Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Windows Registry Editor Version 5.00
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server]
- "AllowRemoteRPC"=dword:00000001
- "DelayConMgrTimeout"=dword:00000000
- "DeleteTempDirsOnExit"=dword:00000001
- "fDenyTSConnections"=dword:00000000
- "fSingleSessionPerUser"=dword:00000000
- "NotificationTimeOut"=dword:00000000
- "PerSessionTempDir"=dword:00000001
- "ProductVersion"="5.1"
- "RCDependentServices"=hex(7):43,00,65,00,72,00,74,00,50,00,72,00,6f,00,70,00,\
- 53,00,76,00,63,00,00,00,53,00,65,00,73,00,73,00,69,00,6f,00,6e,00,45,00,6e,\
- 00,76,00,00,00,00,00
- "SessionDirectoryActive"=dword:00000000
- "SessionDirectoryCLSID"="{005a9c68-e216-4b27-8f59-b336829b3868}"
- "SessionDirectoryExCLSID"="{ec98d957-48ad-436d-90be-bc291f42709c}"
- "SessionDirectoryExposeServerIP"=dword:00000001
- "SnapshotMonitors"="1"
- "StartRCM"=dword:00000000
- "TSUserEnabled"=dword:00000000
- "InstanceID"="760199f6-1fd5-4e48-9d29-2fe2357"
- "GlassSessionId"=dword:00000001
- "updateRDStatus"=dword:00000001
- "TSAdvertise"=dword:00000001
- "TSAppCompat"=dword:00000001
- "fDenyTSConnectionsBackup"=dword:00000000
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\AddIns]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\AddIns\ApplidisPrinter]
- "Name"="AdisSUP"
- "Type"=dword:00000003
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\AddIns\Clip Redirector]
- "Name"="RDPClip"
- "Type"=dword:00000003
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\AddIns\DND Redirector]
- "Name"="RDPDND"
- "Type"=dword:00000003
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\AddIns\Dynamic VC]
- "Type"=dword:ffffffff
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\ClusterSettings]
- "SessionDirectoryAdditionalParams"=""
- "SessionDirectoryClusterName"=""
- "SessionDirectoryLocation"=""
- "SessionDirectoryPerf"=dword:00000001
- "SessionDirectoryRedirectionIP"=""
- "LastLSMInstanceID"="760199f6-1fd5-4e48-9d29-2fe2357"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\ConnectionHandler]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\ConnectionHandler\0f0a4bf8-8362-435d-938c-222a518a8b78]
- "CLSID"="2be8bdbb-be09-499d-9a4b-4637e09ae00b"
- "Description"="Default Connection Handler"
- "fAcceptConnection"=dword:00000001
- "Name"="Default Connection Handler"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\ConnectionHandler\49e52265-9c80-4b84-a9d5-7ecf311036ac]
- "CLSID"="13ea11a6-8e1a-40ce-9ea9-03e82b3ed5d9"
- "Description"="Hybrid Connection Handler"
- "fAcceptConnection"=dword:00000001
- "Name"="Hybrid Connection Handler"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\ConnectionHandler\8372117c-3e00-42cb-b434-bcbd81fbc826]
- "CLSID"="6967E9DF-C33F-46AF-8FA2-B7CBA949703B"
- "Description"="Network fairshare connection handler"
- "fAcceptConnection"=dword:00000001
- "Name"="Network fairshare connection handler"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\ConnectionHandler\85295bcb-1dfe-45cc-afb2-1cd2ab0f37ad]
- "CLSID"="1fefd825-016b-484c-a0aa-616c5f371c1f"
- "Description"="Session Directory Client Connection handler"
