SystemLook 30.07.11 by jpshortstuff
Log created at 19:36 on 25/01/2012 by Ziad
Administrator - Elevation successful
========== filefind ==========
Searching for "ipsec.*"
C:\I386\IPSEC.SY_ --a---- 39956 bytes [20:01 21/07/2008] [12:00 14/04/2008] 831C0ED52C21602AE3F735A1F04055E1
C:\WINDOWS\system32\drivers\ipsec.sys --a---- 75264 bytes [20:04 21/07/2008] [12:00 14/04/2008] 1A53F4D2F31A3E72CE5E1DFE1AF6EA1F
-= EOF =-
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp]
"Type"=dword:00000020
"Start"=dword:00000002
"ErrorControl"=dword:00000001
"ImagePath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,\
00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,\
6b,00,20,00,6e,00,65,00,74,00,73,00,76,00,63,00,73,00,00,00
"DisplayName"="DHCP Client"
"Group"="TDI"
"DependOnService"=hex(7):54,00,63,00,70,00,69,00,70,00,00,00,41,00,66,00,64,00,\
00,00,4e,00,65,00,74,00,42,00,54,00,00,00,00,00
"DependOnGroup"=hex(7):00,00
"ObjectName"="LocalSystem"
"Description"="Manages network configuration by registering and updating IP addresses and DNS names."
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Configurations]
"Options"=hex:32,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,ff,ff,ff,7f,00,\
00,00,00,01,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,ff,ff,ff,7f,00,00,\
00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Linkage]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Linkage\Disabled]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Parameters]
"ServiceDll"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
64,00,68,00,63,00,70,00,63,00,73,00,76,00,63,00,2e,00,64,00,6c,00,6c,00,00,\
00
"{532EEB6E-71EE-40C8-A991-15118FBE5AAD}"=hex:2e,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,86,27,ed,49,2c,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
86,27,ed,49,06,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,86,27,ed,49,03,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,86,27,ed,49,51,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,86,27,ed,49,01,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,86,27,ed,49,36,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
86,27,ed,49,33,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,86,27,ed,49,3b,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,86,27,ed,49,3a,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,86,27,ed,49,35,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,86,27,ed,49
"{80BCD92F-3511-4F5E-929D-EA243BBFD5F6}"=hex:2e,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,b4,29,ed,49,2c,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
b4,29,ed,49,06,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,b4,29,ed,49,03,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,b4,29,ed,49,01,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,b4,29,ed,49,36,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,b4,29,ed,49,35,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
b4,29,ed,49,51,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,b4,29,ed,49,33,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,b4,29,ed,49,3b,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,b4,29,ed,49,3a,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,b4,29,ed,49
"{4E3B5107-3322-4E5B-82C2-E531228C7609}"=hex:2e,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,18,eb,ed,49,2c,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
