<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v3" manifestVersion="1.0" copyright="Copyright (c) Microsoft Corporation. All Rights Reserved.">
  <assemblyIdentity name="Microsoft-Windows-Services-ServiceController-MinWin" version="10.0.26100.8521" processorArchitecture="amd64" language="neutral" buildType="release" publicKeyToken="31bf3856ad364e35" versionScope="nonSxS" />
  <dependency discoverable="no" resourceType="Resources">
    <dependentAssembly>
      <assemblyIdentity name="Microsoft-Windows-Services-ServiceController.Resources" version="10.0.26100.8521" processorArchitecture="amd64" language="*" buildType="release" publicKeyToken="31bf3856ad364e35" />
    </dependentAssembly>
  </dependency>
  <file name="services.exe" destinationPath="$(runtime.system32)\" sourceName="services.exe" importPath="$(build.nttree)\" sourcePath=".\">
    <securityDescriptor name="WRP_FILE_DEFAULT_SDDL" />
    <asmv2:hash xmlns:asmv2="urn:schemas-microsoft-com:asm.v2" xmlns:dsig="http://www.w3.org/2000/09/xmldsig#">
      <dsig:Transforms>
        <dsig:Transform Algorithm="urn:schemas-microsoft-com:HashTransforms.Identity" />
      </dsig:Transforms>
      <dsig:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha256" />
      <dsig:DigestValue>Oi9/ALJK5ykeKpVX6bFr5MaEa3JaJqytXtZduVHWRQg=</dsig:DigestValue>
    </asmv2:hash>
  </file>
  <directories>
    <directory destinationPath="$(runtime.system32)\LogFiles\Scm">
      <securityDescriptor name="WRP_PARENT_DIR_DEFAULT_SDDL" />
    </directory>
    <directory destinationPath="$(runtime.windows)\ServiceState">
      <securityDescriptor name="SERVICE_FILE_STATE_ROOT_SDDL" />
    </directory>
  </directories>
  <registryKeys>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog">
      <securityDescriptor name="WINEVT-LOG-SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\System\Service Control Manager">
      <registryValue name="ProviderGuid" valueType="REG_SZ" value="{555908D1-A6D7-4695-8E1E-26931D2012F4}" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control">
      <registryValue name="PreshutdownOrder" valueType="REG_MULTI_SZ" value="&quot;DeviceInstall&quot;,&quot;UsoSvc&quot;,&quot;wuauserv&quot;,&quot;dosvc&quot;,&quot;gpsvc&quot;,&quot;trustedinstaller&quot;" />
      <registryValue name="EarlyStartServices" valueType="REG_MULTI_SZ" value="&quot;RpcSs&quot;,&quot;Power&quot;,&quot;BrokerInfrastructure&quot;,&quot;SystemEventsBroker&quot;,&quot;DcomLaunch&quot;,&quot;RpcEpMapper&quot;,&quot;LSM&quot;,&quot;AppIdSvc&quot;" operationHint="replace" />
      <overridable name="EarlyStartServices" scope="Microsoft" type="REG_MULTI_SZ" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\ScEvents">
      <securityDescriptor name="ScEventsRegistryKeyACL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\ServiceAggregatedEvents">
      <securityDescriptor name="ScAggregateTriggerRegistryKeyACL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SQMServiceList">
      <registryValue name="SQMServiceList" valueType="REG_SZ" value="netprofm,netman,dcomlaunch" />
      <securityDescriptor name="SQMServiceListRegistryKeyACL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\WMI\Security">
      <registryValue name="0063715b-eeda-4007-9429-ad526f62696e" valueType="REG_BINARY" value="01000480140000002400000000000000340000000102000000000005200000002002000001020000000000052000000020020000020000020300000000001400ff0f120001010000000000051200000000001800ff0f12000102000000000005200000002002000000001400ff0f12000101000000000005130000000000000000002300e82f2300300200005c010101e82f23000a00000aacf90600a20200a081000000a8cf2400010000000300000074f9060081000000220200005d182c77a20200a001000000317e7175d83a250000000000477e7175503023005d182c77810000000000000000000000d83a2500c0f90600d0f82400d0f82400e82f2300fd44737563e9160000000000080000002d010101fcf8060024fa060030fa0600165425770000000000002300d0c2240033002c77000000000000ffff040000005d182c770000000040fa060040bd240001000000000000001cfa0600dcd82b77ec172c7760fa060014fb060030fa06003c162c770000230000000000c8c2240040fa060003182c77d0c224005d182c7788fa06005a2c507560fa06005d182c7760d229770000000018001a00d0f82400000000000000000000000000000000000c00000240fb06000002000000000000d0f8240001000000e0fa06007407137700000000b726110040fd060018fb060040fb06000000000010fb060048261100b3ae1a778c261100000000010000000000000000000000000000000038fb0600b3ae1a77ca261100f4fa0600e4290001ca261100" />