- "fAcceptConnection"=dword:00000001
- "Name"="Session Directory Client"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\ConnectionHandler\88f5767d-d13f-404d-a348-8b8e030294a9]
- "CLSID"="2be8bdbb-be09-499d-9a4b-4637e09ae00b"
- "Description"="Default Connection Handler"
- "fAcceptConnection"=dword:00000001
- "Name"="Default Connection Handler"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\ConnectionHandler\eddcc3ce-6e7e-4f4b-8439-3d9ad4c9440f]
- "CLSID"="2be8bdbb-be09-499d-9a4b-4637e09ae00b"
- "Description"="Default Connection Handler"
- "fAcceptConnection"=dword:00000001
- "Name"="Default Connection Handler"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration]
- "Callback"=dword:00000000
- "CallbackNumber"=""
- "Domain"=""
- "fInheritAutoLogon"=dword:00000001
- "fInheritCallback"=dword:00000000
- "fInheritCallbackNumber"=dword:00000000
- "fInheritInitialProgram"=dword:00000001
- "fInheritMaxDisconnectionTime"=dword:00000000
- "fInheritMaxIdleTime"=dword:00000000
- "fInheritMaxSessionTime"=dword:00000000
- "fInheritReconnectSame"=dword:00000000
- "fInheritResetBroken"=dword:00000000
- "fInheritShadow"=dword:00000000
- "fLogonDisabled"=dword:00000000
- "fPromptForPassword"=dword:00000000
- "fReconnectSame"=dword:00000000
- "fResetBroken"=dword:00000000
- "InitialProgram"=""
- "KeyboardLayout"=dword:00000000
- "MaxConnectionTime"=dword:00000000
- "MaxDisconnectionTime"=dword:00000000
- "MaxIdleTime"=dword:00000000
- "NWLogonServer"=""
- "Password"=""
- "Shadow"=dword:00000001
- "UserName"=""
- "WorkDirectory"=""
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\KeyboardType Mapping]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\KeyboardType Mapping\JPN]
- "00000000"="kbd101.dll"
- "000000000017"="kbdlk41a.dll"
- "00000001"="kbdax2.dll"
- "00000002"="kbd106.dll"
- "000000020015"="kbdnecAT.dll"
- "000000020017"="kbdlk41j.dll"
- "00000003"="kbdibm02.dll"
- "00000D01"="kbdnecNT.dll"
- "00000D04"="kbdnecNT.dll"
- "00010002"="kbd106n.dll"
- "00010D01"="kbdnec95.dll"
- "00010D04"="kbdnec95.dll"
- "00020002"="f3ahvoas.dll"
- "00020D01"="kbdnecAT.dll"
- "00020D04"="kbdnecAT.dll"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\KeyboardType Mapping\KOR]
- "00000003"="kbd101a.dll"
- "00000004"="kbd101b.dll"
- "00000005"="kbd101c.dll"
- "00000006"="kbd103.dll"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\RCM]
- "Certificate"=hex:01,00,00,00,01,00,00,00,01,00,00,00,06,00,1c,01,52,53,41,31,\
- 08,01,00,00,00,08,00,00,ff,00,00,00,01,00,01,00,41,74,ed,96,54,5c,0e,e3,78,\
- c6,55,5a,4f,a0,d6,ee,25,53,86,08,f2,69,96,d9,34,7d,8d,af,74,3d,23,3e,fa,2c,\
- 21,92,aa,89,9f,0b,91,5c,6c,65,f2,da,40,9a,81,09,da,8f,3a,80,61,5a,2e,49,46,\
- d5,a5,10,3c,32,3d,e5,80,61,a5,79,3d,4c,63,1b,7b,a1,25,fa,76,1c,78,39,6f,cf,\
- b0,16,5d,02,0f,be,1a,c4,ed,f4,48,2e,13,47,67,a9,f3,ad,37,e5,b2,9e,2f,e9,2e,\
- 8f,70,20,7b,0c,1b,06,34,12,5f,dd,be,89,c1,3c,6c,b1,36,c2,e9,0f,ed,64,e7,a1,\
- f5,95,fa,54,3f,12,05,d0,1d,fb,03,b8,7c,5c,2f,43,15,f3,63,17,f0,80,41,0c,78,\
- b9,74,4b,13,31,37,bc,3c,28,d3,38,c2,e2,31,88,46,4e,7e,df,fa,37,60,4a,ad,b5,\
- 03,b9,ff,52,8c,da,e9,5c,dd,d9,a5,a6,af,12,58,2c,17,2e,f0,7d,92,36,c7,38,5b,\
