
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
policie čr prosim o radu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: policie čr prosim o radu
"ImagePath" = \SystemRoot\system32\drivers\i2omp.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\i2omp\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\i2omp\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\i8042prt]
"DisplayName" = Ovladač portu klávesnice i8042 a myši PS/2
"Group" = Keyboard Port
"ImagePath" = system32\DRIVERS\i8042prt.sys -- [2008.01.21 03:23:20 | 000,054,784 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 1
"Type" = 1
"Tag" = 5
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\i8042prt\Parameters]
"PollingIterations" = 12000
"PollingIterationsMaximum" = 12000
"ResendIterations" = 3
"LayerDriver JPN" = kbd106.dll -- [2008.01.21 03:23:23 | 000,006,656 | ---- | M] (Microsoft Corporation)
"LayerDriver KOR" = kbd101a.dll -- [2006.11.02 10:39:43 | 000,006,144 | ---- | M] (Microsoft Corporation)
"OverrideKeyboardIdentifier" = PCAT_106KEY
"OverrideKeyboardType" = 7
"OverrideKeyboardSubtype" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\i8042prt\Enum]
"0" = ACPI\PNP0303\4&323124ef&0
"Count" = 2
"NextInstance" = 2
"1" = ACPI\SYN0A06\4&323124ef&0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iaStorV]
"Tag" = 25
"DisplayName" = Intel RAID Controller Vista
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\iastorv.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iaStorV\Parameters]
"queuePriorityEnable" = 0
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iaStorV\Parameters\Port0]
"AN" = 0
"LPM" = 1
"LPMSTATE" = 0
"LPMDSTATE" = 1
"GTF" = 0
"DIPM" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iaStorV\Parameters\Port1]
"AN" = 0
"LPM" = 1
"LPMSTATE" = 0
"LPMDSTATE" = 1
"GTF" = 0
"DIPM" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iaStorV\Parameters\Port2]
"AN" = 0
"LPM" = 1
"LPMSTATE" = 0
"LPMDSTATE" = 1
"GTF" = 0
"DIPM" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IDriverT]
"Type" = 16
"Start" = 3
"ErrorControl" = 0
"ImagePath" = "C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe" -- [2005.04.04 00:41:10 | 000,069,632 | ---- | M] (Macrovision Corporation)
"DisplayName" = InstallDriver Table Manager
"ObjectName" = LocalSystem
"Description" = Provides support for the Running Object Table for InstallShield Drivers
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\idsvc]
"DisplayName" = @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8193
"ErrorControl" = 1
"ImagePath" = "%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe" -- [2009.02.18 19:38:42 | 000,879,448 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8192
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeTcbPrivilegeSeAssignPrimaryToke [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\idsvc\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 03 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iirsp]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\iirsp.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iirsp\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iirsp\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IKEEXT]
"DisplayName" = @%SystemRoot%\system32\ikeext.dll,-501
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\ikeext.dll,-502
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = BFE [binary data] -- [2009.04.11 07:28:18 | 000,334,848 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeImpersonatePriv [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IKEEXT\Parameters]
"ServiceDll" = %SystemRoot%\System32\ikeext.dll -- [2009.04.11 07:28:20 | 000,438,784 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = IkeServiceMain
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\inetaccs]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\inetaccs\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IntcAzAudAddService]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\drivers\RTKVHDA.sys -- [2008.08.12 09:09:47 | 002,159,384 | ---- | M] (Realtek Semiconductor Corp.)
"DisplayName" = Service for Realtek HD Audio (WDM)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IntcAzAudAddService\Enum]
"0" = HDAUDIO\FUNC_01&VEN_10EC&DEV_0663&SUBSYS_10431903&REV_1000\4&10d89169&0&0001
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\intelide]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\intelide.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
"Tag" = 6
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\intelppm]
"DisplayName" = Intel Processor Driver
"Group" = Extended Base
"ImagePath" = system32\DRIVERS\intelppm.sys -- [2008.01.21 03:23:00 | 000,041,472 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 11
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\intelppm\Enum]
"0" = ACPI\GenuineIntel_-_x86_Family_6_Model_15\_0
"Count" = 2
"NextInstance" = 2
"1" = ACPI\GenuineIntel_-_x86_Family_6_Model_15\_1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IPBusEnum]
"DisplayName" = @%systemroot%\system32\IPBusEnum.dll,-102
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\IPBusEnum.dll,-103
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSsfdPHost [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IPBusEnum\Parameters]
"ServiceDll" = %SystemRoot%\system32\ipbusenum.dll -- [2008.01.21 03:24:18 | 000,074,240 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IPBusEnum\Security]
"Security" = 01 00 14 88 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 04 00 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 03 28 00 FF 01 0F 00 01 06 00 00 00 00 00 05 50 00 00 00 74 4C 65 95 6E 55 9B 05 B2 97 1F 63 40 6D 04 AC 62 D1 BD F9 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IpFilterDriver]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ipfltdrv.sys -- [2008.01.21 03:24:45 | 000,047,616 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32013
"DependOnService" = Tcpip [binary data]
"Description" = @%systemroot%\system32\rascfg.dll,-32013
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iphlpsvc]
"DisplayName" = @%SystemRoot%\system32\iphlpsvc.dll,-200
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetSvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\iphlpsvc.dll,-201
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RpcSSTdxwinmgmttcpipnsi [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iphlpsvc\config]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iphlpsvc\Diagnostics]
"447B7F23C" = 3
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iphlpsvc\Interfaces]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iphlpsvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\iphlpsvc.dll -- [2010.02.18 14:30:03 | 000,200,704 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iphlpsvc\Teredo]
"SP1Installed" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IpInIp]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ipinip.sys
"DisplayName" = IP in IP Tunnel Driver
"DependOnService" = Tcpip [binary data]
"Description" = IP in IP Tunnel Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IPMIDRV]
"ImagePath" = \SystemRoot\system32\drivers\ipmidrv.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IPNAT]
"DisplayName" = IP Network Address Translator
"ImagePath" = system32\DRIVERS\ipnat.sys -- [2008.01.21 03:24:25 | 000,100,864 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"DependOnService" = Tcpip [binary data]
"Description" = IP Network Address Translator
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IRENUM]
"DisplayName" = IR Bus Enumerator
"ImagePath" = system32\drivers\irenum.sys -- [2008.01.21 03:23:54 | 000,013,312 | ---- | M] (Microsoft Corporation)
"Description" = IR Bus Enumerator
"ErrorControl" = 0
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\isapnp]
"HasBootConfig" = 0
"DisplayName" = PnP ISA/EISA Bus Driver
"Group" = Boot Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\isapnp.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iScsiPrt]
"DisplayName" = Ovladač iScsiPort
"ImagePath" = system32\DRIVERS\msiscsi.sys -- [2009.04.11 07:32:46 | 000,180,712 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"BootFlags" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iScsiPrt\Parameters]
"BusType" = 9
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iScsiPrt\Enum]
"0" = Root\ISCSIPRT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iteatapi]
"DisplayName" = ITEATAPI_Service_Install
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\iteatapi.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iteatapi\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iteatapi\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iteraid]
"DisplayName" = ITERAID_Service_Install
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\iteraid.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iteraid\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iteraid\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kbdclass]
"DisplayName" = Keyboard Class Driver
"Group" = Keyboard Class
"ImagePath" = system32\DRIVERS\kbdclass.sys -- [2008.01.21 03:23:23 | 000,035,384 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 1
"Type" = 1
"Tag" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kbdclass\Parameters]
"ConnectMultiplePorts" = 0
"KeyboardDataQueueSize" = 100
"KeyboardDeviceBaseName" = KeyboardClass
"MaximumPortsServiced" = 3
"SendOutputToAllPorts" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kbdclass\Enum]
"0" = Root\RDP_KBD\0000
"Count" = 2
"NextInstance" = 2
"1" = ACPI\PNP0303\4&323124ef&0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kbdhid]
"DisplayName" = Ovladač klávesnice standardu HID
"Group" = Keyboard Port
"ImagePath" = system32\DRIVERS\kbdhid.sys -- [2009.04.11 05:38:40 | 000,017,408 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 0
"Start" = 1
"Type" = 1
"Tag" = 7
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kbdhid\Parameters]
"WorkNicely" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kbfiltr]
"Type" = 1
"Start" = 3
"ErrorControl" = 0
"Tag" = 6
"ImagePath" = system32\DRIVERS\kbfiltr.sys -- [2008.06.03 07:41:51 | 000,015,928 | ---- | M] ( )
"DisplayName" = Keyboard Filter
"Group" = Keyboard Port
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kbfiltr\Enum]
"0" = ACPI\PNP0303\4&323124ef&0
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KeyIso]
"DisplayName" = @keyiso.dll,-100
"ImagePath" = %SystemRoot%\system32\lsass.exe -- [2011.11.16 15:12:25 | 000,009,728 | ---- | M] (Microsoft Corporation)
"Description" = @keyiso.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KeyIso\Security]
"Security" = 01 00 14 80 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 06 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KSecDD]
"Group" = Base
"ImagePath" = System32\Drivers\ksecdd.sys -- [2012.06.04 16:26:04 | 000,440,704 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KSecDD\Enum]
"0" = Root\LEGACY_KSECDD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KtmRm]
"DisplayName" = @comres.dll,-2946
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @comres.dll,-2947
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 2
"DelayedAutoStart" = 1
"Type" = 32
"DependOnService" = RPCSSSamSS [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E8 03 00 00 01 00 00 00 F8 2A 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KtmRm\Parameters]
"ServiceDll" = %systemroot%\system32\msdtckrm.dll -- [2008.01.21 03:24:18 | 000,344,576 | ---- | M] (Microsoft Corporation)
"ServiceMain" = KtmRmServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KtmRm\Security]
"Security" = 01 00 14 80 DC 00 00 00 E8 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 AC 00 07 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 02 00 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 8D 00 02 00 01 06 00 00 00 00 00 05 50 00 00 00 50 B9 FC A7 99 85 E2 C9 D6 2A 71 EE D4 A9 70 14 FB 0F 3B 08 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer]
"DisplayName" = @%systemroot%\system32\srvsvc.dll,-100
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\srvsvc.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = SamSSSrv [binary data]
"ServiceSidType" = 1
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\Aliases]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\AutotunedParameters]
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\i2omp\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\i2omp\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\i8042prt]
"DisplayName" = Ovladač portu klávesnice i8042 a myši PS/2
"Group" = Keyboard Port
"ImagePath" = system32\DRIVERS\i8042prt.sys -- [2008.01.21 03:23:20 | 000,054,784 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 1
"Type" = 1
"Tag" = 5
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\i8042prt\Parameters]
"PollingIterations" = 12000
"PollingIterationsMaximum" = 12000
"ResendIterations" = 3
"LayerDriver JPN" = kbd106.dll -- [2008.01.21 03:23:23 | 000,006,656 | ---- | M] (Microsoft Corporation)
"LayerDriver KOR" = kbd101a.dll -- [2006.11.02 10:39:43 | 000,006,144 | ---- | M] (Microsoft Corporation)
"OverrideKeyboardIdentifier" = PCAT_106KEY
"OverrideKeyboardType" = 7
"OverrideKeyboardSubtype" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\i8042prt\Enum]
"0" = ACPI\PNP0303\4&323124ef&0
"Count" = 2
"NextInstance" = 2
"1" = ACPI\SYN0A06\4&323124ef&0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iaStorV]
"Tag" = 25
"DisplayName" = Intel RAID Controller Vista
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\iastorv.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iaStorV\Parameters]
"queuePriorityEnable" = 0
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iaStorV\Parameters\Port0]
"AN" = 0
"LPM" = 1
"LPMSTATE" = 0
"LPMDSTATE" = 1
"GTF" = 0
"DIPM" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iaStorV\Parameters\Port1]
"AN" = 0
"LPM" = 1
"LPMSTATE" = 0
"LPMDSTATE" = 1
"GTF" = 0
"DIPM" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iaStorV\Parameters\Port2]
"AN" = 0
"LPM" = 1
"LPMSTATE" = 0
"LPMDSTATE" = 1
"GTF" = 0
"DIPM" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IDriverT]
"Type" = 16
"Start" = 3
"ErrorControl" = 0
"ImagePath" = "C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe" -- [2005.04.04 00:41:10 | 000,069,632 | ---- | M] (Macrovision Corporation)
"DisplayName" = InstallDriver Table Manager
"ObjectName" = LocalSystem
"Description" = Provides support for the Running Object Table for InstallShield Drivers
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\idsvc]
"DisplayName" = @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8193
"ErrorControl" = 1
"ImagePath" = "%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe" -- [2009.02.18 19:38:42 | 000,879,448 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8192
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeTcbPrivilegeSeAssignPrimaryToke [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\idsvc\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 03 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iirsp]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\iirsp.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iirsp\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iirsp\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IKEEXT]
"DisplayName" = @%SystemRoot%\system32\ikeext.dll,-501
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\ikeext.dll,-502
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = BFE [binary data] -- [2009.04.11 07:28:18 | 000,334,848 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeImpersonatePriv [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IKEEXT\Parameters]
"ServiceDll" = %SystemRoot%\System32\ikeext.dll -- [2009.04.11 07:28:20 | 000,438,784 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = IkeServiceMain
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\inetaccs]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\inetaccs\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IntcAzAudAddService]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\drivers\RTKVHDA.sys -- [2008.08.12 09:09:47 | 002,159,384 | ---- | M] (Realtek Semiconductor Corp.)
"DisplayName" = Service for Realtek HD Audio (WDM)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IntcAzAudAddService\Enum]
"0" = HDAUDIO\FUNC_01&VEN_10EC&DEV_0663&SUBSYS_10431903&REV_1000\4&10d89169&0&0001
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\intelide]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\intelide.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
"Tag" = 6
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\intelppm]
"DisplayName" = Intel Processor Driver
"Group" = Extended Base
"ImagePath" = system32\DRIVERS\intelppm.sys -- [2008.01.21 03:23:00 | 000,041,472 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"Tag" = 11
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\intelppm\Enum]
"0" = ACPI\GenuineIntel_-_x86_Family_6_Model_15\_0
"Count" = 2
"NextInstance" = 2
"1" = ACPI\GenuineIntel_-_x86_Family_6_Model_15\_1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IPBusEnum]
"DisplayName" = @%systemroot%\system32\IPBusEnum.dll,-102
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\IPBusEnum.dll,-103
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSsfdPHost [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IPBusEnum\Parameters]
"ServiceDll" = %SystemRoot%\system32\ipbusenum.dll -- [2008.01.21 03:24:18 | 000,074,240 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IPBusEnum\Security]
"Security" = 01 00 14 88 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 04 00 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 03 28 00 FF 01 0F 00 01 06 00 00 00 00 00 05 50 00 00 00 74 4C 65 95 6E 55 9B 05 B2 97 1F 63 40 6D 04 AC 62 D1 BD F9 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IpFilterDriver]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ipfltdrv.sys -- [2008.01.21 03:24:45 | 000,047,616 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32013
"DependOnService" = Tcpip [binary data]
"Description" = @%systemroot%\system32\rascfg.dll,-32013
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iphlpsvc]
"DisplayName" = @%SystemRoot%\system32\iphlpsvc.dll,-200
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetSvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\iphlpsvc.dll,-201
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RpcSSTdxwinmgmttcpipnsi [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iphlpsvc\config]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iphlpsvc\Diagnostics]
"447B7F23C" = 3
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iphlpsvc\Interfaces]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iphlpsvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\iphlpsvc.dll -- [2010.02.18 14:30:03 | 000,200,704 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iphlpsvc\Teredo]
"SP1Installed" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IpInIp]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ipinip.sys
"DisplayName" = IP in IP Tunnel Driver
"DependOnService" = Tcpip [binary data]
"Description" = IP in IP Tunnel Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IPMIDRV]
"ImagePath" = \SystemRoot\system32\drivers\ipmidrv.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IPNAT]
"DisplayName" = IP Network Address Translator
"ImagePath" = system32\DRIVERS\ipnat.sys -- [2008.01.21 03:24:25 | 000,100,864 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"DependOnService" = Tcpip [binary data]
"Description" = IP Network Address Translator
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\IRENUM]
"DisplayName" = IR Bus Enumerator
"ImagePath" = system32\drivers\irenum.sys -- [2008.01.21 03:23:54 | 000,013,312 | ---- | M] (Microsoft Corporation)
"Description" = IR Bus Enumerator
"ErrorControl" = 0
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\isapnp]
"HasBootConfig" = 0
"DisplayName" = PnP ISA/EISA Bus Driver
"Group" = Boot Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\isapnp.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iScsiPrt]
"DisplayName" = Ovladač iScsiPort
"ImagePath" = system32\DRIVERS\msiscsi.sys -- [2009.04.11 07:32:46 | 000,180,712 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"BootFlags" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iScsiPrt\Parameters]
"BusType" = 9
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iScsiPrt\Enum]
"0" = Root\ISCSIPRT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iteatapi]
"DisplayName" = ITEATAPI_Service_Install
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\iteatapi.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iteatapi\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iteatapi\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iteraid]
"DisplayName" = ITERAID_Service_Install
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\iteraid.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iteraid\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\iteraid\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kbdclass]
"DisplayName" = Keyboard Class Driver
"Group" = Keyboard Class
"ImagePath" = system32\DRIVERS\kbdclass.sys -- [2008.01.21 03:23:23 | 000,035,384 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 1
"Type" = 1
"Tag" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kbdclass\Parameters]
"ConnectMultiplePorts" = 0
"KeyboardDataQueueSize" = 100
"KeyboardDeviceBaseName" = KeyboardClass
"MaximumPortsServiced" = 3
"SendOutputToAllPorts" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kbdclass\Enum]
"0" = Root\RDP_KBD\0000
"Count" = 2
"NextInstance" = 2
"1" = ACPI\PNP0303\4&323124ef&0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kbdhid]
"DisplayName" = Ovladač klávesnice standardu HID
"Group" = Keyboard Port
"ImagePath" = system32\DRIVERS\kbdhid.sys -- [2009.04.11 05:38:40 | 000,017,408 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 0
"Start" = 1
"Type" = 1
"Tag" = 7
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kbdhid\Parameters]
"WorkNicely" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kbfiltr]
"Type" = 1
"Start" = 3
"ErrorControl" = 0
"Tag" = 6
"ImagePath" = system32\DRIVERS\kbfiltr.sys -- [2008.06.03 07:41:51 | 000,015,928 | ---- | M] ( )
"DisplayName" = Keyboard Filter
"Group" = Keyboard Port
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\kbfiltr\Enum]
"0" = ACPI\PNP0303\4&323124ef&0
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KeyIso]
"DisplayName" = @keyiso.dll,-100
"ImagePath" = %SystemRoot%\system32\lsass.exe -- [2011.11.16 15:12:25 | 000,009,728 | ---- | M] (Microsoft Corporation)
"Description" = @keyiso.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KeyIso\Security]
"Security" = 01 00 14 80 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 06 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KSecDD]
"Group" = Base
"ImagePath" = System32\Drivers\ksecdd.sys -- [2012.06.04 16:26:04 | 000,440,704 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KSecDD\Enum]
"0" = Root\LEGACY_KSECDD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KtmRm]
"DisplayName" = @comres.dll,-2946
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @comres.dll,-2947
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 2
"DelayedAutoStart" = 1
"Type" = 32
"DependOnService" = RPCSSSamSS [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E8 03 00 00 01 00 00 00 F8 2A 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KtmRm\Parameters]
"ServiceDll" = %systemroot%\system32\msdtckrm.dll -- [2008.01.21 03:24:18 | 000,344,576 | ---- | M] (Microsoft Corporation)
"ServiceMain" = KtmRmServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\KtmRm\Security]
"Security" = 01 00 14 80 DC 00 00 00 E8 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 AC 00 07 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 02 00 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 8D 00 02 00 01 06 00 00 00 00 00 05 50 00 00 00 50 B9 FC A7 99 85 E2 C9 D6 2A 71 EE D4 A9 70 14 FB 0F 3B 08 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer]
"DisplayName" = @%systemroot%\system32\srvsvc.dll,-100
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\srvsvc.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = SamSSSrv [binary data]
"ServiceSidType" = 1
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\Aliases]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\AutotunedParameters]
Re: policie čr prosim o radu
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\DefaultSecurity]
"SrvsvcConfigInfo" = 01 00 04 80 A0 00 00 00 AC 00 00 00 00 00 00 00 14 00 00 00 02 00 8C 00 06 00 00 00 00 00 18 00 17 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 17 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 17 00 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 03 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 01 00 00 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 05 07 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcTransportEnum" = 01 00 04 80 8C 00 00 00 98 00 00 00 00 00 00 00 14 00 00 00 02 00 78 00 05 00 00 00 00 00 18 00 17 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 17 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 17 00 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 03 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcConnection" = 01 00 04 80 7C 00 00 00 88 00 00 00 00 00 00 00 14 00 00 00 02 00 68 00 04 00 00 00 00 00 18 00 01 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 01 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 01 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 26 02 00 00 00 00 18 00 01 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcServerDiskEnum" = 01 00 04 80 4C 00 00 00 58 00 00 00 00 00 00 00 14 00 00 00 02 00 38 00 02 00 00 00 00 00 18 00 01 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 01 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcFile" = 01 00 04 80 64 00 00 00 70 00 00 00 00 00 00 00 14 00 00 00 02 00 50 00 03 00 00 00 00 00 18 00 11 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 11 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 11 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcSessionInfo" = 01 00 04 80 78 00 00 00 84 00 00 00 00 00 00 00 14 00 00 00 02 00 64 00 04 00 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcShareFileInfo" = 01 00 04 80 A0 00 00 00 AC 00 00 00 00 00 00 00 14 00 00 00 02 00 8C 00 06 00 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 01 00 00 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 05 07 00 00 00 00 00 14 00 02 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcSharePrintInfo" = 01 00 04 80 B8 00 00 00 C4 00 00 00 00 00 00 00 14 00 00 00 02 00 A4 00 07 00 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 26 02 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 01 00 00 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 05 07 00 00 00 00 00 14 00 02 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcShareAdminInfo" = 01 00 04 80 8C 00 00 00 98 00 00 00 00 00 00 00 14 00 00 00 02 00 78 00 05 00 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 02 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 02 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 01 00 00 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 05 07 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcShareConnect" = 01 00 04 80 8C 00 00 00 98 00 00 00 00 00 00 00 14 00 00 00 02 00 78 00 05 00 00 00 00 00 18 00 03 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 03 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 03 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 27 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 01 00 00 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 05 07 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcShareAdminConnect" = 01 00 04 80 78 00 00 00 84 00 00 00 00 00 00 00 14 00 00 00 02 00 64 00 04 00 00 00 00 00 18 00 03 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 03 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 03 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 27 02 00 00 00 00 14 00 03 00 0F 00 01 01 00 00 00 00 00 05 04 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcStatisticsInfo" = 01 00 04 80 60 00 00 00 6C 00 00 00 00 00 00 00 14 00 00 00 02 00 4C 00 03 00 00 00 00 00 18 00 01 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 01 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 02 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"AnonymousDescriptorsUpgraded" = 1
"PreviousAnonymousRestriction" = 0
"SessionSecurityDescriptorRegenerated" = 1
"InteractiveDescriptorsRegenerated" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\Linkage]
"Bind" = \Device\Smb_Tcpip_{DB5A0E6A-4A5D-4 [Binary data over 200 bytes]
"Route" = "Smb" "Tcpip" "{DB5A0E6A-4A5D-47A0 [Binary data over 200 bytes]
"Export" = \Device\LanmanServer_Smb_Tcpip_{DB [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\Parameters]
"ServiceDll" = %SystemRoot%\system32\srvsvc.dll -- [2010.09.06 17:20:29 | 000,125,952 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"NullSessionPipes" = netlogonlsarpcsamrbrowser [binary data]
"autodisconnect" = 15
"enableforcedlogoff" = 1
"enablesecuritysignature" = 0
"requiresecuritysignature" = 0
"restrictnullsessaccess" = 1
"Lmannounce" = 0
"Size" = 1
"AdjustedNullSessionPipes" = 2
"CachedOpenLimit" = 0
"Guid" = 60 57 28 33 C5 28 9D 42 BD B0 3B 1F 4B 75 5B 34 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\ShareProviders]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\Shares]
"Public" = CSCFlags=2048MaxUses=4294967295P [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\Shares\Security]
"Public" = 01 00 04 80 48 00 00 00 58 00 00 00 00 00 00 00 14 00 00 00 02 00 34 00 02 00 00 00 00 03 18 00 FF 01 1F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 03 14 00 A9 00 12 00 01 01 00 00 00 00 00 01 00 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 05 00 00 00 00 00 05 15 00 00 00 E9 27 18 27 EF ED 86 46 DA E7 EF 45 01 02 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanWorkstation]
"DisplayName" = @%systemroot%\system32\wkssvc.dll,-100
"Group" = NetworkProvider
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\wkssvc.dll,-101
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = BowserMRxSmb10MRxSmb20NSI [binary data]
"ServiceSidType" = 1
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanWorkstation\Linkage]
"Bind" = \Device\Smb_Tcpip_{DB5A0E6A-4A5D-4 [Binary data over 200 bytes]
"Route" = "Smb" "Tcpip" "{DB5A0E6A-4A5D-47A0 [Binary data over 200 bytes]
"Export" = \Device\LanmanWorkstation_Smb_Tcpi [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanWorkstation\NetworkProvider]
"DeviceName" = \Device\LanmanRedirector
"Name" = Microsoft Windows Network
"DisplayName" = @%systemroot%\system32\wkssvc.dll,-102
"ProviderPath" = %SystemRoot%\System32\ntlanman.dll -- [2008.01.21 03:24:54 | 000,063,488 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanWorkstation\Parameters]
"ServiceDll" = %SystemRoot%\System32\wkssvc.dll -- [2009.06.10 12:42:23 | 000,160,256 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"EnablePlainTextPassword" = 0
"EnableSecuritySignature" = 1
"RequireSecuritySignature" = 0
"OtherDomains" = [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ldap]
"ldapclientintegrity" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ldap\tracing]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LightScribeService]
"Type" = 16
"Start" = 2
"ErrorControl" = 0
"ImagePath" = "C:\Program Files\Common Files\LightScribe\LSSrvc.exe" -- [2008.06.09 18:21:58 | 000,073,728 | ---- | M] (Hewlett-Packard Company)
"DisplayName" = LightScribeService Direct Disc Labeling Service
"ObjectName" = LocalSystem
"Description" = Used by the LightScribe software components to support 3rd party disc labeling applications using the LightScribe COM Application Programming Interface (LSCAPI). This service needs to run for LightScribe direct disc labeling to work.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lltdio]
"Type" = 1
"Start" = 2
"ErrorControl" = 1
"Tag" = 15
"ImagePath" = system32\DRIVERS\lltdio.sys -- [2008.01.21 03:24:37 | 000,047,104 | ---- | M] (Microsoft Corporation)
"DisplayName" = Link-Layer Topology Discovery Mapper I/O Driver
"Group" = NDIS
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lltdio\Linkage]
"Bind" = \Device\{DB5A0E6A-4A5D-47A0-8E63-B [Binary data over 200 bytes]
"Route" = "{DB5A0E6A-4A5D-47A0-8E63-B3C6DAAC [Binary data over 200 bytes]
"Export" = \Device\lltdio_{DB5A0E6A-4A5D-47A0 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lltdio\Enum]
"0" = Root\LEGACY_LLTDIO\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lltdsvc]
"DisplayName" = @%SystemRoot%\system32\lltdres.dll,-1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\lltdres.dll,-2
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = rpcsslltdio [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeChangeNotifyPrivilege [binary data]
"FailureActions" = 00 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 00 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lltdsvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\lltdsvc.dll -- [2008.01.21 03:25:00 | 000,188,928 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lmhosts]
"DisplayName" = @%SystemRoot%\system32\lmhsvc.dll,-101
"Group" = TDI
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\lmhsvc.dll,-102
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = NetBTAfd [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lmhosts\Parameters]
"ServiceDll" = %SystemRoot%\System32\lmhsvc.dll -- [2006.11.02 10:46:05 | 000,018,944 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Lsa]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Lsa\Performance]
"Close" = CloseLsaPerformanceData
"Collect" = CollectLsaPerformanceData
"Open" = OpenLsaPerformanceData
"Library" = Secur32.dll -- [2011.11.16 17:23:08 | 000,072,704 | ---- | M] (Microsoft Corporation)
"Object List" = 1570 1670
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_FC]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\lsi_fc.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_FC\Parameters]
"BusType" = 6
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_FC\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_SAS]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\lsi_sas.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_SAS\Parameters]
"BusType" = 10
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_SAS\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_SCSI]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\lsi_scsi.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
"Tag" = 34
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_SCSI\Parameters]
"BusType" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_SCSI\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\luafv]
"DisplayName" = UAC File Virtualization
"Group" = FSFilter Virtualization
"ImagePath" = \SystemRoot\system32\drivers\luafv.sys
"Description" = Virtualizes file write failures to per-user locations.
"ErrorControl" = 1
"Start" = 2
"Type" = 2
"DependOnService" = FltMgr [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\luafv\Instances]
"DefaultInstance" = luafv
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\luafv\Instances\luafv]
"Altitude" = 135000
"Flags" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\luafv\Parameters]
"ProgramData" = C:\ProgramData -- [2013.01.29 20:27:29 | 000,000,000 | -H-D | M]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\luafv\Enum]
"0" = Root\LEGACY_LUAFV\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\massfilter]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\drivers\massfilter.sys -- [2009.12.28 14:52:40 | 000,010,240 | ---- | M] (ZTE Incorporated)
"DisplayName" = Mass Storage Filter Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\massfilter_hs]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\drivers\massfilter_hs.sys -- [2009.02.03 15:56:22 | 000,009,728 | ---- | M] (ZTE Incorporated)
"DisplayName" = USB Mass Storage Filter Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MBAMProtector]
"Type" = 2
"Start" = 3
"ErrorControl" = 1
"ImagePath" = \??\C:\Windows\system32\drivers\mbam.sys -- [2012.12.14 16:49:28 | 000,021,104 | ---- | M] (Malwarebytes Corporation)
"Group" = FSFilter Anti-Virus
"DependOnService" = FltMgr [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MBAMProtector\Instances]
"DefaultInstance" = MBAMProtector Instance
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MBAMProtector\Instances\MBAMProtector Instance]
"Altitude" = 328800
"Flags" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MBAMProtector\Enum]
"0" = Root\LEGACY_MBAMPROTECTOR\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MBAMScheduler]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe" -- [2012.12.14 16:49:28 | 000,398,184 | ---- | M] (Malwarebytes Corporation)
"ObjectName" = LocalSystem
"Description" = Malwarebytes Anti-Malware scheduler
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MBAMService]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe" -- [2012.12.14 16:49:28 | 000,682,344 | ---- | M] (Malwarebytes Corporation)
"DependOnService" = MBAMProtector [binary data]
"ObjectName" = LocalSystem
"Description" = Malwarebytes Anti-Malware service
"DelayedAutostart" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\McciCMService]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Common Files\Motive\McciCMService.exe" -- [2007.10.15 11:06:36 | 000,303,104 | ---- | M] (Motive Communications, Inc.)
"DisplayName" = McciCMService
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mcx2Svc]
"DisplayName" = @%SystemRoot%\ehome\ehres.dll,-15501
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 4
"Type" = 32
"SrvsvcConfigInfo" = 01 00 04 80 A0 00 00 00 AC 00 00 00 00 00 00 00 14 00 00 00 02 00 8C 00 06 00 00 00 00 00 18 00 17 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 17 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 17 00 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 03 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 01 00 00 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 05 07 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcTransportEnum" = 01 00 04 80 8C 00 00 00 98 00 00 00 00 00 00 00 14 00 00 00 02 00 78 00 05 00 00 00 00 00 18 00 17 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 17 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 17 00 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 03 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcConnection" = 01 00 04 80 7C 00 00 00 88 00 00 00 00 00 00 00 14 00 00 00 02 00 68 00 04 00 00 00 00 00 18 00 01 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 01 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 01 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 26 02 00 00 00 00 18 00 01 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcServerDiskEnum" = 01 00 04 80 4C 00 00 00 58 00 00 00 00 00 00 00 14 00 00 00 02 00 38 00 02 00 00 00 00 00 18 00 01 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 01 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcFile" = 01 00 04 80 64 00 00 00 70 00 00 00 00 00 00 00 14 00 00 00 02 00 50 00 03 00 00 00 00 00 18 00 11 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 11 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 11 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcSessionInfo" = 01 00 04 80 78 00 00 00 84 00 00 00 00 00 00 00 14 00 00 00 02 00 64 00 04 00 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcShareFileInfo" = 01 00 04 80 A0 00 00 00 AC 00 00 00 00 00 00 00 14 00 00 00 02 00 8C 00 06 00 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 01 00 00 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 05 07 00 00 00 00 00 14 00 02 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcSharePrintInfo" = 01 00 04 80 B8 00 00 00 C4 00 00 00 00 00 00 00 14 00 00 00 02 00 A4 00 07 00 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 26 02 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 01 00 00 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 05 07 00 00 00 00 00 14 00 02 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcShareAdminInfo" = 01 00 04 80 8C 00 00 00 98 00 00 00 00 00 00 00 14 00 00 00 02 00 78 00 05 00 00 00 00 00 18 00 13 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 02 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 02 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 01 00 00 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 05 07 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcShareConnect" = 01 00 04 80 8C 00 00 00 98 00 00 00 00 00 00 00 14 00 00 00 02 00 78 00 05 00 00 00 00 00 18 00 03 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 03 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 03 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 27 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 01 00 00 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 05 07 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcShareAdminConnect" = 01 00 04 80 78 00 00 00 84 00 00 00 00 00 00 00 14 00 00 00 02 00 64 00 04 00 00 00 00 00 18 00 03 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 03 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 18 00 03 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 27 02 00 00 00 00 14 00 03 00 0F 00 01 01 00 00 00 00 00 05 04 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"SrvsvcStatisticsInfo" = 01 00 04 80 60 00 00 00 6C 00 00 00 00 00 00 00 14 00 00 00 02 00 4C 00 03 00 00 00 00 00 18 00 01 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 01 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 01 00 00 00 01 01 00 00 00 00 00 02 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
"AnonymousDescriptorsUpgraded" = 1
"PreviousAnonymousRestriction" = 0
"SessionSecurityDescriptorRegenerated" = 1
"InteractiveDescriptorsRegenerated" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\Linkage]
"Bind" = \Device\Smb_Tcpip_{DB5A0E6A-4A5D-4 [Binary data over 200 bytes]
"Route" = "Smb" "Tcpip" "{DB5A0E6A-4A5D-47A0 [Binary data over 200 bytes]
"Export" = \Device\LanmanServer_Smb_Tcpip_{DB [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\Parameters]
"ServiceDll" = %SystemRoot%\system32\srvsvc.dll -- [2010.09.06 17:20:29 | 000,125,952 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"NullSessionPipes" = netlogonlsarpcsamrbrowser [binary data]
"autodisconnect" = 15
"enableforcedlogoff" = 1
"enablesecuritysignature" = 0
"requiresecuritysignature" = 0
"restrictnullsessaccess" = 1
"Lmannounce" = 0
"Size" = 1
"AdjustedNullSessionPipes" = 2
"CachedOpenLimit" = 0
"Guid" = 60 57 28 33 C5 28 9D 42 BD B0 3B 1F 4B 75 5B 34 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\ShareProviders]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\Shares]
"Public" = CSCFlags=2048MaxUses=4294967295P [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanServer\Shares\Security]
"Public" = 01 00 04 80 48 00 00 00 58 00 00 00 00 00 00 00 14 00 00 00 02 00 34 00 02 00 00 00 00 03 18 00 FF 01 1F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 03 14 00 A9 00 12 00 01 01 00 00 00 00 00 01 00 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 05 00 00 00 00 00 05 15 00 00 00 E9 27 18 27 EF ED 86 46 DA E7 EF 45 01 02 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanWorkstation]
"DisplayName" = @%systemroot%\system32\wkssvc.dll,-100
"Group" = NetworkProvider
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\wkssvc.dll,-101
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = BowserMRxSmb10MRxSmb20NSI [binary data]
"ServiceSidType" = 1
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanWorkstation\Linkage]
"Bind" = \Device\Smb_Tcpip_{DB5A0E6A-4A5D-4 [Binary data over 200 bytes]
"Route" = "Smb" "Tcpip" "{DB5A0E6A-4A5D-47A0 [Binary data over 200 bytes]
"Export" = \Device\LanmanWorkstation_Smb_Tcpi [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanWorkstation\NetworkProvider]
"DeviceName" = \Device\LanmanRedirector
"Name" = Microsoft Windows Network
"DisplayName" = @%systemroot%\system32\wkssvc.dll,-102
"ProviderPath" = %SystemRoot%\System32\ntlanman.dll -- [2008.01.21 03:24:54 | 000,063,488 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LanmanWorkstation\Parameters]
"ServiceDll" = %SystemRoot%\System32\wkssvc.dll -- [2009.06.10 12:42:23 | 000,160,256 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"EnablePlainTextPassword" = 0
"EnableSecuritySignature" = 1
"RequireSecuritySignature" = 0
"OtherDomains" = [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ldap]
"ldapclientintegrity" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ldap\tracing]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LightScribeService]
"Type" = 16
"Start" = 2
"ErrorControl" = 0
"ImagePath" = "C:\Program Files\Common Files\LightScribe\LSSrvc.exe" -- [2008.06.09 18:21:58 | 000,073,728 | ---- | M] (Hewlett-Packard Company)
"DisplayName" = LightScribeService Direct Disc Labeling Service
"ObjectName" = LocalSystem
"Description" = Used by the LightScribe software components to support 3rd party disc labeling applications using the LightScribe COM Application Programming Interface (LSCAPI). This service needs to run for LightScribe direct disc labeling to work.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lltdio]
"Type" = 1
"Start" = 2
"ErrorControl" = 1
"Tag" = 15
"ImagePath" = system32\DRIVERS\lltdio.sys -- [2008.01.21 03:24:37 | 000,047,104 | ---- | M] (Microsoft Corporation)
"DisplayName" = Link-Layer Topology Discovery Mapper I/O Driver
"Group" = NDIS
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lltdio\Linkage]
"Bind" = \Device\{DB5A0E6A-4A5D-47A0-8E63-B [Binary data over 200 bytes]
"Route" = "{DB5A0E6A-4A5D-47A0-8E63-B3C6DAAC [Binary data over 200 bytes]
"Export" = \Device\lltdio_{DB5A0E6A-4A5D-47A0 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lltdio\Enum]
"0" = Root\LEGACY_LLTDIO\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lltdsvc]
"DisplayName" = @%SystemRoot%\system32\lltdres.dll,-1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\lltdres.dll,-2
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = rpcsslltdio [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeChangeNotifyPrivilege [binary data]
"FailureActions" = 00 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 00 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lltdsvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\lltdsvc.dll -- [2008.01.21 03:25:00 | 000,188,928 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lmhosts]
"DisplayName" = @%SystemRoot%\system32\lmhsvc.dll,-101
"Group" = TDI
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\lmhsvc.dll,-102
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = NetBTAfd [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\lmhosts\Parameters]
"ServiceDll" = %SystemRoot%\System32\lmhsvc.dll -- [2006.11.02 10:46:05 | 000,018,944 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Lsa]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Lsa\Performance]
"Close" = CloseLsaPerformanceData
"Collect" = CollectLsaPerformanceData
"Open" = OpenLsaPerformanceData
"Library" = Secur32.dll -- [2011.11.16 17:23:08 | 000,072,704 | ---- | M] (Microsoft Corporation)
"Object List" = 1570 1670
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_FC]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\lsi_fc.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_FC\Parameters]
"BusType" = 6
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_FC\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_SAS]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\lsi_sas.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_SAS\Parameters]
"BusType" = 10
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_SAS\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_SCSI]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\lsi_scsi.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
"Tag" = 34
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_SCSI\Parameters]
"BusType" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\LSI_SCSI\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\luafv]
"DisplayName" = UAC File Virtualization
"Group" = FSFilter Virtualization
"ImagePath" = \SystemRoot\system32\drivers\luafv.sys
"Description" = Virtualizes file write failures to per-user locations.
