J
J_Racine
so ive been dealing with alot of things being changed in my computer. Also my networking protocols are missing changed or deleted. i need to know about this remote log ive pulled and why it states im missing registry keys. this is a copy an paste log. Please if anyone can help me figure out this networking issue as my internet is being filtered and my emails are not being delivered and filtered.
Remote Access Diagnostic Report
[COLOR=rgba(0, 0, 136, 1)]Table Of Contents
Tracing and Event Logs
Tracing Logs [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)]Unable to show Remote Access tracing logs or no log files were present.[/COLOR]
Modem Logs [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)] Unable to show modem tracing logs or no log files were present.
[/COLOR]
Connection Manager Logs [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)] Unable to show Connection Manager logs or no log files were present.
[/COLOR]
IP Security Log [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)] Unable to show IPsec tracing logs or no log files were present.
[/COLOR]
Remote Access Event Logs [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)]Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/23/2021
Time: 11:38:03 AM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/23/2021
Time: 5:32:50 AM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/23/2021
Time: 4:25:26 AM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/23/2021
Time: 3:49:24 AM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/23/2021
Time: 1:19:44 AM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/22/2021
Time: 8:36:17 PM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/22/2021
Time: 6:26:13 PM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/22/2021
Time: 5:52:54 PM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/22/2021
Time: 5:50:10 PM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/22/2021
Time: 3:59:43 PM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
[/COLOR]
Security Event Logs [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)] Unable to show security event logs or no log entries were present.
[/COLOR]
Information Files [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)]File Name : C:\WINDOWS\inf\netrasa.inf
Last Write Time : 12/07/2019 02:07
Creation Time : 12/07/2019 02:07
File Size : 24424 bytes
File Name : C:\WINDOWS\inf\netrass.inf
Last Write Time : 12/07/2019 02:07
Creation Time : 12/07/2019 02:07
File Size : 5292 bytes
File Name : C:\WINDOWS\inf\netrast.inf
Last Write Time : 12/07/2019 02:07
Creation Time : 12/07/2019 02:07
File Size : 8186 bytes
[/COLOR]
Installation Check [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)]sw\{eeab7790-c514-11d1-b42b-00805fc1270e} = Not Found.
ms_irdaminiport = Not Found.
ms_irmodemminiport = Not Found.
ms_l2tpminiport = OK.
ms_sstpminiport = OK.
ms_pptpminiport = OK.
ms_ptiminiport = Not Found.
ms_pppoeminiport = OK.
ms_ndiswanatalk = Not Found.
ms_ndiswanbh = OK.
ms_ndiswanip = OK.
ms_ndiswanipx = Not Found.
ms_pppoe = OK.
ms_pptp = Not Found.
ms_l2tp = Not Found.
ms_sstp = Not Found.
ms_rascli = Not Found.
ms_rassrv = Not Found.
ms_steelhead = Not Found.
ms_ndiswan = OK.
ms_rasman = Not Found.
[/COLOR]
Installed Networking Components [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)]Network Adapters
----------------
ms_l2tpminiport WAN Miniport (L2TP)
{5d624f94-8850-40c3-a3fa-a4fd2080baf3}\vwifimp_wfd Microsoft Wi-Fi Direct Virtual Adapter
ms_pptpminiport WAN Miniport (PPTP)
bth\ms_bthpan Bluetooth Device (Personal Area Network) #2
{5d624f94-8850-40c3-a3fa-a4fd2080baf3}\vwifimp_wfd Microsoft Wi-Fi Direct Virtual Adapter #4
ms_ndiswanip WAN Miniport (IP)
ms_sstpminiport WAN Miniport (SSTP)
{5d624f94-8850-40c3-a3fa-a4fd2080baf3}\vwifimp_wfd Microsoft Wi-Fi Direct Virtual Adapter #3
ms_ndiswanipv6 WAN Miniport (IPv6)
{5d624f94-8850-40c3-a3fa-a4fd2080baf3}\vwifimp_wfd Microsoft Wi-Fi Direct Virtual Adapter #2
ms_pppoeminiport WAN Miniport (PPPOE)
bth\ms_bthpan Bluetooth Device (Personal Area Network)
pci\ven_168c&dev_0042&subsys_18101028&rev_31 Qualcomm QCA9377 802.11ac Wireless Adapter
ms_agilevpnminiport WAN Miniport (IKEv2)
ms_ndiswanbh WAN Miniport (Network Monitor)
Network Protocols
-----------------
ms_rdma_ndk Microsoft RDMA - NDK
ms_tcpip Internet Protocol Version 4 (TCP/IPv4)
ms_netbt WINS Client(TCP/IP) Protocol
ms_implat Microsoft Network Adapter Multiplexor Protocol
ms_ndiswanlegacy Remote Access LEGACY NDIS WAN Driver
ms_lldp Microsoft LLDP Protocol Driver
ms_wanarp Remote Access IP ARP Driver
ms_tcpip_tunnel Internet Protocol (TCP/IP) - Tunnels
ms_tcpip6_tunnel Microsoft TCP/IP version 6 - Tunnels
ms_tcpip6 Internet Protocol Version 6 (TCP/IPv6)
ms_rspndr Link-Layer Topology Discovery Responder
ms_pppoe Point to Point Protocol Over Ethernet
ms_wanarpv6 Remote Access IPv6 ARP Driver
ms_netbt_smb Message-oriented TCP/IP Protocol (SMB session)
ms_ndisuio NDIS Usermode I/O Protocol
ms_ndiswan Remote Access NDIS WAN Driver
ms_lltdio Link-Layer Topology Discovery Mapper I/O Driver
netvsc_vfpp Microsoft NetVsc Failover VF Protocol
ms_xboxgip Xbox Game Input Protocol Driver
Network Services
----------------
ms_netbios NetBIOS Interface
ms_server File and Printer Sharing for Microsoft Networks
ms_bridge Microsoft MAC Bridge
ms_wfplwf_lower WFP Native MAC Layer LightWeight Filter
ms_ndiscap Microsoft NDIS Capture
ms_vwifi @%windir%\System32\drivers\vwififlt.sys,-105
ms_pacer QoS Packet Scheduler
ms_wfplwf_upper WFP 802.3 MAC Layer LightWeight Filter
ms_nativewifip NativeWiFi Filter
ms_wfplwf_vswitch Microsoft Windows Filtering Platform
Network Clients
---------------
ms_msclient Client for Microsoft Networks
[/COLOR]
Registry Check [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AsyncMac]
"ImagePath"=hex(2):5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,64,00,72,\
00,69,00,76,00,65,00,72,00,73,00,5c,00,61,00,73,00,79,00,6e,00,63,00,6d,00,\
61,00,63,00,2e,00,73,00,79,00,73,00,00,00
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"DisplayName"="@%systemroot%\\system32\\mprmsg.dll,-32000"
"Description"="@%systemroot%\\system32\\mprmsg.dll,-32000"
"Owners"=hex(7):6e,00,65,00,74,00,72,00,61,00,73,00,61,00,2e,00,69,00,6e,00,66,\
00,00,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\IpFilterDriver]
"DependOnService"=hex(7):54,00,63,00,70,00,69,00,70,00,00,00,00,00
"Description"="@%systemroot%\\system32\\mprmsg.dll,-32013"
"DisplayName"="@%systemroot%\\system32\\mprmsg.dll,-32013"
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,\
52,00,49,00,56,00,45,00,52,00,53,00,5c,00,69,00,70,00,66,00,6c,00,74,00,64,\
00,72,00,76,00,2e,00,73,00,79,00,73,00,00,00
"Start"=dword:00000003
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\IpFilterDriver\Security]
"Security"=hex:01,00,14,80,b4,00,00,00,c0,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,84,00,05,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,04,00,00,00,00,\
00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,06,00,00,00,00,00,28,00,fd,01,\
02,00,01,06,00,00,00,00,00,05,50,00,00,00,a8,5c,74,24,9e,8d,a2,ab,07,6a,86,\
83,46,e2,2a,f0,b4,fd,83,ba,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,\
00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\IpNat]
"DependOnService"=hex(7):54,00,63,00,70,00,69,00,70,00,00,00,00,00
"DisplayName"="IP Network Address Translator"
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,64,00,\
72,00,69,00,76,00,65,00,72,00,73,00,5c,00,69,00,70,00,6e,00,61,00,74,00,2e,\
00,73,00,79,00,73,00,00,00
"Start"=dword:00000003
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NdisTapi]
"AsyncEventQueueSize"=dword:00000300
"Description"="@%systemroot%\\system32\\mprmsg.dll,-32001"
"DisplayName"="@%systemroot%\\system32\\mprmsg.dll,-32001"
"ErrorControl"=dword:00000001
"Group"="NDIS"
"ImagePath"=hex(2):53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,\
52,00,49,00,56,00,45,00,52,00,53,00,5c,00,6e,00,64,00,69,00,73,00,74,00,61,\
00,70,00,69,00,2e,00,73,00,79,00,73,00,00,00
"Start"=dword:00000003
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NdisTapi\Enum]
"0"="SWD\\MSRRAS\\MS_NDISWANIP"
"Count"=dword:00000003
"NextInstance"=dword:00000003
"1"="SWD\\MSRRAS\\MS_NDISWANIPV6"
"2"="SWD\\MSRRAS\\MS_NDISWANBH"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NdisWan]
"ImagePath"=hex(2):5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,64,00,72,\
00,69,00,76,00,65,00,72,00,73,00,5c,00,6e,00,64,00,69,00,73,00,77,00,61,00,\
6e,00,2e,00,73,00,79,00,73,00,00,00
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"DisplayName"="@%systemroot%\\system32\\mprmsg.dll,-32002"
"Description"="@%systemroot%\\system32\\mprmsg.dll,-32002"
"Owners"=hex(7):6e,00,65,00,74,00,72,00,61,00,73,00,61,00,2e,00,69,00,6e,00,66,\
00,00,00,00,00
"NdisMajorVersion"=dword:00000006
"NdisMinorVersion"=dword:0000001e
"DriverMajorVersion"=dword:00000001
"DriverMinorVersion"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NdisWan\Linkage]
"Export"=hex(7):5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4e,00,64,00,69,\
00,73,00,57,00,61,00,6e,00,5f,00,7b,00,32,00,44,00,32,00,42,00,33,00,42,00,\
39,00,37,00,2d,00,39,00,46,00,43,00,32,00,2d,00,34,00,42,00,30,00,32,00,2d,\
00,42,00,41,00,41,00,46,00,2d,00,46,00,31,00,35,00,31,00,33,00,35,00,41,00,\
30,00,36,00,42,00,30,00,34,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,\
00,65,00,5c,00,4e,00,64,00,69,00,73,00,57,00,61,00,6e,00,5f,00,7b,00,44,00,\
35,00,32,00,34,00,33,00,43,00,38,00,42,00,2d,00,38,00,38,00,39,00,42,00,2d,\
00,34,00,30,00,39,00,33,00,2d,00,42,00,34,00,34,00,33,00,2d,00,37,00,30,00,\
30,00,43,00,38,00,33,00,44,00,30,00,39,00,34,00,30,00,44,00,7d,00,00,00,5c,\
00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4e,00,64,00,69,00,73,00,57,00,\
61,00,6e,00,5f,00,7b,00,30,00,45,00,37,00,39,00,42,00,33,00,35,00,34,00,2d,\
00,30,00,42,00,31,00,36,00,2d,00,34,00,43,00,30,00,41,00,2d,00,38,00,31,00,\
34,00,46,00,2d,00,44,00,45,00,37,00,36,00,41,00,42,00,36,00,33,00,39,00,42,\
00,37,00,41,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,\
4e,00,64,00,69,00,73,00,57,00,61,00,6e,00,5f,00,7b,00,38,00,43,00,35,00,31,\
00,33,00,31,00,42,00,34,00,2d,00,34,00,42,00,46,00,34,00,2d,00,34,00,42,00,\
45,00,31,00,2d,00,42,00,38,00,45,00,38,00,2d,00,46,00,31,00,36,00,38,00,41,\
00,30,00,43,00,30,00,46,00,38,00,36,00,39,00,7d,00,00,00,5c,00,44,00,65,00,\
76,00,69,00,63,00,65,00,5c,00,4e,00,64,00,69,00,73,00,57,00,61,00,6e,00,5f,\
00,7b,00,37,00,33,00,32,00,37,00,46,00,44,00,42,00,46,00,2d,00,33,00,32,00,\