- a5,b6,79,99,3b,e4,b9,34,a3,ea,16,0d,08,3b,f8,9b,c6,19,e3,8c,07,de,7f,5b,2e,\
- d3,04,0b,5c,c7,ba,f2,a4,34,a6,15,15,03,39,90,56,b1,75,2d,b7,b4,e1,00,00,00,\
- 00,00,00,00,00,08,00,48,00,a0,73,7b,93,fb,89,e1,ff,59,92,85,ff,f6,55,52,1f,\
- c8,34,35,65,b3,f5,36,da,5a,74,e6,21,4b,e0,6f,c8,ec,dd,c6,ab,24,33,99,1b,b9,\
- 93,cf,7d,e6,f6,55,de,1c,4b,82,17,3f,c5,60,ac,dd,8e,4c,25,00,aa,0a,10,00,00,\
- 00,00,00,00,00,00
- "CertificateOld"=hex:01,00,00,00,01,00,00,00,01,00,00,00,06,00,5c,00,52,53,41,\
- 31,48,00,00,00,00,02,00,00,3f,00,00,00,01,00,01,00,c1,72,76,ba,32,56,66,45,\
- 3d,fb,16,bb,58,1f,e4,93,82,7d,db,bf,8a,9c,ae,6f,6e,5d,b9,5b,10,c4,d1,d5,e0,\
- 12,e1,54,46,f0,70,f8,28,1f,34,70,4a,da,88,74,04,45,a9,8b,a9,98,cd,26,a0,81,\
- 34,5d,d4,5f,dc,bf,00,00,00,00,00,00,00,00,08,00,48,00,53,c5,1a,6d,06,42,7e,\
- 78,51,b8,53,ee,43,ce,4a,4d,30,8b,df,2a,b0,2f,40,b0,13,17,21,dd,58,f6,9c,3d,\
- b9,e7,41,71,24,49,40,88,e1,fd,05,b3,48,49,82,3d,67,cb,d5,a1,10,75,c0,28,89,\
- 2b,37,09,d2,02,9c,52,00,00,00,00,00,00,00,00
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\RCM\GracePeriod]
- "L$RTMTIMEBOMB_1320153D-8DA3-4e8e-B27B-0D888223A588"=hex:01,00,00,00,d0,8c,9d,\
- df,01,15,d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,25,7f,65,ea,d2,01,26,44,\
- bb,ce,27,fb,7c,6b,66,52,04,00,00,00,02,00,00,00,00,00,10,66,00,00,00,01,00,\
- 00,20,00,00,00,15,2b,eb,1c,18,26,45,b7,1f,88,77,a5,f0,07,56,7c,a2,44,b1,11,\
- c0,91,79,7c,f8,42,72,98,cf,5f,04,1c,00,00,00,00,0e,80,00,00,00,02,00,00,20,\
- 00,00,00,2d,df,c9,45,7d,cf,d1,23,96,d0,d6,96,5c,22,99,f3,47,3c,3f,c6,ff,16,\
- 80,77,67,54,02,b5,b6,8c,b3,9c,10,00,00,00,87,77,bc,1f,16,9f,43,82,e5,68,05,\
- ff,54,78,34,0d,40,00,00,00,d8,c7,fa,68,3c,6c,dd,30,86,04,7b,f0,1d,28,d2,c1,\
- 6a,5b,eb,3e,06,11,af,c3,4c,b6,15,e2,a1,91,55,2a,3d,2a,f0,06,79,90,cf,ec,e9,\
- 87,25,9e,e9,93,31,e7,00,ba,4f,84,63,4e,d3,03,e1,b0,12,c4,50,f9,1c,b1
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\RCM\Licensing Core]
- "LicensingMode"=dword:00000005
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\SessionArbitrationHelper]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\SessionArbitrationHelper\SessionDirectory]
- "CLSID"="c9fcb054-949a-4088-ba5b-8ee5caec5c69"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\SysProcs]
- "clipsrv.exe"=dword:00000000
- "conime.exe"=dword:00000000
- "ctfmon.exe"=dword:00000000
- "dwm.exe"=dword:00000000
- "imepadsv.exe"=dword:00000000
- "lmsvcs.exe"=dword:00000000
- "MsgSvc.exe"=dword:00000000
- "MSOSYNC.exe"=dword:00000000
- "MSOUC.exe"=dword:00000000
- "nddeagnt.exe"=dword:00000000
- "netdde.exe"=dword:00000000
- "NETSTRS.EXE"=dword:00000000
- "os2srv.exe"=dword:00000000
- "proquota.exe"=dword:00000000
- "rdpclip.exe"=dword:00000000
- "rdpinput.exe"=dword:00000000
- "screg.exe"=dword:00000000
- "ServerManagerLauncher.exe"=dword:00000000
- "TaskEng.exe"=dword:00000000
- "Taskhost.exe"=dword:00000000
- "Taskhostex.exe"=dword:00000000
- "Tlsbln.exe"=dword:00000000
- "wfshell.exe"=dword:00000000
- "win.com"=dword:00000000
- "AdisSUP.exe"=dword:00000000
