<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v3" manifestVersion="1.0" copyright="Copyright (c) Microsoft Corporation. All Rights Reserved.">
  <assemblyIdentity name="Microsoft-Windows-WBioSrvc" version="10.0.10586.71" processorArchitecture="amd64" language="neutral" buildType="release" publicKeyToken="31bf3856ad364e35" versionScope="nonSxS" />
  <dependency discoverable="no" resourceType="resources">
    <dependentAssembly>
      <assemblyIdentity name="Microsoft-Windows-WBioSrvc.Resources" version="10.0.10586.71" processorArchitecture="amd64" language="*" buildType="release" publicKeyToken="31bf3856ad364e35" />
    </dependentAssembly>
  </dependency>
  <file name="wbiosrvc.dll" destinationPath="$(runtime.system32)\" sourceName="wbiosrvc.dll" sourcePath=".\" importPath="$(build.nttree)\">
    <securityDescriptor name="WRP_FILE_DEFAULT_SDDL" />
    <asmv2:hash xmlns:asmv2="urn:schemas-microsoft-com:asm.v2">
      <dsig:Transforms xmlns:dsig="http://www.w3.org/2000/09/xmldsig#">
        <dsig:Transform Algorithm="urn:schemas-microsoft-com:HashTransforms.Identity" />
      </dsig:Transforms>
      <dsig:DigestMethod xmlns:dsig="http://www.w3.org/2000/09/xmldsig#" Algorithm="http://www.w3.org/2000/09/xmldsig#sha256" />
      <dsig:DigestValue xmlns:dsig="http://www.w3.org/2000/09/xmldsig#">KSaS1qrCp4XSN637x8o9N56Px5+jZqjOfQb1ylzmhms=</dsig:DigestValue>
    </asmv2:hash>
  </file>
  <directories>
    <directory destinationPath="$(runtime.system32)\WinBioDatabase\" owner="true">
      <securityDescriptor name="WRP_PARENT_DIR_DEFAULT_SDDL" />
    </directory>
    <directory destinationPath="$(runtime.system32)\WinBioPlugIns\" owner="true">
      <securityDescriptor name="WRP_PARENT_DIR_DEFAULT_SDDL" />
    </directory>
  </directories>
  <memberships>
    <categoryMembership>
      <id name="Microsoft.Windows.Categories.Services" version="10.0.10586.71" publicKeyToken="31bf3856ad364e35" typeName="Service" />
      <categoryInstance subcategory="WBioSrvc">
        <serviceData name="WBioSrvc" displayName="@%systemroot%\system32\wbiosrvc.dll,-100" errorControl="normal" group="SmartCardGroup" imagePath="%SystemRoot%\system32\svchost.exe -k WbioSvcGroup" start="demand" type="win32ShareProcess" description="@%systemroot%\system32\wbiosrvc.dll,-101" dependOnService="RpcSs,VaultSvc,WUDFSvc" objectName="LocalSystem" requiredPrivileges="SeAssignPrimaryTokenPrivilege,SeIncreaseQuotaPrivilege,SeTcbPrivilege,SeBackupPrivilege,SeRestorePrivilege,SeDebugPrivilege,SeAuditPrivilege,SeChangeNotifyPrivilege,SeImpersonatePrivilege">
          <securityDescriptor name="WBioSrvcSD" />
          <failureActions resetPeriod="-1">
            <actions>
              <action type="none" />
              <action type="none" />
              <action type="none" />
            </actions>
          </failureActions>
          <serviceTrigger xmlns="urn:schemas-microsoft-com:asm.v3" action="start" subtype="RPC_INTERFACE_EVENT" type="NetworkEndpointEvent">
            <triggerData type="string" value="C0E9671E-33C6-4438-9464-56B2E1B1C7B4" />
          </serviceTrigger>
          <serviceTrigger xmlns="urn:schemas-microsoft-com:asm.v3" action="start" subtype="RPC_INTERFACE_EVENT" type="NetworkEndpointEvent">
            <triggerData type="string" value="4BE96A0F-9F52-4729-A51D-C70610F118B0" />
          </serviceTrigger>
        </serviceData>
      </categoryInstance>
    </categoryMembership>
    <categoryMembership>
      <id name="Microsoft.Windows.Categories" version="1.0.0.0" publicKeyToken="365143bb27e7ac8b" typeName="BootRecovery" />
    </categoryMembership>
    <categoryMembership>
      <id name="Microsoft.Windows.Categories" version="1.0.0.0" publicKeyToken="365143bb27e7ac8b" typeName="SvcHost" />
      <categoryInstance subcategory="WbioSvcGroup">
        <serviceGroup xmlns="urn:schemas-microsoft-com:asm.v3" position="last" serviceName="WbioSrvc" />
      </categoryInstance>
    </categoryMembership>
  </memberships>
  <registryKeys>
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Parameters">
      <registryValue name="ServiceDll" valueType="REG_EXPAND_SZ" value="%SystemRoot%\System32\wbiosrvc.dll" />
      <registryValue name="ServiceDllUnloadOnStop" valueType="REG_DWORD" value="0x00000000" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Parameters\Preboot">
      <registryValue name="Identity" valueType="REG_BINARY" value="00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Databases" />
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Service Providers" />
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Service Providers\FacialFeatures">
      <registryValue name="BiometricType" valueType="REG_DWORD" value="0x00000002" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Service Providers\FacialFeatures\Global Configurations">
      <registryValue name="ActiveConfiguration" valueType="REG_SZ" value="None" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Service Providers\FacialFeatures\Virtual Sensors" />
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Service Providers\Fingerprint">
      <registryValue name="BiometricType" valueType="REG_DWORD" value="0x00000008" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Service Providers\Fingerprint\Global Configurations">