31,00,38,00,2d,00,34,00,42,00,36,00,41,00,2d,00,42,00,34,00,39,00,32,00,2d,\
00,34,00,35,00,46,00,44,00,45,00,31,00,31,00,36,00,38,00,32,00,32,00,43,00,\
7d,00,00,00,00,00
"Bind"=hex(7):5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,32,00,44,\
00,32,00,42,00,33,00,42,00,39,00,37,00,2d,00,39,00,46,00,43,00,32,00,2d,00,\
34,00,42,00,30,00,32,00,2d,00,42,00,41,00,41,00,46,00,2d,00,46,00,31,00,35,\
00,31,00,33,00,35,00,41,00,30,00,36,00,42,00,30,00,34,00,7d,00,00,00,5c,00,\
44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,44,00,35,00,32,00,34,00,33,\
00,43,00,38,00,42,00,2d,00,38,00,38,00,39,00,42,00,2d,00,34,00,30,00,39,00,\
33,00,2d,00,42,00,34,00,34,00,33,00,2d,00,37,00,30,00,30,00,43,00,38,00,33,\
00,44,00,30,00,39,00,34,00,30,00,44,00,7d,00,00,00,5c,00,44,00,65,00,76,00,\
69,00,63,00,65,00,5c,00,7b,00,30,00,45,00,37,00,39,00,42,00,33,00,35,00,34,\
00,2d,00,30,00,42,00,31,00,36,00,2d,00,34,00,43,00,30,00,41,00,2d,00,38,00,\
31,00,34,00,46,00,2d,00,44,00,45,00,37,00,36,00,41,00,42,00,36,00,33,00,39,\
00,42,00,37,00,41,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,\
5c,00,7b,00,38,00,43,00,35,00,31,00,33,00,31,00,42,00,34,00,2d,00,34,00,42,\
00,46,00,34,00,2d,00,34,00,42,00,45,00,31,00,2d,00,42,00,38,00,45,00,38,00,\
2d,00,46,00,31,00,36,00,38,00,41,00,30,00,43,00,30,00,46,00,38,00,36,00,39,\
00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,37,00,\
33,00,32,00,37,00,46,00,44,00,42,00,46,00,2d,00,33,00,32,00,31,00,38,00,2d,\
00,34,00,42,00,36,00,41,00,2d,00,42,00,34,00,39,00,32,00,2d,00,34,00,35,00,\
46,00,44,00,45,00,31,00,31,00,36,00,38,00,32,00,32,00,43,00,7d,00,00,00,00,\
00
"Route"=hex(7):22,00,7b,00,32,00,44,00,32,00,42,00,33,00,42,00,39,00,37,00,2d,\
00,39,00,46,00,43,00,32,00,2d,00,34,00,42,00,30,00,32,00,2d,00,42,00,41,00,\
41,00,46,00,2d,00,46,00,31,00,35,00,31,00,33,00,35,00,41,00,30,00,36,00,42,\
00,30,00,34,00,7d,00,22,00,00,00,22,00,7b,00,44,00,35,00,32,00,34,00,33,00,\
43,00,38,00,42,00,2d,00,38,00,38,00,39,00,42,00,2d,00,34,00,30,00,39,00,33,\
00,2d,00,42,00,34,00,34,00,33,00,2d,00,37,00,30,00,30,00,43,00,38,00,33,00,\
44,00,30,00,39,00,34,00,30,00,44,00,7d,00,22,00,00,00,22,00,7b,00,30,00,45,\
00,37,00,39,00,42,00,33,00,35,00,34,00,2d,00,30,00,42,00,31,00,36,00,2d,00,\
34,00,43,00,30,00,41,00,2d,00,38,00,31,00,34,00,46,00,2d,00,44,00,45,00,37,\
00,36,00,41,00,42,00,36,00,33,00,39,00,42,00,37,00,41,00,7d,00,22,00,00,00,\
22,00,7b,00,38,00,43,00,35,00,31,00,33,00,31,00,42,00,34,00,2d,00,34,00,42,\
00,46,00,34,00,2d,00,34,00,42,00,45,00,31,00,2d,00,42,00,38,00,45,00,38,00,\
2d,00,46,00,31,00,36,00,38,00,41,00,30,00,43,00,30,00,46,00,38,00,36,00,39,\
00,7d,00,22,00,00,00,22,00,7b,00,37,00,33,00,32,00,37,00,46,00,44,00,42,00,\
46,00,2d,00,33,00,32,00,31,00,38,00,2d,00,34,00,42,00,36,00,41,00,2d,00,42,\
00,34,00,39,00,32,00,2d,00,34,00,35,00,46,00,44,00,45,00,31,00,31,00,36,00,\
38,00,32,00,32,00,43,00,7d,00,22,00,00,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NdisWan\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NdisWan\Enum]
"0"="SWD\\MSRRAS\\MS_NDISWANIP"
"Count"=dword:00000003
"NextInstance"=dword:00000003
"1"="SWD\\MSRRAS\\MS_NDISWANIPV6"
"2"="SWD\\MSRRAS\\MS_NDISWANBH"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\PptpMiniport]
"ImagePath"=hex(2):5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,64,00,72,\
00,69,00,76,00,65,00,72,00,73,00,5c,00,72,00,61,00,73,00,70,00,70,00,74,00,\
70,00,2e,00,73,00,79,00,73,00,00,00
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"DisplayName"="@%systemroot%\\system32\\mprmsg.dll,-32006"
"Description"="@%systemroot%\\system32\\mprmsg.dll,-32006"
"Owners"=hex(7):6e,00,65,00,74,00,72,00,61,00,73,00,61,00,2e,00,69,00,6e,00,66,\
00,00,00,00,00
"NdisMajorVersion"=dword:00000006
"NdisMinorVersion"=dword:0000001e
"DriverMajorVersion"=dword:00000001
"DriverMinorVersion"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\PptpMiniport\Enum]
"0"="SWD\\MSRRAS\\MS_PPTPMINIPORT"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\rassstp]
"ImagePath"=hex(2):5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,64,00,72,\
00,69,00,76,00,65,00,72,00,73,00,5c,00,72,00,61,00,73,00,73,00,73,00,74,00,\
70,00,2e,00,73,00,79,00,73,00,00,00
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"DisplayName"="@%systemroot%\\system32\\sstpsvc.dll,-202"
"Description"="@%systemroot%\\system32\\sstpsvc.dll,-202"
"Owners"=hex(7):6e,00,65,00,74,00,73,00,73,00,74,00,70,00,61,00,2e,00,69,00,6e,\
00,66,00,00,00,00,00
"NdisMajorVersion"=dword:00000006
"NdisMinorVersion"=dword:0000001e
"DriverMajorVersion"=dword:00000001
"DriverMinorVersion"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\rassstp\Enum]
"0"="SWD\\MSRRAS\\MS_SSTPMINIPORT"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasAcd]
"Description"="Remote Access Auto Connection Driver"
"DisplayName"="Remote Access Auto Connection Driver"
"ErrorControl"=dword:00000001
"Group"="Streams Drivers"
"ImagePath"=hex(2):53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,\
52,00,49,00,56,00,45,00,52,00,53,00,5c,00,72,00,61,00,73,00,61,00,63,00,64,\
00,2e,00,73,00,79,00,73,00,00,00
"Start"=dword:00000003
"Tag"=dword:00000001
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasAcd\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasAcd\Security]
"Security"=hex:01,00,14,88,78,00,00,00,84,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,48,00,03,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,01,\
01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasAuto]
"DependOnService"=hex(7):52,00,61,00,73,00,41,00,63,00,64,00,00,00,00,00
"Description"="@%Systemroot%\\system32\\rasauto.dll,-201"
"DisplayName"="@%Systemroot%\\system32\\rasauto.dll,-200"
"ErrorControl"=dword:00000001
"FailureActions"=hex:84,03,00,00,00,00,00,00,00,00,00,00,03,00,00,00,14,00,00,\
00,01,00,00,00,c0,d4,01,00,01,00,00,00,e0,93,04,00,00,00,00,00,00,00,00,00
"ImagePath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,\
00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,\
6b,00,20,00,6e,00,65,00,74,00,73,00,76,00,63,00,73,00,20,00,2d,00,70,00,00,\
00
"ObjectName"="localSystem"
"RequiredPrivileges"=hex(7):53,00,65,00,49,00,6d,00,70,00,65,00,72,00,73,00,6f,\
00,6e,00,61,00,74,00,65,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,\
65,00,00,00,53,00,65,00,54,00,63,00,62,00,50,00,72,00,69,00,76,00,69,00,6c,\
00,65,00,67,00,65,00,00,00,53,00,65,00,49,00,6e,00,63,00,72,00,65,00,61,00,\
73,00,65,00,51,00,75,00,6f,00,74,00,61,00,50,00,72,00,69,00,76,00,69,00,6c,\
00,65,00,67,00,65,00,00,00,53,00,65,00,43,00,68,00,61,00,6e,00,67,00,65,00,\
4e,00,6f,00,74,00,69,00,66,00,79,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,\
00,67,00,65,00,00,00,53,00,65,00,43,00,72,00,65,00,61,00,74,00,65,00,47,00,\
6c,00,6f,00,62,00,61,00,6c,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,\
00,65,00,00,00,53,00,65,00,41,00,73,00,73,00,69,00,67,00,6e,00,50,00,72,00,\
69,00,6d,00,61,00,72,00,79,00,54,00,6f,00,6b,00,65,00,6e,00,50,00,72,00,69,\
00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,00,00
"ServiceSidType"=dword:00000001
"Start"=dword:00000003
"Type"=dword:00000020
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasAuto\Parameters]
"ServiceDll"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,61,00,75,00,74,00,6f,00,2e,00,64,00,6c,00,6c,00,00,00
"ServiceDllUnloadOnStop"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasAuto\Security]
"Security"=hex:01,00,04,80,5c,00,00,00,68,00,00,00,00,00,00,00,14,00,00,00,02,\
00,48,00,03,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,\
00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,\
00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,01,01,00,00,\
00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Rasl2tp]
"ImagePath"=hex(2):5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,64,00,72,\
00,69,00,76,00,65,00,72,00,73,00,5c,00,72,00,61,00,73,00,6c,00,32,00,74,00,\
70,00,2e,00,73,00,79,00,73,00,00,00
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"DisplayName"="@%systemroot%\\system32\\mprmsg.dll,-32005"
"Description"="@%systemroot%\\system32\\mprmsg.dll,-32005"
"Owners"=hex(7):6e,00,65,00,74,00,72,00,61,00,73,00,61,00,2e,00,69,00,6e,00,66,\
00,00,00,00,00
"NdisMajorVersion"=dword:00000006
"NdisMinorVersion"=dword:0000001e
"DriverMajorVersion"=dword:00000001
"DriverMinorVersion"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Rasl2tp\Enum]
"0"="SWD\\MSRRAS\\MS_L2TPMINIPORT"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan]
"DependOnService"=hex(7):54,00,61,00,70,00,69,00,53,00,72,00,76,00,00,00,53,00,\
73,00,74,00,70,00,53,00,76,00,63,00,00,00,00,00
"Description"="@%Systemroot%\\system32\\rasmans.dll,-201"
"DisplayName"="@%Systemroot%\\system32\\rasmans.dll,-200"
"ErrorControl"=dword:00000001
"FailureActions"=hex:80,51,01,00,00,00,00,00,00,00,00,00,03,00,00,00,14,00,00,\
00,01,00,00,00,c0,d4,01,00,01,00,00,00,e0,93,04,00,00,00,00,00,00,00,00,00
"ImagePath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,\
00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,\
6b,00,20,00,6e,00,65,00,74,00,73,00,76,00,63,00,73,00,00,00
"ObjectName"="localSystem"
"RequiredPrivileges"=hex(7):53,00,65,00,49,00,6d,00,70,00,65,00,72,00,73,00,6f,\
00,6e,00,61,00,74,00,65,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,\
65,00,00,00,53,00,65,00,49,00,6e,00,63,00,72,00,65,00,61,00,73,00,65,00,51,\
00,75,00,6f,00,74,00,61,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,\
65,00,00,00,53,00,65,00,54,00,63,00,62,00,50,00,72,00,69,00,76,00,69,00,6c,\
00,65,00,67,00,65,00,00,00,53,00,65,00,43,00,68,00,61,00,6e,00,67,00,65,00,\
4e,00,6f,00,74,00,69,00,66,00,79,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,\
00,67,00,65,00,00,00,53,00,65,00,43,00,72,00,65,00,61,00,74,00,65,00,47,00,\
6c,00,6f,00,62,00,61,00,6c,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,\
00,65,00,00,00,53,00,65,00,41,00,73,00,73,00,69,00,67,00,6e,00,50,00,72,00,\
69,00,6d,00,61,00,72,00,79,00,54,00,6f,00,6b,00,65,00,6e,00,50,00,72,00,69,\
00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,4c,00,6f,00,61,00,\
64,00,44,00,72,00,69,00,76,00,65,00,72,00,50,00,72,00,69,00,76,00,69,00,6c,\
00,65,00,67,00,65,00,00,00,00,00
"ServiceSidType"=dword:00000001
"SvcHostSplitDisable"=dword:00000001
"Type"=dword:00000020
"Start"=dword:00000002
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\IKEv2]
"DllName"="vpnike.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\Parameters]
"AllowL2TPWeakCrypto"=dword:00000000
"AllowPPTPWeakCrypto"=dword:00000000