18,eb,ed,49,06,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,18,eb,ed,49,03,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,18,eb,ed,49,51,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,18,eb,ed,49,01,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,18,eb,ed,49,36,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
18,eb,ed,49,33,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,18,eb,ed,49,3b,\
00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,18,eb,ed,49,3a,00,00,00,00,00,\
00,00,00,00,00,00,00,00,00,00,18,eb,ed,49,35,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,18,eb,ed,49
"{C7BE68E5-9583-4DE0-A20F-05A1A820F0BE}"=hex:fc,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,5c,45,c9,4a,06,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,\
d7,78,aa,4c,0a,0a,40,01,01,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,d7,\
78,aa,4c,ff,ff,f0,00,33,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,d7,78,\
aa,4c,01,e1,33,80,36,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,d7,78,aa,\
4c,0a,0a,4f,fe,35,00,00,00,00,00,00,00,01,00,00,00,00,00,00,00,d7,78,aa,4c,\
05,00,00,00
"{6F7EDDB3-7337-42F1-B204-A5A8534D6973}"=hex:fc,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,7e,2d,d2,4c,06,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,\
b2,60,b3,4e,0a,3d,38,01,01,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,b2,\
60,b3,4e,ff,ff,f8,00,33,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,b2,60,\
b3,4e,01,e1,33,80,36,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,b2,60,b3,\
4e,0a,3d,3f,fe,35,00,00,00,00,00,00,00,01,00,00,00,00,00,00,00,b2,60,b3,4e,\
05,00,00,00
"{CD516BC3-4B82-443E-BCD3-29EDD4A14E94}"=hex:fc,00,00,00,00,00,00,00,00,00,00,\
00,00,00,00,00,8e,f6,1d,4f,36,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,\
1c,2e,27,4f,c0,a8,00,01,33,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,1c,\
2e,27,4f,00,09,3a,80,17,00,00,00,00,00,00,00,01,00,00,00,00,00,00,00,1c,2e,\
27,4f,40,00,00,00,06,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,1c,2e,27,\
4f,40,47,ff,c6,03,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,1c,2e,27,4f,\
c0,a8,00,01,02,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,1c,2e,27,4f,00,\
00,00,00,01,00,00,00,00,00,00,00,04,00,00,00,00,00,00,00,1c,2e,27,4f,ff,ff,\
ff,00,35,00,00,00,00,00,00,00,01,00,00,00,00,00,00,00,1c,2e,27,4f,05,00,00,\
00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Parameters\Options]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Parameters\Options\1]
"KeyType"=dword:00000007
"RegLocation"=hex(7):53,00,59,00,53,00,54,00,45,00,4d,00,5c,00,43,00,75,00,72,\
00,72,00,65,00,6e,00,74,00,43,00,6f,00,6e,00,74,00,72,00,6f,00,6c,00,53,00,\
65,00,74,00,5c,00,53,00,65,00,72,00,76,00,69,00,63,00,65,00,73,00,5c,00,54,\
00,63,00,70,00,69,00,70,00,5c,00,50,00,61,00,72,00,61,00,6d,00,65,00,74,00,\
65,00,72,00,73,00,5c,00,49,00,6e,00,74,00,65,00,72,00,66,00,61,00,63,00,65,\
00,73,00,5c,00,3f,00,5c,00,44,00,68,00,63,00,70,00,53,00,75,00,62,00,6e,00,\
65,00,74,00,4d,00,61,00,73,00,6b,00,4f,00,70,00,74,00,00,00,53,00,59,00,53,\
00,54,00,45,00,4d,00,5c,00,43,00,75,00,72,00,72,00,65,00,6e,00,74,00,43,00,\
6f,00,6e,00,74,00,72,00,6f,00,6c,00,53,00,65,00,74,00,5c,00,53,00,65,00,72,\
00,76,00,69,00,63,00,65,00,73,00,5c,00,3f,00,5c,00,50,00,61,00,72,00,61,00,\
6d,00,65,00,74,00,65,00,72,00,73,00,5c,00,54,00,63,00,70,00,69,00,70,00,5c,\