"ErrorControl" = 1
"Start" = 2
"Type" = 2
"DependOnService" = FltMgr [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\luafv\Instances]
"DefaultInstance" = luafv
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\luafv\Instances\luafv]
"Altitude" = 135000
"Flags" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\luafv\Parameters]
"ProgramData" = C:\ProgramData -- [2013.01.29 20:27:29 | 000,000,000 | -H-D | M]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\luafv\Enum]
"0" = Root\LEGACY_LUAFV\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\massfilter]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\drivers\massfilter.sys -- [2009.12.28 14:52:40 | 000,010,240 | ---- | M] (ZTE Incorporated)
"DisplayName" = Mass Storage Filter Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\massfilter_hs]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\drivers\massfilter_hs.sys -- [2009.02.03 15:56:22 | 000,009,728 | ---- | M] (ZTE Incorporated)
"DisplayName" = USB Mass Storage Filter Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MBAMProtector]
"Type" = 2
"Start" = 3
"ErrorControl" = 1
"ImagePath" = \??\C:\Windows\system32\drivers\mbam.sys -- [2012.12.14 16:49:28 | 000,021,104 | ---- | M] (Malwarebytes Corporation)
"Group" = FSFilter Anti-Virus
"DependOnService" = FltMgr [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MBAMProtector\Instances]
"DefaultInstance" = MBAMProtector Instance
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MBAMProtector\Instances\MBAMProtector Instance]
"Altitude" = 328800
"Flags" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MBAMProtector\Enum]
"0" = Root\LEGACY_MBAMPROTECTOR\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MBAMScheduler]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe" -- [2012.12.14 16:49:28 | 000,398,184 | ---- | M] (Malwarebytes Corporation)
"ObjectName" = LocalSystem
"Description" = Malwarebytes Anti-Malware scheduler
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MBAMService]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe" -- [2012.12.14 16:49:28 | 000,682,344 | ---- | M] (Malwarebytes Corporation)
"DependOnService" = MBAMProtector [binary data]
"ObjectName" = LocalSystem
"Description" = Malwarebytes Anti-Malware service
"DelayedAutostart" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\McciCMService]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Common Files\Motive\McciCMService.exe" -- [2007.10.15 11:06:36 | 000,303,104 | ---- | M] (Motive Communications, Inc.)
"DisplayName" = McciCMService
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mcx2Svc]
"DisplayName" = @%SystemRoot%\ehome\ehres.dll,-15501
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 4
"Type" = 32
Re: policie čr prosim o radu
"Description" = @%SystemRoot%\ehome\ehres.dll,-15502
"DependOnService" = SSDPSRVIPBusEnumTermServicefdphost [binary data]
"ObjectName" = NT Authority\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mcx2Svc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\system32\Mcx2Svc.dll -- [2008.01.21 03:25:11 | 000,053,760 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\megasas]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\megasas.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\megasas\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\megasas\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MegaSR]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\megasr.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MegaSR\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MegaSR\Parameters\Device]
"UncachedExtAlignment" = 16
"NumberOfRequests" = 20
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MegaSR\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MMCSS]
"DisplayName" = @%systemroot%\system32\mmcss.dll,-100
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\mmcss.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"RequiredPrivileges" = SeIncreaseBasePriorityPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MMCSS\Parameters]
"ServiceDll" = %SystemRoot%\system32\mmcss.dll -- [2008.01.21 03:24:54 | 000,045,056 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Modem]
"Group" = Extended base
"ImagePath" = system32\drivers\modem.sys -- [2008.01.21 03:24:57 | 000,031,744 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 0
"Start" = 3
"Tag" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Modem\Enum]
"0" = HDAUDIO\FUNC_02&VEN_1057&DEV_3055&SUBSYS_10573055&REV_1007\4&10d89169&0&0101
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MODEMCSA]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 19
"ImagePath" = system32\drivers\MODEMCSA.sys -- [2008.01.21 03:23:26 | 000,018,432 | ---- | M] (Microsoft Corporation)
"DisplayName" = Unimodem Streaming Filter Device
"Group" = Extended Base
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\monitor]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\monitor.sys -- [2008.01.21 03:23:22 | 000,041,984 | ---- | M] (Microsoft Corporation)
"DisplayName" = Služba ovladače funkce třídy monitorů Microsoft
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\monitor\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mouclass]
"DisplayName" = Mouse Class Driver
"Group" = Pointer Class
"ImagePath" = system32\DRIVERS\mouclass.sys -- [2008.01.21 03:23:20 | 000,034,360 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 1
"Type" = 1
"Tag" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mouclass\Enum]
"0" = Root\RDP_MOU\0000
"Count" = 3
"NextInstance" = 3
"1" = ACPI\SYN0A06\4&323124ef&0
"2" = HID\VID_046D&PID_C019\6&26fe6301&0&0000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mouhid]
"DisplayName" = Ovladač HID myši
"Group" = Pointer Port
"ImagePath" = system32\DRIVERS\mouhid.sys -- [2008.01.21 03:23:20 | 000,015,872 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 0
"Start" = 3
"Type" = 1
"Tag" = 4
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mouhid\Parameters]
"UseOnlyMice" = 0
"TreatAbsoluteAsRelative" = 0
"TreatAbsolutePointerAsAbsolute" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mouhid\Enum]
"0" = HID\VID_046D&PID_C019\6&26fe6301&0&0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MountMgr]
"DisplayName" = Mount Point Manager
"Group" = System Bus Extender
"ImagePath" = System32\drivers\mountmgr.sys -- [2008.01.21 03:23:43 | 000,057,400 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
"Description" = Driver responsible with maintaining persistent drive letters and names for volumes
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MountMgr\Enum]
"0" = Root\LEGACY_MOUNTMGR\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mpio]
"DisplayName" = Microsoft Multi-Path Bus Driver
"Group" = Boot Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\mpio.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mpsdrv]
"DisplayName" = @%SystemRoot%\system32\FirewallAPI.dll,-23092
"Group" = network
"ImagePath" = System32\drivers\mpsdrv.sys -- [2008.01.21 03:24:47 | 000,064,000 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\FirewallAPI.dll,-23093
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mpsdrv\Enum]
"0" = Root\LEGACY_MPSDRV\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MpsSvc]
"DisplayName" = @%SystemRoot%\system32\FirewallAPI.dll,-23090
"Group" = NetworkProvider
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalServiceNoNetwork -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\FirewallAPI.dll,-23091
"ObjectName" = NT Authority\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = mpsdrvbfe [binary data]
"ServiceSidType" = 3
"RequiredPrivileges" = SeAssignPrimaryTokenPrivilegeSeAu [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MpsSvc\Parameters]
"ServiceDll" = %SystemRoot%\system32\mpssvc.dll -- [2009.04.11 07:28:20 | 000,407,552 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MpsSvc\Parameters\PortKeywords]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MpsSvc\Parameters\PortKeywords\RPC-EPMap]
"Collection" = 87 00 01 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MpsSvc\Parameters\PortKeywords\Teredo]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MpsSvc\Security]
"Security" = 01 00 14 80 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 15 00 00 00 01 06 00 00 00 00 00 05 50 00 00 00 49 59 9D 77 91 56 E5 55 DC F4 E2 0E A7 8B EB CA 7B 42 13 56 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mraid35x]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\mraid35x.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mraid35x\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mraid35x\Parameters\Device]
"NumberOfRequests" = 189
"CreateInitiatorLU" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mraid35x\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MREMP50]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS -- [2008.03.29 10:20:55 | 000,021,248 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA))
"DisplayName" = MREMP50 NDIS Protocol Driver
"Group" = PNP_TDI
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MREMP50\Security]
"Security" = 01 00 14 88 30 00 00 00 3C 00 00 00 14 00 00 00 00 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MREMP50a64]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS
"DisplayName" = MREMP50a64 NDIS Protocol Driver
"Group" = PNP_TDI
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MREMP50a64\Security]
"Security" = 01 00 14 88 30 00 00 00 3C 00 00 00 14 00 00 00 00 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MREMPR5]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS
"DisplayName" = MREMPR5 NDIS Protocol Driver
"Group" = PNP_TDI
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MREMPR5\Security]
"Security" = 01 00 14 88 30 00 00 00 3C 00 00 00 14 00 00 00 00 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRENDIS5]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS
"DisplayName" = MRENDIS5 NDIS Protocol Driver
"Group" = PNP_TDI
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRENDIS5\Security]
"Security" = 01 00 14 88 30 00 00 00 3C 00 00 00 14 00 00 00 00 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRESP50]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS -- [2008.03.29 10:20:55 | 000,020,096 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA))
"DisplayName" = MRESP50 NDIS Protocol Driver
"Group" = PNP_TDI
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRESP50\Security]
"Security" = 01 00 14 88 30 00 00 00 3C 00 00 00 14 00 00 00 00 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRESP50\Enum]
"0" = Root\LEGACY_MRESP50\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRESP50a64]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS
"DisplayName" = MRESP50a64 NDIS Protocol Driver
"Group" = PNP_TDI
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRESP50a64\Security]
"Security" = 01 00 14 88 30 00 00 00 3C 00 00 00 14 00 00 00 00 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRxDAV]
"DisplayName" = WebDav Client Redirector Driver
"ErrorControl" = 1
"ImagePath" = \SystemRoot\system32\drivers\mrxdav.sys
"Start" = 3
"Type" = 2
"Description" = WebDav Client Redirector Driver
"DependOnService" = rdbss [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRxDAV\EncryptedDirectories]
"EncryptedDirectories" =
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRxDAV\Parameters]
"UMRxDebugFlag" = 0
"FinalizeVNetRootRequestTimeoutInSec" = 600
"CreateRequestTimeoutInSec" = 1800
"CloseRequestTimeoutInSec" = 1800
"FileInformationCacheLifeTimeInSec" = 60
"SetFileInfoRequestTimeoutInSec" = 600
"QueryDirectoryRequestTimeoutInSec" = 600
"FileNotFoundCacheLifeTimeInSec" = 60
"FinalizeSrvCallRequestTimeoutInSec" = 600
"NameCacheMaxEntries" = 300
"FsCtlRequestTimeoutInSec" = 1800
"QueryVolumeInfoRequestTimeoutInSec" = 600
"CreateSrvCallRequestTimeoutInSec" = 20
"FinalizeFcbRequestTimeoutInSec" = 60
"CreateVNetRootRequestTimeoutInSec" = 60
"ReNameRequestTimeoutInSec" = 600
"DAVDebugFlag" = 0
"LockRefreshRequestTimeoutInSec" = 600
"QueryFileInfoRequestTimeoutInSec" = 600
"FinalizeFobxRequestTimeoutInSec" = 60
"DevFsCtlRequestTimeoutInSec" = 600
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRxDAV\Enum]
"0" = Root\LEGACY_MRXDAV\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mrxsmb]
"DisplayName" = SMB MiniRedirector Wrapper and Engine
"Group" = Network
"ImagePath" = system32\DRIVERS\mrxsmb.sys -- [2011.04.29 14:24:40 | 000,106,496 | ---- | M] (Microsoft Corporation)
"Description" = Implements the framework for the SMB filesystem redirector
"ErrorControl" = 1
"Start" = 3
"Tag" = 5
"Type" = 2
"DependOnService" = rdbss [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mrxsmb\Enum]
"0" = Root\LEGACY_MRXSMB\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mrxsmb10]
"DisplayName" = SMB 1.x MiniRedirector
"Group" = Network
"ImagePath" = system32\DRIVERS\mrxsmb10.sys -- [2011.07.06 16:31:47 | 000,214,016 | ---- | M] (Microsoft Corporation)
"Description" = Implements the SMB 1.x (CIFS) protocol. This protocol provides connectivity to network resources on pre-Windows Vista servers
"ErrorControl" = 1
"Start" = 3
"Tag" = 6
"Type" = 2
"DependOnService" = mrxsmb [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mrxsmb10\Enum]
"0" = Root\LEGACY_MRXSMB10\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mrxsmb20]
"DisplayName" = SMB 2.0 MiniRedirector
"Group" = Network
"ImagePath" = system32\DRIVERS\mrxsmb20.sys -- [2011.04.29 14:24:42 | 000,079,872 | ---- | M] (Microsoft Corporation)
"Description" = Implements the SMB 2.0 protocol, which provides connectivity to network resources on Windows Vista and later servers
"ErrorControl" = 1
"Start" = 3
"Tag" = 7
"Type" = 2
"DependOnService" = mrxsmb [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mrxsmb20\Enum]
"0" = Root\LEGACY_MRXSMB20\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msahci]
"Group" = SCSI Miniport
"ImagePath" = system32\drivers\msahci.sys -- [2009.04.11 07:32:28 | 000,027,112 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
"Tag" = 64
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msahci\Enum]
"0" = PCI\VEN_10DE&DEV_0AB8&SUBSYS_1A871043&REV_B1\3&267a616a&0&58
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msdsm]
"DisplayName" = Microsoft Multi-Path Device Specific Module
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\msdsm.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msdsm\Parameters]
"DsmSupportedDeviceList" = Vendor 8Product 16 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC]
"DisplayName" = @comres.dll,-2797
"ImagePath" = %SystemRoot%\System32\msdtc.exe -- [2008.01.21 03:24:18 | 000,105,984 | ---- | M] (Microsoft Corporation)
"Description" = @comres.dll,-2798
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"DependOnService" = RPCSSSamSS [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E8 03 00 00 01 00 00 00 F8 2A 00 00 00 00 00 00 00 00 00 00 [binary data]
"DelayedAutostart" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC\Performance]
"Library" = msdtcuiu.DLL -- [2008.01.21 03:24:19 | 000,215,040 | ---- | M] (Microsoft Corporation)
"Open" = DtcPerfOpen
"Collect" = DtcPerfCollect
"Close" = DtcPerfClose
"InstallType" = 1
"PerfIniFile" = msdtcprf.ini
"First Counter" = 3208
"Last Counter" = 3234
"First Help" = 3209
"Last Help" = 3235
"Object List" = 3208
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC\Security]
"Security" = 01 00 14 80 DC 00 00 00 E8 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 AC 00 07 00 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 02 00 00 00 00 00 00 14 00 FF 00 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 8D 00 02 00 01 06 00 00 00 00 00 05 50 00 00 00 E5 32 0F EC 28 BE A2 92 2C 29 35 F1 63 42 DC 6B 5A 0A 25 86 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC Bridge 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC Bridge 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 2726963202726963202726963202726 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = Message send failures/secPrepare [Binary data over 200 bytes]
"IsMultiInstance" = 0
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _TransactionBridgePerfCounters_D.ini
"First Counter" = 4168
"Last Counter" = 4190
"First Help" = 4169
"Last Help" = 4191
"Object List" = 4168
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC Bridge 4.0.0.0]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC Bridge 4.0.0.0\Performance]
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Close" = ClosePerformanceData
"Counter Types" = 2726963202726963202726963202726 [Binary data over 200 bytes]
"Counter Names" = Message send failures/secPrepare [Binary data over 200 bytes]
"IsMultiInstance" = 0
"CategoryOptions" = 3
"PerfIniFile" = _TransactionBridgePerfCounters.ini
"Last Counter" = 9868
"Last Help" = 9869
"First Counter" = 9846
"First Help" = 9847
"Object List" = 9846
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Msfs]
"ErrorControl" = 1
"Group" = File system
"Start" = 1
"Type" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Msfs\Enum]
"0" = Root\LEGACY_MSFS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msisadrv]
"Tag" = 2
"DisplayName" = Ovladač třídy ISA/EISA
"Group" = Boot Bus Extender
"ImagePath" = system32\drivers\msisadrv.sys -- [2008.01.21 03:23:01 | 000,016,440 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msisadrv\Enum]
"0" = Root\LEGACY_MSISADRV\0000
"Count" = 2
"NextInstance" = 2
"1" = PCI\VEN_10DE&DEV_0AAE&SUBSYS_1A871043&REV_B2\3&267a616a&0&18
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSiSCSI]
"DisplayName" = @%SystemRoot%\system32\iscsidsc.dll,-5000
"Group" = iSCSI
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\iscsidsc.dll,-5001
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActionsOnNonCrashFailures" = 1
"FailureActions" = 50 46 00 00 01 00 00 00 01 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
"RebootMessage" = See Note 3 below
"FailureCommand" = customScript.cmd
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSiSCSI\Parameters]
"ServiceDll" = %systemroot%\system32\iscsiexe.dll -- [2008.01.21 03:23:49 | 000,111,616 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msiserver]
"DisplayName" = @%SystemRoot%\system32\msimsg.dll,-27
"ImagePath" = %systemroot%\system32\msiexec /V -- [2009.04.11 07:27:45 | 000,073,216 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\msimsg.dll,-32
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"DependOnService" = rpcss [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeTcbPrivilegeSeCreatePagefilePri [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSKSSRV]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 16
"ImagePath" = system32\drivers\MSKSSRV.sys -- [2008.01.21 03:24:50 | 000,008,192 | ---- | M] (Microsoft Corporation)
"DisplayName" = Microsoft Streaming Service Proxy
"Group" = Extended Base
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSPCLOCK]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 14
"ImagePath" = system32\drivers\MSPCLOCK.sys -- [2008.01.21 03:24:51 | 000,005,888 | ---- | M] (Microsoft Corporation)
"DisplayName" = Microsoft Streaming Clock Proxy
"Group" = Extended Base
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSPQM]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 15
"ImagePath" = system32\drivers\MSPQM.sys -- [2008.01.21 03:24:51 | 000,005,504 | ---- | M] (Microsoft Corporation)
"DisplayName" = Microsoft Streaming Quality Manager Proxy
"Group" = Extended Base
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MsRPC]
"ErrorControl" = 1
"Start" = 3
"Tag" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSSCNTRS]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSSCNTRS\Performance]
"Close" = Close
"Open" = Open
"Collect" = Collect
"Library" = %systemroot%\system32\msscntrs.dll -- [2009.04.11 07:28:22 | 000,060,416 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mssmbios]
"DisplayName" = Ovladač Microsoft System Management BIOS
"ImagePath" = system32\DRIVERS\mssmbios.sys -- [2008.01.21 03:23:01 | 000,031,288 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
"DependOnService" = SSDPSRVIPBusEnumTermServicefdphost [binary data]
"ObjectName" = NT Authority\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mcx2Svc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\system32\Mcx2Svc.dll -- [2008.01.21 03:25:11 | 000,053,760 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\megasas]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\megasas.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\megasas\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\megasas\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MegaSR]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\megasr.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MegaSR\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MegaSR\Parameters\Device]
"UncachedExtAlignment" = 16
"NumberOfRequests" = 20
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MegaSR\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MMCSS]
"DisplayName" = @%systemroot%\system32\mmcss.dll,-100
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\mmcss.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"RequiredPrivileges" = SeIncreaseBasePriorityPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MMCSS\Parameters]
"ServiceDll" = %SystemRoot%\system32\mmcss.dll -- [2008.01.21 03:24:54 | 000,045,056 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Modem]
"Group" = Extended base
"ImagePath" = system32\drivers\modem.sys -- [2008.01.21 03:24:57 | 000,031,744 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 0
"Start" = 3
"Tag" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Modem\Enum]
"0" = HDAUDIO\FUNC_02&VEN_1057&DEV_3055&SUBSYS_10573055&REV_1007\4&10d89169&0&0101
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MODEMCSA]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 19
"ImagePath" = system32\drivers\MODEMCSA.sys -- [2008.01.21 03:23:26 | 000,018,432 | ---- | M] (Microsoft Corporation)
"DisplayName" = Unimodem Streaming Filter Device
"Group" = Extended Base
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\monitor]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\monitor.sys -- [2008.01.21 03:23:22 | 000,041,984 | ---- | M] (Microsoft Corporation)
"DisplayName" = Služba ovladače funkce třídy monitorů Microsoft
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\monitor\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mouclass]
"DisplayName" = Mouse Class Driver
"Group" = Pointer Class
"ImagePath" = system32\DRIVERS\mouclass.sys -- [2008.01.21 03:23:20 | 000,034,360 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 1
"Type" = 1
"Tag" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mouclass\Enum]
"0" = Root\RDP_MOU\0000
"Count" = 3
"NextInstance" = 3
"1" = ACPI\SYN0A06\4&323124ef&0
"2" = HID\VID_046D&PID_C019\6&26fe6301&0&0000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mouhid]
"DisplayName" = Ovladač HID myši
"Group" = Pointer Port
"ImagePath" = system32\DRIVERS\mouhid.sys -- [2008.01.21 03:23:20 | 000,015,872 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 0
"Start" = 3
"Type" = 1
"Tag" = 4
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mouhid\Parameters]
"UseOnlyMice" = 0
"TreatAbsoluteAsRelative" = 0
"TreatAbsolutePointerAsAbsolute" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mouhid\Enum]
"0" = HID\VID_046D&PID_C019\6&26fe6301&0&0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MountMgr]
"DisplayName" = Mount Point Manager
"Group" = System Bus Extender
"ImagePath" = System32\drivers\mountmgr.sys -- [2008.01.21 03:23:43 | 000,057,400 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
"Description" = Driver responsible with maintaining persistent drive letters and names for volumes
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MountMgr\Enum]
"0" = Root\LEGACY_MOUNTMGR\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mpio]
"DisplayName" = Microsoft Multi-Path Bus Driver
"Group" = Boot Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\mpio.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mpsdrv]
"DisplayName" = @%SystemRoot%\system32\FirewallAPI.dll,-23092
"Group" = network
"ImagePath" = System32\drivers\mpsdrv.sys -- [2008.01.21 03:24:47 | 000,064,000 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\FirewallAPI.dll,-23093
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mpsdrv\Enum]
"0" = Root\LEGACY_MPSDRV\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MpsSvc]
"DisplayName" = @%SystemRoot%\system32\FirewallAPI.dll,-23090
"Group" = NetworkProvider
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalServiceNoNetwork -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\FirewallAPI.dll,-23091
"ObjectName" = NT Authority\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = mpsdrvbfe [binary data]
"ServiceSidType" = 3
"RequiredPrivileges" = SeAssignPrimaryTokenPrivilegeSeAu [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MpsSvc\Parameters]
"ServiceDll" = %SystemRoot%\system32\mpssvc.dll -- [2009.04.11 07:28:20 | 000,407,552 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MpsSvc\Parameters\PortKeywords]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MpsSvc\Parameters\PortKeywords\RPC-EPMap]
"Collection" = 87 00 01 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MpsSvc\Parameters\PortKeywords\Teredo]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MpsSvc\Security]
"Security" = 01 00 14 80 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 15 00 00 00 01 06 00 00 00 00 00 05 50 00 00 00 49 59 9D 77 91 56 E5 55 DC F4 E2 0E A7 8B EB CA 7B 42 13 56 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mraid35x]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\mraid35x.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mraid35x\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mraid35x\Parameters\Device]
"NumberOfRequests" = 189
"CreateInitiatorLU" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mraid35x\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MREMP50]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50.SYS -- [2008.03.29 10:20:55 | 000,021,248 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA))
"DisplayName" = MREMP50 NDIS Protocol Driver
"Group" = PNP_TDI
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MREMP50\Security]
"Security" = 01 00 14 88 30 00 00 00 3C 00 00 00 14 00 00 00 00 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MREMP50a64]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS
"DisplayName" = MREMP50a64 NDIS Protocol Driver
"Group" = PNP_TDI
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MREMP50a64\Security]
"Security" = 01 00 14 88 30 00 00 00 3C 00 00 00 14 00 00 00 00 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MREMPR5]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS
"DisplayName" = MREMPR5 NDIS Protocol Driver
"Group" = PNP_TDI
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MREMPR5\Security]
"Security" = 01 00 14 88 30 00 00 00 3C 00 00 00 14 00 00 00 00 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRENDIS5]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS
"DisplayName" = MRENDIS5 NDIS Protocol Driver
"Group" = PNP_TDI
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRENDIS5\Security]
"Security" = 01 00 14 88 30 00 00 00 3C 00 00 00 14 00 00 00 00 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRESP50]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50.SYS -- [2008.03.29 10:20:55 | 000,020,096 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA))
"DisplayName" = MRESP50 NDIS Protocol Driver
"Group" = PNP_TDI
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRESP50\Security]
"Security" = 01 00 14 88 30 00 00 00 3C 00 00 00 14 00 00 00 00 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRESP50\Enum]
"0" = Root\LEGACY_MRESP50\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRESP50a64]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS
"DisplayName" = MRESP50a64 NDIS Protocol Driver
"Group" = PNP_TDI
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRESP50a64\Security]
"Security" = 01 00 14 88 30 00 00 00 3C 00 00 00 14 00 00 00 00 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRxDAV]
"DisplayName" = WebDav Client Redirector Driver
"ErrorControl" = 1
"ImagePath" = \SystemRoot\system32\drivers\mrxdav.sys
"Start" = 3
"Type" = 2
"Description" = WebDav Client Redirector Driver
"DependOnService" = rdbss [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRxDAV\EncryptedDirectories]
"EncryptedDirectories" =
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRxDAV\Parameters]
"UMRxDebugFlag" = 0
"FinalizeVNetRootRequestTimeoutInSec" = 600
"CreateRequestTimeoutInSec" = 1800
"CloseRequestTimeoutInSec" = 1800
"FileInformationCacheLifeTimeInSec" = 60
"SetFileInfoRequestTimeoutInSec" = 600
"QueryDirectoryRequestTimeoutInSec" = 600
"FileNotFoundCacheLifeTimeInSec" = 60
"FinalizeSrvCallRequestTimeoutInSec" = 600
"NameCacheMaxEntries" = 300
"FsCtlRequestTimeoutInSec" = 1800
"QueryVolumeInfoRequestTimeoutInSec" = 600
"CreateSrvCallRequestTimeoutInSec" = 20
"FinalizeFcbRequestTimeoutInSec" = 60
"CreateVNetRootRequestTimeoutInSec" = 60
"ReNameRequestTimeoutInSec" = 600
"DAVDebugFlag" = 0
"LockRefreshRequestTimeoutInSec" = 600
"QueryFileInfoRequestTimeoutInSec" = 600
"FinalizeFobxRequestTimeoutInSec" = 60
"DevFsCtlRequestTimeoutInSec" = 600
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MRxDAV\Enum]
"0" = Root\LEGACY_MRXDAV\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mrxsmb]
"DisplayName" = SMB MiniRedirector Wrapper and Engine
"Group" = Network
"ImagePath" = system32\DRIVERS\mrxsmb.sys -- [2011.04.29 14:24:40 | 000,106,496 | ---- | M] (Microsoft Corporation)
"Description" = Implements the framework for the SMB filesystem redirector
"ErrorControl" = 1
"Start" = 3
"Tag" = 5
"Type" = 2
"DependOnService" = rdbss [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mrxsmb\Enum]
"0" = Root\LEGACY_MRXSMB\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mrxsmb10]
"DisplayName" = SMB 1.x MiniRedirector
"Group" = Network
"ImagePath" = system32\DRIVERS\mrxsmb10.sys -- [2011.07.06 16:31:47 | 000,214,016 | ---- | M] (Microsoft Corporation)
"Description" = Implements the SMB 1.x (CIFS) protocol. This protocol provides connectivity to network resources on pre-Windows Vista servers
"ErrorControl" = 1
"Start" = 3
"Tag" = 6
"Type" = 2
"DependOnService" = mrxsmb [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mrxsmb10\Enum]
"0" = Root\LEGACY_MRXSMB10\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mrxsmb20]
"DisplayName" = SMB 2.0 MiniRedirector
"Group" = Network
"ImagePath" = system32\DRIVERS\mrxsmb20.sys -- [2011.04.29 14:24:42 | 000,079,872 | ---- | M] (Microsoft Corporation)
"Description" = Implements the SMB 2.0 protocol, which provides connectivity to network resources on Windows Vista and later servers
"ErrorControl" = 1
"Start" = 3
"Tag" = 7
"Type" = 2
"DependOnService" = mrxsmb [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mrxsmb20\Enum]
"0" = Root\LEGACY_MRXSMB20\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msahci]
"Group" = SCSI Miniport
"ImagePath" = system32\drivers\msahci.sys -- [2009.04.11 07:32:28 | 000,027,112 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
"Tag" = 64
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msahci\Enum]
"0" = PCI\VEN_10DE&DEV_0AB8&SUBSYS_1A871043&REV_B1\3&267a616a&0&58
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msdsm]
"DisplayName" = Microsoft Multi-Path Device Specific Module
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\msdsm.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msdsm\Parameters]
"DsmSupportedDeviceList" = Vendor 8Product 16 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC]
"DisplayName" = @comres.dll,-2797
"ImagePath" = %SystemRoot%\System32\msdtc.exe -- [2008.01.21 03:24:18 | 000,105,984 | ---- | M] (Microsoft Corporation)
"Description" = @comres.dll,-2798
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"DependOnService" = RPCSSSamSS [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E8 03 00 00 01 00 00 00 F8 2A 00 00 00 00 00 00 00 00 00 00 [binary data]
"DelayedAutostart" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC\Performance]
"Library" = msdtcuiu.DLL -- [2008.01.21 03:24:19 | 000,215,040 | ---- | M] (Microsoft Corporation)
"Open" = DtcPerfOpen
"Collect" = DtcPerfCollect
"Close" = DtcPerfClose
"InstallType" = 1
"PerfIniFile" = msdtcprf.ini
"First Counter" = 3208
"Last Counter" = 3234
"First Help" = 3209
"Last Help" = 3235
"Object List" = 3208
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC\Security]
"Security" = 01 00 14 80 DC 00 00 00 E8 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 AC 00 07 00 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 02 00 00 00 00 00 00 14 00 FF 00 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 00 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 8D 00 02 00 01 06 00 00 00 00 00 05 50 00 00 00 E5 32 0F EC 28 BE A2 92 2C 29 35 F1 63 42 DC 6B 5A 0A 25 86 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC Bridge 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC Bridge 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 2726963202726963202726963202726 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = Message send failures/secPrepare [Binary data over 200 bytes]
"IsMultiInstance" = 0
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _TransactionBridgePerfCounters_D.ini
"First Counter" = 4168
"Last Counter" = 4190
"First Help" = 4169
"Last Help" = 4191
"Object List" = 4168
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC Bridge 4.0.0.0]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSDTC Bridge 4.0.0.0\Performance]
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Close" = ClosePerformanceData
"Counter Types" = 2726963202726963202726963202726 [Binary data over 200 bytes]
"Counter Names" = Message send failures/secPrepare [Binary data over 200 bytes]
"IsMultiInstance" = 0
"CategoryOptions" = 3
"PerfIniFile" = _TransactionBridgePerfCounters.ini
"Last Counter" = 9868
"Last Help" = 9869
"First Counter" = 9846
"First Help" = 9847
"Object List" = 9846
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Msfs]
"ErrorControl" = 1
"Group" = File system
"Start" = 1
"Type" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Msfs\Enum]
"0" = Root\LEGACY_MSFS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msisadrv]
"Tag" = 2
"DisplayName" = Ovladač třídy ISA/EISA
"Group" = Boot Bus Extender
"ImagePath" = system32\drivers\msisadrv.sys -- [2008.01.21 03:23:01 | 000,016,440 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msisadrv\Enum]
"0" = Root\LEGACY_MSISADRV\0000
"Count" = 2
"NextInstance" = 2
"1" = PCI\VEN_10DE&DEV_0AAE&SUBSYS_1A871043&REV_B2\3&267a616a&0&18
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSiSCSI]
"DisplayName" = @%SystemRoot%\system32\iscsidsc.dll,-5000
"Group" = iSCSI
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\iscsidsc.dll,-5001
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActionsOnNonCrashFailures" = 1
"FailureActions" = 50 46 00 00 01 00 00 00 01 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
"RebootMessage" = See Note 3 below
"FailureCommand" = customScript.cmd
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSiSCSI\Parameters]
"ServiceDll" = %systemroot%\system32\iscsiexe.dll -- [2008.01.21 03:23:49 | 000,111,616 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\msiserver]
"DisplayName" = @%SystemRoot%\system32\msimsg.dll,-27
"ImagePath" = %systemroot%\system32\msiexec /V -- [2009.04.11 07:27:45 | 000,073,216 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\msimsg.dll,-32
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"DependOnService" = rpcss [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeTcbPrivilegeSeCreatePagefilePri [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSKSSRV]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 16
"ImagePath" = system32\drivers\MSKSSRV.sys -- [2008.01.21 03:24:50 | 000,008,192 | ---- | M] (Microsoft Corporation)
"DisplayName" = Microsoft Streaming Service Proxy
"Group" = Extended Base
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSPCLOCK]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 14
"ImagePath" = system32\drivers\MSPCLOCK.sys -- [2008.01.21 03:24:51 | 000,005,888 | ---- | M] (Microsoft Corporation)
"DisplayName" = Microsoft Streaming Clock Proxy
"Group" = Extended Base
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSPQM]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 15
"ImagePath" = system32\drivers\MSPQM.sys -- [2008.01.21 03:24:51 | 000,005,504 | ---- | M] (Microsoft Corporation)
"DisplayName" = Microsoft Streaming Quality Manager Proxy
"Group" = Extended Base
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MsRPC]
"ErrorControl" = 1
"Start" = 3
"Tag" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSSCNTRS]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSSCNTRS\Performance]
"Close" = Close
"Open" = Open
"Collect" = Collect
"Library" = %systemroot%\system32\msscntrs.dll -- [2009.04.11 07:28:22 | 000,060,416 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mssmbios]
"DisplayName" = Ovladač Microsoft System Management BIOS
"ImagePath" = system32\DRIVERS\mssmbios.sys -- [2008.01.21 03:23:01 | 000,031,288 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 3
"Type" = 1
Re: policie čr prosim o radu
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mssmbios\Data]
"AcpiData" = 41 50 49 43 70 00 00 00 01 F6 30 39 30 38 30 38 41 50 49 43 31 30 33 31 08 09 08 20 4D 53 46 54 97 00 00 00 00 00 E0 FE 01 00 00 00 00 08 01 00 01 00 00 00 46 41 43 50 F4 00 00 00 03 43 30 39 30 38 30 38 46 41 43 50 31 30 33 31 08 09 08 20 4D 53 46 54 97 00 00 00 00 E0 FA AF E0 06 FA AF 01 02 09 00 2E 44 00 00 44 42 47 50 34 00 00 00 01 37 30 39 30 38 30 38 44 42 47 50 31 30 33 31 08 09 08 20 4D 53 46 54 97 00 00 00 00 00 00 00 01 08 00 00 40 09 00 00 00 00 00 00 48 50 45 54 38 00 00 00 01 A5 30 39 30 38 30 38 4F 45 4D 48 50 45 54 30 08 09 08 20 4D 53 46 54 97 00 00 00 01 82 DE 10 00 08 00 00 00 00 D0 FE 00 00 00 00 42 4F 4F 54 28 00 00 00 01 68 30 39 30 38 30 38 42 4F 4F 54 31 30 33 31 08 09 08 20 4D 53 46 54 97 00 00 00 FF 00 00 00 4D 43 46 47 3C 00 00 00 01 36 30 39 30 38 30 38 4F 45 4D 4D 43 46 47 20 08 09 08 20 4D 53 46 54 97 00 00 00 00 00 00 00 00 00 00 00 00 00 00 F0 00 00 00 00 57 44 52 54 47 00 00 00 01 26 30 39 30 38 30 38 4E 56 2D 57 44 52 54 20 08 09 08 20 4D 53 46 54 97 00 00 00 00 08 00 03 00 10 D0 FE 00 00 00 00 00 10 00 03 4F 45 4D 58 76 01 00 00 01 FC 30 39 30 38 30 38 4F 45 4D 58 31 30 33 31 08 09 08 20 4D 53 46 54 97 00 00 00 00 00 00 00 9C 00 00 00 06 02 00 00 00 24 00 00 45 43 44 54 53 00 00 00 01 81 30 39 30 38 30 38 4F 45 4D 45 43 44 54 20 08 09 08 20 4D 53 46 54 97 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4F 45 4D 42 72 00 00 00 01 1D 30 39 30 38 30 38 4F 45 4D 42 31 30 33 31 08 09 08 20 4D 53 46 54 97 00 00 00 0C 00 14 00 00 00 C0 00 00 F0 FF 00 00 0D 00 00 4E 56 48 44 84 02 00 00 01 23 30 39 30 38 30 38 4E 56 48 44 43 50 20 00 08 09 08 20 4D 53 46 54 97 00 00 00 24 48 44 43 50 24 F9 00 58 02 03 02 4E 56 10 4C 54 43 50 41 32 00 00 00 01 A1 30 39 30 38 30 38 54 42 4C 4F 45 4D 49 44 01 00 00 00 4D 53 46 54 97 00 00 00 00 00 00 00 01 00 F0 0E FB AF 00 00 00 00 53 53 44 54 F0 04 00 00 01 1C 50 6D 52 65 66 00 43 70 75 50 6D 00 00 00 00 30 00 00 49 4E 54 4C 17 11 05 20 [Binary data over 200 bytes]