"KeepRasConnections"=dword:00000000
"Medias"=hex(7):72,00,61,00,73,00,74,00,61,00,70,00,69,00,00,00,00,00
"ServiceDll"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,6d,00,61,00,6e,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"ServiceDllUnloadOnStop"=dword:00000001
"MiniportsInstalled"=dword:0000ffff
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP]
"DllName"="rasppp.dll"
"MaxConfigure"=dword:0000000a
"MaxFailure"=dword:0000000a
"MaxReject"=dword:00000005
"MaxTerminate"=dword:00000002
"Multilink"=dword:00000000
"NegotiateTime"=dword:00000096
"RestartTimer"=dword:00000003
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\ControlProtocols]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\ControlProtocols\BuiltIn]
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,72,00,\
61,00,73,00,70,00,70,00,70,00,2e,00,64,00,6c,00,6c,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\ControlProtocols\Chap]
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,72,00,\
61,00,73,00,63,00,68,00,61,00,70,00,2e,00,64,00,6c,00,6c,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\EAP]
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,72,00,\
61,00,73,00,70,00,70,00,70,00,2e,00,64,00,6c,00,6c,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\EAP\13]
@="Microsoft"
"ConfigCLSID"="{58AB2366-D597-11d1-B90E-00C04FC9B263}"
"ConfigUiPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"FriendlyName"=hex(2):40,00,25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,2c,00,2d,\
00,32,00,30,00,30,00,31,00,00,00
"IdentityPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"InteractiveUIPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"InvokePasswordDialog"=dword:00000000
"InvokeUsernameDialog"=dword:00000000
"MPPEEncryptionSupported"=dword:00000001
"NoRootRevocationCheck"=dword:00000001
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,72,00,\
61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"PerPolicyConfig"=dword:00000001
"Properties"=dword:1328d8af
"RolesSupported"=dword:00000003
"StandaloneSupported"=dword:00000000
"WLANProfileTemplate"=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\EAP\25]
@="Microsoft"
"ConfigCLSID"="{58AB2366-D597-11d1-B90E-00C04FC9B263}"
"ConfigUiPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"FriendlyName"=hex(2):40,00,25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,2c,00,2d,\
00,32,00,30,00,30,00,32,00,00,00
"IdentityPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"InteractiveUIPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"InvokePasswordDialog"=dword:00000000
"InvokeUsernameDialog"=dword:00000000
"MPPEEncryptionSupported"=dword:00000001
"NoRootRevocationCheck"=dword:00000001
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,72,00,\
61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"PerPolicyConfig"=dword:00000001
"Properties"=dword:173ef8bf
"RolesSupported"=dword:00000023
"StandaloneSupported"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\EAP\25\WLANProfileCreationUXAuth]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\EAP\25\WLANProfileCreationUXAuth\13]
"FriendlyName"=hex(2):40,00,25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,2c,00,2d,\
00,32,00,30,00,30,00,31,00,00,00
"WLANProfileTemplate"=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\EAP\25\WLANProfileCreationUXAuth\26]
"FriendlyName"=hex(2):40,00,25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,63,00,68,00,61,00,70,00,2e,00,64,00,6c,00,6c,00,2c,\
00,2d,00,32,00,30,00,30,00,32,00,00,00
"WLANProfileTemplate"=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\EAP\26]
@="Microsoft"
"ConfigCLSID"="{2af6bcaa-f526-4803-aeb8-5777ce386647}"
"ConfigUiPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,63,00,68,00,61,00,70,00,2e,00,64,00,6c,00,6c,00,00,00
"FriendlyName"=hex(2):40,00,25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,63,00,68,00,61,00,70,00,2e,00,64,00,6c,00,6c,00,2c,\
00,2d,00,32,00,30,00,30,00,32,00,00,00
"IdentityPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,63,00,68,00,61,00,70,00,2e,00,64,00,6c,00,6c,00,00,00
"InteractiveUIPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,63,00,68,00,61,00,70,00,2e,00,64,00,6c,00,6c,00,00,\
00
"InvokePasswordDialog"=dword:00000000
"InvokeUsernameDialog"=dword:00000000
"MPPEEncryptionSupported"=dword:00000001
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,72,00,\
61,00,73,00,63,00,68,00,61,00,70,00,2e,00,64,00,6c,00,6c,00,00,00
"PerPolicyConfig"=dword:00000001
"Properties"=dword:032c406e
"RolesSupported"=dword:00000017
"StandaloneSupported"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\Security]
"Security"=hex:01,00,04,80,80,00,00,00,8c,00,00,00,00,00,00,00,14,00,00,00,02,\
00,6c,00,03,00,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,05,0b,00,\
00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,\
00,00,00,38,00,9d,01,02,00,01,0a,00,00,00,00,00,0f,03,00,00,00,00,04,00,00,\
07,f5,a8,3f,44,c9,79,2b,76,ce,fd,a4,7e,38,81,07,d9,3e,24,64,44,27,6b,0a,42,\
ce,85,b9,72,f3,30,c1,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,\
00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\ThirdParty]
"DllName"="rascustom.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasPppoe]
"ImagePath"=hex(2):53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,\
52,00,49,00,56,00,45,00,52,00,53,00,5c,00,72,00,61,00,73,00,70,00,70,00,70,\
00,6f,00,65,00,2e,00,73,00,79,00,73,00,00,00
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"DisplayName"="@%systemroot%\\system32\\mprmsg.dll,-32007"
"Description"="@%systemroot%\\system32\\mprmsg.dll,-32007"
"Owners"=hex(7):6e,00,65,00,74,00,72,00,61,00,73,00,61,00,2e,00,69,00,6e,00,66,\
00,00,00,00,00
"NdisMajorVersion"=dword:00000006
"NdisMinorVersion"=dword:0000001e
"DriverMajorVersion"=dword:00000001
"DriverMinorVersion"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasPppoe\Linkage]
"Export"=hex(7):5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,52,00,61,00,73,\
00,50,00,70,00,70,00,6f,00,65,00,5f,00,7b,00,43,00,43,00,30,00,41,00,35,00,\
33,00,46,00,45,00,2d,00,38,00,30,00,39,00,37,00,2d,00,34,00,30,00,30,00,30,\
00,2d,00,38,00,36,00,30,00,32,00,2d,00,32,00,36,00,32,00,31,00,37,00,45,00,\
41,00,35,00,37,00,44,00,31,00,34,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,\
00,63,00,65,00,5c,00,52,00,61,00,73,00,50,00,70,00,70,00,6f,00,65,00,5f,00,\
7b,00,31,00,45,00,33,00,33,00,34,00,30,00,41,00,42,00,2d,00,38,00,31,00,41,\
00,30,00,2d,00,34,00,30,00,30,00,41,00,2d,00,42,00,45,00,42,00,32,00,2d,00,\
37,00,38,00,42,00,31,00,44,00,39,00,45,00,32,00,41,00,31,00,31,00,35,00,7d,\
00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,52,00,61,00,73,00,\
50,00,70,00,70,00,6f,00,65,00,5f,00,7b,00,38,00,39,00,37,00,39,00,43,00,38,\
00,42,00,42,00,2d,00,35,00,45,00,41,00,36,00,2d,00,34,00,39,00,42,00,44,00,\
2d,00,41,00,41,00,32,00,36,00,2d,00,35,00,38,00,34,00,30,00,34,00,34,00,46,\
00,38,00,33,00,39,00,32,00,33,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,\
63,00,65,00,5c,00,52,00,61,00,73,00,50,00,70,00,70,00,6f,00,65,00,5f,00,7b,\
00,44,00,31,00,30,00,36,00,46,00,37,00,46,00,30,00,2d,00,34,00,44,00,31,00,\
38,00,2d,00,34,00,45,00,37,00,32,00,2d,00,39,00,46,00,41,00,46,00,2d,00,46,\
00,33,00,45,00,30,00,38,00,31,00,46,00,37,00,37,00,31,00,33,00,43,00,7d,00,\
00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,52,00,61,00,73,00,50,\
00,70,00,70,00,6f,00,65,00,5f,00,7b,00,37,00,36,00,34,00,30,00,33,00,33,00,\
36,00,38,00,2d,00,39,00,35,00,45,00,42,00,2d,00,34,00,38,00,37,00,35,00,2d,\
00,42,00,45,00,37,00,30,00,2d,00,30,00,32,00,46,00,37,00,33,00,36,00,34,00,\
45,00,39,00,31,00,42,00,45,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,\
00,65,00,5c,00,52,00,61,00,73,00,50,00,70,00,70,00,6f,00,65,00,5f,00,7b,00,\
33,00,38,00,36,00,34,00,39,00,42,00,37,00,44,00,2d,00,33,00,36,00,36,00,38,\
00,2d,00,34,00,39,00,42,00,39,00,2d,00,38,00,43,00,32,00,35,00,2d,00,32,00,\
36,00,35,00,38,00,38,00,30,00,39,00,31,00,34,00,34,00,32,00,33,00,7d,00,00,\
00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,52,00,61,00,73,00,50,00,\
70,00,70,00,6f,00,65,00,5f,00,7b,00,35,00,42,00,32,00,46,00,39,00,44,00,31,\
00,39,00,2d,00,46,00,45,00,30,00,35,00,2d,00,34,00,39,00,36,00,43,00,2d,00,\
41,00,41,00,32,00,42,00,2d,00,30,00,46,00,33,00,46,00,41,00,33,00,41,00,42,\
00,37,00,42,00,32,00,46,00,7d,00,00,00,00,00
"Bind"=hex(7):5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,43,00,43,\
00,30,00,41,00,35,00,33,00,46,00,45,00,2d,00,38,00,30,00,39,00,37,00,2d,00,\
34,00,30,00,30,00,30,00,2d,00,38,00,36,00,30,00,32,00,2d,00,32,00,36,00,32,\
00,31,00,37,00,45,00,41,00,35,00,37,00,44,00,31,00,34,00,7d,00,00,00,5c,00,\
44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,31,00,45,00,33,00,33,00,34,\
00,30,00,41,00,42,00,2d,00,38,00,31,00,41,00,30,00,2d,00,34,00,30,00,30,00,\
41,00,2d,00,42,00,45,00,42,00,32,00,2d,00,37,00,38,00,42,00,31,00,44,00,39,\
00,45,00,32,00,41,00,31,00,31,00,35,00,7d,00,00,00,5c,00,44,00,65,00,76,00,\
69,00,63,00,65,00,5c,00,7b,00,38,00,39,00,37,00,39,00,43,00,38,00,42,00,42,\
00,2d,00,35,00,45,00,41,00,36,00,2d,00,34,00,39,00,42,00,44,00,2d,00,41,00,\
41,00,32,00,36,00,2d,00,35,00,38,00,34,00,30,00,34,00,34,00,46,00,38,00,33,\
00,39,00,32,00,33,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,\
5c,00,7b,00,44,00,31,00,30,00,36,00,46,00,37,00,46,00,30,00,2d,00,34,00,44,\
00,31,00,38,00,2d,00,34,00,45,00,37,00,32,00,2d,00,39,00,46,00,41,00,46,00,\
2d,00,46,00,33,00,45,00,30,00,38,00,31,00,46,00,37,00,37,00,31,00,33,00,43,\
00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,37,00,\
36,00,34,00,30,00,33,00,33,00,36,00,38,00,2d,00,39,00,35,00,45,00,42,00,2d,\
00,34,00,38,00,37,00,35,00,2d,00,42,00,45,00,37,00,30,00,2d,00,30,00,32,00,\
46,00,37,00,33,00,36,00,34,00,45,00,39,00,31,00,42,00,45,00,7d,00,00,00,5c,\
00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,33,00,38,00,36,00,34,00,\
39,00,42,00,37,00,44,00,2d,00,33,00,36,00,36,00,38,00,2d,00,34,00,39,00,42,\
00,39,00,2d,00,38,00,43,00,32,00,35,00,2d,00,32,00,36,00,35,00,38,00,38,00,\
30,00,39,00,31,00,34,00,34,00,32,00,33,00,7d,00,00,00,5c,00,44,00,65,00,76,\
00,69,00,63,00,65,00,5c,00,7b,00,35,00,42,00,32,00,46,00,39,00,44,00,31,00,\
39,00,2d,00,46,00,45,00,30,00,35,00,2d,00,34,00,39,00,36,00,43,00,2d,00,41,\
00,41,00,32,00,42,00,2d,00,30,00,46,00,33,00,46,00,41,00,33,00,41,00,42,00,\
37,00,42,00,32,00,46,00,7d,00,00,00,00,00
"Route"=hex(7):22,00,7b,00,43,00,43,00,30,00,41,00,35,00,33,00,46,00,45,00,2d,\