00,44,00,68,00,63,00,70,00,53,00,75,00,62,00,6e,00,65,00,74,00,4d,00,61,00,\
73,00,6b,00,4f,00,70,00,74,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Parameters\Options\15]
"KeyType"=dword:00000001
"RegLocation"=hex(7):53,00,59,00,53,00,54,00,45,00,4d,00,5c,00,43,00,75,00,72,\
00,72,00,65,00,6e,00,74,00,43,00,6f,00,6e,00,74,00,72,00,6f,00,6c,00,53,00,\
65,00,74,00,5c,00,53,00,65,00,72,00,76,00,69,00,63,00,65,00,73,00,5c,00,54,\
00,63,00,70,00,69,00,70,00,5c,00,50,00,61,00,72,00,61,00,6d,00,65,00,74,00,\
65,00,72,00,73,00,5c,00,49,00,6e,00,74,00,65,00,72,00,66,00,61,00,63,00,65,\
00,73,00,5c,00,3f,00,5c,00,44,00,68,00,63,00,70,00,44,00,6f,00,6d,00,61,00,\
69,00,6e,00,00,00,53,00,59,00,53,00,54,00,45,00,4d,00,5c,00,43,00,75,00,72,\
00,72,00,65,00,6e,00,74,00,43,00,6f,00,6e,00,74,00,72,00,6f,00,6c,00,53,00,\
65,00,74,00,5c,00,53,00,65,00,72,00,76,00,69,00,63,00,65,00,73,00,5c,00,54,\
00,63,00,70,00,49,00,70,00,5c,00,50,00,61,00,72,00,61,00,6d,00,65,00,74,00,\
65,00,72,00,73,00,5c,00,44,00,68,00,63,00,70,00,44,00,6f,00,6d,00,61,00,69,\
00,6e,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Parameters\Options\220]
"KeyType"=dword:00000003
"VendorType"=dword:00000001
"RegSendLocation"=hex(7):53,00,59,00,53,00,54,00,45,00,4d,00,5c,00,43,00,75,00,\
72,00,72,00,65,00,6e,00,74,00,43,00,6f,00,6e,00,74,00,72,00,6f,00,6c,00,53,\
00,65,00,74,00,5c,00,53,00,65,00,72,00,76,00,69,00,63,00,65,00,73,00,5c,00,\
54,00,63,00,70,00,69,00,70,00,5c,00,50,00,61,00,72,00,61,00,6d,00,65,00,74,\
00,65,00,72,00,73,00,5c,00,49,00,6e,00,74,00,65,00,72,00,66,00,61,00,63,00,\
65,00,73,00,5c,00,3f,00,5c,00,53,00,6f,00,48,00,52,00,65,00,71,00,75,00,65,\
00,73,00,74,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Parameters\Options\3]
"KeyType"=dword:00000007
"RegLocation"=hex(7):53,00,59,00,53,00,54,00,45,00,4d,00,5c,00,43,00,75,00,72,\
00,72,00,65,00,6e,00,74,00,43,00,6f,00,6e,00,74,00,72,00,6f,00,6c,00,53,00,\
65,00,74,00,5c,00,53,00,65,00,72,00,76,00,69,00,63,00,65,00,73,00,5c,00,54,\
00,63,00,70,00,69,00,70,00,5c,00,50,00,61,00,72,00,61,00,6d,00,65,00,74,00,\
65,00,72,00,73,00,5c,00,49,00,6e,00,74,00,65,00,72,00,66,00,61,00,63,00,65,\
00,73,00,5c,00,3f,00,5c,00,44,00,68,00,63,00,70,00,44,00,65,00,66,00,61,00,\
75,00,6c,00,74,00,47,00,61,00,74,00,65,00,77,00,61,00,79,00,00,00,53,00,59,\
00,53,00,54,00,45,00,4d,00,5c,00,43,00,75,00,72,00,72,00,65,00,6e,00,74,00,\
43,00,6f,00,6e,00,74,00,72,00,6f,00,6c,00,53,00,65,00,74,00,5c,00,53,00,65,\
00,72,00,76,00,69,00,63,00,65,00,73,00,5c,00,3f,00,5c,00,50,00,61,00,72,00,\
61,00,6d,00,65,00,74,00,65,00,72,00,73,00,5c,00,54,00,63,00,70,00,69,00,70,\
00,5c,00,44,00,68,00,63,00,70,00,44,00,65,00,66,00,61,00,75,00,6c,00,74,00,\
47,00,61,00,74,00,65,00,77,00,61,00,79,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Parameters\Options\44]
"KeyType"=dword:00000001
"RegLocation"=hex(7):53,00,59,00,53,00,54,00,45,00,4d,00,5c,00,43,00,75,00,72,\
00,72,00,65,00,6e,00,74,00,43,00,6f,00,6e,00,74,00,72,00,6f,00,6c,00,53,00,\
65,00,74,00,5c,00,53,00,65,00,72,00,76,00,69,00,63,00,65,00,73,00,5c,00,4e,\
00,65,00,74,00,42,00,54,00,5c,00,50,00,61,00,72,00,61,00,6d,00,65,00,74,00,\
65,00,72,00,73,00,5c,00,49,00,6e,00,74,00,65,00,72,00,66,00,61,00,63,00,65,\
00,73,00,5c,00,54,00,63,00,70,00,69,00,70,00,5f,00,3f,00,5c,00,44,00,68,00,\
63,00,70,00,4e,00,61,00,6d,00,65,00,53,00,65,00,72,00,76,00,65,00,72,00,4c,\
00,69,00,73,00,74,00,00,00,53,00,59,00,53,00,54,00,45,00,4d,00,5c,00,43,00,\
