @%SystemRoot%\system32\WcsPlugInService.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k wcssvc -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\WcsPlugInService.dll,-201
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WcsPlugInService\Parameters]
"ServiceDll" = %SystemRoot%\System32\WcsPlugInService.dll -- [2006.11.02 10:46:13 | 000,032,256 | ---- | M] (Microsoft Corporation)
"ServiceDLLUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WcsPlugInService\Security]
"Security" = 01 00 14 80 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wd]
"DisplayName" = Microsoft Watchdog Timer Driver
"ImagePath" = system32\drivers\wd.sys -- [2008.01.21 03:23:24 | 000,022,072 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wd\Enum]
"0" = ACPI_HAL\PNP0C18\0
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wdf01000]
"DisplayName" = Kernel Mode Driver Frameworks service
"Group" = WdfLoadGroup
"ImagePath" = system32\drivers\Wdf01000.sys -- [2008.01.21 03:23:51 | 000,503,864 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wdf01000\Enum]
"0" = Root\LEGACY_WDF01000\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wdf01000\Parameters]
"MajorVersion" = 1
"MinorVersion" = 7
"BuildNumber" = 6001
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WdiServiceHost]
"DisplayName" = @%systemroot%\system32\wdi.dll,-502
"ImagePath" = %SystemRoot%\System32\svchost.exe -k wdisvc -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\wdi.dll,-503
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = FF FF FF FF 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WdiServiceHost\Parameters]
"ServiceDll" = %SystemRoot%\system32\wdi.dll -- [2008.01.21 03:24:37 | 000,073,728 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WdiServiceHost\Security]
"Security" = 01 00 14 80 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 05 00 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 EF 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 FD 01 02 00 01 06 00 00 00 00 00 05 50 00 00 00 5E F3 0F B1 81 64 AE 04 B1 4C A2 29 14 B1 4C 21 A6 56 86 56 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WdiSystemHost]
"DisplayName" = @%systemroot%\system32\wdi.dll,-500
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\wdi.dll,-501
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImperson [Binary data over 200 bytes]
"FailureActions" = FF FF FF FF 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WdiSystemHost\Parameters]
"ServiceDll" = %SystemRoot%\system32\wdi.dll -- [2008.01.21 03:24:37 | 000,073,728 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WdiSystemHost\Security]
"Security" = 01 00 14 80 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 05 00 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 EF 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 FD 01 02 00 01 06 00 00 00 00 00 05 50 00 00 00 5E F3 0F B1 81 64 AE 04 B1 4C A2 29 14 B1 4C 21 A6 56 86 56 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WebClient]
"DisplayName" = @%systemroot%\system32\webclnt.dll,-100
"ErrorControl" = 1
"Group" = NetworkProvider
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%systemroot%\system32\webclnt.dll,-101
"DependOnService" = MRxDAV [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeCreateGlobalPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WebClient\NetworkProvider]
"DeviceName" = \Device\WebDavRedirector
"ProviderPath" = %SystemRoot%\System32\davclnt.dll -- [2009.04.11 07:28:18 | 000,061,440 | ---- | M] (Microsoft Corporation)
"Name" = Web Client Network
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WebClient\Parameters]
"SupportLocking" = 1
"ClientDebug" = 0
"ServerNotFoundCacheLifeTimeInSec" = 60
"FileSizeLimitInBytes" = 50000000
"AcceptOfficeAndTahoeServers" = 1
"FileAttributesLimitInBytes" = 1000000
"ServiceDebug" = 0
"InternetServerTimeoutInSec" = 30
"ServiceDllUnloadOnStop" = 1
"LocalServerTimeoutInSec" = 15
"BasicAuthLevel" = 1
"ServiceDll" = %SystemRoot%\System32\webclnt.dll -- [2009.04.11 07:28:25 | 000,199,680 | ---- | M] (Microsoft Corporation)
"SendReceiveTimeoutInSec" = 60
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wecsvc]
"DisplayName" = @%SystemRoot%\system32\wecsvc.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\wecsvc.dll,-201
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
"DependOnService" = HTTPEventlog [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wecsvc\Parameters]
"ServiceDll" = %SystemRoot%\system32\wecsvc.dll -- [2009.10.09 22:55:52 | 000,146,944 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wercplsupport]
"DisplayName" = @%SystemRoot%\System32\wercplsupport.dll,-101
"ImagePath" = %SystemRoot%\System32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\wercplsupport.dll,-100
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeTcbPrivilege [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wercplsupport\Parameters]
"ServiceDll" = %SystemRoot%\System32\wercplsupport.dll -- [2008.01.21 03:23:53 | 000,062,976 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WerSvc]
"DisplayName" = @%SystemRoot%\System32\wersvc.dll,-100
"ImagePath" = %SystemRoot%\System32\svchost.exe -k WerSvcGroup -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\wersvc.dll,-101
"ObjectName" = localSystem
"ErrorControl" = 0
"Start" = 2
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeDebugPrivilegeSeTcbPrivilegeSe [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WerSvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\WerSvc.dll -- [2009.04.11 07:28:25 | 000,126,976 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinDefend]
"DisplayName" = @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103
"ErrorControl" = 1
"Group" = COM Infrastructure
"ImagePath" = %SystemRoot%\System32\svchost.exe -k secsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%ProgramFiles%\Windows Defender\MsMpRes.dll,-3068
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeBackupPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinDefend\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %ProgramFiles%\Windows Defender\mpsvc.dll -- [2008.01.21 03:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinDefend\Security]
"Security" = 01 00 14 80 04 01 00 00 10 01 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 D4 00 07 00 00 00 00 00 28 00 FF 01 0F 00 01 06 00 00 00 00 00 05 50 00 00 00 B5 89 FB 38 19 84 C2 CB 5C 6C 23 6D 57 00 77 6E C0 02 64 87 00 0B 28 00 00 00 00 10 01 06 00 00 00 00 00 05 50 00 00 00 B5 89 FB 38 19 84 C2 CB 5C 6C 23 6D 57 00 77 6E C0 02 64 87 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 15 00 00 00 01 06 00 00 00 00 00 05 50 00 00 00 49 59 9D 77 91 56 E5 55 DC F4 E2 0E A7 8B EB CA 7B 42 13 56 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Windows Workflow Foundation 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Windows Workflow Foundation 3.0.0.0\Performance]
"CategoryOptions" = 1
"Counter Types" = 655362726963206553627269632065 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = Workflows CreatedWorkflows Create [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = netfxperf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = PerfCounters_D.ini
"First Counter" = 4342
"Last Counter" = 4384
"First Help" = 4343
"Last Help" = 4385
"Object List" = 4342
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinHttpAutoProxySvc]
"DisplayName" = @%SystemRoot%\system32\winhttp.dll,-100
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\winhttp.dll,-101
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeRestorePrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TrkWks\Parameters]
"ServiceDll" = %SystemRoot%\System32\trkwks.dll -- [2008.01.21 03:24:05 | 000,075,264 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TrustedInstaller]
"DisplayName" = @%SystemRoot%\servicing\TrustedInstaller.exe,-100
"ImagePath" = %SystemRoot%\servicing\TrustedInstaller.exe -- [2009.04.11 07:28:07 | 000,039,424 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\servicing\TrustedInstaller.exe,-101
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"ServiceSidType" = 1
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
"BlockTime" = 10800
"PreshutdownTimeout" = 3600000
"Group" = ProfSvc_Group
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TrustedInstaller\Security]
"Security" = 01 00 14 90 90 00 00 00 A0 00 00 00 14 00 00 00 34 00 00 00 02 00 20 00 01 00 00 00 02 C0 18 00 00 00 0C 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 02 00 5C 00 04 00 00 00 00 02 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TSDDD]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\TSDDD\Device0]
"InstalledDisplayDrivers" = TSDDD [binary data] -- [2008.01.21 03:24:12 | 000,014,336 | ---- | M] (Microsoft Corporation)
"VgaCompatible" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tssecsrv]
"DisplayName" = Terminal Services Security Filter Driver
"ImagePath" = System32\DRIVERS\tssecsrv.sys -- [2008.01.21 03:24:59 | 000,023,552 | ---- | M] (Microsoft Corporation)
"Description" = Terminal Services Security Filter Driver
"ErrorControl" = 0
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tunmp]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 25
"ImagePath" = system32\DRIVERS\tunmp.sys -- [2008.01.21 03:24:25 | 000,015,360 | ---- | M] (Microsoft Corporation)
"DisplayName" = Microsoft Tun Miniport Adapter Driver
"Group" = NDIS
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tunmp\Enum]
"0" = Root\*TUNMP\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tunnel]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 19
"ImagePath" = system32\DRIVERS\tunnel.sys -- [2010.02.18 12:28:13 | 000,025,088 | ---- | M] (Microsoft Corporation)
"DisplayName" = Microsoft IPv6 Tunnel Miniport Adapter Driver
"Group" = NDIS
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\tunnel\Enum]
"0" = Root\*6TO4MP\0000
"Count" = 38
"NextInstance" = 38
"1" = Root\*6TO4MP\0003
"2" = Root\*6TO4MP\0005
"3" = Root\*6TO4MP\0006
"4" = Root\*6TO4MP\0022
"5" = Root\*6TO4MP\0027
"6" = Root\*6TO4MP\0028
"7" = Root\*6TO4MP\0029
"8" = Root\*6TO4MP\0030
"9" = Root\*6TO4MP\0031
"10" = Root\*6TO4MP\0032
"11" = Root\*6TO4MP\0044
"12" = Root\*6TO4MP\0058
"13" = Root\*6TO4MP\0063
"14" = Root\*6TO4MP\0068
"15" = Root\*6TO4MP\0075
"16" = Root\*6TO4MP\0117
"17" = Root\*6TO4MP\0135
"18" = Root\*6TO4MP\0165
"19" = Root\*6TO4MP\0200
"20" = Root\*6TO4MP\0221
"21" = Root\*6TO4MP\0268
"22" = Root\*ISATAP\0000
"23" = Root\*ISATAP\0002
"24" = Root\*ISATAP\0004
"25" = Root\*ISATAP\0005
"26" = Root\*ISATAP\0007
"27" = Root\*ISATAP\0008
"28" = Root\*ISATAP\0009
"29" = Root\*ISATAP\0010
"30" = Root\*ISATAP\0011
"31" = Root\*ISATAP\0012
"32" = Root\*ISATAP\0013
"33" = Root\*ISATAP\0014
"34" = Root\*ISATAP\0015
"35" = Root\*ISATAP\0020
"36" = Root\*ISATAP\0030
"37" = Root\*ISATAP\0036
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\uagp35]
"DisplayName" = Microsoft AGPv3.5 Filter
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\uagp35.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\uagp35\Parameters]
"1106316800" = 0 [binary data]
"1106316802" = 0 [binary data]
"1106316803" = 0 [binary data]
"1106318900" = p [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\udfs]
"DisplayName" = udfs
"Group" = File System
"ImagePath" = system32\DRIVERS\udfs.sys -- [2009.04.11 05:13:59 | 000,226,816 | ---- | M] (Microsoft Corporation)
"Description" = Reads/Writes UDF 1.02,1.5,2.0x,2.5 disc formats, usually found on C/DVD discs. (Core) (All pieces)
"ErrorControl" = 1
"Start" = 4
"Type" = 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\udfs\Enum]
"0" = Root\LEGACY_UDFS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UGatherer]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UGatherer\Performance]
"Close" = Close
"Open" = Open
"Collect" = Collect
"Library" = %systemroot%\system32\msscntrs.dll -- [2009.04.11 07:28:22 | 000,060,416 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = gsrvctr.ini
"First Counter" = 3722
"Last Counter" = 3826
"First Help" = 3723
"Last Help" = 3827
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UGTHRSVC]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UGTHRSVC\Performance]
"Close" = Close
"Open" = Open
"Collect" = Collect
"Library" = %systemroot%\system32\msscntrs.dll -- [2009.04.11 07:28:22 | 000,060,416 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = gthrctr.ini
"First Counter" = 3828
"Last Counter" = 3898
"First Help" = 3829
"Last Help" = 3899
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UI0Detect]
"DisplayName" = @%SystemRoot%\system32\ui0detect.exe,-101
"ImagePath" = %SystemRoot%\system32\UI0Detect.exe -- [2008.01.21 03:24:08 | 000,035,840 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\ui0detect.exe,-102
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 272
"ServiceSidType" = 1
"RequiredPrivileges" = SeTcbPrivilegeSeAssignPrimaryToke [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\uliagpkx]
"DisplayName" = Uli AGP Bus Filter
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\uliagpkx.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\uliahci]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\uliahci.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\uliahci\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\uliahci\Parameters\Device]
"EnableNCQ" = [binary data]
"DisableWC" = [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\uliahci\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UlSata]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\ulsata.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UlSata\Parameters]
"BusType" = 11
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UlSata\Parameters\Cache]
"DefSize" = 9437184
"Flag" = TRUE
"CACHEON" = 1
"DrvSetting" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UlSata\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ulsata2]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\ulsata2.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ulsata2\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ulsata2\Parameters\Cache]
"LongBurstDisable" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ulsata2\Parameters\Capabilities]
"TAG_CMD" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ulsata2\Parameters\Device]
"NumberOfRequests" = 128
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ulsata2\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\umbus]
"DisplayName" = Ovladač sběrnice UMBus Enumerator
"Group" = Extended Base
"ImagePath" = system32\DRIVERS\umbus.sys -- [2008.01.21 03:23:22 | 000,034,816 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 10
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\umbus\Enum]
"0" = Root\UMBUS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\upnphost]
"DisplayName" = @%systemroot%\system32\upnphost.dll,-213
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\upnphost.dll,-214
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = SSDPSRVHTTP [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\upnphost\Parameters]
"ServiceDll" = %SystemRoot%\System32\upnphost.dll -- [2008.01.21 03:24:04 | 000,259,072 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\upnphost\Security]
"Security" = 01 00 14 88 B8 00 00 00 C4 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 88 00 06 00 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 13 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 14 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usb]
"FastS4_OverrideBiosS4" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbccgp]
"DisplayName" = Obecný nadřazený ovladač Microsoft USB
"Group" = Base
"ImagePath" = system32\DRIVERS\usbccgp.sys -- [2008.01.21 03:23:20 | 000,073,216 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 20
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbccgp\Enum]
"0" = USB\VID_04F2&PID_B033\5&fc962aa&0&7
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbcir]
"DisplayName" = eHome Infrared Receiver (USBCIR)
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\usbcir.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbcir\PowerKey]
"PowerKey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inary data over 200 bytes]
"PowerKeyRxOnly" = 02 00 00 00 1D 00 01 F9 DA 40 1F 01 B5 63 7B BB BF 6A 22 D3 3E 11 B4 92 2A 66 4B 4F 99 D4 47 56 60 BA C8 AB B9 7B 33 08 71 44 1B BC 5A E8 1D 20 D9 C3 66 18 EF 73 EC C5 CE C6 87 7C 7F 27 F0 54 07 65 59 5F B6 A9 CA 75 BC A4 7F 27 39 13 74 F7 98 12 9C 28 21 C8 5F 5A 1D 40 AC D6 F5 95 F7 A6 15 56 71 13 63 3E 3B 6E 19 A9 60 B5 6E 28 F4 35 23 77 60 D2 93 4D 02 6D FB 8B FC 5F 5E 8E 39 40 6D 5B 1D 60 5F 3C 2F F9 67 EB 59 4B 37 1C 36 8F C2 A2 4E 23 68 94 F7 5F 94 17 64 91 17 89 F1 56 78 C3 49 4C 02 74 51 2C 21 D6 35 85 1D 80 F1 09 7E 65 12 E4 8E 92 F9 94 3D 46 2D 10 39 F8 06 F7 0D 7A 4F 4C 67 E5 26 25 6C A2 F4 B2 81 6E E5 6C 46 10 F1 C0 CB 2E 1D A0 C7 2F 91 4F F9 AC 3E 5E FF 36 C1 B3 85 D8 28 64 48 F2 45 1D 28 2E C1 91 C4 1D 8F 90 01 A1 FD 50 2A 88 0D B6 07 AB 56 8C 1D C0 04 A6 EB EB F9 D3 67 78 0D 5B 44 C2 78 5E 4F 7A 2E A1 AB F8 14 2B FB AE D6 49 2F D1 DA 66 79 6E 40 FA 99 C4 1F 87 22 83 1D E0 14 F2 2E 53 1E 79 A6 AB 0F CC FA 3E 09 A5 41 83 52 17 FF F7 96 C3 AE 03 53 01 AD F1 33 BD 15 B1 C5 A9 5F BA 72 FB B2 0A 1E 00 F5 37 3C 45 D4 A5 C8 C8 9B 90 7A 10 57 03 BB 28 8E 71 55 8F FB 7C A1 CD 4B 6C 32 65 D1 7F 76 78 C9 60 34 5F FC D7 92 06 1E 20 06 B0 8F 02 6E 98 E1 4D B4 81 1F A4 F6 49 66 91 19 19 83 F1 FF 73 06 D0 2F 3B 05 E6 6F 50 CB 14 3D FD 79 34 BA 79 C6 E8 1E 40 AF 42 21 B3 28 39 27 F6 66 33 FE 88 E1 0C A7 66 74 C1 93 9C 43 BF EE 18 FD B2 0A 53 47 A2 B2 BC BC 56 B6 BC 7A 99 4F 1E 1E 60 1D 2B 3E E8 C0 C3 12 5A 66 0E 94 B5 CB 10 6F A1 63 88 8E E4 6C F4 12 A9 4B 93 9F B2 DC 8A AB DB F3 5C A0 A2 FE 82 E2 E1 [Binary data over 200 bytes]
"PowerKeySamsung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inary data over 200 bytes]
"PowerKeyRC6All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inary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbehci]
"DisplayName" = Ovladač Miniport vylepšeného hostitelského řadiče Microsoft USB 2.0
"Group" = Base
"ImagePath" = system32\DRIVERS\usbehci.sys -- [2009.04.11 05:42:52 | 000,039,936 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 18
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbehci\Enum]
"0" = PCI\VEN_10DE&DEV_0AA6&SUBSYS_1A871043&REV_B1\3&267a616a&0&21
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbhub]
"DisplayName" = Rozbočovač umožňující USB2
"Group" = Base
"ImagePath" = system32\DRIVERS\usbhub.sys -- [2009.04.11 05:43:16 | 000,196,096 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 19
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbhub\Performance]
"Library" = %SystemRoot%\system32\usbperf.dll -- [2008.01.21 03:24:24 | 000,011,264 | ---- | M] (Microsoft Corporation)
"Open" = OpenUsbPerformanceData
"Close" = CloseUsbPerformanceData
"Collect" = CollectUsbPerformanceData
"InstallType" = 1
"PerfIniFile" = usbperf.ini
"First Counter" = 3424
"Last Counter" = 3458
"First Help" = 3425
"Last Help" = 3459
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbhub\Enum]
"0" = USB\ROOT_HUB\4&31cffac&0
"Count" = 2
"NextInstance" = 2
"1" = USB\ROOT_HUB20\4&34a359cc&0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbohci]
"DisplayName" = Ovladač Miniport otevřeného hostitelského řadiče Microsoft USB
"Group" = Base
"ImagePath" = system32\DRIVERS\usbohci.sys -- [2009.04.11 05:42:52 | 000,019,456 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 21
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbohci\Enum]
"0" = PCI\VEN_10DE&DEV_0AA5&SUBSYS_1A871043&REV_B1\3&267a616a&0&20
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbprint]
"DisplayName" = Třída USB Printer
"Group" = extended base
"ImagePath" = system32\DRIVERS\usbprint.sys -- [2008.01.21 03:23:22 | 000,018,944 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 26
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbscan]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 24
"ImagePath" = system32\DRIVERS\usbscan.sys -- [2008.01.21 03:23:27 | 000,035,328 | ---- | M] (Microsoft Corporation)
"DisplayName" = Ovladač skeneru USB
"Group" = Base
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\USBSTOR]
"DisplayName" = Ovladač velkokapacitního paměťového zařízení USB
"ImagePath" = system32\DRIVERS\USBSTOR.SYS -- [2009.04.11 05:42:55 | 000,065,536 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"massfilter" = 1
"massfilter_hs" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\USBSTOR\Enum]
"Count" = 0
"NextInstance" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbuhci]
"DisplayName" = Microsoft USB Universal Host Controller Miniport Driver
"Group" = Base
"ImagePath" = system32\DRIVERS\usbuhci.sys -- [2008.01.21 03:23:03 | 000,023,552 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 4
"Type" = 1
"Tag" = 17
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\usbvideo]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = System32\Drivers\usbvideo.sys -- [2008.01.21 03:23:26 | 000,134,016 | ---- | M] (Microsoft Corporation)
"DisplayName" = USB Video Device (WDM)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\USBZTECCID]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ZTEusbccid.sys -- [2010.02.22 17:26:36 | 000,014,336 | ---- | M] (ZTE)
"DisplayName" = ZTE USB Smartcard Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UxSms]
"DisplayName" = @%SystemRoot%\system32\dwm.exe,-2000
"Group" = UIGroup
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\dwm.exe,-2001
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeAssignPrimaryTokenPrivilegeSeCr [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\UxSms\Parameters]
"ServiceDll" = %SystemRoot%\System32\uxsms.dll -- [2009.04.11 07:28:25 | 000,029,184 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = ServiceMain
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vds]
"DisplayName" = @%SystemRoot%\system32\vds.exe,-100
"ImagePath" = %SystemRoot%\System32\vds.exe -- [2009.04.11 07:28:09 | 000,385,536 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\vds.exe,-112
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"DependOnService" = RpcSsPlugPlay [binary data]
"ServiceSidType" = 1
"FailureActions" = 78 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
"DisableReenumDelay" = 0
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vds\Alignment]
"" = Alignment Settings in Bytes
"Between4_8GB" = 1048576
"Between8_32GB" = 1048576
"GreaterThan32GB" = 1048576
"LessThan4GB" = 65536
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vds\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 70 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 27 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vds\SoftwareProviders]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vds\SoftwareProviders\{A86AE501-EF73-4C8D-827E-98BA5046B05F}]
"" = Microsoft Virtual Disk Service Dynamic Provider
"Clsid" = {02A3586C-D264-40BF-97F7-FE40F7E3A882}
"Version" = 2.0.0.1
"VersionId" = {61CBC199-5CCA-4214-BBA8-BFBFCE740CFD}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vds\SoftwareProviders\{CA7DE14F-5BC8-48fd-93DE-A19527B0459E}]
"" = Microsoft Virtual Disk Service Basic Provider
"Clsid" = {DE010DA1-289B-4232-8CD0-5112DCA6A7B3}
"Version" = 2.0.0.1
"VersionId" = {f5a11d0a-cd5d-43f9-b6a1-9e4ff8cfee7a}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vga]