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\TerminalTypes]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\TerminalTypes\0f0a4bf8-8362-435d-938c-222a518a8b78]
- "Name"="RDP Regular Desktop Terminal"
- "SessionSource"=dword:00000001
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\TerminalTypes\0f0a4bf8-8362-435d-938c-222a518a8b78\ReconCompat]
- "49e52265-9c80-4b84-a9d5-7ecf311036ac"=dword:00000001
- "88f5767d-d13f-404d-a348-8b8e030294a9"=dword:00000000
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\TerminalTypes\49e52265-9c80-4b84-a9d5-7ecf311036ac]
- "Name"="RDP Hybrid Terminal"
- "SessionSource"=dword:00000001
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\TerminalTypes\49e52265-9c80-4b84-a9d5-7ecf311036ac\ReconCompat]
- "0f0a4bf8-8362-435d-938c-222a518a8b78"=dword:00000001
- "88f5767d-d13f-404d-a348-8b8e030294a9"=dword:00000000
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\TerminalTypes\88f5767d-d13f-404d-a348-8b8e030294a9]
- "LicenseType"="45344fe7-00e6-4ac6-9f01-d01fd4ffadfb"
- "Name"="Service Terminal"
- "SessionSource"=dword:00000003
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\TerminalTypes\88f5767d-d13f-404d-a348-8b8e030294a9\ReconCompat]
- "0f0a4bf8-8362-435d-938c-222a518a8b78"=dword:00000001
- "49e52265-9c80-4b84-a9d5-7ecf311036ac"=dword:00000001
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\TerminalTypes\eddcc3ce-6e7e-4f4b-8439-3d9ad4c9440f]
- "Name"="Remote Applications Terminal"
- "SessionSource"=dword:00000001
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\TSAppSrv]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\TSAppSrv\TSMSI]
- "ComponentDLL"="%SystemRoot%\\system32\\TSMSISrv.dll"
- "Enable"=dword:00000001
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\TSAppSrv\VirtualIP]
- "ComponentDLL"="%SystemRoot%\\system32\\TSVIPSrv.dll"
- "EnableVirtualIP"=dword:00000000
- "VirtualizeLoopbackAdresses"=dword:00000000
- "VirtualMode"=dword:00000001
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\TSAppSrv\VirtualIP\PerApp]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\TSAppSrv\VirtualIP\PerSession]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Utilities]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Utilities\change]
- "logon"=hex(7):30,00,00,00,31,00,00,00,4c,00,4f,00,47,00,4f,00,4e,00,00,00,63,\
- 00,68,00,67,00,6c,00,6f,00,67,00,6f,00,6e,00,2e,00,65,00,78,00,65,00,00,00,\
- 00,00
- "port"=hex(7):30,00,00,00,31,00,00,00,50,00,4f,00,52,00,54,00,00,00,63,00,68,\
- 00,67,00,70,00,6f,00,72,00,74,00,2e,00,65,00,78,00,65,00,00,00,00,00
- "user"=hex(7):30,00,00,00,31,00,00,00,55,00,53,00,45,00,52,00,00,00,63,00,68,\
- 00,67,00,75,00,73,00,72,00,2e,00,65,00,78,00,65,00,00,00,00,00
- "winsta"=hex(7):31,00,00,00,57,00,49,00,4e,00,53,00,54,00,41,00,00,00,63,00,68,\
- 00,67,00,6c,00,6f,00,67,00,6f,00,6e,00,2e,00,65,00,78,00,65,00,00,00,00,00
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Utilities\query]
- "appserver"=hex(7):30,00,00,00,32,00,00,00,54,00,45,00,52,00,4d,00,53,00,45,00,\
- 52,00,56,00,45,00,52,00,00,00,71,00,61,00,70,00,70,00,73,00,72,00,76,00,2e,\
- 00,65,00,78,00,65,00,00,00,00,00
- "process"=hex(7):30,00,00,00,31,00,00,00,50,00,52,00,4f,00,43,00,45,00,53,00,\