"RegistersData" = 00 00 00 00 00 00 00 00 0A 00 00 00 47 65 6E 75 6E 74 65 6C 69 6E 65 49 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 FD 06 00 00 00 08 02 00 9D E3 00 00 FF FB EB BF 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 01 B1 B0 05 F0 57 56 00 00 00 00 00 7D 30 B4 2C 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 04 00 00 00 21 01 00 04 3F 00 C0 01 3F 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 05 00 00 00 40 00 00 00 40 00 00 00 03 00 00 00 20 22 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 06 00 00 00 01 00 00 00 02 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 00 04 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0A 00 00 00 02 02 28 07 00 00 00 00 00 00 00 00 03 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 17 00 00 00 2B 8A 70 9A 00 00 1C 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 8B 00 00 00 00 00 00 00 A3 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 9A 01 00 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 9B 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 9C 01 00 00 00 00 16 88 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 9D 01 00 00 1B 06 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 A0 01 00 00 89 24 97 64 53 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 80 00 00 C0 00 08 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 80 08 00 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 80 00 00 00 00 00 00 00 00 01 00 00 00 00 00 10 20 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 80 49 6E 74 65 6C 28 52 29 20 43 6F 72 65 28 54 4D 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 03 00 00 80 29 32 20 44 75 6F 20 43 50 55 20 20 20 20 20 54 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 04 00 00 80 35 38 30 30 20 20 40 20 32 2E 30 30 47 48 7A 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 05 00 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 06 00 00 80 00 00 00 00 00 00 00 00 40 60 00 08 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 07 00 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 80 24 30 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"BiosData" = 0A 00 00 00 7E 00 4D 00 48 00 7A 00 00 00 04 00 00 00 04 00 00 00 D0 07 00 00 2C 00 00 00 43 00 6F 00 6D 00 70 00 6F 00 6E 00 65 00 6E 00 74 00 20 00 49 00 6E 00 66 00 6F 00 72 00 6D 00 61 00 74 00 69 00 6F 00 6E 00 00 00 03 00 00 00 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 26 00 00 00 43 00 6F 00 6E 00 66 00 69 00 67 00 75 00 72 00 61 00 74 00 69 00 6F 00 6E 00 20 00 44 00 61 00 74 00 61 00 00 00 09 00 00 00 10 00 00 00 FF FF FF FF FF FF FF FF 00 00 00 00 00 00 00 00 16 00 00 00 49 00 64 00 65 00 6E 00 74 00 69 00 66 00 69 00 65 00 72 00 00 00 01 00 00 00 44 00 00 00 78 00 38 00 36 00 20 00 46 00 61 00 6D 00 69 00 6C 00 79 00 20 00 36 00 20 00 4D 00 6F 00 64 00 65 00 6C 00 20 00 31 00 35 00 20 00 53 00 74 00 65 00 70 00 70 00 69 00 6E 00 67 00 20 00 31 00 33 00 00 00 28 00 00 00 50 00 72 00 6F 00 63 00 65 00 73 00 73 00 6F 00 72 00 4E 00 61 00 6D 00 65 00 53 00 74 00 72 00 69 00 6E 00 67 00 00 00 01 00 00 00 60 00 00 00 49 00 6E 00 74 00 65 00 6C 00 28 00 52 00 29 00 20 00 43 00 6F 00 72 00 65 00 28 00 54 00 4D 00 29 00 32 00 20 00 44 00 75 00 6F 00 20 00 43 00 50 00 55 00 20 00 20 00 20 00 20 00 20 00 54 00 35 00 38 00 30 00 30 00 20 00 20 00 40 00 20 00 32 00 2E 00 30 00 30 00 47 00 48 00 7A 00 00 00 22 00 00 00 55 00 70 00 64 00 61 00 74 00 65 00 20 00 53 00 69 00 67 00 6E 00 61 00 74 00 75 00 72 00 65 00 00 00 03 00 00 00 08 00 00 00 00 00 00 00 A3 00 00 00 1C 00 00 00 55 00 70 00 64 00 61 00 74 00 65 00 20 00 53 00 74 00 61 00 74 00 75 00 73 00 00 00 04 00 00 00 04 00 00 00 06 00 00 00 22 00 00 00 56 00 65 00 6E 00 64 00 6F 00 72 00 49 00 64 00 65 00 6E 00 74 00 69 00 66 00 69 00 65 00 72 00 00 00 01 00 00 00 1A 00 00 00 47 00 65 00 6E 00 75 00 69 00 6E 00 65 00 49 00 6E 00 74 00 65 00 6C 00 00 00 0C 00 00 00 4D 00 53 00 52 00 38 00 42 00 00 00 0B 00 00 00 08 00 00 00 00 00 00 00 A3 00 00 00 [Binary data over 200 bytes]
"SMBiosData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inary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mssmbios\Enum]
"0" = Root\SYSTEM\0002
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSTEE]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 17
"ImagePath" = system32\drivers\MSTEE.sys -- [2008.01.21 03:24:51 | 000,006,016 | ---- | M] (Microsoft Corporation)
"DisplayName" = Microsoft Streaming Tee/Sink-to-Sink Converter
"Group" = Extended Base
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MTsensor]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ATKACPI.sys -- [2006.12.14 08:11:57 | 000,007,680 | ---- | M] (ATK0100)
"DisplayName" = ATK0100 ACPI UTILITY
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MTsensor\Enum]
"0" = ACPI\ATK0100\1010100
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mup]
"DisplayName" = Mup
"Group" = Network
"ImagePath" = System32\Drivers\mup.sys -- [2009.04.11 07:32:31 | 000,048,104 | ---- | M] (Microsoft Corporation)
"Description" = Multiple UNC Provider
"ErrorControl" = 1
"Start" = 0
"Type" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mup\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mup\Enum]
"0" = Root\LEGACY_MUP\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent]
"DisplayName" = @%SystemRoot%\system32\qagentrt.dll,-6
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\qagentrt.dll,-7
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 00 5C 26 05 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\LocalConfig]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\LocalConfig\Enroll]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\LocalConfig\Enroll\HcsGroups]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\LocalConfig\UI]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Parameters]
"ServiceDLL" = %SystemRoot%\system32\qagentRT.dll -- [2009.04.11 07:28:23 | 000,302,592 | ---- | M] (Microsoft Corporation)
"ServiceDLLUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Qecs]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Qecs\79617]
"Id" = 79617
"Friendly Name" = @%SystemRoot%\system32\dhcpqec.dll,-100 -- [2008.01.21 03:24:07 | 000,066,048 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\dhcpqec.dll,-101
"Version" = 1.0
"Vendor Name" = Microsoft Corporation
"Enabled" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Qecs\79618]
"Id" = 79618
"Vendor Name" = Microsoft Corporation
"Friendly Name" = @%Systemroot%\system32\rasqec.dll,-200 -- [2008.01.21 03:24:14 | 000,069,632 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\rasqec.dll,-201
"Version" = 1.0
"Registration Date" =
"Enabled" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Qecs\79619]
"Id" = 79619
"Friendly Name" = @%SystemRoot%\system32\napipsec.dll,-1 -- [2008.01.21 03:24:10 | 000,034,304 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\napipsec.dll,-2
"Version" = @%SystemRoot%\system32\napipsec.dll,-4 -- [2008.01.21 03:24:10 | 000,034,304 | ---- | M] (Microsoft Corporation)
"Vendor Name" = @%SystemRoot%\system32\napipsec.dll,-3 -- [2008.01.21 03:24:10 | 000,034,304 | ---- | M] (Microsoft Corporation)
"Component Type" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Qecs\79621]
"Id" = 79621
"Friendly Name" = @%SystemRoot%\system32\tsgqec.dll,-100 -- [2009.04.11 07:28:24 | 000,053,248 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\tsgqec.dll,-101
"Version" = 1.0
"Vendor Name" = Microsoft Corporation
"Enabled" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Qecs\79623]
"Id" = 79623
"Friendly Name" = @%SystemRoot%\system32\eapqec.dll,-100 -- [2008.01.21 03:24:46 | 000,067,584 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\eapqec.dll,-101
"Version" = 1.0
"Vendor Name" = Microsoft Corporation
"Enabled" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Security]
"Security" = 01 00 14 80 A4 00 00 00 B0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 74 00 05 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FD 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2C 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 14 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Shas]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Shas\79744]
"Version" = 1
"Id" = 79744
"Enabled" = 1
"Vendor Name" = Microsoft Corporation
"Info Clsid" = {7886B467-66D4-4163-82BA-D9212FDB4CA8}
"Description" = Microsoft Out-of-Box System Health Agent
"Friendly Name" = Microsoft Out-of-Box System Health Agent
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\SohCache]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 18
"ImagePath" = system32\DRIVERS\nwifi.sys -- [2009.04.11 05:43:28 | 000,148,480 | ---- | M] (Microsoft Corporation)
"DisplayName" = Filtr NativeWiFi
"Group" = NDIS
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP\Parameters]
"DefaultFilterSettings" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP\Parameters\Adapters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP\Parameters\Adapters\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP\Parameters\Adapters\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}\ExtSTA]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP\Parameters\NdisAdapters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP\Parameters\NdisAdapters\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
"InterfaceGuid" = 91 F4 45 89 22 97 DD 11 BD 00 00 23 54 43 34 CE [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP\Enum]
"0" = Root\LEGACY_NATIVEWIFIP\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS]
"DisplayName" = NDIS System Driver
"Group" = NDIS Wrapper
"ImagePath" = system32\drivers\ndis.sys -- [2009.04.11 07:32:49 | 000,527,848 | ---- | M] (Microsoft Corporation)
"Description" = NDIS System Driver
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes\1]
"IfType" = 1
"IfUsedNetLuidIndices" = 01 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes\131]
"IfType" = 131
"IfUsedNetLuidIndices" = FF FF FF FF FF 07 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes\23]
"IfType" = 23
"IfUsedNetLuidIndices" = 03 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes\24]
"IfType" = 24
"IfUsedNetLuidIndices" = 01 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes\6]
"IfType" = 6
"IfUsedNetLuidIndices" = 69 1F [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes\71]
"IfType" = 71
"IfUsedNetLuidIndices" = 01 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes\71\1]
"PortAuthReceiveAuthorizationState" = 2
"PortAuthReceiveControlState" = 2
"PortAuthSendAuthorizationState" = 2
"PortAuthSendControlState" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\Parameters]
"PortAuthReceiveAuthorizationState" = 2
"PortAuthReceiveControlState" = 2
"PortAuthSendAuthorizationState" = 2
"PortAuthSendControlState" = 2
"ProcessorAffinityMask" = -1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\Enum]
"0" = Root\LEGACY_NDIS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisTapi]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ndistapi.sys -- [2008.01.21 03:24:25 | 000,020,992 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32001
"Description" = @%systemroot%\system32\rascfg.dll,-32001
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisTapi\Parameters]
"AsyncEventQueueSize" = 768
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisTapi\Enum]
"0" = Root\MS_NDISWANBH\0000
"Count" = 5
"NextInstance" = 5
"1" = Root\MS_NDISWANIP\0000
"2" = Root\MS_NDISWANIPV6\0000
"3" = Root\MS_PPPOEMINIPORT\0000
"4" = Root\MS_PPTPMINIPORT\0000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ndisuio]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 13
"ImagePath" = system32\DRIVERS\ndisuio.sys -- [2008.01.21 03:24:55 | 000,016,896 | ---- | M] (Microsoft Corporation)
"DisplayName" = NDIS Usermode I/O Protocol
"Group" = NDIS
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ndisuio\Linkage]
"Bind" = \Device\{DB5A0E6A-4A5D-47A0-8E63-B [Binary data over 200 bytes]
"Route" = "{DB5A0E6A-4A5D-47A0-8E63-B3C6DAAC [Binary data over 200 bytes]
"Export" = \Device\Ndisuio_{DB5A0E6A-4A5D-47A [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ndisuio\Enum]
"0" = Root\LEGACY_NDISUIO\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisWan]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ndiswan.sys -- [2009.04.11 05:46:32 | 000,121,344 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32002
"Description" = @%systemroot%\system32\rascfg.dll,-32002
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisWan\Linkage]
"Bind" = \Device\{71D7C445-F328-4585-A4E7-B [Binary data over 200 bytes]
"Route" = "{71D7C445-F328-4585-A4E7-BD5B4DDA [Binary data over 200 bytes]
"Export" = \Device\NdisWan_{71D7C445-F328-458 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisWan\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisWan\Enum]
"0" = Root\MS_NDISWANBH\0000
"Count" = 3
"NextInstance" = 3
"1" = Root\MS_NDISWANIP\0000
"2" = Root\MS_NDISWANIPV6\0000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDProxy]
"DisplayName" = NDIS Proxy [binary data]
"ErrorControl" = 1
"Group" = PNP_TDI
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDProxy\Enum]
"0" = Root\LEGACY_NDPROXY\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBIOS]
"Type" = 2
"Start" = 1
"ErrorControl" = 1
"Tag" = 2
"ImagePath" = system32\DRIVERS\netbios.sys -- [2008.01.21 03:24:20 | 000,035,840 | ---- | M] (Microsoft Corporation)
"DisplayName" = NetBIOS Interface
"Group" = NetBIOSGroup
"Description" = NetBIOS Interface
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBIOS\Linkage]
"LanaMap" = 01 14 01 10 01 0C 01 06 01 03 01 01 01 0A 01 05 01 08 01 13 01 15 01 12 01 00 01 11 01 0D 01 0F 01 0E 01 0B 01 09 01 07 01 04 01 02 [binary data]
"Bind" = \Device\NetBT_Tcpip_{DB5A0E6A-4A5D [Binary data over 200 bytes]
"Route" = "NetBT" "Tcpip" "{DB5A0E6A-4A5D-47 [Binary data over 200 bytes]
"Export" = \Device\NetBIOS_NetBT_Tcpip_{DB5A0 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBIOS\Parameters]
"MaxLana" = 21
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBIOS\Parameters\Winsock]
"HelperDllName" = %SystemRoot%\System32\wshnetbs.dll -- [2006.11.02 10:46:14 | 000,011,264 | ---- | M] (Microsoft Corporation)
"MaxSockAddrLength" = 20
"MinSockAddrLength" = 20
"Mapping" = 02 00 00 00 03 00 00 00 11 00 00 00 05 00 00 00 00 00 00 00 11 00 00 00 02 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBIOS\Enum]
"0" = Root\LEGACY_NETBIOS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt]
"DisplayName" = NETBT
"Group" = PNP_TDI
"ImagePath" = System32\DRIVERS\netbt.sys -- [2009.04.11 05:45:37 | 000,185,856 | ---- | M] (Microsoft Corporation)
"Description" = This service implements NetBios over TCP/IP.
"ErrorControl" = 1
"Start" = 1
"Type" = 1
"DependOnService" = Tdxtcpip [binary data]
"Tag" = 87
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Linkage]
"OtherDependencies" = Tcpip [binary data]
"Bind" = \Device\Tcpip_{DB5A0E6A-4A5D-47A0- [Binary data over 200 bytes]
"Route" = "Tcpip" "{DB5A0E6A-4A5D-47A0-8E63- [Binary data over 200 bytes]
"Export" = \Device\NetBT_Tcpip_{DB5A0E6A-4A5D [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters]
"BcastNameQueryCount" = 3
"BcastQueryTimeout" = 750
"CacheTimeout" = 600000
"EnableLMHOSTS" = 1
"NameServerPort" = 137
"NameSrvQueryCount" = 3
"NameSrvQueryTimeout" = 1500
"NbProvider" = _tcp
"SessionKeepAlive" = 3600000
"Size/Small/Medium/Large" = 1
"TransportBindName" = \Device\
"UseNewSmb" = 1
"DhcpNodeType" = 4
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}]
"NameServerList" = [binary data]
"NetbiosOptions" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{1E26EC88-A56D-4921-A26F-BE842C7AD246}]
"NameServerList" = [binary data]
"NetbiosOptions" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{24930843-A943-4314-AA1C-FC23C28C2A26}]
"NameServerList" = [binary data]
"NetbiosOptions" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{25BB4C6E-2FDB-45BB-97E8-5B834DFD8C87}]
"NameServerList" = [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
"NameServerList" = [binary data]
"NetbiosOptions" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{D51F2DDE-409B-4945-8CE3-E679E832F0D6}]
"NameServerList" = [binary data]
"NetbiosOptions" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}]
"NameServerList" = [binary data]
"NetbiosOptions" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{DD1627B1-E574-4274-804F-217EB4C76F3C}]
"NameServerList" = [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{EAE456AC-9095-4125-B655-830A8A22A5A6}]
"NameServerList" = [binary data]
"NetbiosOptions" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Security]
"Security" = 01 00 14 88 D0 00 00 00 DC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 A0 00 07 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 14 00 40 00 00 00 01 01 00 00 00 00 00 05 13 00 00 00 00 00 14 00 40 00 00 00 01 01 00 00 00 00 00 05 14 00 00 00 00 00 18 00 9D 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2C 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Enum]
"0" = Root\LEGACY_NETBT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Netlogon]
"DisplayName" = @%SystemRoot%\System32\netlogon.dll,-102
"Group" = MS_WindowsRemoteValidation
"ImagePath" = %systemroot%\system32\lsass.exe -- [2011.11.16 15:12:25 | 000,009,728 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\netlogon.dll,-103
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = LanmanWorkstation [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Netlogon\Parameters]
"Update" = no
"disablepasswordchange" = 0
"maximumpasswordage" = 30
"requiresignorseal" = 1
"requirestrongkey" = 0
"sealsecurechannel" = 1
"signsecurechannel" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Netman]
"DisplayName" = @%SystemRoot%\system32\netman.dll,-109
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\netman.dll,-110
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSsnsi [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeChangeNotifyPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Netman\Parameters]
"ServiceDll" = %SystemRoot%\System32\netman.dll -- [2008.01.21 03:24:11 | 000,274,432 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netprofm]
"DisplayName" = @%SystemRoot%\system32\netprof.dll,-246
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\netprof.dll,-247
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RpcSsnlasvc [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeChangeNotifyPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 64 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netprofm\Parameters]
"ServiceDll" = %SystemRoot%\System32\netprofm.dll -- [2008.01.21 03:24:23 | 000,237,056 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetTcpPortSharing]
"DisplayName" = @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8201
"ErrorControl" = 1
"ImagePath" = "%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe" -- [2009.02.18 19:38:43 | 000,129,880 | ---- | M] (Microsoft Corporation)
"Start" = 4
"Type" = 32
"Description" = @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8200
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 3
"RequiredPrivileges" = SeCreateGlobalPrivilege [binary data]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetTcpPortSharing\Security]
"Security" = 01 00 04 80 84 00 00 00 90 00 00 00 00 00 00 00 14 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nfrd960]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\nfrd960.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nfrd960\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nfrd960\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaSvc]
"DisplayName" = @%SystemRoot%\System32\nlasvc.dll,-1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\nlasvc.dll,-2
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = NSIRpcSsTcpIp [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeImperson [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaSvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\nlasvc.dll -- [2008.01.21 03:23:44 | 000,168,448 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaSvc\Parameters\Fuser]
"Tlag" = 500
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaSvc\Parameters\Internet]
"PassivePollPeriod" = 5
"StaleThreshold" = 30
"WebTimeout" = 10
"EnableActiveProbing" = 1
"ActiveWebProbeHost" = www.msftncsi.com
"ActiveWebProbePath" = ncsi.txt
"ActiveWebProbeContent" = Microsoft NCSI
"ActiveDnsProbeHost" = dns.msftncsi.com
"ActiveDnsProbeContent" = 131.107.255.255
"KnownProxylessGateways" = 64-70-02-bb-17-06 150459
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaSvc\Parameters\Internet\ManualProxies]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaSvc\Parameters\PMux]
"Tresolve" = 2000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaSvc\Security]
"Security" = 01 00 14 98 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 05 00 00 00 00 02 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 02 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 1D 00 02 00 01 06 00 00 00 00 00 05 50 00 00 00 44 3E 41 BB 45 BA A8 7A 6C BD 92 68 F4 AD 64 8F D5 E6 70 E9 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nmwcd]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 28
"ImagePath" = system32\drivers\nmwcd.sys -- [2007.02.22 09:15:56 | 000,137,216 | ---- | M] (Nokia)
"DisplayName" = Nokia USB Phone Parent
"Group" = Extended Base
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Npfs]
"ErrorControl" = 1
"Group" = File system
"Start" = 1
"Type" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Npfs\Aliases]
"lsass" = protected_storagenetlogonlsarpcsamr [binary data]
"ntsvcs" = svcctl [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Npfs\Enum]
"0" = Root\LEGACY_NPFS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nsi]
"DisplayName" = @%SystemRoot%\system32\nsisvc.dll,-200
"ImagePath" = %systemroot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\nsisvc.dll,-201
"ObjectName" = NT Authority\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = nsiproxy [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nsi\Parameters]
"ServiceDll" = %systemroot%\system32\nsisvc.dll -- [2008.01.21 03:24:47 | 000,018,432 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nsiproxy]
"DisplayName" = NSI proxy service
"ImagePath" = system32\drivers\nsiproxy.sys -- [2008.01.21 03:24:47 | 000,016,384 | ---- | M] (Microsoft Corporation)
"Description" = NSI proxy service
"ErrorControl" = 1
"Start" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nsiproxy\Enum]
"0" = Root\LEGACY_NSIPROXY\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NTDS]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NTDS\RID Values]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ntfs]
"Group" = FileSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ntfs\Enum]
"0" = Root\LEGACY_NTFS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ntrigdigi]
"DisplayName" = N-trig HID Tablet Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\ntrigdigi.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Null]
"ErrorControl" = 1
"Group" = Base
"Start" = 1
"Tag" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Null\Enum]
"0" = Root\LEGACY_NULL\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NVENETFD]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 23
"ImagePath" = system32\DRIVERS\nvmfdx32.sys -- [2008.07.08 11:32:51 | 001,050,656 | ---- | M] (NVIDIA Corporation)
"DisplayName" = NVIDIA nForce 10/100/1000 Mbps Ethernet
"Group" = NDIS
"BootFlags" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NVENETFD\Enum]
"0" = PCI\VEN_10DE&DEV_0AB0&SUBSYS_12151043&REV_B1\3&267a616a&0&50
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NVHDA]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\drivers\nvhda32v.sys -- [2008.06.25 06:05:05 | 000,044,064 | ---- | M] (NVIDIA Corporation)
"DisplayName" = Service for NVIDIA High Definition Audio Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NVHDA\Enum]
"0" = HDAUDIO\FUNC_01&VEN_10DE&DEV_0007&SUBSYS_10DE0101&REV_1001\4&10d89169&0&0301
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvlddmkm]
"Type" = 1
"Start" = 3
"ErrorControl" = 0
"Tag" = 3
"ImagePath" = system32\DRIVERS\nvlddmkm.sys -- [2008.07.25 09:30:59 | 007,547,552 | ---- | M] (NVIDIA Corporation)
"Group" = Video
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvlddmkm\Device0]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvlddmkm\Device1]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvlddmkm\Device2]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvlddmkm\Device3]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvlddmkm\Enum]
"0" = PCI\VEN_10DE&DEV_086F&SUBSYS_16B21043&REV_B1\4&eddcb02&0&0080
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvraid]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\nvraid.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
"DisplayName" = NVIDIA nForce RAID Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvsmu]
"Type" = 1
"Start" = 3
"ErrorControl" = 0
"ImagePath" = system32\DRIVERS\nvsmu.sys -- [2008.07.22 03:21:07 | 000,015,872 | ---- | M] (NVIDIA Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvsmu\Enum]
"0" = PCI\VEN_10DE&DEV_0AA3&SUBSYS_1A871043&REV_B1\3&267a616a&0&1D
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvstor]
"DisableFilterCache" = 1
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\nvstor.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvstor\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvstor\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvsvc]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\nvvsvc.exe -- [2008.07.25 09:30:59 | 000,196,608 | ---- | M] (NVIDIA Corporation)
"DisplayName" = NVIDIA Display Driver Service
"Group" = Video
"DependOnService" = nvlddmkm [binary data]
"ObjectName" = LocalSystem
"Description" = Provides system and desktop level support to the NVIDIA display driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nv_agp]
"DisplayName" = NVIDIA nForce AGP Bus Filter
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\nv_agp.sys
"ErrorControl" = 1
"Start" = 3
"AcpiData" = 41 50 49 43 70 00 00 00 01 F6 30 39 30 38 30 38 41 50 49 43 31 30 33 31 08 09 08 20 4D 53 46 54 97 00 00 00 00 00 E0 FE 01 00 00 00 00 08 01 00 01 00 00 00 46 41 43 50 F4 00 00 00 03 43 30 39 30 38 30 38 46 41 43 50 31 30 33 31 08 09 08 20 4D 53 46 54 97 00 00 00 00 E0 FA AF E0 06 FA AF 01 02 09 00 2E 44 00 00 44 42 47 50 34 00 00 00 01 37 30 39 30 38 30 38 44 42 47 50 31 30 33 31 08 09 08 20 4D 53 46 54 97 00 00 00 00 00 00 00 01 08 00 00 40 09 00 00 00 00 00 00 48 50 45 54 38 00 00 00 01 A5 30 39 30 38 30 38 4F 45 4D 48 50 45 54 30 08 09 08 20 4D 53 46 54 97 00 00 00 01 82 DE 10 00 08 00 00 00 00 D0 FE 00 00 00 00 42 4F 4F 54 28 00 00 00 01 68 30 39 30 38 30 38 42 4F 4F 54 31 30 33 31 08 09 08 20 4D 53 46 54 97 00 00 00 FF 00 00 00 4D 43 46 47 3C 00 00 00 01 36 30 39 30 38 30 38 4F 45 4D 4D 43 46 47 20 08 09 08 20 4D 53 46 54 97 00 00 00 00 00 00 00 00 00 00 00 00 00 00 F0 00 00 00 00 57 44 52 54 47 00 00 00 01 26 30 39 30 38 30 38 4E 56 2D 57 44 52 54 20 08 09 08 20 4D 53 46 54 97 00 00 00 00 08 00 03 00 10 D0 FE 00 00 00 00 00 10 00 03 4F 45 4D 58 76 01 00 00 01 FC 30 39 30 38 30 38 4F 45 4D 58 31 30 33 31 08 09 08 20 4D 53 46 54 97 00 00 00 00 00 00 00 9C 00 00 00 06 02 00 00 00 24 00 00 45 43 44 54 53 00 00 00 01 81 30 39 30 38 30 38 4F 45 4D 45 43 44 54 20 08 09 08 20 4D 53 46 54 97 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 4F 45 4D 42 72 00 00 00 01 1D 30 39 30 38 30 38 4F 45 4D 42 31 30 33 31 08 09 08 20 4D 53 46 54 97 00 00 00 0C 00 14 00 00 00 C0 00 00 F0 FF 00 00 0D 00 00 4E 56 48 44 84 02 00 00 01 23 30 39 30 38 30 38 4E 56 48 44 43 50 20 00 08 09 08 20 4D 53 46 54 97 00 00 00 24 48 44 43 50 24 F9 00 58 02 03 02 4E 56 10 4C 54 43 50 41 32 00 00 00 01 A1 30 39 30 38 30 38 54 42 4C 4F 45 4D 49 44 01 00 00 00 4D 53 46 54 97 00 00 00 00 00 00 00 01 00 F0 0E FB AF 00 00 00 00 53 53 44 54 F0 04 00 00 01 1C 50 6D 52 65 66 00 43 70 75 50 6D 00 00 00 00 30 00 00 49 4E 54 4C 17 11 05 20 [Binary data over 200 bytes]
"RegistersData" = 00 00 00 00 00 00 00 00 0A 00 00 00 47 65 6E 75 6E 74 65 6C 69 6E 65 49 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 FD 06 00 00 00 08 02 00 9D E3 00 00 FF FB EB BF 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 00 01 B1 B0 05 F0 57 56 00 00 00 00 00 7D 30 B4 2C 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 04 00 00 00 21 01 00 04 3F 00 C0 01 3F 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 05 00 00 00 40 00 00 00 40 00 00 00 03 00 00 00 20 22 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 06 00 00 00 01 00 00 00 02 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 00 00 04 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 09 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0A 00 00 00 02 02 28 07 00 00 00 00 00 00 00 00 03 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 17 00 00 00 2B 8A 70 9A 00 00 1C 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 8B 00 00 00 00 00 00 00 A3 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 9A 01 00 00 02 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 9B 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 9C 01 00 00 00 00 16 88 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 9D 01 00 00 1B 06 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 A0 01 00 00 89 24 97 64 53 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 80 00 00 C0 00 08 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 80 08 00 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 80 00 00 00 00 00 00 00 00 01 00 00 00 00 00 10 20 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 02 00 00 80 49 6E 74 65 6C 28 52 29 20 43 6F 72 65 28 54 4D 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 03 00 00 80 29 32 20 44 75 6F 20 43 50 55 20 20 20 20 20 54 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 04 00 00 80 35 38 30 30 20 20 40 20 32 2E 30 30 47 48 7A 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 05 00 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 06 00 00 80 00 00 00 00 00 00 00 00 40 60 00 08 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 07 00 00 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 08 00 00 80 24 30 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"BiosData" = 0A 00 00 00 7E 00 4D 00 48 00 7A 00 00 00 04 00 00 00 04 00 00 00 D0 07 00 00 2C 00 00 00 43 00 6F 00 6D 00 70 00 6F 00 6E 00 65 00 6E 00 74 00 20 00 49 00 6E 00 66 00 6F 00 72 00 6D 00 61 00 74 00 69 00 6F 00 6E 00 00 00 03 00 00 00 10 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 26 00 00 00 43 00 6F 00 6E 00 66 00 69 00 67 00 75 00 72 00 61 00 74 00 69 00 6F 00 6E 00 20 00 44 00 61 00 74 00 61 00 00 00 09 00 00 00 10 00 00 00 FF FF FF FF FF FF FF FF 00 00 00 00 00 00 00 00 16 00 00 00 49 00 64 00 65 00 6E 00 74 00 69 00 66 00 69 00 65 00 72 00 00 00 01 00 00 00 44 00 00 00 78 00 38 00 36 00 20 00 46 00 61 00 6D 00 69 00 6C 00 79 00 20 00 36 00 20 00 4D 00 6F 00 64 00 65 00 6C 00 20 00 31 00 35 00 20 00 53 00 74 00 65 00 70 00 70 00 69 00 6E 00 67 00 20 00 31 00 33 00 00 00 28 00 00 00 50 00 72 00 6F 00 63 00 65 00 73 00 73 00 6F 00 72 00 4E 00 61 00 6D 00 65 00 53 00 74 00 72 00 69 00 6E 00 67 00 00 00 01 00 00 00 60 00 00 00 49 00 6E 00 74 00 65 00 6C 00 28 00 52 00 29 00 20 00 43 00 6F 00 72 00 65 00 28 00 54 00 4D 00 29 00 32 00 20 00 44 00 75 00 6F 00 20 00 43 00 50 00 55 00 20 00 20 00 20 00 20 00 20 00 54 00 35 00 38 00 30 00 30 00 20 00 20 00 40 00 20 00 32 00 2E 00 30 00 30 00 47 00 48 00 7A 00 00 00 22 00 00 00 55 00 70 00 64 00 61 00 74 00 65 00 20 00 53 00 69 00 67 00 6E 00 61 00 74 00 75 00 72 00 65 00 00 00 03 00 00 00 08 00 00 00 00 00 00 00 A3 00 00 00 1C 00 00 00 55 00 70 00 64 00 61 00 74 00 65 00 20 00 53 00 74 00 61 00 74 00 75 00 73 00 00 00 04 00 00 00 04 00 00 00 06 00 00 00 22 00 00 00 56 00 65 00 6E 00 64 00 6F 00 72 00 49 00 64 00 65 00 6E 00 74 00 69 00 66 00 69 00 65 00 72 00 00 00 01 00 00 00 1A 00 00 00 47 00 65 00 6E 00 75 00 69 00 6E 00 65 00 49 00 6E 00 74 00 65 00 6C 00 00 00 0C 00 00 00 4D 00 53 00 52 00 38 00 42 00 00 00 0B 00 00 00 08 00 00 00 00 00 00 00 A3 00 00 00 [Binary data over 200 bytes]
"SMBiosData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inary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\mssmbios\Enum]
"0" = Root\SYSTEM\0002
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MSTEE]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 17
"ImagePath" = system32\drivers\MSTEE.sys -- [2008.01.21 03:24:51 | 000,006,016 | ---- | M] (Microsoft Corporation)
"DisplayName" = Microsoft Streaming Tee/Sink-to-Sink Converter
"Group" = Extended Base
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MTsensor]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ATKACPI.sys -- [2006.12.14 08:11:57 | 000,007,680 | ---- | M] (ATK0100)
"DisplayName" = ATK0100 ACPI UTILITY
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MTsensor\Enum]
"0" = ACPI\ATK0100\1010100
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mup]
"DisplayName" = Mup
"Group" = Network
"ImagePath" = System32\Drivers\mup.sys -- [2009.04.11 07:32:31 | 000,048,104 | ---- | M] (Microsoft Corporation)
"Description" = Multiple UNC Provider
"ErrorControl" = 1
"Start" = 0
"Type" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mup\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Mup\Enum]
"0" = Root\LEGACY_MUP\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent]
"DisplayName" = @%SystemRoot%\system32\qagentrt.dll,-6
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\qagentrt.dll,-7
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 00 5C 26 05 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\LocalConfig]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\LocalConfig\Enroll]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\LocalConfig\Enroll\HcsGroups]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\LocalConfig\UI]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Parameters]
"ServiceDLL" = %SystemRoot%\system32\qagentRT.dll -- [2009.04.11 07:28:23 | 000,302,592 | ---- | M] (Microsoft Corporation)
"ServiceDLLUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Qecs]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Qecs\79617]
"Id" = 79617
"Friendly Name" = @%SystemRoot%\system32\dhcpqec.dll,-100 -- [2008.01.21 03:24:07 | 000,066,048 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\dhcpqec.dll,-101
"Version" = 1.0
"Vendor Name" = Microsoft Corporation
"Enabled" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Qecs\79618]
"Id" = 79618
"Vendor Name" = Microsoft Corporation
"Friendly Name" = @%Systemroot%\system32\rasqec.dll,-200 -- [2008.01.21 03:24:14 | 000,069,632 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\rasqec.dll,-201
"Version" = 1.0
"Registration Date" =
"Enabled" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Qecs\79619]
"Id" = 79619
"Friendly Name" = @%SystemRoot%\system32\napipsec.dll,-1 -- [2008.01.21 03:24:10 | 000,034,304 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\napipsec.dll,-2
"Version" = @%SystemRoot%\system32\napipsec.dll,-4 -- [2008.01.21 03:24:10 | 000,034,304 | ---- | M] (Microsoft Corporation)
"Vendor Name" = @%SystemRoot%\system32\napipsec.dll,-3 -- [2008.01.21 03:24:10 | 000,034,304 | ---- | M] (Microsoft Corporation)
"Component Type" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Qecs\79621]
"Id" = 79621
"Friendly Name" = @%SystemRoot%\system32\tsgqec.dll,-100 -- [2009.04.11 07:28:24 | 000,053,248 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\tsgqec.dll,-101
"Version" = 1.0
"Vendor Name" = Microsoft Corporation
"Enabled" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Qecs\79623]
"Id" = 79623
"Friendly Name" = @%SystemRoot%\system32\eapqec.dll,-100 -- [2008.01.21 03:24:46 | 000,067,584 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\eapqec.dll,-101
"Version" = 1.0
"Vendor Name" = Microsoft Corporation
"Enabled" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Security]
"Security" = 01 00 14 80 A4 00 00 00 B0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 74 00 05 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FD 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2C 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 14 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Shas]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\Shas\79744]
"Version" = 1
"Id" = 79744
"Enabled" = 1
"Vendor Name" = Microsoft Corporation
"Info Clsid" = {7886B467-66D4-4163-82BA-D9212FDB4CA8}
"Description" = Microsoft Out-of-Box System Health Agent
"Friendly Name" = Microsoft Out-of-Box System Health Agent
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\napagent\SohCache]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 18
"ImagePath" = system32\DRIVERS\nwifi.sys -- [2009.04.11 05:43:28 | 000,148,480 | ---- | M] (Microsoft Corporation)
"DisplayName" = Filtr NativeWiFi
"Group" = NDIS
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP\Parameters]
"DefaultFilterSettings" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP\Parameters\Adapters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP\Parameters\Adapters\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP\Parameters\Adapters\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}\ExtSTA]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP\Parameters\NdisAdapters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP\Parameters\NdisAdapters\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
"InterfaceGuid" = 91 F4 45 89 22 97 DD 11 BD 00 00 23 54 43 34 CE [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NativeWifiP\Enum]
"0" = Root\LEGACY_NATIVEWIFIP\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS]
"DisplayName" = NDIS System Driver
"Group" = NDIS Wrapper
"ImagePath" = system32\drivers\ndis.sys -- [2009.04.11 07:32:49 | 000,527,848 | ---- | M] (Microsoft Corporation)
