|
1
|
|__ Value Added :
appid = "{39ce474e-59c1-4b84-9be2-2600c335b5c6}"
|
|
2
|
|__ Value Added :
{r7c0db872a3f777c0} = "4a 8d 7d 4c"
|
|
3
|
|__ Value Added :
controlflags = "1"
|
|
4
|
|__ Value Added :
bitnames = "logflaginfo logflagwarning logflagerror logflagfunction logflagrefcount logflagserialize logflagdownload logflagtask logflaglock logflagservice logflagdatabytes logflagtransferdetails"
|
|
5
|
|__ Value Added :
= "%programfiles%\threatfire\tfgui.exe"
|
|
6
|
|__ Value Added :
path = "%programfiles%\threatfire"
|
|
7
|
|__ Value Added :
= "%programfiles%\threatfire\tfservice.exe"
|
|
8
|
|__ Value Added :
= "%programfiles%\threatfire\tftray.exe"
|
|
9
|
|__ Value Added :
path = "%programfiles%\threatfire"
|
|
10
|
|__ Value Added :
= "%programfiles%\threatfire\tfud.exe"
|
|
11
|
|__ Value Added :
path = "%programfiles%\threatfire"
|
|
12
|
|__ Value Added :
threatfire = "%programfiles%\threatfire\tftray.exe"
|
|
13
|
|__ Value Added :
exclusion = "2e 64 62 78 00 2e 6f 73 74 00 2e 6d 62 78 00 2e 64 62 74 00 2e 62 61 6b 00 2e 69 73 6f 00 2e 74 74 66 00 2e 70 73 74 00 00"
|
|
14
|
|__ Value Added :
installdir = "%programfiles%\threatfire"
|
|
15
|
|__ Value Added :
rebootrequired = "0"
|
|
16
|
|__ Value Added :
wscenabled = "0"
|
|
17
|
|__ Value Added :
control = "2"
|
|
18
|
|__ Value Added :
globalcounts = "a3 ba 16 b6 6a 0c 00 00 55 11 22 67 11 00 00 00 53 47 8c 3a 00 00 00 00 b1 bc c5 02 00 00 00 00 e4 b5 04 f1 3e 02 00 00 9f a1 be 0d 05 00 00 00 24 a7 6f 12 00 00 00 00 f4 39 87 00 00 00 00 00 ce 0d a4 03 e5 00 00 00 6b 1f bb 0c 02 00 00 00 b3 d8 eb 06 00 00 00 00 a9 af 38 00 00 00 00 00 50 4d da 80 2f 00 00 00 9f 39 b5 6b 00 00 00 00 57 f6 73 01 00 00 00 00 3b 26 0c 00 00 00 00 00 03 4a 0e 9c 02 00 00 00 13 e2 b5 05 00 00 00 00 2a 1d 13 00 00 00 00 00 41 8d 00 00 00 00 00 00 23 cf 63 b0 06 00 00 00 79 a1 f2 0e 00 00 00 00 1c 11 34 00 00 00 00 00 cf b4 01 00 00 00 00 00"
|
|
19
|
|__ Value Added :
idt = "1238997704"
|
|
20
|
|__ Value Added :
lastupdate = "c9 9d d9 49 00 00 00 00"
|
|
21
|
|__ Value Added :
lastupdatecheck = "29 9d d9 49 00 00 00 00"
|
|
22
|
|__ Value Added :
class = "legacydriver"
|
|
23
|
|__ Value Added :
configflags = "0"
|
|
24
|
|__ Value Added :
legacy = "1"
|
|
25
|
|__ Value Added :
*newlycreated* = "0"
|
|
26
|
|__ Value Added :
class = "legacydriver"
|
|
27
|
|__ Value Added :
configflags = "0"
|
|
28
|
|__ Value Added :
legacy = "1"
|
|
29
|
|__ Value Added :
*newlycreated* = "0"
|
|
30
|
|__ Value Added :
nextinstance = "1"
|
|
31
|
|__ Value Added :
class = "legacydriver"
|
|
32
|
|__ Value Added :
classguid = "{8ecc055d-047f-11d1-a537-0000f8753ed1}"
|
|
33
|
|__ Value Added :
configflags = "0"
|
|
34
|
|__ Value Added :
devicedesc = "tffsmon"
|
|
35
|
|__ Value Added :
legacy = "1"
|
|
36
|
|__ Value Added :
service = "tffsmon"
|
|
37
|
|__ Value Added :
*newlycreated* = "0"
|
|
38
|
|__ Value Added :
