********** 日志开始 **********
[键]HKEY_CLASSES_ROOT\CLSID\{0002DF01-0000-0000-C000-000000000046}\LOCALSERVER32
[值]@
[类型]REG_SZ
[内容]"c:\program files\internet explorer\iexplore.exe"
[键]HKEY_CLASSES_ROOT\CLSID\{25336920-03F9-11CF-8FD0-00AA00686F13}\DEFAULTICON
[值]@
[类型]REG_SZ
[内容]c:\program files\internet explorer\iexplore.exe.mui,-17
[键]HKEY_CLASSES_ROOT\CLSID\{3050F3D9-98B5-11CF-BB82-00AA00BDCE0B}\DEFAULTICON
[值]@
[类型]REG_SZ
[内容]c:\program files\internet explorer\iexplore.exe.mui,-17
[键]HKEY_CLASSES_ROOT\CLSID\{42042206-2D85-11D3-8CFF-005004838597}\OLD ICON\HTMLFILE\DEFAULTICON
[值]@
[类型]REG_SZ
[内容]c:\program files\internet explorer\iexplore.exe,-17
[键]HKEY_CLASSES_ROOT\CLSID\{42042206-2D85-11D3-8CFF-005004838597}\OLD ICON\MHTMLFILE\DEFAULTICON
[值]@
[类型]REG_SZ
[内容]c:\program files\internet explorer\iexplore.exe,-32554
[键]HKEY_CLASSES_ROOT\CLSID\{65014010-9F62-11D1-A651-00600811D5CE}\DEFAULTICON
[值]@
[类型]REG_EXPAND_SZ
[内容]c:\program files\internet explorer\iexplore.exe,1
[键]HKEY_CLASSES_ROOT\CLSID\{86AEFBE8-763F-0647-899C-A93278894D8E}\DEFAULTICON
[值]@
[类型]REG_SZ
[内容]c:\program files\internet explorer\iexplore.exe
[键]HKEY_CLASSES_ROOT\CLSID\{86AEFBE8-763F-0647-899C-A93278894D8E}\SHELL\OPEN\COMMAND
[值]@
[类型]REG_SZ
[内容]c:\program files\internet explorer\iexplore.exe
http://www.ez173.com/?v[键]HKEY_CLASSES_ROOT\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\SHELL\NOADDONS\COMMAND
[值]@
[类型]REG_SZ
[内容]"c:\program files\internet explorer\iexplore.exe" -extoff
[键]HKEY_CLASSES_ROOT\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\SHELL\OPENHOMEPAGE\COMMAND
[值]@
[类型]REG_EXPAND_SZ
[内容]"c:\program files\internet explorer\iexplore.exe"
[键]HKEY_CLASSES_ROOT\CLSID\{AE24FDAE-03C6-11D1-8B76-0080C744F389}\TOOLBOXBITMAP32
[值]@
[类型]REG_SZ
[内容]c:\program files\internet explorer\iexplore.exe.mui,-17
[键]HKEY_CLASSES_ROOT\CLSID\{D5E8041D-920F-45E9-B8FB-B1DEB82C6E5E}\LOCALSERVER32
[值]@
[类型]REG_EXPAND_SZ
[内容]"%programfiles%\internet explorer\iexplore.exe" -startmediumtab
[键]HKEY_CLASSES_ROOT\CLSID\{FBF23B42-E3F0-101B-8488-00AA003E56F8}\DEFAULTICON
[值]@
[类型]REG_EXPAND_SZ
[内容]"%programfiles%\internet explorer\iexplore.exe",-32528
[键]HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\DESKTOP\NAMESPACE\{11016101-E366-4D22-BC06-4ADA335C892B}
[值]@
[类型]REG_SZ
[内容]ie history and feeds shell data source for windows search
[键]HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\DESKTOP\NAMESPACE\{1F4DE370-D627-11D1-BA4F-00A0C91EEDBA}
[值]@
[类型]REG_SZ
[内容]computer search results folder
[键]HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\DESKTOP\NAMESPACE\{450D8FBA-AD25-11D0-98A8-0800361B1103}
[值]@
[类型]REG_SZ
[内容]空
[键]HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\DESKTOP\NAMESPACE\{450D8FBA-AD25-11D0-98A8-0800361B1103}
[值]REMOVAL MESSAGE
[类型]REG_SZ
[内容]@mydocs.dll,-900
[键]HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\DESKTOP\NAMESPACE\{645FF040-5081-101B-9F08-00AA002F954E}
[值]@
[类型]REG_SZ
[内容]recycle bin