"Description" = NDIS System Driver
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes\1]
"IfType" = 1
"IfUsedNetLuidIndices" = 01 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes\131]
"IfType" = 131
"IfUsedNetLuidIndices" = FF FF FF FF FF 07 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes\23]
"IfType" = 23
"IfUsedNetLuidIndices" = 03 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes\24]
"IfType" = 24
"IfUsedNetLuidIndices" = 01 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes\6]
"IfType" = 6
"IfUsedNetLuidIndices" = 69 1F [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes\71]
"IfType" = 71
"IfUsedNetLuidIndices" = 01 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\IfTypes\71\1]
"PortAuthReceiveAuthorizationState" = 2
"PortAuthReceiveControlState" = 2
"PortAuthSendAuthorizationState" = 2
"PortAuthSendControlState" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\Parameters]
"PortAuthReceiveAuthorizationState" = 2
"PortAuthReceiveControlState" = 2
"PortAuthSendAuthorizationState" = 2
"PortAuthSendControlState" = 2
"ProcessorAffinityMask" = -1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDIS\Enum]
"0" = Root\LEGACY_NDIS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisTapi]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ndistapi.sys -- [2008.01.21 03:24:25 | 000,020,992 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32001
"Description" = @%systemroot%\system32\rascfg.dll,-32001
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisTapi\Parameters]
"AsyncEventQueueSize" = 768
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisTapi\Enum]
"0" = Root\MS_NDISWANBH\0000
"Count" = 5
"NextInstance" = 5
"1" = Root\MS_NDISWANIP\0000
"2" = Root\MS_NDISWANIPV6\0000
"3" = Root\MS_PPPOEMINIPORT\0000
"4" = Root\MS_PPTPMINIPORT\0000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ndisuio]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 13
"ImagePath" = system32\DRIVERS\ndisuio.sys -- [2008.01.21 03:24:55 | 000,016,896 | ---- | M] (Microsoft Corporation)
"DisplayName" = NDIS Usermode I/O Protocol
"Group" = NDIS
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ndisuio\Linkage]
"Bind" = \Device\{DB5A0E6A-4A5D-47A0-8E63-B [Binary data over 200 bytes]
"Route" = "{DB5A0E6A-4A5D-47A0-8E63-B3C6DAAC [Binary data over 200 bytes]
"Export" = \Device\Ndisuio_{DB5A0E6A-4A5D-47A [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ndisuio\Enum]
"0" = Root\LEGACY_NDISUIO\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisWan]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\ndiswan.sys -- [2009.04.11 05:46:32 | 000,121,344 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32002
"Description" = @%systemroot%\system32\rascfg.dll,-32002
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisWan\Linkage]
"Bind" = \Device\{71D7C445-F328-4585-A4E7-B [Binary data over 200 bytes]
"Route" = "{71D7C445-F328-4585-A4E7-BD5B4DDA [Binary data over 200 bytes]
"Export" = \Device\NdisWan_{71D7C445-F328-458 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisWan\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NdisWan\Enum]
"0" = Root\MS_NDISWANBH\0000
"Count" = 3
"NextInstance" = 3
"1" = Root\MS_NDISWANIP\0000
"2" = Root\MS_NDISWANIPV6\0000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDProxy]
"DisplayName" = NDIS Proxy [binary data]
"ErrorControl" = 1
"Group" = PNP_TDI
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NDProxy\Enum]
"0" = Root\LEGACY_NDPROXY\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBIOS]
"Type" = 2
"Start" = 1
"ErrorControl" = 1
"Tag" = 2
"ImagePath" = system32\DRIVERS\netbios.sys -- [2008.01.21 03:24:20 | 000,035,840 | ---- | M] (Microsoft Corporation)
"DisplayName" = NetBIOS Interface
"Group" = NetBIOSGroup
"Description" = NetBIOS Interface
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBIOS\Linkage]
"LanaMap" = 01 14 01 10 01 0C 01 06 01 03 01 01 01 0A 01 05 01 08 01 13 01 15 01 12 01 00 01 11 01 0D 01 0F 01 0E 01 0B 01 09 01 07 01 04 01 02 [binary data]
"Bind" = \Device\NetBT_Tcpip_{DB5A0E6A-4A5D [Binary data over 200 bytes]
"Route" = "NetBT" "Tcpip" "{DB5A0E6A-4A5D-47 [Binary data over 200 bytes]
"Export" = \Device\NetBIOS_NetBT_Tcpip_{DB5A0 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBIOS\Parameters]
"MaxLana" = 21
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBIOS\Parameters\Winsock]
"HelperDllName" = %SystemRoot%\System32\wshnetbs.dll -- [2006.11.02 10:46:14 | 000,011,264 | ---- | M] (Microsoft Corporation)
"MaxSockAddrLength" = 20
"MinSockAddrLength" = 20
"Mapping" = 02 00 00 00 03 00 00 00 11 00 00 00 05 00 00 00 00 00 00 00 11 00 00 00 02 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetBIOS\Enum]
"0" = Root\LEGACY_NETBIOS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt]
"DisplayName" = NETBT
"Group" = PNP_TDI
"ImagePath" = System32\DRIVERS\netbt.sys -- [2009.04.11 05:45:37 | 000,185,856 | ---- | M] (Microsoft Corporation)
"Description" = This service implements NetBios over TCP/IP.
"ErrorControl" = 1
"Start" = 1
"Type" = 1
"DependOnService" = Tdxtcpip [binary data]
"Tag" = 87
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Linkage]
"OtherDependencies" = Tcpip [binary data]
"Bind" = \Device\Tcpip_{DB5A0E6A-4A5D-47A0- [Binary data over 200 bytes]
"Route" = "Tcpip" "{DB5A0E6A-4A5D-47A0-8E63- [Binary data over 200 bytes]
"Export" = \Device\NetBT_Tcpip_{DB5A0E6A-4A5D [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters]
"BcastNameQueryCount" = 3
"BcastQueryTimeout" = 750
"CacheTimeout" = 600000
"EnableLMHOSTS" = 1
"NameServerPort" = 137
"NameSrvQueryCount" = 3
"NameSrvQueryTimeout" = 1500
"NbProvider" = _tcp
"SessionKeepAlive" = 3600000
"Size/Small/Medium/Large" = 1
"TransportBindName" = \Device\
"UseNewSmb" = 1
"DhcpNodeType" = 4
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}]
"NameServerList" = [binary data]
"NetbiosOptions" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{1E26EC88-A56D-4921-A26F-BE842C7AD246}]
"NameServerList" = [binary data]
"NetbiosOptions" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{24930843-A943-4314-AA1C-FC23C28C2A26}]
"NameServerList" = [binary data]
"NetbiosOptions" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{25BB4C6E-2FDB-45BB-97E8-5B834DFD8C87}]
"NameServerList" = [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
"NameServerList" = [binary data]
"NetbiosOptions" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{D51F2DDE-409B-4945-8CE3-E679E832F0D6}]
"NameServerList" = [binary data]
"NetbiosOptions" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}]
"NameServerList" = [binary data]
"NetbiosOptions" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{DD1627B1-E574-4274-804F-217EB4C76F3C}]
"NameServerList" = [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Parameters\Interfaces\Tcpip_{EAE456AC-9095-4125-B655-830A8A22A5A6}]
"NameServerList" = [binary data]
"NetbiosOptions" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Security]
"Security" = 01 00 14 88 D0 00 00 00 DC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 A0 00 07 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 14 00 40 00 00 00 01 01 00 00 00 00 00 05 13 00 00 00 00 00 14 00 40 00 00 00 01 01 00 00 00 00 00 05 14 00 00 00 00 00 18 00 9D 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2C 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netbt\Enum]
"0" = Root\LEGACY_NETBT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Netlogon]
"DisplayName" = @%SystemRoot%\System32\netlogon.dll,-102
"Group" = MS_WindowsRemoteValidation
"ImagePath" = %systemroot%\system32\lsass.exe -- [2011.11.16 15:12:25 | 000,009,728 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\netlogon.dll,-103
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = LanmanWorkstation [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Netlogon\Parameters]
"Update" = no
"disablepasswordchange" = 0
"maximumpasswordage" = 30
"requiresignorseal" = 1
"requirestrongkey" = 0
"sealsecurechannel" = 1
"signsecurechannel" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Netman]
"DisplayName" = @%SystemRoot%\system32\netman.dll,-109
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\netman.dll,-110
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSsnsi [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeChangeNotifyPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Netman\Parameters]
"ServiceDll" = %SystemRoot%\System32\netman.dll -- [2008.01.21 03:24:11 | 000,274,432 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netprofm]
"DisplayName" = @%SystemRoot%\system32\netprof.dll,-246
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\netprof.dll,-247
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RpcSsnlasvc [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeChangeNotifyPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 64 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\netprofm\Parameters]
"ServiceDll" = %SystemRoot%\System32\netprofm.dll -- [2008.01.21 03:24:23 | 000,237,056 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetTcpPortSharing]
"DisplayName" = @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8201
"ErrorControl" = 1
"ImagePath" = "%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe" -- [2009.02.18 19:38:43 | 000,129,880 | ---- | M] (Microsoft Corporation)
"Start" = 4
"Type" = 32
"Description" = @%systemroot%\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelInstallRC.dll,-8200
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 3
"RequiredPrivileges" = SeCreateGlobalPrivilege [binary data]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NetTcpPortSharing\Security]
"Security" = 01 00 04 80 84 00 00 00 90 00 00 00 00 00 00 00 14 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 14 00 00 00 01 01 00 00 00 00 00 05 06 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nfrd960]
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\nfrd960.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nfrd960\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nfrd960\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaSvc]
"DisplayName" = @%SystemRoot%\System32\nlasvc.dll,-1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetworkService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\nlasvc.dll,-2
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = NSIRpcSsTcpIp [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeImperson [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 64 00 00 00 01 00 00 00 64 00 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaSvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\nlasvc.dll -- [2008.01.21 03:23:44 | 000,168,448 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaSvc\Parameters\Fuser]
"Tlag" = 500
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaSvc\Parameters\Internet]
"PassivePollPeriod" = 5
"StaleThreshold" = 30
"WebTimeout" = 10
"EnableActiveProbing" = 1
"ActiveWebProbeHost" = www.msftncsi.com
"ActiveWebProbePath" = ncsi.txt
"ActiveWebProbeContent" = Microsoft NCSI
"ActiveDnsProbeHost" = dns.msftncsi.com
"ActiveDnsProbeContent" = 131.107.255.255
"KnownProxylessGateways" = 64-70-02-bb-17-06 150459
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaSvc\Parameters\Internet\ManualProxies]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaSvc\Parameters\PMux]
"Tresolve" = 2000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NlaSvc\Security]
"Security" = 01 00 14 98 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 05 00 00 00 00 02 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 02 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 1D 00 02 00 01 06 00 00 00 00 00 05 50 00 00 00 44 3E 41 BB 45 BA A8 7A 6C BD 92 68 F4 AD 64 8F D5 E6 70 E9 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nmwcd]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 28
"ImagePath" = system32\drivers\nmwcd.sys -- [2007.02.22 09:15:56 | 000,137,216 | ---- | M] (Nokia)
"DisplayName" = Nokia USB Phone Parent
"Group" = Extended Base
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Npfs]
"ErrorControl" = 1
"Group" = File system
"Start" = 1
"Type" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Npfs\Aliases]
"lsass" = protected_storagenetlogonlsarpcsamr [binary data]
"ntsvcs" = svcctl [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Npfs\Enum]
"0" = Root\LEGACY_NPFS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nsi]
"DisplayName" = @%SystemRoot%\system32\nsisvc.dll,-200
"ImagePath" = %systemroot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\nsisvc.dll,-201
"ObjectName" = NT Authority\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = nsiproxy [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nsi\Parameters]
"ServiceDll" = %systemroot%\system32\nsisvc.dll -- [2008.01.21 03:24:47 | 000,018,432 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nsiproxy]
"DisplayName" = NSI proxy service
"ImagePath" = system32\drivers\nsiproxy.sys -- [2008.01.21 03:24:47 | 000,016,384 | ---- | M] (Microsoft Corporation)
"Description" = NSI proxy service
"ErrorControl" = 1
"Start" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nsiproxy\Enum]
"0" = Root\LEGACY_NSIPROXY\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NTDS]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NTDS\RID Values]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ntfs]
"Group" = FileSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Ntfs\Enum]
"0" = Root\LEGACY_NTFS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ntrigdigi]
"DisplayName" = N-trig HID Tablet Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\ntrigdigi.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Null]
"ErrorControl" = 1
"Group" = Base
"Start" = 1
"Tag" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Null\Enum]
"0" = Root\LEGACY_NULL\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NVENETFD]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 23
"ImagePath" = system32\DRIVERS\nvmfdx32.sys -- [2008.07.08 11:32:51 | 001,050,656 | ---- | M] (NVIDIA Corporation)
"DisplayName" = NVIDIA nForce 10/100/1000 Mbps Ethernet
"Group" = NDIS
"BootFlags" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NVENETFD\Enum]
"0" = PCI\VEN_10DE&DEV_0AB0&SUBSYS_12151043&REV_B1\3&267a616a&0&50
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NVHDA]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\drivers\nvhda32v.sys -- [2008.06.25 06:05:05 | 000,044,064 | ---- | M] (NVIDIA Corporation)
"DisplayName" = Service for NVIDIA High Definition Audio Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NVHDA\Enum]
"0" = HDAUDIO\FUNC_01&VEN_10DE&DEV_0007&SUBSYS_10DE0101&REV_1001\4&10d89169&0&0301
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvlddmkm]
"Type" = 1
"Start" = 3
"ErrorControl" = 0
"Tag" = 3
"ImagePath" = system32\DRIVERS\nvlddmkm.sys -- [2008.07.25 09:30:59 | 007,547,552 | ---- | M] (NVIDIA Corporation)
"Group" = Video
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvlddmkm\Device0]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvlddmkm\Device1]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvlddmkm\Device2]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvlddmkm\Device3]
"Device Description" = NVIDIA MCP79MVL
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvlddmkm\Enum]
"0" = PCI\VEN_10DE&DEV_086F&SUBSYS_16B21043&REV_B1\4&eddcb02&0&0080
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvraid]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\nvraid.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
"DisplayName" = NVIDIA nForce RAID Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvsmu]
"Type" = 1
"Start" = 3
"ErrorControl" = 0
"ImagePath" = system32\DRIVERS\nvsmu.sys -- [2008.07.22 03:21:07 | 000,015,872 | ---- | M] (NVIDIA Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvsmu\Enum]
"0" = PCI\VEN_10DE&DEV_0AA3&SUBSYS_1A871043&REV_B1\3&267a616a&0&1D
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvstor]
"DisableFilterCache" = 1
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\nvstor.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvstor\Parameters]
"BusType" = 8
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvstor\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nvsvc]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\nvvsvc.exe -- [2008.07.25 09:30:59 | 000,196,608 | ---- | M] (NVIDIA Corporation)
"DisplayName" = NVIDIA Display Driver Service
"Group" = Video
"DependOnService" = nvlddmkm [binary data]
"ObjectName" = LocalSystem
"Description" = Provides system and desktop level support to the NVIDIA display driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\nv_agp]
"DisplayName" = NVIDIA nForce AGP Bus Filter
"Group" = PnP Filter
"ImagePath" = \SystemRoot\system32\drivers\nv_agp.sys
"ErrorControl" = 1
"Start" = 3
Re: policie čr prosim o radu
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NwlnkFlt]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\nwlnkflt.sys
"DisplayName" = IPX Traffic Filter Driver
"DependOnService" = NwlnkFwd [binary data]
"Description" = IPX Traffic Filter Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NwlnkFwd]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\nwlnkfwd.sys
"DisplayName" = IPX Traffic Forwarder Driver
"Description" = IPX Traffic Forwarder Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ohci1394]
"DisplayName" = RICOH OHCI Compliant IEEE 1394 Host Controller
"ImagePath" = system32\DRIVERS\ohci1394.sys -- [2008.01.21 03:23:21 | 000,061,952 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\p2pimsvc]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8004
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8005
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E0 93 04 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\p2pimsvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = IMServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\p2pimsvc\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\p2psvc]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8006
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8007
"DependOnService" = p2pimsvcPNRPSvc [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E0 93 04 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\p2psvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = GroupServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\p2psvc\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Parport]
"DisplayName" = Parallel port driver
"Group" = Parallel arbitrator
"ImagePath" = \SystemRoot\system32\drivers\parport.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\partmgr]
"DisplayName" = Partition Manager
"Group" = Boot Bus Extender
"ImagePath" = System32\drivers\partmgr.sys -- [2012.03.21 00:28:50 | 000,053,120 | ---- | M] (Microsoft Corporation)
"Description" = Disk class filter driver that auctions out partitions to volume managers
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\partmgr\Parameters]
"956741f3" = 1
"146f99cd" = 1
"SanPolicy" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\partmgr\Enum]
"0" = Root\LEGACY_PARTMGR\0000
"Count" = 2
"NextInstance" = 2
"1" = IDE\DiskWDC_WD3200BEVT-22ZCT0___________________11.01A11\5&5f44344&0&0.0.0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Parvdm]
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\parvdm.sys
"ErrorControl" = 0
"Start" = 2
"Type" = 1
"DependOnGroup" = Parallel arbitrator [binary data]
"DependOnService" = Parport [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Parvdm\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PcaSvc]
"DisplayName" = @%SystemRoot%\system32\pcasvc.dll,-1
"ErrorControl" = 1
"ImagePath" = %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%SystemRoot%\system32\pcasvc.dll,-2
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeDebugPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PcaSvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = ServiceMain
"ServiceDll" = %SystemRoot%\System32\pcasvc.dll -- [2008.01.21 03:23:29 | 000,037,888 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PcaSvc\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pci]
"Tag" = 3
"DisplayName" = Řadič sběrnice PCI
"Group" = Boot Bus Extender
"ImagePath" = system32\drivers\pci.sys -- [2009.04.11 07:32:55 | 000,149,480 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pci\Enum]
"0" = ACPI\PNP0A03\0
"Count" = 7
"NextInstance" = 7
"1" = PCI\VEN_10DE&DEV_0AAB&SUBSYS_1A871043&REV_B1\3&267a616a&0&48
"2" = PCI\VEN_10DE&DEV_0AA0&SUBSYS_1A871043&REV_B1\3&267a616a&0&80
"3" = PCI\VEN_10DE&DEV_0AC6&SUBSYS_1A871043&REV_B1\3&267a616a&0&A8
"4" = PCI\VEN_10DE&DEV_0AC7&SUBSYS_1A871043&REV_B1\3&267a616a&0&B0
"5" = PCI\VEN_10DE&DEV_0AC7&SUBSYS_1A871043&REV_B1\3&267a616a&0&B8
"6" = PCI\VEN_10DE&DEV_0AC7&SUBSYS_1A871043&REV_B1\3&267a616a&0&C0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pciide]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\pciide.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pcmcia]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\pcmcia.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PEAUTH]
"DataPath" = C:\ProgramData\Microsoft\MF -- [2006.11.02 13:37:34 | 000,000,000 | ---D | M]
"Options" = 0
"DisplayName" = PEAUTH
"ImagePath" = system32\drivers\peauth.sys -- [2006.11.02 10:04:35 | 000,878,080 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 2
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PEAUTH\Instances]
"DefaultInstance" = PEAUTH
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PEAUTH\Enum]
"0" = Root\LEGACY_PEAUTH\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfDisk]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfDisk\Performance]
"Close" = CloseDiskObject
"Collect" = CollectDiskObjectData
"Collect Timeout" = 2000
"Library" = perfdisk.dll -- [2009.04.11 07:28:23 | 000,031,744 | ---- | M] (Microsoft Corporation)
"Object List" = 234 236
"Open" = OpenDiskObject
"Open Timeout" = 5000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfNet]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfNet\Performance]
"Close" = CloseNetSvcsObject
"Collect" = CollectNetSvcsObjectData
"Collect Timeout" = 5000
"Library" = perfnet.dll -- [2008.01.21 03:24:17 | 000,019,968 | ---- | M] (Microsoft Corporation)
"Object List" = 52 262 330 1300
"Open" = OpenNetSvcsObject
"Open Timeout" = 8000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfOS]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfOS\Performance]
"Close" = CloseOSObject
"Collect" = CollectOSObjectData
"Collect Timeout" = 8000
"Library" = perfos.dll -- [2006.11.02 10:46:12 | 000,028,672 | ---- | M] (Microsoft Corporation)
"Object List" = 2 4 86 238 260 700
"Open" = OpenOSObject
"Open Timeout" = 5000
"Disable Performance Counters" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfProc]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfProc\Performance]
"Close" = CloseSysProcessObject
"Collect" = CollectSysProcessObjectData
"Collect Timeout" = 8000
"Library" = perfproc.dll -- [2006.11.02 10:46:12 | 000,035,840 | ---- | M] (Microsoft Corporation)
"Object List" = 230 232 786 740 816 1408 1500 1548 1760
"Open" = OpenSysProcessObject
"Open Timeout" = 10000
"Disable Performance Counters" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pla]
"DisplayName" = @%systemroot%\system32\pla.dll,-500
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\pla.dll,-501
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 3
"RequiredPrivileges" = SeImpersonatePrivilege [binary data]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pla\Configuration]
"EventBookmark" = 3C 00 42 00 6F 00 6F 00 6B 00 6D 00 61 00 72 00 6B 00 4C 00 69 00 73 00 74 00 3E 00 0D 00 0A 00 20 00 20 00 3C 00 42 00 6F 00 6F 00 6B 00 6D 00 61 00 72 00 6B 00 20 00 43 00 68 00 61 00 6E 00 6E 00 65 00 6C 00 3D 00 27 00 4D 00 69 00 63 00 72 00 6F 00 73 00 6F 00 66 00 74 00 2D 00 57 00 69 00 6E 00 64 00 6F 00 77 00 73 00 2D 00 54 00 61 00 73 00 6B 00 53 00 63 00 68 00 65 00 64 00 75 00 6C 00 65 00 72 00 2F 00 4F 00 70 00 65 00 72 00 61 00 74 00 69 00 6F 00 6E 00 61 00 6C 00 27 00 20 00 52 00 65 00 63 00 6F 00 72 00 64 00 49 00 64 00 3D 00 27 00 35 00 36 00 32 00 38 00 34 00 38 00 27 00 20 00 49 00 73 00 43 00 75 00 72 00 72 00 65 00 6E 00 74 00 3D 00 27 00 74 00 72 00 75 00 65 00 27 00 2F 00 3E 00 0D 00 0A 00 3C 00 2F 00 42 00 6F 00 6F 00 6B 00 6D 00 61 00 72 00 6B 00 4C 00 69 00 73 00 74 00 3E 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pla\Parameters]
"ServiceDll" = %systemroot%\system32\pla.dll -- [2008.01.21 03:24:03 | 001,502,208 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pla\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 14 00 95 01 00 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PlugPlay]
"DisplayName" = @%SystemRoot%\system32\umpnpmgr.dll,-100
"Group" = PlugPlay
"ImagePath" = %SystemRoot%\system32\svchost.exe -k DcomLaunch -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\umpnpmgr.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeTcbPrivilegeSeSecurityPrivilege [Binary data over 200 bytes]
"FailureActions" = 00 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 02 00 00 00 60 EA 00 00 02 00 00 00 60 EA 00 00 02 00 00 00 60 EA 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PlugPlay\Parameters]
"ServiceDll" = %SystemRoot%\system32\umpnpmgr.dll -- [2009.04.11 07:28:25 | 000,222,720 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PnkBstrA]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = C:\Windows\system32\PnkBstrA.exe -- [2009.02.09 17:15:39 | 000,070,968 | ---- | M] ()
"DisplayName" = PnkBstrA
"ObjectName" = LocalSystem
"Description" = PunkBuster Service Component [v1030] http://www.evenbalance.com
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PNRPAutoReg]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8002
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8003
"DependOnService" = pnrpsvc [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PNRPAutoReg\parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = PnrpAutoSVCServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PNRPAutoReg\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PNRPsvc]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8000
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8001
"DependOnService" = p2pimsvc [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E0 93 04 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PNRPsvc\parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = SVCServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PNRPsvc\Performance]
"Close" = PrfData_Close
"Open" = PrfData_Open_Client
"Collect" = PrfData_Collect
"Library" = %SystemRoot%\system32\pnrpperf.dll -- [2006.11.02 13:35:38 | 000,018,944 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = pnrpclientperfcounters.ini
"First Counter" = 4028
"Last Counter" = 4038
"First Help" = 4029
"Last Help" = 4039
"Object List" = 4028
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PNRPsvc\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PolicyAgent]
"DisplayName" = @%SystemRoot%\System32\polstore.dll,-5010
"ImagePath" = %SystemRoot%\system32\svchost.exe -k NetworkServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\polstore.dll,-5011
"ObjectName" = NT Authority\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = Tcpipbfe [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PolicyAgent\Parameters]
"ServiceDll" = %SystemRoot%\System32\ipsecsvc.dll -- [2009.04.11 07:28:20 | 000,364,032 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = SpdServiceMain
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PolicyAgent\Parameters\Cache]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PolicyAgent\Performance]
"Open" = OpenIPSecPerformanceData
"Close" = CloseIPSecPerformanceData
"Collect" = CollectIPSecPerformanceData
"Library" = %SystemRoot%\System32\ipsecsvc.dll -- [2009.04.11 07:28:20 | 000,364,032 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PortProxy]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PptpMiniport]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\raspptp.sys -- [2008.01.21 03:24:55 | 000,062,976 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32006
"Description" = @%systemroot%\system32\rascfg.dll,-32006
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PptpMiniport\Enum]
"0" = Root\MS_PPTPMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Processor]
"DisplayName" = Processor Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\processr.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ProfSvc]
"DisplayName" = @%systemroot%\system32\profsvc.dll,-300
"Group" = profsvc_group
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\profsvc.dll,-301
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"RequiredPrivileges" = SeBackupPrivilegeSeRestorePrivile [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ProfSvc\Parameters]
"ServiceDll" = %systemroot%\system32\profsvc.dll -- [2009.04.11 07:28:23 | 000,153,088 | ---- | M] (Microsoft Corporation)
"ServiceMain" = UserProfileServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ProtectedStorage]
"DisplayName" = @%systemroot%\system32\psbase.dll,-300
"ImagePath" = %SystemRoot%\system32\lsass.exe -- [2011.11.16 15:12:25 | 000,009,728 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\psbase.dll,-301
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ProtectedStorage\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched]
"Type" = 1
"Start" = 1
"ErrorControl" = 1
"Tag" = 17
"ImagePath" = system32\DRIVERS\pacer.sys -- [2009.04.11 05:45:51 | 000,072,192 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%SystemRoot%\System32\drivers\pacer.sys,-101
"Group" = NDIS
"Description" = @%SystemRoot%\System32\drivers\pacer.sys,-101
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters]
"DefaultFilterSettings" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{418FCFE1-E4E6-4B68-ADA4-EFC98CC311E6}]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{418FCFE1-E4E6-4B68-ADA4-EFC98CC311E6}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{9C642153-BFE0-4511-A0B6-E778DDD5EA9E}]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{9C642153-BFE0-4511-A0B6-E778DDD5EA9E}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{BA32A50A-3D27-4FAE-8591-5916311409BE}]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{BA32A50A-3D27-4FAE-8591-5916311409BE}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{F50C0996-5B4A-4C6A-A322-6E991D4CAA0E}]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{F50C0996-5B4A-4C6A-A322-6E991D4CAA0E}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{F70A361F-6437-4FCC-91A4-CD88D468D91B}]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{F70A361F-6437-4FCC-91A4-CD88D468D91B}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}]
"InterfaceGuid" = F5 A8 21 C0 71 D5 DF 11 88 EB 00 22 43 A1 E9 98 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{1E26EC88-A56D-4921-A26F-BE842C7AD246}]
"InterfaceGuid" = 75 CF 27 A5 24 F5 DD 11 9F 20 00 22 43 A1 E9 98 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{24930843-A943-4314-AA1C-FC23C28C2A26}]
"InterfaceGuid" = 60 F4 45 89 22 97 DD 11 BD 00 00 22 43 A1 E9 98 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
"InterfaceGuid" = 90 F4 45 89 22 97 DD 11 BD 00 00 23 54 43 34 CE [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{418FCFE1-E4E6-4B68-ADA4-EFC98CC311E6}]
"InterfaceGuid" = 58 50 9D 0A 63 0C DD 11 8D 1E A1 E6 96 58 09 2D [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{56CA9B10-546C-4A22-A19C-BBF2900D9CF0}]
"InterfaceGuid" = 8F 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{9C642153-BFE0-4511-A0B6-E778DDD5EA9E}]
"InterfaceGuid" = 90 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{BA0AE3CF-C69A-4397-A782-412626636A30}]
"InterfaceGuid" = DF 06 2F 33 CA C7 DC 11 B0 9E 00 14 22 0D 9F 3B [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{BA32A50A-3D27-4FAE-8591-5916311409BE}]
"InterfaceGuid" = AA E6 2B C9 C0 C7 DC 11 8F F1 E0 20 EA 82 FC 39 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{BD7DEB58-51D3-419D-98CF-6D5E2CBDC4D0}]
"InterfaceGuid" = 91 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}]
"InterfaceGuid" = 64 EF CF EA 68 9F E1 11 87 FB BD 91 02 63 B8 8C [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{EAE456AC-9095-4125-B655-830A8A22A5A6}]
"InterfaceGuid" = 38 A6 AF B2 AC 29 E0 11 AD 9D 9E F5 B7 98 77 3C [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{F50C0996-5B4A-4C6A-A322-6E991D4CAA0E}]
"InterfaceGuid" = 92 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{F70A361F-6437-4FCC-91A4-CD88D468D91B}]
"InterfaceGuid" = AB E6 2B C9 C0 C7 DC 11 8F F1 00 14 22 0D 9F 3A [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Winsock]
"HelperDllName" = %Systemroot%\System32\wshqos.dll -- [2006.11.02 10:46:14 | 000,013,824 | ---- | M] (Microsoft Corporation)
"MaxSockAddrLength" = 28
"MinSockAddrLength" = 16
"Mapping" = 0C 00 00 00 03 00 00 00 17 00 00 00 01 00 00 00 06 00 00 00 17 00 00 00 01 00 00 00 00 00 00 00 17 00 00 00 00 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 00 00 00 00 02 00 00 00 00 00 00 00 06 00 00 00 17 00 00 00 02 00 00 00 11 00 00 00 17 00 00 00 02 00 00 00 00 00 00 00 17 00 00 00 00 00 00 00 11 00 00 00 02 00 00 00 02 00 00 00 11 00 00 00 02 00 00 00 02 00 00 00 00 00 00 00 02 00 00 00 00 00 00 00 11 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Performance]
"Library" = pacerprf.dll -- [2006.11.02 10:46:12 | 000,015,360 | ---- | M] (Microsoft Corporation)
"Open" = OpenPacerPerformanceData
"Close" = ClosePacerPerformanceData
"Collect" = CollectPacerPerformanceData
"PerfIniFile" = pacerprf.ini -- [2006.09.18 22:37:10 | 000,013,750 | ---- | M] ()
"Last Counter" = 4462
"Last Help" = 4463
"First Counter" = 4386
"First Help" = 4387
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Enum]
"0" = Root\LEGACY_PSCHED\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\qcusbsersny]
"QCDriverSelectiveSuspendIdleTime" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql2300]
"DisplayName" = QLogic Fibre Channel Miniport Driver
"Group" = SCSI Miniport
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NwlnkFlt]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\nwlnkflt.sys
"DisplayName" = IPX Traffic Filter Driver
"DependOnService" = NwlnkFwd [binary data]
"Description" = IPX Traffic Filter Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NwlnkFwd]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\nwlnkfwd.sys
"DisplayName" = IPX Traffic Forwarder Driver
"Description" = IPX Traffic Forwarder Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ohci1394]
"DisplayName" = RICOH OHCI Compliant IEEE 1394 Host Controller
"ImagePath" = system32\DRIVERS\ohci1394.sys -- [2008.01.21 03:23:21 | 000,061,952 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\p2pimsvc]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8004
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8005
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E0 93 04 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\p2pimsvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = IMServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\p2pimsvc\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\p2psvc]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8006
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8007
"DependOnService" = p2pimsvcPNRPSvc [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E0 93 04 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\p2psvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = GroupServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\p2psvc\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Parport]
"DisplayName" = Parallel port driver
"Group" = Parallel arbitrator
"ImagePath" = \SystemRoot\system32\drivers\parport.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\partmgr]
"DisplayName" = Partition Manager
"Group" = Boot Bus Extender
"ImagePath" = System32\drivers\partmgr.sys -- [2012.03.21 00:28:50 | 000,053,120 | ---- | M] (Microsoft Corporation)
"Description" = Disk class filter driver that auctions out partitions to volume managers
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\partmgr\Parameters]
"956741f3" = 1
"146f99cd" = 1
"SanPolicy" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\partmgr\Enum]
"0" = Root\LEGACY_PARTMGR\0000
"Count" = 2
"NextInstance" = 2
"1" = IDE\DiskWDC_WD3200BEVT-22ZCT0___________________11.01A11\5&5f44344&0&0.0.0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Parvdm]
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\parvdm.sys
"ErrorControl" = 0
"Start" = 2
"Type" = 1
"DependOnGroup" = Parallel arbitrator [binary data]
"DependOnService" = Parport [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Parvdm\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PcaSvc]
"DisplayName" = @%SystemRoot%\system32\pcasvc.dll,-1
"ErrorControl" = 1
"ImagePath" = %systemroot%\system32\svchost.exe -k LocalSystemNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%SystemRoot%\system32\pcasvc.dll,-2
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"ServiceSidType" = 1
"RequiredPrivileges" = SeDebugPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PcaSvc\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = ServiceMain
"ServiceDll" = %SystemRoot%\System32\pcasvc.dll -- [2008.01.21 03:23:29 | 000,037,888 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PcaSvc\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pci]
"Tag" = 3
"DisplayName" = Řadič sběrnice PCI
"Group" = Boot Bus Extender
"ImagePath" = system32\drivers\pci.sys -- [2009.04.11 07:32:55 | 000,149,480 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 3
"Start" = 0
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pci\Enum]
"0" = ACPI\PNP0A03\0
"Count" = 7
"NextInstance" = 7
"1" = PCI\VEN_10DE&DEV_0AAB&SUBSYS_1A871043&REV_B1\3&267a616a&0&48
"2" = PCI\VEN_10DE&DEV_0AA0&SUBSYS_1A871043&REV_B1\3&267a616a&0&80
"3" = PCI\VEN_10DE&DEV_0AC6&SUBSYS_1A871043&REV_B1\3&267a616a&0&A8
"4" = PCI\VEN_10DE&DEV_0AC7&SUBSYS_1A871043&REV_B1\3&267a616a&0&B0
"5" = PCI\VEN_10DE&DEV_0AC7&SUBSYS_1A871043&REV_B1\3&267a616a&0&B8
"6" = PCI\VEN_10DE&DEV_0AC7&SUBSYS_1A871043&REV_B1\3&267a616a&0&C0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pciide]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\pciide.sys
"ErrorControl" = 3
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pcmcia]
"Group" = System Bus Extender
"ImagePath" = \SystemRoot\system32\drivers\pcmcia.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PEAUTH]
"DataPath" = C:\ProgramData\Microsoft\MF -- [2006.11.02 13:37:34 | 000,000,000 | ---D | M]
"Options" = 0
"DisplayName" = PEAUTH