00,38,00,30,00,39,00,37,00,2d,00,34,00,30,00,30,00,30,00,2d,00,38,00,36,00,\
30,00,32,00,2d,00,32,00,36,00,32,00,31,00,37,00,45,00,41,00,35,00,37,00,44,\
00,31,00,34,00,7d,00,22,00,00,00,22,00,7b,00,31,00,45,00,33,00,33,00,34,00,\
30,00,41,00,42,00,2d,00,38,00,31,00,41,00,30,00,2d,00,34,00,30,00,30,00,41,\
00,2d,00,42,00,45,00,42,00,32,00,2d,00,37,00,38,00,42,00,31,00,44,00,39,00,\
45,00,32,00,41,00,31,00,31,00,35,00,7d,00,22,00,00,00,22,00,7b,00,38,00,39,\
00,37,00,39,00,43,00,38,00,42,00,42,00,2d,00,35,00,45,00,41,00,36,00,2d,00,\
34,00,39,00,42,00,44,00,2d,00,41,00,41,00,32,00,36,00,2d,00,35,00,38,00,34,\
00,30,00,34,00,34,00,46,00,38,00,33,00,39,00,32,00,33,00,7d,00,22,00,00,00,\
22,00,7b,00,44,00,31,00,30,00,36,00,46,00,37,00,46,00,30,00,2d,00,34,00,44,\
00,31,00,38,00,2d,00,34,00,45,00,37,00,32,00,2d,00,39,00,46,00,41,00,46,00,\
2d,00,46,00,33,00,45,00,30,00,38,00,31,00,46,00,37,00,37,00,31,00,33,00,43,\
00,7d,00,22,00,00,00,22,00,7b,00,37,00,36,00,34,00,30,00,33,00,33,00,36,00,\
38,00,2d,00,39,00,35,00,45,00,42,00,2d,00,34,00,38,00,37,00,35,00,2d,00,42,\
00,45,00,37,00,30,00,2d,00,30,00,32,00,46,00,37,00,33,00,36,00,34,00,45,00,\
39,00,31,00,42,00,45,00,7d,00,22,00,00,00,22,00,7b,00,33,00,38,00,36,00,34,\
00,39,00,42,00,37,00,44,00,2d,00,33,00,36,00,36,00,38,00,2d,00,34,00,39,00,\
42,00,39,00,2d,00,38,00,43,00,32,00,35,00,2d,00,32,00,36,00,35,00,38,00,38,\
00,30,00,39,00,31,00,34,00,34,00,32,00,33,00,7d,00,22,00,00,00,22,00,7b,00,\
35,00,42,00,32,00,46,00,39,00,44,00,31,00,39,00,2d,00,46,00,45,00,30,00,35,\
00,2d,00,34,00,39,00,36,00,43,00,2d,00,41,00,41,00,32,00,42,00,2d,00,30,00,\
46,00,33,00,46,00,41,00,33,00,41,00,42,00,37,00,42,00,32,00,46,00,7d,00,22,\
00,00,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasPppoe\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasPppoe\Enum]
"0"="SWD\\MSRRAS\\MS_PPPOEMINIPORT"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess]
"ConfigurationFlags"=dword:00000000
"DependOnGroup"=hex(7):4e,00,65,00,74,00,42,00,49,00,4f,00,53,00,47,00,72,00,\
6f,00,75,00,70,00,00,00,00,00
"DependOnService"=hex(7):52,00,70,00,63,00,53,00,53,00,00,00,42,00,66,00,65,00,\
00,00,52,00,61,00,73,00,4d,00,61,00,6e,00,00,00,48,00,74,00,74,00,70,00,00,\
00,00,00
"Description"="@%Systemroot%\\system32\\mprdim.dll,-201"
"DisplayName"="@%Systemroot%\\system32\\mprdim.dll,-200"
"ErrorControl"=dword:00000001
"FailureActions"=hex:84,03,00,00,00,00,00,00,00,00,00,00,03,00,00,00,14,00,00,\
00,01,00,00,00,c0,d4,01,00,01,00,00,00,e0,93,04,00,00,00,00,00,00,00,00,00
"ImagePath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,\
00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,\
6b,00,20,00,6e,00,65,00,74,00,73,00,76,00,63,00,73,00,00,00
"ObjectName"="localSystem"
"RequiredPrivileges"=hex(7):53,00,65,00,43,00,68,00,61,00,6e,00,67,00,65,00,4e,\
00,6f,00,74,00,69,00,66,00,79,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,\
67,00,65,00,00,00,53,00,65,00,4c,00,6f,00,61,00,64,00,44,00,72,00,69,00,76,\
00,65,00,72,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,\
53,00,65,00,49,00,6d,00,70,00,65,00,72,00,73,00,6f,00,6e,00,61,00,74,00,65,\
00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,\
41,00,75,00,64,00,69,00,74,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,\
00,65,00,00,00,53,00,65,00,54,00,63,00,62,00,50,00,72,00,69,00,76,00,69,00,\
6c,00,65,00,67,00,65,00,00,00,00,00
"ServiceSidType"=dword:00000001
"Start"=dword:00000004
"SvcHostSplitDisable"=dword:00000001
"Type"=dword:00000020
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Accounting]
"AccountSessionIdStart"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Accounting\Providers]
"ActiveProvider"="{1AA7F846-C7F5-11D0-A376-00C04FC9DA04}"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Accounting\Providers\{1AA7F840-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid"="{1AA7F840-C7F5-11D0-A376-00C04FC9DA04}"
"DisplayName"="@%Systemroot%\\system32\\mprddm.dll,-202"
"ProviderTypeGUID"="{76560D00-2BFD-11d2-9539-3078302C2030}"
"VendorName"="Microsoft"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Accounting\Providers\{1AA7F846-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid"=""
"DisplayName"="@%Systemroot%\\system32\\mprddm.dll,-203"
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,6d,00,\
70,00,72,00,64,00,64,00,6d,00,2e,00,64,00,6c,00,6c,00,00,00
"ProviderTypeGUID"="{76560D81-2BFD-11d2-9539-3078302C2030}"
"VendorName"="Microsoft"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Authentication]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Authentication\Providers]
"ActiveProvider"="{1AA7F841-C7F5-11D0-A376-00C04FC9DA04}"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Authentication\Providers\{1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid"="{1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}"
"DisplayName"="@%Systemroot%\\system32\\mprddm.dll,-201"
"ProviderTypeGUID"="{76560D00-2BFD-11d2-9539-3078302C2030}"
"VendorName"="Microsoft"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Authentication\Providers\{1AA7F841-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid"=""
"DisplayName"="@%Systemroot%\\system32\\mprddm.dll,-200"
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,6d,00,\
70,00,72,00,64,00,64,00,6d,00,2e,00,64,00,6c,00,6c,00,00,00
"ProviderTypeGUID"="{76560D01-2BFD-11d2-9539-3078302C2030}"
"VendorName"="Microsoft"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\DemandDialManager]
"DllPath"="%SystemRoot%\\System32\\mprddm.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Interfaces]
"Stamp"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Parameters]
"LoggingFlags"=dword:00000002
"ModernStackEnabled"=dword:00000000
"PromptForRichExperience"=dword:00000001
"QuarantineInstalled"=dword:00000001
"RouterType"=dword:00000007
"ServerFlags"=dword:00802602
"ServiceDLL"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
6d,00,70,00,72,00,64,00,69,00,6d,00,2e,00,64,00,6c,00,6c,00,00,00
"ServiceDllUnloadOnStop"=dword:00000001
"Stamp"=dword:00000000
"UsersConfigured"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Parameters\AccountLockout]
"MaxDenials"=dword:00000000
"ResetTime (mins)"=dword:00000b40
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Parameters\IKEV2]
"ConfigOptions"=dword:00000000
"idleTimeout"=dword:0000012c
"networkBlackoutTime"=dword:00000708
"saDataSize"=dword:01fffc00
"saLifeTime"=dword:00000e10
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Parameters\Ip]
"AllowClientIpAddresses"=dword:00000000
"AllowNetworkAccess"=dword:00000001
"EnableIn"=dword:00000001
"EnableNetbtBcastFwd"=dword:00000001
"EnableRoute"=dword:00000001
"IpAddress"="0.0.0.0"
"IpMask"="0.0.0.0"
"UseDhcpAddressing"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Parameters\Ipv6]
"AdvertiseDefaultRoute"=dword:00000001
"AllowNetworkAccess"=dword:00000001
"EnableIn"=dword:00000000
"EnableRoute"=dword:00000001
"UseDhcpAddressing"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Parameters\L2TP]
"idleTimeout"=dword:0000012c
"saDataSize"=dword:0003d090
"saLifeTime"=dword:00000e10
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Parameters\Nbf]
"AllowNetworkAccess"=dword:00000001
"EnableIn"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Performance]
"Close"="CloseRasPerformanceData"
"Collect"="CollectRasPerformanceData"
"Library"="C:\\Windows\\System32\\rasctrs.dll"
"Open"="OpenRasPerformanceData"
"InstallType"=dword:00000001
"PerfIniFile"="rasctrs.ini"
"First Counter"=dword:0000235a
"Last Counter"=dword:00002380
"First Help"=dword:0000235b
"Last Help"=dword:00002381
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy]
"Allow LM Authentication"=dword:00000000
"ProductDir"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
49,00,41,00,53,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\01]
@="IAS.ProxyPolicyEnforcer"
"Requests"="0 1 2"
"Responses"="0 1 2 3 4"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\02]
@="IAS.Realm"
"Providers"="1"
"Requests"="0 1"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\03]
@="IAS.Realm"
"Providers"="0 2"
"Requests"="0 1"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\04]
@="IAS.NTSamNames"
"Providers"="1"
"Requests"="0"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\05]
@="IAS.CRPBasedEAP"
"Providers"="1"
"Requests"="0 2"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\06]
@="IAS.Realm"
"Providers"="1"
"Replays"="0"
"Requests"="0"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\07]
@="IAS.NTSamNames"
"Providers"="1"
"Replays"="0"
"Requests"="0"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\08]
@="IAS.MachineNameMapper"
"Providers"="1"
"Replays"="0"
"Requests"="0"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\09]
@="IAS.BaseCampHost"
"Replays"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\10]
@="IAS.RadiusProxy"
"Providers"="2"
"Replays"="0"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\11]
@="IAS.ExternalAuthNames"
"Providers"="2"
"Replays"="0"
"Requests"="0"
"Responses"="1"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\12]
@="IAS.NTSamAuthentication"
"Providers"="1"
"Replays"="0"
"Requests"="0"
"Responses"="0 1 2"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\13]
@="IAS.UserAccountValidation"
"Providers"="1 3"
"Reasons"="33"
"Replays"="0"
"Requests"="0"
"Responses"="0 1"[/COLOR]
Continue reading...
Remote Access Diagnostic Report
Report Version: | 1.0 |
Date and Time: | 3/24/2021 12:56:56 PM |
Username: | GREYMACHINE\Toyot |
Computer Name: | GREYMACHINE |
Windows Directory: | C:\WINDOWS |
Windows Version: | 19042.PER.AMD64 |
[COLOR=rgba(0, 0, 136, 1)]Table Of Contents
Tracing and Event Logs
- Tracing Logs
- Modem Logs
- Connection Manager Logs
- IP Security Log
- Remote Access Event Logs
- Security Event Logs
- Information Files
- Installation Check
- Installed Networking Components
- Registry Check
- Installed Devices
- Process Information
- Command-Line Utilities
- arp.exe -a
- ipconfig.exe /all
- ipconfig.exe /displaydns
- route.exe print
- net.exe start
- netstat.exe -e
- netstat.exe -o
- netstat.exe -s
- netstat.exe -n
- nbtstat.exe -c
- nbtstat.exe -n
- nbtstat.exe -r
- nbtstat.exe -S
- netsh.exe dump
- netsh.exe namespace show policy
- Phone Book Files
- System Information Report
Tracing Logs [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)]Unable to show Remote Access tracing logs or no log files were present.[/COLOR]
Modem Logs [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)] Unable to show modem tracing logs or no log files were present.