"Type" = 1
"Start" = 3
"ErrorControl" = 0
"Tag" = 2
"ImagePath" = system32\DRIVERS\vgapnp.sys -- [2008.01.21 03:23:02 | 000,026,112 | ---- | M] (Microsoft Corporation)
"Group" = Video
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vga\Device0]
"InstalledDisplayDrivers" = vgaframebufvga256vga64k [binary data]
"VgaCompatible" = 1
"Device Description" = Standard VGA Graphics Adapter
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vga\Video]
"Service" = vga -- [2008.01.21 03:24:50 | 000,010,752 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VgaSave]
"Group" = Video Save
"ImagePath" = \SystemRoot\System32\drivers\vga.sys
"ErrorControl" = 0
"Start" = 1
"Tag" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VgaSave\Device0]
"InstalledDisplayDrivers" = vgaframebufvga256vga64k [binary data]
"RequestedResources" = 000003B0 00000000 0000000C 0000010 [Binary data over 200 bytes]
"VgaCompatible" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VgaSave\Video]
"Service" = VgaSave
"VideoID" = {23A77BF7-ED96-40EC-AF06-9B1F4867732A}
"InstalledDisplayDrivers" = vgaframebufvga256vga64k [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VgaSave\Enum]
"0" = Root\LEGACY_VGASAVE\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\viaagp]
"DisplayName" = VIA AGP Bus Filter
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\viaagp.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ViaC7]
"DisplayName" = VIA C7 Processor Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\viac7.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\viaide]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\viaide.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\volmgr]
"DisplayName" = Ovladač správce svazků
"Group" = System Bus Extender
"ImagePath" = system32\drivers\volmgr.sys -- [2008.01.21 03:23:01 | 000,052,792 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
"Tag" = 9
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\volmgr\Enum]
"0" = Root\volmgr\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\volmgrx]
"DisplayName" = Dynamic Volume Manager
"Group" = System Bus Extender
"ImagePath" = System32\drivers\volmgrx.sys -- [2009.04.11 07:33:03 | 000,292,840 | ---- | M] (Microsoft Corporation)
"Description" = Extension of the volume manager driver that manages software RAID volumes (spanned, striped, mirrored, RAID-5) on dynamic disks
"ErrorControl" = 3
"Start" = 0
"Type" = 1
"Tag" = 10
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\volmgrx\Enum]
"0" = Root\LEGACY_VOLMGRX\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\volsnap]
"DisplayName" = Svazky úložiště
"ImagePath" = system32\drivers\volsnap.sys -- [2012.08.21 12:47:42 | 000,224,640 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\volsnap\Enum]
"0" = Root\LEGACY_VOLSNAP\0000
"Count" = 4
"NextInstance" = 4
"1" = STORAGE\Volume\1&19f7e59c&0&Signature97646C29Offset7E00Length27115F800
"2" = STORAGE\Volume\1&19f7e59c&0&Signature97646C29Offset271200000Length2542E00000
"3" = STORAGE\Volume\1&19f7e59c&0&Signature97646C29Offset27B4100000Length22D1B00000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vsmraid]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\vsmraid.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vsmraid\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vsmraid\Parameters\Device]
"CreateInitiatorLU" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\vsmraid\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS]
"DisplayName" = @%systemroot%\system32\vssvc.exe,-102
"ImagePath" = %systemroot%\system32\vssvc.exe -- [2009.04.11 07:28:10 | 001,055,232 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\vssvc.exe,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Diag]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Diag\SPP]
"SppCreate (Enter)" = 40 00 00 00 00 00 00 00 A0 D3 76 23 4C FE CD 01 FC 15 00 00 44 10 00 00 D0 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppGatherWriterMetadata (Enter)" = 40 00 00 00 00 00 00 00 14 32 D5 37 35 2B C9 01 80 12 00 00 24 0C 00 00 D3 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppGatherWriterMetadata (Leave)" = 40 00 00 00 00 00 00 00 94 0C 2D 3A 35 2B C9 01 80 12 00 00 24 0C 00 00 D3 07 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppAddInterestingComponents (Enter)" = 40 00 00 00 00 00 00 00 54 CF 31 3A 35 2B C9 01 80 12 00 00 24 0C 00 00 D4 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppAddInterestingComponents (Leave)" = 40 00 00 00 00 00 00 00 F4 8E 68 3A 35 2B C9 01 80 12 00 00 24 0C 00 00 D4 07 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppCreate (Leave)" = 40 00 00 00 00 00 00 00 A0 D3 76 23 4C FE CD 01 FC 15 00 00 44 10 00 00 D0 07 00 00 01 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppEnumGroups (Enter)" = 40 00 00 00 00 00 00 00 30 F5 22 C5 D8 FE CD 01 4C 10 00 00 40 10 00 00 D1 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppGetSnapshots (Enter)" = 40 00 00 00 00 00 00 00 30 F5 22 C5 D8 FE CD 01 4C 10 00 00 40 10 00 00 D2 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppGetSnapshots (Leave)" = 40 00 00 00 00 00 00 00 F0 B7 27 C5 D8 FE CD 01 4C 10 00 00 40 10 00 00 D2 07 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SppEnumGroups (Leave)" = 40 00 00 00 00 00 00 00 F0 B7 27 C5 D8 FE CD 01 4C 10 00 00 40 10 00 00 D1 07 00 00 01 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Diag\SystemRestore]
"SrCreateRp (Enter)" = 40 00 00 00 00 00 00 00 20 4E 6D 23 4C FE CD 01 FC 15 00 00 44 10 00 00 D5 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"SrCreateRp (Leave)" = 40 00 00 00 00 00 00 00 A0 D3 76 23 4C FE CD 01 FC 15 00 00 44 10 00 00 D5 07 00 00 01 00 00 00 00 00 00 00 22 04 07 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Diag\VolSnap]
"VolumesSafeForWrite (Enter)" = 40 00 00 00 00 00 00 00 BE 14 EF D0 F4 FE CD 01 00 00 00 00 00 00 00 00 1E 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
"VolumesSafeForWrite (Leave)" = 40 00 00 00 00 00 00 00 C0 2F 8C D1 F4 FE CD 01 00 00 00 00 00 00 00 00 1F 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Providers]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Providers\{b5946137-7b9f-4925-af80-51abd60b20d5}]
"" = Microsoft Software Shadow Copy provider 1.0
"Type" = 1
"Version" = 1.0.0.7
"VersionId" = {00000001-0000-0000-0007-000000000001}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Providers\{b5946137-7b9f-4925-af80-51abd60b20d5}\CLSID]
"" = {65EE1DBA-8FF4-4a58-AC1C-3470EE2F376A}
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Settings]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\Settings\WritersBlockingRevert]
"{2707761B-2324-473D-88EB-EB007A359533}" = DFS-R Writer
"{D76F5A28-3092-4589-BA48-2958FB88CE29}" = FRS Writer
"{B2014C9E-8711-4C5C-A5A9-3CF384484757}" = AD Writer
"{DD846AAA-A1B6-42a8-AAF8-03DCB6114BFD}" = ADAM Writer
"TornComponentsBlockRevert" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\VSS\VssAccessControl]
"NT Authority\NetworkService" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time]
"DisplayName" = @%SystemRoot%\system32\w32time.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\w32time.dll,-201
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time\Config]
"FrequencyCorrectRate" = 4
"PollAdjustFactor" = 5
"LargePhaseOffset" = 50000000
"SpikeWatchPeriod" = 900
"LocalClockDispersion" = 10
"HoldPeriod" = 5
"PhaseCorrectRate" = 1
"UpdateInterval" = 360000
"EventLogFlags" = 2
"AnnounceFlags" = 10
"TimeJumpAuditOffset" = 28800
"MinPollInterval" = 10
"MaxPollInterval" = 15
"MaxNegPhaseCorrection" = 54000
"MaxPosPhaseCorrection" = 54000
"MaxAllowedPhaseOffset" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time\Parameters]
"ServiceDll" = %systemroot%\system32\w32time.dll -- [2009.04.11 07:28:25 | 000,282,624 | ---- | M] (Microsoft Corporation)
"ServiceMain" = SvchostEntry_W32Time
"ServiceDllUnloadOnStop" = 1
"Type" = NTP
"NtpServer" = time.windows.com,0x9
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time\TimeProviders]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time\TimeProviders\NtpClient]
"DllName" = %systemroot%\system32\w32time.dll -- [2009.04.11 07:28:25 | 000,282,624 | ---- | M] (Microsoft Corporation)
"Enabled" = 1
"InputProvider" = 1
"AllowNonstandardModeCombinations" = 1
"CrossSiteSyncFlags" = 2
"ResolvePeerBackoffMinutes" = 15
"ResolvePeerBackoffMaxTimes" = 7
"CompatibilityFlags" = -2147483648
"EventLogFlags" = 1
"LargeSampleSkew" = 3
"SpecialPollInterval" = 604800
"SpecialPollTimeRemaining" = time.windows.com,7c02c99 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W32Time\TimeProviders\NtpServer]
"DllName" = %systemroot%\system32\w32time.dll -- [2009.04.11 07:28:25 | 000,282,624 | ---- | M] (Microsoft Corporation)
"Enabled" = 0
"InputProvider" = 0
"AllowNonstandardModeCombinations" = 1
"EventLogFlags" = 0
"ChainEntryTimeout" = 16
"ChainMaxEntries" = 128
"ChainMaxHostEntries" = 4
"ChainDisable" = 0
"ChainLoggingRate" = 30
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W3SVC]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W3SVC\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W3SVC\Parameters\ADCLaunch]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W3SVC\Parameters\ADCLaunch\AdvancedDataFactory]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\W3SVC\Parameters\ADCLaunch\RDSServer.DataFactory]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WacomPen]
"DisplayName" = Wacom Serial Pen HID Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\wacompen.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wanarp]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\wanarp.sys -- [2008.01.21 03:24:25 | 000,062,464 | ---- | M] (Microsoft Corporation)
"DisplayName" = Remote Access IP ARP Driver
"Description" = Remote Access IP ARP Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wanarp\Linkage]
"Bind" = \Device\NdisWanIp [binary data]
"Route" = "NdisWanIp" [binary data]
"Export" = \Device\Wanarp_NdisWanIp [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wanarpv6]
"Type" = 1
"Start" = 1
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\wanarp.sys -- [2008.01.21 03:24:25 | 000,062,464 | ---- | M] (Microsoft Corporation)
"DisplayName" = Remote Access IPv6 ARP Driver
"Description" = Remote Access IPv6 ARP Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wanarpv6\Linkage]
"Bind" = \Device\NdisWanIpv6 [binary data]
"Route" = "NdisWanIpv6" [binary data]
"Export" = \Device\Wanarpv6_NdisWanIpv6 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wanarpv6\Enum]
"0" = Root\LEGACY_WANARPV6\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wcncsvc]
"DisplayName" = @%SystemRoot%\system32\wcncsvc.dll,-3
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\wcncsvc.dll,-4
"DependOnService" = rpcss [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeChangeNotifyPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wcncsvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\System32\wcncsvc.dll -- [2009.04.11 07:28:25 | 000,413,696 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WcsPlugInService]
"DisplayName" = @%SystemRoot%\system32\WcsPlugInService.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k wcssvc -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\WcsPlugInService.dll,-201
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WcsPlugInService\Parameters]
"ServiceDll" = %SystemRoot%\System32\WcsPlugInService.dll -- [2006.11.02 10:46:13 | 000,032,256 | ---- | M] (Microsoft Corporation)
"ServiceDLLUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WcsPlugInService\Security]
"Security" = 01 00 14 80 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wd]
"DisplayName" = Microsoft Watchdog Timer Driver
"ImagePath" = system32\drivers\wd.sys -- [2008.01.21 03:23:24 | 000,022,072 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wd\Enum]
"0" = ACPI_HAL\PNP0C18\0
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wdf01000]
"DisplayName" = Kernel Mode Driver Frameworks service
"Group" = WdfLoadGroup
"ImagePath" = system32\drivers\Wdf01000.sys -- [2008.01.21 03:23:51 | 000,503,864 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wdf01000\Enum]
"0" = Root\LEGACY_WDF01000\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wdf01000\Parameters]
"MajorVersion" = 1
"MinorVersion" = 7
"BuildNumber" = 6001
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WdiServiceHost]
"DisplayName" = @%systemroot%\system32\wdi.dll,-502
"ImagePath" = %SystemRoot%\System32\svchost.exe -k wdisvc -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\wdi.dll,-503
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = FF FF FF FF 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WdiServiceHost\Parameters]
"ServiceDll" = %SystemRoot%\system32\wdi.dll -- [2008.01.21 03:24:37 | 000,073,728 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WdiServiceHost\Security]
"Security" = 01 00 14 80 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 05 00 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 EF 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 FD 01 02 00 01 06 00 00 00 00 00 05 50 00 00 00 5E F3 0F B1 81 64 AE 04 B1 4C A2 29 14 B1 4C 21 A6 56 86 56 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WdiSystemHost]
"DisplayName" = @%systemroot%\system32\wdi.dll,-500
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\wdi.dll,-501
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImperson [Binary data over 200 bytes]
"FailureActions" = FF FF FF FF 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WdiSystemHost\Parameters]
"ServiceDll" = %SystemRoot%\system32\wdi.dll -- [2008.01.21 03:24:37 | 000,073,728 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WdiSystemHost\Security]
"Security" = 01 00 14 80 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 05 00 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 EF 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 FD 01 02 00 01 06 00 00 00 00 00 05 50 00 00 00 5E F3 0F B1 81 64 AE 04 B1 4C A2 29 14 B1 4C 21 A6 56 86 56 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WebClient]
"DisplayName" = @%systemroot%\system32\webclnt.dll,-100
"ErrorControl" = 1
"Group" = NetworkProvider
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%systemroot%\system32\webclnt.dll,-101
"DependOnService" = MRxDAV [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeCreateGlobalPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WebClient\NetworkProvider]
"DeviceName" = \Device\WebDavRedirector
"ProviderPath" = %SystemRoot%\System32\davclnt.dll -- [2009.04.11 07:28:18 | 000,061,440 | ---- | M] (Microsoft Corporation)
"Name" = Web Client Network
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WebClient\Parameters]
"SupportLocking" = 1
"ClientDebug" = 0
"ServerNotFoundCacheLifeTimeInSec" = 60
"FileSizeLimitInBytes" = 50000000
"AcceptOfficeAndTahoeServers" = 1
"FileAttributesLimitInBytes" = 1000000
"ServiceDebug" = 0
"InternetServerTimeoutInSec" = 30
"ServiceDllUnloadOnStop" = 1
"LocalServerTimeoutInSec" = 15
"BasicAuthLevel" = 1
"ServiceDll" = %SystemRoot%\System32\webclnt.dll -- [2009.04.11 07:28:25 | 000,199,680 | ---- | M] (Microsoft Corporation)
"SendReceiveTimeoutInSec" = 60
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wecsvc]
"DisplayName" = @%SystemRoot%\system32\wecsvc.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\wecsvc.dll,-201
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
"DependOnService" = HTTPEventlog [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wecsvc\Parameters]
"ServiceDll" = %SystemRoot%\system32\wecsvc.dll -- [2009.10.09 22:55:52 | 000,146,944 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wercplsupport]
"DisplayName" = @%SystemRoot%\System32\wercplsupport.dll,-101
"ImagePath" = %SystemRoot%\System32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\wercplsupport.dll,-100
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeTcbPrivilege [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wercplsupport\Parameters]
"ServiceDll" = %SystemRoot%\System32\wercplsupport.dll -- [2008.01.21 03:23:53 | 000,062,976 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WerSvc]
"DisplayName" = @%SystemRoot%\System32\wersvc.dll,-100
"ImagePath" = %SystemRoot%\System32\svchost.exe -k WerSvcGroup -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\wersvc.dll,-101
"ObjectName" = localSystem
"ErrorControl" = 0
"Start" = 2
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeDebugPrivilegeSeTcbPrivilegeSe [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WerSvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\WerSvc.dll -- [2009.04.11 07:28:25 | 000,126,976 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinDefend]
"DisplayName" = @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103
"ErrorControl" = 1
"Group" = COM Infrastructure
"ImagePath" = %SystemRoot%\System32\svchost.exe -k secsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%ProgramFiles%\Windows Defender\MsMpRes.dll,-3068
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeBackupPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinDefend\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %ProgramFiles%\Windows Defender\mpsvc.dll -- [2008.01.21 03:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinDefend\Security]
"Security" = 01 00 14 80 04 01 00 00 10 01 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 D4 00 07 00 00 00 00 00 28 00 FF 01 0F 00 01 06 00 00 00 00 00 05 50 00 00 00 B5 89 FB 38 19 84 C2 CB 5C 6C 23 6D 57 00 77 6E C0 02 64 87 00 0B 28 00 00 00 00 10 01 06 00 00 00 00 00 05 50 00 00 00 B5 89 FB 38 19 84 C2 CB 5C 6C 23 6D 57 00 77 6E C0 02 64 87 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 15 00 00 00 01 06 00 00 00 00 00 05 50 00 00 00 49 59 9D 77 91 56 E5 55 DC F4 E2 0E A7 8B EB CA 7B 42 13 56 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Windows Workflow Foundation 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Windows Workflow Foundation 3.0.0.0\Performance]
"CategoryOptions" = 1
"Counter Types" = 655362726963206553627269632065 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = Workflows CreatedWorkflows Create [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = netfxperf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = PerfCounters_D.ini
"First Counter" = 4342
"Last Counter" = 4384
"First Help" = 4343
"Last Help" = 4385
"Object List" = 4342
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinHttpAutoProxySvc]
"DisplayName" = @%SystemRoot%\system32\winhttp.dll,-100
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\winhttp.dll,-101
Re: policie čr prosim o radu
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = Dhcp [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 00 5C 26 05 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinHttpAutoProxySvc\Parameters]
"ServiceDll" = winhttp.dll -- [2011.11.16 17:23:44 | 000,377,344 | ---- | M] (Microsoft Corporation)
"ServiceMain" = WinHttpAutoProxySvcMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinHttpAutoProxySvc\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winmgmt]
"DisplayName" = @%Systemroot%\system32\wbem\wmisvc.dll,-205
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\wbem\wmisvc.dll,-204
"ObjectName" = localSystem
"ErrorControl" = 0
"Start" = 2
"Type" = 32
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winmgmt\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\system32\wbem\WMIsvc.dll -- [2009.04.11 07:28:25 | 000,162,304 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinRM]
"DisplayName" = @%Systemroot%\system32\wsmsvc.dll,-101
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\wsmsvc.dll,-102
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 3
"DelayedAutoStart" = 1
"Type" = 32
"DependOnService" = RPCSSHTTP [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeAssignPrimaryTokenPrivilegeSeAu [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinRM\Parameters]
"ServiceDll" = %SystemRoot%\system32\WsmSvc.dll -- [2009.10.09 22:56:18 | 001,181,696 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock]
"ErrorControl" = 1
"Start" = 3
"Type" = 4
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Parameters]
"Transports" = Tcpip6TcpipPschedNetBIOSRFCOMM [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration]
"Setup Version" = 4105
"Provider List" = Tcpip6TcpipPschedNetBIOSRFCOMM [binary data]
"Known Static Providers" = TcpipTcpip6NwlnkIpxNwlnkSpxApp [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\NetBIOS]