75,00,72,00,72,00,65,00,6e,00,74,00,43,00,6f,00,6e,00,74,00,72,00,6f,00,6c,\
00,53,00,65,00,74,00,5c,00,53,00,65,00,72,00,76,00,69,00,63,00,65,00,73,00,\
5c,00,4e,00,65,00,74,00,42,00,54,00,5c,00,41,00,64,00,61,00,70,00,74,00,65,\
00,72,00,73,00,5c,00,3f,00,5c,00,44,00,68,00,63,00,70,00,4e,00,61,00,6d,00,\
65,00,53,00,65,00,72,00,76,00,65,00,72,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Parameters\Options\46]
"KeyType"=dword:00000004
"RegLocation"="SYSTEM\\CurrentControlSet\\Services\\NetBT\\Parameters\\DhcpNodeType"
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Parameters\Options\47]
"KeyType"=dword:00000001
"RegLocation"="SYSTEM\\CurrentControlSet\\Services\\NetBT\\Parameters\\DhcpScopeID"
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Parameters\Options\6]
"KeyType"=dword:00000001
"RegLocation"=hex(7):53,00,59,00,53,00,54,00,45,00,4d,00,5c,00,43,00,75,00,72,\
00,72,00,65,00,6e,00,74,00,43,00,6f,00,6e,00,74,00,72,00,6f,00,6c,00,53,00,\
65,00,74,00,5c,00,53,00,65,00,72,00,76,00,69,00,63,00,65,00,73,00,5c,00,54,\
00,63,00,70,00,69,00,70,00,5c,00,50,00,61,00,72,00,61,00,6d,00,65,00,74,00,\
65,00,72,00,73,00,5c,00,49,00,6e,00,74,00,65,00,72,00,66,00,61,00,63,00,65,\
00,73,00,5c,00,3f,00,5c,00,44,00,68,00,63,00,70,00,4e,00,61,00,6d,00,65,00,\
53,00,65,00,72,00,76,00,65,00,72,00,00,00,53,00,59,00,53,00,54,00,45,00,4d,\
00,5c,00,43,00,75,00,72,00,72,00,65,00,6e,00,74,00,43,00,6f,00,6e,00,74,00,\
72,00,6f,00,6c,00,53,00,65,00,74,00,5c,00,53,00,65,00,72,00,76,00,69,00,63,\
00,65,00,73,00,5c,00,54,00,63,00,70,00,69,00,70,00,5c,00,50,00,61,00,72,00,\
61,00,6d,00,65,00,74,00,65,00,72,00,73,00,5c,00,44,00,68,00,63,00,70,00,4e,\
00,61,00,6d,00,65,00,53,00,65,00,72,00,76,00,65,00,72,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Parameters\Options\DhcpNetbiosOptions]
"KeyType"=dword:00000004
"OptionId"=dword:00000001
"VendorType"=dword:00000001
"RegLocation"=hex(7):53,00,59,00,53,00,54,00,45,00,4d,00,5c,00,43,00,75,00,72,\
00,72,00,65,00,6e,00,74,00,43,00,6f,00,6e,00,74,00,72,00,6f,00,6c,00,53,00,\
65,00,74,00,5c,00,53,00,65,00,72,00,76,00,69,00,63,00,65,00,73,00,5c,00,4e,\
00,65,00,74,00,42,00,54,00,5c,00,50,00,61,00,72,00,61,00,6d,00,65,00,74,00,\
65,00,72,00,73,00,5c,00,49,00,6e,00,74,00,65,00,72,00,66,00,61,00,63,00,65,\
00,73,00,5c,00,54,00,63,00,70,00,69,00,70,00,5f,00,3f,00,5c,00,44,00,68,00,\
63,00,70,00,4e,00,65,00,74,00,62,00,69,00,6f,00,73,00,4f,00,70,00,74,00,69,\
00,6f,00,6e,00,73,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,\
05,0b,00,00,00,00,00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,\
2c,02,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,\
02,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12,00,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\dhcp\Enum]
"0"="Root\\LEGACY_DHCP\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip]
"Type"=dword:00000001
"Start"=dword:00000001
"ErrorControl"=dword:00000001
"Tag"=dword:00000003
"ImagePath"=hex(2):73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,44,00,\
52,00,49,00,56,00,45,00,52,00,53,00,5c,00,74,00,63,00,70,00,69,00,70,00,2e,\
00,73,00,79,00,73,00,00,00
"DisplayName"="TCP/IP Protocol Driver"
"Group"="PNP_TDI"
"DependOnService"=hex(7):49,00,50,00,53,00,65,00,63,00,00,00,00,00
"DependOnGroup"=hex(7):00,00
"Description"="TCP/IP Protocol Driver"
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Linkage]
"Bind"=hex(7):5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,39,00,43,\