activeservice = "tffsmon"
|
|
39
|
|__ Value Added :
nextinstance = "1"
|
|
40
|
|__ Value Added :
class = "legacydriver"
|
|
41
|
|__ Value Added :
classguid = "{8ecc055d-047f-11d1-a537-0000f8753ed1}"
|
|
42
|
|__ Value Added :
configflags = "0"
|
|
43
|
|__ Value Added :
devicedesc = "tfnetmon"
|
|
44
|
|__ Value Added :
legacy = "1"
|
|
45
|
|__ Value Added :
service = "tfnetmon"
|
|
46
|
|__ Value Added :
*newlycreated* = "0"
|
|
47
|
|__ Value Added :
activeservice = "tfnetmon"
|
|
48
|
|__ Value Added :
nextinstance = "1"
|
|
49
|
|__ Value Added :
class = "legacydriver"
|
|
50
|
|__ Value Added :
classguid = "{8ecc055d-047f-11d1-a537-0000f8753ed1}"
|
|
51
|
|__ Value Added :
configflags = "0"
|
|
52
|
|__ Value Added :
devicedesc = "tfsysmon"
|
|
53
|
|__ Value Added :
legacy = "1"
|
|
54
|
|__ Value Added :
service = "tfsysmon"
|
|
55
|
|__ Value Added :
*newlycreated* = "0"
|
|
56
|
|__ Value Added :
activeservice = "tfsysmon"
|
|
57
|
|__ Value Added :
nextinstance = "1"
|
|
58
|
|__ Value Added :
class = "legacydriver"
|
|
59
|
|__ Value Added :
classguid = "{8ecc055d-047f-11d1-a537-0000f8753ed1}"
|
|
60
|
|__ Value Added :
configflags = "0"
|
|
61
|
|__ Value Added :
devicedesc = "threatfire"
|
|
62
|
|__ Value Added :
legacy = "1"
|
|
63
|
|__ Value Added :
service = "threatfire"
|
|
64
|
|__ Value Added :
*newlycreated* = "0"
|
|
65
|
|__ Value Added :
activeservice = "threatfire"
|
|
66
|
|__ Value Added :
count = "1"
|
|
67
|
|__ Value Added :
displayname = "tffsmon"
|
|
68
|
|__ Value Added :
errorcontrol = "1"
|
|
69
|
|__ Value Added :
group = "filter"
|
|
70
|
|__ Value Added :
imagepath = "system32\drivers\tffsmon.sys"
|
|
71
|
|__ Value Added :
start = "0"
|
|
72
|
|__ Value Added :
tag = "8"
|
|
73
|
|__ Value Added :
type = "1"
|
|
74
|
|__ Value Added :
0 = "root\legacy_tffsmon\0000"
|
|
75
|
|__ Value Added :
count = "1"
|
|
76
|
|__ Value Added :
nextinstance = "1"
|
|
77
|
|__ Value Added :
security = "01 00 14 80 90 00 00 00 9c 00 00 00 14 00 00 00 30 00 00 00 02 00 1c 00 01 00 00 00 02 80 14 00 ff 01 0f 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 fd 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 ff 01 0f 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8d 01 02 00 01 01 00 00 00 00 00 05 0b 00 00 00 00 00 18 00 fd 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00"
|
|
78
|
|__ Value Added :
errorcontrol = "0"
|
|
79
|
|__ Value Added :
imagepath = "system32\drivers\tfkbmon.sys"
|
|
80
|
|__ Value Added :
start = "3"
|
|
81
|
|__ Value Added :
tag = "0"
|
|
82
|
|__ Value Added :
type = "0"
|
|
83
|
|__ Value Added :
displayname = "tfnetmon"
|
|
84
|
|__ Value Added :
errorcontrol = "1"
|
|
85
|
|__ Value Added :
imagepath = "\??\%windir%\system32\drivers\tfnetmon.sys"
|
|
86
|
|__ Value Added :
start = "3"
|
|
87
|
|__ Value Added :
type = "1"
|
|
88
|
|__ Value Added :