"WinSock 1.1 Provider Data" = 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 EC FF FF FF 00 FA 00 00 8E 19 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 EC FF FF FF 00 FA 00 00 18 19 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F0 FF FF FF 00 FA 00 00 A2 18 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F0 FF FF FF 00 FA 00 00 2C 18 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F4 FF FF FF 00 FA 00 00 B6 17 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F4 FF FF FF 00 FA 00 00 40 17 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FA FF FF FF 00 FA 00 00 CA 16 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FA FF FF FF 00 FA 00 00 54 16 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FD FF FF FF 00 FA 00 00 DE 15 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FD FF FF FF 00 FA 00 00 68 15 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FF FF FF FF 00 FA 00 00 F2 14 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FF FF FF FF 00 FA 00 00 7C 14 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F6 FF FF FF 00 FA 00 00 06 14 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F6 FF FF FF 00 FA 00 00 90 13 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FB FF FF FF 00 FA 00 00 18 13 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FB FF FF FF 00 FA 00 00 A0 12 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F8 FF FF FF 00 FA 00 00 28 12 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F8 FF FF FF 00 FA 00 00 B0 11 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 ED FF FF FF 00 FA 00 00 38 11 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 ED FF FF FF 00 FA 00 00 C0 10 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 EB FF FF FF 00 FA 00 00 48 10 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 EB FF FF FF 00 FA 00 00 D0 0F 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 EE FF FF FF 00 FA 00 00 58 0F 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 EE FF FF FF 00 FA 00 00 E0 0E 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 00 00 00 80 00 FA 00 00 68 0E 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 00 00 00 80 00 FA 00 00 F0 0D 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 EF FF FF FF 00 FA 00 00 78 0D 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 EF FF FF FF 00 FA 00 00 00 0D 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F3 FF FF FF 00 FA 00 00 88 0C 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F3 FF FF FF 00 FA 00 00 10 0C 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F1 FF FF FF 00 FA 00 00 98 0B 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F1 FF FF FF 00 FA 00 00 20 0B 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F2 FF FF FF 00 FA 00 00 A8 0A 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F2 FF FF FF 00 FA 00 00 30 0A 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F5 FF FF FF 00 FA 00 00 B8 09 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F5 FF FF FF 00 FA 00 00 40 09 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F7 FF FF FF 00 FA 00 00 C8 08 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F7 FF FF FF 00 FA 00 00 50 08 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F9 FF FF FF 00 FA 00 00 D8 07 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F9 FF FF FF 00 FA 00 00 60 07 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FC FF FF FF 00 FA 00 00 E8 06 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FC FF FF FF 00 FA 00 00 70 06 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FE FF FF FF 00 FA 00 00 F8 05 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FE FF FF FF 00 FA 00 00 80 05 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 44 00 35 00 31 00 46 00 32 00 44 00 44 00 45 00 2D 00 34 00 30 00 39 00 42 00 2D 00 34 00 39 00 34 00 35 00 2D 00 38 00 43 00 45 00 33 00 2D 00 45 00 36 00 37 00 39 00 45 00 38 00 33 00 32 00 46 00 30 00 44 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 44 00 35 00 31 00 46 00 32 00 44 00 44 00 45 00 2D 00 34 00 30 00 39 00 42 00 2D 00 34 00 39 00 34 00 35 00 2D 00 38 00 43 00 45 00 33 00 2D 00 45 00 36 00 37 00 39 00 45 00 38 00 33 00 32 00 46 00 30 00 44 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 32 00 34 00 39 00 33 00 30 00 38 00 34 00 33 00 2D 00 41 00 39 00 34 00 33 00 2D 00 34 00 33 00 31 00 34 00 2D 00 41 00 41 00 31 00 43 00 2D 00 46 00 43 00 32 00 33 00 43 00 32 00 38 00 43 00 32 00 41 00 32 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 32 00 34 00 39 00 33 00 30 00 38 00 34 00 33 00 2D 00 41 00 39 00 34 00 33 00 2D 00 34 00 33 00 31 00 34 00 2D 00 41 00 41 00 31 00 43 00 2D 00 46 00 43 00 32 00 33 00 43 00 32 00 38 00 43 00 32 00 41 00 32 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 33 00 44 00 44 00 44 00 35 00 34 00 45 00 30 00 2D 00 32 00 38 00 33 00 46 00 2D 00 34 00 45 00 39 00 44 00 2D 00 39 00 33 00 41 00 33 00 2D 00 41 00 46 00 46 00 42 00 45 00 37 00 33 00 41 00 42 00 32 00 44 00 45 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 33 00 44 00 44 00 44 00 35 00 34 00 45 00 30 00 2D 00 32 00 38 00 33 00 46 00 2D 00 34 00 45 00 39 00 44 00 2D 00 39 00 33 00 41 00 33 00 2D 00 41 00 46 00 46 00 42 00 45 00 37 00 33 00 41 00 42 00 32 00 44 00 45 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 45 00 30 00 39 00 41 00 43 00 44 00 45 00 2D 00 44 00 46 00 44 00 36 00 2D 00 34 00 42 00 43 00 33 00 2D 00 41 00 42 00 35 00 37 00 2D 00 30 00 34 00 30 00 45 00 39 00 36 00 42 00 46 00 44 00 31 00 44 00 30 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 45 00 30 00 39 00 41 00 43 00 44 00 45 00 2D 00 44 00 46 00 44 00 36 00 2D 00 34 00 42 00 43 00 33 00 2D 00 41 00 42 00 35 00 37 00 2D 00 30 00 34 00 30 00 45 00 39 00 36 00 42 00 46 00 44 00 31 00 44 00 30 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 31 00 45 00 32 00 36 00 45 00 43 00 38 00 38 00 2D 00 41 00 35 00 36 00 44 00 2D 00 34 00 39 00 32 00 31 00 2D 00 41 00 32 00 36 00 46 00 2D 00 42 00 45 00 38 00 34 00 32 00 43 00 37 00 41 00 44 00 32 00 34 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 31 00 45 00 32 00 36 00 45 00 43 00 38 00 38 00 2D 00 41 00 35 00 36 00 44 00 2D 00 34 00 39 00 32 00 31 00 2D 00 41 00 32 00 36 00 46 00 2D 00 42 00 45 00 38 00 34 00 32 00 43 00 37 00 41 00 44 00 32 00 34 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 38 00 43 00 42 00 36 00 42 00 36 00 38 00 31 00 2D 00 33 00 37 00 32 00 33 00 2D 00 34 00 39 00 44 00 30 00 2D 00 42 00 30 00 46 00 38 00 2D 00 38 00 42 00 35 00 39 00 30 00 42 00 30 00 33 00 41 00 44 00 37 00 30 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 38 00 43 00 42 00 36 00 42 00 36 00 38 00 31 00 2D 00 33 00 37 00 32 00 33 00 2D 00 34 00 39 00 44 00 30 00 2D 00 42 00 30 00 46 00 38 00 2D 00 38 00 42 00 35 00 39 00 30 00 42 00 30 00 33 00 41 00 44 00 37 00 30 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 39 00 31 00 34 00 31 00 41 00 36 00 42 00 2D 00 46 00 32 00 44 00 34 00 2D 00 34 00 44 00 34 00 31 00 2D 00 42 00 45 00 45 00 39 00 2D 00 42 00 46 00 43 00 37 00 43 00 33 00 45 00 41 00 36 00 32 00 35 00 46 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 39 00 31 00 34 00 31 00 41 00 36 00 42 00 2D 00 46 00 32 00 44 00 34 00 2D 00 34 00 44 00 34 00 31 00 2D 00 42 00 45 00 45 00 39 00 2D 00 42 00 46 00 43 00 37 00 43 00 33 00 45 00 41 00 36 00 32 00 35 00 46 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 31 00 42 00 41 00 32 00 39 00 44 00 35 00 44 00 2D 00 43 00 44 00 37 00 31 00 2D 00 34 00 44 00 43 00 45 00 2D 00 42 00 33 00 37 00 43 00 2D 00 36 00 42 00 36 00 30 00 31 00 30 00 33 00 37 00 41 00 41 00 35 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 31 00 42 00 41 00 32 00 39 00 44 00 35 00 44 00 2D 00 43 00 44 00 37 00 31 00 2D 00 34 00 44 00 43 00 45 00 2D 00 42 00 33 00 37 00 43 00 2D 00 36 00 42 00 36 00 30 00 31 00 30 00 33 00 37 00 41 00 41 00 35 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 41 00 45 00 34 00 35 00 36 00 41 00 43 00 2D 00 39 00 30 00 39 00 35 00 2D 00 34 00 31 00 32 00 35 00 2D 00 42 00 36 00 35 00 35 00 2D 00 38 00 33 00 30 00 41 00 38 00 41 00 32 00 32 00 41 00 35 00 41 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 41 00 45 00 34 00 35 00 36 00 41 00 43 00 2D 00 39 00 30 00 39 00 35 00 2D 00 34 00 31 00 32 00 35 00 2D 00 42 00 36 00 35 00 35 00 2D 00 38 00 33 00 30 00 41 00 38 00 41 00 32 00 32 00 41 00 35 00 41 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 38 00 44 00 39 00 33 00 32 00 31 00 30 00 38 00 2D 00 34 00 32 00 44 00 46 00 2D 00 34 00 41 00 41 00 34 00 2D 00 41 00 32 00 38 00 36 00 2D 00 35 00 44 00 42 00 46 00 38 00 37 00 41 00 43 00 46 00 32 00 42 00 32 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 38 00 44 00 39 00 33 00 32 00 31 00 30 00 38 00 2D 00 34 00 32 00 44 00 46 00 2D 00 34 00 41 00 41 00 34 00 2D 00 41 00 32 00 38 00 36 00 2D 00 35 00 44 00 42 00 46 00 38 00 37 00 41 00 43 00 46 00 32 00 42 00 32 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 35 00 31 00 35 00 43 00 37 00 44 00 45 00 32 00 2D 00 31 00 43 00 46 00 31 00 2D 00 34 00 42 00 33 00 45 00 2D 00 41 00 43 00 41 00 45 00 2D 00 39 00 44 00 41 00 38 00 38 00 36 00 30 00 33 00 37 00 46 00 43 00 42 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 35 00 31 00 35 00 43 00 37 00 44 00 45 00 32 00 2D 00 31 00 43 00 46 00 31 00 2D 00 34 00 42 00 33 00 45 00 2D 00 41 00 43 00 41 00 45 00 2D 00 39 00 44 00 41 00 38 00 38 00 36 00 30 00 33 00 37 00 46 00 43 00 42 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 44 00 42 00 35 00 41 00 30 00 45 00 36 00 41 00 2D 00 34 00 41 00 35 00 44 00 2D 00 34 00 37 00 41 00 30 00 2D 00 38 00 45 00 36 00 33 00 2D 00 42 00 33 00 43 00 36 00 44 00 41 00 41 00 43 00 41 00 31 00 46 00 43 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 44 00 42 00 35 00 41 00 30 00 45 00 36 00 41 00 2D 00 34 00 41 00 35 00 44 00 2D 00 34 00 37 00 41 00 30 00 2D 00 38 00 45 00 36 00 33 00 2D 00 42 00 33 00 43 00 36 00 44 00 41 00 41 00 43 00 41 00 31 00 46 00 43 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 43 00 36 00 45 00 44 00 45 00 38 00 43 00 2D 00 32 00 31 00 32 00 44 00 2D 00 34 00 36 00 44 00 36 00 2D 00 42 00 38 00 45 00 38 00 2D 00 39 00 43 00 33 00 33 00 33 00 32 00 43 00 45 00 33 00 34 00 36 00 38 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 43 00 36 00 45 00 44 00 45 00 38 00 43 00 2D 00 32 00 31 00 32 00 44 00 2D 00 34 00 36 00 44 00 36 00 2D 00 42 00 38 00 45 00 38 00 2D 00 39 00 43 00 33 00 33 00 33 00 32 00 43 00 45 00 33 00 34 00 36 00 38 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 34 00 32 00 46 00 36 00 35 00 30 00 30 00 42 00 2D 00 43 00 42 00 41 00 32 00 2D 00 34 00 46 00 36 00 46 00 2D 00 41 00 38 00 33 00 36 00 2D 00 43 00 32 00 46 00 34 00 32 00 42 00 33 00 46 00 45 00 39 00 41 00 45 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 34 00 32 00 46 00 36 00 35 00 30 00 30 00 42 00 2D 00 43 00 42 00 41 00 32 00 2D 00 34 00 46 00 36 00 46 00 2D 00 41 00 38 00 33 00 36 00 2D 00 43 00 32 00 46 00 34 00 32 00 42 00 33 00 46 00 45 00 39 00 41 00 45 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 32 00 30 00 46 00 34 00 41 00 45 00 46 00 35 00 2D 00 33 00 33 00 35 00 34 00 2D 00 34 00 34 00 41 00 42 00 2D 00 42 00 38 00 45 00 38 00 2D 00 34 00 45 00 46 00 41 00 32 00 30 00 41 00 37 00 37 00 30 00 34 00 44 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 32 00 30 00 46 00 34 00 41 00 45 00 46 00 35 00 2D 00 33 00 33 00 35 00 34 00 2D 00 34 00 34 00 41 00 42 00 2D 00 42 00 38 00 45 00 38 00 2D 00 34 00 45 00 46 00 41 00 32 00 30 00 41 00 37 00 37 00 30 00 34 00 44 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 31 00 45 00 32 00 36 00 45 00 43 00 38 00 38 00 2D 00 41 00 35 00 36 00 44 00 2D 00 34 00 39 00 32 00 31 00 2D 00 41 00 32 00 36 00 46 00 2D 00 42 00 45 00 38 00 34 00 32 00 43 00 37 00 41 00 44 00 32 00 34 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 31 00 45 00 32 00 36 00 45 00 43 00 38 00 38 00 2D 00 41 00 35 00 36 00 44 00 2D 00 34 00 39 00 32 00 31 00 2D 00 41 00 32 00 36 00 46 00 2D 00 42 00 45 00 38 00 34 00 32 00 43 00 37 00 41 00 44 00 32 00 34 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 44 00 35 00 31 00 46 00 32 00 44 00 44 00 45 00 2D 00 34 00 30 00 39 00 42 00 2D 00 34 00 39 00 34 00 35 00 2D 00 38 00 43 00 45 00 33 00 2D 00 45 00 36 00 37 00 39 00 45 00 38 00 33 00 32 00 46 00 30 00 44 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 44 00 35 00 31 00 46 00 32 00 44 00 44 00 45 00 2D 00 34 00 30 00 39 00 42 00 2D 00 34 00 39 00 34 00 35 00 2D 00 38 00 43 00 45 00 33 00 2D 00 45 00 36 00 37 00 39 00 45 00 38 00 33 00 32 00 46 00 30 00 44 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 32 00 34 00 39 00 33 00 30 00 38 00 34 00 33 00 2D 00 41 00 39 00 34 00 33 00 2D 00 34 00 33 00 31 00 34 00 2D 00 41 00 41 00 31 00 43 00 2D 00 46 00 43 00 32 00 33 00 43 00 32 00 38 00 43 00 32 00 41 00 32 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 32 00 34 00 39 00 33 00 30 00 38 00 34 00 33 00 2D 00 41 00 39 00 34 00 33 00 2D 00 34 00 33 00 31 00 34 00 2D 00 41 00 41 00 31 00 43 00 2D 00 46 00 43 00 32 00 33 00 43 00 32 00 38 00 43 00 32 00 41 00 32 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 33 00 44 00 44 00 44 00 35 00 34 00 45 00 30 00 2D 00 32 00 38 00 33 00 46 00 2D 00 34 00 45 00 39 00 44 00 2D 00 39 00 33 00 41 00 33 00 2D 00 41 00 46 00 46 00 42 00 45 00 37 00 33 00 41 00 42 00 32 00 44 00 45 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 33 00 44 00 44 00 44 00 35 00 34 00 45 00 30 00 2D 00 32 00 38 00 33 00 46 00 2D 00 34 00 45 00 39 00 44 00 2D 00 39 00 33 00 41 00 33 00 2D 00 41 00 46 00 46 00 42 00 45 00 37 00 33 00 41 00 42 00 32 00 44 00 45 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 31 00 42 00 41 00 32 00 39 00 44 00 35 00 44 00 2D 00 43 00 44 00 37 00 31 00 2D 00 34 00 44 00 43 00 45 00 2D 00 42 00 33 00 37 00 43 00 2D 00 36 00 42 00 36 00 30 00 31 00 30 00 33 00 37 00 41 00 41 00 35 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 31 00 42 00 41 00 32 00 39 00 44 00 35 00 44 00 2D 00 43 00 44 00 37 00 31 00 2D 00 34 00 44 00 43 00 45 00 2D 00 42 00 33 00 37 00 43 00 2D 00 36 00 42 00 36 00 30 00 31 00 30 00 33 00 37 00 41 00 41 00 35 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 45 00 41 00 45 00 34 00 35 00 36 00 41 00 43 00 2D 00 39 00 30 00 39 00 35 00 2D 00 34 00 31 00 32 00 35 00 2D 00 42 00 36 00 35 00 35 00 2D 00 38 00 33 00 30 00 41 00 38 00 41 00 32 00 32 00 41 00 35 00 41 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 45 00 41 00 45 00 34 00 35 00 36 00 41 00 43 00 2D 00 39 00 30 00 39 00 35 00 2D 00 34 00 31 00 32 00 35 00 2D 00 42 00 36 00 35 00 35 00 2D 00 38 00 33 00 30 00 41 00 38 00 41 00 32 00 32 00 41 00 35 00 41 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 44 00 42 00 35 00 41 00 30 00 45 00 36 00 41 00 2D 00 34 00 41 00 35 00 44 00 2D 00 34 00 37 00 41 00 30 00 2D 00 38 00 45 00 36 00 33 00 2D 00 42 00 33 00 43 00 36 00 44 00 41 00 41 00 43 00 41 00 31 00 46 00 43 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 44 00 42 00 35 00 41 00 30 00 45 00 36 00 41 00 2D 00 34 00 41 00 35 00 44 00 2D 00 34 00 37 00 41 00 30 00 2D 00 38 00 45 00 36 00 33 00 2D 00 42 00 33 00 43 00 36 00 44 00 41 00 41 00 43 00 41 00 31 00 46 00 43 00 7D 00 00 00 [Binary data over 200 bytes]
"WinSock 2.0 Provider ID" = 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Psched]
"WinSock 2.0 Provider ID" = E0 A9 60 9D 7A 33 D0 11 BD 88 00 00 C0 82 E6 9A [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\RFCOMM]
"WinSock 1.1 Provider Data" = 06 00 00 00 20 00 00 00 1E 00 00 00 1E 00 00 00 01 00 00 00 03 00 00 00 00 00 00 00 4E 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 52 00 46 00 43 00 4F 00 4D 00 4D 00 00 00 [binary data]
"WinSock 2.0 Provider ID" = 64 80 C4 9F 98 72 E4 43 B7 BD 18 1F 20 89 79 2A [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip]
"WinSock 2.0 Provider ID" = A0 1A 0F E7 8B AB CF 11 8C A3 00 80 5F 48 A1 92 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip6]
"WinSock 2.0 Provider ID" = C0 B0 EA F9 D4 26 D0 11 BB BF 00 AA 00 6C 34 E4 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration\Well Known Guids]
"IsoTp" = B0 CB E4 89 C1 B9 CF 11 95 C8 00 80 5F 48 A1 92 [binary data]
"McsXns" = B1 CB E4 89 C1 B9 CF 11 95 C8 00 80 5F 48 A1 92 [binary data]
"AppleTalk" = A0 17 3B 2C DF C6 CF 11 95 C8 00 80 5F 48 A1 92 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters]
"WinSock_Registry_Version" = 2.0
"Current_NameSpace_Catalog" = NameSpace_Catalog5
"Current_Protocol_Catalog" = Protocol_Catalog9
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\06EBDCB1]
"AppFullPath" = C:\Windows\system32\wininit.exe -- [2008.01.21 03:23:42 | 000,096,768 | ---- | M] (Microsoft Corporation)
"PermittedLspCategories" = -2147483584
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\2C69D9F1-0F0A6651]
"AppFullPath" = C:\Windows\system32\svchost.exe -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"AppArgs" = -k NetworkService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = Dhcp [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 00 5C 26 05 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinHttpAutoProxySvc\Parameters]
"ServiceDll" = winhttp.dll -- [2011.11.16 17:23:44 | 000,377,344 | ---- | M] (Microsoft Corporation)
"ServiceMain" = WinHttpAutoProxySvcMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinHttpAutoProxySvc\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winmgmt]
"DisplayName" = @%Systemroot%\system32\wbem\wmisvc.dll,-205
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\wbem\wmisvc.dll,-204
"ObjectName" = localSystem
"ErrorControl" = 0
"Start" = 2
"Type" = 32
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winmgmt\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\system32\wbem\WMIsvc.dll -- [2009.04.11 07:28:25 | 000,162,304 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinRM]
"DisplayName" = @%Systemroot%\system32\wsmsvc.dll,-101
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\wsmsvc.dll,-102
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 3
"DelayedAutoStart" = 1
"Type" = 32
"DependOnService" = RPCSSHTTP [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeAssignPrimaryTokenPrivilegeSeAu [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinRM\Parameters]
"ServiceDll" = %SystemRoot%\system32\WsmSvc.dll -- [2009.10.09 22:56:18 | 001,181,696 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock]
"ErrorControl" = 1
"Start" = 3
"Type" = 4
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Parameters]
"Transports" = Tcpip6TcpipPschedNetBIOSRFCOMM [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration]
"Setup Version" = 4105
"Provider List" = Tcpip6TcpipPschedNetBIOSRFCOMM [binary data]
"Known Static Providers" = TcpipTcpip6NwlnkIpxNwlnkSpxApp [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\NetBIOS]
"WinSock 1.1 Provider Data" = 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 EC FF FF FF 00 FA 00 00 8E 19 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 EC FF FF FF 00 FA 00 00 18 19 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F0 FF FF FF 00 FA 00 00 A2 18 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F0 FF FF FF 00 FA 00 00 2C 18 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F4 FF FF FF 00 FA 00 00 B6 17 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F4 FF FF FF 00 FA 00 00 40 17 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FA FF FF FF 00 FA 00 00 CA 16 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FA FF FF FF 00 FA 00 00 54 16 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FD FF FF FF 00 FA 00 00 DE 15 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FD FF FF FF 00 FA 00 00 68 15 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FF FF FF FF 00 FA 00 00 F2 14 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FF FF FF FF 00 FA 00 00 7C 14 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F6 FF FF FF 00 FA 00 00 06 14 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F6 FF FF FF 00 FA 00 00 90 13 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FB FF FF FF 00 FA 00 00 18 13 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FB FF FF FF 00 FA 00 00 A0 12 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F8 FF FF FF 00 FA 00 00 28 12 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F8 FF FF FF 00 FA 00 00 B0 11 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 ED FF FF FF 00 FA 00 00 38 11 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 ED FF FF FF 00 FA 00 00 C0 10 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 EB FF FF FF 00 FA 00 00 48 10 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 EB FF FF FF 00 FA 00 00 D0 0F 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 EE FF FF FF 00 FA 00 00 58 0F 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 EE FF FF FF 00 FA 00 00 E0 0E 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 00 00 00 80 00 FA 00 00 68 0E 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 00 00 00 80 00 FA 00 00 F0 0D 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 EF FF FF FF 00 FA 00 00 78 0D 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 EF FF FF FF 00 FA 00 00 00 0D 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F3 FF FF FF 00 FA 00 00 88 0C 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F3 FF FF FF 00 FA 00 00 10 0C 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F1 FF FF FF 00 FA 00 00 98 0B 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F1 FF FF FF 00 FA 00 00 20 0B 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F2 FF FF FF 00 FA 00 00 A8 0A 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F2 FF FF FF 00 FA 00 00 30 0A 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F5 FF FF FF 00 FA 00 00 B8 09 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F5 FF FF FF 00 FA 00 00 40 09 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F7 FF FF FF 00 FA 00 00 C8 08 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F7 FF FF FF 00 FA 00 00 50 08 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F9 FF FF FF 00 FA 00 00 D8 07 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F9 FF FF FF 00 FA 00 00 60 07 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FC FF FF FF 00 FA 00 00 E8 06 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FC FF FF FF 00 FA 00 00 70 06 00 00 0E 10 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FE FF FF FF 00 FA 00 00 F8 05 00 00 09 12 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FE FF FF FF 00 FA 00 00 80 05 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 44 00 35 00 31 00 46 00 32 00 44 00 44 00 45 00 2D 00 34 00 30 00 39 00 42 00 2D 00 34 00 39 00 34 00 35 00 2D 00 38 00 43 00 45 00 33 00 2D 00 45 00 36 00 37 00 39 00 45 00 38 00 33 00 32 00 46 00 30 00 44 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 44 00 35 00 31 00 46 00 32 00 44 00 44 00 45 00 2D 00 34 00 30 00 39 00 42 00 2D 00 34 00 39 00 34 00 35 00 2D 00 38 00 43 00 45 00 33 00 2D 00 45 00 36 00 37 00 39 00 45 00 38 00 33 00 32 00 46 00 30 00 44 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 32 00 34 00 39 00 33 00 30 00 38 00 34 00 33 00 2D 00 41 00 39 00 34 00 33 00 2D 00 34 00 33 00 31 00 34 00 2D 00 41 00 41 00 31 00 43 00 2D 00 46 00 43 00 32 00 33 00 43 00 32 00 38 00 43 00 32 00 41 00 32 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 32 00 34 00 39 00 33 00 30 00 38 00 34 00 33 00 2D 00 41 00 39 00 34 00 33 00 2D 00 34 00 33 00 31 00 34 00 2D 00 41 00 41 00 31 00 43 00 2D 00 46 00 43 00 32 00 33 00 43 00 32 00 38 00 43 00 32 00 41 00 32 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 33 00 44 00 44 00 44 00 35 00 34 00 45 00 30 00 2D 00 32 00 38 00 33 00 46 00 2D 00 34 00 45 00 39 00 44 00 2D 00 39 00 33 00 41 00 33 00 2D 00 41 00 46 00 46 00 42 00 45 00 37 00 33 00 41 00 42 00 32 00 44 00 45 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 33 00 44 00 44 00 44 00 35 00 34 00 45 00 30 00 2D 00 32 00 38 00 33 00 46 00 2D 00 34 00 45 00 39 00 44 00 2D 00 39 00 33 00 41 00 33 00 2D 00 41 00 46 00 46 00 42 00 45 00 37 00 33 00 41 00 42 00 32 00 44 00 45 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 45 00 30 00 39 00 41 00 43 00 44 00 45 00 2D 00 44 00 46 00 44 00 36 00 2D 00 34 00 42 00 43 00 33 00 2D 00 41 00 42 00 35 00 37 00 2D 00 30 00 34 00 30 00 45 00 39 00 36 00 42 00 46 00 44 00 31 00 44 00 30 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 45 00 30 00 39 00 41 00 43 00 44 00 45 00 2D 00 44 00 46 00 44 00 36 00 2D 00 34 00 42 00 43 00 33 00 2D 00 41 00 42 00 35 00 37 00 2D 00 30 00 34 00 30 00 45 00 39 00 36 00 42 00 46 00 44 00 31 00 44 00 30 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 31 00 45 00 32 00 36 00 45 00 43 00 38 00 38 00 2D 00 41 00 35 00 36 00 44 00 2D 00 34 00 39 00 32 00 31 00 2D 00 41 00 32 00 36 00 46 00 2D 00 42 00 45 00 38 00 34 00 32 00 43 00 37 00 41 00 44 00 32 00 34 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 31 00 45 00 32 00 36 00 45 00 43 00 38 00 38 00 2D 00 41 00 35 00 36 00 44 00 2D 00 34 00 39 00 32 00 31 00 2D 00 41 00 32 00 36 00 46 00 2D 00 42 00 45 00 38 00 34 00 32 00 43 00 37 00 41 00 44 00 32 00 34 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 38 00 43 00 42 00 36 00 42 00 36 00 38 00 31 00 2D 00 33 00 37 00 32 00 33 00 2D 00 34 00 39 00 44 00 30 00 2D 00 42 00 30 00 46 00 38 00 2D 00 38 00 42 00 35 00 39 00 30 00 42 00 30 00 33 00 41 00 44 00 37 00 30 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 38 00 43 00 42 00 36 00 42 00 36 00 38 00 31 00 2D 00 33 00 37 00 32 00 33 00 2D 00 34 00 39 00 44 00 30 00 2D 00 42 00 30 00 46 00 38 00 2D 00 38 00 42 00 35 00 39 00 30 00 42 00 30 00 33 00 41 00 44 00 37 00 30 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 39 00 31 00 34 00 31 00 41 00 36 00 42 00 2D 00 46 00 32 00 44 00 34 00 2D 00 34 00 44 00 34 00 31 00 2D 00 42 00 45 00 45 00 39 00 2D 00 42 00 46 00 43 00 37 00 43 00 33 00 45 00 41 00 36 00 32 00 35 00 46 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 39 00 31 00 34 00 31 00 41 00 36 00 42 00 2D 00 46 00 32 00 44 00 34 00 2D 00 34 00 44 00 34 00 31 00 2D 00 42 00 45 00 45 00 39 00 2D 00 42 00 46 00 43 00 37 00 43 00 33 00 45 00 41 00 36 00 32 00 35 00 46 