- 53,00,00,00,71,00,70,00,72,00,6f,00,63,00,65,00,73,00,73,00,2e,00,65,00,78,\
- 00,65,00,00,00,00,00
- "session"=hex(7):30,00,00,00,31,00,00,00,53,00,45,00,53,00,53,00,49,00,4f,00,\
- 4e,00,00,00,71,00,77,00,69,00,6e,00,73,00,74,00,61,00,2e,00,65,00,78,00,65,\
- 00,00,00,00,00
- "user"=hex(7):30,00,00,00,31,00,00,00,55,00,53,00,45,00,52,00,00,00,71,00,75,\
- 00,73,00,65,00,72,00,2e,00,65,00,78,00,65,00,00,00,00,00
- "winsta"=hex(7):31,00,00,00,57,00,49,00,4e,00,53,00,54,00,41,00,00,00,71,00,77,\
- 00,69,00,6e,00,73,00,74,00,61,00,2e,00,65,00,78,00,65,00,00,00,00,00
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Utilities\reset]
- "session"=hex(7):30,00,00,00,31,00,00,00,53,00,45,00,53,00,53,00,49,00,4f,00,\
- 4e,00,00,00,72,00,77,00,69,00,6e,00,73,00,74,00,61,00,2e,00,65,00,78,00,65,\
- 00,00,00,00,00
- "winsta"=hex(7):31,00,00,00,57,00,49,00,4e,00,53,00,54,00,41,00,00,00,72,00,77,\
- 00,69,00,6e,00,73,00,74,00,61,00,2e,00,65,00,78,00,65,00,00,00,00,00
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\VIDEO]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\VIDEO\disc]
- "\\Device\\Video0"="\\REGISTRY\\Machine\\System\\CurrentControlSet\\Services\\TSDDD\\Device0"
- "VgaCompatible"="\\Device\\Video0"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\VIDEO\rdpudd]
- "\\Device\\Video0"="\\REGISTRY\\Machine\\System\\CurrentControlSet\\Services\\RDPUDD\\Device0"
- "VgaCompatible"="\\Device\\Video0"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\VIDEO\workerdd]
- "\\Device\\Video0"="\\REGISTRY\\Machine\\System\\CurrentControlSet\\Services\\workerdd\\Device0"
- "VgaCompatible"="\\Device\\Video0"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd]
- "AudioEnumeratorDll"="rdpendp.dll"
- "BaudRate"=dword:0000e100
- "ByteSize"=dword:00000008
- "CfgDll"="RDPCFGEX.DLL"
- "ColorDepth"=dword:00000003
- "ConnectType"=dword:00000001
- "DeviceName"=""
- "fAutoClientDrives"=dword:00000001
- "fAutoClientLpts"=dword:00000001
- "fDisableAudioCapture"=dword:00000000
- "fDisableCam"=dword:00000000
- "fDisableCcm"=dword:00000000
- "fDisableCdm"=dword:00000000
- "fDisableClip"=dword:00000000
- "fDisableCpm"=dword:00000000
- "fDisableEncryption"=dword:00000001
- "fDisableLPT"=dword:00000000
- "fEnableBreakDisconnect"=dword:00000000
- "fEnableDsrSensitivity"=dword:00000000
- "fEnableDTR"=dword:00000001
- "fEnableRTS"=dword:00000001
- "fFlowSoftwareRx"=dword:00000001
- "fFlowSoftwareTx"=dword:00000001
- "fForceClientLptDef"=dword:00000001
- "fInheritAutoClient"=dword:00000001
- "FlowHardwareRx"=dword:00000001
- "FlowHardwareTx"=dword:00000001
- "FlowType"=dword:00000001
- "InputBufferLength"=dword:00000800
- "LoadableProtocol_Object"="{5828227c-20cf-4408-b73f-73ab70b8849f}"
- "MinEncryptionLevel"=dword:00000002
- "Parity"=dword:00000000
- "SelectNetworkDetect"=dword:00000001
- "SelectTransport"=dword:00000002
- "StartupPrograms"="rdpclip"
- "StopBits"=dword:00000000
- "WdFlag"=dword:00000036
- "WdName"="Microsoft RDP 8.0"
- "WdPrefix"="RDP"
- "XoffChar"=dword:00000013
- "XonChar"=dword:00000011
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd\Pds]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd\Pds\tssecsrv]