      <registryValue name="06184c97-5201-480e-92af-3a3626c5b140" valueType="REG_BINARY" value="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" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SCMConfig" />
    <registryKey keyName="HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\ServiceState">
      <securityDescriptor name="SERVICE_REGISTRY_STATE_ROOT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\SCM\Regular" />
  </registryKeys>
  <migration settingsVersion="0">
    <migXml xmlns="">
      <rules context="System">
        <include>
          <objectSet>
            <pattern type="Registry">HKLM\SYSTEM\CurrentControlSet\Services\ServiceAggregatedEvents\* [*]</pattern>
            <pattern type="Registry">HKLM\SYSTEM\CurrentControlSet\Control [ServicesPipeTimeout]</pattern>
          </objectSet>
        </include>
        <merge script="MigXmlHelper.DestinationPriority()">
          <objectSet>
            <pattern type="Registry">HKLM\SYSTEM\CurrentControlSet\Services\ServiceAggregatedEvents\* [*]</pattern>
            <pattern type="Registry">HKLM\SYSTEM\CurrentControlSet\Control [ServicesPipeTimeout]</pattern>
          </objectSet>
        </merge>
      </rules>
    </migXml>
    <supportedComponents>
      <supportedComponent>
        <assemblyIdentity name="_" version="1.0.0.0" />
        <supportedComponentIdentity buildType="release" language="neutral" name="Microsoft-Windows-Services-ServiceController-MinWin" processorArchitecture="amd64" publicKeyToken="31bf3856ad364e35" settingsVersionRange="0" versionScope="nonSxS" xmlns="urn:schemas-microsoft-com:asm.v3" />
        <migXml xmlns="">
          <rules context="System">
            <merge script="MigXmlHelper.DestinationPriority()">
              <objectSet>
                <pattern type="Registry">HKLM\SYSTEM\CurrentControlSet\Services\ServiceAggregatedEvents\* [*]</pattern>
                <pattern type="Registry">HKLM\SYSTEM\CurrentControlSet\Control [ServicesPipeTimeout]</pattern>
              </objectSet>
            </merge>
          </rules>
        </migXml>
      </supportedComponent>
    </supportedComponents>
  </migration>
  <instrumentation xmlns:win="http://manifests.microsoft.com/win/2004/08/windows/events">
    <events xmlns="http://schemas.microsoft.com/win/2004/08/events">
      <provider guid="{0063715b-eeda-4007-9429-ad526f62696e}" message="$(string.MicrosoftWindowsServicesProviderName)" messageFileName="%SystemRoot%\system32\services.exe" name="Microsoft-Windows-Services" resourceFileName="%SystemRoot%\system32\services.exe" symbol="MS_Services_Provider">
        <channels>
          <channel chid="defch" name="Microsoft-Windows-Services/Diagnostic" type="Analytic" />
        </channels>
      </provider>
      <provider guid="{06184c97-5201-480e-92af-3a3626c5b140}" message="$(string.MicrosoftWindowsServicesSvchostProviderName)" messageFileName="%SystemRoot%\system32\services.exe" name="Microsoft-Windows-Services-Svchost" resourceFileName="%SystemRoot%\system32\services.exe" symbol="MS_Services_Svchost_Provider">
        <channels>
          <channel chid="defch" name="Microsoft-Windows-Services-Svchost/Diagnostic" type="Analytic" />
        </channels>
      </provider>
      <provider guid="{555908D1-A6D7-4695-8E1E-26931D2012F4}" message="$(string.ServiceControlManagerProviderName)" messageFileName="%SystemRoot%\system32\services.exe" name="Service Control Manager" parameterFileName="%SystemRoot%\system32\kernel32.dll" resourceFileName="%SystemRoot%\system32\services.exe" symbol="S_Service_Control_Manager">