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 31 00 42 00 41 00 32 00 39 00 44 00 35 00 44 00 2D 00 43 00 44 00 37 00 31 00 2D 00 34 00 44 00 43 00 45 00 2D 00 42 00 33 00 37 00 43 00 2D 00 36 00 42 00 36 00 30 00 31 00 30 00 33 00 37 00 41 00 41 00 35 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 31 00 42 00 41 00 32 00 39 00 44 00 35 00 44 00 2D 00 43 00 44 00 37 00 31 00 2D 00 34 00 44 00 43 00 45 00 2D 00 42 00 33 00 37 00 43 00 2D 00 36 00 42 00 36 00 30 00 31 00 30 00 33 00 37 00 41 00 41 00 35 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 41 00 45 00 34 00 35 00 36 00 41 00 43 00 2D 00 39 00 30 00 39 00 35 00 2D 00 34 00 31 00 32 00 35 00 2D 00 42 00 36 00 35 00 35 00 2D 00 38 00 33 00 30 00 41 00 38 00 41 00 32 00 32 00 41 00 35 00 41 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 41 00 45 00 34 00 35 00 36 00 41 00 43 00 2D 00 39 00 30 00 39 00 35 00 2D 00 34 00 31 00 32 00 35 00 2D 00 42 00 36 00 35 00 35 00 2D 00 38 00 33 00 30 00 41 00 38 00 41 00 32 00 32 00 41 00 35 00 41 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 38 00 44 00 39 00 33 00 32 00 31 00 30 00 38 00 2D 00 34 00 32 00 44 00 46 00 2D 00 34 00 41 00 41 00 34 00 2D 00 41 00 32 00 38 00 36 00 2D 00 35 00 44 00 42 00 46 00 38 00 37 00 41 00 43 00 46 00 32 00 42 00 32 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 38 00 44 00 39 00 33 00 32 00 31 00 30 00 38 00 2D 00 34 00 32 00 44 00 46 00 2D 00 34 00 41 00 41 00 34 00 2D 00 41 00 32 00 38 00 36 00 2D 00 35 00 44 00 42 00 46 00 38 00 37 00 41 00 43 00 46 00 32 00 42 00 32 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 35 00 31 00 35 00 43 00 37 00 44 00 45 00 32 00 2D 00 31 00 43 00 46 00 31 00 2D 00 34 00 42 00 33 00 45 00 2D 00 41 00 43 00 41 00 45 00 2D 00 39 00 44 00 41 00 38 00 38 00 36 00 30 00 33 00 37 00 46 00 43 00 42 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 35 00 31 00 35 00 43 00 37 00 44 00 45 00 32 00 2D 00 31 00 43 00 46 00 31 00 2D 00 34 00 42 00 33 00 45 00 2D 00 41 00 43 00 41 00 45 00 2D 00 39 00 44 00 41 00 38 00 38 00 36 00 30 00 33 00 37 00 46 00 43 00 42 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 44 00 42 00 35 00 41 00 30 00 45 00 36 00 41 00 2D 00 34 00 41 00 35 00 44 00 2D 00 34 00 37 00 41 00 30 00 2D 00 38 00 45 00 36 00 33 00 2D 00 42 00 33 00 43 00 36 00 44 00 41 00 41 00 43 00 41 00 31 00 46 00 43 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 44 00 42 00 35 00 41 00 30 00 45 00 36 00 41 00 2D 00 34 00 41 00 35 00 44 00 2D 00 34 00 37 00 41 00 30 00 2D 00 38 00 45 00 36 00 33 00 2D 00 42 00 33 00 43 00 36 00 44 00 41 00 41 00 43 00 41 00 31 00 46 00 43 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 43 00 36 00 45 00 44 00 45 00 38 00 43 00 2D 00 32 00 31 00 32 00 44 00 2D 00 34 00 36 00 44 00 36 00 2D 00 42 00 38 00 45 00 38 00 2D 00 39 00 43 00 33 00 33 00 33 00 32 00 43 00 45 00 33 00 34 00 36 00 38 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 43 00 36 00 45 00 44 00 45 00 38 00 43 00 2D 00 32 00 31 00 32 00 44 00 2D 00 34 00 36 00 44 00 36 00 2D 00 42 00 38 00 45 00 38 00 2D 00 39 00 43 00 33 00 33 00 33 00 32 00 43 00 45 00 33 00 34 00 36 00 38 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 34 00 32 00 46 00 36 00 35 00 30 00 30 00 42 00 2D 00 43 00 42 00 41 00 32 00 2D 00 34 00 46 00 36 00 46 00 2D 00 41 00 38 00 33 00 36 00 2D 00 43 00 32 00 46 00 34 00 32 00 42 00 33 00 46 00 45 00 39 00 41 00 45 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 34 00 32 00 46 00 36 00 35 00 30 00 30 00 42 00 2D 00 43 00 42 00 41 00 32 00 2D 00 34 00 46 00 36 00 46 00 2D 00 41 00 38 00 33 00 36 00 2D 00 43 00 32 00 46 00 34 00 32 00 42 00 33 00 46 00 45 00 39 00 41 00 45 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 32 00 30 00 46 00 34 00 41 00 45 00 46 00 35 00 2D 00 33 00 33 00 35 00 34 00 2D 00 34 00 34 00 41 00 42 00 2D 00 42 00 38 00 45 00 38 00 2D 00 34 00 45 00 46 00 41 00 32 00 30 00 41 00 37 00 37 00 30 00 34 00 44 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 32 00 30 00 46 00 34 00 41 00 45 00 46 00 35 00 2D 00 33 00 33 00 35 00 34 00 2D 00 34 00 34 00 41 00 42 00 2D 00 42 00 38 00 45 00 38 00 2D 00 34 00 45 00 46 00 41 00 32 00 30 00 41 00 37 00 37 00 30 00 34 00 44 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 31 00 45 00 32 00 36 00 45 00 43 00 38 00 38 00 2D 00 41 00 35 00 36 00 44 00 2D 00 34 00 39 00 32 00 31 00 2D 00 41 00 32 00 36 00 46 00 2D 00 42 00 45 00 38 00 34 00 32 00 43 00 37 00 41 00 44 00 32 00 34 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 31 00 45 00 32 00 36 00 45 00 43 00 38 00 38 00 2D 00 41 00 35 00 36 00 44 00 2D 00 34 00 39 00 32 00 31 00 2D 00 41 00 32 00 36 00 46 00 2D 00 42 00 45 00 38 00 34 00 32 00 43 00 37 00 41 00 44 00 32 00 34 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 44 00 35 00 31 00 46 00 32 00 44 00 44 00 45 00 2D 00 34 00 30 00 39 00 42 00 2D 00 34 00 39 00 34 00 35 00 2D 00 38 00 43 00 45 00 33 00 2D 00 45 00 36 00 37 00 39 00 45 00 38 00 33 00 32 00 46 00 30 00 44 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 44 00 35 00 31 00 46 00 32 00 44 00 44 00 45 00 2D 00 34 00 30 00 39 00 42 00 2D 00 34 00 39 00 34 00 35 00 2D 00 38 00 43 00 45 00 33 00 2D 00 45 00 36 00 37 00 39 00 45 00 38 00 33 00 32 00 46 00 30 00 44 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 32 00 34 00 39 00 33 00 30 00 38 00 34 00 33 00 2D 00 41 00 39 00 34 00 33 00 2D 00 34 00 33 00 31 00 34 00 2D 00 41 00 41 00 31 00 43 00 2D 00 46 00 43 00 32 00 33 00 43 00 32 00 38 00 43 00 32 00 41 00 32 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 32 00 34 00 39 00 33 00 30 00 38 00 34 00 33 00 2D 00 41 00 39 00 34 00 33 00 2D 00 34 00 33 00 31 00 34 00 2D 00 41 00 41 00 31 00 43 00 2D 00 46 00 43 00 32 00 33 00 43 00 32 00 38 00 43 00 32 00 41 00 32 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 33 00 44 00 44 00 44 00 35 00 34 00 45 00 30 00 2D 00 32 00 38 00 33 00 46 00 2D 00 34 00 45 00 39 00 44 00 2D 00 39 00 33 00 41 00 33 00 2D 00 41 00 46 00 46 00 42 00 45 00 37 00 33 00 41 00 42 00 32 00 44 00 45 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 33 00 44 00 44 00 44 00 35 00 34 00 45 00 30 00 2D 00 32 00 38 00 33 00 46 00 2D 00 34 00 45 00 39 00 44 00 2D 00 39 00 33 00 41 00 33 00 2D 00 41 00 46 00 46 00 42 00 45 00 37 00 33 00 41 00 42 00 32 00 44 00 45 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 31 00 42 00 41 00 32 00 39 00 44 00 35 00 44 00 2D 00 43 00 44 00 37 00 31 00 2D 00 34 00 44 00 43 00 45 00 2D 00 42 00 33 00 37 00 43 00 2D 00 36 00 42 00 36 00 30 00 31 00 30 00 33 00 37 00 41 00 41 00 35 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 31 00 42 00 41 00 32 00 39 00 44 00 35 00 44 00 2D 00 43 00 44 00 37 00 31 00 2D 00 34 00 44 00 43 00 45 00 2D 00 42 00 33 00 37 00 43 00 2D 00 36 00 42 00 36 00 30 00 31 00 30 00 33 00 37 00 41 00 41 00 35 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 45 00 41 00 45 00 34 00 35 00 36 00 41 00 43 00 2D 00 39 00 30 00 39 00 35 00 2D 00 34 00 31 00 32 00 35 00 2D 00 42 00 36 00 35 00 35 00 2D 00 38 00 33 00 30 00 41 00 38 00 41 00 32 00 32 00 41 00 35 00 41 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 45 00 41 00 45 00 34 00 35 00 36 00 41 00 43 00 2D 00 39 00 30 00 39 00 35 00 2D 00 34 00 31 00 32 00 35 00 2D 00 42 00 36 00 35 00 35 00 2D 00 38 00 33 00 30 00 41 00 38 00 41 00 32 00 32 00 41 00 35 00 41 00 36 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 44 00 42 00 35 00 41 00 30 00 45 00 36 00 41 00 2D 00 34 00 41 00 35 00 44 00 2D 00 34 00 37 00 41 00 30 00 2D 00 38 00 45 00 36 00 33 00 2D 00 42 00 33 00 43 00 36 00 44 00 41 00 41 00 43 00 41 00 31 00 46 00 43 00 7D 00 00 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 5F 00 7B 00 44 00 42 00 35 00 41 00 30 00 45 00 36 00 41 00 2D 00 34 00 41 00 35 00 44 00 2D 00 34 00 37 00 41 00 30 00 2D 00 38 00 45 00 36 00 33 00 2D 00 42 00 33 00 43 00 36 00 44 00 41 00 41 00 43 00 41 00 31 00 46 00 43 00 7D 00 00 00 [Binary data over 200 bytes]
"WinSock 2.0 Provider ID" = 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Psched]
"WinSock 2.0 Provider ID" = E0 A9 60 9D 7A 33 D0 11 BD 88 00 00 C0 82 E6 9A [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\RFCOMM]
"WinSock 1.1 Provider Data" = 06 00 00 00 20 00 00 00 1E 00 00 00 1E 00 00 00 01 00 00 00 03 00 00 00 00 00 00 00 4E 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 52 00 46 00 43 00 4F 00 4D 00 4D 00 00 00 [binary data]
"WinSock 2.0 Provider ID" = 64 80 C4 9F 98 72 E4 43 B7 BD 18 1F 20 89 79 2A [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip]
"WinSock 2.0 Provider ID" = A0 1A 0F E7 8B AB CF 11 8C A3 00 80 5F 48 A1 92 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration\Providers\Tcpip6]
"WinSock 2.0 Provider ID" = C0 B0 EA F9 D4 26 D0 11 BB BF 00 AA 00 6C 34 E4 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Winsock\Setup Migration\Well Known Guids]
"IsoTp" = B0 CB E4 89 C1 B9 CF 11 95 C8 00 80 5F 48 A1 92 [binary data]
"McsXns" = B1 CB E4 89 C1 B9 CF 11 95 C8 00 80 5F 48 A1 92 [binary data]
"AppleTalk" = A0 17 3B 2C DF C6 CF 11 95 C8 00 80 5F 48 A1 92 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters]
"WinSock_Registry_Version" = 2.0
"Current_NameSpace_Catalog" = NameSpace_Catalog5
"Current_Protocol_Catalog" = Protocol_Catalog9
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\06EBDCB1]
"AppFullPath" = C:\Windows\system32\wininit.exe -- [2008.01.21 03:23:42 | 000,096,768 | ---- | M] (Microsoft Corporation)
"PermittedLspCategories" = -2147483584
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\2C69D9F1-0F0A6651]
"AppFullPath" = C:\Windows\system32\svchost.exe -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"AppArgs" = -k NetworkService
Re: policie čr prosim o radu
PermittedLspCategories" = -2147483580
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\2C69D9F1-1F4968A0]
"AppFullPath" = C:\Windows\system32\svchost.exe -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"AppArgs" = -k LocalServiceNetworkRestricted
"PermittedLspCategories" = -2147483584
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\2C69D9F1-34FFF7C0]
"AppFullPath" = C:\Windows\system32\svchost.exe -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"AppArgs" = -k LocalService
"PermittedLspCategories" = -2147483580
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\343305C9]
"AppFullPath" = C:\Windows\system32\lsass.exe -- [2011.11.16 15:12:25 | 000,009,728 | ---- | M] (Microsoft Corporation)
"PermittedLspCategories" = -2147483648
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5]
"Num_Catalog_Entries" = 7
"Serial_Access_Num" = 29
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000001]
"LibraryPath" = %SystemRoot%\system32\NLAapi.dll -- [2008.01.21 03:23:44 | 000,048,128 | ---- | M] (Microsoft Corporation)
"DisplayString" = @%SystemRoot%\system32\nlasvc.dll,-1000 -- [2008.01.21 03:23:44 | 000,168,448 | ---- | M] (Microsoft Corporation)
"ProviderId" = 3A 24 42 66 A8 3B A6 4A BA A5 2E 0B D7 1F DD 83 [binary data]
"SupportedNameSpace" = 15
"Enabled" = 1
"Version" = 0
"StoresServiceClassInfo" = 0
"ProviderInfo" = Reg Error: Value error. -- File not found
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000002]
"LibraryPath" = %SystemRoot%\system32\napinsp.dll -- [2008.01.21 03:24:29 | 000,050,176 | ---- | M] (Společnost Microsoft)
"DisplayString" = @%SystemRoot%\system32\napinsp.dll,-1000 -- [2008.01.21 03:24:29 | 000,050,176 | ---- | M] (Společnost Microsoft)
"ProviderId" = A2 CB 4A 96 BC B2 EB 40 8C 6A A6 DB 40 16 1C AE [binary data]
"SupportedNameSpace" = 37
"Enabled" = 1
"Version" = 0
"StoresServiceClassInfo" = 0
"ProviderInfo" = Reg Error: Value error. -- File not found
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000003]
"LibraryPath" = %SystemRoot%\system32\pnrpnsp.dll -- [2008.01.21 03:25:26 | 000,062,464 | ---- | M] (Microsoft Corporation)
"DisplayString" = @%SystemRoot%\system32\pnrpnsp.dll,-1000 -- [2008.01.21 03:25:26 | 000,062,464 | ---- | M] (Microsoft Corporation)
"ProviderId" = CE 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D [binary data]
"SupportedNameSpace" = 39
"Enabled" = 1
"Version" = 0
"StoresServiceClassInfo" = 0
"ProviderInfo" = Reg Error: Value error. -- File not found
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000004]
"LibraryPath" = %SystemRoot%\system32\pnrpnsp.dll -- [2008.01.21 03:25:26 | 000,062,464 | ---- | M] (Microsoft Corporation)
"DisplayString" = @%SystemRoot%\system32\pnrpnsp.dll,-1001 -- [2008.01.21 03:25:26 | 000,062,464 | ---- | M] (Microsoft Corporation)
"ProviderId" = CD 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D [binary data]
"SupportedNameSpace" = 38
"Enabled" = 1
"Version" = 0
"StoresServiceClassInfo" = 0
"ProviderInfo" = Reg Error: Value error. -- File not found
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000005]
"LibraryPath" = %SystemRoot%\System32\mswsock.dll -- [2009.04.11 07:28:22 | 000,223,232 | ---- | M] (Microsoft Corporation)
"DisplayString" = @%SystemRoot%\system32\wshtcpip.dll,-60103 -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
"ProviderId" = 40 9D 05 22 9E 7E CF 11 AE 5A 00 AA 00 A7 11 2B [binary data]
"SupportedNameSpace" = 12
"Enabled" = 1
"Version" = 0
"StoresServiceClassInfo" = 0
"ProviderInfo" = Reg Error: Value error. -- File not found
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000006]
"LibraryPath" = %SystemRoot%\System32\winrnr.dll -- [2009.04.11 07:28:25 | 000,019,968 | ---- | M] (Microsoft Corporation)
"DisplayString" = NTDS
"ProviderId" = EE 37 26 3B 80 E5 CF 11 A5 55 00 C0 4F D8 D4 AC [binary data]
"SupportedNameSpace" = 32
"Enabled" = 1
"Version" = 0
"StoresServiceClassInfo" = 0
"ProviderInfo" = Reg Error: Value error. -- File not found
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000007]
"LibraryPath" = %SystemRoot%\system32\wshbth.dll -- [2009.04.11 07:28:26 | 000,034,304 | ---- | M] (Microsoft Corporation)
"DisplayString" = Obor názvů Bluetooth
"ProviderId" = E0 63 AA 06 60 7D FF 41 AF B2 3E E6 D2 D9 39 2D [binary data]
"SupportedNameSpace" = 16
"Enabled" = 1
"Version" = 0
"StoresServiceClassInfo" = 0
"ProviderInfo" = Reg Error: Value error. -- File not found
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9]
"Next_Catalog_Entry_ID" = 173794
"Num_Catalog_Entries" = 55
"Serial_Access_Num" = 10116
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 66 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 A0 1A 0F E7 8B AB CF 11 8C A3 00 80 5F 48 A1 92 E9 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 02 00 00 00 10 00 00 00 10 00 00 00 01 00 00 00 06 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 74 00 63 00 70 00 69 00 70 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 36 00 30 00 31 00 30 00 30 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wshtcpip.dll,-60100 -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 06 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 A0 1A 0F E7 8B AB CF 11 8C A3 00 80 5F 48 A1 92 EA 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 02 00 00 00 10 00 00 00 10 00 00 00 02 00 00 00 11 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 F7 FF 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 74 00 63 00 70 00 69 00 70 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 36 00 30 00 31 00 30 00 31 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wshtcpip.dll,-60101 -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 06 02 00 00 00 00 00 00 00 00 00 00 00 00 00 0C 00 00 00 A0 1A 0F E7 8B AB CF 11 8C A3 00 80 5F 48 A1 92 EB 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 02 00 00 00 10 00 00 00 10 00 00 00 03 00 00 00 00 00 00 00 FF 00 00 00 00 00 00 00 00 00 00 00 00 80 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 74 00 63 00 70 00 69 00 70 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 36 00 30 00 31 00 30 00 32 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wshtcpip.dll,-60102 -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 66 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 C0 B0 EA F9 D4 26 D0 11 BB BF 00 AA 00 6C 34 E4 EC 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 17 00 00 00 1C 00 00 00 1C 00 00 00 01 00 00 00 06 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 69 00 70 00 36 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 36 00 30 00 31 00 30 00 30 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wship6.dll,-60100 -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 06 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 C0 B0 EA F9 D4 26 D0 11 BB BF 00 AA 00 6C 34 E4 ED 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 17 00 00 00 1C 00 00 00 1C 00 00 00 02 00 00 00 11 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 F7 FF 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 69 00 70 00 36 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 36 00 30 00 31 00 30 00 31 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wship6.dll,-60101 -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 06 02 00 00 00 00 00 00 00 00 00 00 00 00 00 0C 00 00 00 C0 B0 EA F9 D4 26 D0 11 BB BF 00 AA 00 6C 34 E4 EE 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 17 00 00 00 1C 00 00 00 1C 00 00 00 03 00 00 00 00 00 00 00 FF 00 00 00 00 00 00 00 00 00 00 00 00 80 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 69 00 70 00 36 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 36 00 30 00 31 00 30 00 32 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wship6.dll,-60102 -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000007]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 66 20 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 E0 A9 60 9D 7A 33 D0 11 BD 88 00 00 C0 82 E6 9A F7 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 17 00 00 00 1C 00 00 00 1C 00 00 00 01 00 00 00 06 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 71 00 6F 00 73 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 31 00 30 00 30 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wshqos.dll,-100 -- [2006.11.02 10:46:14 | 000,013,824 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000008]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 66 20 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 E0 A9 60 9D 7A 33 D0 11 BD 88 00 00 C0 82 E6 9A F8 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 02 00 00 00 10 00 00 00 10 00 00 00 01 00 00 00 06 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 71 00 6F 00 73 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 31 00 30 00 31 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wshqos.dll,-101 -- [2006.11.02 10:46:14 | 000,013,824 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000009]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 26 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 E0 A9 60 9D 7A 33 D0 11 BD 88 00 00 C0 82 E6 9A F9 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 17 00 00 00 1C 00 00 00 1C 00 00 00 02 00 00 00 11 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 F7 FF 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 71 00 6F 00 73 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 31 00 30 00 32 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wshqos.dll,-102 -- [2006.11.02 10:46:14 | 000,013,824 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000010]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 26 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 E0 A9 60 9D 7A 33 D0 11 BD 88 00 00 C0 82 E6 9A FA 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 02 00 00 00 10 00 00 00 10 00 00 00 02 00 00 00 11 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 F7 FF 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 71 00 6F 00 73 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 31 00 30 00 33 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wshqos.dll,-103 -- [2006.11.02 10:46:14 | 000,013,824 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\2C69D9F1-1F4968A0]
"AppFullPath" = C:\Windows\system32\svchost.exe -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"AppArgs" = -k LocalServiceNetworkRestricted
"PermittedLspCategories" = -2147483584
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\2C69D9F1-34FFF7C0]
"AppFullPath" = C:\Windows\system32\svchost.exe -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"AppArgs" = -k LocalService
"PermittedLspCategories" = -2147483580
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\AppId_Catalog\343305C9]
"AppFullPath" = C:\Windows\system32\lsass.exe -- [2011.11.16 15:12:25 | 000,009,728 | ---- | M] (Microsoft Corporation)
"PermittedLspCategories" = -2147483648
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5]
"Num_Catalog_Entries" = 7
"Serial_Access_Num" = 29
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000001]
"LibraryPath" = %SystemRoot%\system32\NLAapi.dll -- [2008.01.21 03:23:44 | 000,048,128 | ---- | M] (Microsoft Corporation)
"DisplayString" = @%SystemRoot%\system32\nlasvc.dll,-1000 -- [2008.01.21 03:23:44 | 000,168,448 | ---- | M] (Microsoft Corporation)
"ProviderId" = 3A 24 42 66 A8 3B A6 4A BA A5 2E 0B D7 1F DD 83 [binary data]
"SupportedNameSpace" = 15
"Enabled" = 1
"Version" = 0
"StoresServiceClassInfo" = 0
"ProviderInfo" = Reg Error: Value error. -- File not found
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000002]
"LibraryPath" = %SystemRoot%\system32\napinsp.dll -- [2008.01.21 03:24:29 | 000,050,176 | ---- | M] (Společnost Microsoft)
"DisplayString" = @%SystemRoot%\system32\napinsp.dll,-1000 -- [2008.01.21 03:24:29 | 000,050,176 | ---- | M] (Společnost Microsoft)
"ProviderId" = A2 CB 4A 96 BC B2 EB 40 8C 6A A6 DB 40 16 1C AE [binary data]
"SupportedNameSpace" = 37
"Enabled" = 1
"Version" = 0
"StoresServiceClassInfo" = 0
"ProviderInfo" = Reg Error: Value error. -- File not found
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000003]
"LibraryPath" = %SystemRoot%\system32\pnrpnsp.dll -- [2008.01.21 03:25:26 | 000,062,464 | ---- | M] (Microsoft Corporation)
"DisplayString" = @%SystemRoot%\system32\pnrpnsp.dll,-1000 -- [2008.01.21 03:25:26 | 000,062,464 | ---- | M] (Microsoft Corporation)
"ProviderId" = CE 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D [binary data]
"SupportedNameSpace" = 39
"Enabled" = 1
"Version" = 0
"StoresServiceClassInfo" = 0
"ProviderInfo" = Reg Error: Value error. -- File not found
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000004]
"LibraryPath" = %SystemRoot%\system32\pnrpnsp.dll -- [2008.01.21 03:25:26 | 000,062,464 | ---- | M] (Microsoft Corporation)
"DisplayString" = @%SystemRoot%\system32\pnrpnsp.dll,-1001 -- [2008.01.21 03:25:26 | 000,062,464 | ---- | M] (Microsoft Corporation)
"ProviderId" = CD 89 FE 03 6D 76 76 49 B9 C1 BB 9B C4 2C 7B 4D [binary data]
"SupportedNameSpace" = 38
"Enabled" = 1
"Version" = 0
"StoresServiceClassInfo" = 0
"ProviderInfo" = Reg Error: Value error. -- File not found
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000005]
"LibraryPath" = %SystemRoot%\System32\mswsock.dll -- [2009.04.11 07:28:22 | 000,223,232 | ---- | M] (Microsoft Corporation)
"DisplayString" = @%SystemRoot%\system32\wshtcpip.dll,-60103 -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
"ProviderId" = 40 9D 05 22 9E 7E CF 11 AE 5A 00 AA 00 A7 11 2B [binary data]
"SupportedNameSpace" = 12
"Enabled" = 1
"Version" = 0
"StoresServiceClassInfo" = 0
"ProviderInfo" = Reg Error: Value error. -- File not found
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000006]