      <registryValue name="ActiveConfiguration" valueType="REG_SZ" value="None" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Service Providers\Fingerprint\Virtual Sensors" />
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Service Providers\Iris">
      <registryValue name="BiometricType" valueType="REG_DWORD" value="0x00000010" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Service Providers\Iris\Global Configurations">
      <registryValue name="ActiveConfiguration" valueType="REG_SZ" value="None" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Service Providers\Iris\Virtual Sensors" />
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Service Providers\Voice">
      <registryValue name="BiometricType" valueType="REG_DWORD" value="0x00000004" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Service Providers\Voice\Global Configurations">
      <registryValue name="ActiveConfiguration" valueType="REG_SZ" value="None" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\WbioSrvc\Service Providers\Voice\Virtual Sensors" />
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WinBio\" />
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WinBio\AccountInfo" />
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WinBio\AccountInfo\.DEFAULT">
      <registryValue name="EnrolledFactors" valueType="REG_DWORD" value="0x00000000" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WinBio\AccountInfo\.DEFAULT\Policy" />
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WinBio\AccountInfo\.DEFAULT\Policy\00000002">
      <registryValue name="AntiSpoofing" valueType="REG_DWORD" value="0x00000000" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WinBio\AccountInfo\.DEFAULT\Policy\00000008">
      <registryValue name="AntiSpoofing" valueType="REG_DWORD" value="0x00000000" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WinBio\AccountInfo\.DEFAULT\Policy\00000010">
      <registryValue name="AntiSpoofing" valueType="REG_DWORD" value="0x00000000" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WinBio\AccountInfo\.DEFAULT\Policy\00000004">
      <registryValue name="AntiSpoofing" valueType="REG_DWORD" value="0x00000000" />
    </registryKey>
  </registryKeys>
  <trustInfo>
    <security>
      <accessControl>
        <securityDescriptorDefinitions>
          <securityDescriptorDefinition name="WBioSrvcSD" sddl="D:(A;;CCLCSWRPWPDTLOCRRC;;;SY)(A;;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;BA)(A;;CCLCSWRPLOCRRC;;;IU)(A;;CCLCSWLOCRRC;;;SU)(A;;CR;;;AU)(A;;CCLCRP;;;AC)S:(AU;FA;CCDCLCSWRPWPDTLOCRSDRCWDWO;;;WD)" operationHint="replace" />
          <securityDescriptorDefinition name="WRP_FILE_DEFAULT_SDDL" sddl="O:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464G:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464D:P(A;;FA;;;S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464)(A;;GRGX;;;BA)(A;;GRGX;;;SY)(A;;GRGX;;;BU)(A;;GRGX;;;S-1-15-2-1)S:(AU;FASA;0x000D0116;;;WD)" operationHint="replace" description="Default SDDL for Windows Resource Protected file" />
          <securityDescriptorDefinition name="WRP_PARENT_DIR_DEFAULT_SDDL" sddl="O:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464G:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464D:P(A;CI;GA;;;S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464)(A;;0x1301bf;;;SY)(A;IOCIOI;GA;;;SY)(A;;0x1301bf;;;BA)(A;IOCIOI;GA;;;BA)(A;CIOI;GRGX;;;BU)(A;OICIIO;GA;;;CO)(A;CIOI;GRGX;;;S-1-15-2-1)" operationHint="replace" />
        </securityDescriptorDefinitions>
      </accessControl>
    </security>
  </trustInfo>
  <localization>
    <resources culture="en-US">
      <stringTable>
        <string id="description" value="Manages biometric devices." />
        <string id="description1" value="Windows Biometrics service security descriptor" />
        <string id="displayName" value="Windows Biometric" />
        <string id="displayName1" value="This is the security descriptor for the Windows Biometrics service." />
      </stringTable>
    </resources>
  </localization>
  <migration scope="Upgrade" settingsVersion="1">
    <supportedComponents>
      <supportedComponent>
        <assemblyIdentity name="_" version="1.0.0.0" />
        <supportedComponentIdentity xmlns="urn:schemas-microsoft-com:asm.v3" language="neutral" name="Microsoft-Windows-WBioSrvc" processorArchitecture="*" settingsVersionRange="0-1" />
      </supportedComponent>
    </supportedComponents>
    <migXml xmlns="">
      <rules context="System">
        <include>
          <objectSet>
            <pattern type="Registry">HKLM\Software\Microsoft\Windows\CurrentVersion\WinBio [Enabled]</pattern>
            <pattern type="Registry">HKLM\Software\Microsoft\Windows\CurrentVersion\WinBio\AccountInfo\* [*]</pattern>
            <pattern type="Registry">HKLM\System\CurrentControlSet\Services\WbioSrvc\Parameters [EnrollmentCommitted]</pattern>
            <pattern type="Registry">HKLM\System\CurrentControlSet\Services\WbioSrvc\Parameters\Preboot</pattern>
            <pattern type="File">%windir%\System32\WinBioDatabase\*[*]</pattern>
          </objectSet>
        </include>
      </rules>
    </migXml>
  </migration>
</assembly>