00,37,00,46,00,43,00,33,00,43,00,35,00,2d,00,32,00,37,00,42,00,41,00,2d,00,\
34,00,37,00,42,00,41,00,2d,00,42,00,33,00,41,00,39,00,2d,00,46,00,33,00,46,\
00,34,00,37,00,37,00,32,00,44,00,37,00,44,00,43,00,38,00,7d,00,00,00,5c,00,\
44,00,65,00,76,00,69,00,63,00,65,00,5c,00,7b,00,37,00,35,00,38,00,41,00,37,\
00,42,00,36,00,41,00,2d,00,44,00,42,00,43,00,46,00,2d,00,34,00,39,00,32,00,\
39,00,2d,00,41,00,42,00,34,00,33,00,2d,00,38,00,39,00,44,00,42,00,38,00,38,\
00,34,00,33,00,39,00,43,00,39,00,43,00,7d,00,00,00,5c,00,44,00,65,00,76,00,\
69,00,63,00,65,00,5c,00,7b,00,30,00,35,00,33,00,43,00,39,00,35,00,46,00,42,\
00,2d,00,45,00,36,00,30,00,46,00,2d,00,34,00,39,00,33,00,42,00,2d,00,42,00,\
32,00,36,00,39,00,2d,00,35,00,36,00,45,00,37,00,38,00,35,00,31,00,34,00,31,\
00,35,00,42,00,38,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,\
5c,00,4e,00,64,00,69,00,73,00,57,00,61,00,6e,00,49,00,70,00,00,00,00,00
"Route"=hex(7):22,00,7b,00,39,00,43,00,37,00,46,00,43,00,33,00,43,00,35,00,2d,\
00,32,00,37,00,42,00,41,00,2d,00,34,00,37,00,42,00,41,00,2d,00,42,00,33,00,\
41,00,39,00,2d,00,46,00,33,00,46,00,34,00,37,00,37,00,32,00,44,00,37,00,44,\
00,43,00,38,00,7d,00,22,00,00,00,22,00,7b,00,37,00,35,00,38,00,41,00,37,00,\
42,00,36,00,41,00,2d,00,44,00,42,00,43,00,46,00,2d,00,34,00,39,00,32,00,39,\
00,2d,00,41,00,42,00,34,00,33,00,2d,00,38,00,39,00,44,00,42,00,38,00,38,00,\
34,00,33,00,39,00,43,00,39,00,43,00,7d,00,22,00,00,00,22,00,7b,00,30,00,35,\
00,33,00,43,00,39,00,35,00,46,00,42,00,2d,00,45,00,36,00,30,00,46,00,2d,00,\
34,00,39,00,33,00,42,00,2d,00,42,00,32,00,36,00,39,00,2d,00,35,00,36,00,45,\
00,37,00,38,00,35,00,31,00,34,00,31,00,35,00,42,00,38,00,7d,00,22,00,00,00,\
22,00,4e,00,64,00,69,00,73,00,57,00,61,00,6e,00,49,00,70,00,22,00,00,00,00,\
00
"Export"=hex(7):5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,54,00,63,00,70,\
00,69,00,70,00,5f,00,7b,00,39,00,43,00,37,00,46,00,43,00,33,00,43,00,35,00,\
2d,00,32,00,37,00,42,00,41,00,2d,00,34,00,37,00,42,00,41,00,2d,00,42,00,33,\
00,41,00,39,00,2d,00,46,00,33,00,46,00,34,00,37,00,37,00,32,00,44,00,37,00,\
44,00,43,00,38,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,\
00,54,00,63,00,70,00,69,00,70,00,5f,00,7b,00,37,00,35,00,38,00,41,00,37,00,\
42,00,36,00,41,00,2d,00,44,00,42,00,43,00,46,00,2d,00,34,00,39,00,32,00,39,\
00,2d,00,41,00,42,00,34,00,33,00,2d,00,38,00,39,00,44,00,42,00,38,00,38,00,\
34,00,33,00,39,00,43,00,39,00,43,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,\
00,63,00,65,00,5c,00,54,00,63,00,70,00,69,00,70,00,5f,00,7b,00,30,00,35,00,\
33,00,43,00,39,00,35,00,46,00,42,00,2d,00,45,00,36,00,30,00,46,00,2d,00,34,\
00,39,00,33,00,42,00,2d,00,42,00,32,00,36,00,39,00,2d,00,35,00,36,00,45,00,\
37,00,38,00,35,00,31,00,34,00,31,00,35,00,42,00,38,00,7d,00,00,00,5c,00,44,\
00,65,00,76,00,69,00,63,00,65,00,5c,00,54,00,63,00,70,00,69,00,70,00,5f,00,\
7b,00,30,00,34,00,45,00,45,00,36,00,41,00,33,00,30,00,2d,00,37,00,37,00,32,\
00,41,00,2d,00,34,00,35,00,32,00,35,00,2d,00,39,00,37,00,39,00,41,00,2d,00,\
43,00,38,00,38,00,45,00,38,00,35,00,43,00,33,00,41,00,30,00,46,00,34,00,7d,\
00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,54,00,63,00,70,00,\
69,00,70,00,5f,00,7b,00,37,00,41,00,44,00,43,00,31,00,39,00,43,00,31,00,2d,\
00,44,00,34,00,35,00,43,00,2d,00,34,00,32,00,35,00,36,00,2d,00,39,00,31,00,\
42,00,39,00,2d,00,45,00,33,00,41,00,43,00,36,00,30,00,32,00,37,00,37,00,46,\