[键]HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\DESKTOP\NAMESPACE\{E17D4FC0-5564-11D1-83F2-00A0C90DC849}
[值]@
[类型]REG_SZ
[内容]search results folder
[键]HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\CONTROL\SESSION MANAGER
[值]PENDINGFILERENAMEOPERATIONS
[类型]REG_MULTI_SZ
[内容]\??\f:\program files\kingsoft\ksm3.0\kssgui.dat0
!\??\f:\program files\kingsoft\ksm3.0\kssgui.dat
\??\f:\program files\kingsoft\ksm3.0\p.nlb0
!\??\f:\program files\kingsoft\ksm3.0\p.nlb
\??\f:\program files\kingsoft\ksm3.0\s.nlb0
!\??\f:\program files\kingsoft\ksm3.0\s.nlb
\??\f:\program files\kingsoft\ksm3.0\p2.nlb0
!\??\f:\program files\kingsoft\ksm3.0\p2.nlb
\??\f:\program files\kingsoft\ksm3.0\s2.nlb0
!\??\f:\program files\kingsoft\ksm3.0\s2.nlb
\??\f:\program files\kingsoft\ksm3.0\kscanner.dll0
!\??\f:\program files\kingsoft\ksm3.0\kscanner.dll
\??\f:\program files\kingsoft\ksm3.0\ksversion.ini0
!\??\f:\program files\kingsoft\ksm3.0\ksversion.ini
\??\f:\program files\kingsoft\ksm3.0\kdump.dll0
!\??\f:\program files\kingsoft\ksm3.0\kdump.dll
\??\f:\program files\kingsoft\ksm3.0\kdumprep.exe0
!\??\f:\program files\kingsoft\ksm3.0\kdumprep.exe
\??\f:\program files\kingsoft\ksm3.0\kinstool.exe0
!\??\f:\program files\kingsoft\ksm3.0\kinstool.exe
\??\f:\program files\kingsoft\ksm3.0\wss\config\ksecore.config.top.xml0
!\??\f:\program files\kingsoft\ksm3.0\wss\config\ksecore.config.top.xml
\??\c:\docume~1\admini~1\locals~1\temp\_iu14d2n.tmp
\??\c:\docume~1\admini~1\locals~1\temp\~nsu.tmp\au_.exe
\??\c:\docume~1\admini~1\locals~1\temp\~nsu.tmp\bu_.exe
\??\f:\program files\kingsoft\ksm3.0\kssgui.dat0
!\??\f:\program files\kingsoft\ksm3.0\kssgui.dat
\??\f:\program files\kingsoft\ksm3.0\p.nlb0
!\??\f:\program files\kingsoft\ksm3.0\p.nlb
\??\f:\program files\kingsoft\ksm3.0\s.nlb0
!\??\f:\program files\kingsoft\ksm3.0\s.nlb
\??\f:\program files\kingsoft\ksm3.0\p2.nlb0
!\??\f:\program files\kingsoft\ksm3.0\p2.nlb
\??\f:\program files\kingsoft\ksm3.0\s2.nlb0
!\??\f:\program files\kingsoft\ksm3.0\s2.nlb
\??\f:\program files\kingsoft\ksm3.0\kscanner.dll0
!\??\f:\program files\kingsoft\ksm3.0\kscanner.dll
\??\f:\program files\kingsoft\ksm3.0\ksversion.ini0
!\??\f:\program files\kingsoft\ksm3.0\ksversion.ini
\??\f:\program files\kingsoft\ksm3.0\kdump.dll0
!\??\f:\program files\kingsoft\ksm3.0\kdump.dll
\??\f:\program files\kingsoft\ksm3.0\kdumprep.exe0
!\??\f:\program files\kingsoft\ksm3.0\kdumprep.exe
\??\f:\program files\kingsoft\ksm3.0\kinstool.exe0
!\??\f:\program files\kingsoft\ksm3.0\kinstool.exe
\??\f:\program files\kingsoft\ksm3.0\wss\config\ksecore.config.top.xml0
!\??\f:\program files\kingsoft\ksm3.0\wss\config\ksecore.config.top.xml
\??\c:\docume~1\admini~1\locals~1\temp\~nsu.tmp\au_.exe
[键]HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B}
[值]@
[类型]REG_SZ
[内容]tswebmon
[键]HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B}
[值]NOEXPLORER
[类型]REG_DWORD
[内容]0x00000001
