HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit
+ C:\WINDOWS\system32\Launcher.exe c:\windows\system32\launcher.exe
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
+ !ewido ewido anti-spyware Anti-Malware Development a.s. c:\program files\ewido anti-spyware 4.0\ewido.exe
+ cFosSpeed cFosSpeed Window cFos Software GmbH c:\program files\cfosspeed\cfosspeed.exe
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
+ CheckFaultKernel c:\windows\system32\mswdm.exe
+ KernelFaultCheck c:\windows\system32\msime.exe
HKCU\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components
+ 0 找不到文件:
About:Home
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellService
ObjectDelayLoad
+ DVDBurn 找不到文件:C:\WINDOWS\Downloaded Program Files\AfxEdit.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks
+ ewido anti-spyware 4.0 ewido anti-spyware guard Anti-Malware Development a.s. c:\program files\ewido anti-spyware 4.0\shellexecutehook.dll
+ new123.sys 找不到文件:C:\Program files\Internet Explorer\PLUGINS\new123.sys
+ system.sys c:\program files\internet explorer\plugins\system.sys
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
+ Desktop Explorer NVIDIA Desktop Explorer, Version 110.38 NVIDIA Corporation c:\windows\system32\nvshell.dll
+ Desktop Explorer Menu NVIDIA Desktop Explorer, Version 110.38 NVIDIA Corporation c:\windows\system32\nvshell.dll
+ Display Panning CPL Extension 找不到文件:deskpan.dll
+ HyperTerminal Icon Ext HyperTerminal Applet Library Hilgraeve, Inc. c:\windows\system32\hticons.dll
+ NvCpl DesktopContext Class NVIDIA Display Properties Extension NVIDIA Corporation c:\windows\system32\nvcpl.dll
+ nView Desktop Context Menu NVIDIA Desktop Explorer, Version 110.38 NVIDIA Corporation c:\windows\system32\nvshell.dll
+ Play on my TV helper NVIDIA Display Properties Extension NVIDIA Corporation c:\windows\system32\nvcpl.dll
+ Shell Extensions for RealOne Player RealPlayer Shell Extensions RealNetworks, Inc. c:\program files\real\realplayer\rpshell.dll
+ WinRAR shell extension c:\program files\winrar\rarext.dll
HKLM\Software\Classes\Folder\Shellex\ColumnHandlers
+ Haali Column Provider e:\暴风影音\codecs\mmfinfo.dll
HKLM\Software\Microsoft\Internet Explorer\Toolbar
+ kakatool.dll Beijing Rising Technology Co., Ltd. c:\windows\system32\kakatool.dll
HKLM\System\CurrentControlSet\Services
+ BlueSoleil Hid Service c:\program files\bluesoleil\btntservice.exe
+ cFosSpeedS Performs latency measurement and privileged operations for cFosSpeed cFos Software GmbH c:\program files\cfosspeed\spd.exe
+ ewido anti-spyware 4.0 guard ewido anti-spyware guard Anti-Malware Development a.s. c:\program files\ewido anti-spyware 4.0\guard.exe
+ NVSvc Provides system and desktop level support to the NVIDIA display driver NVIDIA Corporation c:\windows\system32\nvsvc32.exe
+ PDSched PDSched Module Raxco Software, Inc. c:\program files\raxco\perfectdisk\pdsched.exe
HKLM\System\CurrentControlSet\Services
+ ALCXWDM Avance AC'97 Audio Driver (WDM) Avance Logic, Inc. c:\windows\system32\drivers\alcxwdm.sys
+ BlueletAudio Bluelet Audio Driver IVT Corporation c:\windows\system32\drivers\blueletaudio.sys
+ BT Bluetooth PAN Network Adapter Driver IVT Corporation c:\windows\system32\drivers\btnetdrv.sys
+ Btcsrusb Bluetooth USB Device Driver IVT Corporation c:\windows\system32\drivers\btcusb.sys
+ BTHidEnum c:\windows\system32\drivers\vbtenum.sys
+ BTHidMgr Bluetooth HID Manager driver IVT Corporation c:\windows\system32\drivers\bthidmgr.sys
+ cFosSpeed cFosSpeed Driver cFos Software GmbH c:\windows\system32\drivers\cfosspeed.sys
+ dtscsi c:\windows\system32\drivers\dtscsi.sys
+ ewido anti-spyware 4.0 driver c:\program files\ewido anti-spyware 4.0\guard.sys
+ NPF npf CACE Technologies c:\windows\system32\drivers\npf.sys
+ npkcrypt 找不到文件:E:\TM\TMDlls\npkcrypt.sys
+ nv NVIDIA Compatible Windows 2000 Miniport Driver, Version 91.31 NVIDIA Corporation c:\windows\system32\drivers\nv4_mini.sys
+ oreans32 c:\windows\system32\drivers\oreans32.sys
+ Ptilink Direct Parallel Link Driver Parallel Technologies, Inc. c:\windows\system32\drivers\ptilink.sys
+ rtl8139 Realtek RTL8139 NDIS 5.0 Driver Realtek Semiconductor Corporation c:\windows\system32\drivers\rtl8139.sys
+ Secdrv SafeDisc driver c:\windows\system32\drivers\secdrv.sys
+ sptd c:\windows\system32\drivers\sptd.sys
+ TrojanFindDriverNT 找不到文件:C:\WINDOWS\system32\NtDriver.sys
+ VComm Bluetooth Serial Port Driver IVT Corporation c:\windows\system32\drivers\vcomm.sys
+ VcommMgr Bluetooth VcommMgr driver IVT Corporation c:\windows\system32\drivers\vcommmgr.sys