00,37,00,45,00,7d,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Parameters]
"NV Hostname"="LENOVO-D4F96F23"
"DataBasePath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
64,00,72,00,69,00,76,00,65,00,72,00,73,00,5c,00,65,00,74,00,63,00,00,00
"ForwardBroadcasts"=dword:00000000
"IPEnableRouter"=dword:00000000
"Domain"=""
"Hostname"="LENOVO-D4F96F23"
"SearchList"=""
"UseDomainNameDevolution"=dword:00000001
"DeadGWDetectDefault"=dword:00000001
"DontAddDefaultGatewayDefault"=dword:00000000
"DhcpNameServer"="64.71.255.198"
"EnableICMPRedirect"=dword:00000001
"EnableSecurityFilters"=dword:00000000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Parameters\Adapters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Parameters\Adapters\NdisWanIp]
"LLInterface"="WANARP"
"IpConfig"=hex(7):54,00,63,00,70,00,69,00,70,00,5c,00,50,00,61,00,72,00,61,00,\
6d,00,65,00,74,00,65,00,72,00,73,00,5c,00,49,00,6e,00,74,00,65,00,72,00,66,\
00,61,00,63,00,65,00,73,00,5c,00,7b,00,30,00,34,00,45,00,45,00,36,00,41,00,\
33,00,30,00,2d,00,37,00,37,00,32,00,41,00,2d,00,34,00,35,00,32,00,35,00,2d,\
00,39,00,37,00,39,00,41,00,2d,00,43,00,38,00,38,00,45,00,38,00,35,00,43,00,\
33,00,41,00,30,00,46,00,34,00,7d,00,00,00,54,00,63,00,70,00,69,00,70,00,5c,\
00,50,00,61,00,72,00,61,00,6d,00,65,00,74,00,65,00,72,00,73,00,5c,00,49,00,\
6e,00,74,00,65,00,72,00,66,00,61,00,63,00,65,00,73,00,5c,00,7b,00,37,00,41,\
00,44,00,43,00,31,00,39,00,43,00,31,00,2d,00,44,00,34,00,35,00,43,00,2d,00,\
34,00,32,00,35,00,36,00,2d,00,39,00,31,00,42,00,39,00,2d,00,45,00,33,00,41,\
00,43,00,36,00,30,00,32,00,37,00,37,00,46,00,37,00,45,00,7d,00,00,00,00,00
"NumInterfaces"=dword:00000002
"IpInterfaces"=hex:30,6a,ee,04,2a,77,25,45,97,9a,c8,8e,85,c3,a0,f4,c1,19,dc,7a,\
5c,d4,56,42,91,b9,e3,ac,60,27,7f,7e
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Parameters\Adapters\{053C95FB-E60F-493B-B269-56E7851415B8}]
"LLInterface"=""
"IpConfig"=hex(7):54,00,63,00,70,00,69,00,70,00,5c,00,50,00,61,00,72,00,61,00,\
6d,00,65,00,74,00,65,00,72,00,73,00,5c,00,49,00,6e,00,74,00,65,00,72,00,66,\
00,61,00,63,00,65,00,73,00,5c,00,7b,00,30,00,35,00,33,00,43,00,39,00,35,00,\
46,00,42,00,2d,00,45,00,36,00,30,00,46,00,2d,00,34,00,39,00,33,00,42,00,2d,\
00,42,00,32,00,36,00,39,00,2d,00,35,00,36,00,45,00,37,00,38,00,35,00,31,00,\
34,00,31,00,35,00,42,00,38,00,7d,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Parameters\Adapters\{758A7B6A-DBCF-4929-AB43-89DB88439C9C}]
"LLInterface"=""
"IpConfig"=hex(7):54,00,63,00,70,00,69,00,70,00,5c,00,50,00,61,00,72,00,61,00,\
6d,00,65,00,74,00,65,00,72,00,73,00,5c,00,49,00,6e,00,74,00,65,00,72,00,66,\
00,61,00,63,00,65,00,73,00,5c,00,7b,00,37,00,35,00,38,00,41,00,37,00,42,00,\
36,00,41,00,2d,00,44,00,42,00,43,00,46,00,2d,00,34,00,39,00,32,00,39,00,2d,\
00,41,00,42,00,34,00,33,00,2d,00,38,00,39,00,44,00,42,00,38,00,38,00,34,00,\
33,00,39,00,43,00,39,00,43,00,7d,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Parameters\Adapters\{9C7FC3C5-27BA-47BA-B3A9-F3F4772D7DC8}]
"LLInterface"=""
"IpConfig"=hex(7):54,00,63,00,70,00,69,00,70,00,5c,00,50,00,61,00,72,00,61,00,\
6d,00,65,00,74,00,65,00,72,00,73,00,5c,00,49,00,6e,00,74,00,65,00,72,00,66,\
00,61,00,63,00,65,00,73,00,5c,00,7b,00,39,00,43,00,37,00,46,00,43,00,33,00,\
43,00,35,00,2d,00,32,00,37,00,42,00,41,00,2d,00,34,00,37,00,42,00,41,00,2d,\
00,42,00,33,00,41,00,39,00,2d,00,46,00,33,00,46,00,34,00,37,00,37,00,32,00,\