"ImagePath" = system32\drivers\peauth.sys -- [2006.11.02 10:04:35 | 000,878,080 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 2
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PEAUTH\Instances]
"DefaultInstance" = PEAUTH
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PEAUTH\Enum]
"0" = Root\LEGACY_PEAUTH\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfDisk]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfDisk\Performance]
"Close" = CloseDiskObject
"Collect" = CollectDiskObjectData
"Collect Timeout" = 2000
"Library" = perfdisk.dll -- [2009.04.11 07:28:23 | 000,031,744 | ---- | M] (Microsoft Corporation)
"Object List" = 234 236
"Open" = OpenDiskObject
"Open Timeout" = 5000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfNet]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfNet\Performance]
"Close" = CloseNetSvcsObject
"Collect" = CollectNetSvcsObjectData
"Collect Timeout" = 5000
"Library" = perfnet.dll -- [2008.01.21 03:24:17 | 000,019,968 | ---- | M] (Microsoft Corporation)
"Object List" = 52 262 330 1300
"Open" = OpenNetSvcsObject
"Open Timeout" = 8000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfOS]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfOS\Performance]
"Close" = CloseOSObject
"Collect" = CollectOSObjectData
"Collect Timeout" = 8000
"Library" = perfos.dll -- [2006.11.02 10:46:12 | 000,028,672 | ---- | M] (Microsoft Corporation)
"Object List" = 2 4 86 238 260 700
"Open" = OpenOSObject
"Open Timeout" = 5000
"Disable Performance Counters" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfProc]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PerfProc\Performance]
"Close" = CloseSysProcessObject
"Collect" = CollectSysProcessObjectData
"Collect Timeout" = 8000
"Library" = perfproc.dll -- [2006.11.02 10:46:12 | 000,035,840 | ---- | M] (Microsoft Corporation)
"Object List" = 230 232 786 740 816 1408 1500 1548 1760
"Open" = OpenSysProcessObject
"Open Timeout" = 10000
"Disable Performance Counters" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pla]
"DisplayName" = @%systemroot%\system32\pla.dll,-500
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNoNetwork -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\pla.dll,-501
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 3
"RequiredPrivileges" = SeImpersonatePrivilege [binary data]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pla\Configuration]
"EventBookmark" = 3C 00 42 00 6F 00 6F 00 6B 00 6D 00 61 00 72 00 6B 00 4C 00 69 00 73 00 74 00 3E 00 0D 00 0A 00 20 00 20 00 3C 00 42 00 6F 00 6F 00 6B 00 6D 00 61 00 72 00 6B 00 20 00 43 00 68 00 61 00 6E 00 6E 00 65 00 6C 00 3D 00 27 00 4D 00 69 00 63 00 72 00 6F 00 73 00 6F 00 66 00 74 00 2D 00 57 00 69 00 6E 00 64 00 6F 00 77 00 73 00 2D 00 54 00 61 00 73 00 6B 00 53 00 63 00 68 00 65 00 64 00 75 00 6C 00 65 00 72 00 2F 00 4F 00 70 00 65 00 72 00 61 00 74 00 69 00 6F 00 6E 00 61 00 6C 00 27 00 20 00 52 00 65 00 63 00 6F 00 72 00 64 00 49 00 64 00 3D 00 27 00 35 00 36 00 32 00 38 00 34 00 38 00 27 00 20 00 49 00 73 00 43 00 75 00 72 00 72 00 65 00 6E 00 74 00 3D 00 27 00 74 00 72 00 75 00 65 00 27 00 2F 00 3E 00 0D 00 0A 00 3C 00 2F 00 42 00 6F 00 6F 00 6B 00 6D 00 61 00 72 00 6B 00 4C 00 69 00 73 00 74 00 3E 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pla\Parameters]
"ServiceDll" = %systemroot%\system32\pla.dll -- [2008.01.21 03:24:03 | 001,502,208 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\pla\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 14 00 95 01 00 00 01 01 00 00 00 00 00 01 00 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PlugPlay]
"DisplayName" = @%SystemRoot%\system32\umpnpmgr.dll,-100
"Group" = PlugPlay
"ImagePath" = %SystemRoot%\system32\svchost.exe -k DcomLaunch -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\umpnpmgr.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"ServiceSidType" = 1
"RequiredPrivileges" = SeTcbPrivilegeSeSecurityPrivilege [Binary data over 200 bytes]
"FailureActions" = 00 00 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 02 00 00 00 60 EA 00 00 02 00 00 00 60 EA 00 00 02 00 00 00 60 EA 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PlugPlay\Parameters]
"ServiceDll" = %SystemRoot%\system32\umpnpmgr.dll -- [2009.04.11 07:28:25 | 000,222,720 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PnkBstrA]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = C:\Windows\system32\PnkBstrA.exe -- [2009.02.09 17:15:39 | 000,070,968 | ---- | M] ()
"DisplayName" = PnkBstrA
"ObjectName" = LocalSystem
"Description" = PunkBuster Service Component [v1030] http://www.evenbalance.com
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PNRPAutoReg]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8002
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8003
"DependOnService" = pnrpsvc [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PNRPAutoReg\parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = PnrpAutoSVCServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PNRPAutoReg\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PNRPsvc]
"DisplayName" = @%SystemRoot%\system32\p2psvc.dll,-8000
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\System32\svchost.exe -k LocalServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\p2psvc.dll,-8001
"DependOnService" = p2pimsvc [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 E0 93 04 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PNRPsvc\parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = SVCServiceMain
"ServiceDll" = %SystemRoot%\system32\p2psvc.dll -- [2009.04.11 07:28:23 | 000,644,608 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PNRPsvc\Performance]
"Close" = PrfData_Close
"Open" = PrfData_Open_Client
"Collect" = PrfData_Collect
"Library" = %SystemRoot%\system32\pnrpperf.dll -- [2006.11.02 13:35:38 | 000,018,944 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = pnrpclientperfcounters.ini
"First Counter" = 4028
"Last Counter" = 4038
"First Help" = 4029
"Last Help" = 4039
"Object List" = 4028
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PNRPsvc\Security]
"Security" = 01 00 04 80 A4 00 00 00 B0 00 00 00 00 00 00 00 14 00 00 00 02 00 90 00 06 00 00 00 01 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 22 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 9D 00 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 9D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2B 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PolicyAgent]
"DisplayName" = @%SystemRoot%\System32\polstore.dll,-5010
"ImagePath" = %SystemRoot%\system32\svchost.exe -k NetworkServiceNetworkRestricted -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\polstore.dll,-5011
"ObjectName" = NT Authority\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = Tcpipbfe [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PolicyAgent\Parameters]
"ServiceDll" = %SystemRoot%\System32\ipsecsvc.dll -- [2009.04.11 07:28:20 | 000,364,032 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = SpdServiceMain
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PolicyAgent\Parameters\Cache]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PolicyAgent\Performance]
"Open" = OpenIPSecPerformanceData
"Close" = CloseIPSecPerformanceData
"Collect" = CollectIPSecPerformanceData
"Library" = %SystemRoot%\System32\ipsecsvc.dll -- [2009.04.11 07:28:20 | 000,364,032 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PortProxy]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PptpMiniport]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\raspptp.sys -- [2008.01.21 03:24:55 | 000,062,976 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32006
"Description" = @%systemroot%\system32\rascfg.dll,-32006
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PptpMiniport\Enum]
"0" = Root\MS_PPTPMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Processor]
"DisplayName" = Processor Driver
"Group" = Extended Base
"ImagePath" = \SystemRoot\system32\drivers\processr.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ProfSvc]
"DisplayName" = @%systemroot%\system32\profsvc.dll,-300
"Group" = profsvc_group
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\profsvc.dll,-301
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"RequiredPrivileges" = SeBackupPrivilegeSeRestorePrivile [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ProfSvc\Parameters]
"ServiceDll" = %systemroot%\system32\profsvc.dll -- [2009.04.11 07:28:23 | 000,153,088 | ---- | M] (Microsoft Corporation)
"ServiceMain" = UserProfileServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ProtectedStorage]
"DisplayName" = @%systemroot%\system32\psbase.dll,-300
"ImagePath" = %SystemRoot%\system32\lsass.exe -- [2011.11.16 15:12:25 | 000,009,728 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\psbase.dll,-301
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ProtectedStorage\Security]
"Security" = 01 00 14 80 A0 00 00 00 AC 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 70 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 14 00 00 01 00 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched]
"Type" = 1
"Start" = 1
"ErrorControl" = 1
"Tag" = 17
"ImagePath" = system32\DRIVERS\pacer.sys -- [2009.04.11 05:45:51 | 000,072,192 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%SystemRoot%\System32\drivers\pacer.sys,-101
"Group" = NDIS
"Description" = @%SystemRoot%\System32\drivers\pacer.sys,-101
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters]
"DefaultFilterSettings" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{418FCFE1-E4E6-4B68-ADA4-EFC98CC311E6}]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{418FCFE1-E4E6-4B68-ADA4-EFC98CC311E6}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{9C642153-BFE0-4511-A0B6-E778DDD5EA9E}]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{9C642153-BFE0-4511-A0B6-E778DDD5EA9E}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{BA32A50A-3D27-4FAE-8591-5916311409BE}]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{BA32A50A-3D27-4FAE-8591-5916311409BE}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{F50C0996-5B4A-4C6A-A322-6E991D4CAA0E}]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{F50C0996-5B4A-4C6A-A322-6E991D4CAA0E}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{F70A361F-6437-4FCC-91A4-CD88D468D91B}]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Adapters\{F70A361F-6437-4FCC-91A4-CD88D468D91B}\{B5F4D659-7DAA-4565-8E41-BE220ED60542}-0000]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{1BA29D5D-CD71-4DCE-B37C-6B601037AA56}]
"InterfaceGuid" = F5 A8 21 C0 71 D5 DF 11 88 EB 00 22 43 A1 E9 98 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{1E26EC88-A56D-4921-A26F-BE842C7AD246}]
"InterfaceGuid" = 75 CF 27 A5 24 F5 DD 11 9F 20 00 22 43 A1 E9 98 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{24930843-A943-4314-AA1C-FC23C28C2A26}]
"InterfaceGuid" = 60 F4 45 89 22 97 DD 11 BD 00 00 22 43 A1 E9 98 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}]
"InterfaceGuid" = 90 F4 45 89 22 97 DD 11 BD 00 00 23 54 43 34 CE [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{418FCFE1-E4E6-4B68-ADA4-EFC98CC311E6}]
"InterfaceGuid" = 58 50 9D 0A 63 0C DD 11 8D 1E A1 E6 96 58 09 2D [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{56CA9B10-546C-4A22-A19C-BBF2900D9CF0}]
"InterfaceGuid" = 8F 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{9C642153-BFE0-4511-A0B6-E778DDD5EA9E}]
"InterfaceGuid" = 90 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{BA0AE3CF-C69A-4397-A782-412626636A30}]
"InterfaceGuid" = DF 06 2F 33 CA C7 DC 11 B0 9E 00 14 22 0D 9F 3B [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{BA32A50A-3D27-4FAE-8591-5916311409BE}]
"InterfaceGuid" = AA E6 2B C9 C0 C7 DC 11 8F F1 E0 20 EA 82 FC 39 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{BD7DEB58-51D3-419D-98CF-6D5E2CBDC4D0}]
"InterfaceGuid" = 91 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}]
"InterfaceGuid" = 64 EF CF EA 68 9F E1 11 87 FB BD 91 02 63 B8 8C [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{EAE456AC-9095-4125-B655-830A8A22A5A6}]
"InterfaceGuid" = 38 A6 AF B2 AC 29 E0 11 AD 9D 9E F5 B7 98 77 3C [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{F50C0996-5B4A-4C6A-A322-6E991D4CAA0E}]
"InterfaceGuid" = 92 98 53 3A 70 6A DB 11 88 7C 00 14 22 0F 03 7F [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\NdisAdapters\{F70A361F-6437-4FCC-91A4-CD88D468D91B}]
"InterfaceGuid" = AB E6 2B C9 C0 C7 DC 11 8F F1 00 14 22 0D 9F 3A [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Parameters\Winsock]
"HelperDllName" = %Systemroot%\System32\wshqos.dll -- [2006.11.02 10:46:14 | 000,013,824 | ---- | M] (Microsoft Corporation)
"MaxSockAddrLength" = 28
"MinSockAddrLength" = 16
"Mapping" = 0C 00 00 00 03 00 00 00 17 00 00 00 01 00 00 00 06 00 00 00 17 00 00 00 01 00 00 00 00 00 00 00 17 00 00 00 00 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 00 00 00 00 02 00 00 00 00 00 00 00 06 00 00 00 17 00 00 00 02 00 00 00 11 00 00 00 17 00 00 00 02 00 00 00 00 00 00 00 17 00 00 00 00 00 00 00 11 00 00 00 02 00 00 00 02 00 00 00 11 00 00 00 02 00 00 00 02 00 00 00 00 00 00 00 02 00 00 00 00 00 00 00 11 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Performance]
"Library" = pacerprf.dll -- [2006.11.02 10:46:12 | 000,015,360 | ---- | M] (Microsoft Corporation)
"Open" = OpenPacerPerformanceData
"Close" = ClosePacerPerformanceData
"Collect" = CollectPacerPerformanceData
"PerfIniFile" = pacerprf.ini -- [2006.09.18 22:37:10 | 000,013,750 | ---- | M] ()
"Last Counter" = 4462
"Last Help" = 4463
"First Counter" = 4386
"First Help" = 4387
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\PSched\Enum]
"0" = Root\LEGACY_PSCHED\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\qcusbsersny]
"QCDriverSelectiveSuspendIdleTime" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql2300]
"DisplayName" = QLogic Fibre Channel Miniport Driver
"Group" = SCSI Miniport
Re: policie čr prosim o radu
"ImagePath" = \SystemRoot\system32\drivers\ql2300.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql2300\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql2300\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql40xx]
"DisplayName" = QLogic iSCSI Miniport Driver
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\ql40xx.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql40xx\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql40xx\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\QWAVE]
"DisplayName" = @%SystemRoot%\system32\qwave.dll,-1
"ErrorControl" = 1
"ImagePath" = %windir%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\qwave.dll,-2
"DependOnService" = rpcsspschedQWAVEdrvLLTDIO [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\QWAVE\Parameters]
"ETWTrace" = 0
"LLTD" = 1
"ProbegapTrace" = 0
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = ServiceMain
"ServiceDll" = %windir%\system32\qwave.dll -- [2008.01.21 03:23:31 | 000,243,712 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\QWAVE\Security]
"Security" = 01 00 04 80 5C 00 00 00 68 00 00 00 00 00 00 00 14 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 14 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\QWAVEdrv]
"DisplayName" = @%SystemRoot%\system32\drivers\qwavedrv.sys,-1
"ErrorControl" = 1
"ImagePath" = \SystemRoot\system32\drivers\qwavedrv.sys
"Start" = 3
"Type" = 1
"Description" = @%SystemRoot%\system32\drivers\qwavedrv.sys,-2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\QWAVEdrv\Security]
"Security" = 01 00 04 80 5C 00 00 00 68 00 00 00 00 00 00 00 14 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 14 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAcd]
"Type" = 1
"Start" = 1
"ErrorControl" = 1
"Tag" = 1
"ImagePath" = System32\DRIVERS\rasacd.sys -- [2008.01.21 03:24:19 | 000,011,776 | ---- | M] (Microsoft Corporation)
"DisplayName" = Remote Access Auto Connection Driver
"Group" = Streams Drivers
"Description" = Remote Access Auto Connection Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAcd\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAcd\Security]
"Security" = 01 00 14 88 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAcd\Enum]
"0" = Root\LEGACY_RASACD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAuto]
"DisplayName" = @%Systemroot%\system32\rasauto.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\rasauto.dll,-201
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RasManTapisrv [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeTcbPrivil [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAuto\Parameters]
"ServiceDll" = %SystemRoot%\System32\rasauto.dll -- [2008.01.21 03:24:19 | 000,090,624 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAuto\Security]
"Security" = 01 00 14 88 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Rasl2tp]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\rasl2tp.sys -- [2008.01.21 03:24:55 | 000,076,288 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32005
"Description" = @%systemroot%\system32\rascfg.dll,-32005
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Rasl2tp\Enum]
"0" = Root\MS_L2TPMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan]
"DisplayName" = @%Systemroot%\system32\rasmans.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\rasmans.dll,-201
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = TapisrvSstpSvc [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeIncreaseQ [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\Parameters]
"ServiceDll" = %SystemRoot%\System32\rasmans.dll -- [2009.04.11 07:28:24 | 000,262,144 | ---- | M] (Microsoft Corporation)
"Medias" = rastapi [binary data] -- [2009.04.11 07:28:24 | 000,069,632 | ---- | M] (Microsoft Corporation)
"CustomDLL" = [binary data]
"ServiceDllUnloadOnStop" = 1
"AllowL2TPWeakCrypto" = 0
"AllowPPTPWeakCrypto" = 0
"KeepRasConnections" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\Parameters\Quarantine]
"AutoRefreshEnabled" = 0
"AutoRefreshTimeout" = 25200000
"Enabled" = 1
"WorkItemTimeout" = 3000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP]
"MaxConfigure" = 10
"MaxFailure" = 10
"MaxReject" = 5
"MaxTerminate" = 2
"Multilink" = 0
"NegotiateTime" = 150
"RestartTimer" = 3
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP\ControlProtocols]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP\ControlProtocols\BuiltIn]
"Path" = %SystemRoot%\System32\rasppp.dll -- [2009.04.11 07:28:24 | 000,259,584 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP\ControlProtocols\Chap]
"Path" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP\EAP]
"Path" = %SystemRoot%\System32\rasppp.dll -- [2009.04.11 07:28:24 | 000,259,584 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP\EAP\13]
"FriendlyName" = @%SystemRoot%\system32\rastls.dll,-2001 -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"Path" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"ConfigCLSID" = {58AB2366-D597-11d1-B90E-00C04FC9B263}
"ConfigUiPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"IdentityPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InteractiveUIPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InvokePasswordDialog" = 0
"InvokeUsernameDialog" = 0
"MPPEEncryptionSupported" = 1
"NoRootRevocationCheck" = 1
"PerPolicyConfig" = 1
"RolesSupported" = 3
"StandaloneSupported" = 0
"Properties" = 7133359
"" = Microsoft
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP\EAP\25]
"FriendlyName" = @%SystemRoot%\system32\rastls.dll,-2002 -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"Path" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"ConfigCLSID" = {58AB2366-D597-11d1-B90E-00C04FC9B263}
"ConfigUiPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"IdentityPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InteractiveUIPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InvokePasswordDialog" = 0
"InvokeUsernameDialog" = 0
"MPPEEncryptionSupported" = 1
"NoRootRevocationCheck" = 1
"PerPolicyConfig" = 1
"RolesSupported" = 35
"StandaloneSupported" = 1
"Properties" = 8321215
"" = Microsoft
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP\EAP\26]
"FriendlyName" = @%SystemRoot%\system32\raschap.dll,-2002 -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"Path" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"ConfigCLSID" = {2af6bcaa-f526-4803-aeb8-5777ce386647}
"ConfigUiPath" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"IdentityPath" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"InteractiveUIPath" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"InvokePasswordDialog" = 0
"InvokeUsernameDialog" = 0
"MPPEEncryptionSupported" = 1
"PerPolicyConfig" = 1
"RolesSupported" = 23
"StandaloneSupported" = 1
"Properties" = 7094382
"" = Microsoft
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\Security]
"Security" = 01 00 14 88 64 00 00 00 70 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 34 00 02 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasPppoe]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\raspppoe.sys -- [2009.04.11 05:46:30 | 000,041,472 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32007
"Description" = @%systemroot%\system32\rascfg.dll,-32007
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasPppoe\Linkage]
"Bind" = \Device\{DB5A0E6A-4A5D-47A0-8E63-B [Binary data over 200 bytes]
"Route" = "{DB5A0E6A-4A5D-47A0-8E63-B3C6DAAC [Binary data over 200 bytes]
"Export" = \Device\RasPppoe_{DB5A0E6A-4A5D-47 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasPppoe\Enum]
"0" = Root\MS_PPPOEMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasSstp]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\rassstp.sys -- [2009.04.11 05:46:40 | 000,069,120 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\sstpsvc.dll,-202
"Description" = @%systemroot%\system32\sstpsvc.dll,-202
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasSstp\Enum]
"0" = Root\MS_SSTPMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\rdbss]
"DisplayName" = Redirected Buffering Sub Sysytem
"Group" = Network
"ImagePath" = system32\DRIVERS\rdbss.sys -- [2009.04.11 05:14:29 | 000,225,280 | ---- | M] (Microsoft Corporation)
"Description" = Provides the framework for network mini-redirectors
"ErrorControl" = 1
"Start" = 1
"Tag" = 4
"Type" = 2
"DependOnService" = Mup [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\rdbss\Enum]
"0" = Root\LEGACY_RDBSS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPCDD]
"DisplayName" = RDPCDD
"Group" = Video Save
"ImagePath" = System32\DRIVERS\RDPCDD.sys -- [2008.01.21 03:24:06 | 000,006,144 | ---- | M] (Microsoft Corporation)
"Description" = RDPDD Chained DD
"ErrorControl" = 0
"Start" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPCDD\Device0]
"Device Description" = RDPDD Chained DD -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"InstalledDisplayDrivers" = RDPDD [binary data] -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"MirrorDriver" = 1
"VgaCompatible" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPCDD\Video]
"VideoID" = {DEB039CC-B704-4F53-B43E-9DD4432FA2E9}
"Service" = RDPCDD
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPCDD\Enum]
"0" = Root\LEGACY_RDPCDD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPDD]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPDD\Device0]
"Attach.RelativeX" = 0
"Attach.RelativeY" = 0
"Attach.ToDesktop" = 1
"DefaultSettings.XResolution" = 800
"DefaultSettings.YResolution" = 600
"Device Description" = RDPDD Chained DD -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"InstalledDisplayDrivers" = RDPDD [binary data] -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"VgaCompatible" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\rdpdr]
"DisplayName" = Terminal Server Device Redirector Driver
"ImagePath" = \SystemRoot\system32\drivers\rdpdr.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPENCDD]
"DisplayName" = RDP Encoder Mirror Driver
"Group" = Video Save
"ImagePath" = system32\drivers\rdpencdd.sys -- [2008.01.21 03:24:50 | 000,006,144 | ---- | M] (Microsoft Corporation)
"Description" = RDP Encoder Mirror Driver
"ErrorControl" = 0
"Start" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPENCDD\Device0]
"Device Description" = RDP Encoder Mirror Driver
"InstalledDisplayDrivers" = RDPENCDD [binary data] -- [2008.01.21 03:24:50 | 000,118,272 | ---- | M] (Microsoft Corporation)
"MirrorDriver" = 1
"VgaCompatible" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPENCDD\Video]
"VideoID" = {42cf9257-1d96-4c9d-87f3-0d8e74595f78}
"Service" = RDPENCDD -- [2008.01.21 03:24:50 | 000,118,272 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPENCDD\Enum]
"0" = Root\LEGACY_RDPENCDD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPNP]
"Description" = @%systemroot%\system32\drprov.dll,-101
"DisplayName" = @%systemroot%\system32\drprov.dll,-100
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPNP\NetworkProvider]
"DeviceName" = \Device\RdpDr
"Name" = Microsoft Terminal Services
"DisplayName" = @%systemroot%\system32\drprov.dll,-100
"ProviderPath" = %SystemRoot%\System32\drprov.dll -- [2006.11.02 10:46:04 | 000,017,920 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPWD]
"DisplayName" = RDP Winstation Driver
"ErrorControl" = 0
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess]
"DisplayName" = @%Systemroot%\system32\mprdim.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\mprdim.dll,-201
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 4
"Type" = 32
"DependOnGroup" = NetBIOSGroup [binary data]
"DependOnService" = RpcSSRasManbfe [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeLoadDriv [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
"ConfigurationFlags" = 0
"" =
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Accounting]
"AccountSessionIdStart" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Accounting\Providers]
"ActiveProvider" = {1AA7F846-C7F5-11D0-A376-00C04FC9DA04}
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Accounting\Providers\{1AA7F840-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid" = {1AA7F840-C7F5-11D0-A376-00C04FC9DA04}
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-202
"VendorName" = Microsoft
"ProviderTypeGUID" = {76560D00-2BFD-11d2-9539-3078302C2030}
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Accounting\Providers\{1AA7F846-C7F5-11D0-A376-00C04FC9DA04}]
"Path" = %SystemRoot%\System32\mprddm.dll -- [2008.01.21 03:24:48 | 000,104,960 | ---- | M] (Microsoft Corporation)
"ConfigClsid" =
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-203
"ProviderTypeGUID" = {76560D81-2BFD-11d2-9539-3078302C2030}
"VendorName" = Microsoft
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Authentication]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Authentication\Providers]
"ActiveProvider" = {1AA7F841-C7F5-11D0-A376-00C04FC9DA04}
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Authentication\Providers\{1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid" = {1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-201
"VendorName" = Microsoft
"ProviderTypeGUID" = {76560D00-2BFD-11d2-9539-3078302C2030}
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Authentication\Providers\{1AA7F841-C7F5-11D0-A376-00C04FC9DA04}]
"Path" = %SystemRoot%\System32\mprddm.dll -- [2008.01.21 03:24:48 | 000,104,960 | ---- | M] (Microsoft Corporation)
"ConfigClsid" =
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-200
"VendorName" = Microsoft
"ProviderTypeGUID" = {76560D01-2BFD-11d2-9539-3078302C2030}
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\DemandDialManager]
"DllPath" = %SystemRoot%\System32\mprddm.dll -- [2008.01.21 03:24:48 | 000,104,960 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces]
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\0]
"InterfaceName" = Zpětná smyčka
"Type" = 5
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\0\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\0\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\1]
"InterfaceName" = Vnitřní
"Type" = 4
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\1\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\1\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\2]
"InterfaceName" = {DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\2\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\2\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\3]
"InterfaceName" = {1E26EC88-A56D-4921-A26F-BE842C7AD246}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\3\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\3\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\4]
"InterfaceName" = {3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\4\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\4\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\5]
"InterfaceName" = {24930843-A943-4314-AA1C-FC23C28C2A26}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\5\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\5\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\6]
"InterfaceName" = {D51F2DDE-409B-4945-8CE3-E679E832F0D6}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\6\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\6\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Parameters]
"ServiceDLL" = %SystemRoot%\System32\mprdim.dll -- [2008.01.21 03:24:20 | 000,068,608 | ---- | M] (Microsoft Corporation)
"QuarantineInstalled" = 1
"LoggingFlags" = 2
"ServerFlags" = 8398338
"ServiceDllUnloadOnStop" = 1
"Stamp" = 0
"UsersConfigured" = 0
"RouterType" = 7
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Parameters\Ip]
"AllowNetworkAccess" = 1
"EnableIn" = 1
"EnableRoute" = 1
"IpAddress" = 0.0.0.0
"IpMask" = 0.0.0.0
"UseDhcpAddressing" = 1
"EnableNetbtBcastFwd" = 1
"AllowClientIpAddresses" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Parameters\Ipv6]
"AllowNetworkAccess" = 1
"EnableIn" = 0
"EnableRoute" = 1
"UseDhcpAddressing" = 0
"AdvertiseDefaultRoute" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Parameters\Nbf]
"AllowNetworkAccess" = 1
"EnableIn" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Performance]
"Library" = rasctrs.dll -- [2008.01.21 03:24:23 | 000,015,360 | ---- | M] (Microsoft Corporation)
"Open" = OpenRasPerformanceData
"Close" = CloseRasPerformanceData
"Collect" = CollectRasPerformanceData
"InstallType" = 1
"PerfIniFile" = rasctrs.ini
"First Counter" = 1868
"Last Counter" = 1906
"First Help" = 1869
"Last Help" = 1907
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy]
"Allow LM Authentication" = 0
"ProductDir" = %SystemRoot%\System32\IAS -- [2008.01.21 03:34:27 | 000,000,000 | ---D | M]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\01]
"" = IAS.ProxyPolicyEnforcer
"Requests" = 0 1 2
"Responses" = 0 1 2 3 4
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\02]
"" = IAS.Realm
"Providers" = 1
"Requests" = 0 1
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\03]
"" = IAS.Realm
"Requests" = 0 1
"Responses" = 0
"Providers" = 0 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\04]
"" = IAS.NTSamNames
"Providers" = 1
"Responses" = 0
"Requests" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\05]
"" = IAS.CRPBasedEAP
"Providers" = 1
"Requests" = 0 2
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\06]
"" = IAS.Realm
"Providers" = 1
"Requests" = 0
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\07]
"" = IAS.NTSamNames
"Providers" = 1
"Requests" = 0
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\08]
"" = IAS.MachineNameMapper
"Providers" = 1
"Requests" = 0
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\09]
"" = IAS.BaseCampHost
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\10]
"" = IAS.RadiusProxy
"Providers" = 2
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\11]
"" = IAS.ExternalAuthNames
"Providers" = 2
"Requests" = 0
"Responses" = 1
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\12]
"" = IAS.NTSamAuthentication
"Requests" = 0
"Responses" = 0 1 2
"Providers" = 1
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\13]
"" = IAS.UserAccountValidation
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\14]
"" = IAS.MachineAccountValidation
"Providers" = 1
"Requests" = 0
"Responses" = 0 1
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\15]
"" = IAS.EAPIdentity
"Providers" = 1
"Requests" = 0
"Replays" = 0
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\16]
"" = IAS.QuarantineEvaluator
"Providers" = 1
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\17]
"" = IAS.PolicyEnforcer
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\18]
"" = IAS.NTSamPerUser
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\19]
"" = IAS.URHandler
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\20]
"" = IAS.RAPBasedEAP
"Providers" = 1
"Requests" = 0 2
"Replays" = 0
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\21]
"" = IAS.PostEapRestrictions
"Providers" = 0 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\22]
"" = IAS.PostQuarantineEvaluator
"Providers" = 1
"Requests" = 0
"Replays" = 0
"Responses" = 1 2 5
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\23]
"" = IAS.ChangePassword
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql2300\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql2300\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql40xx]
"DisplayName" = QLogic iSCSI Miniport Driver
"Group" = SCSI Miniport
"ImagePath" = \SystemRoot\system32\drivers\ql40xx.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql40xx\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ql40xx\Parameters\PnpInterface]
"5" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\QWAVE]
"DisplayName" = @%SystemRoot%\system32\qwave.dll,-1
"ErrorControl" = 1
"ImagePath" = %windir%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 32
"Description" = @%SystemRoot%\system32\qwave.dll,-2
"DependOnService" = rpcsspschedQWAVEdrvLLTDIO [binary data]
"ObjectName" = NT AUTHORITY\LocalService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilege [binary data]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\QWAVE\Parameters]
"ETWTrace" = 0
"LLTD" = 1
"ProbegapTrace" = 0
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = ServiceMain
"ServiceDll" = %windir%\system32\qwave.dll -- [2008.01.21 03:23:31 | 000,243,712 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\QWAVE\Security]
"Security" = 01 00 04 80 5C 00 00 00 68 00 00 00 00 00 00 00 14 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 14 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\QWAVEdrv]
"DisplayName" = @%SystemRoot%\system32\drivers\qwavedrv.sys,-1
"ErrorControl" = 1
"ImagePath" = \SystemRoot\system32\drivers\qwavedrv.sys
"Start" = 3
"Type" = 1
"Description" = @%SystemRoot%\system32\drivers\qwavedrv.sys,-2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\QWAVEdrv\Security]
"Security" = 01 00 04 80 5C 00 00 00 68 00 00 00 00 00 00 00 14 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 9D 00 00 00 01 01 00 00 00 00 00 05 14 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAcd]
"Type" = 1
"Start" = 1
"ErrorControl" = 1
"Tag" = 1
"ImagePath" = System32\DRIVERS\rasacd.sys -- [2008.01.21 03:24:19 | 000,011,776 | ---- | M] (Microsoft Corporation)
"DisplayName" = Remote Access Auto Connection Driver
"Group" = Streams Drivers
"Description" = Remote Access Auto Connection Driver
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAcd\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAcd\Security]
"Security" = 01 00 14 88 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAcd\Enum]
"0" = Root\LEGACY_RASACD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAuto]
"DisplayName" = @%Systemroot%\system32\rasauto.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\rasauto.dll,-201
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RasManTapisrv [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeTcbPrivil [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAuto\Parameters]
"ServiceDll" = %SystemRoot%\System32\rasauto.dll -- [2008.01.21 03:24:19 | 000,090,624 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasAuto\Security]
"Security" = 01 00 14 88 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Rasl2tp]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\rasl2tp.sys -- [2008.01.21 03:24:55 | 000,076,288 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32005
"Description" = @%systemroot%\system32\rascfg.dll,-32005
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Rasl2tp\Enum]
"0" = Root\MS_L2TPMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan]
"DisplayName" = @%Systemroot%\system32\rasmans.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\rasmans.dll,-201
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = TapisrvSstpSvc [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilegeSeIncreaseQ [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\Parameters]
"ServiceDll" = %SystemRoot%\System32\rasmans.dll -- [2009.04.11 07:28:24 | 000,262,144 | ---- | M] (Microsoft Corporation)
"Medias" = rastapi [binary data] -- [2009.04.11 07:28:24 | 000,069,632 | ---- | M] (Microsoft Corporation)
"CustomDLL" = [binary data]
"ServiceDllUnloadOnStop" = 1
"AllowL2TPWeakCrypto" = 0
"AllowPPTPWeakCrypto" = 0
"KeepRasConnections" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\Parameters\Quarantine]
"AutoRefreshEnabled" = 0
"AutoRefreshTimeout" = 25200000
"Enabled" = 1
"WorkItemTimeout" = 3000
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP]
"MaxConfigure" = 10
"MaxFailure" = 10
"MaxReject" = 5
"MaxTerminate" = 2
"Multilink" = 0
"NegotiateTime" = 150
"RestartTimer" = 3
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP\ControlProtocols]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP\ControlProtocols\BuiltIn]
"Path" = %SystemRoot%\System32\rasppp.dll -- [2009.04.11 07:28:24 | 000,259,584 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP\ControlProtocols\Chap]
"Path" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP\EAP]
"Path" = %SystemRoot%\System32\rasppp.dll -- [2009.04.11 07:28:24 | 000,259,584 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP\EAP\13]
"FriendlyName" = @%SystemRoot%\system32\rastls.dll,-2001 -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"Path" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"ConfigCLSID" = {58AB2366-D597-11d1-B90E-00C04FC9B263}
"ConfigUiPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"IdentityPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InteractiveUIPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InvokePasswordDialog" = 0
"InvokeUsernameDialog" = 0
"MPPEEncryptionSupported" = 1
"NoRootRevocationCheck" = 1
"PerPolicyConfig" = 1
"RolesSupported" = 3
"StandaloneSupported" = 0
"Properties" = 7133359
"" = Microsoft
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP\EAP\25]