"LibraryPath" = %SystemRoot%\System32\winrnr.dll -- [2009.04.11 07:28:25 | 000,019,968 | ---- | M] (Microsoft Corporation)
"DisplayString" = NTDS
"ProviderId" = EE 37 26 3B 80 E5 CF 11 A5 55 00 C0 4F D8 D4 AC [binary data]
"SupportedNameSpace" = 32
"Enabled" = 1
"Version" = 0
"StoresServiceClassInfo" = 0
"ProviderInfo" = Reg Error: Value error. -- File not found
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\NameSpace_Catalog5\Catalog_Entries\000000000007]
"LibraryPath" = %SystemRoot%\system32\wshbth.dll -- [2009.04.11 07:28:26 | 000,034,304 | ---- | M] (Microsoft Corporation)
"DisplayString" = Obor názvů Bluetooth
"ProviderId" = E0 63 AA 06 60 7D FF 41 AF B2 3E E6 D2 D9 39 2D [binary data]
"SupportedNameSpace" = 16
"Enabled" = 1
"Version" = 0
"StoresServiceClassInfo" = 0
"ProviderInfo" = Reg Error: Value error. -- File not found
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9]
"Next_Catalog_Entry_ID" = 173794
"Num_Catalog_Entries" = 55
"Serial_Access_Num" = 10116
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 66 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 A0 1A 0F E7 8B AB CF 11 8C A3 00 80 5F 48 A1 92 E9 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 02 00 00 00 10 00 00 00 10 00 00 00 01 00 00 00 06 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 74 00 63 00 70 00 69 00 70 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 36 00 30 00 31 00 30 00 30 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wshtcpip.dll,-60100 -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 06 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 A0 1A 0F E7 8B AB CF 11 8C A3 00 80 5F 48 A1 92 EA 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 02 00 00 00 10 00 00 00 10 00 00 00 02 00 00 00 11 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 F7 FF 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 74 00 63 00 70 00 69 00 70 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 36 00 30 00 31 00 30 00 31 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wshtcpip.dll,-60101 -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000003]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 06 02 00 00 00 00 00 00 00 00 00 00 00 00 00 0C 00 00 00 A0 1A 0F E7 8B AB CF 11 8C A3 00 80 5F 48 A1 92 EB 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 02 00 00 00 10 00 00 00 10 00 00 00 03 00 00 00 00 00 00 00 FF 00 00 00 00 00 00 00 00 00 00 00 00 80 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 74 00 63 00 70 00 69 00 70 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 36 00 30 00 31 00 30 00 32 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wshtcpip.dll,-60102 -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000004]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 66 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 C0 B0 EA F9 D4 26 D0 11 BB BF 00 AA 00 6C 34 E4 EC 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 17 00 00 00 1C 00 00 00 1C 00 00 00 01 00 00 00 06 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 69 00 70 00 36 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 36 00 30 00 31 00 30 00 30 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wship6.dll,-60100 -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000005]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 06 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 C0 B0 EA F9 D4 26 D0 11 BB BF 00 AA 00 6C 34 E4 ED 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 17 00 00 00 1C 00 00 00 1C 00 00 00 02 00 00 00 11 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 F7 FF 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 69 00 70 00 36 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 36 00 30 00 31 00 30 00 31 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wship6.dll,-60101 -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000006]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 06 02 00 00 00 00 00 00 00 00 00 00 00 00 00 0C 00 00 00 C0 B0 EA F9 D4 26 D0 11 BB BF 00 AA 00 6C 34 E4 EE 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 17 00 00 00 1C 00 00 00 1C 00 00 00 03 00 00 00 00 00 00 00 FF 00 00 00 00 00 00 00 00 00 00 00 00 80 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 69 00 70 00 36 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 36 00 30 00 31 00 30 00 32 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wship6.dll,-60102 -- [2008.01.21 03:24:04 | 000,009,216 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000007]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 66 20 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 E0 A9 60 9D 7A 33 D0 11 BD 88 00 00 C0 82 E6 9A F7 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 17 00 00 00 1C 00 00 00 1C 00 00 00 01 00 00 00 06 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 71 00 6F 00 73 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 31 00 30 00 30 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wshqos.dll,-100 -- [2006.11.02 10:46:14 | 000,013,824 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000008]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 66 20 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 E0 A9 60 9D 7A 33 D0 11 BD 88 00 00 C0 82 E6 9A F8 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 02 00 00 00 10 00 00 00 10 00 00 00 01 00 00 00 06 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 71 00 6F 00 73 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 31 00 30 00 31 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wshqos.dll,-101 -- [2006.11.02 10:46:14 | 000,013,824 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000009]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 26 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 E0 A9 60 9D 7A 33 D0 11 BD 88 00 00 C0 82 E6 9A F9 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 17 00 00 00 1C 00 00 00 1C 00 00 00 02 00 00 00 11 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 F7 FF 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 71 00 6F 00 73 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 31 00 30 00 32 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wshqos.dll,-102 -- [2006.11.02 10:46:14 | 000,013,824 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000010]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 26 02 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 E0 A9 60 9D 7A 33 D0 11 BD 88 00 00 C0 82 E6 9A FA 03 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 02 00 00 00 10 00 00 00 10 00 00 00 02 00 00 00 11 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 F7 FF 00 00 00 00 00 00 40 00 25 00 53 00 79 00 73 00 74 00 65 00 6D 00 52 00 6F 00 6F 00 74 00 25 00 5C 00 53 00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 77 00 73 00 68 00 71 00 6F 00 73 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 31 00 30 00 33 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = @%SystemRoot%\System32\wshqos.dll,-103 -- [2006.11.02 10:46:14 | 000,013,824 | ---- | M] (Microsoft Corporation)
Re: policie čr prosim o radu
0 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{8CB6B681-3723-49D0-B0F8-8B590B03AD70}] DATAGRAM 14
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000046]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 0E 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 D8 A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F5 FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 31 00 45 00 32 00 36 00 45 00 43 00 38 00 38 00 2D 00 41 00 35 00 36 00 44 00 2D 00 34 00 39 00 32 00 31 00 2D 00 41 00 32 00 36 00 46 00 2D 00 42 00 45 00 38 00 34 00 32 00 43 00 37 00 41 00 44 00 32 00 34 00 36 00 7D 00 5D 00 20 00 53 00 45 00 51 00 50 00 41 00 43 00 4B 00 45 00 54 00 20 00 31 00 31 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{1E26EC88-A56D-4921-A26F-BE842C7AD246}] SEQPACKET 11
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000047]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 02 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 D9 A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F5 FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 31 00 45 00 32 00 36 00 45 00 43 00 38 00 38 00 2D 00 41 00 35 00 36 00 44 00 2D 00 34 00 39 00 32 00 31 00 2D 00 41 00 32 00 36 00 46 00 2D 00 42 00 45 00 38 00 34 00 32 00 43 00 37 00 41 00 44 00 32 00 34 00 36 00 7D 00 5D 00 20 00 44 00 41 00 54 00 41 00 47 00 52 00 41 00 4D 00 20 00 31 00 31 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{1E26EC88-A56D-4921-A26F-BE842C7AD246}] DATAGRAM 11
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000048]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 0E 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 DA A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F7 FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 45 00 30 00 39 00 41 00 43 00 44 00 45 00 2D 00 44 00 46 00 44 00 36 00 2D 00 34 00 42 00 43 00 33 00 2D 00 41 00 42 00 35 00 37 00 2D 00 30 00 34 00 30 00 45 00 39 00 36 00 42 00 46 00 44 00 31 00 44 00 30 00 7D 00 5D 00 20 00 53 00 45 00 51 00 50 00 41 00 43 00 4B 00 45 00 54 00 20 00 39 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{EE09ACDE-DFD6-4BC3-AB57-040E96BFD1D0}] SEQPACKET 9
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000049]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 02 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 DB A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F7 FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 45 00 30 00 39 00 41 00 43 00 44 00 45 00 2D 00 44 00 46 00 44 00 36 00 2D 00 34 00 42 00 43 00 33 00 2D 00 41 00 42 00 35 00 37 00 2D 00 30 00 34 00 30 00 45 00 39 00 36 00 42 00 46 00 44 00 31 00 44 00 30 00 7D 00 5D 00 20 00 44 00 41 00 54 00 41 00 47 00 52 00 41 00 4D 00 20 00 39 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{8CB6B681-3723-49D0-B0F8-8B590B03AD70}] DATAGRAM 14
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000046]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 0E 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 D8 A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F5 FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 31 00 45 00 32 00 36 00 45 00 43 00 38 00 38 00 2D 00 41 00 35 00 36 00 44 00 2D 00 34 00 39 00 32 00 31 00 2D 00 41 00 32 00 36 00 46 00 2D 00 42 00 45 00 38 00 34 00 32 00 43 00 37 00 41 00 44 00 32 00 34 00 36 00 7D 00 5D 00 20 00 53 00 45 00 51 00 50 00 41 00 43 00 4B 00 45 00 54 00 20 00 31 00 31 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{1E26EC88-A56D-4921-A26F-BE842C7AD246}] SEQPACKET 11
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000047]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 02 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 D9 A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F5 FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 31 00 45 00 32 00 36 00 45 00 43 00 38 00 38 00 2D 00 41 00 35 00 36 00 44 00 2D 00 34 00 39 00 32 00 31 00 2D 00 41 00 32 00 36 00 46 00 2D 00 42 00 45 00 38 00 34 00 32 00 43 00 37 00 41 00 44 00 32 00 34 00 36 00 7D 00 5D 00 20 00 44 00 41 00 54 00 41 00 47 00 52 00 41 00 4D 00 20 00 31 00 31 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{1E26EC88-A56D-4921-A26F-BE842C7AD246}] DATAGRAM 11
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000048]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 0E 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 DA A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F7 FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 45 00 30 00 39 00 41 00 43 00 44 00 45 00 2D 00 44 00 46 00 44 00 36 00 2D 00 34 00 42 00 43 00 33 00 2D 00 41 00 42 00 35 00 37 00 2D 00 30 00 34 00 30 00 45 00 39 00 36 00 42 00 46 00 44 00 31 00 44 00 30 00 7D 00 5D 00 20 00 53 00 45 00 51 00 50 00 41 00 43 00 4B 00 45 00 54 00 20 00 39 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{EE09ACDE-DFD6-4BC3-AB57-040E96BFD1D0}] SEQPACKET 9
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000049]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 02 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 DB A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F7 FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 45 00 45 00 30 00 39 00 41 00 43 00 44 00 45 00 2D 00 44 00 46 00 44 00 36 00 2D 00 34 00 42 00 43 00 33 00 2D 00 41 00 42 00 35 00 37 00 2D 00 30 00 34 00 30 00 45 00 39 00 36 00 42 00 46 00 44 00 31 00 44 00 30 00 7D 00 5D 00 20 00 44 00 41 00 54 00 41 00 47 00 52 00 41 00 4D 00 20 00 39 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Re: policie čr prosim o radu
00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F2 FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 38 00 43 00 42 00 36 00 42 00 36 00 38 00 31 00 2D 00 33 00 37 00 32 00 33 00 2D 00 34 00 39 00 44 00 30 00 2D 00 42 00 30 00 46 00 38 00 2D 00 38 00 42 00 35 00 39 00 30 00 42 00 30 00 33 00 41 00 44 00 37 00 30 00 7D 00 5D 00 20 00 44 00 41 00 54 00 41 00 47 00 52 00 41 00 4D 00 20 00 31 00 34 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 000 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{EE09ACDE-DFD6-4BC3-AB57-040E96BFD1D0}] DATAGRAM 9
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000050]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 0E 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 DC A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F9 FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 33 00 44 00 44 00 44 00 35 00 34 00 45 00 30 00 2D 00 32 00 38 00 33 00 46 00 2D 00 34 00 45 00 39 00 44 00 2D 00 39 00 33 00 41 00 33 00 2D 00 41 00 46 00 46 00 42 00 45 00 37 00 33 00 41 00 42 00 32 00 44 00 45 00 7D 00 5D 00 20 00 53 00 45 00 51 00 50 00 41 00 43 00 4B 00 45 00 54 00 20 00 37 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}] SEQPACKET 7
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000051]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 02 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 DD A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F9 FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 33 00 44 00 44 00 44 00 35 00 34 00 45 00 30 00 2D 00 32 00 38 00 33 00 46 00 2D 00 34 00 45 00 39 00 44 00 2D 00 39 00 33 00 41 00 33 00 2D 00 41 00 46 00 46 00 42 00 45 00 37 00 33 00 41 00 42 00 32 00 44 00 45 00 7D 00 5D 00 20 00 44 00 41 00 54 00 41 00 47 00 52 00 41 00 4D 00 20 00 37 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}] DATAGRAM 7
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000052]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 0E 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 DE A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FC FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 32 00 34 00 39 00 33 00 30 00 38 00 34 00 33 00 2D 00 41 00 39 00 34 00 33 00 2D 00 34 00 33 00 31 00 34 00 2D 00 41 00 41 00 31 00 43 00 2D 00 46 00 43 00 32 00 33 00 43 00 32 00 38 00 43 00 32 00 41 00 32 00 36 00 7D 00 5D 00 20 00 53 00 45 00 51 00 50 00 41 00 43 00 4B 00 45 00 54 00 20 00 34 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{24930843-A943-4314-AA1C-FC23C28C2A26}] SEQPACKET 4
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000053]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 02 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 DF A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FC FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 32 00 34 00 39 00 33 00 30 00 38 00 34 00 33 00 2D 00 41 00 39 00 34 00 33 00 2D 00 34 00 33 00 31 00 34 00 2D 00 41 00 41 00 31 00 43 00 2D 00 46 00 43 00 32 00 33 00 43 00 32 00 38 00 43 00 32 00 41 00 32 00 36 00 7D 00 5D 00 20 00 44 00 41 00 54 00 41 00 47 00 52 00 41 00 4D 00 20 00 34 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{24930843-A943-4314-AA1C-FC23C28C2A26}] DATAGRAM 4
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000054]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 0E 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 E0 A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FE FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 44 00 35 00 31 00 46 00 32 00 44 00 44 00 45 00 2D 00 34 00 30 00 39 00 42 00 2D 00 34 00 39 00 34 00 35 00 2D 00 38 00 43 00 45 00 33 00 2D 00 45 00 36 00 37 00 39 00 45 00 38 00 33 00 32 00 46 00 30 00 44 00 36 00 7D 00 5D 00 20 00 53 00 45 00 51 00 50 00 41 00 43 00 4B 00 45 00 54 00 20 00 32 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{D51F2DDE-409B-4945-8CE3-E679E832F0D6}] SEQPACKET 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000055]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 02 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 E1 A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FE FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 44 00 35 00 31 00 46 00 32 00 44 00 44 00 45 00 2D 00 34 00 30 00 39 00 42 00 2D 00 34 00 39 00 34 00 35 00 2D 00 38 00 43 00 45 00 33 00 2D 00 45 00 36 00 37 00 39 00 45 00 38 00 33 00 32 00 46 00 30 00 44 00 36 00 7D 00 5D 00 20 00 44 00 41 00 54 00 41 00 47 00 52 00 41 00 4D 00 20 00 32 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{D51F2DDE-409B-4945-8CE3-E679E832F0D6}] DATAGRAM 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wlansvc]
"DisplayName" = @%SystemRoot%\System32\wlansvc.dll,-257
"ErrorControl" = 1
"Group" = TDI
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%SystemRoot%\System32\wlansvc.dll,-258
"DependOnService" = nativewifipRpcSsNdisuioEaphost [binary data]
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImperson [Binary data over 200 bytes]
"FailureActions" = 2C 01 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wlansvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = WlanSvcMain
"ServiceDll" = %SystemRoot%\System32\wlansvc.dll -- [2009.07.11 20:01:42 | 000,513,536 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wlansvc\Parameters\OEM]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wlansvc\Parameters\WlanAPIPermissions]
"Permit List" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Deny List" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"AC Enabled" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"BC Scan Enabled" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"BSS Type" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Show Denied" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Interface Properties" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Ihv Control" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"All User Profiles Order" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Add New All User Profiles" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCWPRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCWPRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCWPRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Add New Per User Profiles" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Media Streaming Mode Enabled" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Current Operation Mode" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WmiAcpi]
"DisplayName" = Microsoft Windows Management Interface for ACPI
"Group" = Extended Base
"ImagePath" = system32\DRIVERS\wmiacpi.sys -- [2008.01.21 03:23:00 | 000,011,264 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 12
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WmiAcpi\Enum]
"0" = ACPI\pnp0c14\NVIF
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WmiApRpl]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WmiApRpl\Performance]
"Library" = %systemroot%\system32\wbem\wmiaprpl.dll -- [2009.04.11 07:28:25 | 000,090,112 | ---- | M] (Microsoft Corporation)
"Open" = WmiOpenPerfData
"Collect" = WmiCollectPerfData
"Close" = WmiClosePerfData
"PerfIniFile" = WmiApRpl.ini
"Last Counter" = 10036
"Last Help" = 10037
"First Counter" = 9870
"First Help" = 9871
"Object List" = 9870 9876 9886 9896 9916 9960 9970 10008 10014 10030
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wmiApSrv]
"DisplayName" = @%Systemroot%\system32\wbem\wmiapsrv.exe,-110
"ImagePath" = %systemroot%\system32\wbem\WmiApSrv.exe -- [2009.04.11 07:28:15 | 000,137,728 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\wbem\wmiapsrv.exe,-111
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"ServiceSidType" = 1
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WMPNetworkSvc]
"DisplayName" = @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101
"ErrorControl" = 1
"ImagePath" = "%ProgramFiles%\Windows Media Player\wmpnetwk.exe" -- [2008.01.21 03:25:33 |
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{EE09ACDE-DFD6-4BC3-AB57-040E96BFD1D0}] DATAGRAM 9
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000050]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 0E 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 DC A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 F9 FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 33 00 44 00 44 00 44 00 35 00 34 00 45 00 30 00 2D 00 32 00 38 00 33 00 46 00 2D 00 34 00 45 00 39 00 44 00 2D 00 39 00 33 00 41 00 33 00 2D 00 41 00 46 00 46 00 42 00 45 00 37 00 33 00 41 00 42 00 32 00 44 00 45 00 7D 00 5D 00 20 00 53 00 45 00 51 00 50 00 41 00 43 00 4B 00 45 00 54 00 20 00 37 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}] SEQPACKET 7
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000051]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 02 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 DD A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 F9 FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 33 00 44 00 44 00 44 00 35 00 34 00 45 00 30 00 2D 00 32 00 38 00 33 00 46 00 2D 00 34 00 45 00 39 00 44 00 2D 00 39 00 33 00 41 00 33 00 2D 00 41 00 46 00 46 00 42 00 45 00 37 00 33 00 41 00 42 00 32 00 44 00 45 00 7D 00 5D 00 20 00 44 00 41 00 54 00 41 00 47 00 52 00 41 00 4D 00 20 00 37 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}] DATAGRAM 7
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000052]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 0E 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 DE A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FC FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 32 00 34 00 39 00 33 00 30 00 38 00 34 00 33 00 2D 00 41 00 39 00 34 00 33 00 2D 00 34 00 33 00 31 00 34 00 2D 00 41 00 41 00 31 00 43 00 2D 00 46 00 43 00 32 00 33 00 43 00 32 00 38 00 43 00 32 00 41 00 32 00 36 00 7D 00 5D 00 20 00 53 00 45 00 51 00 50 00 41 00 43 00 4B 00 45 00 54 00 20 00 34 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{24930843-A943-4314-AA1C-FC23C28C2A26}] SEQPACKET 4
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000053]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 02 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 DF A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FC FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 32 00 34 00 39 00 33 00 30 00 38 00 34 00 33 00 2D 00 41 00 39 00 34 00 33 00 2D 00 34 00 33 00 31 00 34 00 2D 00 41 00 41 00 31 00 43 00 2D 00 46 00 43 00 32 00 33 00 43 00 32 00 38 00 43 00 32 00 41 00 32 00 36 00 7D 00 5D 00 20 00 44 00 41 00 54 00 41 00 47 00 52 00 41 00 4D 00 20 00 34 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{24930843-A943-4314-AA1C-FC23C28C2A26}] DATAGRAM 4
