HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
+ ccApp Common Client User Session Symantec Corporation c:\program files\common files\symantec shared\ccapp.exe
+ SoundMan Realtek Sound Manager Realtek Semiconductor Corp. C:\WINDOWS\soundman.exe
+ SSC_UserPrompt Norton Security Center Helper Symantec Corporation c:\program files\common files\symantec shared\security center\usrprmpt.exe
+ Symantec NetDriver Monitor Symantec Security Drivers Install Monitor Symantec Corporation c:\program files\symnetdrv\sndmon.exe
+ TkBellExe RealNetworks Scheduler RealNetworks, Inc. c:\program files\common files\real\update_ob\realsched.exe
+ URLLSTCK.exe URL Check List Symantec Corporation c:\program files\norton internet security\urllstck.exe
C:\Documents and Settings\Sempron\「开始」菜单\程序\启动
+ ADSL.lnk c:\documents and settings\sempron\「开始」菜单\程序\启动\adsl.lnk
HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
+ Display Panning CPL Extension File not found: deskpan.dll
+ HyperTerminal Icon Ext HyperTerminal Applet Library Hilgraeve, Inc. c:\windows\system32\hticons.dll
+ PowerWord ExplorerBar PowerWord Web Dictionary Engine 金山软件股份有限公司 c:\program files\kingsoft\powerword 2003\xdictexb.dll
+ ScriptDropShellExt RoboEnhancer ScriptDropShellExt Module c:\program files\acd systems\roboenhancer\scriptdropshellext.dll
+ Shell Extensions for RealOne Player RealPlayer Shell Extensions RealNetworks, Inc. c:\program files\real\realplayer\rpshell.dll
+ WinRAR shell extension c:\program files\winrar\rarext.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper
Objects
+ CNavExtBho Class Norton AntiVirusNAVShellExt Module Symantec Corporation c:\program files\norton internet security\norton antivirus\navshext.dll
+ CNisExtBho Class File not found: C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
+ IeCatch2 Class jccatch Module Amaze Soft c:\program files\flashget\jccatch.dll
HKLM\Software\Microsoft\Internet Explorer\Extensions
+ 浩方对战平台 浩方对战平台 上海浩方在线信息技术有限公司 c:\program files\浩方对战平台\gameclient.exe
Task Scheduler
+ Norton AntiVirus - 扫描我的电脑.job Norton AntiVirus Scanner Module Symantec Corporation c:\program files\norton internet security\norton antivirus\navw32.exe
+ Symantec NetDetect.job Symantec NetDetect Symantec Corporation c:\program files\symantec\liveupdate\ndetect.exe
HKLM\System\CurrentControlSet\Services
+ Ati HotKey Poller c:\windows\system32\ati2evxx.exe
+ ATI Smart ATI Smart c:\windows\system32\ati2sgag.exe
+ ccEvtMgr Symantec 事件管理器 Symantec Corporation c:\program files\common files\symantec shared\ccevtmgr.exe
+ ccProxy Symantec Network Proxy Service Symantec Corporation c:\program files\common files\symantec shared\ccproxy.exe
+ ccSetMgr Symantec 设置管理器 Symantec Corporation c:\program files\common files\symantec shared\ccsetmgr.exe
+ navapsvc 处理 Norton AntiVirus 自动防护事件。 Symantec Corporation c:\program files\norton internet security\norton antivirus\navapsvc.exe
+ SAVScan 处理 Norton AntiVirus 自动防护的存档文件扫描 Symantec Corporation c:\program files\norton internet security\norton antivirus\savscan.exe
+ SBService ScriptBlocking registration Symantec Corporation c:\program files\common files\symantec shared\script blocking\sbserv.exe
+ SNDSrvc Symantec Network Drivers Service Symantec Corporation c:\program files\common files\symantec shared\sndsrvc.exe
+ SymWSC Symantec WMI Service Symantec Corporation c:\program files\common files\symantec shared\security center\symwsc.exe
HKLM\System\CurrentControlSet\Services
+ ALCXSENS Sensaura WDM 3D Audio Driver Sensaura c:\windows\system32\drivers\alcxsens.sys
+ ALCXWDM Realtek AC'97 Audio Driver (WDM) Realtek Semiconductor Corp. c:\windows\system32\drivers\alcxwdm.sys
+ ati2mtag ATI Radeon Miniport Driver ATI Technologies Inc. c:\windows\system32\drivers\ati2mtag.sys
+ Cap7134 LifeView FlyVideo WDM Video Capture Animation Technologies Inc. c:\windows\system32\drivers\cap7134.sys
+ NAVENG AV Engine Symantec Corporation c:\program files\common files\symantec shared\virusdefs\20051130.006\naveng.sys
+ NAVEX15 AV Engine Symantec Corporation c:\program files\common files\symantec shared\virusdefs\20051130.006\navex15.sys
+ npkcrypt nProtect KeyCrypt Driver INCA Internet Co., Ltd. d:\program files\tencent\qq\npkcrypt.sys
+ nv_agp NVIDIA nForce AGP Filter NVIDIA Corporation c:\windows\system32\drivers\nv_agp.sys
+ nvatabus NVIDIA? nForce(TM) IDE Performance Driver NVIDIA Corporation c:\windows\system32\drivers\nvatabus.sys
+ NVENETFD NVIDIA Networking Function Driver. NVIDIA Corporation c:\windows\system32\drivers\nvenetfd.sys
+ nvnetbus NVIDIA Networking Bus Driver. NVIDIA Corporation c:\windows\system32\drivers\nvnetbus.sys
+ PhTVTune LifeView FlyVideo WDM TV Tuner Animation Technologies Inc. c:\windows\system32\drivers\phtvtune.sys
+ Ptilink Direct Parallel Link Driver Parallel Technologies, Inc. c:\windows\system32\drivers\ptilink.sys
+ SAVRT AutoProtect Symantec Corporation c:\program files\norton internet security\norton antivirus\savrt.sys
+ SAVRTPEL SAVRTPEL Symantec Corporation c:\program files\norton internet security\norton antivirus\savrtpel.sys
+ Secdrv SafeDisc driver c:\windows\system32\drivers\secdrv.sys
+ SNPSTD3 PC Camera driver c:\windows\system32\drivers\snpstd3.sys
+ SYMDNS DNS Filter Driver Symantec Corporation c:\windows\system32\drivers\symdns.sys
+ SymEvent Symantec Event Library Symantec Corporation c:\program files\symantec\symevent.sys
+ SYMFW Firewall Filter Driver Symantec Corporation c:\windows\system32\drivers\symfw.sys
+ SYMIDS IDS Filter Driver Symantec Corporation c:\windows\system32\drivers\symids.sys
+ SYMIDSCO IDS Core Driver Symantec Corporation c:\program files\common files\symantec shared\symcdata\idsdefs\20051122.048\symidsco.sys
+ SYMNDIS NDIS Filter Driver Symantec Corporation c:\windows\system32\drivers\symndis.sys
+ SYMREDRV Redirector Filter Driver Symantec Corporation c:\windows\system32\drivers\symredrv.sys
+ SYMTDI Network Dispatch Driver Symantec Corporation c:\windows\system32\drivers\symtdi.sys
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\Appinit_Dlls
+ APIHookDll.dll File not found: APIHookDll.dll
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
+ AtiExtEvent c:\windows\system32\ati2evxx.dll