[/COLOR]
Connection Manager Logs [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)] Unable to show Connection Manager logs or no log files were present.
[/COLOR]
IP Security Log [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)] Unable to show IPsec tracing logs or no log files were present.
[/COLOR]
Remote Access Event Logs [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)]Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/23/2021
Time: 11:38:03 AM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/23/2021
Time: 5:32:50 AM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/23/2021
Time: 4:25:26 AM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/23/2021
Time: 3:49:24 AM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/23/2021
Time: 1:19:44 AM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/22/2021
Time: 8:36:17 PM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/22/2021
Time: 6:26:13 PM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/22/2021
Time: 5:52:54 PM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/22/2021
Time: 5:50:10 PM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
Event Type: Information
Event Source: Microsoft-Windows-UserPnp
Event Category: None
Event ID: 20003
Date: 3/22/2021
Time: 3:59:43 PM
User: NT AUTHORITY\SYSTEM
Computer: GreyMachine
Description:
Cannot enumerate Registry key values. wintun
[/COLOR]
Security Event Logs [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)] Unable to show security event logs or no log entries were present.
[/COLOR]
Information Files [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)]File Name : C:\WINDOWS\inf\netrasa.inf
Last Write Time : 12/07/2019 02:07
Creation Time : 12/07/2019 02:07
File Size : 24424 bytes
File Name : C:\WINDOWS\inf\netrass.inf
Last Write Time : 12/07/2019 02:07
Creation Time : 12/07/2019 02:07
File Size : 5292 bytes
File Name : C:\WINDOWS\inf\netrast.inf
Last Write Time : 12/07/2019 02:07
Creation Time : 12/07/2019 02:07
File Size : 8186 bytes
[/COLOR]
Installation Check [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)]sw\{eeab7790-c514-11d1-b42b-00805fc1270e} = Not Found.
ms_irdaminiport = Not Found.
ms_irmodemminiport = Not Found.
ms_l2tpminiport = OK.
ms_sstpminiport = OK.
ms_pptpminiport = OK.
ms_ptiminiport = Not Found.
ms_pppoeminiport = OK.
ms_ndiswanatalk = Not Found.
ms_ndiswanbh = OK.
ms_ndiswanip = OK.
ms_ndiswanipx = Not Found.
ms_pppoe = OK.
ms_pptp = Not Found.
ms_l2tp = Not Found.
ms_sstp = Not Found.
ms_rascli = Not Found.
ms_rassrv = Not Found.
ms_steelhead = Not Found.
ms_ndiswan = OK.
ms_rasman = Not Found.
[/COLOR]
Installed Networking Components [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)]Network Adapters
----------------
ms_l2tpminiport WAN Miniport (L2TP)
{5d624f94-8850-40c3-a3fa-a4fd2080baf3}\vwifimp_wfd Microsoft Wi-Fi Direct Virtual Adapter
ms_pptpminiport WAN Miniport (PPTP)
bth\ms_bthpan Bluetooth Device (Personal Area Network) #2
{5d624f94-8850-40c3-a3fa-a4fd2080baf3}\vwifimp_wfd Microsoft Wi-Fi Direct Virtual Adapter #4
ms_ndiswanip WAN Miniport (IP)
ms_sstpminiport WAN Miniport (SSTP)
{5d624f94-8850-40c3-a3fa-a4fd2080baf3}\vwifimp_wfd Microsoft Wi-Fi Direct Virtual Adapter #3
ms_ndiswanipv6 WAN Miniport (IPv6)
{5d624f94-8850-40c3-a3fa-a4fd2080baf3}\vwifimp_wfd Microsoft Wi-Fi Direct Virtual Adapter #2
ms_pppoeminiport WAN Miniport (PPPOE)
bth\ms_bthpan Bluetooth Device (Personal Area Network)
pci\ven_168c&dev_0042&subsys_18101028&rev_31 Qualcomm QCA9377 802.11ac Wireless Adapter
ms_agilevpnminiport WAN Miniport (IKEv2)
ms_ndiswanbh WAN Miniport (Network Monitor)
Network Protocols
-----------------
ms_rdma_ndk Microsoft RDMA - NDK
ms_tcpip Internet Protocol Version 4 (TCP/IPv4)
ms_netbt WINS Client(TCP/IP) Protocol
ms_implat Microsoft Network Adapter Multiplexor Protocol
ms_ndiswanlegacy Remote Access LEGACY NDIS WAN Driver
ms_lldp Microsoft LLDP Protocol Driver
ms_wanarp Remote Access IP ARP Driver
ms_tcpip_tunnel Internet Protocol (TCP/IP) - Tunnels
ms_tcpip6_tunnel Microsoft TCP/IP version 6 - Tunnels
ms_tcpip6 Internet Protocol Version 6 (TCP/IPv6)
ms_rspndr Link-Layer Topology Discovery Responder
ms_pppoe Point to Point Protocol Over Ethernet
ms_wanarpv6 Remote Access IPv6 ARP Driver
ms_netbt_smb Message-oriented TCP/IP Protocol (SMB session)
ms_ndisuio NDIS Usermode I/O Protocol
ms_ndiswan Remote Access NDIS WAN Driver
ms_lltdio Link-Layer Topology Discovery Mapper I/O Driver
netvsc_vfpp Microsoft NetVsc Failover VF Protocol
ms_xboxgip Xbox Game Input Protocol Driver
Network Services
----------------
ms_netbios NetBIOS Interface
ms_server File and Printer Sharing for Microsoft Networks
ms_bridge Microsoft MAC Bridge
ms_wfplwf_lower WFP Native MAC Layer LightWeight Filter
ms_ndiscap Microsoft NDIS Capture
ms_vwifi @%windir%\System32\drivers\vwififlt.sys,-105
ms_pacer QoS Packet Scheduler
ms_wfplwf_upper WFP 802.3 MAC Layer LightWeight Filter
ms_nativewifip NativeWiFi Filter
ms_wfplwf_vswitch Microsoft Windows Filtering Platform
Network Clients
---------------
ms_msclient Client for Microsoft Networks
[/COLOR]
Registry Check [ Table Of Contents ]
[COLOR=rgba(0, 0, 136, 1)][HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AsyncMac]
"ImagePath"=hex(2):5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,64,00,72,\
00,69,00,76,00,65,00,72,00,73,00,5c,00,61,00,73,00,79,00,6e,00,63,00,6d,00,\
61,00,63,00,2e,00,73,00,79,00,73,00,00,00
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"DisplayName"="@%systemroot%\\system32\\mprmsg.dll,-32000"
"Description"="@%systemroot%\\system32\\mprmsg.dll,-32000"
"Owners"=hex(7):6e,00,65,00,74,00,72,00,61,00,73,00,61,00,2e,00,69,00,6e,00,66,\
00,00,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\IpFilterDriver]
"DependOnService"=hex(7):54,00,63,00,70,00,69,00,70,00,00,00,00,00
"Description"="@%systemroot%\\system32\\mprmsg.dll,-32013"
"DisplayName"="@%systemroot%\\system32\\mprmsg.dll,-32013"
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,\
52,00,49,00,56,00,45,00,52,00,53,00,5c,00,69,00,70,00,66,00,6c,00,74,00,64,\
00,72,00,76,00,2e,00,73,00,79,00,73,00,00,00
"Start"=dword:00000003
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\IpFilterDriver\Security]
"Security"=hex:01,00,14,80,b4,00,00,00,c0,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,84,00,05,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,04,00,00,00,00,\
00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,06,00,00,00,00,00,28,00,fd,01,\
02,00,01,06,00,00,00,00,00,05,50,00,00,00,a8,5c,74,24,9e,8d,a2,ab,07,6a,86,\
83,46,e2,2a,f0,b4,fd,83,ba,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,\
00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\IpNat]
"DependOnService"=hex(7):54,00,63,00,70,00,69,00,70,00,00,00,00,00
"DisplayName"="IP Network Address Translator"
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,64,00,\
72,00,69,00,76,00,65,00,72,00,73,00,5c,00,69,00,70,00,6e,00,61,00,74,00,2e,\
00,73,00,79,00,73,00,00,00
"Start"=dword:00000003
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NdisTapi]
"AsyncEventQueueSize"=dword:00000300
"Description"="@%systemroot%\\system32\\mprmsg.dll,-32001"
"DisplayName"="@%systemroot%\\system32\\mprmsg.dll,-32001"
"ErrorControl"=dword:00000001
"Group"="NDIS"
"ImagePath"=hex(2):53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,\
52,00,49,00,56,00,45,00,52,00,53,00,5c,00,6e,00,64,00,69,00,73,00,74,00,61,\
00,70,00,69,00,2e,00,73,00,79,00,73,00,00,00
"Start"=dword:00000003
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NdisTapi\Enum]
"0"="SWD\\MSRRAS\\MS_NDISWANIP"
"Count"=dword:00000003
"NextInstance"=dword:00000003
"1"="SWD\\MSRRAS\\MS_NDISWANIPV6"
"2"="SWD\\MSRRAS\\MS_NDISWANBH"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NdisWan]
"ImagePath"=hex(2):5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,64,00,72,\
00,69,00,76,00,65,00,72,00,73,00,5c,00,6e,00,64,00,69,00,73,00,77,00,61,00,\
6e,00,2e,00,73,00,79,00,73,00,00,00
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"DisplayName"="@%systemroot%\\system32\\mprmsg.dll,-32002"
"Description"="@%systemroot%\\system32\\mprmsg.dll,-32002"
"Owners"=hex(7):6e,00,65,00,74,00,72,00,61,00,73,00,61,00,2e,00,69,00,6e,00,66,\
00,00,00,00,00
"NdisMajorVersion"=dword:00000006
"NdisMinorVersion"=dword:0000001e
"DriverMajorVersion"=dword:00000001
"DriverMinorVersion"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NdisWan\Linkage]
"Export"=hex(7):5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4e,00,64,00,69,\
00,73,00,57,00,61,00,6e,00,5f,00,7b,00,32,00,44,00,32,00,42,00,33,00,42,00,\
39,00,37,00,2d,00,39,00,46,00,43,00,32,00,2d,00,34,00,42,00,30,00,32,00,2d,\
00,42,00,41,00,41,00,46,00,2d,00,46,00,31,00,35,00,31,00,33,00,35,00,41,00,\
30,00,36,00,42,00,30,00,34,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,\
00,65,00,5c,00,4e,00,64,00,69,00,73,00,57,00,61,00,6e,00,5f,00,7b,00,44,00,\
35,00,32,00,34,00,33,00,43,00,38,00,42,00,2d,00,38,00,38,00,39,00,42,00,2d,\
00,34,00,30,00,39,00,33,00,2d,00,42,00,34,00,34,00,33,00,2d,00,37,00,30,00,\
30,00,43,00,38,00,33,00,44,00,30,00,39,00,34,00,30,00,44,00,7d,00,00,00,5c,\
00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4e,00,64,00,69,00,73,00,57,00,\
61,00,6e,00,5f,00,7b,00,30,00,45,00,37,00,39,00,42,00,33,00,35,00,34,00,2d,\
00,30,00,42,00,31,00,36,00,2d,00,34,00,43,00,30,00,41,00,2d,00,38,00,31,00,\
34,00,46,00,2d,00,44,00,45,00,37,00,36,00,41,00,42,00,36,00,33,00,39,00,42,\
00,37,00,41,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,\
4e,00,64,00,69,00,73,00,57,00,61,00,6e,00,5f,00,7b,00,38,00,43,00,35,00,31,\
00,33,00,31,00,42,00,34,00,2d,00,34,00,42,00,46,00,34,00,2d,00,34,00,42,00,\
45,00,31,00,2d,00,42,00,38,00,45,00,38,00,2d,00,46,00,31,00,36,00,38,00,41,\
00,30,00,43,00,30,00,46,00,38,00,36,00,39,00,7d,00,00,00,5c,00,44,00,65,00,\
76,00,69,00,63,00,65,00,5c,00,4e,00,64,00,69,00,73,00,57,00,61,00,6e,00,5f,\
00,7b,00,37,00,33,00,32,00,37,00,46,00,44,00,42,00,46,00,2d,00,33,00,32,00,\
31,00,38,00,2d,00,34,00,42,00,36,00,41,00,2d,00,42,00,34,00,39,00,32,00,2d,\
00,34,00,35,00,46,00,44,00,45,00,31,00,31,00,36,00,38,00,32,00,32,00,43,00,\
7d,00,00,00,00,00