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000054]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 0E 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 E0 A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 05 00 00 00 FE FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 44 00 35 00 31 00 46 00 32 00 44 00 44 00 45 00 2D 00 34 00 30 00 39 00 42 00 2D 00 34 00 39 00 34 00 35 00 2D 00 38 00 43 00 45 00 33 00 2D 00 45 00 36 00 37 00 39 00 45 00 38 00 33 00 32 00 46 00 30 00 44 00 36 00 7D 00 5D 00 20 00 53 00 45 00 51 00 50 00 41 00 43 00 4B 00 45 00 54 00 20 00 32 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{D51F2DDE-409B-4945-8CE3-E679E832F0D6}] SEQPACKET 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000055]
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 02 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 E1 A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 11 00 00 00 14 00 00 00 14 00 00 00 02 00 00 00 FE FF FF FF 00 00 00 00 00 00 00 00 00 00 00 00 00 FA 00 00 00 00 00 00 4D 00 53 00 41 00 46 00 44 00 20 00 4E 00 65 00 74 00 42 00 49 00 4F 00 53 00 20 00 5B 00 5C 00 44 00 65 00 76 00 69 00 63 00 65 00 5C 00 4E 00 65 00 74 00 42 00 54 00 5F 00 54 00 63 00 70 00 69 00 70 00 36 00 5F 00 7B 00 44 00 35 00 31 00 46 00 32 00 44 00 44 00 45 00 2D 00 34 00 30 00 39 00 42 00 2D 00 34 00 39 00 34 00 35 00 2D 00 38 00 43 00 45 00 33 00 2D 00 45 00 36 00 37 00 39 00 45 00 38 00 33 00 32 00 46 00 30 00 44 00 36 00 7D 00 5D 00 20 00 44 00 41 00 54 00 41 00 47 00 52 00 41 00 4D 00 20 00 32 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"ProtocolName" = MSAFD NetBIOS [\Device\NetBT_Tcpip6_{D51F2DDE-409B-4945-8CE3-E679E832F0D6}] DATAGRAM 2
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wlansvc]
"DisplayName" = @%SystemRoot%\System32\wlansvc.dll,-257
"ErrorControl" = 1
"Group" = TDI
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%SystemRoot%\System32\wlansvc.dll,-258
"DependOnService" = nativewifipRpcSsNdisuioEaphost [binary data]
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImperson [Binary data over 200 bytes]
"FailureActions" = 2C 01 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wlansvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = WlanSvcMain
"ServiceDll" = %SystemRoot%\System32\wlansvc.dll -- [2009.07.11 20:01:42 | 000,513,536 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wlansvc\Parameters\OEM]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Wlansvc\Parameters\WlanAPIPermissions]
"Permit List" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Deny List" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"AC Enabled" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"BC Scan Enabled" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"BSS Type" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Show Denied" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Interface Properties" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Ihv Control" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"All User Profiles Order" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Add New All User Profiles" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCWPRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCWPRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCWPRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Add New Per User Profiles" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Media Streaming Mode Enabled" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCDCWPSDRCWD;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
"Current Operation Mode" = O:SYG:SYD:(A;;CCRC;;;BU)(A;;CCRC;;;NO)(A;;CCDCWPSDRCWD;;;NO)(A;;CCRC;;;BA)(A;;CCDCWPSDRCWD;;;BA)(D;;FA;;;WD)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WmiAcpi]
"DisplayName" = Microsoft Windows Management Interface for ACPI
"Group" = Extended Base
"ImagePath" = system32\DRIVERS\wmiacpi.sys -- [2008.01.21 03:23:00 | 000,011,264 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 12
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WmiAcpi\Enum]
"0" = ACPI\pnp0c14\NVIF
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WmiApRpl]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WmiApRpl\Performance]
"Library" = %systemroot%\system32\wbem\wmiaprpl.dll -- [2009.04.11 07:28:25 | 000,090,112 | ---- | M] (Microsoft Corporation)
"Open" = WmiOpenPerfData
"Collect" = WmiCollectPerfData
"Close" = WmiClosePerfData
"PerfIniFile" = WmiApRpl.ini
"Last Counter" = 10036
"Last Help" = 10037
"First Counter" = 9870
"First Help" = 9871
"Object List" = 9870 9876 9886 9896 9916 9960 9970 10008 10014 10030
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wmiApSrv]
"DisplayName" = @%Systemroot%\system32\wbem\wmiapsrv.exe,-110
"ImagePath" = %systemroot%\system32\wbem\WmiApSrv.exe -- [2009.04.11 07:28:15 | 000,137,728 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\wbem\wmiapsrv.exe,-111
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"ServiceSidType" = 1
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WMPNetworkSvc]
"DisplayName" = @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101
"ErrorControl" = 1
"ImagePath" = "%ProgramFiles%\Windows Media Player\wmpnetwk.exe" -- [2008.01.21 03:25:33 |
Re: policie čr prosim o radu
"PackedCatalogItem" = 25 53 79 73 74 65 6D 52 6F 6F 74 25 5C 73 79 73 74 65 6D 33 32 5C 6D 73 77 73 6F 63 6B 2E 64 6C 6C 00 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 E6 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 54 00 43 00 50 00 00 00 00 00 00 00 00 00 09 00 01 08 FD 19 00 0A 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 56 00 50 00 20 00 55 00 44 00 50 00 76 00 36 00 00 00 00 00 09 00 01 08 F4 19 00 0E 50 00 6F 00 73 00 6B 00 79 00 74 00 6F 00 76 00 61 00 74 00 65 00 6C 00 20 00 73 00 6C 00 75 00 7E 01 62 00 79 00 20 00 52 00 53 00 09 02 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 30 18 5F 8D 73 C2 CF 11 95 C8 00 80 5F 48 A1 92 D7 A6 02 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 000,896,512 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 16
"Description" = @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-102
"DependOnService" = UPnPHosthttp [binary data]
"ObjectName" = NT AUTHORITY\NetworkService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGlobalPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 30 75 00 00 01 00 00 00 30 75 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WMPNetworkSvc\Security]
"Security" = 01 00 14 80 8C 00 00 00 98 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 5C 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPCSvc]
"DisplayName" = @%SystemRoot%\system32\wpcsvc.dll,-100
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\wpcsvc.dll,-101
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = NT Authority\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilege [binary data]
"FailureCommand" = customScript.cmd
"RebootMessage" = This service should not reboot the machine
"FailureActions" = 50 46 00 00 01 00 00 00 01 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPCSvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\System32\wpcsvc.dll -- [2009.04.11 07:28:25 | 000,140,288 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPCSvc\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPDBusEnum]
"Start" = 2
"DisplayName" = @%SystemRoot%\system32\wpdbusenum.dll,-100
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Type" = 32
"Description" = @%SystemRoot%\system32\wpdbusenum.dll,-101
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPDBusEnum\BthActiveConnect]
"DCInterval" = 240
"ACInterval" = 120
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPDBusEnum\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\system32\wpdbusenum.dll -- [2009.10.01 02:01:54 | 000,081,920 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WpdUsb]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 22
"ImagePath" = system32\DRIVERS\wpdusb.sys -- [2009.10.01 02:01:54 | 000,040,448 | ---- | M] (Microsoft Corporation)
"DisplayName" = WpdUsb
"Group" = Base
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPFFontCache_v0400]
"Type" = 16
"Start" = 3
"ErrorControl" = 1
"ImagePath" = C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe -- [2010.03.18 13:16:28 | 000,753,504 | ---- | M] (Microsoft Corporation)
"DisplayName" = @C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100
"ObjectName" = NT AUTHORITY\LocalService
"Description" = @C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-101
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPrivilege [binary data]
"ServiceSidType" = 1
"FailureActions" = 80 51 01 00 01 00 00 00 01 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPFFontCache_v0400\Security]
"Security" = 01 00 14 88 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 13 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ws2ifsl]
"DisplayName" = Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS
"Group" = PNP_TDI
"ImagePath" = \SystemRoot\system32\drivers\ws2ifsl.sys
"Description" = Winsock IFS driver
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ws2ifsl\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ws2ifsl\Enum]
"0" = Root\LEGACY_WS2IFSL\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wscsvc]
"DisplayName" = @%SystemRoot%\System32\wscsvc.dll,-200
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%SystemRoot%\System32\wscsvc.dll,-201
"DependOnService" = RpcSsWinMgmt [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImpersonatePrivilege [binary data]
"DelayedAutoStart" = 1
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wscsvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\System32\wscsvc.dll -- [2009.04.11 07:28:26 | 000,061,440 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wscsvc\Security]
"Security" = 01 00 14 80 C8 00 00 00 D4 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 98 00 06 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 28 00 15 00 00 00 01 06 00 00 00 00 00 05 50 00 00 00 49 59 9D 77 91 56 E5 55 DC F4 E2 0E A7 8B EB CA 7B 42 13 56 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WSearch]
"DisplayName" = @%systemroot%\system32\SearchIndexer.exe,-103
"ErrorControl" = 1
"ImagePath" = %systemroot%\system32\SearchIndexer.exe /Embedding -- [2009.04.11 07:27:59 | 000,441,344 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 16
"Description" = @%systemroot%\system32\SearchIndexer.exe,-104
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeManageVo [Binary data over 200 bytes]
"FailureActionsOnNonCrashFailures" = 1
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 30 75 00 00 01 00 00 00 30 75 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WSearchIdxPi]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WSearchIdxPi\Performance]
"Close" = PerfmonIDXClose
"Open" = PerfmonIDXOpen
"Collect" = PerfmonIDXCollect
"Library" = %systemroot%\system32\tquery.dll -- [2009.04.11 07:28:24 | 001,576,960 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = idxcntrs.ini
"First Counter" = 3900
"Last Counter" = 4026
"First Help" = 3901
"Last Help" = 4027
"Object List" = 3900
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WTGService]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = C:\Program Files\InternetEverywhere\WTGService.exe -- [2010.04.07 09:55:11 | 000,312,784 | ---- | M] ()
"DisplayName" = WTGService
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wuauserv]
"PreshutdownTimeout" = 57600000
"DisplayName" = @%systemroot%\system32\wuaueng.dll,-105
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\wuaueng.dll,-106
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"DelayedAutoStart" = 1
"Type" = 32
"DependOnService" = rpcss [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeCreateGlobalPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wuauserv\Parameters]
"ServiceDll" = %systemroot%\system32\wuaueng.dll -- [2012.06.02 23:19:17 | 001,933,848 | ---- | M] (Microsoft Corporation)
"ServiceMain" = WUServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wuauserv\Security]
"Security" = 01 00 14 80 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 00 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WUDFRd]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\WUDFRd.sys -- [2008.01.21 03:24:59 | 000,083,328 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WUDFRd\Enum]
"0" = Root\WPD\0000
"Count" = 2
"NextInstance" = 2
"1" = Root\WPD\0001
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wudfsvc]
"DisplayName" = @%SystemRoot%\system32\wudfsvc.dll,-1000
"Group" = PlugPlay
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\wudfsvc.dll,-1001
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = PlugPlay [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeAssignPr [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wudfsvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\WUDFSvc.dll -- [2008.01.21 03:24:59 | 000,055,296 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wudfsvc\Security]
"Security" = 01 00 14 80 8C 00 00 00 98 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 00 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 5C 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\Connection]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\Connection\http://www.microsoft.com/provisioning/e ... opertiesv1]
"QueryAlias" = eaptlsconnectionpropertiesv1
"SchemaFile" = eaptlsconnectionpropertiesv1.xsd
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\Connection\http://www.microsoft.com/provisioning/m ... opertiesv1]
"QueryAlias" = mschapv2connectionpropertiesv1
"SchemaFile" = mschapv2connectionpropertiesv1.xsd
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\Connection\http://www.microsoft.com/provisioning/m ... opertiesv1]
"QueryAlias" = mspeapconnectionpropertiesv1
"SchemaFile" = mspeapconnectionpropertiesv1.xsd
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\User]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\User\http://www.microsoft.com/provisioning/e ... opertiesv1]
"QueryAlias" = eaptlsuserpropertiesv1
"SchemaFile" = eaptlsuserpropertiesv1.xsd
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\User\http://www.microsoft.com/provisioning/m ... opertiesv1]
"QueryAlias" = mschapv2userpropertiesv1
"SchemaFile" = mschapv2userpropertiesv1.xsd
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\User\http://www.microsoft.com/provisioning/m ... opertiesv1]
"QueryAlias" = mspeapuserpropertiesv1
"SchemaFile" = mspeapuserpropertiesv1.xsd
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\yukonwlh]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 20
"ImagePath" = system32\DRIVERS\yk60x86.sys -- [2006.11.02 08:30:56 | 000,194,048 | ---- | M] (Marvell)
"DisplayName" = NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller
"Group" = NDIS
"BootFlags" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ZTEusbMB]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ZTEusbnmeaext2.sys -- [2010.02.22 16:33:48 | 000,105,856 | ---- | M] (ZTE Incorporated)
"DisplayName" = ZTE NMEAExt2 Port
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ZTEusbmdm6k]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ZTEusbmdm6k.sys -- [2010.02.22 16:33:48 | 000,105,856 | ---- | M] (ZTE Incorporated)
"DisplayName" = ZTE Proprietary USB Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ZTEusbnet]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 27
"ImagePath" = system32\DRIVERS\ZTEusbnet.sys -- [2009.12.28 14:05:06 | 000,114,688 | ---- | M] (ZTE Corporation)
"DisplayName" = ZTE USB-NDIS miniport
"Group" = NDIS
"TextModeFlags" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ZTEusbnmea]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ZTEusbnmea.sys -- [2010.02.22 16:33:48 | 000,105,856 | ---- | M] (ZTE Incorporated)
"DisplayName" = ZTE NMEA Port
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ZTEusbnmeaext]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ZTEusbnmeaext.sys -- [2011.02.01 20:38:01 | 000,105,088 | ---- | M] (ZTE Incorporated)
"DisplayName" = ZTE NMEAExt Port
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ZTEusbser6k]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ZTEusbser6k.sys -- [2010.02.22 16:33:48 | 000,105,856 | ---- | M] (ZTE Incorporated)
"DisplayName" = ZTE Diagnostic Port
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ZTEWMSD_637]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 23
"ImagePath" = System32\Drivers\ZTEWMSD_637.sys -- [2011.02.01 20:38:01 | 000,015,360 | ---- | M] (ZTE Corporation)
"DisplayName" = ZTE WCDMA 637 Dummy MSD Device
"Group" = Base
"DevLoader" = *ntkern
"NTMPDriver" = ZTEWMSD_637.sys
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}\Parameters\Tcpip]
"EnableDHCP" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{1E26EC88-A56D-4921-A26F-BE842C7AD246}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{1E26EC88-A56D-4921-A26F-BE842C7AD246}\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{1E26EC88-A56D-4921-A26F-BE842C7AD246}\Parameters\Tcpip]
"EnableDHCP" = 1
"DefaultGateway" = 5.0.0.1 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{24930843-A943-4314-AA1C-FC23C28C2A26}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{24930843-A943-4314-AA1C-FC23C28C2A26}\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{24930843-A943-4314-AA1C-FC23C28C2A26}\Parameters\Tcpip]
"EnableDHCP" = 1
"IPAddress" = [binary data]
"SubnetMask" = [binary data]
"DefaultGateway" = [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}\Parameters\Tcpip]
"EnableDHCP" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{D51F2DDE-409B-4945-8CE3-E679E832F0D6}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{D51F2DDE-409B-4945-8CE3-E679E832F0D6}\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{D51F2DDE-409B-4945-8CE3-E679E832F0D6}\Parameters\Tcpip]
"EnableDHCP" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}\Parameters\Tcpip]
"EnableDHCP" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{EAE456AC-9095-4125-B655-830A8A22A5A6}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{EAE456AC-9095-4125-B655-830A8A22A5A6}\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{EAE456AC-9095-4125-B655-830A8A22A5A6}\Parameters\Tcpip]
"EnableDHCP" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\alaro984]
"Start" = 3
"Type" = 1
"Group" = SCSI miniport
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\alaro984\Enum]
"0" = ACPI\PNPA000\4&5d18f2df&0
"Count" = 1
"Start" = 3
"Type" = 16
"Description" = @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-102
"DependOnService" = UPnPHosthttp [binary data]
"ObjectName" = NT AUTHORITY\NetworkService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGlobalPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 30 75 00 00 01 00 00 00 30 75 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WMPNetworkSvc\Security]
"Security" = 01 00 14 80 8C 00 00 00 98 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 5C 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPCSvc]
"DisplayName" = @%SystemRoot%\system32\wpcsvc.dll,-100
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\wpcsvc.dll,-101
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = NT Authority\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilege [binary data]
"FailureCommand" = customScript.cmd
"RebootMessage" = This service should not reboot the machine
"FailureActions" = 50 46 00 00 01 00 00 00 01 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPCSvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\System32\wpcsvc.dll -- [2009.04.11 07:28:25 | 000,140,288 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPCSvc\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPDBusEnum]
"Start" = 2
"DisplayName" = @%SystemRoot%\system32\wpdbusenum.dll,-100
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Type" = 32
"Description" = @%SystemRoot%\system32\wpdbusenum.dll,-101
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPDBusEnum\BthActiveConnect]
"DCInterval" = 240
"ACInterval" = 120
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPDBusEnum\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\system32\wpdbusenum.dll -- [2009.10.01 02:01:54 | 000,081,920 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WpdUsb]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 22
"ImagePath" = system32\DRIVERS\wpdusb.sys -- [2009.10.01 02:01:54 | 000,040,448 | ---- | M] (Microsoft Corporation)
"DisplayName" = WpdUsb
"Group" = Base
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPFFontCache_v0400]
"Type" = 16
"Start" = 3
"ErrorControl" = 1
"ImagePath" = C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe -- [2010.03.18 13:16:28 | 000,753,504 | ---- | M] (Microsoft Corporation)
"DisplayName" = @C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100
"ObjectName" = NT AUTHORITY\LocalService
"Description" = @C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-101
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPrivilege [binary data]
"ServiceSidType" = 1
"FailureActions" = 80 51 01 00 01 00 00 00 01 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WPFFontCache_v0400\Security]
"Security" = 01 00 14 88 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 13 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ws2ifsl]
"DisplayName" = Podpůrné prostředí zprostředkovatele služeb Windows Socket 2.0 bez podpory IFS
"Group" = PNP_TDI
"ImagePath" = \SystemRoot\system32\drivers\ws2ifsl.sys
"Description" = Winsock IFS driver
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ws2ifsl\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ws2ifsl\Enum]
"0" = Root\LEGACY_WS2IFSL\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wscsvc]
"DisplayName" = @%SystemRoot%\System32\wscsvc.dll,-200
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%SystemRoot%\System32\wscsvc.dll,-201
"DependOnService" = RpcSsWinMgmt [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImpersonatePrivilege [binary data]
"DelayedAutoStart" = 1
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wscsvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\System32\wscsvc.dll -- [2009.04.11 07:28:26 | 000,061,440 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wscsvc\Security]
"Security" = 01 00 14 80 C8 00 00 00 D4 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 98 00 06 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 28 00 15 00 00 00 01 06 00 00 00 00 00 05 50 00 00 00 49 59 9D 77 91 56 E5 55 DC F4 E2 0E A7 8B EB CA 7B 42 13 56 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WSearch]
"DisplayName" = @%systemroot%\system32\SearchIndexer.exe,-103
"ErrorControl" = 1
"ImagePath" = %systemroot%\system32\SearchIndexer.exe /Embedding -- [2009.04.11 07:27:59 | 000,441,344 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 16
"Description" = @%systemroot%\system32\SearchIndexer.exe,-104
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeManageVo [Binary data over 200 bytes]
"FailureActionsOnNonCrashFailures" = 1
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 30 75 00 00 01 00 00 00 30 75 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WSearchIdxPi]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WSearchIdxPi\Performance]
"Close" = PerfmonIDXClose
"Open" = PerfmonIDXOpen
"Collect" = PerfmonIDXCollect