44,00,37,00,44,00,43,00,38,00,7d,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Parameters\DNSRegisteredAdapters]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Parameters\Interfaces]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Parameters\Interfaces\{04EE6A30-772A-4525-979A-C88E85C3A0F4}]
"UseZeroBroadcast"=dword:00000000
"EnableDHCP"=dword:00000000
"IPAddress"=hex(7):30,00,2e,00,30,00,2e,00,30,00,2e,00,30,00,00,00,00,00
"SubnetMask"=hex(7):30,00,2e,00,30,00,2e,00,30,00,2e,00,30,00,00,00,00,00
"DefaultGateway"=hex(7):00,00
"EnableDeadGWDetect"=dword:00000001
"DontAddDefaultGateway"=dword:00000000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Parameters\Interfaces\{053C95FB-E60F-493B-B269-56E7851415B8}]
"UseZeroBroadcast"=dword:00000000
"EnableDeadGWDetect"=dword:00000001
"EnableDHCP"=dword:00000001
"IPAddress"=hex(7):30,00,2e,00,30,00,2e,00,30,00,2e,00,30,00,00,00,00,00
"SubnetMask"=hex(7):30,00,2e,00,30,00,2e,00,30,00,2e,00,30,00,00,00,00,00
"DefaultGateway"=hex(7):00,00
"DefaultGatewayMetric"=hex(7):00,00
"NameServer"=""
"Domain"=""
"RegistrationEnabled"=dword:00000001
"RegisterAdapterName"=dword:00000000
"TCPAllowedPorts"=hex(7):30,00,00,00,00,00
"UDPAllowedPorts"=hex(7):30,00,00,00,00,00
"RawIPAllowedProtocols"=hex(7):30,00,00,00,00,00
"NTEContextList"=hex(7):30,00,78,00,30,00,30,00,30,00,30,00,30,00,30,00,30,00,\
32,00,00,00,00,00
"DhcpClassIdBin"=hex:
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Parameters\Interfaces\{758A7B6A-DBCF-4929-AB43-89DB88439C9C}]
"UseZeroBroadcast"=dword:00000000
"EnableDeadGWDetect"=dword:00000001
"EnableDHCP"=dword:00000001
"IPAddress"=hex(7):30,00,2e,00,30,00,2e,00,30,00,2e,00,30,00,00,00,00,00
"SubnetMask"=hex(7):30,00,2e,00,30,00,2e,00,30,00,2e,00,30,00,00,00,00,00
"DefaultGateway"=hex(7):00,00
"DefaultGatewayMetric"=hex(7):00,00
"NameServer"=""
"Domain"=""
"RegistrationEnabled"=dword:00000001
"RegisterAdapterName"=dword:00000000
"TCPAllowedPorts"=hex(7):30,00,00,00,00,00
"UDPAllowedPorts"=hex(7):30,00,00,00,00,00
"RawIPAllowedProtocols"=hex(7):30,00,00,00,00,00
"NTEContextList"=hex(7):30,00,78,00,30,00,30,00,30,00,30,00,30,00,30,00,30,00,\
33,00,00,00,00,00
"DhcpClassIdBin"=hex:
"DhcpServer"="255.255.255.255"
"Lease"=dword:00000000
"LeaseObtainedTime"=dword:4eed17a0
"T1"=dword:4eed17a0
"T2"=dword:4eed17a0
"LeaseTerminatesTime"=dword:7fffffff
"IPAutoconfigurationAddress"="169.254.238.233"
"IPAutoconfigurationMask"="255.255.0.0"
"IPAutoconfigurationSeed"=dword:00000000
"AddressType"=dword:00000001
"IsServerNapAware"=dword:00000000
"DhcpIPAddress"="169.254.238.233"
"DhcpSubnetMask"="255.255.0.0"
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Parameters\Interfaces\{7ADC19C1-D45C-4256-91B9-E3AC60277F7E}]
"UseZeroBroadcast"=dword:00000000
"EnableDHCP"=dword:00000000
"IPAddress"=hex(7):30,00,2e,00,30,00,2e,00,30,00,2e,00,30,00,00,00,00,00
"SubnetMask"=hex(7):30,00,2e,00,30,00,2e,00,30,00,2e,00,30,00,00,00,00,00
"DefaultGateway"=hex(7):00,00
"EnableDeadGWDetect"=dword:00000001
"DontAddDefaultGateway"=dword:00000000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Parameters\Interfaces\{9C7FC3C5-27BA-47BA-B3A9-F3F4772D7DC8}]
"UseZeroBroadcast"=dword:00000000
"EnableDeadGWDetect"=dword:00000001
"EnableDHCP"=dword:00000001
"IPAddress"=hex(7):30,00,2e,00,30,00,2e,00,30,00,2e,00,30,00,00,00,00,00
"SubnetMask"=hex(7):30,00,2e,00,30,00,2e,00,30,00,2e,00,30,00,00,00,00,00
"DefaultGateway"=hex(7):00,00
"DefaultGatewayMetric"=hex(7):00,00
"NameServer"=""
"Domain"=""