"Bind"=hex(7):5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,32,00,44,\
00,32,00,42,00,33,00,42,00,39,00,37,00,2d,00,39,00,46,00,43,00,32,00,2d,00,\
34,00,42,00,30,00,32,00,2d,00,42,00,41,00,41,00,46,00,2d,00,46,00,31,00,35,\
00,31,00,33,00,35,00,41,00,30,00,36,00,42,00,30,00,34,00,7d,00,00,00,5c,00,\
44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,44,00,35,00,32,00,34,00,33,\
00,43,00,38,00,42,00,2d,00,38,00,38,00,39,00,42,00,2d,00,34,00,30,00,39,00,\
33,00,2d,00,42,00,34,00,34,00,33,00,2d,00,37,00,30,00,30,00,43,00,38,00,33,\
00,44,00,30,00,39,00,34,00,30,00,44,00,7d,00,00,00,5c,00,44,00,65,00,76,00,\
69,00,63,00,65,00,5c,00,7b,00,30,00,45,00,37,00,39,00,42,00,33,00,35,00,34,\
00,2d,00,30,00,42,00,31,00,36,00,2d,00,34,00,43,00,30,00,41,00,2d,00,38,00,\
31,00,34,00,46,00,2d,00,44,00,45,00,37,00,36,00,41,00,42,00,36,00,33,00,39,\
00,42,00,37,00,41,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,\
5c,00,7b,00,38,00,43,00,35,00,31,00,33,00,31,00,42,00,34,00,2d,00,34,00,42,\
00,46,00,34,00,2d,00,34,00,42,00,45,00,31,00,2d,00,42,00,38,00,45,00,38,00,\
2d,00,46,00,31,00,36,00,38,00,41,00,30,00,43,00,30,00,46,00,38,00,36,00,39,\
00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,37,00,\
33,00,32,00,37,00,46,00,44,00,42,00,46,00,2d,00,33,00,32,00,31,00,38,00,2d,\
00,34,00,42,00,36,00,41,00,2d,00,42,00,34,00,39,00,32,00,2d,00,34,00,35,00,\
46,00,44,00,45,00,31,00,31,00,36,00,38,00,32,00,32,00,43,00,7d,00,00,00,00,\
00
"Route"=hex(7):22,00,7b,00,32,00,44,00,32,00,42,00,33,00,42,00,39,00,37,00,2d,\
00,39,00,46,00,43,00,32,00,2d,00,34,00,42,00,30,00,32,00,2d,00,42,00,41,00,\
41,00,46,00,2d,00,46,00,31,00,35,00,31,00,33,00,35,00,41,00,30,00,36,00,42,\
00,30,00,34,00,7d,00,22,00,00,00,22,00,7b,00,44,00,35,00,32,00,34,00,33,00,\
43,00,38,00,42,00,2d,00,38,00,38,00,39,00,42,00,2d,00,34,00,30,00,39,00,33,\
00,2d,00,42,00,34,00,34,00,33,00,2d,00,37,00,30,00,30,00,43,00,38,00,33,00,\
44,00,30,00,39,00,34,00,30,00,44,00,7d,00,22,00,00,00,22,00,7b,00,30,00,45,\
00,37,00,39,00,42,00,33,00,35,00,34,00,2d,00,30,00,42,00,31,00,36,00,2d,00,\
34,00,43,00,30,00,41,00,2d,00,38,00,31,00,34,00,46,00,2d,00,44,00,45,00,37,\
00,36,00,41,00,42,00,36,00,33,00,39,00,42,00,37,00,41,00,7d,00,22,00,00,00,\
22,00,7b,00,38,00,43,00,35,00,31,00,33,00,31,00,42,00,34,00,2d,00,34,00,42,\
00,46,00,34,00,2d,00,34,00,42,00,45,00,31,00,2d,00,42,00,38,00,45,00,38,00,\
2d,00,46,00,31,00,36,00,38,00,41,00,30,00,43,00,30,00,46,00,38,00,36,00,39,\
00,7d,00,22,00,00,00,22,00,7b,00,37,00,33,00,32,00,37,00,46,00,44,00,42,00,\
46,00,2d,00,33,00,32,00,31,00,38,00,2d,00,34,00,42,00,36,00,41,00,2d,00,42,\
00,34,00,39,00,32,00,2d,00,34,00,35,00,46,00,44,00,45,00,31,00,31,00,36,00,\
38,00,32,00,32,00,43,00,7d,00,22,00,00,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NdisWan\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NdisWan\Enum]
"0"="SWD\\MSRRAS\\MS_NDISWANIP"
"Count"=dword:00000003
"NextInstance"=dword:00000003
"1"="SWD\\MSRRAS\\MS_NDISWANIPV6"
"2"="SWD\\MSRRAS\\MS_NDISWANBH"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\PptpMiniport]
"ImagePath"=hex(2):5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,64,00,72,\
00,69,00,76,00,65,00,72,00,73,00,5c,00,72,00,61,00,73,00,70,00,70,00,74,00,\
70,00,2e,00,73,00,79,00,73,00,00,00
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"DisplayName"="@%systemroot%\\system32\\mprmsg.dll,-32006"
"Description"="@%systemroot%\\system32\\mprmsg.dll,-32006"
"Owners"=hex(7):6e,00,65,00,74,00,72,00,61,00,73,00,61,00,2e,00,69,00,6e,00,66,\
00,00,00,00,00
"NdisMajorVersion"=dword:00000006
"NdisMinorVersion"=dword:0000001e
"DriverMajorVersion"=dword:00000001
"DriverMinorVersion"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\PptpMiniport\Enum]
"0"="SWD\\MSRRAS\\MS_PPTPMINIPORT"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\rassstp]
"ImagePath"=hex(2):5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,64,00,72,\
00,69,00,76,00,65,00,72,00,73,00,5c,00,72,00,61,00,73,00,73,00,73,00,74,00,\
70,00,2e,00,73,00,79,00,73,00,00,00
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"DisplayName"="@%systemroot%\\system32\\sstpsvc.dll,-202"
"Description"="@%systemroot%\\system32\\sstpsvc.dll,-202"
"Owners"=hex(7):6e,00,65,00,74,00,73,00,73,00,74,00,70,00,61,00,2e,00,69,00,6e,\
00,66,00,00,00,00,00
"NdisMajorVersion"=dword:00000006
"NdisMinorVersion"=dword:0000001e
"DriverMajorVersion"=dword:00000001
"DriverMinorVersion"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\rassstp\Enum]
"0"="SWD\\MSRRAS\\MS_SSTPMINIPORT"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasAcd]
"Description"="Remote Access Auto Connection Driver"
"DisplayName"="Remote Access Auto Connection Driver"
"ErrorControl"=dword:00000001
"Group"="Streams Drivers"
"ImagePath"=hex(2):53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,\
52,00,49,00,56,00,45,00,52,00,53,00,5c,00,72,00,61,00,73,00,61,00,63,00,64,\
00,2e,00,73,00,79,00,73,00,00,00
"Start"=dword:00000003
"Tag"=dword:00000001
"Type"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasAcd\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasAcd\Security]
"Security"=hex:01,00,14,88,78,00,00,00,84,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,48,00,03,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,01,\
01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasAuto]
"DependOnService"=hex(7):52,00,61,00,73,00,41,00,63,00,64,00,00,00,00,00
"Description"="@%Systemroot%\\system32\\rasauto.dll,-201"
"DisplayName"="@%Systemroot%\\system32\\rasauto.dll,-200"
"ErrorControl"=dword:00000001
"FailureActions"=hex:84,03,00,00,00,00,00,00,00,00,00,00,03,00,00,00,14,00,00,\
00,01,00,00,00,c0,d4,01,00,01,00,00,00,e0,93,04,00,00,00,00,00,00,00,00,00
"ImagePath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,\
00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,\
6b,00,20,00,6e,00,65,00,74,00,73,00,76,00,63,00,73,00,20,00,2d,00,70,00,00,\
00
"ObjectName"="localSystem"
"RequiredPrivileges"=hex(7):53,00,65,00,49,00,6d,00,70,00,65,00,72,00,73,00,6f,\
00,6e,00,61,00,74,00,65,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,\
65,00,00,00,53,00,65,00,54,00,63,00,62,00,50,00,72,00,69,00,76,00,69,00,6c,\
00,65,00,67,00,65,00,00,00,53,00,65,00,49,00,6e,00,63,00,72,00,65,00,61,00,\
73,00,65,00,51,00,75,00,6f,00,74,00,61,00,50,00,72,00,69,00,76,00,69,00,6c,\
00,65,00,67,00,65,00,00,00,53,00,65,00,43,00,68,00,61,00,6e,00,67,00,65,00,\
4e,00,6f,00,74,00,69,00,66,00,79,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,\
00,67,00,65,00,00,00,53,00,65,00,43,00,72,00,65,00,61,00,74,00,65,00,47,00,\
6c,00,6f,00,62,00,61,00,6c,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,\
00,65,00,00,00,53,00,65,00,41,00,73,00,73,00,69,00,67,00,6e,00,50,00,72,00,\
69,00,6d,00,61,00,72,00,79,00,54,00,6f,00,6b,00,65,00,6e,00,50,00,72,00,69,\
00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,00,00
"ServiceSidType"=dword:00000001
"Start"=dword:00000003
"Type"=dword:00000020
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasAuto\Parameters]
"ServiceDll"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,61,00,75,00,74,00,6f,00,2e,00,64,00,6c,00,6c,00,00,00
"ServiceDllUnloadOnStop"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasAuto\Security]
"Security"=hex:01,00,04,80,5c,00,00,00,68,00,00,00,00,00,00,00,14,00,00,00,02,\
00,48,00,03,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,\
00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,\
00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,01,01,00,00,\
00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Rasl2tp]
"ImagePath"=hex(2):5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,64,00,72,\
00,69,00,76,00,65,00,72,00,73,00,5c,00,72,00,61,00,73,00,6c,00,32,00,74,00,\
70,00,2e,00,73,00,79,00,73,00,00,00
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"DisplayName"="@%systemroot%\\system32\\mprmsg.dll,-32005"
"Description"="@%systemroot%\\system32\\mprmsg.dll,-32005"
"Owners"=hex(7):6e,00,65,00,74,00,72,00,61,00,73,00,61,00,2e,00,69,00,6e,00,66,\
00,00,00,00,00
"NdisMajorVersion"=dword:00000006
"NdisMinorVersion"=dword:0000001e
"DriverMajorVersion"=dword:00000001
"DriverMinorVersion"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Rasl2tp\Enum]
"0"="SWD\\MSRRAS\\MS_L2TPMINIPORT"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan]
"DependOnService"=hex(7):54,00,61,00,70,00,69,00,53,00,72,00,76,00,00,00,53,00,\
73,00,74,00,70,00,53,00,76,00,63,00,00,00,00,00
"Description"="@%Systemroot%\\system32\\rasmans.dll,-201"
"DisplayName"="@%Systemroot%\\system32\\rasmans.dll,-200"
"ErrorControl"=dword:00000001
"FailureActions"=hex:80,51,01,00,00,00,00,00,00,00,00,00,03,00,00,00,14,00,00,\
00,01,00,00,00,c0,d4,01,00,01,00,00,00,e0,93,04,00,00,00,00,00,00,00,00,00
"ImagePath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,\
00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,\
6b,00,20,00,6e,00,65,00,74,00,73,00,76,00,63,00,73,00,00,00
"ObjectName"="localSystem"
"RequiredPrivileges"=hex(7):53,00,65,00,49,00,6d,00,70,00,65,00,72,00,73,00,6f,\
00,6e,00,61,00,74,00,65,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,\
65,00,00,00,53,00,65,00,49,00,6e,00,63,00,72,00,65,00,61,00,73,00,65,00,51,\
00,75,00,6f,00,74,00,61,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,\
65,00,00,00,53,00,65,00,54,00,63,00,62,00,50,00,72,00,69,00,76,00,69,00,6c,\
00,65,00,67,00,65,00,00,00,53,00,65,00,43,00,68,00,61,00,6e,00,67,00,65,00,\
4e,00,6f,00,74,00,69,00,66,00,79,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,\
00,67,00,65,00,00,00,53,00,65,00,43,00,72,00,65,00,61,00,74,00,65,00,47,00,\
6c,00,6f,00,62,00,61,00,6c,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,\
00,65,00,00,00,53,00,65,00,41,00,73,00,73,00,69,00,67,00,6e,00,50,00,72,00,\
69,00,6d,00,61,00,72,00,79,00,54,00,6f,00,6b,00,65,00,6e,00,50,00,72,00,69,\
00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,4c,00,6f,00,61,00,\
64,00,44,00,72,00,69,00,76,00,65,00,72,00,50,00,72,00,69,00,76,00,69,00,6c,\
00,65,00,67,00,65,00,00,00,00,00
"ServiceSidType"=dword:00000001
"SvcHostSplitDisable"=dword:00000001
"Type"=dword:00000020
"Start"=dword:00000002
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\IKEv2]