"FriendlyName" = @%SystemRoot%\system32\rastls.dll,-2002 -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"Path" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"ConfigCLSID" = {58AB2366-D597-11d1-B90E-00C04FC9B263}
"ConfigUiPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"IdentityPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InteractiveUIPath" = %SystemRoot%\System32\rastls.dll -- [2009.10.07 12:36:36 | 000,243,712 | ---- | M] (Microsoft Corporation)
"InvokePasswordDialog" = 0
"InvokeUsernameDialog" = 0
"MPPEEncryptionSupported" = 1
"NoRootRevocationCheck" = 1
"PerPolicyConfig" = 1
"RolesSupported" = 35
"StandaloneSupported" = 1
"Properties" = 8321215
"" = Microsoft
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\PPP\EAP\26]
"FriendlyName" = @%SystemRoot%\system32\raschap.dll,-2002 -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"Path" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"ConfigCLSID" = {2af6bcaa-f526-4803-aeb8-5777ce386647}
"ConfigUiPath" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"IdentityPath" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"InteractiveUIPath" = %SystemRoot%\System32\raschap.dll -- [2009.04.11 07:28:23 | 000,281,088 | ---- | M] (Microsoft Corporation)
"InvokePasswordDialog" = 0
"InvokeUsernameDialog" = 0
"MPPEEncryptionSupported" = 1
"PerPolicyConfig" = 1
"RolesSupported" = 23
"StandaloneSupported" = 1
"Properties" = 7094382
"" = Microsoft
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasMan\Security]
"Security" = 01 00 14 88 64 00 00 00 70 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 34 00 02 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasPppoe]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\raspppoe.sys -- [2009.04.11 05:46:30 | 000,041,472 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\rascfg.dll,-32007
"Description" = @%systemroot%\system32\rascfg.dll,-32007
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasPppoe\Linkage]
"Bind" = \Device\{DB5A0E6A-4A5D-47A0-8E63-B [Binary data over 200 bytes]
"Route" = "{DB5A0E6A-4A5D-47A0-8E63-B3C6DAAC [Binary data over 200 bytes]
"Export" = \Device\RasPppoe_{DB5A0E6A-4A5D-47 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasPppoe\Enum]
"0" = Root\MS_PPPOEMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasSstp]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\rassstp.sys -- [2009.04.11 05:46:40 | 000,069,120 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\sstpsvc.dll,-202
"Description" = @%systemroot%\system32\sstpsvc.dll,-202
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RasSstp\Enum]
"0" = Root\MS_SSTPMINIPORT\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\rdbss]
"DisplayName" = Redirected Buffering Sub Sysytem
"Group" = Network
"ImagePath" = system32\DRIVERS\rdbss.sys -- [2009.04.11 05:14:29 | 000,225,280 | ---- | M] (Microsoft Corporation)
"Description" = Provides the framework for network mini-redirectors
"ErrorControl" = 1
"Start" = 1
"Tag" = 4
"Type" = 2
"DependOnService" = Mup [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\rdbss\Enum]
"0" = Root\LEGACY_RDBSS\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPCDD]
"DisplayName" = RDPCDD
"Group" = Video Save
"ImagePath" = System32\DRIVERS\RDPCDD.sys -- [2008.01.21 03:24:06 | 000,006,144 | ---- | M] (Microsoft Corporation)
"Description" = RDPDD Chained DD
"ErrorControl" = 0
"Start" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPCDD\Device0]
"Device Description" = RDPDD Chained DD -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"InstalledDisplayDrivers" = RDPDD [binary data] -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"MirrorDriver" = 1
"VgaCompatible" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPCDD\Video]
"VideoID" = {DEB039CC-B704-4F53-B43E-9DD4432FA2E9}
"Service" = RDPCDD
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPCDD\Enum]
"0" = Root\LEGACY_RDPCDD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPDD]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPDD\Device0]
"Attach.RelativeX" = 0
"Attach.RelativeY" = 0
"Attach.ToDesktop" = 1
"DefaultSettings.XResolution" = 800
"DefaultSettings.YResolution" = 600
"Device Description" = RDPDD Chained DD -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"InstalledDisplayDrivers" = RDPDD [binary data] -- [2008.01.21 03:24:12 | 000,134,656 | ---- | M] (Microsoft Corporation)
"VgaCompatible" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\rdpdr]
"DisplayName" = Terminal Server Device Redirector Driver
"ImagePath" = \SystemRoot\system32\drivers\rdpdr.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPENCDD]
"DisplayName" = RDP Encoder Mirror Driver
"Group" = Video Save
"ImagePath" = system32\drivers\rdpencdd.sys -- [2008.01.21 03:24:50 | 000,006,144 | ---- | M] (Microsoft Corporation)
"Description" = RDP Encoder Mirror Driver
"ErrorControl" = 0
"Start" = 1
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPENCDD\Device0]
"Device Description" = RDP Encoder Mirror Driver
"InstalledDisplayDrivers" = RDPENCDD [binary data] -- [2008.01.21 03:24:50 | 000,118,272 | ---- | M] (Microsoft Corporation)
"MirrorDriver" = 1
"VgaCompatible" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPENCDD\Video]
"VideoID" = {42cf9257-1d96-4c9d-87f3-0d8e74595f78}
"Service" = RDPENCDD -- [2008.01.21 03:24:50 | 000,118,272 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPENCDD\Enum]
"0" = Root\LEGACY_RDPENCDD\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPNP]
"Description" = @%systemroot%\system32\drprov.dll,-101
"DisplayName" = @%systemroot%\system32\drprov.dll,-100
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPNP\NetworkProvider]
"DeviceName" = \Device\RdpDr
"Name" = Microsoft Terminal Services
"DisplayName" = @%systemroot%\system32\drprov.dll,-100
"ProviderPath" = %SystemRoot%\System32\drprov.dll -- [2006.11.02 10:46:04 | 000,017,920 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RDPWD]
"DisplayName" = RDP Winstation Driver
"ErrorControl" = 0
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess]
"DisplayName" = @%Systemroot%\system32\mprdim.dll,-200
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%Systemroot%\system32\mprdim.dll,-201
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 4
"Type" = 32
"DependOnGroup" = NetBIOSGroup [binary data]
"DependOnService" = RpcSSRasManbfe [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeLoadDriv [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
"ConfigurationFlags" = 0
"" =
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Accounting]
"AccountSessionIdStart" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Accounting\Providers]
"ActiveProvider" = {1AA7F846-C7F5-11D0-A376-00C04FC9DA04}
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Accounting\Providers\{1AA7F840-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid" = {1AA7F840-C7F5-11D0-A376-00C04FC9DA04}
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-202
"VendorName" = Microsoft
"ProviderTypeGUID" = {76560D00-2BFD-11d2-9539-3078302C2030}
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Accounting\Providers\{1AA7F846-C7F5-11D0-A376-00C04FC9DA04}]
"Path" = %SystemRoot%\System32\mprddm.dll -- [2008.01.21 03:24:48 | 000,104,960 | ---- | M] (Microsoft Corporation)
"ConfigClsid" =
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-203
"ProviderTypeGUID" = {76560D81-2BFD-11d2-9539-3078302C2030}
"VendorName" = Microsoft
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Authentication]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Authentication\Providers]
"ActiveProvider" = {1AA7F841-C7F5-11D0-A376-00C04FC9DA04}
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Authentication\Providers\{1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid" = {1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-201
"VendorName" = Microsoft
"ProviderTypeGUID" = {76560D00-2BFD-11d2-9539-3078302C2030}
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Authentication\Providers\{1AA7F841-C7F5-11D0-A376-00C04FC9DA04}]
"Path" = %SystemRoot%\System32\mprddm.dll -- [2008.01.21 03:24:48 | 000,104,960 | ---- | M] (Microsoft Corporation)
"ConfigClsid" =
"DisplayName" = @%Systemroot%\system32\mprddm.dll,-200
"VendorName" = Microsoft
"ProviderTypeGUID" = {76560D01-2BFD-11d2-9539-3078302C2030}
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\DemandDialManager]
"DllPath" = %SystemRoot%\System32\mprddm.dll -- [2008.01.21 03:24:48 | 000,104,960 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces]
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\0]
"InterfaceName" = Zpětná smyčka
"Type" = 5
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\0\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\0\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\1]
"InterfaceName" = Vnitřní
"Type" = 4
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\1\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\1\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\2]
"InterfaceName" = {DB5A0E6A-4A5D-47A0-8E63-B3C6DAACA1FC}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\2\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\2\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\3]
"InterfaceName" = {1E26EC88-A56D-4921-A26F-BE842C7AD246}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\3\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\3\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\4]
"InterfaceName" = {3DDD54E0-283F-4E9D-93A3-AFFBE73AB2DE}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\4\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\4\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\5]
"InterfaceName" = {24930843-A943-4314-AA1C-FC23C28C2A26}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\5\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\5\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\6]
"InterfaceName" = {D51F2DDE-409B-4945-8CE3-E679E832F0D6}
"Type" = 3
"Enabled" = 1
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\6\Ip]
"ProtocolId" = 33
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Interfaces\6\Ipv6]
"ProtocolId" = 87
"InterfaceInfo" = 01 00 00 00 68 00 00 00 03 00 00 00 05 00 FF FF 48 00 00 00 00 00 00 00 40 00 00 00 04 00 FF FF 04 00 00 00 01 00 00 00 40 00 00 00 07 00 FF FF 10 00 00 00 01 00 00 00 48 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 58 02 C2 01 08 07 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Parameters]
"ServiceDLL" = %SystemRoot%\System32\mprdim.dll -- [2008.01.21 03:24:20 | 000,068,608 | ---- | M] (Microsoft Corporation)
"QuarantineInstalled" = 1
"LoggingFlags" = 2
"ServerFlags" = 8398338
"ServiceDllUnloadOnStop" = 1
"Stamp" = 0
"UsersConfigured" = 0
"RouterType" = 7
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Parameters\Ip]
"AllowNetworkAccess" = 1
"EnableIn" = 1
"EnableRoute" = 1
"IpAddress" = 0.0.0.0
"IpMask" = 0.0.0.0
"UseDhcpAddressing" = 1
"EnableNetbtBcastFwd" = 1
"AllowClientIpAddresses" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Parameters\Ipv6]
"AllowNetworkAccess" = 1
"EnableIn" = 0
"EnableRoute" = 1
"UseDhcpAddressing" = 0
"AdvertiseDefaultRoute" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Parameters\Nbf]
"AllowNetworkAccess" = 1
"EnableIn" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Performance]
"Library" = rasctrs.dll -- [2008.01.21 03:24:23 | 000,015,360 | ---- | M] (Microsoft Corporation)
"Open" = OpenRasPerformanceData
"Close" = CloseRasPerformanceData
"Collect" = CollectRasPerformanceData
"InstallType" = 1
"PerfIniFile" = rasctrs.ini
"First Counter" = 1868
"Last Counter" = 1906
"First Help" = 1869
"Last Help" = 1907
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy]
"Allow LM Authentication" = 0
"ProductDir" = %SystemRoot%\System32\IAS -- [2008.01.21 03:34:27 | 000,000,000 | ---D | M]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\01]
"" = IAS.ProxyPolicyEnforcer
"Requests" = 0 1 2
"Responses" = 0 1 2 3 4
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\02]
"" = IAS.Realm
"Providers" = 1
"Requests" = 0 1
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\03]
"" = IAS.Realm
"Requests" = 0 1
"Responses" = 0
"Providers" = 0 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\04]
"" = IAS.NTSamNames
"Providers" = 1
"Responses" = 0
"Requests" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\05]
"" = IAS.CRPBasedEAP
"Providers" = 1
"Requests" = 0 2
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\06]
"" = IAS.Realm
"Providers" = 1
"Requests" = 0
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\07]
"" = IAS.NTSamNames
"Providers" = 1
"Requests" = 0
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\08]
"" = IAS.MachineNameMapper
"Providers" = 1
"Requests" = 0
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\09]
"" = IAS.BaseCampHost
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\10]
"" = IAS.RadiusProxy
"Providers" = 2
"Responses" = 0
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\11]
"" = IAS.ExternalAuthNames
"Providers" = 2
"Requests" = 0
"Responses" = 1
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\12]
"" = IAS.NTSamAuthentication
"Requests" = 0
"Responses" = 0 1 2
"Providers" = 1
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\13]
"" = IAS.UserAccountValidation
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\14]
"" = IAS.MachineAccountValidation
"Providers" = 1
"Requests" = 0
"Responses" = 0 1
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\15]
"" = IAS.EAPIdentity
"Providers" = 1
"Requests" = 0
"Replays" = 0
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\16]
"" = IAS.QuarantineEvaluator
"Providers" = 1
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\17]
"" = IAS.PolicyEnforcer
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\18]
"" = IAS.NTSamPerUser
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\19]
"" = IAS.URHandler
"Providers" = 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
"Reasons" = 33
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\20]
"" = IAS.RAPBasedEAP
"Providers" = 1
"Requests" = 0 2
"Replays" = 0
"Responses" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\21]
"" = IAS.PostEapRestrictions
"Providers" = 0 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 0 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\22]
"" = IAS.PostQuarantineEvaluator
"Providers" = 1
"Requests" = 0
"Replays" = 0
"Responses" = 1 2 5
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\23]
"" = IAS.ChangePassword
Re: policie čr prosim o radu
"Providers" = 1
"Requests" = 0
"Replays" = 0
"Responses" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\24]
"" = IAS.AuthorizationHost
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\25]
"" = IAS.EAPTerminator
"Providers" = 0 1
"Requests" = 0 2
"Replays" = 0
"Responses" = 1 2 3 5
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\26]
"" = IAS.Accounting
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\27]
"" = IAS.DatabaseAccounting
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\28]
"" = IAS.MSChapErrorReporter
"Providers" = 0 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\RouterManagers]
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\RouterManagers\Ip]
"ProtocolId" = 33
"GlobalInfo" = 01 00 00 00 78 00 00 00 02 00 00 00 03 00 FF FF 08 00 00 00 01 00 00 00 30 00 00 00 06 00 FF FF 34 00 00 00 01 00 00 00 38 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 03 00 00 00 0A 00 00 00 16 27 00 00 03 00 00 00 17 27 00 00 05 00 00 00 12 27 00 00 07 00 00 00 08 00 00 00 78 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"DLLPath" = %SystemRoot%\System32\iprtrmgr.dll -- [2008.01.21 03:24:20 | 000,252,416 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\RouterManagers\Ipv6]
"ProtocolId" = 87
"GlobalInfo" = 01 00 00 00 78 00 00 00 02 00 00 00 03 00 FF FF 08 00 00 00 01 00 00 00 30 00 00 00 06 00 FF FF 34 00 00 00 01 00 00 00 38 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 16 27 00 00 03 00 00 00 17 27 00 00 05 00 00 00 12 27 00 00 07 00 00 00 03 00 00 00 0A 00 00 00 08 00 00 00 78 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"DLLPath" = %SystemRoot%\System32\iprtrmgr.dll -- [2008.01.21 03:24:20 | 000,252,416 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\RoutingTableManager]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\RoutingTableManager\Instance 00000]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\RoutingTableManager\Instance 00000\AddressFamily 00002]
"AddressSize" = 4
"MaxChangeNotifyRegistrations" = 16
"MaxHandlesReturnedInEnum" = 25
"MaxNextHopsInRoute" = 3
"MaxOpaqueInfoPointers" = 5
"ViewsSupported" = 3
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\RoutingTableManager\Instance 00000\AddressFamily 00023]
"AddressSize" = 16
"MaxChangeNotifyRegistrations" = 16
"MaxHandlesReturnedInEnum" = 25
"MaxNextHopsInRoute" = 3
"MaxOpaqueInfoPointers" = 5
"ViewsSupported" = 3
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Security]
"Security" = 01 00 14 88 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteRegistry]
"DisplayName" = @regsvc.dll,-1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k regsvc -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @regsvc.dll,-2
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteRegistry\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\system32\regsvc.dll -- [2009.04.11 07:28:24 | 000,107,008 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RFCOMM]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 10
"ImagePath" = system32\DRIVERS\rfcomm.sys -- [2009.04.11 05:43:12 | 000,148,992 | ---- | M] (Microsoft Corporation)
"DisplayName" = Zařízení Bluetooth (RFCOMM protokol TDI)
"Group" = PNP_TDI
"Description" = Zařízení Bluetooth (RFCOMM protokol TDI)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RFCOMM\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RFCOMM\Parameters\Winsock]
"HelperDllName" = %SystemRoot%\System32\wshBth.dll -- [2009.04.11 07:28:26 | 000,034,304 | ---- | M] (Microsoft Corporation)
"MaxSockAddrLength" = 50
"MinSockAddrLength" = 28
"Mapping" = 04 00 00 00 03 00 00 00 20 00 00 00 01 00 00 00 00 01 00 00 20 00 00 00 00 00 00 00 00 01 00 00 20 00 00 00 01 00 00 00 03 00 00 00 20 00 00 00 00 00 00 00 03 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RpcLocator]
"DisplayName" = @%systemroot%\system32\Locator.exe,-2
"ImagePath" = %SystemRoot%\system32\locator.exe -- [2006.11.02 10:45:21 | 000,007,680 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\Locator.exe,-3
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RpcSs]
"DisplayName" = @oleres.dll,-5010
"Group" = COM Infrastructure
"ImagePath" = %SystemRoot%\system32\svchost.exe -k rpcss -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @oleres.dll,-5011
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = DcomLaunch [binary data]
"FailureActions" = 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 02 00 00 00 60 EA 00 00 [binary data]
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"ServiceSidType" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RpcSs\Parameters]
"ServiceDll" = %SystemRoot%\system32\rpcss.dll -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RpcSs\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 00 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 85 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 FF 00 0E 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FD 00 0E 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 95 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\rspndr]
"Type" = 1
"Start" = 2
"ErrorControl" = 1
"Tag" = 14
"ImagePath" = system32\DRIVERS\rspndr.sys -- [2008.01.21 03:24:37 | 000,060,416 | ---- | M] (Microsoft Corporation)
"DisplayName" = Link-Layer Topology Discovery Responder
"Group" = NDIS
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\rspndr\Linkage]
"Bind" = \Device\{DB5A0E6A-4A5D-47A0-8E63-B [Binary data over 200 bytes]
"Route" = "{DB5A0E6A-4A5D-47A0-8E63-B3C6DAAC [Binary data over 200 bytes]
"Export" = \Device\rspndr_{DB5A0E6A-4A5D-47A0 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\rspndr\Enum]
"0" = Root\LEGACY_RSPNDR\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SamSs]
"Description" = @%SystemRoot%\system32\samsrv.dll,-2
"DisplayName" = @%SystemRoot%\system32\samsrv.dll,-1
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\lsass.exe -- [2011.11.16 15:12:25 | 000,009,728 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"Start" = 2
"Type" = 32
"Group" = MS_WindowsLocalValidation
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SamSs\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 8D 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sbp2port]
"DisplayName" = SBP-2 Transport/Protocol Bus Driver
"ImagePath" = \SystemRoot\system32\drivers\sbp2port.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ScanUSBET]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\etScan.sys -- [2008.01.31 12:18:57 | 000,006,528 | ---- | M] (eMPIA Technology, Inc.)
"DisplayName" = ET USB Still Image Capture Device
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ScanUSBET\Enum]
"0" = USB\VID_04F2&PID_B033&MI_00\6&3a4885d&0&0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SCardSvr]
"DisplayName" = @%SystemRoot%\System32\SCardSvr.dll,-1
"Group" = SmartCardGroup
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\SCardSvr.dll,-5
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = PlugPlay [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeChangeNo [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SCardSvr\Parameters]
"ServiceDll" = %SystemRoot%\System32\SCardSvr.dll -- [2009.04.11 07:28:24 | 000,095,232 | ---- | M] (Microsoft Corporation)
"ServiceMain" = CalaisMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SCardSvr\Security]
"Security" = 01 00 14 90 90 00 00 00 A0 00 00 00 14 00 00 00 34 00 00 00 02 00 20 00 01 00 00 00 02 C0 18 00 00 00 0C 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 02 00 5C 00 04 00 00 00 00 02 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Schedule]
"AtTaskMaxHours" = 72
"DisplayName" = @%SystemRoot%\system32\schedsvc.dll,-100
"Group" = SchedulerGroup
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\schedsvc.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RPCSSEventLog [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeIncreaseQuotaPrivilegeSeChangeN [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Schedule\Parameters]
"ServiceDll" = %systemroot%\system32\schedsvc.dll -- [2010.11.04 19:55:12 | 000,601,600 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = ServiceMain
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Schedule\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 DD 01 0E 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 8D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SCPolicySvc]
"DisplayName" = @%SystemRoot%\System32\certprop.dll,-13
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\certprop.dll,-14
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeTcbPrivi [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SCPolicySvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\certprop.dll -- [2009.04.11 07:28:18 | 000,040,448 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ScPolicyServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SCPolicySvc\Security]
"Security" = 01 00 14 90 90 00 00 00 A0 00 00 00 14 00 00 00 34 00 00 00 02 00 20 00 01 00 00 00 02 C0 18 00 00 00 0C 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 02 00 5C 00 04 00 00 00 00 02 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sdbus]
"Type" = 1
"Start" = 4
"ErrorControl" = 1
"Tag" = 16
"ImagePath" = system32\DRIVERS\sdbus.sys -- [2008.01.21 03:23:21 | 000,088,576 | ---- | M] (Microsoft Corporation)
"Group" = System Bus Extender
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sdbus\Parameters]
"SdCmdFlags" = 06 01 09 19 0A 19 0D 11 10 01 11 01 12 01 18 05 19 05 19 01 1A 01 1B 01 1C 01 20 05 21 05 26 05 2A 01 34 02 35 02 37 01 38 01 22 01 23 05 24 01 25 01 [binary data]
"SdAppCmdFlags" = 06 01 0D 01 16 01 17 01 33 01 12 01 19 01 1A 01 26 01 2B 01 2C 01 2D 01 2E 01 2F 01 30 01 31 01 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SDRSVC]
"DisplayName" = @%SystemRoot%\system32\sdrsvc.dll,-107
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k SDRSVC -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 16
"Description" = @%SystemRoot%\system32\sdrsvc.dll,-102
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = localSystem
"ServiceSidType" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SDRSVC\Parameters]
"ServiceDll" = %Systemroot%\System32\SDRSVC.dll -- [2008.01.21 03:23:27 | 000,104,960 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SeaPort]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe" -- [2010.07.27 14:46:08 | 000,249,136 | ---- | M] (Microsoft Corporation)
"DisplayName" = SeaPort
"ObjectName" = LocalSystem
"Description" = Enables the detection, download and installation of up-to-date configuration files for Microsoft Search Enhancement applications. Also provides server communication for the customer experience improvement program. If this service is disabled, search enhancement features such as search history may not work correctly.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\secdrv]
"DisplayName" = Security Driver
"ErrorControl" = 1
"Start" = 2
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\secdrv\Security]
"Security" = 01 00 14 80 8C 00 00 00 98 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 5C 00 04 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\secdrv\Enum]
"0" = Root\LEGACY_SECDRV\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\seclogon]
"DisplayName" = @%SystemRoot%\system32\seclogon.dll,-7001
"ImagePath" = %windir%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\seclogon.dll,-7000
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"RequiredPrivileges" = SeTcbPrivilegeSeRestorePrivilege [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\seclogon\Parameters]
"ServiceDll" = %windir%\system32\seclogon.dll -- [2008.01.21 03:24:35 | 000,019,968 | ---- | M] (Microsoft Corporation)
"ServiceMain" = SvcEntry_Seclogon
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SENS]
"DisplayName" = @%SystemRoot%\system32\Sens.dll,-200
"Group" = ProfSvc_Group
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\Sens.dll,-201
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = EventSystem [binary data]
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SENS\Parameters]
"ServiceDll" = %SystemRoot%\System32\sens.dll -- [2008.01.21 03:24:44 | 000,047,104 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SENS\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Serenum]
"DisplayName" = Serenum Filter Driver
"Group" = PNP Filter
"ImagePath" = \SystemRoot\system32\drivers\serenum.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Serial]
"DisplayName" = Serial Port Driver
"Group" = Extended base
"ImagePath" = \SystemRoot\system32\drivers\serial.sys
"ErrorControl" = 0
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sermouse]
"DisplayName" = Serial Mouse Driver
"Group" = Pointer Port
"ImagePath" = \SystemRoot\system32\drivers\sermouse.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceLayer]
"Type" = 272
"Start" = 3
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\PC Connectivity Solution\ServiceLayer.exe" -- [2007.03.26 12:06:24 | 000,292,864 | ---- | M] (Nokia.)
"DisplayName" = ServiceLayer
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelEndpoint 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelEndpoint 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 655362726963206553665536272696 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = CallsCalls Per SecondCalls Outst [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _ServiceModelEndpointPerfCounters_D.ini
"First Counter" = 4302
"Last Counter" = 4340
"First Help" = 4303
"Last Help" = 4341
"Object List" = 4302
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelOperation 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelOperation 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 655362726963206553665536272696 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = CallsCalls Per SecondCalls Outst [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _ServiceModelOperationPerfCounters_D.ini
"First Counter" = 4040
"Last Counter" = 4070
"First Help" = 4041
"Last Help" = 4071
"Object List" = 4040
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelService 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelService 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 655362726963206553665536272696 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = CallsCalls Per SecondCalls Outst [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _ServiceModelServicePerfCounters_D.ini
"First Counter" = 4100
"Last Counter" = 4166
"First Help" = 4101
"Last Help" = 4167
"Object List" = 4100
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SessionEnv]
"DisplayName" = @%SystemRoot%\System32\SessEnv.dll,-1026
"ImagePath" = %SystemRoot%\System32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\SessEnv.dll,-1027
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RPCSSLanmanWorkstation [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 60 EA 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SessionEnv\Parameters]
"ServiceDLL" = %SystemRoot%\system32\sessenv.dll -- [2008.01.21 03:24:55 | 000,084,992 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SessionEnv\Security]
"Security" = 01 00 14 88 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 30 00 00 00 01 06 00 00 00 00 00 05 50 00 00 00 66 34 96 1A B9 AA F1 5C 19 30 12 F8 95 CE 48 74 A0 FD 4E 30 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sffdisk]
"DisplayName" = SFF Storage Class Driver
"ImagePath" = \SystemRoot\system32\drivers\sffdisk.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sffp_mmc]
"DisplayName" = SFF Storage Protocol Driver for MMC
"ImagePath" = \SystemRoot\system32\drivers\sffp_mmc.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sffp_mmc\Parameters]
"SdCmdFlags" = 09 01 0A 01 0D 01 20 01 21 01 26 01 22 01 23 01 24 01 25 01 32 01 39 01 [binary data]
"SdAppCmdFlags" = 0D 01 12 01 19 01 1A 01 26 01 2B 01 2C 01 2D 01 2E 01 2F 01 30 01 31 01 33 01 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sffp_sd]
"DisplayName" = SFF Storage Protocol Driver for SDBus
"ImagePath" = \SystemRoot\system32\drivers\sffp_sd.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sffp_sd\Parameters]
"SdCmdFlags" = 09 01 0A 01 0D 01 20 01 21 01 26 01 22 01 23 01 24 01 25 01 32 01 39 01 [binary data]
"SdAppCmdFlags" = 0D 01 12 01 19 01 1A 01 26 01 2B 01 2C 01 2D 01 2E 01 2F 01 30 01 31 01 33 01 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sfloppy]
"AutoRun" = 0
"DisplayName" = High-Capacity Floppy Disk Drive
"ImagePath" = system32\DRIVERS\sfloppy.sys -- [2008.01.21 03:23:20 | 000,013,312 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess]
"DisplayName" = @%SystemRoot%\system32\ipnathlp.dll,-106
"ImagePath" = %SystemRoot%\System32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\ipnathlp.dll,-107
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = NetmanWinMgmtRasManBFE [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Defaults]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Defaults\FirewallPolicy]
"IPSecExempt" = 1
"DisableStatefulFTP" = 0
"DisableStatefulPPTP" = 0
"PolicyVersion" = 513
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Defaults\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Defaults\FirewallPolicy\DomainProfile\Logging]
"LogFileSize" = 4096
"Requests" = 0
"Replays" = 0
"Responses" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\24]
"" = IAS.AuthorizationHost
"Replays" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\25]
"" = IAS.EAPTerminator
"Providers" = 0 1
"Requests" = 0 2
"Replays" = 0
"Responses" = 1 2 3 5
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\26]
"" = IAS.Accounting
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\27]
"" = IAS.DatabaseAccounting
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Policy\Pipeline\28]
"" = IAS.MSChapErrorReporter
"Providers" = 0 1 3
"Requests" = 0
"Replays" = 0
"Responses" = 2
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\RouterManagers]
"Stamp" = 0
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\RouterManagers\Ip]
"ProtocolId" = 33
"GlobalInfo" = 01 00 00 00 78 00 00 00 02 00 00 00 03 00 FF FF 08 00 00 00 01 00 00 00 30 00 00 00 06 00 FF FF 34 00 00 00 01 00 00 00 38 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 03 00 00 00 0A 00 00 00 16 27 00 00 03 00 00 00 17 27 00 00 05 00 00 00 12 27 00 00 07 00 00 00 08 00 00 00 78 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"DLLPath" = %SystemRoot%\System32\iprtrmgr.dll -- [2008.01.21 03:24:20 | 000,252,416 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\RouterManagers\Ipv6]
"ProtocolId" = 87
"GlobalInfo" = 01 00 00 00 78 00 00 00 02 00 00 00 03 00 FF FF 08 00 00 00 01 00 00 00 30 00 00 00 06 00 FF FF 34 00 00 00 01 00 00 00 38 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 06 00 00 00 02 00 00 00 01 00 00 00 16 27 00 00 03 00 00 00 17 27 00 00 05 00 00 00 12 27 00 00 07 00 00 00 03 00 00 00 0A 00 00 00 08 00 00 00 78 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 [Binary data over 200 bytes]
"DLLPath" = %SystemRoot%\System32\iprtrmgr.dll -- [2008.01.21 03:24:20 | 000,252,416 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\RoutingTableManager]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\RoutingTableManager\Instance 00000]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\RoutingTableManager\Instance 00000\AddressFamily 00002]
"AddressSize" = 4
"MaxChangeNotifyRegistrations" = 16
"MaxHandlesReturnedInEnum" = 25
"MaxNextHopsInRoute" = 3
"MaxOpaqueInfoPointers" = 5
"ViewsSupported" = 3
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\RoutingTableManager\Instance 00000\AddressFamily 00023]
"AddressSize" = 16
"MaxChangeNotifyRegistrations" = 16
"MaxHandlesReturnedInEnum" = 25
"MaxNextHopsInRoute" = 3
"MaxOpaqueInfoPointers" = 5
"ViewsSupported" = 3
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteAccess\Security]
"Security" = 01 00 14 88 78 00 00 00 84 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 48 00 03 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteRegistry]
"DisplayName" = @regsvc.dll,-1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k regsvc -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @regsvc.dll,-2
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RemoteRegistry\Parameters]
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\system32\regsvc.dll -- [2009.04.11 07:28:24 | 000,107,008 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RFCOMM]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"Tag" = 10
"ImagePath" = system32\DRIVERS\rfcomm.sys -- [2009.04.11 05:43:12 | 000,148,992 | ---- | M] (Microsoft Corporation)
"DisplayName" = Zařízení Bluetooth (RFCOMM protokol TDI)
"Group" = PNP_TDI
"Description" = Zařízení Bluetooth (RFCOMM protokol TDI)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RFCOMM\Parameters]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RFCOMM\Parameters\Winsock]
"HelperDllName" = %SystemRoot%\System32\wshBth.dll -- [2009.04.11 07:28:26 | 000,034,304 | ---- | M] (Microsoft Corporation)
"MaxSockAddrLength" = 50
"MinSockAddrLength" = 28
"Mapping" = 04 00 00 00 03 00 00 00 20 00 00 00 01 00 00 00 00 01 00 00 20 00 00 00 00 00 00 00 00 01 00 00 20 00 00 00 01 00 00 00 03 00 00 00 20 00 00 00 00 00 00 00 03 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RpcLocator]
"DisplayName" = @%systemroot%\system32\Locator.exe,-2
"ImagePath" = %SystemRoot%\system32\locator.exe -- [2006.11.02 10:45:21 | 000,007,680 | ---- | M] (Microsoft Corporation)
"Description" = @%systemroot%\system32\Locator.exe,-3
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 3
"Type" = 16
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RpcSs]
"DisplayName" = @oleres.dll,-5010
"Group" = COM Infrastructure
"ImagePath" = %SystemRoot%\system32\svchost.exe -k rpcss -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @oleres.dll,-5011
"ObjectName" = NT AUTHORITY\NetworkService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = DcomLaunch [binary data]
"FailureActions" = 00 00 00 00 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00 00 02 00 00 00 60 EA 00 00 [binary data]
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"ServiceSidType" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RpcSs\Parameters]
"ServiceDll" = %SystemRoot%\system32\rpcss.dll -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\RpcSs\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 00 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 85 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 FF 00 0E 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FD 00 0E 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 95 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\rspndr]
"Type" = 1
"Start" = 2
"ErrorControl" = 1
"Tag" = 14
"ImagePath" = system32\DRIVERS\rspndr.sys -- [2008.01.21 03:24:37 | 000,060,416 | ---- | M] (Microsoft Corporation)
"DisplayName" = Link-Layer Topology Discovery Responder
"Group" = NDIS
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\rspndr\Linkage]
"Bind" = \Device\{DB5A0E6A-4A5D-47A0-8E63-B [Binary data over 200 bytes]
"Route" = "{DB5A0E6A-4A5D-47A0-8E63-B3C6DAAC [Binary data over 200 bytes]
"Export" = \Device\rspndr_{DB5A0E6A-4A5D-47A0 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\rspndr\Enum]
"0" = Root\LEGACY_RSPNDR\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SamSs]
"Description" = @%SystemRoot%\system32\samsrv.dll,-2
"DisplayName" = @%SystemRoot%\system32\samsrv.dll,-1
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\lsass.exe -- [2011.11.16 15:12:25 | 000,009,728 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
"Start" = 2
"Type" = 32
"Group" = MS_WindowsLocalValidation
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SamSs\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 00 00 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 8D 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sbp2port]
"DisplayName" = SBP-2 Transport/Protocol Bus Driver
"ImagePath" = \SystemRoot\system32\drivers\sbp2port.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ScanUSBET]
"Type" = 1
"Start" = 3
"ErrorControl" = 1
"ImagePath" = system32\DRIVERS\etScan.sys -- [2008.01.31 12:18:57 | 000,006,528 | ---- | M] (eMPIA Technology, Inc.)