"Library" = %systemroot%\system32\tquery.dll -- [2009.04.11 07:28:24 | 001,576,960 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = idxcntrs.ini
"First Counter" = 3900
"Last Counter" = 4026
"First Help" = 3901
"Last Help" = 4027
"Object List" = 3900
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WTGService]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = C:\Program Files\InternetEverywhere\WTGService.exe -- [2010.04.07 09:55:11 | 000,312,784 | ---- | M] ()
"DisplayName" = WTGService
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wuauserv]
"PreshutdownTimeout" = 57600000
"DisplayName" = @%systemroot%\system32\wuaueng.dll,-105
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\wuaueng.dll,-106
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"DelayedAutoStart" = 1
"Type" = 32
"DependOnService" = rpcss [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeCreateGlobalPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wuauserv\Parameters]
"ServiceDll" = %systemroot%\system32\wuaueng.dll -- [2012.06.02 23:19:17 | 001,933,848 | ---- | M] (Microsoft Corporation)
"ServiceMain" = WUServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wuauserv\Security]
"Security" = 01 00 14 80 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 00 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WUDFRd]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\WUDFRd.sys -- [2008.01.21 03:24:59 | 000,083,328 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WUDFRd\Enum]
"0" = Root\WPD\0000
"Count" = 2
"NextInstance" = 2
"1" = Root\WPD\0001
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wudfsvc]
"DisplayName" = @%SystemRoot%\system32\wudfsvc.dll,-1000
"Group" = PlugPlay
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\wudfsvc.dll,-1001
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = PlugPlay [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeAssignPr [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wudfsvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\WUDFSvc.dll -- [2008.01.21 03:24:59 | 000,055,296 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wudfsvc\Security]
"Security" = 01 00 14 80 8C 00 00 00 98 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 00 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 5C 00 04 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\Connection]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\Connection\http://www.microsoft.com/provisioning/e ... opertiesv1]
"QueryAlias" = eaptlsconnectionpropertiesv1
"SchemaFile" = eaptlsconnectionpropertiesv1.xsd
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\Connection\http://www.microsoft.com/provisioning/m ... opertiesv1]
"QueryAlias" = mschapv2connectionpropertiesv1
"SchemaFile" = mschapv2connectionpropertiesv1.xsd
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\Connection\http://www.microsoft.com/provisioning/m ... opertiesv1]
"QueryAlias" = mspeapconnectionpropertiesv1
"SchemaFile" = mspeapconnectionpropertiesv1.xsd
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\User]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\User\http://www.microsoft.com/provisioning/e ... opertiesv1]
"QueryAlias" = eaptlsuserpropertiesv1
"SchemaFile" = eaptlsuserpropertiesv1.xsd
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\User\http://www.microsoft.com/provisioning/m ... opertiesv1]
"QueryAlias" = mschapv2userpropertiesv1
"SchemaFile" = mschapv2userpropertiesv1.xsd
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\xmlprov\Parameters\SchemaGroups\User\http://www.microsoft.com/provisioning/m ... opertiesv1]
"QueryAlias" = mspeapuserpropertiesv1
"SchemaFile" = mspeapuserpropertiesv1.xsd
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\yukonwlh]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 20
"ImagePath" = system32\DRIVERS\yk60x86.sys -- [2006.11.02 08:30:56 | 000,194,048 | ---- | M] (Marvell)
"DisplayName" = NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller
"Group" = NDIS
"BootFlags" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ZTEusbMB]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ZTEusbnmeaext2.sys -- [2010.02.22 16:33:48 | 000,105,856 | ---- | M] (ZTE Incorporated)
"DisplayName" = ZTE NMEAExt2 Port
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ZTEusbmdm6k]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ZTEusbmdm6k.sys -- [2010.02.22 16:33:48 | 000,105,856 | ---- | M] (ZTE Incorporated)
"DisplayName" = ZTE Proprietary USB Driver
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ZTEusbnet]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 27
"ImagePath" = system32\DRIVERS\ZTEusbnet.sys -- [2009.12.28 14:05:06 | 000,114,688 | ---- | M] (ZTE Corporation)
"DisplayName" = ZTE USB-NDIS miniport
"Group" = NDIS
"TextModeFlags" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ZTEusbnmea]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ZTEusbnmea.sys -- [2010.02.22 16:33:48 | 000,105,856 | ---- | M] (ZTE Incorporated)
"DisplayName" = ZTE NMEA Port
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ZTEusbnmeaext]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ZTEusbnmeaext.sys -- [2011.02.01 20:38:01 | 000,105,088 | ---- | M] (ZTE Incorporated)
"DisplayName" = ZTE NMEAExt Port
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ZTEusbser6k]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ZTEusbser6k.sys -- [2010.02.22 16:33:48 | 000,105,856 | ---- | M] (ZTE Incorporated)
"DisplayName" = ZTE Diagnostic Port
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\ZTEWMSD_637]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 23
"ImagePath" = System32\Drivers\ZTEWMSD_637.sys -- [2011.02.01 20:38:01 | 000,015,360 | ---- | M] (ZTE Corporation)
"DisplayName" = ZTE WCDMA 637 Dummy MSD Device
"Group" = Base
"DevLoader" = *ntkern
"NTMPDriver" = ZTEWMSD_637.sys
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}\Parameters\Tcpip]
"EnableDHCP" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{1E26EC88-A56D-4921-A26F-BE842C7AD246}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{1E26EC88-A56D-4921-A26F-BE842C7AD246}\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{1E26EC88-A56D-4921-A26F-BE842C7AD246}\Parameters\Tcpip]
"EnableDHCP" = 1
"DefaultGateway" = 5.0.0.1 [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{24930843-A943-4314-AA1C-FC23C28C2A26}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{24930843-A943-4314-AA1C-FC23C28C2A26}\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{24930843-A943-4314-AA1C-FC23C28C2A26}\Parameters\Tcpip]
"EnableDHCP" = 1
"IPAddress" = [binary data]
"SubnetMask" = [binary data]
"DefaultGateway" = [binary data]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}\Parameters\Tcpip]
"EnableDHCP" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{D51F2DDE-409B-4945-8CE3-E679E832F0D6}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{D51F2DDE-409B-4945-8CE3-E679E832F0D6}\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{D51F2DDE-409B-4945-8CE3-E679E832F0D6}\Parameters\Tcpip]
"EnableDHCP" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}\Parameters\Tcpip]
"EnableDHCP" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{EAE456AC-9095-4125-B655-830A8A22A5A6}]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{EAE456AC-9095-4125-B655-830A8A22A5A6}\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\{EAE456AC-9095-4125-B655-830A8A22A5A6}\Parameters\Tcpip]
"EnableDHCP" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\alaro984]
"Start" = 3
"Type" = 1
"Group" = SCSI miniport
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\alaro984\Enum]
"0" = ACPI\PNPA000\4&5d18f2df&0
"Count" = 1
Re: policie čr prosim o radu
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\alaro984\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\alaro984\Parameters\PnpInterface]
"0" = 1
< HKLM\System\ControlSet001\Services /S >
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Data\Linkage]
"Export" = 2e,00,4e,00,45,00,54,00,20,00,43,00,4c,00,52,00,20,00,44,00,61,00,74,00,61,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Data\Performance]
"IsMultiInstance" = 1
"CategoryOptions" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Close" = ClosePerformanceData
"Library" = netfxperf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"Counter Types" = 655366553665536655366553665536 [binary data]
"Counter Names" = SqlClient: Current # pooled and no [Binary data over 200 bytes]
"InstallType" = 1
"PerfIniFile" = _DataPerfCounters_D.ini
"First Counter" = 3502
"Last Counter" = 3514
"First Help" = 3503
"Last Help" = 3515
"Object List" = 3502
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Networking]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Networking\Linkage]
"Export" = 2e,00,4e,00,45,00,54,00,20,00,43,00,4c,00,52,00,20,00,4e,00,65,00,74,00,77,00,6f,00,72,00,6b,00,69,00,6e,00,67,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Networking\Performance]
"IsMultiInstance" = 1
"FileMappingSize" = 131072
"CategoryOptions" = 3
"Collect" = CollectPerformanceData
"Close" = ClosePerformanceData
"Library" = netfxperf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"Counter Types" = 6553665792657926553665536 [binary data]
"Open" = OpenPerformanceData
"Counter Names" = Connections EstablishedBytes Rece [Binary data over 200 bytes]
"InstallType" = 1
"PerfIniFile" = _Networkingperfcounters_D.ini
"First Counter" = 3460
"Last Counter" = 3470
"First Help" = 3461
"Last Help" = 3471
"Object List" = 3460
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Networking 4.0.0.0]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Networking 4.0.0.0\Linkage]
"Export" = .NET CLR Networking 4.0.0.0 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Networking 4.0.0.0\Performance]
"Counter Names" = Connections EstablishedBytes Rece [Binary data over 200 bytes]
"Counter Types" = 65536657926579265536655364195 [Binary data over 200 bytes]
"Library" = netfxperf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"Close" = ClosePerformanceData
"Collect" = CollectPerformanceData
"Open" = OpenPerformanceData
"IsMultiInstance" = 1
"FileMappingSize" = 131072
"CategoryOptions" = 3
"PerfIniFile" = _Networkingperfcounters.ini
"Last Counter" = 6250
"Last Help" = 6251
"First Counter" = 6224
"First Help" = 6225
"Object List" = 6224
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET Data Provider for Oracle]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET Data Provider for Oracle\Linkage]
"Export" = 2e,00,4e,00,45,00,54,00,20,00,44,00,61,00,74,00,61,00,20,00,50,00,72,00,6f,00,76,00,69,00,64,00,65,00,72,00,20,00,66,00,6f,00,72,00,20,00,4f,00,72,00,61,00,63,00,6c,00,65,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET Data Provider for Oracle\Performance]
"Close" = ClosePerformanceData
"Counter Names" = HardConnectsPerSecondHardDisconne [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = netfxperf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"Counter Types" = 2726963202726963202726963202726 [Binary data over 200 bytes]
"FileMappingSize" = 131072
"CategoryOptions" = 3
"InstallType" = 1
"PerfIniFile" = _DataOracleClientPerfCounters_shared12_neutral_D.ini
"First Counter" = 3692
"Last Counter" = 3720
"First Help" = 3693
"Last Help" = 3721
"Object List" = 3692
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET Data Provider for SqlServer]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET Data Provider for SqlServer\Linkage]
"Export" = 2e,00,4e,00,45,00,54,00,20,00,44,00,61,00,74,00,61,00,20,00,50,00,72,00,6f,00,76,00,69,00,64,00,65,00,72,00,20,00,66,00,6f,00,72,00,20,00,53,00,71,00,6c,00,53,00,65,00,72,00,76,00,65,00,72,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET Data Provider for SqlServer\Performance]
"Open" = OpenPerformanceData
"CategoryOptions" = 3
"Counter Names" = HardConnectsPerSecondHardDisconne [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Library" = netfxperf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"Counter Types" = 2726963202726963202726963202726 [Binary data over 200 bytes]
"IsMultiInstance" = 1
"FileMappingSize" = 131072
"Collect" = CollectPerformanceData
"InstallType" = 1
"PerfIniFile" = _dataperfcounters_shared12_neutral_D.ini
"First Counter" = 3472
"Last Counter" = 3500
"First Help" = 3473
"Last Help" = 3501
"Object List" = 3472
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NETFramework]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NETFramework\Performance]
"Close" = CloseCtrs
"Collect" = CollectCtrs
"Open" = OpenCtrs
"Library" = mscoree.dll -- [2009.11.08 09:55:32 | 000,297,808 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = corperfmonsymbols_D.ini
"First Counter" = 3516
"Last Counter" = 3690
"First Help" = 3517
"Last Help" = 3691
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ACPI]
"Tag" = 1
"DisplayName" = Ovladač standardu ACPI společnosti Microsoft
"Group" = Boot Bus Extender
"ImagePath" = system32\drivers\acpi.sys -- [2009.04.11 07:32:46 | 000,265,688 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ACPI\Parameters]
"WHEAOSCImplemented" = [binary data]
"AMLIMaxCTObjs" = [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ACPI\Parameters\WakeUp]
"FixedEventMask" = 20 05 [binary data]
"FixedEventStatus" = 10 81 [binary data]
"GenericEventMask" = 01 20 21 00 00 00 00 00 00 00 00 00 [binary data]
"GenericEventStatus" = 42 00 10 00 28 10 00 40 02 00 A2 08 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ACPI\Enum]
"0" = ACPI_HAL\PNP0C08\0
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adp94xx]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\adp94xx.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adp94xx\Parameters]
"BusType" = 10
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adp94xx\Parameters\Device]
"DriverParameter" = DisableIoctl=1;
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adp94xx\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpahci]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\adpahci.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpahci\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpahci\Parameters\Device]
"DriverParameter" = DisableIoctl=1;
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpahci\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpu160m]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\adpu160m.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpu160m\Parameters]
"BusType" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpu160m\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpu320]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\adpu320.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpu320\Parameters]
"BusType" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpu320\Parameters\Device]
"DriverParameter" = /MAXTAGS=64
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpu320\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adsi]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adsi\Cache]
"PerMachine" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adsi\tracing]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AeLookupSvc]
"DisplayName" = @%SystemRoot%\system32\aelupsvc.dll,-1
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\aelupsvc.dll,-2
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"RequiredPrivileges" = SeTcbPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AeLookupSvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\aelupsvc.dll -- [2006.11.02 10:46:02 | 000,024,576 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AFD]
"DisplayName" = Ancilliary Function Driver for Winsock
"Group" = PNP_TDI
"ImagePath" = \SystemRoot\system32\drivers\afd.sys
"Description" = Ancilliary Function Driver for Winsock
"ErrorControl" = 1
"Start" = 1
"Type" = 1
"BootFlags" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AFD\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AFD\Enum]
"0" = Root\LEGACY_AFD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\agp440]
"DisplayName" = Intel AGP Bus Filter
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\agp440.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\agp440\Parameters]
"3D3D07A1" = 04 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aic78xx]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\djsvs.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aic78xx\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aic78xx\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ALG]
"DisplayName" = @%SystemRoot%\system32\Alg.exe,-112
"ImagePath" = %SystemRoot%\System32\alg.exe -- [2008.01.21 03:24:14 | 000,059,392 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\Alg.exe,-113
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aliide]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\aliide.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\amdagp]
"DisplayName" = AMD AGP Bus Filter Driver
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\amdagp.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\amdagp\Parameters]
"10DE002D" = 00 00 10 00 8F FA 84 D5 [binary data]
"102B0525" = 00 00 10 00 8E F8 83 A5 [binary data]
"53338A22" = 00 00 10 00 8E F8 83 A5 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\amdide]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\amdide.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AmdK7]
"DisplayName" = AMD K7 Processor Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\amdk7.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AmdK8]
"DisplayName" = AMD K8 Processor Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\amdk8.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Appinfo]
"DisplayName" = @%systemroot%\system32\appinfo.dll,-100
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\appinfo.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSsProfSvc [binary data]
"RequiredPrivileges" = SeAssignPrimaryTokenPrivilegeSeIn [Binary data over 200 bytes]
"FailureActions" = FF FF FF FF 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Appinfo\Parameters]
"ServiceDll" = %SystemRoot%\System32\appinfo.dll -- [2008.01.21 03:24:17 | 000,033,280 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Appinfo\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\arc]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\arc.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\arc\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\arc\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\arcsas]
"Group" = SCSI miniport
"ImagePath" = \SystemRoot\system32\drivers\arcsas.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\arcsas\Parameters]
"BusType" = 10
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\arcsas\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ASLDRService]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = C:\Program Files\ATK Hotkey\ASLDRSrv.exe -- [2007.10.03 05:53:00 | 000,094,208 | ---- | M] ()
"DisplayName" = ASLDR Service
"Group" = ShellSvcGroup
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ASMMAP]
"Type" = 1
"Start" = 2
"ErrorControl" = 1
"ImagePath" = \??\C:\Program Files\ATKGFNEX\ASMMAP.sys -- [2007.07.24 19:09:04 | 000,013,880 | ---- | M] ()
"DisplayName" = ASMMAP
"Group" = ShellSvcGroup
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ASMMAP\Enum]
"0" = Root\LEGACY_ASMMAP\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswFsBlk]
"DisplayName" = aswFsBlk
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\aswFsBlk.sys -- [2009.11.24 23:50:00 | 000,020,560 | ---- | M] (ALWIL Software)
"Type" = 2
"Start" = 2
"Group" = FSFilter Activity Monitor
"DependOnService" = FltMgr [binary data]
"Tag" = 2
"Description" = avast! mini-filter driver (aswFsBlk)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswFsBlk\Instances]
"DefaultInstance" = aswFsBlk Instance
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswFsBlk\Instances\aswFsBlk Instance]
"Altitude" = 388400
"Flags" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswFsBlk\Enum]
"0" = Root\LEGACY_ASWFSBLK\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswMonFlt]
"Type" = 2
"Start" = 2
"ErrorControl" = 1
"Tag" = 2
"ImagePath" = system32\DRIVERS\aswMonFlt.sys -- [2009.11.24 23:49:48 | 000,053,328 | ---- | M] (ALWIL Software)
"DisplayName" = aswMonFlt
"Group" = FSFilter Anti-Virus
"DependOnService" = FltMgr [binary data]
"Description" = avast! mini-filter driver (aswMonFlt)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswMonFlt\Instances]
"DefaultInstance" = aswMonFlt Instance
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswMonFlt\Instances\aswMonFlt Instance]
"Altitude" = 320700
"Flags" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswMonFlt\Enum]
"0" = Root\LEGACY_ASWMONFLT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswRdr]
"DisplayName" = aswRdr
"ErrorControl" = 1
"Type" = 1
"Start" = 1
"Group" = PNP_TDI
"DependOnService" = tcpip [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswRdr\Parameters]
"IgnoreLSPDefault" = nl_lsp.dll,imon.dll,xfire_lsp.dll,mslsp.dll,mssplsp.dll,cwhook.dll,spi.dll
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswRdr\Parameters2]
"IgnoreLSPDefault" = vlsp.dll
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswRdr\Enum]
"0" = Root\LEGACY_ASWRDR\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswSP]
"DisplayName" = avast! Self Protection
"ErrorControl" = 1
"Type" = 1
"Start" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswSP\Parameters]
"ProgramFolder" = \Device\HarddiskVolume2\Program Files\Alwil Software\Avast4
"ProgramFolder2" = \DosDevices\C:\Program Files\Alwil Software\Avast4
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswSP\Enum]
"0" = Root\LEGACY_ASWSP\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswTdi]
"DisplayName" = avast! Network Shield Support
"ErrorControl" = 1
"Type" = 1
"Group" = PNP_TDI
"Start" = 1
"DependOnService" = tcpip [binary data]
"Tag" = 11
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswTdi\Parameters]
"ProviderStart" = 3
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswTdi\Enum]
"0" = Root\LEGACY_ASWTDI\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswUpdSv]
"Type" = 272
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe" -- [2009.11.24 23:43:56 | 000,018,752 | ---- | M] (ALWIL Software)
"DisplayName" = avast! iAVS4 Control Service
"Group" = ShellSvcGroup
"ObjectName" = LocalSystem
"Description" = Zajišťuje spouštění aktualizace pro antivirus avast!.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AsyncMac]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\asyncmac.sys -- [2008.01.21 03:24:04 | 000,017,408 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32000
"Description" = @%systemroot%\system32\rascfg.dll,-32000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\atapi]
"DisplayName" = Kanál IDE
"Group" = SCSI Miniport
"ImagePath" = system32\drivers\atapi.sys -- [2009.04.11 07:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
"Tag" = 33
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\atapi\Enum]
"0" = Root\LEGACY_ATAPI\0000
"Count" = 3
"NextInstance" = 3
"1" = PCIIDE\IDEChannel\4&20fd29d8&0&0
"2" = PCIIDE\IDEChannel\4&20fd29d8&0&1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\athr]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 24
"ImagePath" = system32\DRIVERS\athr.sys -- [2008.04.06 02:56:08 | 000,908,800 | ---- | M] (Atheros Communications, Inc.)