"RegistrationEnabled"=dword:00000001
"RegisterAdapterName"=dword:00000000
"TCPAllowedPorts"=hex(7):30,00,00,00,00,00
"UDPAllowedPorts"=hex(7):30,00,00,00,00,00
"RawIPAllowedProtocols"=hex(7):30,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Parameters\PersistentRoutes]
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Parameters\Winsock]
"UseDelayedAcceptance"=dword:00000000
"HelperDllName"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,\
6f,00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,\
00,77,00,73,00,68,00,74,00,63,00,70,00,69,00,70,00,2e,00,64,00,6c,00,6c,00,\
00,00
"MaxSockAddrLength"=dword:00000010
"MinSockAddrLength"=dword:00000010
"Mapping"=hex:0b,00,00,00,03,00,00,00,02,00,00,00,01,00,00,00,06,00,00,00,02,\
00,00,00,01,00,00,00,00,00,00,00,02,00,00,00,00,00,00,00,06,00,00,00,00,00,\
00,00,00,00,00,00,06,00,00,00,00,00,00,00,01,00,00,00,06,00,00,00,02,00,00,\
00,02,00,00,00,11,00,00,00,02,00,00,00,02,00,00,00,00,00,00,00,02,00,00,00,\
00,00,00,00,11,00,00,00,00,00,00,00,00,00,00,00,11,00,00,00,00,00,00,00,02,\
00,00,00,11,00,00,00,02,00,00,00,03,00,00,00,00,00,00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Performance]
"Close"="CloseTcpIpPerformanceData"
"Collect"="CollectTcpIpPerformanceData"
"Library"="Perfctrs.dll"
"Open"="OpenTcpIpPerformanceData"
"Object List"="502 510 546 582 638 658"
"WbemAdapFileSignature"=hex:db,e2,b6,23,53,66,0e,cc,a0,d7,5e,a3,07,a7,17,e9
"WbemAdapFileTime"=hex:22,80,0c,03,6d,eb,c8,01
"WbemAdapFileSize"=dword:00009c00
"WbemAdapStatus"=dword:00000000
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Security]
"Security"=hex:01,00,14,80,90,00,00,00,9c,00,00,00,14,00,00,00,30,00,00,00,02,\
00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,\
00,00,02,00,60,00,04,00,00,00,00,00,14,00,fd,01,02,00,01,01,00,00,00,00,00,\
05,12,00,00,00,00,00,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,\
20,02,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,0b,00,00,00,00,\
00,18,00,fd,01,02,00,01,02,00,00,00,00,00,05,20,00,00,00,23,02,00,00,01,01,\
00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\ServiceProvider]
"Class"=dword:00000008
"DnsPriority"=dword:000007d0
"HostsPriority"=dword:000001f4
"LocalPriority"=dword:000001f3
"ProviderPath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
77,00,73,00,6f,00,63,00,6b,00,33,00,32,00,2e,00,64,00,6c,00,6c,00,00,00
"NetbtPriority"=dword:000007d1
"Name"="TCP/IP"
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\services\tcpip\Enum]
"0"="Root\\LEGACY_TCPIP\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
"INITSTARTFAILED"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_dhcp]
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_dhcp\0000]
"Service"="Dhcp"
"Legacy"=dword:00000001
"ConfigFlags"=dword:00000000
"Class"="LegacyDriver"
"ClassGUID"="{8ECC055D-047F-11D1-A537-0000F8753ED1}"
"DeviceDesc"="DHCP Client"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_tcpip]
"NextInstance"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_tcpip\0000]
"Service"="Tcpip"
"Legacy"=dword:00000001
"ConfigFlags"=dword:00000000
"Class"="LegacyDriver"
"ClassGUID"="{8ECC055D-047F-11D1-A537-0000F8753ED1}"
"DeviceDesc"="TCP/IP Protocol Driver"
"Capabilities"=dword:00000000
"Driver"="{8ECC055D-047F-11D1-A537-0000F8753ED1}\\0040"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_tcpip\0000\LogConf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_tcpip\0000\Control]