"DisplayName" = ET USB Still Image Capture Device
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ScanUSBET\Enum]
"0" = USB\VID_04F2&PID_B033&MI_00\6&3a4885d&0&0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SCardSvr]
"DisplayName" = @%SystemRoot%\System32\SCardSvr.dll,-1
"Group" = SmartCardGroup
"ImagePath" = %SystemRoot%\system32\svchost.exe -k LocalService -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\SCardSvr.dll,-5
"ObjectName" = NT AUTHORITY\LocalService
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = PlugPlay [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeChangeNo [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SCardSvr\Parameters]
"ServiceDll" = %SystemRoot%\System32\SCardSvr.dll -- [2009.04.11 07:28:24 | 000,095,232 | ---- | M] (Microsoft Corporation)
"ServiceMain" = CalaisMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SCardSvr\Security]
"Security" = 01 00 14 90 90 00 00 00 A0 00 00 00 14 00 00 00 34 00 00 00 02 00 20 00 01 00 00 00 02 C0 18 00 00 00 0C 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 02 00 5C 00 04 00 00 00 00 02 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Schedule]
"AtTaskMaxHours" = 72
"DisplayName" = @%SystemRoot%\system32\schedsvc.dll,-100
"Group" = SchedulerGroup
"ImagePath" = %systemroot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\schedsvc.dll,-101
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = RPCSSEventLog [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeIncreaseQuotaPrivilegeSeChangeN [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Schedule\Parameters]
"ServiceDll" = %systemroot%\system32\schedsvc.dll -- [2010.11.04 19:55:12 | 000,601,600 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"ServiceMain" = ServiceMain
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Schedule\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 DD 01 0E 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 8D 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SCPolicySvc]
"DisplayName" = @%SystemRoot%\System32\certprop.dll,-13
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\certprop.dll,-14
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RpcSs [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ServiceSidType" = 1
"RequiredPrivileges" = SeCreateGlobalPrivilegeSeTcbPrivi [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SCPolicySvc\Parameters]
"ServiceDll" = %SystemRoot%\System32\certprop.dll -- [2009.04.11 07:28:18 | 000,040,448 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ScPolicyServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SCPolicySvc\Security]
"Security" = 01 00 14 90 90 00 00 00 A0 00 00 00 14 00 00 00 34 00 00 00 02 00 20 00 01 00 00 00 02 C0 18 00 00 00 0C 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 02 00 5C 00 04 00 00 00 00 02 14 00 FF 01 0F 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sdbus]
"Type" = 1
"Start" = 4
"ErrorControl" = 1
"Tag" = 16
"ImagePath" = system32\DRIVERS\sdbus.sys -- [2008.01.21 03:23:21 | 000,088,576 | ---- | M] (Microsoft Corporation)
"Group" = System Bus Extender
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sdbus\Parameters]
"SdCmdFlags" = 06 01 09 19 0A 19 0D 11 10 01 11 01 12 01 18 05 19 05 19 01 1A 01 1B 01 1C 01 20 05 21 05 26 05 2A 01 34 02 35 02 37 01 38 01 22 01 23 05 24 01 25 01 [binary data]
"SdAppCmdFlags" = 06 01 0D 01 16 01 17 01 33 01 12 01 19 01 1A 01 26 01 2B 01 2C 01 2D 01 2E 01 2F 01 30 01 31 01 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SDRSVC]
"DisplayName" = @%SystemRoot%\system32\sdrsvc.dll,-107
"ErrorControl" = 1
"ImagePath" = %SystemRoot%\system32\svchost.exe -k SDRSVC -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Start" = 3
"Type" = 16
"Description" = @%SystemRoot%\system32\sdrsvc.dll,-102
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = localSystem
"ServiceSidType" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SDRSVC\Parameters]
"ServiceDll" = %Systemroot%\System32\SDRSVC.dll -- [2008.01.21 03:23:27 | 000,104,960 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SeaPort]
"Type" = 16
"Start" = 2
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe" -- [2010.07.27 14:46:08 | 000,249,136 | ---- | M] (Microsoft Corporation)
"DisplayName" = SeaPort
"ObjectName" = LocalSystem
"Description" = Enables the detection, download and installation of up-to-date configuration files for Microsoft Search Enhancement applications. Also provides server communication for the customer experience improvement program. If this service is disabled, search enhancement features such as search history may not work correctly.
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\secdrv]
"DisplayName" = Security Driver
"ErrorControl" = 1
"Start" = 2
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\secdrv\Security]
"Security" = 01 00 14 80 8C 00 00 00 98 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 5C 00 04 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 14 00 9D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\secdrv\Enum]
"0" = Root\LEGACY_SECDRV\0000
"Count" = 1
"NextInstance" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\seclogon]
"DisplayName" = @%SystemRoot%\system32\seclogon.dll,-7001
"ImagePath" = %windir%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\seclogon.dll,-7000
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"RequiredPrivileges" = SeTcbPrivilegeSeRestorePrivilege [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\seclogon\Parameters]
"ServiceDll" = %windir%\system32\seclogon.dll -- [2008.01.21 03:24:35 | 000,019,968 | ---- | M] (Microsoft Corporation)
"ServiceMain" = SvcEntry_Seclogon
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SENS]
"DisplayName" = @%SystemRoot%\system32\Sens.dll,-200
"Group" = ProfSvc_Group
"ImagePath" = %SystemRoot%\system32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\Sens.dll,-201
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 2
"Type" = 32
"DependOnService" = EventSystem [binary data]
"RequiredPrivileges" = SeAuditPrivilegeSeChangeNotifyPri [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SENS\Parameters]
"ServiceDll" = %SystemRoot%\System32\sens.dll -- [2008.01.21 03:24:44 | 000,047,104 | ---- | M] (Microsoft Corporation)
"ServiceMain" = ServiceMain
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SENS\Security]
"Security" = 01 00 14 80 90 00 00 00 9C 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 0B 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 25 02 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Serenum]
"DisplayName" = Serenum Filter Driver
"Group" = PNP Filter
"ImagePath" = \SystemRoot\system32\drivers\serenum.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Serial]
"DisplayName" = Serial Port Driver
"Group" = Extended base
"ImagePath" = \SystemRoot\system32\drivers\serial.sys
"ErrorControl" = 0
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sermouse]
"DisplayName" = Serial Mouse Driver
"Group" = Pointer Port
"ImagePath" = \SystemRoot\system32\drivers\sermouse.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceLayer]
"Type" = 272
"Start" = 3
"ErrorControl" = 1
"ImagePath" = "C:\Program Files\PC Connectivity Solution\ServiceLayer.exe" -- [2007.03.26 12:06:24 | 000,292,864 | ---- | M] (Nokia.)
"DisplayName" = ServiceLayer
"DependOnService" = RPCSS [binary data] -- [2009.04.11 07:28:24 | 000,550,400 | ---- | M] (Microsoft Corporation)
"ObjectName" = LocalSystem
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelEndpoint 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelEndpoint 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 655362726963206553665536272696 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = CallsCalls Per SecondCalls Outst [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _ServiceModelEndpointPerfCounters_D.ini
"First Counter" = 4302
"Last Counter" = 4340
"First Help" = 4303
"Last Help" = 4341
"Object List" = 4302
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelOperation 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelOperation 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 655362726963206553665536272696 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = CallsCalls Per SecondCalls Outst [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _ServiceModelOperationPerfCounters_D.ini
"First Counter" = 4040
"Last Counter" = 4070
"First Help" = 4041
"Last Help" = 4071
"Object List" = 4040
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelService 3.0.0.0]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ServiceModelService 3.0.0.0\Performance]
"CategoryOptions" = 3
"Counter Types" = 655362726963206553665536272696 [Binary data over 200 bytes]
"Close" = ClosePerformanceData
"Counter Names" = CallsCalls Per SecondCalls Outst [Binary data over 200 bytes]
"IsMultiInstance" = 1
"Open" = OpenPerformanceData
"Collect" = CollectPerformanceData
"Library" = NETFXPerf.dll -- [2009.11.08 09:55:32 | 000,049,472 | ---- | M] (Microsoft Corporation)
"InstallType" = 1
"PerfIniFile" = _ServiceModelServicePerfCounters_D.ini
"First Counter" = 4100
"Last Counter" = 4166
"First Help" = 4101
"Last Help" = 4167
"Object List" = 4100
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SessionEnv]
"DisplayName" = @%SystemRoot%\System32\SessEnv.dll,-1026
"ImagePath" = %SystemRoot%\System32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\System32\SessEnv.dll,-1027
"ObjectName" = localSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = RPCSSLanmanWorkstation [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeImpersonatePrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 60 EA 00 00 00 00 00 00 60 EA 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SessionEnv\Parameters]
"ServiceDLL" = %SystemRoot%\system32\sessenv.dll -- [2008.01.21 03:24:55 | 000,084,992 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SessionEnv\Security]
"Security" = 01 00 14 88 B4 00 00 00 C0 00 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 84 00 05 00 00 00 00 00 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 06 00 00 00 00 00 28 00 30 00 00 00 01 06 00 00 00 00 00 05 50 00 00 00 66 34 96 1A B9 AA F1 5C 19 30 12 F8 95 CE 48 74 A0 FD 4E 30 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sffdisk]
"DisplayName" = SFF Storage Class Driver
"ImagePath" = \SystemRoot\system32\drivers\sffdisk.sys
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sffp_mmc]
"DisplayName" = SFF Storage Protocol Driver for MMC
"ImagePath" = \SystemRoot\system32\drivers\sffp_mmc.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sffp_mmc\Parameters]
"SdCmdFlags" = 09 01 0A 01 0D 01 20 01 21 01 26 01 22 01 23 01 24 01 25 01 32 01 39 01 [binary data]
"SdAppCmdFlags" = 0D 01 12 01 19 01 1A 01 26 01 2B 01 2C 01 2D 01 2E 01 2F 01 30 01 31 01 33 01 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sffp_sd]
"DisplayName" = SFF Storage Protocol Driver for SDBus
"ImagePath" = \SystemRoot\system32\drivers\sffp_sd.sys
"ErrorControl" = 1
"Start" = 3
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sffp_sd\Parameters]
"SdCmdFlags" = 09 01 0A 01 0D 01 20 01 21 01 26 01 22 01 23 01 24 01 25 01 32 01 39 01 [binary data]
"SdAppCmdFlags" = 0D 01 12 01 19 01 1A 01 26 01 2B 01 2C 01 2D 01 2E 01 2F 01 30 01 31 01 33 01 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\sfloppy]
"AutoRun" = 0
"DisplayName" = High-Capacity Floppy Disk Drive
"ImagePath" = system32\DRIVERS\sfloppy.sys -- [2008.01.21 03:23:20 | 000,013,312 | ---- | M] (Microsoft Corporation)
"ErrorControl" = 1
"Start" = 4
"Type" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess]
"DisplayName" = @%SystemRoot%\system32\ipnathlp.dll,-106
"ImagePath" = %SystemRoot%\System32\svchost.exe -k netsvcs -- [2008.01.21 03:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation)
"Description" = @%SystemRoot%\system32\ipnathlp.dll,-107
"ObjectName" = LocalSystem
"ErrorControl" = 1
"Start" = 3
"Type" = 32
"DependOnService" = NetmanWinMgmtRasManBFE [binary data]
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGl [Binary data over 200 bytes]
"FailureActions" = 84 03 00 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00 [binary data]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Defaults]
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Defaults\FirewallPolicy]
"IPSecExempt" = 1
"DisableStatefulFTP" = 0
"DisableStatefulPPTP" = 0
"PolicyVersion" = 513
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Defaults\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Defaults\FirewallPolicy\DomainProfile\Logging]
"LogFileSize" = 4096
Re: policie čr prosim o radu
dalsich 40 stran ti poslu zitra nemam na to nervy
- stell
- VIP in memoriam
- Příspěvky: 5175
- Registrován: 09 pro 2007 09:27
- Bydliště: SK-REVUCA
- Kontaktovat uživatele:
Re: policie čr prosim o radu
Uz neposielaj nic, teraz sprav toto,
Spust OTL.exe, >.pravy klik a spust ako admin,spravca,
Dole do okna vloz tento script, co tu dam, ale POZOR, teraz kliknes na Gombik, knoflik, OPRAVIT, alebo na RUNFIX.
Tento log uz nebude taky dlhy, log po restarte vloz sem.
Spust OTL.exe, >.pravy klik a spust ako admin,spravca,
Dole do okna vloz tento script, co tu dam, ale POZOR, teraz kliknes na Gombik, knoflik, OPRAVIT, alebo na RUNFIX.
Tento log uz nebude taky dlhy, log po restarte vloz sem.
Kód: Vybrat vše
:OTL
SRV - (FSMA) -- C:\Program Files\O2 PC Strazce\Common\FSMA32.EXE (F-Secure Corporation)
SRV - (FSDFWD) -- C:\Program Files\O2 PC Strazce\FWES\program\fsdfwd.exe (F-Secure Corporation)
SRV - (F-Secure Gatekeeper Handler Starter) -- C:\Program Files\O2 PC Strazce\Anti-Virus\fsgk32st.exe (F-Secure Corporation)
SRV - (FSAUA) -- C:\Program Files\O2 PC Strazce\FSAUA\program\fsaua.exe (F-Secure Corporation)
DRV - (FSFW) -- C:\Windows\System32\drivers\fsdfw.sys (F-Secure Corporation)
DRV - (F-Secure HIPS) -- C:\Program Files\O2 PC Strazce\HIPS\fshs.sys ()
DRV - (FSES) -- C:\Windows\System32\drivers\fses.sys ()
DRV - (F-Secure Recognizer) -- C:\Program Files\O2 PC Strazce\Anti-Virus\win2k\fsrec.sys ()
DRV - (F-Secure Filter) -- C:\Program Files\O2 PC Strazce\Anti-Virus\win2k\fsfilter.sys ()
DRV - (fsvista) -- C:\Program Files\O2 PC Strazce\Anti-Virus\minifilter\fsvista.sys ()
DRV - (F-Secure Gatekeeper) -- C:\Program Files\O2 PC Strazce\Anti-Virus\minifilter\fsgk.sys ()
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKU\.DEFAULT\..\SearchScopes,defaultscope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\..\SearchScopes,defaultscope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\..\SearchScopes,defaultscope =
IE - HKU\S-1-5-20\..\SearchScopes,defaultscope =
IE - HKU\S-1-5-21-655894505-1183247855-1173350362-1000\..\SearchScopes,DefaultScope = {0633ee93-d776-472f-a0ff-e1416b8b2e3a}
IE - HKU\S-1-5-21-655894505-1183247855-1173350362-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-655894505-1183247855-1173350362-1000\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-655894505-1183247855-1173350362-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
O4 - HKLM..\Run: [] File not found
O4 - HKU\S-1-5-21-655894505-1183247855-1173350362-1000..\Run: [Power2GoExpress] File not found
O7 - HKU\S-1-5-21-655894505-1183247855-1173350362-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 0
O7 - HKU\S-1-5-21-655894505-1183247855-1173350362-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 0
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html File not found
O9 - Extra Button: Rodičovský... - {200DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\O2 PC Strazce\FSPC\fspcmsie.dll (F-Secure Corporation)
O9 - Extra 'Tools' menuitem : Rodičovský... - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\O2 PC Strazce\FSPC\fspcmsie.dll (F-Secure Corporation)
O33 - MountPoints2\{75febe51-fa05-11dd-b4a4-002243a1e998}\Shell - "" = AutoRun
O33 - MountPoints2\{75febe51-fa05-11dd-b4a4-002243a1e998}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a
O33 - MountPoints2\{8c11fe86-d9a4-11dd-8ce2-002243a1e998}\Shell - "" = AutoRun
O33 - MountPoints2\{8c11fe86-d9a4-11dd-8ce2-002243a1e998}\Shell\AutoRun\command - "" = F:\setup\rsrc\Autorun.exe
O33 - MountPoints2\{8c11fe86-d9a4-11dd-8ce2-002243a1e998}\Shell\dinstall\command - "" = F:\Directx\dxsetup.exe
O33 - MountPoints2\{b2afa60b-29ac-11e0-ad9d-f0c12aa27bd5}\Shell - "" = AutoRun
O33 - MountPoints2\{b2afa60b-29ac-11e0-ad9d-f0c12aa27bd5}\Shell\AutoRun\command - "" = G:\.\Setup.exe AUTORUN=1
O33 - MountPoints2\{dfba0126-4786-11de-b6cb-002243a1e998}\Shell - "" = AutoRun
O33 - MountPoints2\{dfba0126-4786-11de-b6cb-002243a1e998}\Shell\AutoRun\command - "" = G:\AutoRun.exe
O33 - MountPoints2\{f2605aeb-433d-11e1-8ddb-a25dbd7328ce}\Shell - "" = AutoRun
O33 - MountPoints2\{f2605aeb-433d-11e1-8ddb-a25dbd7328ce}\Shell\AutoRun\command - "" = G:\AutoRun.exe
[2013.01.29 20:20:55 | 002,586,752 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Users\pc\Desktop\avg_remover_stf_x86_2013_2706.exe
[2013.01.29 20:21:03 | 002,586,752 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Users\pc\Desktop\avg_remover_stf_x86_2013_2706.exe
[2013.01.29 20:13:00 | 000,000,844 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-655894505-1183247855-1173350362-1000Core.job
[2009.02.07 16:04:06 | 000,060,064 | ---- | M] (F-Secure Corporation) -- C:\Windows\system32\drivers\fsdfw.sys
[2007.04.26 18:08:52 | 000,035,024 | ---- | M] () -- C:\Windows\system32\drivers\fses.sys
:reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{32099AAC-C132-4136-9E9A-4E364A424E17}"=-
"{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}"=-
"{D7E97865-918F-41E4-9CD0-25AB1C574CE8}"=-
"{8dcb7100-df86-4384-8842-8fa844297b3f}"=-
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"CLMLServer"=-
"P2Go_Menu"=-
"SMSERIAL"=-
"F-Secure Manager"=-
"F-Secure TNB"=-
"Adobe Photo Downloader"=-
"PCSuiteTrayApplication"=-
"QuickTime Task"=-
"Adobe Reader Speed Launcher"=-
"SiteRanker"=-
"PCPowerSpeed"=-
"HP Software Update"=-
""=-
"Microsoft Default Manager"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=-
"Power2GoExpress"=-
"swg"=-
"Mobile Partner"=-
"Skype"=-
"InboxToolbar"=-
:files
C:\Program Files\O2 PC Strazce
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
C:\ProgramData\avg8
C:\Users\pc\AppData\Roaming\F-Secure
:services
F-Secure HIPS
FSES
FSFW
fsvista
F-Secure Gatekeeper
AvgTdiX
F-Secure Filter
F-Secure Recognizer
F-Secure Gatekeeper Handler Starter
FSMA
FSAUA
FSDFWD
McComponentHostService
:Commands
[purity]
[resethosts]
[CreateRestorePoint]
[emptytemp]
[start explorer]
[Reboot]
Re: policie čr prosim o radu
All processes killed
========== OTL ==========
Service FSMA stopped successfully!
Service FSMA deleted successfully!
C:\Program Files\O2 PC Strazce\Common\FSMA32.EXE moved successfully.
Service FSDFWD stopped successfully!
Service FSDFWD deleted successfully!
C:\Program Files\O2 PC Strazce\FWES\program\fsdfwd.exe moved successfully.
Service F-Secure Gatekeeper Handler Starter stopped successfully!
Service F-Secure Gatekeeper Handler Starter deleted successfully!
C:\Program Files\O2 PC Strazce\Anti-Virus\fsgk32st.exe moved successfully.
Service FSAUA stopped successfully!
Service FSAUA deleted successfully!
C:\Program Files\O2 PC Strazce\FSAUA\program\fsaua.exe moved successfully.
Error: Unable to stop service FSFW!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FSFW deleted successfully.
C:\Windows\System32\drivers\fsdfw.sys moved successfully.
Error: Unable to stop service F-Secure HIPS!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\F-Secure HIPS deleted successfully.
C:\Program Files\O2 PC Strazce\HIPS\fshs.sys moved successfully.
Error: Unable to stop service FSES!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FSES deleted successfully.
C:\Windows\System32\drivers\fses.sys moved successfully.
Service F-Secure Recognizer stopped successfully!
Service F-Secure Recognizer deleted successfully!
C:\Program Files\O2 PC Strazce\Anti-Virus\win2k\fsrec.sys moved successfully.
Service F-Secure Filter stopped successfully!
Service F-Secure Filter deleted successfully!
C:\Program Files\O2 PC Strazce\Anti-Virus\win2k\fsfilter.sys moved successfully.
Service fsvista stopped successfully!
Service fsvista deleted successfully!
C:\Program Files\O2 PC Strazce\Anti-Virus\minifilter\fsvista.sys moved successfully.
Service F-Secure Gatekeeper stopped successfully!
Service F-Secure Gatekeeper deleted successfully!
C:\Program Files\O2 PC Strazce\Anti-Virus\minifilter\fsgk.sys moved successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Search_URL| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Secondary_Page_URL| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Extensions Off Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Security Risk Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\CustomizeSearch| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes\ deleted successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes\ not found.
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
Registry key HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes\ deleted successfully.
Registry key HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes\ deleted successfully.
HKEY_USERS\S-1-5-21-655894505-1183247855-1173350362-1000\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-655894505-1183247855-1173350362-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-655894505-1183247855-1173350362-1000\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
HKU\S-1-5-21-655894505-1183247855-1173350362-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-655894505-1183247855-1173350362-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Power2GoExpress deleted successfully.
Registry value HKEY_USERS\S-1-5-21-655894505-1183247855-1173350362-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableRegistryTools deleted successfully.
Registry value HKEY_USERS\S-1-5-21-655894505-1183247855-1173350362-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableTaskMgr deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Google Sidewiki...\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{200DB664-75B5-47c0-8B45-A44ACCF73C00}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{200DB664-75B5-47c0-8B45-A44ACCF73C00}\ not found.
C:\Program Files\O2 PC Strazce\FSPC\fspcmsie.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{200DB664-75B5-47c0-8B45-A44ACCF73F01}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{200DB664-75B5-47c0-8B45-A44ACCF73F01}\ not found.
File C:\Program Files\O2 PC Strazce\FSPC\fspcmsie.dll not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{75febe51-fa05-11dd-b4a4-002243a1e998}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75febe51-fa05-11dd-b4a4-002243a1e998}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{75febe51-fa05-11dd-b4a4-002243a1e998}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75febe51-fa05-11dd-b4a4-002243a1e998}\ not found.
File H:\LaunchU3.exe -a not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8c11fe86-d9a4-11dd-8ce2-002243a1e998}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8c11fe86-d9a4-11dd-8ce2-002243a1e998}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8c11fe86-d9a4-11dd-8ce2-002243a1e998}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8c11fe86-d9a4-11dd-8ce2-002243a1e998}\ not found.
File F:\setup\rsrc\Autorun.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8c11fe86-d9a4-11dd-8ce2-002243a1e998}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8c11fe86-d9a4-11dd-8ce2-002243a1e998}\ not found.
File F:\Directx\dxsetup.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b2afa60b-29ac-11e0-ad9d-f0c12aa27bd5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b2afa60b-29ac-11e0-ad9d-f0c12aa27bd5}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b2afa60b-29ac-11e0-ad9d-f0c12aa27bd5}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b2afa60b-29ac-11e0-ad9d-f0c12aa27bd5}\ not found.
File G:\.\Setup.exe AUTORUN=1 not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{dfba0126-4786-11de-b6cb-002243a1e998}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{dfba0126-4786-11de-b6cb-002243a1e998}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{dfba0126-4786-11de-b6cb-002243a1e998}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{dfba0126-4786-11de-b6cb-002243a1e998}\ not found.
File G:\AutoRun.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f2605aeb-433d-11e1-8ddb-a25dbd7328ce}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f2605aeb-433d-11e1-8ddb-a25dbd7328ce}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f2605aeb-433d-11e1-8ddb-a25dbd7328ce}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f2605aeb-433d-11e1-8ddb-a25dbd7328ce}\ not found.
File G:\AutoRun.exe not found.
C:\Users\pc\Desktop\avg_remover_stf_x86_2013_2706.exe moved successfully.
File C:\Users\pc\Desktop\avg_remover_stf_x86_2013_2706.exe not found.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-655894505-1183247855-1173350362-1000Core.job moved successfully.
File C:\Windows\system32\drivers\fsdfw.sys not found.
File C:\Windows\system32\drivers\fses.sys not found.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{D7E97865-918F-41E4-9CD0-25AB1C574CE8} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D7E97865-918F-41E4-9CD0-25AB1C574CE8}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\CLMLServer deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\P2Go_Menu deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SMSERIAL deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\F-Secure Manager deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\F-Secure TNB deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Photo Downloader deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\PCSuiteTrayApplication deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SiteRanker not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\PCPowerSpeed deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\HP Software Update deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Microsoft Default Manager deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Sidebar deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Power2GoExpress not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\swg not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Mobile Partner deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Skype deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\InboxToolbar not found.
========== FILES ==========
C:\Program Files\O2 PC Strazce\Uninstall\csy\uninstall folder moved successfully.
C:\Program Files\O2 PC Strazce\Uninstall\csy folder moved successfully.
C:\Program Files\O2 PC Strazce\Uninstall folder moved successfully.
C:\Program Files\O2 PC Strazce\TNB folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\var folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\site folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\rules folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\log folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Win32 folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\warnings folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\URI folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\unicore\To folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\unicore folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Time folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Tie folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Text folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Sys folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Scalar folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Net\HTTP folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Net\DNS\RR folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Net\DNS\Resolver folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Net\DNS folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Net\CIDR folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Net folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\MIME folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SPF folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Util folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Plugin folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Message\Metadata folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Message folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Logger folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Locker folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Conf folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\BayesStore folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Bayes folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\LWP\Protocol folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\LWP\Authen folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\LWP folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\List folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\IPC folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\IO\Socket folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\IO folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\HTTP\Request folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\HTTP\Headers folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\HTTP folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\FS\PhishBL folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\FS folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\File\Spec folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\File folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Exporter folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Digest folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Crypt folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Compress folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Carp folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Win32\WinError folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Win32\Registry folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Win32 folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Time\HiRes folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Time folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Sys\Hostname folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Sys folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Socket folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\SDBM_File folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\POSIX folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\MIME\Base64 folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\MIME folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\List\Util folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\List folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\IO folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\HTML\Parser folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\File\Glob folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\File folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Fcntl folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\DynaLoader folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Digest\SHA1 folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Digest\MD5 folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Digest folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Cwd folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Compress\Zlib folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Compress folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\Net\DNS\RR folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\Net\DNS\Resolver folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\Net\DNS folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\Net folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\auto\Net\DNS folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\auto\Net folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\auto\HTML\Parser folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\auto\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\auto folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3\File folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3\auto\HTML\Parser folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3\auto\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3\auto\File\Glob folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3\auto\File folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3\auto folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3 folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control folder moved successfully.
C:\Program Files\O2 PC Strazce\Scanner-Interface folder moved successfully.
C:\Program Files\O2 PC Strazce\Pegasus folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\js\scripts folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\js\private folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\js\images folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\js\html folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\js folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\common\scripts folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\common\private folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\common\images folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\common\html folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\common folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\images folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhdata\js\search folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhdata\js folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhdata\common folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhdata folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\images folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\fssc folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\fspc folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\fsma folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\fsgui folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\fsfw folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\fsav folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\fsasw folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization folder moved successfully.
C:\Program Files\O2 PC Strazce\HIPS folder moved successfully.
C:\Program Files\O2 PC Strazce\Gemini folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\program folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\logs folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\fsdfwiu.tmp\winnt folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\fsdfwiu.tmp\vista folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\fsdfwiu.tmp folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\drivers\vista64 folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\drivers\vista32 folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\drivers\2000_xp folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\drivers folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\common folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES folder moved successfully.
C:\Program Files\O2 PC Strazce\FW folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPS\program folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPS folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\wwwroot\images folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\wwwroot folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\reports folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\logs folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\fshttps folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk\urlcache folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk\updates\db folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk\updates folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk\Stlst folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk\dll folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk\data folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk\conf folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\VirusNews\2008080701 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\VirusNews folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\js\scripts folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\js\private folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\js\images folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\js\html folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\js folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\common\scripts folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\common\private folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\common\images folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\common\html folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\common folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\images folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhdata\js\search folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhdata\js folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhdata\common folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhdata folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\images folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\subscriptions folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\spool folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\segmentation_rules\ct.sp.f-secure.com_80 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\segmentation_rules folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\program folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\installation_status folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\header folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\VirusNews\2008080701 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\VirusNews folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SWCDB\1230726515 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SWCDB folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\site folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\rules folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\URI folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\unicore\To folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\unicore folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Scalar folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Net\HTTP folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Net\CIDR folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Net folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SPF folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Util folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Plugin folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Message\Metadata folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Message folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Logger folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Locker folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Conf folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\BayesStore folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Bayes folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\LWP\Protocol folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\LWP\Authen folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\LWP folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\List folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\IO folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\HTTP\Request folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\HTTP\Headers folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\HTTP folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\FS\PhishBL folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\FS folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\File folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Crypt folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Compress folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\auto\List\Util folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\auto\List folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\auto\Digest\MD5 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\auto\Digest folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\auto\Compress\Zlib folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\auto\Compress folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\auto folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\Net\DNS\RR folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\Net\DNS\Resolver folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\Net\DNS folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\Net folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\auto\Net\DNS folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\auto\Net folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\auto\HTML\Parser folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\auto\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\auto folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3\File folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3\auto\HTML\Parser folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3\auto\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3\auto\File\Glob folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3\auto\File folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3\auto folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\pegdb\1232024153 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\pegdb folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\PCDB2\2009020201 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\PCDB2 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\oriondb\1234713762 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\oriondb folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\libradb\1234274299 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\libradb folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\idsdb\1232363088 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\idsdb folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\hipscfg\1234713761 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\hipscfg folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\gemdb\1228206657 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\gemdb folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\BLENG\2008112503 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\BLENG folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\avpe\1234713737 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\avpe folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\avmisc\1234244712 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\avmisc folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\program\inst\extmodules\program folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\program\inst\extmodules folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\program\inst folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\program folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\package-configurator folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\META-INF folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\policy folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\tnb folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\start-up wizard folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\splash folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\setup folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\pics folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\isp_news folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\icons folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\help folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsma folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\plugins\spam folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\plugins\parental folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\plugins folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\main folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\flyer folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\dialogs\securitynews folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\dialogs\scan_clean folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\dialogs\password folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\dialogs folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\advanced folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\common folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\META-INF folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\configuration\setupgui folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\configuration\fssg folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\configuration\acl folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\configuration folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\bootstrap folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc7 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Hotfix_psc7mf8\1\META-INF folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Hotfix_psc7mf8\1\hf folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Hotfix_psc7mf8\1\bin\gui folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Hotfix_psc7mf8\1\bin folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Hotfix_psc7mf8\1 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Hotfix_psc7mf8 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\tnb folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\start-up wizard folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\splash folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\setup folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\pics folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\isp news folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\icons folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\help folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsma folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\plugins\spam folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\plugins\parental folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\plugins folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\main folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\flyer folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\dialogs\securitynews folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\dialogs\scan_clean folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\dialogs\password folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\dialogs folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\advanced folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\common folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\META-INF folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\60PolicyUpdate_psc7\1 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\60PolicyUpdate_psc7 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA folder moved successfully.
