自启动项
HKEY_LOCAL_MACHINE Software\Microsoft\Windows\Currentversion\Run
IMJPMIG8.1 = ; "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
PHIME2002ASync = C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
PHIME2002A = C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
SoundMan = soundman.exe
Super Rabbit SRRestore = D:\MAGICSET\SRRest.exe /autosave
NvCplDaemon = RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
nwiz = nwiz.exe /install
helper.dll = C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\3721\helper.dll,Rundll32
CnsMin = Rundll32.exe C:\WINDOWS\DOWNLO~1\CnsMin.dll,Rundll32
DAEMON Tools-1033 = "C:\Program Files\D-Tools\daemon.exe" -lang 1033
NMGameX_AutoRun = C:\WINDOWS\System32\Rundll32.exe NMGameX.dll,LiveProcess /aa
RavTimer = D:\PROGRA~1\RISING\RAV\RAVTIMER.EXE
RavMon = D:\PROGRA~1\RISING\RAV\RAVMON.EXE -SYSTEM
Fast Start = C:\WINDOWS\system32\svcnt.exe home
HKEY_CURRENT_USER Software\Microsoft\Windows\Currentversion\Run
ctfmon.exe = C:\WINDOWS\System32\ctfmon.exe
NVIEW = rundll32.exe nview.dll,nViewLoadHook
Fast Start = C:\WINDOWS\system32\svcnt.exe home
HKEY_LOCAL_MACHINE Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
shell32.dll = C:\WINDOWS\system32\svcnt.exe home
C:\WINDOWS\DOWNLO~1\CnsHook.dll= C:\WINDOWS\system32\svcnt.exe home
HKEY_LOCAL_MACHINE Software\Microsoft\Windows\CurrentVersion\ShellService
ObjectDelayLoad
PostBootReminder = %SystemRoot%\system32\SHELL32.dll
CDBurn = %SystemRoot%\system32\SHELL32.dll
WebCheck = %SystemRoot%\System32\webcheck.dll
SysTray = C:\WINDOWS\System32\st
object.dll
HKEY_LOCAL_MACHINE Software\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler
%SystemRoot%\System32\browseui.dll= Browseui 预加载程序
%SystemRoot%\System32\browseui.dll= 组件类别缓存程序
%SystemRoot%\System32\browseui.dll= OLE Module
SYSTEM.INI BOOT SHELL explorer.exe