        <channels>
          <importChannel chid="System" name="System" />
        </channels>
      </provider>
      <cmi />
    </events>
  </instrumentation>
  <localization>
    <resources culture="en-US">
      <stringTable>
        <string id="MicrosoftWindowsServicesProviderName" value="Microsoft-Windows-Service Control Manager Performance Diagnostic Provider" />
        <string id="description" value="Service Controller" />
        <string id="displayName" value="Services" />
        <string id="description2" value="Load Order Group Setting" />
        <string id="MicrosoftWindowsServicesSvchostProviderName" value="Microsoft-Windows-Svchost Performance Diagnostic Provider" />
        <string id="ServiceControlManagerProviderName" value="Microsoft-Windows-Service Control Manager" />
        <string id="event_EVENT_SERVICE_START_FAILED" value="The %1 service failed to start due to the following error: %n%2" />
        <string id="event_EVENT_SERVICE_START_FAILED_II" value="The %1 service depends on the %2 service which failed to start because of the following error: %n%3" />
        <string id="event_EVENT_SERVICE_START_FAILED_GROUP" value="The %1 service depends on the %2 group and no member of this group started." />
        <string id="event_EVENT_SERVICE_START_FAILED_NONE" value="The %1 service depends on the following service: %2. This service might not be installed." />
        <string id="event_EVENT_CALL_TO_FUNCTION_FAILED" value="The %1 call failed with the following error: %n%2" />
        <string id="event_EVENT_CALL_TO_FUNCTION_FAILED_II" value="The %1 call failed for %2 with the following error: %n%3" />
        <string id="event_EVENT_REVERTED_TO_LASTKNOWNGOOD" value="The system reverted to its last known good configuration.  The system is restarting...." />
        <string id="event_EVENT_BAD_ACCOUNT_NAME" value="No backslash is in the account name. The account name must be in the form: domain\user." />
        <string id="event_EVENT_CONNECTION_TIMEOUT" value="A timeout was reached (%1 milliseconds) while waiting for the %2 service to connect." />
        <string id="event_EVENT_READFILE_TIMEOUT" value="A timeout (%1 milliseconds) was reached while waiting for ReadFile." />
        <string id="event_EVENT_TRANSACT_TIMEOUT" value="A timeout (%1 milliseconds) was reached while waiting for a transaction response from the %2 service." />
        <string id="event_EVENT_TRANSACT_INVALID" value="The message returned in the transaction has incorrect size." />
        <string id="event_EVENT_FIRST_LOGON_FAILED" value="Logon attempt with current password failed with the following error: %n%1" />
        <string id="event_EVENT_SECOND_LOGON_FAILED" value="Second logon attempt with old password also failed with the following error: %n%1" />
        <string id="event_EVENT_BAD_SERVICE_STATE" value="The %1 service has reported an invalid current state %2." />
        <string id="event_EVENT_CIRCULAR_DEPENDENCY_DEMAND" value="Detected circular dependencies demand starting %1. Check the service dependency tree." />
        <string id="event_EVENT_CIRCULAR_DEPENDENCY_AUTO" value="Detected circular dependencies auto-starting services. Check the service dependency tree." />
        <string id="event_EVENT_DEPEND_ON_LATER_SERVICE" value="The %1 service depends on a service in a group which starts later. Change the order in the service dependency tree to ensure that all services required to start this service are starting before this service is started." />
        <string id="event_EVENT_DEPEND_ON_LATER_GROUP" value="The %1 service depends on a group which starts later. Change the order in the service dependency tree to ensure that all services required to start this service are starting before this service is started." />
        <string id="event_EVENT_SEVERE_SERVICE_FAILED" value="About to revert to the last known good configuration because the %1 service failed to start." />