"DllName"="vpnike.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\Parameters]
"AllowL2TPWeakCrypto"=dword:00000000
"AllowPPTPWeakCrypto"=dword:00000000
"KeepRasConnections"=dword:00000000
"Medias"=hex(7):72,00,61,00,73,00,74,00,61,00,70,00,69,00,00,00,00,00
"ServiceDll"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,6d,00,61,00,6e,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"ServiceDllUnloadOnStop"=dword:00000001
"MiniportsInstalled"=dword:0000ffff
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP]
"DllName"="rasppp.dll"
"MaxConfigure"=dword:0000000a
"MaxFailure"=dword:0000000a
"MaxReject"=dword:00000005
"MaxTerminate"=dword:00000002
"Multilink"=dword:00000000
"NegotiateTime"=dword:00000096
"RestartTimer"=dword:00000003
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\ControlProtocols]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\ControlProtocols\BuiltIn]
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,72,00,\
61,00,73,00,70,00,70,00,70,00,2e,00,64,00,6c,00,6c,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\ControlProtocols\Chap]
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,72,00,\
61,00,73,00,63,00,68,00,61,00,70,00,2e,00,64,00,6c,00,6c,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\EAP]
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,72,00,\
61,00,73,00,70,00,70,00,70,00,2e,00,64,00,6c,00,6c,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\EAP\13]
@="Microsoft"
"ConfigCLSID"="{58AB2366-D597-11d1-B90E-00C04FC9B263}"
"ConfigUiPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"FriendlyName"=hex(2):40,00,25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,2c,00,2d,\
00,32,00,30,00,30,00,31,00,00,00
"IdentityPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"InteractiveUIPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"InvokePasswordDialog"=dword:00000000
"InvokeUsernameDialog"=dword:00000000
"MPPEEncryptionSupported"=dword:00000001
"NoRootRevocationCheck"=dword:00000001
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,72,00,\
61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"PerPolicyConfig"=dword:00000001
"Properties"=dword:1328d8af
"RolesSupported"=dword:00000003
"StandaloneSupported"=dword:00000000
"WLANProfileTemplate"=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\EAP\25]
@="Microsoft"
"ConfigCLSID"="{58AB2366-D597-11d1-B90E-00C04FC9B263}"
"ConfigUiPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"FriendlyName"=hex(2):40,00,25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,2c,00,2d,\
00,32,00,30,00,30,00,32,00,00,00
"IdentityPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"InteractiveUIPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"InvokePasswordDialog"=dword:00000000
"InvokeUsernameDialog"=dword:00000000
"MPPEEncryptionSupported"=dword:00000001
"NoRootRevocationCheck"=dword:00000001
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,72,00,\
61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,00,00
"PerPolicyConfig"=dword:00000001
"Properties"=dword:173ef8bf
"RolesSupported"=dword:00000023
"StandaloneSupported"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\EAP\25\WLANProfileCreationUXAuth]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\EAP\25\WLANProfileCreationUXAuth\13]
"FriendlyName"=hex(2):40,00,25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,74,00,6c,00,73,00,2e,00,64,00,6c,00,6c,00,2c,00,2d,\
00,32,00,30,00,30,00,31,00,00,00
"WLANProfileTemplate"=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\EAP\25\WLANProfileCreationUXAuth\26]
"FriendlyName"=hex(2):40,00,25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,63,00,68,00,61,00,70,00,2e,00,64,00,6c,00,6c,00,2c,\
00,2d,00,32,00,30,00,30,00,32,00,00,00
"WLANProfileTemplate"=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\PPP\EAP\26]
@="Microsoft"
"ConfigCLSID"="{2af6bcaa-f526-4803-aeb8-5777ce386647}"
"ConfigUiPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,63,00,68,00,61,00,70,00,2e,00,64,00,6c,00,6c,00,00,00
"FriendlyName"=hex(2):40,00,25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,63,00,68,00,61,00,70,00,2e,00,64,00,6c,00,6c,00,2c,\
00,2d,00,32,00,30,00,30,00,32,00,00,00
"IdentityPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
72,00,61,00,73,00,63,00,68,00,61,00,70,00,2e,00,64,00,6c,00,6c,00,00,00
"InteractiveUIPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,\
00,6f,00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,\
5c,00,72,00,61,00,73,00,63,00,68,00,61,00,70,00,2e,00,64,00,6c,00,6c,00,00,\
00
"InvokePasswordDialog"=dword:00000000
"InvokeUsernameDialog"=dword:00000000
"MPPEEncryptionSupported"=dword:00000001
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,72,00,\
61,00,73,00,63,00,68,00,61,00,70,00,2e,00,64,00,6c,00,6c,00,00,00
"PerPolicyConfig"=dword:00000001
"Properties"=dword:032c406e
"RolesSupported"=dword:00000017
"StandaloneSupported"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\Security]
"Security"=hex:01,00,04,80,80,00,00,00,8c,00,00,00,00,00,00,00,14,00,00,00,02,\
00,6c,00,03,00,00,00,00,00,14,00,9d,01,02,00,01,01,00,00,00,00,00,05,0b,00,\
00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,\
00,00,00,38,00,9d,01,02,00,01,0a,00,00,00,00,00,0f,03,00,00,00,00,04,00,00,\
07,f5,a8,3f,44,c9,79,2b,76,ce,fd,a4,7e,38,81,07,d9,3e,24,64,44,27,6b,0a,42,\
ce,85,b9,72,f3,30,c1,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,\
00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasMan\ThirdParty]
"DllName"="rascustom.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasPppoe]
"ImagePath"=hex(2):53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,\
52,00,49,00,56,00,45,00,52,00,53,00,5c,00,72,00,61,00,73,00,70,00,70,00,70,\
00,6f,00,65,00,2e,00,73,00,79,00,73,00,00,00
"Type"=dword:00000001
"Start"=dword:00000003
"ErrorControl"=dword:00000001
"DisplayName"="@%systemroot%\\system32\\mprmsg.dll,-32007"
"Description"="@%systemroot%\\system32\\mprmsg.dll,-32007"
"Owners"=hex(7):6e,00,65,00,74,00,72,00,61,00,73,00,61,00,2e,00,69,00,6e,00,66,\
00,00,00,00,00
"NdisMajorVersion"=dword:00000006
"NdisMinorVersion"=dword:0000001e
"DriverMajorVersion"=dword:00000001
"DriverMinorVersion"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasPppoe\Linkage]
"Export"=hex(7):5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,52,00,61,00,73,\
00,50,00,70,00,70,00,6f,00,65,00,5f,00,7b,00,43,00,43,00,30,00,41,00,35,00,\
33,00,46,00,45,00,2d,00,38,00,30,00,39,00,37,00,2d,00,34,00,30,00,30,00,30,\
00,2d,00,38,00,36,00,30,00,32,00,2d,00,32,00,36,00,32,00,31,00,37,00,45,00,\
41,00,35,00,37,00,44,00,31,00,34,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,\
00,63,00,65,00,5c,00,52,00,61,00,73,00,50,00,70,00,70,00,6f,00,65,00,5f,00,\
7b,00,31,00,45,00,33,00,33,00,34,00,30,00,41,00,42,00,2d,00,38,00,31,00,41,\
00,30,00,2d,00,34,00,30,00,30,00,41,00,2d,00,42,00,45,00,42,00,32,00,2d,00,\
37,00,38,00,42,00,31,00,44,00,39,00,45,00,32,00,41,00,31,00,31,00,35,00,7d,\
00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,52,00,61,00,73,00,\
50,00,70,00,70,00,6f,00,65,00,5f,00,7b,00,38,00,39,00,37,00,39,00,43,00,38,\
00,42,00,42,00,2d,00,35,00,45,00,41,00,36,00,2d,00,34,00,39,00,42,00,44,00,\
2d,00,41,00,41,00,32,00,36,00,2d,00,35,00,38,00,34,00,30,00,34,00,34,00,46,\
00,38,00,33,00,39,00,32,00,33,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,\
63,00,65,00,5c,00,52,00,61,00,73,00,50,00,70,00,70,00,6f,00,65,00,5f,00,7b,\
00,44,00,31,00,30,00,36,00,46,00,37,00,46,00,30,00,2d,00,34,00,44,00,31,00,\
38,00,2d,00,34,00,45,00,37,00,32,00,2d,00,39,00,46,00,41,00,46,00,2d,00,46,\
00,33,00,45,00,30,00,38,00,31,00,46,00,37,00,37,00,31,00,33,00,43,00,7d,00,\
00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,52,00,61,00,73,00,50,\
00,70,00,70,00,6f,00,65,00,5f,00,7b,00,37,00,36,00,34,00,30,00,33,00,33,00,\
36,00,38,00,2d,00,39,00,35,00,45,00,42,00,2d,00,34,00,38,00,37,00,35,00,2d,\
00,42,00,45,00,37,00,30,00,2d,00,30,00,32,00,46,00,37,00,33,00,36,00,34,00,\
45,00,39,00,31,00,42,00,45,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,\
00,65,00,5c,00,52,00,61,00,73,00,50,00,70,00,70,00,6f,00,65,00,5f,00,7b,00,\
33,00,38,00,36,00,34,00,39,00,42,00,37,00,44,00,2d,00,33,00,36,00,36,00,38,\
00,2d,00,34,00,39,00,42,00,39,00,2d,00,38,00,43,00,32,00,35,00,2d,00,32,00,\
36,00,35,00,38,00,38,00,30,00,39,00,31,00,34,00,34,00,32,00,33,00,7d,00,00,\
00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,52,00,61,00,73,00,50,00,\
70,00,70,00,6f,00,65,00,5f,00,7b,00,35,00,42,00,32,00,46,00,39,00,44,00,31,\
00,39,00,2d,00,46,00,45,00,30,00,35,00,2d,00,34,00,39,00,36,00,43,00,2d,00,\
41,00,41,00,32,00,42,00,2d,00,30,00,46,00,33,00,46,00,41,00,33,00,41,00,42,\
00,37,00,42,00,32,00,46,00,7d,00,00,00,00,00
"Bind"=hex(7):5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,43,00,43,\
00,30,00,41,00,35,00,33,00,46,00,45,00,2d,00,38,00,30,00,39,00,37,00,2d,00,\
34,00,30,00,30,00,30,00,2d,00,38,00,36,00,30,00,32,00,2d,00,32,00,36,00,32,\
00,31,00,37,00,45,00,41,00,35,00,37,00,44,00,31,00,34,00,7d,00,00,00,5c,00,\
44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,31,00,45,00,33,00,33,00,34,\
00,30,00,41,00,42,00,2d,00,38,00,31,00,41,00,30,00,2d,00,34,00,30,00,30,00,\
41,00,2d,00,42,00,45,00,42,00,32,00,2d,00,37,00,38,00,42,00,31,00,44,00,39,\
00,45,00,32,00,41,00,31,00,31,00,35,00,7d,00,00,00,5c,00,44,00,65,00,76,00,\
69,00,63,00,65,00,5c,00,7b,00,38,00,39,00,37,00,39,00,43,00,38,00,42,00,42,\
00,2d,00,35,00,45,00,41,00,36,00,2d,00,34,00,39,00,42,00,44,00,2d,00,41,00,\
41,00,32,00,36,00,2d,00,35,00,38,00,34,00,30,00,34,00,34,00,46,00,38,00,33,\
00,39,00,32,00,33,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,\
5c,00,7b,00,44,00,31,00,30,00,36,00,46,00,37,00,46,00,30,00,2d,00,34,00,44,\
00,31,00,38,00,2d,00,34,00,45,00,37,00,32,00,2d,00,39,00,46,00,41,00,46,00,\
2d,00,46,00,33,00,45,00,30,00,38,00,31,00,46,00,37,00,37,00,31,00,33,00,43,\
00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,37,00,\
36,00,34,00,30,00,33,00,33,00,36,00,38,00,2d,00,39,00,35,00,45,00,42,00,2d,\
00,34,00,38,00,37,00,35,00,2d,00,42,00,45,00,37,00,30,00,2d,00,30,00,32,00,\
46,00,37,00,33,00,36,00,34,00,45,00,39,00,31,00,42,00,45,00,7d,00,00,00,5c,\
