SystemLook 30.07.11 by jpshortstuff Log created at 15:57 on 18/02/2018 by Damian Administrator - Elevation successful WARNING: SystemLook running under WOW64. Use SystemLook_x64 for accurate results. ========== reg ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Schedule] "AtTaskMaxHours"= 0x0000000048 (72) "SvcMemHardLimitInMB"= 0x000000000a (10) "SvcMemMidLimitInMB"= 0x0000000006 (6) "SvcMemSoftLimitInMB"= 0x0000000004 (4) "DisplayName"="@%SystemRoot%\system32\schedsvc.dll,-100" "ErrorControl"= 0x0000000001 (1) "Group"="SchedulerGroup" "ImagePath"="%systemroot%\system32\svchost.exe -k netsvcs -p" "Start"= 0x0000000003 (3) "Type"= 0x0000000020 (32) "Description"="@%SystemRoot%\system32\schedsvc.dll,-101" "DependOnService"="RPCSS SystemEventsBroker" "ObjectName"="LocalSystem" "ServiceSidType"= 0x0000000001 (1) "RequiredPrivileges"="SeIncreaseQuotaPrivilege SeChangeNotifyPrivilege SeImpersonatePrivilege SeAssignPrimaryTokenPrivilege SeTcbPrivilege SeRestorePrivilege SeBackupPrivilege SeSecurityPrivilege SeTakeOwnershipPrivilege SeLoadDriverPrivilege SeSystemProfilePrivilege SeSystemTimePrivilege SeProfileSingleProcessPrivilege SeIncreaseBasePriorityPrivilege SeCreatePageFilePrivilege SeCreatePermanentPrivilege SeShutdownPrivilege SeDebugPrivilege SeAuditPrivilege SeSystemEnvironmentPrivilege SeUndockPrivilege SeManageVolumePrivilege SeIncreaseWorkingSetPrivilege SeTimeZonePrivilege SeCreateSymbolicLinkPrivilege SeLockMemoryPrivilege SeCreateGlobalPrivilege SeDelegateSessionUserImpersonatePrivilege" "FailureActions"=80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 04 00 00 00 00 00 00 00 01 00 00 00 60 ea 00 00 00 00 00 00 00 00 00 00 (REG_BINARY) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Schedule\Parameters] "ServiceDll"="%systemroot%\system32\schedsvc.dll" "ServiceDllUnloadOnStop"= 0x0000000001 (1) "ServiceMain"="ServiceMain" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Schedule\Security] "Security"=01 00 14 80 90 00 00 00 9c 00 00 00 14 00 00 00 30 00 00 00 02 00 1c 00 01 00 00 00 02 80 14 00 ff 01 0f 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 60 00 04 00 00 00 00 00 14 00 8d 00 02 00 01 01 00 00 00 00 00 05 0b 00 00 00 00 00 18 00 dd 01 0e 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 00 14 00 ff 01 0f 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 18 00 8d 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 (REG_BINARY) -= EOF =-