        <string id="event_EVENT_SERVICE_START_HUNG" value="The %1 service hung on starting." />
        <string id="event_EVENT_SERVICE_EXIT_FAILED" value="The %1 service terminated with the following error: %n%2" />
        <string id="event_EVENT_SERVICE_EXIT_FAILED_SPECIFIC" value="The %1 service terminated with the following service-specific error: %n%2" />
        <string id="event_EVENT_BOOT_SYSTEM_DRIVERS_STOPPED" value="The following boot-start or system-start driver(s) did not load: %1" />
        <string id="event_EVENT_RUNNING_LASTKNOWNGOOD" value="Windows could not be started as configured. Starting Windows using a previous working configuration." />
        <string id="event_EVENT_TAKE_OWNERSHIP" value="The %1 Registry key denied access to SYSTEM account programs so the Service Control Manager took ownership of the Registry key." />
        <string id="event_TITLE_SC_MESSAGE_BOX" value="Service Control Manager %0" />
        <string id="event_EVENT_SERVICE_NOT_INTERACTIVE" value="The %1 service is marked as an interactive service.  However, the system is configured to not allow interactive services.  This service may not function properly." />
        <string id="event_EVENT_SERVICE_CRASH" value="The %1 service terminated unexpectedly.  It has done this %2 time(s).  The following corrective action will be taken in %3 milliseconds: %5." />
        <string id="event_EVENT_SERVICE_RECOVERY_FAILED" value="The Service Control Manager tried to take a corrective action (%2) after the unexpected termination of the %3 service, but this action failed with the following error: %n%4" />
        <string id="event_EVENT_SERVICE_CRASH_NO_ACTION" value="The %1 service terminated unexpectedly.  It has done this %2 time(s)." />
        <string id="event_EVENT_SERVICE_CONTROL_SUCCESS" value="The %1 service was successfully sent a %2 control." />
        <string id="event_EVENT_SERVICE_STATUS_SUCCESS" value="The %1 service entered the %2 state." />
        <string id="event_EVENT_SERVICE_CONFIG_BACKOUT_FAILED" value="The Service Control Manager encountered an error undoing a configuration change to the %1 service.  The service's %2 is currently in an unpredictable state.  If you do not correct this configuration, you may not be able to restart the %1 service or may encounter other errors.  To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC)." />
        <string id="event_EVENT_FIRST_LOGON_FAILED_II" value="The %1 service was unable to log on as %2 with the currently configured password due to the following error: %n%3%n%nTo ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC)." />
        <string id="event_EVENT_SERVICE_DIFFERENT_PID_CONNECTED" value="A service process other than the one launched by the Service Control Manager connected when starting the %1 service.  The Service Control Manager launched process %2 and process %3 connected instead.%n%n  Note that if this service is configured to start under a debugger, this behavior is expected." />
        <string id="event_EVENT_SERVICE_START_TYPE_CHANGED" value="The start type of the %1 service was changed from %2 to %3." />
        <string id="event_EVENT_SERVICE_LOGON_TYPE_NOT_GRANTED" value="The %1 service was unable to log on as %2 with the currently configured password due to the following error: %nLogon failure: the user has not been granted the requested logon type at this computer.%n %nService: %1 %nDomain and account: %2%n %nThis service account does not have the required user right &quot;Log on as a service.&quot;%n %nUser Action%n %nAssign &quot;Log on as a service&quot; to the service account on this computer. You can use Local Security Settings (Secpol.msc) to do this. If this computer is a node in a cluster, check that this user right is assigned to the Cluster service account on all nodes in the cluster.%n %nIf you have already assigned this user right to the service account, and the user right appears to be removed, check with your domain administrator to find out if a Group Policy object associated with this node might be removing the right." />