"DisplayName" = Atheros Extensible Wireless LAN device driver
"Group" = NDIS
"BootFlags" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\athr\Enum]
"0" = PCI\VEN_168C&DEV_002A&SUBSYS_10671A3B&REV_01\4&34f7fca2&0&00B0
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ATKGFNEXSrv]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = C:\Program Files\ATKGFNEX\GFNEXSrv.exe -- [2007.08.08 08:08:40 | 000,094,208 | ---- | M] ()
"DisplayName" = ATKGFNEX Service
"Group" = ShellSvcGroup
"DependOnService" = ASMMAP [binary data]
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AudioEndpointBuilder]
"DisplayName" = @%SystemRoot%\system32\audiosrv.dll,-204
"Group" = AudioGroup
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\audiosrv.dll,-205
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = PlugPlay [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = 00 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AudioEndpointBuilder\Parameters]
"ServiceDll" = %SystemRoot%\System32\Audiosrv.dll -- [2009.04.11 07:28:18 | 000,315,392 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Audiosrv]
"DisplayName" = @%SystemRoot%\system32\audiosrv.dll,-200
"Group" = AudioGroup
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\audiosrv.dll,-201
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = AudioEndpointBuilderRpcSsMMCSS [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImperson [Binary data over 200 bytes]
"FailureActions" = 00 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Audiosrv\Parameters]
"ServiceDll" = %SystemRoot%\System32\Audiosrv.dll -- [2009.04.11 07:28:18 | 000,315,392 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\avast! Antivirus]
"Description" = Zajišťuje antivirové služby programu avast!, jako např. rezidentní ochranu, virovou truhlu a plánovač.
"DependOnService" = aswMonFltRpcSS [binary data]
"Type" = 272
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Alwil Software\Avast4\ashServ.exe" -- [2009.11.24 23:51:35 | 000,138,680 | ---- | M] (ALWIL Software)
"DisplayName" = avast! Antivirus
"Group" = ShellSvcGroup
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\avast! Mail Scanner]
"Type" = 272
"Start" = 3
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service -- [2009.11.24 23:51:21 | 000,254,040 | ---- | M] (ALWIL Software)
"DisplayName" = avast! Mail Scanner
"Group" = ShellSvcGroup
"DependOnService" = avast! Antivirus [binary data]
"ObjectName" = LocalSystem
"Description" = Zajišťuje kontrolu pošty pro avast! antivirus.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\avast! Web Scanner]
"Type" = 272
"Start" = 3
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service -- [2009.11.24 23:48:48 | 000,352,920 | ---- | M] (ALWIL Software)
"DisplayName" = avast! Web Scanner
"Group" = ShellSvcGroup
"DependOnService" = avast! Antivirus [binary data]
"ObjectName" = LocalSystem
"Description" = Zajišťuje kontrolu WWW (HTTP) pro avast! antivirus.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\BattC]
"MofImagePath" = system32\drivers\battc.sys -- [2008.01.21 03:23:00 | 000,028,216 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Beep]
"DisplayName" = Beep
"Group" = Base
"ErrorControl" = 1
"Start" = 1
"Tag" = 2
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Beep\Enum]
"0" = Root\LEGACY_BEEP\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\BFE]
"DisplayName" = @%SystemRoot%\system32\bfe.dll,-1001
"Group" = NetworkProvider
"ImagePath" = %systemroot%\system32\svchost.exe -k LocalServiceNoNetwork -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\bfe.dll,-1002
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 3
"RequiredPrivileges" = SeAuditPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\BFE\Parameters]
"ServiceDll" = %SystemRoot%\System32\bfe.dll -- [2009.04.11 07:28:18 | 000,334,848 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\alaro984\Parameters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\alaro984\Parameters\PnpInterface]
"0" = 1
< HKLM\System\ControlSet001\Services /S >
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Data\Linkage]
"Export" = 2e,00,4e,00,45,00,54,00,20,00,43,00,4c,00,52,00,20,00,44,00,61,00,74,00,61,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Data\Performance]
"IsMultiInstance" = 1
"CategoryOptions" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Close" = ClosePerformanceData
"Library" = netfxperf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"Counter Types" = 655366553665536655366553665536 [binary data]
"Counter Names" = SqlClient: Current # pooled and no [Binary data over 200 bytes]
"InstallType" = 1
"PerfIniFile" = _DataPerfCounters_D.ini
"First Counter" = 3502
"Last Counter" = 3514
"First Help" = 3503
"Last Help" = 3515
"Object List" = 3502
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Networking]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Networking\Linkage]
"Export" = 2e,00,4e,00,45,00,54,00,20,00,43,00,4c,00,52,00,20,00,4e,00,65,00,74,00,77,00,6f,00,72,00,6b,00,69,00,6e,00,67,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Networking\Performance]
"IsMultiInstance" = 1
"FileMappingSize" = 131072
"CategoryOptions" = 3
"Collect" = CollectPerformanceData
"Close" = ClosePerformanceData
"Library" = netfxperf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"Counter Types" = 6553665792657926553665536 [binary data]
"Open" = OpenPerformanceData
"Counter Names" = Connections EstablishedBytes Rece [Binary data over 200 bytes]
"InstallType" = 1
"PerfIniFile" = _Networkingperfcounters_D.ini
"First Counter" = 3460
"Last Counter" = 3470
"First Help" = 3461
"Last Help" = 3471
"Object List" = 3460
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Networking 4.0.0.0]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Networking 4.0.0.0\Linkage]
"Export" = .NET CLR Networking 4.0.0.0 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET CLR Networking 4.0.0.0\Performance]
"Counter Names" = Connections EstablishedBytes Rece [Binary data over 200 bytes]
"Counter Types" = 65536657926579265536655364195 [Binary data over 200 bytes]
"Library" = netfxperf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"Close" = ClosePerformanceData
"Collect" = CollectPerformanceData
"Open" = OpenPerformanceData
"IsMultiInstance" = 1
"FileMappingSize" = 131072
"CategoryOptions" = 3
"PerfIniFile" = _Networkingperfcounters.ini
"Last Counter" = 6250
"Last Help" = 6251
"First Counter" = 6224
"First Help" = 6225
"Object List" = 6224
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET Data Provider for Oracle]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET Data Provider for Oracle\Linkage]
"Export" = 2e,00,4e,00,45,00,54,00,20,00,44,00,61,00,74,00,61,00,20,00,50,00,72,00,6f,00,76,00,69,00,64,00,65,00,72,00,20,00,66,00,6f,00,72,00,20,00,4f,00,72,00,61,00,63,00,6c,00,65,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET Data Provider for Oracle\Performance]
"Close" = ClosePerformanceData
"Counter Names" = HardConnectsPerSecondHardDisconne [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = netfxperf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"Counter Types" = 2726963202726963202726963202726 [Binary data over 200 bytes]
"FileMappingSize" = 131072
"CategoryOptions" = 3
"InstallType" = 1
"PerfIniFile" = _DataOracleClientPerfCounters_shared12_neutral_D.ini
"First Counter" = 3692
"Last Counter" = 3720
"First Help" = 3693
"Last Help" = 3721
"Object List" = 3692
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET Data Provider for SqlServer]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET Data Provider for SqlServer\Linkage]
"Export" = 2e,00,4e,00,45,00,54,00,20,00,44,00,61,00,74,00,61,00,20,00,50,00,72,00,6f,00,76,00,69,00,64,00,65,00,72,00,20,00,66,00,6f,00,72,00,20,00,53,00,71,00,6c,00,53,00,65,00,72,00,76,00,65,00,72,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NET Data Provider for SqlServer\Performance]
"Open" = OpenPerformanceData
"CategoryOptions" = 3
"Counter Names" = HardConnectsPerSecondHardDisconne [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Library" = netfxperf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"Counter Types" = 2726963202726963202726963202726 [Binary data over 200 bytes]
"IsMultiInstance" = 1
"FileMappingSize" = 131072
"Collect" = CollectPerformanceData
"InstallType" = 1
"PerfIniFile" = _dataperfcounters_shared12_neutral_D.ini
"First Counter" = 3472
"Last Counter" = 3500
"First Help" = 3473
"Last Help" = 3501
"Object List" = 3472
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NETFramework]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\.NETFramework\Performance]
"Close" = CloseCtrs
"Collect" = CollectCtrs
"Open" = OpenCtrs
"Library" = mscoree.dll -- [2009.11.08 09:55:32 | 000,297,808 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = corperfmonsymbols_D.ini
"First Counter" = 3516
"Last Counter" = 3690
"First Help" = 3517
"Last Help" = 3691
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ACPI]
"Tag" = 1
"DisplayName" = Ovladač standardu ACPI společnosti Microsoft
"Group" = Boot Bus Extender
"ImagePath" = system32\drivers\acpi.sys -- [2009.04.11 07:32:46 | 000,265,688 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ACPI\Parameters]
"WHEAOSCImplemented" = [binary data]
"AMLIMaxCTObjs" = [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ACPI\Parameters\WakeUp]
"FixedEventMask" = 20 05 [binary data]
"FixedEventStatus" = 10 81 [binary data]
"GenericEventMask" = 01 20 21 00 00 00 00 00 00 00 00 00 [binary data]
"GenericEventStatus" = 42 00 10 00 28 10 00 40 02 00 A2 08 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ACPI\Enum]
"0" = ACPI_HAL\PNP0C08\0
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adp94xx]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\adp94xx.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adp94xx\Parameters]
"BusType" = 10
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adp94xx\Parameters\Device]
"DriverParameter" = DisableIoctl=1;
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adp94xx\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpahci]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\adpahci.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpahci\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpahci\Parameters\Device]
"DriverParameter" = DisableIoctl=1;
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpahci\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpu160m]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\adpu160m.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpu160m\Parameters]
"BusType" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpu160m\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpu320]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\adpu320.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpu320\Parameters]
"BusType" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpu320\Parameters\Device]
"DriverParameter" = /MAXTAGS=64
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adpu320\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adsi]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adsi\Cache]
"PerMachine" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\adsi\tracing]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AeLookupSvc]
"DisplayName" = @%SystemRoot%\system32\aelupsvc.dll,-1
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\aelupsvc.dll,-2
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"RequiredPrivileges" = SeTcbPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AeLookupSvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\aelupsvc.dll -- [2006.11.02 10:46:02 | 000,024,576 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AFD]
"DisplayName" = Ancilliary Function Driver for Winsock
"Group" = PNP_TDI
"ImagePath" = \SystemRoot\system32\drivers\afd.sys
"Description" = Ancilliary Function Driver for Winsock
"ErrorControl" = 1
"Start" = 1
"Type" = 1
"BootFlags" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AFD\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AFD\Enum]
"0" = Root\LEGACY_AFD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\agp440]
"DisplayName" = Intel AGP Bus Filter
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\agp440.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\agp440\Parameters]
"3D3D07A1" = 04 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aic78xx]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\djsvs.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aic78xx\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aic78xx\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ALG]
"DisplayName" = @%SystemRoot%\system32\Alg.exe,-112
"ImagePath" = %SystemRoot%\System32\alg.exe -- [2008.01.21 03:24:14 | 000,059,392 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\Alg.exe,-113
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aliide]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\aliide.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\amdagp]
"DisplayName" = AMD AGP Bus Filter Driver
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\amdagp.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\amdagp\Parameters]
"10DE002D" = 00 00 10 00 8F FA 84 D5 [binary data]
"102B0525" = 00 00 10 00 8E F8 83 A5 [binary data]
"53338A22" = 00 00 10 00 8E F8 83 A5 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\amdide]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\amdide.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AmdK7]
"DisplayName" = AMD K7 Processor Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\amdk7.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AmdK8]
"DisplayName" = AMD K8 Processor Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\amdk8.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Appinfo]
"DisplayName" = @%systemroot%\system32\appinfo.dll,-100
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\appinfo.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSsProfSvc [binary data]
"RequiredPrivileges" = SeAssignPrimaryTokenPrivilegeSeIn [Binary data over 200 bytes]
"FailureActions" = FF FF FF FF 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Appinfo\Parameters]
"ServiceDll" = %SystemRoot%\System32\appinfo.dll -- [2008.01.21 03:24:17 | 000,033,280 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Appinfo\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\arc]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\arc.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\arc\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\arc\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\arcsas]
"Group" = SCSI miniport
"ImagePath" = \SystemRoot\system32\drivers\arcsas.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\arcsas\Parameters]
"BusType" = 10
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\arcsas\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ASLDRService]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = C:\Program Files\ATK Hotkey\ASLDRSrv.exe -- [2007.10.03 05:53:00 | 000,094,208 | ---- | M] ()
"DisplayName" = ASLDR Service
"Group" = ShellSvcGroup
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ASMMAP]
"Type" = 1
"Start" = 2
"ErrorControl" = 1
"ImagePath" = \??\C:\Program Files\ATKGFNEX\ASMMAP.sys -- [2007.07.24 19:09:04 | 000,013,880 | ---- | M] ()
"DisplayName" = ASMMAP
"Group" = ShellSvcGroup
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ASMMAP\Enum]
"0" = Root\LEGACY_ASMMAP\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswFsBlk]
"DisplayName" = aswFsBlk
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\aswFsBlk.sys -- [2009.11.24 23:50:00 | 000,020,560 | ---- | M] (ALWIL Software)
"Type" = 2
"Start" = 2
"Group" = FSFilter Activity Monitor
"DependOnService" = FltMgr [binary data]
"Tag" = 2
"Description" = avast! mini-filter driver (aswFsBlk)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswFsBlk\Instances]
"DefaultInstance" = aswFsBlk Instance
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswFsBlk\Instances\aswFsBlk Instance]
"Altitude" = 388400
"Flags" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswFsBlk\Enum]
"0" = Root\LEGACY_ASWFSBLK\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswMonFlt]
"Type" = 2
"Start" = 2
"ErrorControl" = 1
"Tag" = 2
"ImagePath" = system32\DRIVERS\aswMonFlt.sys -- [2009.11.24 23:49:48 | 000,053,328 | ---- | M] (ALWIL Software)
"DisplayName" = aswMonFlt
"Group" = FSFilter Anti-Virus
"DependOnService" = FltMgr [binary data]
"Description" = avast! mini-filter driver (aswMonFlt)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswMonFlt\Instances]
"DefaultInstance" = aswMonFlt Instance
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswMonFlt\Instances\aswMonFlt Instance]
"Altitude" = 320700
"Flags" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswMonFlt\Enum]
"0" = Root\LEGACY_ASWMONFLT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswRdr]
"DisplayName" = aswRdr
"ErrorControl" = 1
"Type" = 1
"Start" = 1
"Group" = PNP_TDI
"DependOnService" = tcpip [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswRdr\Parameters]
"IgnoreLSPDefault" = nl_lsp.dll,imon.dll,xfire_lsp.dll,mslsp.dll,mssplsp.dll,cwhook.dll,spi.dll
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswRdr\Parameters2]
"IgnoreLSPDefault" = vlsp.dll
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswRdr\Enum]
"0" = Root\LEGACY_ASWRDR\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswSP]
"DisplayName" = avast! Self Protection
"ErrorControl" = 1
"Type" = 1
"Start" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswSP\Parameters]
"ProgramFolder" = \Device\HarddiskVolume2\Program Files\Alwil Software\Avast4
"ProgramFolder2" = \DosDevices\C:\Program Files\Alwil Software\Avast4
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswSP\Enum]
"0" = Root\LEGACY_ASWSP\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswTdi]
"DisplayName" = avast! Network Shield Support
"ErrorControl" = 1
"Type" = 1
"Group" = PNP_TDI
"Start" = 1
"DependOnService" = tcpip [binary data]
"Tag" = 11
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswTdi\Parameters]
"ProviderStart" = 3
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswTdi\Enum]
"0" = Root\LEGACY_ASWTDI\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\aswUpdSv]
"Type" = 272
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe" -- [2009.11.24 23:43:56 | 000,018,752 | ---- | M] (ALWIL Software)
"DisplayName" = avast! iAVS4 Control Service
"Group" = ShellSvcGroup
"ObjectName" = LocalSystem
"Description" = Zajišťuje spouštění aktualizace pro antivirus avast!.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AsyncMac]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\asyncmac.sys -- [2008.01.21 03:24:04 | 000,017,408 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32000
"Description" = @%systemroot%\system32\rascfg.dll,-32000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\atapi]
"DisplayName" = Kanál IDE
"Group" = SCSI Miniport
"ImagePath" = system32\drivers\atapi.sys -- [2009.04.11 07:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
"Tag" = 33
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\atapi\Enum]
"0" = Root\LEGACY_ATAPI\0000
"Count" = 3
"NextInstance" = 3
"1" = PCIIDE\IDEChannel\4&20fd29d8&0&0
"2" = PCIIDE\IDEChannel\4&20fd29d8&0&1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\athr]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 24
"ImagePath" = system32\DRIVERS\athr.sys -- [2008.04.06 02:56:08 | 000,908,800 | ---- | M] (Atheros Communications, Inc.)
"DisplayName" = Atheros Extensible Wireless LAN device driver
"Group" = NDIS
"BootFlags" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\athr\Enum]
"0" = PCI\VEN_168C&DEV_002A&SUBSYS_10671A3B&REV_01\4&34f7fca2&0&00B0
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ATKGFNEXSrv]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = C:\Program Files\ATKGFNEX\GFNEXSrv.exe -- [2007.08.08 08:08:40 | 000,094,208 | ---- | M] ()
"DisplayName" = ATKGFNEX Service
"Group" = ShellSvcGroup
"DependOnService" = ASMMAP [binary data]
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AudioEndpointBuilder]
"DisplayName" = @%SystemRoot%\system32\audiosrv.dll,-204
"Group" = AudioGroup
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\audiosrv.dll,-205
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = PlugPlay [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = 00 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\AudioEndpointBuilder\Parameters]
"ServiceDll" = %SystemRoot%\System32\Audiosrv.dll -- [2009.04.11 07:28:18 | 000,315,392 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Audiosrv]
"DisplayName" = @%SystemRoot%\system32\audiosrv.dll,-200
"Group" = AudioGroup
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\audiosrv.dll,-201
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = AudioEndpointBuilderRpcSsMMCSS [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImperson [Binary data over 200 bytes]
"FailureActions" = 00 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Audiosrv\Parameters]
"ServiceDll" = %SystemRoot%\System32\Audiosrv.dll -- [2009.04.11 07:28:18 | 000,315,392 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\avast! Antivirus]
"Description" = Zajišťuje antivirové služby programu avast!, jako např. rezidentní ochranu, virovou truhlu a plánovač.
"DependOnService" = aswMonFltRpcSS [binary data]
"Type" = 272
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Alwil Software\Avast4\ashServ.exe" -- [2009.11.24 23:51:35 | 000,138,680 | ---- | M] (ALWIL Software)
"DisplayName" = avast! Antivirus
"Group" = ShellSvcGroup
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\avast! Mail Scanner]
"Type" = 272
"Start" = 3
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service -- [2009.11.24 23:51:21 | 000,254,040 | ---- | M] (ALWIL Software)
"DisplayName" = avast! Mail Scanner
"Group" = ShellSvcGroup
"DependOnService" = avast! Antivirus [binary data]
"ObjectName" = LocalSystem
"Description" = Zajišťuje kontrolu pošty pro avast! antivirus.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\avast! Web Scanner]
"Type" = 272
"Start" = 3
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service -- [2009.11.24 23:48:48 | 000,352,920 | ---- | M] (ALWIL Software)
"DisplayName" = avast! Web Scanner
"Group" = ShellSvcGroup
"DependOnService" = avast! Antivirus [binary data]
"ObjectName" = LocalSystem
"Description" = Zajišťuje kontrolu WWW (HTTP) pro avast! antivirus.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\BattC]
"MofImagePath" = system32\drivers\battc.sys -- [2008.01.21 03:23:00 | 000,028,216 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Beep]
"DisplayName" = Beep
"Group" = Base
"ErrorControl" = 1
"Start" = 1
"Tag" = 2
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Beep\Enum]
"0" = Root\LEGACY_BEEP\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\BFE]
"DisplayName" = @%SystemRoot%\system32\bfe.dll,-1001
"Group" = NetworkProvider
"ImagePath" = %systemroot%\system32\svchost.exe -k LocalServiceNoNetwork -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\bfe.dll,-1002
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 3
"RequiredPrivileges" = SeAuditPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\BFE\Parameters]
"ServiceDll" = %SystemRoot%\System32\bfe.dll -- [2009.04.11 07:28:18 | 000,334,848 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1