[键]HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{98B7C13A-E9CD-4959-8B46-FBEAB41E42A8}
[值]@
[类型]REG_SZ
[内容]卡卡上网安全助手
[键]HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{B69F34DD-F0F9-42DC-9EDD-957187DA688D}
[值]NOEXPLORER
[类型]REG_DWORD
[内容]0x00000001
[键]HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\DEFAULTICON
[值]@
[类型]REG_EXPAND_SZ
[内容]%systemroot%\system32\shell32.dll,32
[键]HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\DEFAULTICON
[值]FULL
[类型]REG_EXPAND_SZ
[内容]%systemroot%\system32\shell32.dll,32
[键]HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\DEFAULTICON
[值]EMPTY
[类型]REG_EXPAND_SZ
[内容]%systemroot%\system32\shell32.dll,31
[键]HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\DEFAULTICON\EMPTY
[值]@
[类型]REG_EXPAND_SZ
[内容]%systemroot%\system32\shell32.dll,31
[键]HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\DEFAULTICON\FULL
[值]@
[类型]REG_EXPAND_SZ
[内容]%systemroot%\system32\shell32.dll,32
[键]HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\SHELLFOLDER
[值]ATTRIBUTES
[类型]REG_DWORD
[内容]0x00000000
[键]HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\CLSID\{0002DF01-0000-0000-C000-000000000046}\LOCALSERVER32
[值]@
[类型]REG_SZ
[内容]"c:\program files\internet explorer\iexplore.exe"
[键]HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\CLSID\{25336920-03F9-11CF-8FD0-00AA00686F13}\DEFAULTICON
[值]@
[类型]REG_SZ
[内容]c:\program files\internet explorer\iexplore.exe.mui,-17
[键]HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\CLSID\{3050F3D9-98B5-11CF-BB82-00AA00BDCE0B}\DEFAULTICON
[值]@
[类型]REG_SZ
[内容]c:\program files\internet explorer\iexplore.exe.mui,-17
[键]HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\CLSID\{42042206-2D85-11D3-8CFF-005004838597}\OLD ICON\HTMLFILE\DEFAULTICON
[值]@
[类型]REG_SZ
[内容]c:\program files\internet explorer\iexplore.exe,-17
[键]HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\CLSID\{42042206-2D85-11D3-8CFF-005004838597}\OLD ICON\MHTMLFILE\DEFAULTICON
[值]@
[类型]REG_SZ
[内容]c:\program files\internet explorer\iexplore.exe,-32554
[键]HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\CLSID\{65014010-9F62-11D1-A651-00600811D5CE}\DEFAULTICON
[值]@
[类型]REG_EXPAND_SZ
[内容]c:\program files\internet explorer\iexplore.exe,1
[键]HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\CLSID\{86AEFBE8-763F-0647-899C-A93278894D8E}\DEFAULTICON
[值]@
[类型]REG_SZ
[内容]c:\program files\internet explorer\iexplore.exe
[键]HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\CLSID\{86AEFBE8-763F-0647-899C-A93278894D8E}\SHELL\OPEN\COMMAND
[值]@
[类型]REG_SZ
[内容]c:\program files\internet explorer\iexplore.exe
http://www.ez173.com/?v[键]HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\SHELL\NOADDONS\COMMAND
[值]@
[类型]REG_SZ
[内容]"c:\program files\internet explorer\iexplore.exe" -extoff
[键]HKEY_LOCAL_MACHINE\SOFTWARE\CLASSES\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\SHELL\OPENHOMEPAGE\COMMAND
[值]@
[类型]REG_EXPAND_SZ
[内容]"c:\program files\internet explorer\iexplore.exe"