HKCU\SOFTWARE\Policies\Microsoft\Windows\System\Scripts\Startup
HKLM\SOFTWARE\Policies\Microsoft\Windows\System\Scripts\Startup
HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logon
HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Logon
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell
HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System\Shell
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Taskman
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
+ DAEMON Tools-1033 Virtual DAEMON Manager (Not verified) DAEMON'S HOME c:\program files\d-tools\daemon.exe
+ kav Kaspersky Anti-Virus (Not verified) Kaspersky Lab c:\program files\kaspersky lab\kaspersky anti-virus 6.0\avp.exe
+ LetsCool File not found: C:\Program Files\LetsCool\LetsCool.exe
+ nwiz NVIDIA nView Wizard, Version 105.18 (Not verified) NVIDIA Corporation c:\windows\system32\nwiz.exe
+ WinampAgent File not found: ;
+ YOKAssiant File not found: C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce
C:\Documents and Settings\All Users\「开始」菜单\程序\启动
C:\Documents and Settings\Administrator\「开始」菜单\程序\启动
HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\Load
HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\Run
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
HKCU\Software\Microsoft\Windows\CurrentVersion\Run
HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnce
HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components
HKCU\SOFTWARE\Microsoft\Active Setup\Installed Components
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellService
ObjectDelayLoad
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellService
ObjectDelayLoad
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
+ ewido anti-spyware 4.0 ewido anti-spyware guard (Not verified) Anti-Malware Development a.s. d:\program files\ewido anti-spyware 4.0\shellexecutehook.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
+ Desktop Explorer NVIDIA Desktop Explorer, Version 105.18 (Not verified) NVIDIA Corporation c:\windows\system32\nvshell.dll
+ Desktop Explorer Menu NVIDIA Desktop Explorer, Version 105.18 (Not verified) NVIDIA Corporation c:\windows\system32\nvshell.dll
+ Display Panning CPL Extension File not found: deskpan.dll
+ Fusion Cache Microsoft .NET Runtime Execution Engine (Not verified) Microsoft Corporation c:\windows\system32\mscoree.dll
+ nView Desktop Context Menu NVIDIA Desktop Explorer, Version 105.18 (Not verified) NVIDIA Corporation c:\windows\system32\nvshell.dll
+ Web Anti-Virus Script Monitor Internet Explorer plugin (Not verified) Kaspersky Lab c:\program files\kaspersky lab\kaspersky anti-virus 6.0\scieplugin.dll
+ Web Folders Microsoft Web Folders (Not verified) Microsoft Corporation c:\program files\common files\microsoft shared\web folders\msonsext.dll
+ WinRAR shell extension c:\program files\winrar\rarext.dll
HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
HKLM\Software\Classes\Folder\Shellex\ColumnHandlers
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper
Objects
+ Ad Class File not found: C:\WINDOWS\SeAd\SeAd44d5bfdd.dll
+ Letscool System Helper Letscool Network IE Helper (Not verified) LETSCOOL Network Technology c:\windows\system32\coolbho.dll
+ QQBrowserHelper
Object Class QQIEHelper Module (Not verified) 深圳市腾讯计算机系统有限公司 d:\program files\tencent\qq\qqiehelper.dll
+ Thunder Browser Helper XunLeiBHO (Not verified) Thunder Networking Technologies,LTD c:\program files\thunder network\thunder\comdlls\xunleibho_002.dll
HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks
HKLM\Software\Microsoft\Internet Explorer\Toolbar
HKLM\Software\Microsoft\Internet Explorer\Extensions
+ YOK超级搜索 File not found: http://www.yok.com
+ 番茄花园 File not found: http://www.tomatolei.com
+ 启动迅雷 (Not verified) Thunder Networking Technologies,LTD c:\program files\thunder network\thunder\thunder.exe
+ 腾讯QQ QQ (Not verified) TENCENT d:\program files\tencent\qq\qq.exe
Task Scheduler
HKLM\System\CurrentControlSet\Services
+ AVP Provides protection against computer viruses and spyware. (Not verified) Kaspersky Lab c:\program files\kaspersky lab\kaspersky anti-virus 6.0\avp.exe
+ ewido anti-spyware 4.0 guard ewido anti-spyware guard (Not verified) Anti-Malware Development a.s. d:\program files\ewido anti-spyware 4.0\guard.exe
+ UpdateService c:\windows\system32\updateservice.exe
HKLM\System\CurrentControlSet\Services
+ atapi c:\windows\system32\drivers\atapi.sys
+ d346bus PnP BIOS Extension (Not verified) c:\windows\system32\drivers\d346bus.sys
+ d346prt SCSI miniport (Not verified) c:\windows\system32\drivers\d346prt.sys
+ ewido anti-spyware 4.0 driver d:\program files\ewido anti-spyware 4.0\guard.sys
+ kl1 Kaspersky Unified Driver (Not verified) Kaspersky Lab c:\windows\system32\drivers\kl1.sys
+ klif spuper-ptor (Not verified) Kaspersky Lab c:\windows\system32\drivers\klif.sys
+ npkcrypt nProtect KeyCrypt Driver (Not verified) INCA Internet Co., Ltd. d:\program files\tencent\qq\npkcrypt.sys
+ npkycryp File not found: D:\Program Files\Tencent\QQ\npkycryp.sys
HKLM\System\CurrentControlSet\Control\Session Manager\BootExecute
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options
HKLM\SOFTWARE\Microsoft\Command Processor\Autorun
HKCU\SOFTWARE\Microsoft\Command Processor\Autorun
HKLM\SOFTWARE\Classes\Exefile\Shell\Open\Command\(Default)
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\Appinit_Dlls
HKLM\System\CurrentControlSet\Control\Session Manager\KnownDlls
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\System
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
+ klogon Logon Visualizer (Not verified) Kaspersky Lab c:\windows\system32\klogon.dll
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GinaDLL
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Taskman
HKCU\Control Panel\Desktop\Scrnsave.exe
HKLM\System\CurrentControlSet\Control\BootVerificationProgram\ImageName
HKLM\System\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9
HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors
大侠帮我看看吧。。。
我的IE被我卸载了,用的TT
我访问不了QQ空间,提示我浏览器不支持Q-zone的某些特性。。