        <string id="event_EVENT_SERVICE_STOP_SUCCESS_WITH_REASON" value="The %1 service was successfully sent a %2 control.%n%n The reason specified was: %3 [%4]%n%n Comment: %5" />
        <string id="event_EVENT_SERVICE_SHUTDOWN_FAILED" value="The %1 service did not shut down properly after receiving a preshutdown control." />
        <string id="event_EVENT_SERVICE_SLOW_STARTUP" value="The following service is taking more than %2 minutes to start and may have stopped responding: %1%n%nContact your system administrator or service vendor for approximate startup times for this service.%n%nIf you think this service might be slowing system response or logon time, talk to your system administrator about whether the service should be disabled until the problem is identified.%n%nYou may have to restart the computer in safe mode before you can disable the service." />
        <string id="event_EVENT_SERVICE_INSTALL" value="A service was installed in the system.%n%nService Name:  %1%nService File Name:  %2%nService Type:  %3%nService Start Type:  %4%nService Account:  %5" />
        <string id="event_EVENT_SERVICE_UNRESPONSIVE" value="The following service has repeatedly stopped responding to service control requests: %1%n%nContact the service vendor or the system administrator about whether to disable this service until the problem is identified.%n%nYou may have to restart the computer in safe mode before you can disable the service." />
      </stringTable>
    </resources>
  </localization>
  <trustInfo>
    <security>
      <accessControl>
        <securityDescriptorDefinitions>
          <securityDescriptorDefinition name="ScAggregateTriggerRegistryKeyACL" sddl="O:BAG:SYD:P(A;CIIO;KA;;;CO)(A;CI;KA;;;SY)(A;CI;KAKRWDWO;;;BA)(A;CI;KR;;;BU)(A;CI;KR;;;AC)" operationHint="replace" />
          <securityDescriptorDefinition name="ScEventsRegistryKeyACL" sddl="O:BAG:SYD:P(A;OI;KA;;;SY)(A;;KA;;;BA)(A;;KR;;;BU)(A;;KA;;;S-1-5-87-632797755-2961095303-2128297780-1054304204-672148691)" operationHint="replace" />
          <securityDescriptorDefinition name="SQMServiceListRegistryKeyACL" sddl="D:P(A;OI;KA;;;SY)(A;;KR;;;BU)(A;;KRKW;;;S-1-5-87-1990970548-589041977-4026041562-2928935477-2389476198)" operationHint="replace" />
          <securityDescriptorDefinition name="WINEVT-LOG-SDDL" sddl="O:BAG:SYD:P(A;CI;GR;;;AU)(A;CI;GR;;;SO)(A;CI;GA;;;BA)(A;CI;GA;;;SY)" operationHint="replace" />
          <securityDescriptorDefinition name="WRP_PARENT_DIR_DEFAULT_SDDL" sddl="O:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464G:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464D:P(A;CI;GA;;;S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464)(A;;0x1301bf;;;SY)(A;IOCIOI;GA;;;SY)(A;;0x1301bf;;;BA)(A;IOCIOI;GA;;;BA)(A;CIOI;GRGX;;;BU)(A;OICIIO;GA;;;CO)(A;CIOI;GRGX;;;S-1-15-2-1)(A;CIOI;GRGX;;;S-1-15-2-2)" operationHint="replace" />
          <securityDescriptorDefinition name="SERVICE_FILE_STATE_ROOT_SDDL" sddl="O:SYG:SYD:P(A;OICI;FA;;;SY)(A;OICI;FR;;;BA)(A;CI;WP;;;BA)(A;OICI;FR;;;UD)(A;CI;WP;;;UD)(A;CI;WP;;;SU)" operationHint="replace" />
          <securityDescriptorDefinition name="SERVICE_REGISTRY_STATE_ROOT_SDDL" sddl="O:SYG:SYD:P(A;OICI;KA;;;SY)(A;OICI;KR;;;BA)" operationHint="replace" />
          <securityDescriptorDefinition name="WRP_FILE_DEFAULT_SDDL" sddl="O:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464G:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464D:P(A;;FA;;;S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464)(A;;GRGX;;;BA)(A;;GRGX;;;SY)(A;;GRGX;;;BU)(A;;GRGX;;;S-1-15-2-1)(A;;GRGX;;;S-1-15-2-2)S:(AU;FASA;0x000D0116;;;WD)" operationHint="replace" description="Default SDDL for Windows Resource Protected file" />
        </securityDescriptorDefinitions>
      </accessControl>
    </security>
  </trustInfo>
</assembly>