C:\Program Files\O2 PC Strazce\DAAS folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\Invalid folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\History folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\tnb folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\start-up wizard folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\splash folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\setup folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\pics folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\isp news folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\icons folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\help folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsma folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\plugins\spam folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\plugins\parental folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\plugins folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\main folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\flyer folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\dialogs\securitynews folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\dialogs\scan_clean folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\dialogs\password folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\dialogs folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\advanced folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\common folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1 folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\commdir folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\ALERTS folder moved successfully.
C:\Program Files\O2 PC Strazce\Common folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\win2k folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\trace\fssm32 folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\trace\fsgk32 folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\trace\fsched folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\trace\fsav32 folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\trace\fsav folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\trace\common folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\trace folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\nt40 folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\minifilter folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\gkhsmtemp folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\ESTemp folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\dbupdateext folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Spyware folder moved successfully.
C:\Program Files\O2 PC Strazce folder moved successfully.
File\Folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk not found.
File\Folder C:\ProgramData\avg8 not found.
C:\Users\pc\AppData\Roaming\F-Secure\System Control folder moved successfully.
C:\Users\pc\AppData\Roaming\F-Secure\Spam Control folder moved successfully.
C:\Users\pc\AppData\Roaming\F-Secure folder moved successfully.
========== SERVICES/DRIVERS ==========
Error: Unable to stop service F-Secure HIPS!
Service\Driver key F-Secure HIPS not found.
Error: Unable to stop service FSES!
Service\Driver key FSES not found.
Error: Unable to stop service FSFW!
Service\Driver key FSFW not found.
Error: No service named fsvista was found to stop!
Service\Driver key fsvista not found.
Error: No service named F-Secure Gatekeeper was found to stop!
Service\Driver key F-Secure Gatekeeper not found.
Error: No service named AvgTdiX was found to stop!
Service\Driver key AvgTdiX not found.
Error: No service named F-Secure Filter was found to stop!
Service\Driver key F-Secure Filter not found.
Error: No service named F-Secure Recognizer was found to stop!
Service\Driver key F-Secure Recognizer not found.
Error: No service named F-Secure Gatekeeper Handler Starter was found to stop!
Service\Driver key F-Secure Gatekeeper Handler Starter not found.
Error: No service named FSMA was found to stop!
Service\Driver key FSMA not found.
Error: No service named FSAUA was found to stop!
Service\Driver key FSAUA not found.
Error: No service named FSDFWD was found to stop!
Service\Driver key FSDFWD not found.
Error: No service named McComponentHostService was found to stop!
Service\Driver key McComponentHostService not found.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
Restore point Set: OTL Restore Point
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: pc
->Temp folder emptied: 30538914 bytes
->Temporary Internet Files folder emptied: 824452565 bytes
->Opera cache emptied: 0 bytes
->Flash cache emptied: 1018 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1469868 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 1176868 bytes
Total Files Cleaned = 818,00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 01312013_174135
Files\Folders moved on Reboot...
File move failed. C:\Windows\temp\_avast4_\Webshlock.txt scheduled to be moved on reboot.
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
========== OTL ==========
Service FSMA stopped successfully!
Service FSMA deleted successfully!
C:\Program Files\O2 PC Strazce\Common\FSMA32.EXE moved successfully.
Service FSDFWD stopped successfully!
Service FSDFWD deleted successfully!
C:\Program Files\O2 PC Strazce\FWES\program\fsdfwd.exe moved successfully.
Service F-Secure Gatekeeper Handler Starter stopped successfully!
Service F-Secure Gatekeeper Handler Starter deleted successfully!
C:\Program Files\O2 PC Strazce\Anti-Virus\fsgk32st.exe moved successfully.
Service FSAUA stopped successfully!
Service FSAUA deleted successfully!
C:\Program Files\O2 PC Strazce\FSAUA\program\fsaua.exe moved successfully.
Error: Unable to stop service FSFW!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FSFW deleted successfully.
C:\Windows\System32\drivers\fsdfw.sys moved successfully.
Error: Unable to stop service F-Secure HIPS!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\F-Secure HIPS deleted successfully.
C:\Program Files\O2 PC Strazce\HIPS\fshs.sys moved successfully.
Error: Unable to stop service FSES!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FSES deleted successfully.
C:\Windows\System32\drivers\fses.sys moved successfully.
Service F-Secure Recognizer stopped successfully!
Service F-Secure Recognizer deleted successfully!
C:\Program Files\O2 PC Strazce\Anti-Virus\win2k\fsrec.sys moved successfully.
Service F-Secure Filter stopped successfully!
Service F-Secure Filter deleted successfully!
C:\Program Files\O2 PC Strazce\Anti-Virus\win2k\fsfilter.sys moved successfully.
Service fsvista stopped successfully!
Service fsvista deleted successfully!
C:\Program Files\O2 PC Strazce\Anti-Virus\minifilter\fsvista.sys moved successfully.
Service F-Secure Gatekeeper stopped successfully!
Service F-Secure Gatekeeper deleted successfully!
C:\Program Files\O2 PC Strazce\Anti-Virus\minifilter\fsgk.sys moved successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Search_URL| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Secondary_Page_URL| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Extensions Off Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Local Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Search Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Security Risk Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\CustomizeSearch| /E : value set successfully!
HKLM\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes\ deleted successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes\ not found.
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
Registry key HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes\ deleted successfully.
Registry key HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes\ deleted successfully.
HKEY_USERS\S-1-5-21-655894505-1183247855-1173350362-1000\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-655894505-1183247855-1173350362-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-655894505-1183247855-1173350362-1000\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}\ not found.
HKU\S-1-5-21-655894505-1183247855-1173350362-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-655894505-1183247855-1173350362-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Power2GoExpress deleted successfully.
Registry value HKEY_USERS\S-1-5-21-655894505-1183247855-1173350362-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableRegistryTools deleted successfully.
Registry value HKEY_USERS\S-1-5-21-655894505-1183247855-1173350362-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableTaskMgr deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Google Sidewiki...\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{200DB664-75B5-47c0-8B45-A44ACCF73C00}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{200DB664-75B5-47c0-8B45-A44ACCF73C00}\ not found.
C:\Program Files\O2 PC Strazce\FSPC\fspcmsie.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{200DB664-75B5-47c0-8B45-A44ACCF73F01}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{200DB664-75B5-47c0-8B45-A44ACCF73F01}\ not found.
File C:\Program Files\O2 PC Strazce\FSPC\fspcmsie.dll not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{75febe51-fa05-11dd-b4a4-002243a1e998}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75febe51-fa05-11dd-b4a4-002243a1e998}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{75febe51-fa05-11dd-b4a4-002243a1e998}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{75febe51-fa05-11dd-b4a4-002243a1e998}\ not found.
File H:\LaunchU3.exe -a not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8c11fe86-d9a4-11dd-8ce2-002243a1e998}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8c11fe86-d9a4-11dd-8ce2-002243a1e998}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8c11fe86-d9a4-11dd-8ce2-002243a1e998}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8c11fe86-d9a4-11dd-8ce2-002243a1e998}\ not found.
File F:\setup\rsrc\Autorun.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8c11fe86-d9a4-11dd-8ce2-002243a1e998}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8c11fe86-d9a4-11dd-8ce2-002243a1e998}\ not found.
File F:\Directx\dxsetup.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b2afa60b-29ac-11e0-ad9d-f0c12aa27bd5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b2afa60b-29ac-11e0-ad9d-f0c12aa27bd5}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b2afa60b-29ac-11e0-ad9d-f0c12aa27bd5}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b2afa60b-29ac-11e0-ad9d-f0c12aa27bd5}\ not found.
File G:\.\Setup.exe AUTORUN=1 not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{dfba0126-4786-11de-b6cb-002243a1e998}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{dfba0126-4786-11de-b6cb-002243a1e998}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{dfba0126-4786-11de-b6cb-002243a1e998}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{dfba0126-4786-11de-b6cb-002243a1e998}\ not found.
File G:\AutoRun.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f2605aeb-433d-11e1-8ddb-a25dbd7328ce}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f2605aeb-433d-11e1-8ddb-a25dbd7328ce}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f2605aeb-433d-11e1-8ddb-a25dbd7328ce}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{f2605aeb-433d-11e1-8ddb-a25dbd7328ce}\ not found.
File G:\AutoRun.exe not found.
C:\Users\pc\Desktop\avg_remover_stf_x86_2013_2706.exe moved successfully.
File C:\Users\pc\Desktop\avg_remover_stf_x86_2013_2706.exe not found.
C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-655894505-1183247855-1173350362-1000Core.job moved successfully.
File C:\Windows\system32\drivers\fsdfw.sys not found.
File C:\Windows\system32\drivers\fses.sys not found.
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{D7E97865-918F-41E4-9CD0-25AB1C574CE8} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D7E97865-918F-41E4-9CD0-25AB1C574CE8}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\CLMLServer deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\P2Go_Menu deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SMSERIAL deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\F-Secure Manager deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\F-Secure TNB deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Photo Downloader deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\PCSuiteTrayApplication deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SiteRanker not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\PCPowerSpeed deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\HP Software Update deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Microsoft Default Manager deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Sidebar deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Power2GoExpress not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\swg not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Mobile Partner deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Skype deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\InboxToolbar not found.
========== FILES ==========
C:\Program Files\O2 PC Strazce\Uninstall\csy\uninstall folder moved successfully.
C:\Program Files\O2 PC Strazce\Uninstall\csy folder moved successfully.
C:\Program Files\O2 PC Strazce\Uninstall folder moved successfully.
C:\Program Files\O2 PC Strazce\TNB folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\var folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\site folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\rules folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\log folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Win32 folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\warnings folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\URI folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\unicore\To folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\unicore folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Time folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Tie folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Text folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Sys folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Scalar folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Net\HTTP folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Net\DNS\RR folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Net\DNS\Resolver folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Net\DNS folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Net\CIDR folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Net folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\MIME folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SPF folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Util folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Plugin folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Message\Metadata folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Message folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Logger folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Locker folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Conf folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\BayesStore folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin\Bayes folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail\SpamAssassin folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Mail folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\LWP\Protocol folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\LWP\Authen folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\LWP folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\List folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\IPC folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\IO\Socket folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\IO folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\HTTP\Request folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\HTTP\Headers folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\HTTP folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\FS\PhishBL folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\FS folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\File\Spec folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\File folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Exporter folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Digest folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Crypt folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Compress folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\Carp folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Win32\WinError folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Win32\Registry folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Win32 folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Time\HiRes folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Time folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Sys\Hostname folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Sys folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Socket folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\SDBM_File folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\POSIX folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\MIME\Base64 folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\MIME folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\List\Util folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\List folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\IO folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\HTML\Parser folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\File\Glob folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\File folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Fcntl folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\DynaLoader folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Digest\SHA1 folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Digest\MD5 folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Digest folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Cwd folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Compress\Zlib folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto\Compress folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib\auto folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\lib folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\Net\DNS\RR folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\Net\DNS\Resolver folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\Net\DNS folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\Net folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\auto\Net\DNS folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\auto\Net folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\auto\HTML\Parser folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\auto\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\auto folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3\File folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3\auto\HTML\Parser folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3\auto\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3\auto\File\Glob folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3\auto\File folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3\auto folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib\5.8.3 folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control\dlib folder moved successfully.
C:\Program Files\O2 PC Strazce\Spam Control folder moved successfully.
C:\Program Files\O2 PC Strazce\Scanner-Interface folder moved successfully.
C:\Program Files\O2 PC Strazce\Pegasus folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\js\scripts folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\js\private folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\js\images folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\js\html folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\js folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\common\scripts folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\common\private folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\common\images folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\common\html folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl\common folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\wwhimpl folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp\images folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhelp folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhdata\js\search folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhdata\js folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhdata\common folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\wwhdata folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help\images folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\help folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\fssc folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\fspc folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\fsma folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\fsgui folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\fsfw folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\fsav folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy\fsasw folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization\csy folder moved successfully.
C:\Program Files\O2 PC Strazce\Localization folder moved successfully.
C:\Program Files\O2 PC Strazce\HIPS folder moved successfully.
C:\Program Files\O2 PC Strazce\Gemini folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\program folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\logs folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\fsdfwiu.tmp\winnt folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\fsdfwiu.tmp\vista folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\fsdfwiu.tmp folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\drivers\vista64 folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\drivers\vista32 folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\drivers\2000_xp folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\drivers folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES\common folder moved successfully.
C:\Program Files\O2 PC Strazce\FWES folder moved successfully.
C:\Program Files\O2 PC Strazce\FW folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPS\program folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPS folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\wwwroot\images folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\wwwroot folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\reports folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\logs folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\fshttps folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk\urlcache folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk\updates\db folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk\updates folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk\Stlst folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk\dll folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk\data folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk\conf folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC\csdk folder moved successfully.
C:\Program Files\O2 PC Strazce\FSPC folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\VirusNews\2008080701 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\VirusNews folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\js\scripts folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\js\private folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\js\images folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\js\html folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\js folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\common\scripts folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\common\private folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\common\images folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\common\html folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl\common folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\wwhimpl folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp\images folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhelp folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhdata\js\search folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhdata\js folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhdata\common folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\wwhdata folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help\images folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI\help folder moved successfully.
C:\Program Files\O2 PC Strazce\FSGUI folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\subscriptions folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\spool folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\segmentation_rules\ct.sp.f-secure.com_80 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\segmentation_rules folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\program folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\installation_status folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\header folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\VirusNews\2008080701 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\VirusNews folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SWCDB\1230726515 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SWCDB folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\site folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\rules folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\URI folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\unicore\To folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\unicore folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Scalar folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Net\HTTP folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Net\CIDR folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Net folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SPF folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Util folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Plugin folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Message\Metadata folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Message folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Logger folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Locker folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Conf folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\BayesStore folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin\Bayes folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail\SpamAssassin folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Mail folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\LWP\Protocol folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\LWP\Authen folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\LWP folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\List folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\IO folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\HTTP\Request folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\HTTP\Headers folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\HTTP folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\FS\PhishBL folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\FS folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\File folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Crypt folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\Compress folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\auto\List\Util folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\auto\List folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\auto\Digest\MD5 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\auto\Digest folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\auto\Compress\Zlib folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\auto\Compress folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib\auto folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\lib folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\Net\DNS\RR folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\Net\DNS\Resolver folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\Net\DNS folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\Net folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\auto\Net\DNS folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\auto\Net folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\auto\HTML\Parser folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\auto\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\auto folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3\File folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3\auto\HTML\Parser folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3\auto\HTML folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3\auto\File\Glob folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3\auto\File folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3\auto folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib\5.8.3 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901\dlib folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31\2009020901 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\SCDB31 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\pegdb\1232024153 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\pegdb folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\PCDB2\2009020201 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\PCDB2 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\oriondb\1234713762 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\oriondb folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\libradb\1234274299 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\libradb folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\idsdb\1232363088 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\idsdb folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\hipscfg\1234713761 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\hipscfg folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\gemdb\1228206657 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\gemdb folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\BLENG\2008112503 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\BLENG folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\avpe\1234713737 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\avpe folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\avmisc\1234244712 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\avmisc folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\program\inst\extmodules\program folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\program\inst\extmodules folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\program\inst folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\program folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\package-configurator folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\META-INF folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\policy folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\tnb folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\start-up wizard folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\splash folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\setup folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\pics folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\isp_news folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\icons folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\help folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsma folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\plugins\spam folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\plugins\parental folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\plugins folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\main folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\flyer folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\dialogs\securitynews folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\dialogs\scan_clean folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\dialogs\password folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\dialogs folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui\advanced folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\fsgui folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program\common folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\program folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization\META-INF folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks\customization folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\infopaks folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\configuration\setupgui folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\configuration\fssg folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\configuration\acl folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\configuration folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4\bootstrap folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8\4 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc8 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Software_psc7 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Hotfix_psc7mf8\1\META-INF folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Hotfix_psc7mf8\1\hf folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Hotfix_psc7mf8\1\bin\gui folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Hotfix_psc7mf8\1\bin folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Hotfix_psc7mf8\1 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70Hotfix_psc7mf8 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\tnb folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\start-up wizard folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\splash folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\setup folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\pics folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\isp news folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\icons folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\help folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsma folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\plugins\spam folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\plugins\parental folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\plugins folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\main folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\flyer folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\dialogs\securitynews folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\dialogs\scan_clean folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\dialogs\password folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\dialogs folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui\advanced folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\fsgui folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program\common folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\program folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1\META-INF folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7\1 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\70CustomResources_psc7 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\60PolicyUpdate_psc7\1 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content\60PolicyUpdate_psc7 folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA\content folder moved successfully.
C:\Program Files\O2 PC Strazce\FSAUA folder moved successfully.
C:\Program Files\O2 PC Strazce\DAAS folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\Invalid folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\History folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\tnb folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\start-up wizard folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\splash folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\setup folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\pics folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\isp news folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\icons folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\help folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsma folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\plugins\spam folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\plugins\parental folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\plugins folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\main folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\flyer folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\dialogs\securitynews folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\dialogs\scan_clean folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\dialogs\password folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\dialogs folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui\advanced folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\fsgui folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1\common folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom\custom1 folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\custom folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\commdir folder moved successfully.
C:\Program Files\O2 PC Strazce\Common\ALERTS folder moved successfully.
C:\Program Files\O2 PC Strazce\Common folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\win2k folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\trace\fssm32 folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\trace\fsgk32 folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\trace\fsched folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\trace\fsav32 folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\trace\fsav folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\trace\common folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\trace folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\nt40 folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\minifilter folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\gkhsmtemp folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\ESTemp folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus\dbupdateext folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Virus folder moved successfully.
C:\Program Files\O2 PC Strazce\Anti-Spyware folder moved successfully.
C:\Program Files\O2 PC Strazce folder moved successfully.
File\Folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk not found.
File\Folder C:\ProgramData\avg8 not found.
C:\Users\pc\AppData\Roaming\F-Secure\System Control folder moved successfully.
C:\Users\pc\AppData\Roaming\F-Secure\Spam Control folder moved successfully.
C:\Users\pc\AppData\Roaming\F-Secure folder moved successfully.
========== SERVICES/DRIVERS ==========
Error: Unable to stop service F-Secure HIPS!
Service\Driver key F-Secure HIPS not found.
Error: Unable to stop service FSES!
Service\Driver key FSES not found.
Error: Unable to stop service FSFW!
Service\Driver key FSFW not found.
Error: No service named fsvista was found to stop!
Service\Driver key fsvista not found.
Error: No service named F-Secure Gatekeeper was found to stop!
Service\Driver key F-Secure Gatekeeper not found.
Error: No service named AvgTdiX was found to stop!
Service\Driver key AvgTdiX not found.
Error: No service named F-Secure Filter was found to stop!
Service\Driver key F-Secure Filter not found.
Error: No service named F-Secure Recognizer was found to stop!
Service\Driver key F-Secure Recognizer not found.
Error: No service named F-Secure Gatekeeper Handler Starter was found to stop!
Service\Driver key F-Secure Gatekeeper Handler Starter not found.
Error: No service named FSMA was found to stop!
Service\Driver key FSMA not found.
Error: No service named FSAUA was found to stop!
Service\Driver key FSAUA not found.
Error: No service named FSDFWD was found to stop!
Service\Driver key FSDFWD not found.
Error: No service named McComponentHostService was found to stop!
Service\Driver key McComponentHostService not found.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
Restore point Set: OTL Restore Point
[EMPTYTEMP]
User: All Users
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
User: pc
->Temp folder emptied: 30538914 bytes
->Temporary Internet Files folder emptied: 824452565 bytes
->Opera cache emptied: 0 bytes
->Flash cache emptied: 1018 bytes
User: Public
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 1469868 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 1176868 bytes
Total Files Cleaned = 818,00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 01312013_174135
Files\Folders moved on Reboot...
File move failed. C:\Windows\temp\_avast4_\Webshlock.txt scheduled to be moved on reboot.
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
- stell
- VIP in memoriam
- Příspěvky: 5175
- Registrován: 09 pro 2007 09:27
- Bydliště: SK-REVUCA
- Kontaktovat uživatele:
Re: policie čr prosim o radu
ok, este daj log z Combofix, a uvidime ze co tam este mas.
http://www.bleepingcomputer.com/combofi ... t-combofix
http://www.bleepingcomputer.com/combofi ... t-combofix
Re: policie čr prosim o radu
mboFix 13-01-31.03 - pc 31.01.2013 19:48:23.1.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.2814.1523 [GMT 1:00]
Spuštěný z: c:\users\pc\Desktop\ComboFix.exe
AV: avast! antivirus *Disabled/Outdated* {C37D8F93-0602-E43C-40AA-47DAD597F308}
SP: avast! antivirus *Disabled/Outdated* {781C6E77-2038-EBB2-7A1A-7CA8AE10B9B5}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\system32\CddbCdda.dll
D:\setup.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-12-28 do 2013-01-31 )))))))))))))))))))))))))))))))
.
.
2013-01-31 18:59 . 2013-01-31 18:59 -------- d-----w- c:\users\pc\AppData\Local\temp
2013-01-31 18:59 . 2013-01-31 18:59 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-01-31 16:41 . 2013-01-31 16:41 -------- d-----w- C:\_OTL
2013-01-29 19:32 . 2013-01-29 19:32 -------- d-----w- c:\windows\ERUNT
2013-01-29 19:32 . 2013-01-29 19:39 -------- d-----w- C:\JRT
2013-01-29 17:57 . 2013-01-29 18:12 -------- d-----w- c:\program files\trend micro
2013-01-29 17:57 . 2013-01-29 18:12 -------- d-----w- C:\rsit
2013-01-25 10:59 . 2013-01-25 10:59 -------- d-----w- c:\users\pc\AppData\Roaming\Malwarebytes
2013-01-25 10:58 . 2013-01-25 10:58 -------- d-----w- c:\programdata\Malwarebytes
2013-01-25 10:58 . 2013-01-25 17:53 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2013-01-25 10:58 . 2012-12-14 15:49 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-01-09 08:58 . 2012-11-23 01:35 2048000 ----a-w- c:\windows\system32\win32k.sys
2013-01-09 08:57 . 2012-11-20 04:22 204288 ----a-w- c:\windows\system32\ncrypt.dll
2013-01-09 08:57 . 2012-11-02 10:19 1400832 ----a-w- c:\windows\system32\msxml6.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-01-30 15:55 . 2008-10-11 00:17 45056 ----a-w- c:\windows\system32\acovcnt.exe
2012-12-16 13:12 . 2012-12-25 15:42 34304 ----a-w- c:\windows\system32\atmlib.dll
2012-12-16 10:50 . 2012-12-25 15:42 293376 ----a-w- c:\windows\system32\atmfd.dll
2012-11-14 02:09 . 2012-12-13 09:58 1800704 ----a-w- c:\windows\system32\jscript9.dll
2012-11-14 01:58 . 2012-12-13 09:58 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-11-14 01:57 . 2012-12-13 09:58 1129472 ----a-w- c:\windows\system32\wininet.dll
2012-11-14 01:49 . 2012-12-13 09:58 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2012-11-14 01:48 . 2012-12-13 09:58 420864 ----a-w- c:\windows\system32\vbscript.dll
2012-11-14 01:44 . 2012-12-13 09:58 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-11-13 01:29 . 2012-12-12 08:38 2048 ----a-w- c:\windows\system32\tzres.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"="c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe" [2008-06-09 2363392]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-12-29 687560]
"ChromeFrameHelper"="c:\users\pc\AppData\Local\Google\Chrome\Application\24.0.1312.56\chrome_frame_helper.exe" [2013-01-18 82896]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HControlUser"="c:\program files\ATK Hotkey\HcontrolUser.exe" [2008-01-12 98304]
"ATKOSD2"="c:\program files\ATKOSD2\ATKOSD2.exe" [2008-01-23 7766016]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-07-25 13548064]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-07-25 92704]
"RtHDVCpl"="RtHDVCpl.exe" [2008-08-12 6265376]
"SynTPStart"="c:\program files\Synaptics\SynTP\SynTPStart.exe" [2007-08-17 102400]
"ASUS Screen Saver Protector"="c:\windows\AsScrPro.exe" [2008-10-11 3054136]
"ASUS Camera ScreenSaver"="c:\windows\AsScrProlog.exe" [2008-10-11 47672]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"Nokia.PCSync"="c:\program files\Nokia\Nokia PC Suite 6\PcSync2.exe" [2007-03-27 1744896]
.
c:\users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
hamachi.lnk - c:\program files\Hamachi\hamachi.exe [2009-2-7 625952]
OpenOffice.org 3.0.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2008-10-4 393216]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-4-10 752168]
Launcher.lnk - c:\program files\InternetEverywhere\Launcher.exe [2011-2-1 464336]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 17:14 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2013-01-31 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-03-13 06:06]
.
2013-01-31 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-03-13 06:06]
.
2013-01-31 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-655894505-1183247855-1173350362-1000UA.job
- c:\users\pc\AppData\Local\Google\Update\GoogleUpdate.exe [2013-01-29 14:22]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.cz/
mStart Page =
mLocal Page =
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-DAEMON Tools Toolbar - c:\program files\DAEMON Tools Toolbar\uninst.exe
AddRemove-F-Secure Anti-Spyware - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Anti-Spyware Scanner - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Anti-Virus - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Anti-Virus Client Security Installer - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Automatic Update Agent - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure DAAS - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Diagnostics - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure E-mail Scanning - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure FWES - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure GateKeeper Interface - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Gemini - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure GUI - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Help - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure HIPS - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Internet Shield - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Localization API - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Management Agent - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Pegasus Engine - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Product 444 - c:\program files\O2 PC Strazce\FSGUI\PostInstall.exe
AddRemove-F-Secure Protocol Scanner - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Spam Control - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Spam Scanner - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure TNB - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Uninstall - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Web Filter - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-USB2.0 1.3M UVC WebCam - c:\windows\Uninstall.exe
AddRemove-{11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5}_is1 - c:\program files\SiteRanker\unins000.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2013-01-31 19:59
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-655894505-1183247855-1173350362-1000\Software\SecuROM\License information*]
@Allowed: (Read) (RestrictedCode)
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0007\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Celkový čas: 2013-01-31 20:03:00
ComboFix-quarantined-files.txt 2013-01-31 19:02
.
Před spuštěním: Volných bajtů: 27 590 483 968
Po spuštění: Volných bajtů: 27 500 236 800
.
- - End Of File - - F5597F3F8FB8E3A059FB7A85900EEFB8
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.420.1029.18.2814.1523 [GMT 1:00]
Spuštěný z: c:\users\pc\Desktop\ComboFix.exe
AV: avast! antivirus *Disabled/Outdated* {C37D8F93-0602-E43C-40AA-47DAD597F308}
SP: avast! antivirus *Disabled/Outdated* {781C6E77-2038-EBB2-7A1A-7CA8AE10B9B5}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Ostatní výmazy )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\windows\system32\CddbCdda.dll
D:\setup.exe
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2012-12-28 do 2013-01-31 )))))))))))))))))))))))))))))))
.
.
2013-01-31 18:59 . 2013-01-31 18:59 -------- d-----w- c:\users\pc\AppData\Local\temp
2013-01-31 18:59 . 2013-01-31 18:59 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-01-31 16:41 . 2013-01-31 16:41 -------- d-----w- C:\_OTL
2013-01-29 19:32 . 2013-01-29 19:32 -------- d-----w- c:\windows\ERUNT
2013-01-29 19:32 . 2013-01-29 19:39 -------- d-----w- C:\JRT
2013-01-29 17:57 . 2013-01-29 18:12 -------- d-----w- c:\program files\trend micro
2013-01-29 17:57 . 2013-01-29 18:12 -------- d-----w- C:\rsit
2013-01-25 10:59 . 2013-01-25 10:59 -------- d-----w- c:\users\pc\AppData\Roaming\Malwarebytes
2013-01-25 10:58 . 2013-01-25 10:58 -------- d-----w- c:\programdata\Malwarebytes
2013-01-25 10:58 . 2013-01-25 17:53 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2013-01-25 10:58 . 2012-12-14 15:49 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-01-09 08:58 . 2012-11-23 01:35 2048000 ----a-w- c:\windows\system32\win32k.sys
2013-01-09 08:57 . 2012-11-20 04:22 204288 ----a-w- c:\windows\system32\ncrypt.dll
2013-01-09 08:57 . 2012-11-02 10:19 1400832 ----a-w- c:\windows\system32\msxml6.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-01-30 15:55 . 2008-10-11 00:17 45056 ----a-w- c:\windows\system32\acovcnt.exe
2012-12-16 13:12 . 2012-12-25 15:42 34304 ----a-w- c:\windows\system32\atmlib.dll
2012-12-16 10:50 . 2012-12-25 15:42 293376 ----a-w- c:\windows\system32\atmfd.dll
2012-11-14 02:09 . 2012-12-13 09:58 1800704 ----a-w- c:\windows\system32\jscript9.dll
2012-11-14 01:58 . 2012-12-13 09:58 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
2012-11-14 01:57 . 2012-12-13 09:58 1129472 ----a-w- c:\windows\system32\wininet.dll
2012-11-14 01:49 . 2012-12-13 09:58 142848 ----a-w- c:\windows\system32\ieUnatt.exe
2012-11-14 01:48 . 2012-12-13 09:58 420864 ----a-w- c:\windows\system32\vbscript.dll
2012-11-14 01:44 . 2012-12-13 09:58 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2012-11-13 01:29 . 2012-12-12 08:38 2048 ----a-w- c:\windows\system32\tzres.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"="c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe" [2008-06-09 2363392]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-12-29 687560]
"ChromeFrameHelper"="c:\users\pc\AppData\Local\Google\Chrome\Application\24.0.1312.56\chrome_frame_helper.exe" [2013-01-18 82896]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HControlUser"="c:\program files\ATK Hotkey\HcontrolUser.exe" [2008-01-12 98304]
"ATKOSD2"="c:\program files\ATKOSD2\ATKOSD2.exe" [2008-01-23 7766016]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-07-25 13548064]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-07-25 92704]
"RtHDVCpl"="RtHDVCpl.exe" [2008-08-12 6265376]
"SynTPStart"="c:\program files\Synaptics\SynTP\SynTPStart.exe" [2007-08-17 102400]
"ASUS Screen Saver Protector"="c:\windows\AsScrPro.exe" [2008-10-11 3054136]
"ASUS Camera ScreenSaver"="c:\windows\AsScrProlog.exe" [2008-10-11 47672]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-11-24 81000]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 125952]
"Nokia.PCSync"="c:\program files\Nokia\Nokia PC Suite 6\PcSync2.exe" [2007-03-27 1744896]
.
c:\users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
hamachi.lnk - c:\program files\Hamachi\hamachi.exe [2009-2-7 625952]
OpenOffice.org 3.0.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2008-10-4 393216]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-4-10 752168]
Launcher.lnk - c:\program files\InternetEverywhere\Launcher.exe [2011-2-1 464336]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 17:14 451872 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Obsah adresáře 'Naplánované úlohy'
.
2013-01-31 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-03-13 06:06]
.
2013-01-31 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-03-13 06:06]
.
2013-01-31 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-655894505-1183247855-1173350362-1000UA.job
- c:\users\pc\AppData\Local\Google\Update\GoogleUpdate.exe [2013-01-29 14:22]
.
.
------- Doplňkový sken -------
.
uStart Page = hxxp://www.google.cz/
mStart Page =
mLocal Page =
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
AddRemove-DAEMON Tools Toolbar - c:\program files\DAEMON Tools Toolbar\uninst.exe
AddRemove-F-Secure Anti-Spyware - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Anti-Spyware Scanner - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Anti-Virus - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Anti-Virus Client Security Installer - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Automatic Update Agent - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure DAAS - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Diagnostics - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure E-mail Scanning - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure FWES - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure GateKeeper Interface - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Gemini - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure GUI - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Help - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure HIPS - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Internet Shield - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Localization API - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Management Agent - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Pegasus Engine - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Product 444 - c:\program files\O2 PC Strazce\FSGUI\PostInstall.exe
AddRemove-F-Secure Protocol Scanner - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Spam Control - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Spam Scanner - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure TNB - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Uninstall - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-F-Secure Web Filter - c:\program files\O2 PC Strazce\Uninstall\fsuninst.exe
AddRemove-USB2.0 1.3M UVC WebCam - c:\windows\Uninstall.exe
AddRemove-{11BF46C6-B3DE-48BD-BF70-3AD85CAB80B5}_is1 - c:\program files\SiteRanker\unins000.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2013-01-31 19:59
Windows 6.0.6002 Service Pack 2 NTFS
.
skenování skrytých procesů ...
.
skenování skrytých položek 'Po spuštění' ...
.
skenování skrytých souborů ...
.
sken byl úspešně dokončen
skryté soubory: 0
.
**************************************************************************
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_USERS\S-1-5-21-655894505-1183247855-1173350362-1000\Software\SecuROM\License information*]
@Allowed: (Read) (RestrictedCode)
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0007\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Celkový čas: 2013-01-31 20:03:00
ComboFix-quarantined-files.txt 2013-01-31 19:02
.
Před spuštěním: Volných bajtů: 27 590 483 968
Po spuštění: Volných bajtů: 27 500 236 800
.
- - End Of File - - F5597F3F8FB8E3A059FB7A85900EEFB8
- stell
- VIP in memoriam
- Příspěvky: 5175
- Registrován: 09 pro 2007 09:27
- Bydliště: SK-REVUCA
- Kontaktovat uživatele:
Re: policie čr prosim o radu
Pri tejto akcii je nutné mať ComboFix na ploche.
Otvor Notepad (Poznámkový blok) a zkopíruj do nehocelý tex:
Potom klik na Subor -> Uložiť ako.. .-> Ako je Názov souboru tak do toho riadku napiš:CFScript.txt
Typ súboru tak tam vyberies *]všetky súbory
A ulož ho na plochu> Pozor CFScript.txt>Neotvarat a nemoze byt ani>CFScript.txt.txt A Urobis Toto :

Po skonceni skenu vlož log .
Otvor Notepad (Poznámkový blok) a zkopíruj do nehocelý tex:
Kód: Vybrat vše
KILLALL::
RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0007\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings]
ClearJavaCache::
Typ súboru tak tam vyberies *]všetky súbory
A ulož ho na plochu> Pozor CFScript.txt>Neotvarat a nemoze byt ani>CFScript.txt.txt A Urobis Toto :

Po skonceni skenu vlož log .
Re: policie čr prosim o radu
ahoj tato posledni akce mi nejde dokoncit ani v nouzovem rezimu......jestli to de tak bych to ukoncil...moc ti dekuji za pomoc a chci se zeptat co jsem dluznej????
- stell
- VIP in memoriam
- Příspěvky: 5175
- Registrován: 09 pro 2007 09:27
- Bydliště: SK-REVUCA
- Kontaktovat uživatele:
Re: policie čr prosim o radu
Ok, nechaj uz tak ako je, premenuj ikonku combofixu na uninstall a spust, klik,ok,ok,ok, combofix sa odinstaluje.
Dlzny?/Staci ak sa podakujes, co uz si aj urobil.
Takze nemas zaco.
Dlzny?/Staci ak sa podakujes, co uz si aj urobil.

Takze nemas zaco.