00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,33,00,38,00,36,00,34,00,\
39,00,42,00,37,00,44,00,2d,00,33,00,36,00,36,00,38,00,2d,00,34,00,39,00,42,\
00,39,00,2d,00,38,00,43,00,32,00,35,00,2d,00,32,00,36,00,35,00,38,00,38,00,\
30,00,39,00,31,00,34,00,34,00,32,00,33,00,7d,00,00,00,5c,00,44,00,65,00,76,\
00,69,00,63,00,65,00,5c,00,7b,00,35,00,42,00,32,00,46,00,39,00,44,00,31,00,\
39,00,2d,00,46,00,45,00,30,00,35,00,2d,00,34,00,39,00,36,00,43,00,2d,00,41,\
00,41,00,32,00,42,00,2d,00,30,00,46,00,33,00,46,00,41,00,33,00,41,00,42,00,\
37,00,42,00,32,00,46,00,7d,00,00,00,00,00
"Route"=hex(7):22,00,7b,00,43,00,43,00,30,00,41,00,35,00,33,00,46,00,45,00,2d,\
00,38,00,30,00,39,00,37,00,2d,00,34,00,30,00,30,00,30,00,2d,00,38,00,36,00,\
30,00,32,00,2d,00,32,00,36,00,32,00,31,00,37,00,45,00,41,00,35,00,37,00,44,\
00,31,00,34,00,7d,00,22,00,00,00,22,00,7b,00,31,00,45,00,33,00,33,00,34,00,\
30,00,41,00,42,00,2d,00,38,00,31,00,41,00,30,00,2d,00,34,00,30,00,30,00,41,\
00,2d,00,42,00,45,00,42,00,32,00,2d,00,37,00,38,00,42,00,31,00,44,00,39,00,\
45,00,32,00,41,00,31,00,31,00,35,00,7d,00,22,00,00,00,22,00,7b,00,38,00,39,\
00,37,00,39,00,43,00,38,00,42,00,42,00,2d,00,35,00,45,00,41,00,36,00,2d,00,\
34,00,39,00,42,00,44,00,2d,00,41,00,41,00,32,00,36,00,2d,00,35,00,38,00,34,\
00,30,00,34,00,34,00,46,00,38,00,33,00,39,00,32,00,33,00,7d,00,22,00,00,00,\
22,00,7b,00,44,00,31,00,30,00,36,00,46,00,37,00,46,00,30,00,2d,00,34,00,44,\
00,31,00,38,00,2d,00,34,00,45,00,37,00,32,00,2d,00,39,00,46,00,41,00,46,00,\
2d,00,46,00,33,00,45,00,30,00,38,00,31,00,46,00,37,00,37,00,31,00,33,00,43,\
00,7d,00,22,00,00,00,22,00,7b,00,37,00,36,00,34,00,30,00,33,00,33,00,36,00,\
38,00,2d,00,39,00,35,00,45,00,42,00,2d,00,34,00,38,00,37,00,35,00,2d,00,42,\
00,45,00,37,00,30,00,2d,00,30,00,32,00,46,00,37,00,33,00,36,00,34,00,45,00,\
39,00,31,00,42,00,45,00,7d,00,22,00,00,00,22,00,7b,00,33,00,38,00,36,00,34,\
00,39,00,42,00,37,00,44,00,2d,00,33,00,36,00,36,00,38,00,2d,00,34,00,39,00,\
42,00,39,00,2d,00,38,00,43,00,32,00,35,00,2d,00,32,00,36,00,35,00,38,00,38,\
00,30,00,39,00,31,00,34,00,34,00,32,00,33,00,7d,00,22,00,00,00,22,00,7b,00,\
35,00,42,00,32,00,46,00,39,00,44,00,31,00,39,00,2d,00,46,00,45,00,30,00,35,\
00,2d,00,34,00,39,00,36,00,43,00,2d,00,41,00,41,00,32,00,42,00,2d,00,30,00,\
46,00,33,00,46,00,41,00,33,00,41,00,42,00,37,00,42,00,32,00,46,00,7d,00,22,\
00,00,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasPppoe\Parameters]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RasPppoe\Enum]
"0"="SWD\\MSRRAS\\MS_PPPOEMINIPORT"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess]
"ConfigurationFlags"=dword:00000000
"DependOnGroup"=hex(7):4e,00,65,00,74,00,42,00,49,00,4f,00,53,00,47,00,72,00,\
6f,00,75,00,70,00,00,00,00,00
"DependOnService"=hex(7):52,00,70,00,63,00,53,00,53,00,00,00,42,00,66,00,65,00,\
00,00,52,00,61,00,73,00,4d,00,61,00,6e,00,00,00,48,00,74,00,74,00,70,00,00,\
00,00,00
"Description"="@%Systemroot%\\system32\\mprdim.dll,-201"
"DisplayName"="@%Systemroot%\\system32\\mprdim.dll,-200"
"ErrorControl"=dword:00000001
"FailureActions"=hex:84,03,00,00,00,00,00,00,00,00,00,00,03,00,00,00,14,00,00,\
00,01,00,00,00,c0,d4,01,00,01,00,00,00,e0,93,04,00,00,00,00,00,00,00,00,00
"ImagePath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,\
00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,\
6b,00,20,00,6e,00,65,00,74,00,73,00,76,00,63,00,73,00,00,00
"ObjectName"="localSystem"
"RequiredPrivileges"=hex(7):53,00,65,00,43,00,68,00,61,00,6e,00,67,00,65,00,4e,\
00,6f,00,74,00,69,00,66,00,79,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,\
67,00,65,00,00,00,53,00,65,00,4c,00,6f,00,61,00,64,00,44,00,72,00,69,00,76,\
00,65,00,72,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,\
53,00,65,00,49,00,6d,00,70,00,65,00,72,00,73,00,6f,00,6e,00,61,00,74,00,65,\
00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,\
41,00,75,00,64,00,69,00,74,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,\
00,65,00,00,00,53,00,65,00,54,00,63,00,62,00,50,00,72,00,69,00,76,00,69,00,\
6c,00,65,00,67,00,65,00,00,00,00,00
"ServiceSidType"=dword:00000001
"Start"=dword:00000004
"SvcHostSplitDisable"=dword:00000001
"Type"=dword:00000020
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Accounting]
"AccountSessionIdStart"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Accounting\Providers]
"ActiveProvider"="{1AA7F846-C7F5-11D0-A376-00C04FC9DA04}"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Accounting\Providers\{1AA7F840-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid"="{1AA7F840-C7F5-11D0-A376-00C04FC9DA04}"
"DisplayName"="@%Systemroot%\\system32\\mprddm.dll,-202"
"ProviderTypeGUID"="{76560D00-2BFD-11d2-9539-3078302C2030}"
"VendorName"="Microsoft"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Accounting\Providers\{1AA7F846-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid"=""
"DisplayName"="@%Systemroot%\\system32\\mprddm.dll,-203"
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,6d,00,\
70,00,72,00,64,00,64,00,6d,00,2e,00,64,00,6c,00,6c,00,00,00
"ProviderTypeGUID"="{76560D81-2BFD-11d2-9539-3078302C2030}"
"VendorName"="Microsoft"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Authentication]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Authentication\Providers]
"ActiveProvider"="{1AA7F841-C7F5-11D0-A376-00C04FC9DA04}"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Authentication\Providers\{1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid"="{1AA7F83F-C7F5-11D0-A376-00C04FC9DA04}"
"DisplayName"="@%Systemroot%\\system32\\mprddm.dll,-201"
"ProviderTypeGUID"="{76560D00-2BFD-11d2-9539-3078302C2030}"
"VendorName"="Microsoft"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Authentication\Providers\{1AA7F841-C7F5-11D0-A376-00C04FC9DA04}]
"ConfigClsid"=""
"DisplayName"="@%Systemroot%\\system32\\mprddm.dll,-200"
"Path"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,\
00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,6d,00,\
70,00,72,00,64,00,64,00,6d,00,2e,00,64,00,6c,00,6c,00,00,00
"ProviderTypeGUID"="{76560D01-2BFD-11d2-9539-3078302C2030}"
"VendorName"="Microsoft"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\DemandDialManager]
"DllPath"="%SystemRoot%\\System32\\mprddm.dll"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Interfaces]
"Stamp"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Parameters]
"LoggingFlags"=dword:00000002
"ModernStackEnabled"=dword:00000000
"PromptForRichExperience"=dword:00000001
"QuarantineInstalled"=dword:00000001
"RouterType"=dword:00000007
"ServerFlags"=dword:00802602
"ServiceDLL"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
6d,00,70,00,72,00,64,00,69,00,6d,00,2e,00,64,00,6c,00,6c,00,00,00
"ServiceDllUnloadOnStop"=dword:00000001
"Stamp"=dword:00000000
"UsersConfigured"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Parameters\AccountLockout]
"MaxDenials"=dword:00000000
"ResetTime (mins)"=dword:00000b40
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Parameters\IKEV2]
"ConfigOptions"=dword:00000000
"idleTimeout"=dword:0000012c
"networkBlackoutTime"=dword:00000708
"saDataSize"=dword:01fffc00
"saLifeTime"=dword:00000e10
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Parameters\Ip]
"AllowClientIpAddresses"=dword:00000000
"AllowNetworkAccess"=dword:00000001
"EnableIn"=dword:00000001
"EnableNetbtBcastFwd"=dword:00000001
"EnableRoute"=dword:00000001
"IpAddress"="0.0.0.0"
"IpMask"="0.0.0.0"
"UseDhcpAddressing"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Parameters\Ipv6]
"AdvertiseDefaultRoute"=dword:00000001
"AllowNetworkAccess"=dword:00000001
"EnableIn"=dword:00000000
"EnableRoute"=dword:00000001
"UseDhcpAddressing"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Parameters\L2TP]
"idleTimeout"=dword:0000012c
"saDataSize"=dword:0003d090
"saLifeTime"=dword:00000e10
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Parameters\Nbf]
"AllowNetworkAccess"=dword:00000001
"EnableIn"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Performance]
"Close"="CloseRasPerformanceData"
"Collect"="CollectRasPerformanceData"
"Library"="C:\\Windows\\System32\\rasctrs.dll"
"Open"="OpenRasPerformanceData"
"InstallType"=dword:00000001
"PerfIniFile"="rasctrs.ini"
"First Counter"=dword:0000235a
"Last Counter"=dword:00002380
"First Help"=dword:0000235b
"Last Help"=dword:00002381
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy]
"Allow LM Authentication"=dword:00000000
"ProductDir"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
49,00,41,00,53,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\01]
@="IAS.ProxyPolicyEnforcer"
"Requests"="0 1 2"
"Responses"="0 1 2 3 4"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\02]
@="IAS.Realm"
"Providers"="1"
"Requests"="0 1"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\03]
@="IAS.Realm"
"Providers"="0 2"
"Requests"="0 1"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\04]
@="IAS.NTSamNames"
"Providers"="1"
"Requests"="0"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\05]
@="IAS.CRPBasedEAP"
"Providers"="1"
"Requests"="0 2"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\06]
@="IAS.Realm"
"Providers"="1"
"Replays"="0"
"Requests"="0"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\07]
@="IAS.NTSamNames"
"Providers"="1"
"Replays"="0"
"Requests"="0"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\08]
@="IAS.MachineNameMapper"
"Providers"="1"
"Replays"="0"
"Requests"="0"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\09]
@="IAS.BaseCampHost"
"Replays"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\10]
@="IAS.RadiusProxy"
"Providers"="2"
"Replays"="0"
"Responses"="0"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\11]
@="IAS.ExternalAuthNames"
"Providers"="2"
"Replays"="0"
"Requests"="0"
"Responses"="1"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\12]
@="IAS.NTSamAuthentication"
"Providers"="1"
"Replays"="0"
"Requests"="0"
"Responses"="0 1 2"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteAccess\Policy\Pipeline\13]
@="IAS.UserAccountValidation"
"Providers"="1 3"
"Reasons"="33"
"Replays"="0"
"Requests"="0"
"Responses"="0 1"[/COLOR]
Continue reading...