- "PdClass"=dword:0000000b
- "PdDLL"="tssecsrv"
- "PdFlag"=dword:00000000
- "PdName"="tssecsrv"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd\Tds]
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd\Tds\tcp]
- "InteractiveDelay"=dword:0000000a
- "OutBufCount"=dword:00000006
- "OutBufDelay"=dword:00000064
- "OutBufLength"=dword:00000212
- "PdClass"=dword:00000002
- "PdDLL"="tdtcp"
- "PdFlag"=dword:0000004e
- "PdName"="tcp"
- "PortNumber"=dword:00000d3d
- "RequiredPds"=hex(7):74,00,73,00,73,00,65,00,63,00,73,00,72,00,76,00,00,00,00,\
- 00
- "ServiceName"="tcpip"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations]
- "ConsoleSecurity"=hex:01,00,14,80,84,00,00,00,90,00,00,00,00,00,00,00,14,00,00,\
- 00,02,00,70,00,05,00,00,00,00,00,14,00,bf,03,0f,00,01,01,00,00,00,00,00,05,\
- 12,00,00,00,00,00,14,00,81,00,00,00,01,01,00,00,00,00,00,05,13,00,00,00,00,\
- 00,14,00,81,00,00,00,01,01,00,00,00,00,00,05,14,00,00,00,00,00,18,00,bf,03,\
- 0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,14,00,01,00,00,\
- 00,01,01,00,00,00,00,00,05,04,00,00,00,01,01,00,00,00,00,00,05,12,00,00,00,\
- 01,01,00,00,00,00,00,05,12,00,00,00
- "DefaultSecurity"=hex:01,00,14,80,b8,00,00,00,c4,00,00,00,14,00,00,00,30,00,00,\
- 00,02,00,1c,00,01,00,00,00,02,80,14,00,21,01,00,00,01,01,00,00,00,00,00,01,\
- 00,00,00,00,02,00,88,00,06,00,00,00,00,00,14,00,01,00,00,00,01,01,00,00,00,\
- 00,00,05,04,00,00,00,00,00,14,00,bf,03,0f,00,01,01,00,00,00,00,00,05,12,00,\
- 00,00,00,00,14,00,89,00,0f,00,01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,\
- 00,81,00,00,00,01,01,00,00,00,00,00,05,14,00,00,00,00,00,18,00,bf,03,0f,00,\
- 01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,18,00,21,01,00,00,01,\
- 02,00,00,00,00,00,05,20,00,00,00,2b,02,00,00,01,01,00,00,00,00,00,05,12,00,\
- 00,00,01,01,00,00,00,00,00,05,12,00,00,00
- "SelfSignedCertificate"=hex:9d,3f,d4,4d,0d,dc,7e,4b,cc,dd,4e,84,40,39,2a,6e,0a,\
- b9,9b,1b
- "SelfSignedCertStore"="Remote Desktop"
- "Flags"=dword:00000001
- "ConsoleSecurity_RA"=hex:01,00,14,80,9c,00,00,00,a8,00,00,00,00,00,00,00,14,00,\
- 00,00,02,00,88,00,06,00,00,00,00,00,14,00,01,00,00,00,01,01,00,00,00,00,00,\
- 05,04,00,00,00,00,00,14,00,bf,03,0f,00,01,01,00,00,00,00,00,05,12,00,00,00,\
- 00,00,14,00,89,00,0f,00,01,01,00,00,00,00,00,05,13,00,00,00,00,00,14,00,81,\
- 00,00,00,01,01,00,00,00,00,00,05,14,00,00,00,00,00,18,00,bf,03,0f,00,01,02,\
- 00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,00,18,00,21,01,00,00,01,02,00,\
- 00,00,00,00,05,20,00,00,00,2b,02,00,00,01,01,00,00,00,00,00,05,12,00,00,00,\
- 01,01,00,00,00,00,00,05,12,00,00,00
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\Console]
- "Shadow"=dword:00000001
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\Console\RDP]
- "InteractiveDelay"=dword:00000032
- "OutBufDelay"=dword:00000064
- "PdClass"=dword:00000002
- "PdDLL"="tdtcp"
- "PdFlag"=dword:0000004e
- "PdName"="tcp"
- "WdFlag"=dword:00000034
- "WdName"="Microsoft RDP 8.0"
- "WdPrefix"="RDP"
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp]
- "AudioEnumeratorDll"="rdpendp.dll"
- "Callback"=dword:00000000