0 = "root\legacy_tfnetmon\0000"
|
|
89
|
|__ Value Added :
count = "1"
|
|
90
|
|__ Value Added :
nextinstance = "1"
|
|
91
|
|__ Value Added :
security = "01 00 14 80 90 00 00 00 9c 00 00 00 14 00 00 00 30 00 00 00 02 00 1c 00 01 00 00 00 02 80 14 00 ff 01 0f 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 fd 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 ff 01 0f 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8d 01 02 00 01 01 00 00 00 00 00 05 0b 00 00 00 00 00 18 00 fd 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00"
|
|
92
|
|__ Value Added :
displayname = "tfsysmon"
|
|
93
|
|__ Value Added :
errorcontrol = "1"
|
|
94
|
|__ Value Added :
group = "filter"
|
|
95
|
|__ Value Added :
imagepath = "system32\drivers\tfsysmon.sys"
|
|
96
|
|__ Value Added :
start = "0"
|
|
97
|
|__ Value Added :
tag = "7"
|
|
98
|
|__ Value Added :
type = "1"
|
|
99
|
|__ Value Added :
0 = "root\legacy_tfsysmon\0000"
|
|
100
|
|__ Value Added :
count = "1"
|
|
101
|
|__ Value Added :
nextinstance = "1"
|
|
102
|
|__ Value Added :
security = "01 00 14 80 90 00 00 00 9c 00 00 00 14 00 00 00 30 00 00 00 02 00 1c 00 01 00 00 00 02 80 14 00 ff 01 0f 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 fd 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 ff 01 0f 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8d 01 02 00 01 01 00 00 00 00 00 05 0b 00 00 00 00 00 18 00 fd 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00"
|
|
103
|
|__ Value Added :
dependongroup = "00"
|
|
104
|
|__ Value Added :
dependonservice = "52 50 43 53 53 00 00"
|
|
105
|
|__ Value Added :
description = "the threatfire engine responsible for monitoring your system for viruses, spyware, and other malware. turning this service off makes your machine vulnerable to such attacks."
|
|
106
|
|__ Value Added :
displayname = "threatfire"
|
|
107
|
|__ Value Added :
errorcontrol = "1"
|
|
108
|
|__ Value Added :
group = "pctools"
|
|
109
|
|__ Value Added :
imagepath = "%programfiles%\threatfire\tfservice.exe service"
|
|
110
|
|__ Value Added :
objectname = "localsystem"
|
|
111
|
|__ Value Added :
start = "2"
|
|
112
|
|__ Value Added :
type = "272"
|
|
113
|
|__ Value Added :
0 = "root\legacy_threatfire\0000"
|
|
114
|
|__ Value Added :
count = "1"
|
|
115
|
|__ Value Added :
nextinstance = "1"
|
|
116
|
|__ Value Added :
security = "01 00 14 80 a4 00 00 00 b0 00 00 00 14 00 00 00 30 00 00 00 02 00 1c 00 01 00 00 00 02 80 14 00 ff 01 0f 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 74 00 05 00 00 00 00 00 14 00 10 00 00 00 01 01 00 00 00 00 00 01 00 00 00 00 00 00 14 00 fd 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 ff 01 0f 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 8d 01 02 00 01 01 00 00 00 00 00 05 0b 00 00 00 00 00 18 00 fd 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 23 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00"
|