- "CallbackNumber"=""
- "CdClass"=dword:00000000
- "CdDLL"=""
- "CdFlag"=dword:00000000
- "CdName"=""
- "CfgDll"="RDPCFGEX.DLL"
- "ColorDepth"=dword:00000003
- "Comment"=""
- "Domain"=""
- "DrawGdiplusSupportLevel"=dword:00000001
- "fAllowSecProtocolNegotiation"=dword:00000001
- "fAutoClientDrives"=dword:00000001
- "fAutoClientLpts"=dword:00000001
- "fDisableAudioCapture"=dword:00000000
- "fDisableCam"=dword:00000000
- "fDisableCcm"=dword:00000000
- "fDisableCdm"=dword:00000000
- "fDisableClip"=dword:00000000
- "fDisableCpm"=dword:00000000
- "fDisableEncryption"=dword:00000001
- "fDisableExe"=dword:00000000
- "fDisableLPT"=dword:00000000
- "fEnableWinStation"=dword:00000001
- "fForceClientLptDef"=dword:00000001
- "fHomeDirectoryMapRoot"=dword:00000000
- "fInheritAutoClient"=dword:00000000
- "fInheritAutoLogon"=dword:00000001
- "fInheritCallback"=dword:00000000
- "fInheritCallbackNumber"=dword:00000001
- "fInheritColorDepth"=dword:00000000
- "fInheritInitialProgram"=dword:00000001
- "fInheritMaxDisconnectionTime"=dword:00000000
- "fInheritMaxIdleTime"=dword:00000000
- "fInheritMaxSessionTime"=dword:00000000
- "fInheritReconnectSame"=dword:00000001
- "fInheritResetBroken"=dword:00000000
- "fInheritSecurity"=dword:00000000
- "fInheritShadow"=dword:00000001
- "fLogonDisabled"=dword:00000000
- "fPromptForPassword"=dword:00000000
- "fReconnectSame"=dword:00000000
- "fResetBroken"=dword:00000000
- "fUseDefaultGina"=dword:00000000
- "InitialProgram"=""
- "InputBufferLength"=dword:00000800
- "InteractiveDelay"=dword:00000032
- "KeepAliveTimeout"=dword:00000000
- "KeyboardLayout"=dword:00000000
- "LanAdapter"=dword:00000000
- "LoadableProtocol_Object"="{5828227c-20cf-4408-b73f-73ab70b8849f}"
- "MaxConnectionTime"=dword:00000000
- "MaxDisconnectionTime"=dword:00000000
- "MaxIdleTime"=dword:00000000
- "MaxInstanceCount"=dword:ffffffff
- "MinEncryptionLevel"=dword:00000002
- "NWLogonServer"=""
- "OutBufCount"=dword:00000006
- "OutBufDelay"=dword:00000064
- "OutBufLength"=dword:00000212
- "Password"=""
- "PdClass"=dword:00000002
- "PdClass1"=dword:0000000b
- "PdDLL"="tdtcp"
- "PdDLL1"="tssecsrv"
- "PdFlag"=dword:0000004e
- "PdFlag1"=dword:00000000
- "PdName"="tcp"
- "PdName1"="tssecsrv"
- "PortNumber"=dword:00000d3d
- "SecurityLayer"=dword:00000001
- "SelectNetworkDetect"=dword:00000001
- "SelectTransport"=dword:00000002
- "Shadow"=dword:00000001
- "UserAuthentication"=dword:00000000
- "Username"=""
- "WdFlag"=dword:00000036
- "WdName"="Microsoft RDP 8.0"
- "WdPrefix"="RDP"
- "WebSocketListenerPort"=dword:00000d3b
- "WebSocketTlsListenerPort"=dword:00000d40
- "WFProfilePath"=""
- "WorkDirectory"=""
- "WebSocketUri"="http://+:3387/rdp/"
- "UserAuthenticationBackup"=dword:00000000
- "fDenyTSConnections"=dword:00000000
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\TSMMRemotingAllowedApps]
- "ehshell.exe"=dword:00000002
- [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\VideoRemotingWindowNames]
- "AGFullScreenWinClass"="*"
- "EVRVideoHandler"="*"
- "MacromediaFlashPlayerActiveX"="*"
- "MicrosoftSilverlight"="*"
- "ShockwaveFlashFullScreen"="*"
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement