恶意软件\垃圾流氓通用反删除批处理文件
更新时间:2007年01月08日 00:00:00 作者:
使用方法:
1关闭浏览器
2执行un3721.bat
3再执行un3721.reg
4重启电脑,基本上的垃圾都删除了
5如果还有少量,重启电脑进安全模式操作,或看.bat文件里的帮助注释,
un3721.bat
rem 砍掉一切流氓,让我们静待互联网的春天 ~_~
rem 各取所需,根据自己要求修改(有的人还觉得某个流氓好就留着*_*)
rem 如果跳出选择框,选择全部卸载
rem 有些**需要在安全模式下才能卸载,有些不好卸载请看里面的帮助
rem 现在的流氓越来越超级,已经超过批处理的能力极限,只有借助一些别的软件,推荐使用http://ccollomb.free.fr/unlocker一起删除超级**
rem 砍掉3721 kao 把好多的电脑弄惨了
if exist C:\PROGRA~1\3721\Assist\asbar.dll rundll32.exe C:\PROGRA~1\3721\Assist\asbar.dll,RunSettings -uninstall
if exist %windir%\downlo~1\CnsMin.dll rundll32.exe %windir%\downlo~1\CnsMin.dll,RunSettings -uninstall
if exist %windir%\downlo~1\CnsMin.dll rundll32.exe %windir%\downlo~1\CnsMin.dll,ControlPanel
regsvr32 /u /s %windir%\downlo~1\CnsMin.dll
regsvr32 /u /s C:\PROGRA~1\3721\Assist\asbar.dll
regsvr32 /u /s C:\PROGRA~1\3721\helper.dll
regsvr32 /u /s C:\PROGRA~1\YiSou\yisou.dll
rem 砍掉yahoo猪手,把好多的电脑弄惨
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yphtb.dll
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yangling.dll
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL
rem 新版的 猪手 根本不能选择卸载,***
if exist C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll rundll32 C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll,UnInstall
rem 彩信通 又一个超级的**产生了
rem 想办法删除 %windir%\system32\drivers\Albus.SYS 这个万恶不赦的文件,才能彻底清理这个门户
rem 推荐使用 DOS 启动电脑,找到C盘 这个万恶不赦的文件 删除
rem 或者使用 http://ccollomb.free.fr/unlocker 删除,删除后可能造成系统不稳定,重启电脑执行2个批处理,再重启
regsvr32 /u /s C:\PROGRA~1\MMSASS~1\MMSASS~1.DLL
if exist C:\PROGRA~1\MMSASS~1\mmsass~1.dll rundll32.exe C:\PROGRA~1\MMSASS~1\mmsass~1.dll,Uninstall
if exist %windir%\System32\stdup.dll rundll32.exe %windir%\System32\stdup.dll,Uninstall
regsvr32 /u /s %windir%\system32\stdup.dll
regsvr32 /u /s %windir%\system32\STDSVER.DLL
regsvr32 /u /s %windir%\system\stdup.dll
regsvr32 /u /s %windir%\system\STDSVER.DLL
del %windir%\system32\drivers\Albus.SYS /q /f
del %windir%\system32\Albus.DAT /q /f
del %windir%\system32\almms.dat /q /f
del %windir%\system32\alsmt.exe /q /f
del C:\PROGRA~1\MMSASS~1\MMSASS~1.DLL /q /f
rem internet explorer helper
regsvr32 /u /s %windir%\fonts\msshapi.dll
rem 划词 huaci 又是一个走上不归路的超级**
rem 这个**需要重启电脑,再次执行两个批处理文件操作才能被删除
C:\PROGRA~1\HuaCi\huaci\mUin.exe
C:\PROGRA~1\wsearch\mUnInstall.exe
%windir%\system32\msibm\Uninstall.exe
%windir%\system\msibm\Uninstall.exe
del %windir%\system32\drivers\abhcop.sys /q /f
del %windir%\system32\DRIVERS\hcalway.sys /q /f
rem Baidu这个**,**越来越超级,Baid* 也不例外
;rem需要安全模式,或者想办法删除 %windir%\system32\drivers\BDGuard.SYS 这个文件才能卸载这个**
if exist C:\PROGRA~1\baidu\bar\BaiduBar.dll rundll32.exe C:\PROGRA~1\baidu\bar\BaiduBar.dll,Uninstall
regsvr32 /u /s %windir%\DOWNLO~1\BDSrHook.dll
regsvr32 /u /s %windir%\DOWNLO~1\BDHelper.dll
regsvr32 /u /s %windir%\DOWNLO~1\BDPlugin.dll
regsvr32 /u /s C:\PROGRA~1\Baidu\Bar\BaiduBar.dll
regsvr32 /u /s "C:\Program Files\Common Files\Baidu\Disk Search\dsie.dll"
if exist %windir%\DOWNLO~1\BDHelper.dll rundll32.exe %windir%\DOWNLO~1\BDHelper.dll,DllRemove
del %windir%\system32\drivers\BDGuard.SYS /q /f
del %windir%\system32\BDGuard.DAT /q /f
del %windir%\system32\BDGuardS.DAT /q /f
del C:\PROGRA~1\baidu\bar\BaiduBar.dll
rem windirected 傲迅 wmpdrm.dll
rem 这个**卸载需在安全模式下进行,或终止explorer.exe,taskmgr.exe,输入法等进程只留基本进程,在CMD窗口中执行批处理可卸载
%windir%\system32\spoolsv\spoolsv.exe -uninst
regsvr32 /u /s %windir%\system32\wmpdrm.dll
del %windir%\system32\spoolsv\spoolsv.exe /q /f
rem 为了98
%windir%\system\spoolsv\spoolsv.exe -uninst
regsvr32 /u /s %windir%\system\wmpdrm.dll
del %windir%\system\spoolsv\spoolsv.exe /q /f
rem 删除QQ搜索 这个 **
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\IEHelp.dll
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\IEHelp1.dll
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\scrax.dll
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\TCtrl.dll
C:\PROGRA~1\TENCENT\Adplus\stup.exe C:\PROGRA~1\TENCENT\Adplus\SSAddr1.dll Uninstall
C:\PROGRA~1\TENCENT\Adplus\stup.exe C:\PROGRA~1\TENCENT\Adplus\SSAddr.dll Uninstall
rem 删除 DUDU 搜索条 这个 **
regsvr32 /u /s C:\PROGRA~1\DuDu\DddClient\dddiemon.dll
regsvr32 /u /s C:\PROGRA~1\DuDu\DddClient\dddmext.dll
rem 删除Accoona 这个 **
regsvr32 /u /s C:\PROGRA~1\Accoona\AToolbarCN.dll
regsvr32 /u /s C:\PROGRA~1\Accoona\atoolbar.dll
regsvr32 /u /s C:\PROGRA~1\Accoona\ASearchAssist.dll
rem 删除xBar
regsvr32 /u /s C:\PROGRA~1\xBar\xBarHelper.dll
regsvr32 /u /s %windir%\System32\xunleibho_v8.dll
rem 为了98
regsvr32 /u /s %windir%\System\xunleibho_v8.dll
rem Schedule sscli.dll
regsvr32 /u /s %windir%\System32\sscli.dll
rem 删除 henbang 很棒 **
regsvr32 /u /s C:\PROGRA~1\pcast\hbcast.dll
regsvr32 /u /s C:\PROGRA~1\HBClient\hapast.dll
regsvr32 /s /u C:\PROGRA~1\yehoo\hbyehoo.dll
regsvr32 /s /u C:\PROGRA~1\yehoo\tbyehoo.dll
regsvr32 /s /u %windir%\DOWNLO~1\HTHelper.dll
rem 库站 多多QQ表情 9991.com51.com 超级**
regsvr32 /u /s C:\PROGRA~1\CoolWebsite\QuickLink.dll
"C:\Program Files\Common Files\update\update.exe" -kill1
C:\PROGRA~1\CoolWebsite\uninst.exe
rem 最好安全模式操作,或者需要终止一个rundll32.exe %windir%\system32\wbem\IRJIT.dll 的进程
del %windir%\system32\wbem\IRJIT.dll /q /f
rem cfsbho.dll
regsvr32 /u /s %windir%\system32\msibm\cfsbho.dll
rem 为了98
regsvr32 /u /s %windir%\system\msibm\cfsbho.dll
rem 划词搜索 DeskAdTop\deskipn.dll
regsvr32 /u /s C:\PROGRA~1\DESKAD~1\deskipn.dll
C:\PROGRA~1\DESKAD~1\DeskUn.exe
rem 删除桌面传媒 IE-BAR 这个**
MsiExec.exe /I{FE41A479-E056-40A5-982C-D149B5D6712D}
regsvr32 /u /s "C:\Program Files\Desktop Media\Cast\dmbar.dll"
regsvr32 /u /s "C:\Program Files\Common Files\IE-Bar\dmbar.dll"
"C:\Program Files\Common Files\IE-Bar\uninstall.exe"
regsvr32 /u /s %windir%\DOWNLO~1\lund.dll
regsvr32 /u /s "C:\Program Files\IE-BAR\Cast\dmbar.dll"
rem 这个**可能不能被删除,请先到进程管理里删除VIPTray.exe这个进程
regsvr32 /u /s %windir%\system32\IEHelper.dll
regsvr32 /u /s %windir%\system32\WinDefendor.dll
rem 这个名字会不停的变化 **
regsvr32 /u /s %windir%\system\cb7o2470.dll
rem 为了98
regsvr32 /u /s %windir%\system\IEHelper.dll
regsvr32 /u /s %windir%\system\WinDefendor.dll
MsiExec.exe /I{3D554C17-ED16-448A-B3CE-6FBC51FFB705}
rem 中搜寻址 这个 **
regsvr32 /u /s "C:\Program Files\SearchNet\SNHpr.dll"
"C:\Program Files\SearchNet\UnInstall.exe"
rem 百狗**
C:\PROGRA~1\baigoo\mtsrv.exe -UnregServer
regsvr32 /u /s C:\PROGRA~1\baigoo\bgook.dll
regsvr32 /u /s C:\PROGRA~1\baigoo\bgooex.dll
regsvr32 /u /s C:\PROGRA~1\baigoo\BGooHK.dll
regsvr32 /u /s C:\PROGRA~1\baigoo\BGooBHO.dll
C:\PROGRA~1\baigoo\uninst.exe
rem 搜狗
C:\PROGRA~1\P4P\Uninstall.exe
regsvr32 /u /s "C:\Program Files\ScanToolbar\ScanBar.dll"
C:\PROGRA~1\ScanToolbar\uninst.exe
%windir%\system32\unsocul.exe
rem 为了98
%windir%\system\unsocul.exe
rem 点点通
if exist %windir%\DOWNLO~1\DDTINIT.DLL rundll32.exe %windir%\DOWNLO~1\DDTINIT.DLL,Uninstall
rem Radiate Advertising
%windir%\system32\MSIPCSV.EXE -uninstall -all
rem 为了98
%windir%\system\MSIPCSV.EXE -uninstall -all
rem RoomSetUPcd ads
if exist %windir%\system32\cd_clint.dll rundll32 %windir%\system32\cd_clint.dll,ServiceRunDll u_281
rem 为了98
if exist %windir%\system\cd_clint.dll rundll32 %windir%\system\cd_clint.dll,ServiceRunDll u_281
rem 一个什么五笔
regsvr32 /u /s C:\PROGRA~1\COMMON~1\Wnwb\wnwbio.dll
rem wmicsmgr.dll
regsvr32 /u /s %windir%\system32\wmicsmgr.dll
regsvr32 /u /s %windir%\system\wmicsmgr.dll
rem 一个广告Navihelper.dll
regsvr32 /u /s %windir%\system32\Navihelper.dll
regsvr32 /u /s %windir%\system\Navihelper.dll
del %windir%\system32\host.dat /q /f
rem 好像是一个木马
regsvr32 /u /s %windir%\system32\RAdminl.dll
rem 为了98
regsvr32 /u /s %windir%\system\RAdminl.dll
rem 跳跳塘
rem 这个**可能不能被删除,请先到进程管理里终止webacc.exe这个进程
%windir%\system32\wbauninstall.exe
regsvr32 /u /s %windir%\system32\webacc.dll
regsvr32 /u /s %windir%\Downlo~1\c8s.dll
rem 为了98
%windir%\system\wbauninstall.exe
regsvr32 /u /s %windir%\system\webacc.dll
rem 好像什么便民
regsvr32 /u /s C:\PROGRA~1\xm\tbu3\xm.dll
rem 易趣购物
del %windir%\ebaylink.ico /q /f
rem msdc32.dll 一个木马 需要安全模式才能清除
del C:\PROGRA~1\COMMON~1\system\msdc32.dll /q /f
del %windir%\ .exe /q /f /as /ar /ah
rem YOK拦截助手
regsvr32 /u /s C:\PROGRA~1\YOK.com\BlockAdr\yokhad.dll
regsvr32 /u /s C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll
regsvr32 /u /s %windir%\system32\Navsmall.dll
regsvr32 /u /s %windir%\system\Navsmall.dll
C:\PROGRA~1\YOK.com\BlockAdr\Uninst.exe
rem 不知是什么流氓
regsvr32 /u /s %windir%\DOWNLO~1\vevnli.dll
rem ChajianHelper
regsvr32 /u /s %windir%\system32\SYSREA~1.DLL
regsvr32 /u /s %windir%\system\SYSREA~1.DLL
rem 不知是什么流氓
regsvr32 /u /s %windir%\system32\HelperService.dll
regsvr32 /u /s %windir%\system\HelperService.dll
regsvr32 /u /s %windir%\system32\mshlp.dll
regsvr32 /u /s %windir%\system\mshlp.dll
rem MyWebSearch 这个**,这个**产生的目录根本不定
if exist rundll32 C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsbar.dll rundll32 C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsbar.dll,O
rem 开心运程速递
regsvr32 /u /s %windir%\system32\obwbkya.dll
rem 为了98
regsvr32 /u /s %windir%\system\obwbkya.dll
regsvr32 /u /s %windir%\system32\shwasobj.dll
rem 为了98
regsvr32 /u /s %windir%\system\shwasobj.dll
C:\PROGRA~1\SDAstro\Uninst.exe
rem 这个文件名会不停的变化
regsvr32 /u /s C:\Docume~1\AllUse~1\Applic~1\Microsoft\IEHelper\IEHelper200631_8913.dll
rem Luobooshow
regsvr32 /u /s %windir%\system32\WinSC.dll
regsvr32 /u /s %windir%\system\WinSC.dll
rem caishow
regsvr32 /u /s "C:\Program Files\CaiShow Tech\CaiShow\BrowerHelper.dll"
regsvr32 /u /s %windir%\system32\wuwebex.dll
regsvr32 /u /s %windir%\system\wuwebex.dll
rem 酷桌面
regsvr32 /u /s %windir%\system32\CoolBho.dll
regsvr32 /u /s %windir%\system\CoolBho.dll
rem 青娱
regsvr32 /u /s %windir%\system\QYLWMP~1.OCX
regsvr32 /u /s %windir%\system\QYLRMP~1.OCX
regsvr32 /u /s %windir%\system\contextmenu.dll
regsvr32 /u /s C:\PROGRA~1\Qyule\\QYULEP~1.OCX
regsvr32 /u /s C:\PROGRA~1\Qyule\\dvfilter.ax
C:\PROGRA~1\Qyule\unins000.exe
rem NB46.com smflash.ocx 好像需要安全模式
regsvr32 /u /s "C:\Program Files\nb46.com\NB46Toolbar.dll"
regsvr32 /u /s %windir%\system32\smflash.ocx
regsvr32 /u /s %windir%\system\smflash.ocx
rem kuaiso toolsbar
regsvr32 /u /s "C:\Program Files\Micrsoft SearchBar\SearchBar.dll"
rem bbmao
regsvr32 /u /s "C:\Program Files\bbmao Toolbar\bbmao_tb_v1_0.dll"
rem 删除CDN 这个 **
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\wmhlpr.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\iesrch.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\cdniehlp.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\cdniehlp.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll
regsvr32 /u /s %windir%\system32\cdnns.dll
regsvr32 /u /s %windir%\System32\jklpif.dll
rem 为了98
regsvr32 /u /s %windir%\system\cdnns.dll
regsvr32 /u /s %windir%\System\jklpif.dll
rem CNNIC的反安装这里可能不好完全卸载,请单独到控制面板里"添加/删除"里卸载,或找到C:\PROGRA~1\CNNIC\Cdn\cdnunins.exe单独执行
C:\PROGRA~1\CNNIC\Cdn\cdnunins.exe
un3721.reg
REGEDIT4
;rem 砍掉一切流氓,让我们静待互联网的春天 ~_~
;rem 各取所需,根据自己要求修改(有的人还觉得某个流氓好就留着*_*)
;rem 如果跳出选择框,选择全部卸载
;rem 有些**需要在安全模式下才能卸载,有些不好卸载请看里面的帮助
;rem 现在的流氓越来越超级,已经超过批处理的能力极限,只有借助一些别的软件,推荐使用http://ccollomb.free.fr/unlocker一起删除超级**
;rem 砍掉3721 kao 把好多的电脑弄惨了
;rem 砍掉yahoo猪手,把好多的电脑弄惨
;rem 新版的 猪手 根本不能选择卸载,***,这里可以被卸载的
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\粉碎文件]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.zschk]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Angling.AntiFish]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Angling.AntiFish.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Assist.EasyAssist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AutoLive.Live]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AutoLive.Live.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{141A5E19-BDCB-4E27-A3D7-9E16503BC05B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ADKiller.ADKillerObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ADKiller.ADKillerObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B0E7716-898E-48CC-9690-4E338E8DE1D3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38928D50-8A48-44C2-945F-D2F23F771410}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7CA83CF1-3AEA-42D0-A4E3-1594FC6E48B2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9EB2B422-C9EE-46C4-A471-1E79C7517B1D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ABEC6103-F6AC-43A3-834F-FB03FBA339A2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB936323-19FA-4521-BA29-ECA6A121BC78}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsMinHK.CnsHook]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsMinHK.CnsHook.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CoolBar.CoolBarObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CoolBar.CoolBarObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FFlash.FlashObjectInterface]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FFlash.FlashObjectInterface.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{172862CD-9D35-40E7-BAF2-BA7ECF043B9C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1BB0ABBE-2D95-4847-B9D8-6F90DE3714C1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1D10645F-A553-426E-9923-C3ABF846EA41}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{48E688C8-609F-4B08-944E-3C7FAB99CD08}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7436DB12-1A7A-4D87-A4E0-713EC9D86050}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{924F5B3A-7A27-484A-B873-E855C9708667}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BE08F6BC-C3E6-4149-BEB1-CB449E1B372E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C3A9F7F8-8862-496A-B8A4-25D4140B7DBC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{19069804-2CF0-4357-B696-BA6E9AAD99EF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4158DB95-DE71-41FF-BEA1-2C3D1C679DF1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7354662F-CAA3-448B-BC01-04F55A2DCA35}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{95A9BBCA-4EC1-4A9E-91AA-1D9633C38D0E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A5ADEAE7-A8B4-4F94-9128-BF8D8DB5E927}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AAB6BCE3-1DF6-4930-9B14-9CA79DC8C267}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D4839331-534D-4D0C-875F-D25AF6A10CCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F97E75A4-0103-4F27-A752-327B600B1130}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ZsMod.AxObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ZsMod.AxObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17F1C8E8-B99B-4D85-927B-A0EE7290455A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19CE93DE-8334-42C6-B2CA-BFE3DF5196A3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C2EDD19-C2D5-4234-9339-785E5885B84D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2283BB66-A15D-4AC8-BA72-9C8C9F5A1691}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33BBE430-0E42-4F12-B075-8D21ACB10DCB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38928D50-8A48-44C2-945F-D2F23F771410}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{406F94F0-504F-4a40-8DFD-58B0666ABEBD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4558FA8B-C683-4BD9-BB43-90E086A4C113}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B57D035-8A78-4E5A-82DF-FD5DEE51E578}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EBCAF82-5BE7-4FC5-938F-9CD284587139}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F2C1A0A-622E-4D23-9870-6FB6D109C170}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{55C32FB0-B5DE-432D-B143-7CA84EA3F888}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57421194-58FB-49AE-9B4F-FD48869B9AD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59E99ADD-E926-40e8-BD6F-1532124A4AAA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62EED7C6-9F02-42f9-B634-98E2899E147B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6940DBA6-CEBB-46B6-8058-CB358295BCCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A915D6B-B187-4724-B753-F338D8A157C2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7992E7F8-5D81-4EAA-9E5F-6211215946E4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FC688E0-3F7D-4517-8C30-459C4211A8A1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C3C2C08-C494-4F52-AE94-85156A447D43}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A14600F7-E2AE-482D-9AFC-99CD4544DB4F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB9BF611-F86A-43C5-A467-625E22D7A309}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF53D70E-29DF-443A-92AA-9C314AF5871E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B56FF3E8-B0C2-45C9-AF3F-8E6C5F010B9F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C14F7681-33D8-11D3-A09B-00500402F30B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C459AB59-28A5-43A3-9D22-753F4C9586E6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CA1E3092-BC38-4FFC-AEAE-C8E8EEC70CA1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CEA8FC9F-3D3F-4486-B9DF-ADCEE875FFB2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D7C53E1A-7045-473C-933D-8228D1708947}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E3128A3A-C191-4149-8631-C632C8FC9919}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF4BA0B4-A877-45B3-B0BC-AD7A3CC22811}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F40FED3D-F813-42F4-A1AE-8E1D60472BF0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FA6DA3A4-87E4-4A45-9FD6-ED26089B7104}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE3ECAE7-0A37-4506-8A7D-3CC9A04D2CA8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF0E5DF6-2375-4499-A97F-74954384D8D2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{02DB2793-F3F8-42AB-9B03-19B25485BE29}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{924F5B3A-7A27-484A-B873-E855C9708667}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BE08F6BC-C3E6-4149-BEB1-CB449E1B372E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C43273A6-9085-41CF-8A84-3881363A7EB9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DD011DB1-0EAF-4D05-8650-BB99208C76B0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DF692509-D9EF-48A0-9CD0-3AA5B81F6F68}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\jpegfile\shellex\ContextMenuHandlers\Yahoo!Photo]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandButton]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandButton.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandReg]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandReg.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.ObjectBar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.ObjectBar.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{04D0FD01-C8FA-413B-AD83-519D10B93324}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{22242729-9EE0-4060-988D-BE2A9EFD8CD0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4158DB95-DE71-41FF-BEA1-2C3D1C679DF1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{51C76AB9-D876-46A8-A20D-F606EDDD69ED}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5517390C-60D1-4FFA-BD4C-81F8278AF29E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{58E9B715-3C97-4048-9CBE-A708E0AEB29E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7CFDAB57-D8CD-4465-BD15-48CFFCEE3DF2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8417D3DB-4004-4259-952D-A6EC64A1800E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{95E822B6-6B10-4E86-9603-6CECB6135867}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AAB6BCE3-1DF6-4930-9B14-9CA79DC8C267}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AE9A3F59-E2D2-4EE8-A279-F2B6AF336B8E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{CF67E74A-3C62-4867-9DFA-DD2374003333}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E816B7F9-96AB-4D4D-8DA4-B9D124959DA5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F8CC28B5-4042-4054-99CB-8855EFD0FAB7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.AsNoAdObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.AsNoAdObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.DragSearch]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.DragSearch.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.PhotoTb]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.PhotoTb.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YALive.Live]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YALive.Live.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YAssist.EasyAssist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YAssist.EasyAssist.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YRss.ExpBand]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YRss.ExpBand.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zschkfile]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\!CNS]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000000-0000-0001-0001-596BAEDD1289}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{507F9113-CD77-4866-BA92-0E86DA3D0B97}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{59BC54A2-56B3-44a0-93E5-432D58746E26}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{5D73EE86-05F1-49ed-B850-E423120EC338}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{E5D12C4E-7B4F-11D3-B5C9-0050045C3C96}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{ECF2E268-F28C-48d2-9AB7-8F69C11CCB71}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FD00D911-7529-4084-9946-A29F1BDF4FE5}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search]
"SearchAssistant"=-
"CustomizeSearch"=-
"OCustomizeSearch"=-
"OSearchAssistant"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{33BBE430-0E42-4F12-B075-8D21ACB10DCB}"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{406F94F0-504F-4A40-8DFD-58B0666ABEBD}"=-
"{BB936323-19FA-4521-BA29-ECA6A121BC78}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{33BBE430-0E42-4f12-B075-8D21ACB10DCB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{38928D50-8A48-44C2-945F-D2F23F771410}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{62EED7C6-9F02-42f9-B634-98E2899E147B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BB936323-19FA-4521-BA29-ECA6A121BC78}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE3ECAE7-0A37-4506-8A7D-3CC9A04D2CA8}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{D157330A-9EF3-49F8-9A67-4141AC41ADD4}"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"helper.dll"=-
"CnsMin"=-
"assistse"=-
"hbpassport"=-
"YLive.exe"=-
"yassistse"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"CnsAssecblk"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CnsMin]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1B0E7716-898E-48cc-9690-4E338E8DE1D3}]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CNSMINKP]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\CnsMinKP]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\!搜一搜]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\添加到雅虎订阅(&Y)]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\雅虎搜索]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"CNSMenu"=-
"CNSHint"=-
"CNSReset"=-
"CNSEnable"=-
"CNSList"=-
"CNSAutoUpdate"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{406F94F0-504F-4a40-8DFD-58B0666ABEBD}"=-
"{BB936323-19FA-4521-BA29-ECA6A121BC78}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\3721]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Yahoo]
[-HKEY_CURRENT_USER\Software\3721]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{19CE93DE-8334-42C6-B2CA-BFE3DF5196A3}]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{57421194-58FB-49AE-9B4F-FD48869B9AD4}]
;rem 彩信通 又一个超级的**产生了
;rem 想办法删除 %windir%\system32\drivers\Albus.SYS 这个万恶不赦的文件,推荐用http://ccollomb.free.fr/unlocker
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ALBUS]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Albus]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Albus]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ALBUS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Albus]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ad.AxObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ad.AxObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6671A431-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6671A432-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A512BF7-EC78-4e8d-9841-6C02E8FA9838}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.WinHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.WinHelper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{74289A79-E652-4A57-A6B9-EE64AD532A8D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AB45CE36-C280-4525-BCF9-1BD01D3E4B57}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D922591D-7893-412B-B801-C3B2F31BE4C9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssist.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssistMenu]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssistMenu.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{077525AC-C681-4139-8C3E-B582BDD375C7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{22F87D75-7DD1-4545-94B3-CA80C0F462C6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{964DDEFF-B16C-4113-8FF7-8E83B53C8ED8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{6671A433-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6671A431-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\mmsassist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Stdup]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\>>彩信发送<<]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"alsmt.exe"=-
;rem internet explorer helper msshapi.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02C9B9AB-6372-46C5-B356-773FAF3B6B1E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02C9B9AB-6372-46C5-B356-773FAF3B6B1E}]
;删除划词 huaci 又是一个走上不归路的超级**
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{594BE7B2-23B0-4FAE-A2B9-0C21CC1417CE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{4E1ACE40-F681-4CC4-A7C0-AD1E6C9AD86F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SearchM.Search]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SearchM.Search.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FD536575-73F7-42A3-9E9F-11688F1A006A}]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ABHCOP]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_HCALWAY]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\abhcop]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\hcalway]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ABHCOP]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_HCALWAY]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\abhcop]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\hcalway]
[-HKEY_CURRENT_USER\Software\Pig Move Search]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MoveSearch"=-
;CDN这个**
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Cdn.CdnObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Cdn.CdnObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CdnForIE.IEHlprObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CdnForIE.IEHlprObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8CDCBBA0-4BE1-4199-8389-1B19ED41D3E8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9A578C98-3C2F-4630-890B-FC04196EF420}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5824EFB-728A-4726-A5A5-85A68B20EDC3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5C3853CD-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{951A869A-1003-4897-948F-D55E570871DB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9C991F1E-D6FE-4B74-B6EC-763FF528FAE1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F248EBAB-D894-4682-80E3-F48AABF4B12D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5C3853CE-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C24A5A5C-0874-4386-85C7-E669F90997A9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{DF571585-070D-4EB1-8B0E-99023F934FD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMHlpr.WMEvtSink]
[-HKEY_LOCAL_MACHINE\SOFTWARE\CNNIC]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\CDNCLIENT]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F5824EFB-728A-4726-A5A5-85A68B20EDC3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{35980F6E-A137-4E50-953D-813BB8556899}]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cdnprot]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cdntran]
[-HKEY_CURRENT_USER\Software\CNNIC]
[-HKEY_CLASSES_ROOT\CLSID\{EED92A43-CFCE-4548-BD73-B0A405470ED5}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CdnCtr"=-
"renewup"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\CmdMapping]
"{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{EED92A43-CFCE-4548-BD73-B0A405470ED5}"=-
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\访问通用网址]
;去除stdup.dll这个**
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\StdService]
;rem Baidu这个** 越来越狠,Baid* 也不例外
;rem需要安全模式或者想办法删除 %windir%\system32\drivers\BDGuard.SYS 这个文件,才能卸载
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Baidu]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Baidu.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Tool]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Tool.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.BandIE]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.BandIE.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.DropTarget]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.DropTarget.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C76C055-ED6E-4535-A70F-CD476E727F67}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A7F05EE4-0426-454F-8013-C41E3596E9E9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE14F22E-BE14-4F08-A80F-F27BC3A67B2D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{464C8A26-31E9-411C-9583-5B858E631DCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{89FDCC4B-8D91-49B0-81A6-18BCFF582735}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{96249369-D3DC-4AE6-8A3B-E7109D46E98D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A294F8EB-86D9-4C4A-8B3E-909253761C64}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MimeFilter.AdFilter]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6AFC2761-1253-427C-9A56-385B4609BE1D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{B580CF65-E151-49C3-B73F-70B13FCA8E86}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
[-HKEY_CURRENT_USER\Software\Baidu]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度--网页搜索]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索MP3]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索图片]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索新闻]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索歌词]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索网页]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索贴吧]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-词典搜索]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BIE"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BaiduDS"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BDGUARD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BdGuard]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BDGUARD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\BdGuard]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BDGUARD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BdGuard]
;删除 SSAddr.dll Tencent地址搜索栏
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C7C23EF-A848-485B-873C-0ED954731014}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90B1ECB2-FC3B-49AE-A6BD-F5F11BF5C4AD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A57E074F-56D8-4A33-8112-AAC9693AA909}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B1A7C2CF-BF40-4597-8142-7615D74D0CC3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\TBH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157b}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{DEDEB80D-FA35-45d9-9460-4983E5A8AFE6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0C7C23EF-A848-485B-873C-0ED954731014}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\UrlSearchHooks]
"{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AddrPlus3"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Tencent\TBH]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\上传到QQ网络硬盘]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\添加到QQ自定义面板]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\添加到QQ表情]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\用QQ彩信发送该图片]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0C7C23EF-A848-485B-873C-0ED954731014}]
;删除QQIEHelper.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{54EBD53A-9BC1-480B-966A-843A333CA162}]
;删除病毒 IRJIT.DLL 库站 多多QQ表情 **
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D1BB7CF4-4463-4e91-88D7-ECC3CE0A13B7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0083DE51-EB2E-4521-A95C-735D8E563373}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QuickButton.QuickBtn]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\sss1.sss2.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{933DB9D6-9447-4EFE-ABA2-EAF3B309B44C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{1D901067-2529-4A9B-9B6B-7A1DB3A44CB5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D1BB7CF4-4463-4e91-88D7-ECC3CE0A13B7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Update"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BNESS]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\BNESS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BNESS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\BNESS]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Lamp]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D1BB7CF4-4463-4E91-88D7-ECC3CE0A13B7}]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Universal Disk Manager]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MOBILL]
;删除Kugoo
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A9930D97-9CF0-42A0-A10D-4F28836579D5}]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\使用KuGoo3下载(&K)]
;删除网络这只蠢诸
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PigUpdate"=-
;rem 删除 henbang 很棒 **
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8AB6C00E-A068-44E9-953F-1BCFEEA2BB6A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21DAD172-D8C3-40CA-B7D3-E28AE7A5DB22}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AB6C00E-A068-44E9-953F-1BCFEEA2BB6A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BE0B5843-553A-48C2-9A42-258A1D791AFC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C7E302E-B015-4E6E-A761-C28D78F3BC5A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9AED6826-A68C-4AA0-A370-DE54C0D40788}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AAC356CF-178B-4612-B1DB-EE153846BF58}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HBHelper.HBActivex]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HBHelper.HBActivex.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RichMedia.BhoObject]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RichMedia.BhoObject.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{B6773538-228E-4D2F-9599-70DD9BBD2CB0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B6773538-228E-4D2F-9599-70DD9BBD2CB0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BC8F8692-D345-44E0-93FF-EFB1BA6AA962}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9660E66E-AF14-4946-8249-1A640BBABFCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HAPSpy.HAPClientSpy]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HAPSpy.HAPClientSpy.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{21DAD172-D8C3-40CA-B7D3-E28AE7A5DB22}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BE0B5843-553A-48C2-9A42-258A1D791AFC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\RichMedia]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{21DAD172-D8C3-40CA-B7D3-E28AE7A5DB22}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"hdp"=-
"hbpassport"=-
"RichMedia"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"mscfs"=-
"Iehelper"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1A199C20-DE2B-4838-AE3F-B5257ECE2B7E}]
;rem 搜狗
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.$p4p$]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\autolink.AutoLinkBHO]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\autolink.AutoLinkBHO.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{238D0F23-5DC9-45A6-9BE2-666160C324DD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{765035B3-5944-4A94-806B-20EE3415F26F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{941A4793-A705-4312-8DFC-C11CA05F397E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{E21BE468-5C18-43EB-B0CC-DB93A847D769}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{F1CDA468-8A08-449F-9FB8-461C3DED0E03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08B13A8E-EB71-4421-B417-4EC0995D5BFC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CA51D02-7739-43EA-8D9A-1E8AD4327B03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{238D0F23-5DC9-45A6-9BE2-666160C324DD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5AA23B9D-99C0-4A41-A25D-58E806766680}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{765035B3-5944-4A94-806B-20EE3415F26F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7FD094E7-C8B9-40BD-9F80-F20A7194D2E6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81B9A3D6-D79F-403E-939B-4F2BE8FD2A34}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8755CE6E-0BF7-4441-8751-FB728941B0B4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AB8528F-AC8B-416D-9B84-92D97729C195}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{941A4793-A705-4312-8DFC-C11CA05F397E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ACBF9EB9-48C5-4226-9967-2E3247A04510}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BAB1AC41-6FF7-4F2E-A04E-5C592CCFEA7D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D977D6A9-BE13-496D-9BE4-175DFAC12628}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DBBB7978-AF21-4EF4-9AD1-B2F4BC75696C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DEEE7FE9-3E06-43EE-B04D-18866CD0AD9C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E03667BC-5EDA-4FD8-992C-ED73265AFAA0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E21BE468-5C18-43EB-B0CC-DB93A847D769}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F1CDA468-8A08-449F-9FB8-461C3DED0E03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F20A9999-11DC-4071-87A9-35191DFDDAA6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F4FB516E-8F16-44FD-AB1D-260C32B7CF9A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompLoader.Loader]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Media Type\{e436eb83-524f-11ce-9f53-0020af0ba770}\{57428EC6-C2B2-44A2-AA9C-28F0B6A5C48E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SgSearchHook.SgUrlSearHook]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SoDAIEHelper.Catch]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\sogoutb.Detector]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Toolbar.BHOObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{8755CE6E-0BF7-4441-8751-FB728941B0B4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0CA51D02-7739-43EA-8D9A-1E8AD4327B03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Sohu R&D]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\P4P Service]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\P4P Service]
[-HKEY_CURRENT_USER\Software\Sohu R&D]
;
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\使用彩信超级自写发送到手机]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\使用新浪下载助手下载]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\发送图片到手机(&M)]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\收藏此页到新浪ViVi]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\新浪搜索]
;中搜寻址
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2A0176FE-008B-4706-90F5-BBA532A49731}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D1AFED83-9133-4660-8C8F-DAF1B4A3D5A8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E8D3778F-47D3-4F1F-9245-3D46856936E4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SNHpr.CSNHpr]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SNHpr.CSNHpr.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A0176FE-008B-4706-90F5-BBA532A49731}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\SearchNet]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ANFAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_JMEDIASERVICE]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Anfad]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\Remote Log]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\JMediaService]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Remote Log]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ANFAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_JMEDIASERVICE]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Anfad]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Remote Log]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\JMediaService]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Remote Log]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6A512BF7-EC78-4E8D-9841-6C02E8FA9838}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SearchNet_Up"=-
;rem 好像是开心运程 这个**
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SDAgentService]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MicrosoftRedirectionProgram"=-
"res"=-
;rem 易趣购物
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE60714F-AC17-427e-861A-FD60CBDF119A}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\CmdMapping]
"{EE60714F-AC17-427e-861A-FD60CBDF119A}"=-
;rem msdc32.dll 一个木马 需要安全模式才能清除
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run]
"ip_sec"=-
;rem 一个广告Navihelper.dll
[-HKEY_CURRENT_USER\AppID\NaviHelper.DLL]
[-HKEY_CURRENT_USER\NaviHelper.NaviHelperObj]
[-HKEY_CURRENT_USER\NaviHelper.NaviHelperObj.1]
[-HKEY_CURRENT_USER\CLSID\{3E422F49-1566-40D3-B43D-077EF739AC32}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3E422F49-1566-40D3-B43D-077EF739AC32}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"supdate2.dll"=-
[-HKEY_CLASSES_ROOT\Update2.Update2]
[-HKEY_CLASSES_ROOT\Update2.Update2.1]
[-HKEY_CLASSES_ROOT\CLSID\{ECF9C696-8018-41B4-8DAD-CFD1C732DC61}]
[-HKEY_CLASSES_ROOT\TypeLib\{752C3608-0BD6-4035-83D5-6CE383AED6B4}]
[-HKEY_CLASSES_ROOT\Interface\{C6AAD6FD-08D3-47F7-A8A2-1D7EF923DAD1}]
;rem 跳跳塘 这个**
;rem 这个**可能不能被删除,请先到进程管理里删除webacc.exe这个进程
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"webacc"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"webacc"=-
"mu071c"=-
;rem baigoo 这个** BG
[-HKEY_LOCAL_MACHINE\SOFTWARE\baigoo]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{40EF7CCC-71FE-4615-A0CA-D373F8C2AC88}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\MtSrv.EXE]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooEx.Update]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooEx.Update.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BHOHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BHOHelper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BrowserObject]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BrowserObject.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BGooBHO.Status]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BGooBHO.Status.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BGooSrv.HtmlPaser]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7905958A-18C2-4139-9957-AE6F2B754818}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7BDAF75A-0D6F-4F50-AFE9-333D08DF4005}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{808EAF87-61B8-4EEA-8B85-27480D1BDBEE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8816EA7A-5944-4277-B98E-2C0A46FB36E9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4A8976FE-144E-4742-8E49-D6CD3B140FD1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{690E010B-042A-4973-87A8-485DEB8BDF68}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9DC44A38-B772-47F8-A406-054F842EC7C5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7BDAF75A-0D6F-4F50-AFE9-333D08DF4005}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"bgoomain.exe"=-
;rem YOK拦截助手
;Navsmall.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1BC02872-BC5E-46BE-BA76-6B0170FE6BFE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter\text/html]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{972566B2-93BF-41AA-B06D-5F81DB7E38E1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3E2C12D-FACF-43BB-BE10-B1CDD497BFC9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C7FA2A99-D9AF-4112-B197-436016C2F72F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F869BB38-FFEF-4589-B986-610B7AD0ADA2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1A1798CC-9120-40B1-BA68-1D1415973232}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1E69A80B-B19A-49AD-805E-98447883BED3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3E42ACD2-B79D-4495-A6E5-9D972B19D815}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{871385F0-7E91-42D4-9B91-CD5611274531}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{261EE951-024F-4903-B880-ADA965E72885}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{628508EC-44AB-4990-B751-A3005D28053F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{972566B2-93BF-41AA-B06D-5F81DB7E38E1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F869BB38-FFEF-4589-B986-610B7AD0ADA2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SMS.SMSObject]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SMS.SMSObject.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.HttpFilter]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.HttpFilter.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBho]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBho.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBlockAdr]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBlockAdr.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Navsmall]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Yok]
[-HKEY_CURRENT_USER\Software\Yok]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar]
"{1E796980-9CC5-11D1-A83F-00C04FC99D61}"=-
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{972566B2-93BF-41AA-B06D-5F81DB7E38E1}]
;rem 不知是什么流氓
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D515F39-EBD0-0B9E-6719-2F8D8869AA61}]
[-HKEY_CLASSES_ROOT\CLSID\{8D515F39-EBD0-0B9E-6719-2F8D8869AA61}]
;rem 不知是什么流氓
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CE7C3CF0-4B15-11D1-ABED-709549C10000}]
[-HKEY_CLASSES_ROOT\CLSID\{CE7C3CF0-4B15-11D1-ABED-709549C10000}]
;rem VIPTray.exe 千橡这个** IE-BAR Desktop Media
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\BHORun.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\DelayLoad.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{65EF7AD4-1340-4A36-A097-95FF17E243E1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{84D34084-4E38-4683-A4DB-CA00646FEE8B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BHORun.BHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BHORun.BHelper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DelayLoad.LoadRun]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DelayLoad.LoadRun.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Dmbar.dmbar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Dmbar.dmbar.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DMBho.BrowserHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16358834-52FC-4981-9A79-BFECE7C08CD3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FCA37BA-7259-4BF1-878B-A39FA83BFBBB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D99E8F4-56B7-457B-9A92-61B5D247D263}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A6F2F95-3191-433B-8533-EB0B596A7BAC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2E37336-BFDB-409B-8D0E-6F013C438B20}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{265379DB-90F0-45DB-9B10-640DCB1145FD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7EB718DD-E41F-446A-9C1E-757F921168A0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{8C9377D3-D823-46A6-A8AC-B3913F9B6CA2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{25649A6A-637D-4416-9D03-98146330492A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{292D202F-E519-45F4-8D50-DE8513B87CE9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{86645AFC-0B33-4275-BFE6-FAE9FCD886D1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\IE-Bar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{1FCA37BA-7259-4BF1-878B-A39FA83BFBBB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2D99E8F4-56B7-457B-9A92-61B5D247D263}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F2E37336-BFDB-409B-8D0E-6F013C438B20}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\sharehelper]
[-HKEY_CURRENT_USER\Software\sharehelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\sharehelper]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VIPTray]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Te1net]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{1FCA37BA-7259-4BF1-878B-A39FA83BFBBB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"DelayRun"=-
;rem ChajianHelper
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}]
;rem HelperService.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9E1E1371-9D8F-4421-81B9-F8D2E1773A59}]
;rem wmicsmgr.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"wmicsmgr"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{333872C4-92D6-4396-8542-64AB96518950}]
;SmartLinkService (SLService) - slmdmsr.exe
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SLService]
;rem 一个什么五笔
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED8DFC5C-10EF-45AB-9DC2-0639AFF5A270}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{CBC67CD5-855C-4A69-B450-A0508FDA5234}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C0CDC83C-FEA7-499F-9BE7-A9AB4EAED292}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Update.bho]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Update.bho.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ED8DFC5C-10EF-45AB-9DC2-0639AFF5A270}]
;rem MyWebSearch
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00A6FAF1-072E-44cf-8957-5838F569A31D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25560540-9571-4D7B-9389-0F166788785A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2EFF3CF7-99C1-4c29-BC2B-68E057E22340}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84DA4FDF-A1CF-4195-8688-3E961F505983}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{938AA51A-996C-4884-98CE-80DD16A5C9DA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9AFB8248-617F-460d-9366-D71CDEDA3179}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A9571378-68A1-443d-B082-284F960C6D17}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D9FFFB27-D62A-4D64-8CEC-1FF006528805}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FunWebProducts.DataControl]
[HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive]
"{07B18EA9-A523-4961-B6BB-170DE4475CCA}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00A6FAF1-072E-44cf-8957-5838F569A31D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{07B18EA1-A523-4961-B6BB-170DE4475CCA}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MyWebSearch Email Plugin"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{00A6FAF6-072E-44cf-8957-5838F569A31D}"=-
; rem 开心运程速递 MEobjectSDT shwasobj.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4136C3F6-7636-49bf-A122-D4DA53B1ADDF}]
;rem MyIEHelper IEHelper_****.dll 这个文件名会不停的变化
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16A770A0-0E87-4278-B748-2460D64A8386}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.MyIEHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.MyIEHelper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A4BC2506-C00C-4D2E-B47F-0BB4C2C74CCF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2511DE40-34A3-4C6A-B1B2-C5C92A2F00BE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{16A770A0-0E87-4278-B748-2460D64A8386}]
; rem windirected 傲迅 wmpdrm.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"spoolsv"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\wmpdrm.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E674588-66B7-4E19-9D0E-2053B800F69F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{4A775183-9517-420E-9A13-D3DA47BB8A84}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8B200623-3FC5-4493-8B49-DC2AD4830AF4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmpdrm.cfsbho]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmpdrm.cfsbho.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E674588-66B7-4E19-9D0E-2053B800F69F}]
;rem ActiveBandObject.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ActiveBandObject.ActiveBHO]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ActiveBandObject.ActiveBHO.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63C55A7F-6E29-8D4F-5C76-4F850F28D13A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AB6EC1FC-83B0-4EF2-A128-785BAFC2A2B5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2F80A49B-9FA3-4FA0-A964-4689B0C1B30B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{63C55A7F-6E29-8D4F-5C76-4F850F28D13A}]
;rem 划词搜索 deskipn.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08A312BB-5409-49FC-9347-54BB7D069AC6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9C1CE329-606F-4C0F-8A85-9C2818878AF3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MonitorIE.MonitorURL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MonitorIE.MonitorURL.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{647BB013-E900-473E-BC10-99CF3AC365AD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{08A312BB-5409-49FC-9347-54BB7D069AC6}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Desktop"=-
[-HKEY_CURRENT_USER\Software\DeskAdTop]
;WinSC.dll Luobooshow
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\SCIntruder.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{35A69597-0E2A-4100-A394-C6F6FC2535B9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D8CA512-282E-4E3F-8970-F5EE879AF7FC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{566CB5F7-D9FA-4B01-8A1A-168F706CBE41}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86DC8694-AACC-4CE6-B8EC-A75DEEDA698D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9ACEEE30-143F-471A-AA45-72B061FE7D60}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C5668031-4BDE-43D4-8766-8E9AAC16C56E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DED96F80-2B97-407C-8E09-D7233448753F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{172754B5-06E9-49D4-B1E0-7D821E23C5E8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1B631EF9-EBD4-4828-ABB2-1AFB96E2EA4E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{36F305A9-4451-4FDF-9274-28F21E2A2F14}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B513A7FC-BC53-4077-ABE3-5BD321AF651D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BCC53A8C-67A7-4E8F-B971-D4668D1A7423}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C88FD25F-8D53-4E99-AEA0-18F22801CE8C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D1F6E94E-8EA1-4EC8-914C-138BC55AE104}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NewWebController.Intruder]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NewWebController.Intruder.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.DocumentEventsHandler]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.DocumentEventsHandler.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Magazines]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Magazines.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Service]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Service.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Settings]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Settings.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.WindowEventsHandler]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.WindowEventsHandler.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5CD75223-E010-4BE9-9027-7A53533EA4F6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9ACEEE30-143F-471A-AA45-72B061FE7D60}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSService_v1.0"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Luobooshow"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\SCIntruder]
;rem caishow
[-HKEY_LOCAL_MACHINE\SOFTWARE\CaiShow]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\BrowerHelperMFC.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\Download.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\MMSFactory.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\MMSSend.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\ssoaddionalindical.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{18E8C855-FF2E-4BEB-B9D2-E7B25AF92A48}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{22A36E6E-07CB-4851-AA84-5FC1CA73A1DE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{37BC804E-E26B-4D09-836F-AC15FC0C253E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{88ABD365-12AE-44E7-8450-DA5C3653325B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{F375F726-23D3-4179-9CA2-54FE6E490879}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{FBB4D7BA-CCD3-457D-BEFF-F3B1757BD6B1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BrowerHelperMFC.CaiShowBH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BrowerHelperMFC.CaiShowBH.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{3C78B8E2-6C4D-11D1-ADE2-0000F8754B99}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E6E0B51-0300-4AE2-B6C4-F4EFE33A33B2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32F64094-A155-4554-8753-E5E267A8C002}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3AF40CB8-B3BA-4E2D-8968-4BF8DB172997}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C78B8E2-6C4D-11D1-ADE2-0000F8754B99}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5673A7C0-95CC-4646-BB07-3BD71234CEF9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6ABB6C58-FEB7-43AE-946A-AF05D074F493}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DD6C4862-4BF9-48CE-BD27-9838E30D3DD5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Download.Download]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Download.Download.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{315420B2-E5C8-4E7B-B812-6676BA4F30CE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6CA6DE10-8705-4E1B-9117-BCFA5BECE14B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{CE98AD53-16F1-48D3-9208-1203AA19F77E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D32D8A55-A21A-4237-B8BB-5A5EBEE6746D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DBD14208-5F2F-40B8-8D97-6DE44C1D2E3D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F6CE85C8-99E7-49F5-A1A2-03FFC4FF09A5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSFactory.Send]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSFactory.Send.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSSend.Send]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSSend.Send.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\My.NetAccelerate]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ssoaddionalindical.Identify]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ssoaddionalindical.Identify.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1F805A43-0E95-4245-8EAF-9271D520722A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{73D53D7B-66DF-419B-9B44-CF3F42ADF5C9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{864F198D-6568-4686-B4F5-4A970B85E58B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{89A99589-82B0-4983-A882-E8D8DB3DA5C7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{CEBE027D-5423-41B8-AF51-9F1C22557CC6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D0581D47-E3CB-402D-B8A6-5F8561B2A36C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3AF40CB8-B3BA-4E2D-8968-4BF8DB172997}]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\用炫彩图铃发送该图片]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"caishowmanage"=-
;rem 酷桌面 Letscool.exe CoolBho.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\LetsCool]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Letscool.exe]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LetsCool"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LetsCool"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0C15012-7DBD-4068-95A2-0A82DB03AC35}]
;rem Schedule sscli.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\At.Helper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\At.Helper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8B316DA1-9950-4926-B9EA-1AEC124AFA45}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8B316DA1-9950-4926-B9EA-1AEC124AFA45}]
;rem 青娱
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\QylUpload]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{EB86A239-96D9-4F34-BCCD-E1E13D09577B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2236FAB7-7BDD-4187-831B-C7D809CA2E24}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53AE3F49-4985-4245-9AFE-2D3A14DCF7CD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81B5C8FE-07BD-4020-B299-79C0BE1A3946}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E70FE57A-19AA-4A4C-B39A-408D49D73851}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EB86A239-96D9-4F34-BCCD-E1E13D09577B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EC987C58-81A2-4d2c-993D-D0E1945D7E7C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F349A88E-33CF-46E7-8091-6EF28491168D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Contextmenu.Upload]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Contextmenu.Upload.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0775F38B-6CF8-40B1-9A9D-43E6BFF4660D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{60F02175-7F65-4F3B-AC6B-CB842B921ECD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{82044DF3-E304-4034-B16D-2D5A83979744}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A188D411-8ED2-487E-9D25-2EACA8330956}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A32C5A11-AA68-4D61-8217-0953F704D3CA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BDD8A4E1-B6EE-4C4E-B6DA-0A1E627477DD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E9DC930A-4AC3-4EED-98AB-E2097EDBACE9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QYULE.RMPLAYER]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QYULE.WMPLAYER.9]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QYULEPLAYER.QyulePlayerCtrl.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{72DB4BF2-6C70-4297-857C-4B2D9E1F452C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8F3B47E6-31BA-4089-8C23-683526E67984}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{905AA0BA-A402-4F56-9E39-3817EDD89786}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9AD54178-E7AE-4528-A79D-48D7E79202EE}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ClientQyule"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ClientQyule"=-
[-HKEY_CURRENT_USER\Software\Qyule]
[-HKEY_CURRENT_USER\Software\SmartClient]
;kuaiso toolsbar
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B07D1F6B-6B8C-4904-8EE8-5E5A2B4624B3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D57DF8CF-66B7-412C-A7D1-64B5F5F7FE27}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.XBTP03129]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.XBTP03129.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB03129.IEToolbar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB03129.IEToolbar.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB03129.XBTB03129]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB03129.XBTB03129.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B07D1F6B-6B8C-4904-8EE8-5E5A2B4624B3}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}"=-
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B07D1F6B-6B8C-4904-8EE8-5E5A2B4624B3}]
[-HKEY_CURRENT_USER\Software\XBTB03129]
;rem bbmao
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6AE02E1C-8859-4F57-9097-5A55A56A4CAF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72BA415A-AE03-4279-ACAB-39A3DF73FD4E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{68A7C985-87D6-4635-B498-3290613C718E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.XBTP05676]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.XBTP05676.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB05676.IEToolbar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB05676.IEToolbar.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB05676.XBTB05676]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB05676.XBTB05676.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{6AE02E1C-8859-4F57-9097-5A55A56A4CAF}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72BA415A-AE03-4279-ACAB-39A3DF73FD4E}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform]
"bbmao Toolbar"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{6AE02E1C-8859-4F57-9097-5A55A56A4CAF}"=-
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6AE02E1C-8859-4F57-9097-5A55A56A4CAF}]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{72BA415A-AE03-4279-ACAB-39A3DF73FD4E}]
[-HKEY_CURRENT_USER\Software\bbmao]
[-HKEY_CURRENT_USER\Software\XBTB05676]
;rem NB46 smflash.ocx 好像需要安全模式
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A50BDD0-01A6-4D58-958B-B9BC66789327}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56E88004-7AF8-474C-BB30-76E0B7B2B003}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A09B9056-F52E-413F-AE1D-5371DFE0D7B9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NB46Toolbar.CoNB46BHO]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F3E2C17E-E43F-4AD8-9232-15F33F95E044}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1A50BDD0-01A6-4D58-958B-B9BC66789327}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14A21378-5BB1-4BC4-95D5-5D3F51527F6F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{14A21378-5BB1-4BC4-95D5-5D3F51527F6F}]
下载此文件
1关闭浏览器
2执行un3721.bat
3再执行un3721.reg
4重启电脑,基本上的垃圾都删除了
5如果还有少量,重启电脑进安全模式操作,或看.bat文件里的帮助注释,
un3721.bat
复制代码 代码如下:
rem 砍掉一切流氓,让我们静待互联网的春天 ~_~
rem 各取所需,根据自己要求修改(有的人还觉得某个流氓好就留着*_*)
rem 如果跳出选择框,选择全部卸载
rem 有些**需要在安全模式下才能卸载,有些不好卸载请看里面的帮助
rem 现在的流氓越来越超级,已经超过批处理的能力极限,只有借助一些别的软件,推荐使用http://ccollomb.free.fr/unlocker一起删除超级**
rem 砍掉3721 kao 把好多的电脑弄惨了
if exist C:\PROGRA~1\3721\Assist\asbar.dll rundll32.exe C:\PROGRA~1\3721\Assist\asbar.dll,RunSettings -uninstall
if exist %windir%\downlo~1\CnsMin.dll rundll32.exe %windir%\downlo~1\CnsMin.dll,RunSettings -uninstall
if exist %windir%\downlo~1\CnsMin.dll rundll32.exe %windir%\downlo~1\CnsMin.dll,ControlPanel
regsvr32 /u /s %windir%\downlo~1\CnsMin.dll
regsvr32 /u /s C:\PROGRA~1\3721\Assist\asbar.dll
regsvr32 /u /s C:\PROGRA~1\3721\helper.dll
regsvr32 /u /s C:\PROGRA~1\YiSou\yisou.dll
rem 砍掉yahoo猪手,把好多的电脑弄惨
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yphtb.dll
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yangling.dll
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL
rem 新版的 猪手 根本不能选择卸载,***
if exist C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll rundll32 C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll,UnInstall
rem 彩信通 又一个超级的**产生了
rem 想办法删除 %windir%\system32\drivers\Albus.SYS 这个万恶不赦的文件,才能彻底清理这个门户
rem 推荐使用 DOS 启动电脑,找到C盘 这个万恶不赦的文件 删除
rem 或者使用 http://ccollomb.free.fr/unlocker 删除,删除后可能造成系统不稳定,重启电脑执行2个批处理,再重启
regsvr32 /u /s C:\PROGRA~1\MMSASS~1\MMSASS~1.DLL
if exist C:\PROGRA~1\MMSASS~1\mmsass~1.dll rundll32.exe C:\PROGRA~1\MMSASS~1\mmsass~1.dll,Uninstall
if exist %windir%\System32\stdup.dll rundll32.exe %windir%\System32\stdup.dll,Uninstall
regsvr32 /u /s %windir%\system32\stdup.dll
regsvr32 /u /s %windir%\system32\STDSVER.DLL
regsvr32 /u /s %windir%\system\stdup.dll
regsvr32 /u /s %windir%\system\STDSVER.DLL
del %windir%\system32\drivers\Albus.SYS /q /f
del %windir%\system32\Albus.DAT /q /f
del %windir%\system32\almms.dat /q /f
del %windir%\system32\alsmt.exe /q /f
del C:\PROGRA~1\MMSASS~1\MMSASS~1.DLL /q /f
rem internet explorer helper
regsvr32 /u /s %windir%\fonts\msshapi.dll
rem 划词 huaci 又是一个走上不归路的超级**
rem 这个**需要重启电脑,再次执行两个批处理文件操作才能被删除
C:\PROGRA~1\HuaCi\huaci\mUin.exe
C:\PROGRA~1\wsearch\mUnInstall.exe
%windir%\system32\msibm\Uninstall.exe
%windir%\system\msibm\Uninstall.exe
del %windir%\system32\drivers\abhcop.sys /q /f
del %windir%\system32\DRIVERS\hcalway.sys /q /f
rem Baidu这个**,**越来越超级,Baid* 也不例外
;rem需要安全模式,或者想办法删除 %windir%\system32\drivers\BDGuard.SYS 这个文件才能卸载这个**
if exist C:\PROGRA~1\baidu\bar\BaiduBar.dll rundll32.exe C:\PROGRA~1\baidu\bar\BaiduBar.dll,Uninstall
regsvr32 /u /s %windir%\DOWNLO~1\BDSrHook.dll
regsvr32 /u /s %windir%\DOWNLO~1\BDHelper.dll
regsvr32 /u /s %windir%\DOWNLO~1\BDPlugin.dll
regsvr32 /u /s C:\PROGRA~1\Baidu\Bar\BaiduBar.dll
regsvr32 /u /s "C:\Program Files\Common Files\Baidu\Disk Search\dsie.dll"
if exist %windir%\DOWNLO~1\BDHelper.dll rundll32.exe %windir%\DOWNLO~1\BDHelper.dll,DllRemove
del %windir%\system32\drivers\BDGuard.SYS /q /f
del %windir%\system32\BDGuard.DAT /q /f
del %windir%\system32\BDGuardS.DAT /q /f
del C:\PROGRA~1\baidu\bar\BaiduBar.dll
rem windirected 傲迅 wmpdrm.dll
rem 这个**卸载需在安全模式下进行,或终止explorer.exe,taskmgr.exe,输入法等进程只留基本进程,在CMD窗口中执行批处理可卸载
%windir%\system32\spoolsv\spoolsv.exe -uninst
regsvr32 /u /s %windir%\system32\wmpdrm.dll
del %windir%\system32\spoolsv\spoolsv.exe /q /f
rem 为了98
%windir%\system\spoolsv\spoolsv.exe -uninst
regsvr32 /u /s %windir%\system\wmpdrm.dll
del %windir%\system\spoolsv\spoolsv.exe /q /f
rem 删除QQ搜索 这个 **
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\IEHelp.dll
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\IEHelp1.dll
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\scrax.dll
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\TCtrl.dll
C:\PROGRA~1\TENCENT\Adplus\stup.exe C:\PROGRA~1\TENCENT\Adplus\SSAddr1.dll Uninstall
C:\PROGRA~1\TENCENT\Adplus\stup.exe C:\PROGRA~1\TENCENT\Adplus\SSAddr.dll Uninstall
rem 删除 DUDU 搜索条 这个 **
regsvr32 /u /s C:\PROGRA~1\DuDu\DddClient\dddiemon.dll
regsvr32 /u /s C:\PROGRA~1\DuDu\DddClient\dddmext.dll
rem 删除Accoona 这个 **
regsvr32 /u /s C:\PROGRA~1\Accoona\AToolbarCN.dll
regsvr32 /u /s C:\PROGRA~1\Accoona\atoolbar.dll
regsvr32 /u /s C:\PROGRA~1\Accoona\ASearchAssist.dll
rem 删除xBar
regsvr32 /u /s C:\PROGRA~1\xBar\xBarHelper.dll
regsvr32 /u /s %windir%\System32\xunleibho_v8.dll
rem 为了98
regsvr32 /u /s %windir%\System\xunleibho_v8.dll
rem Schedule sscli.dll
regsvr32 /u /s %windir%\System32\sscli.dll
rem 删除 henbang 很棒 **
regsvr32 /u /s C:\PROGRA~1\pcast\hbcast.dll
regsvr32 /u /s C:\PROGRA~1\HBClient\hapast.dll
regsvr32 /s /u C:\PROGRA~1\yehoo\hbyehoo.dll
regsvr32 /s /u C:\PROGRA~1\yehoo\tbyehoo.dll
regsvr32 /s /u %windir%\DOWNLO~1\HTHelper.dll
rem 库站 多多QQ表情 9991.com51.com 超级**
regsvr32 /u /s C:\PROGRA~1\CoolWebsite\QuickLink.dll
"C:\Program Files\Common Files\update\update.exe" -kill1
C:\PROGRA~1\CoolWebsite\uninst.exe
rem 最好安全模式操作,或者需要终止一个rundll32.exe %windir%\system32\wbem\IRJIT.dll 的进程
del %windir%\system32\wbem\IRJIT.dll /q /f
rem cfsbho.dll
regsvr32 /u /s %windir%\system32\msibm\cfsbho.dll
rem 为了98
regsvr32 /u /s %windir%\system\msibm\cfsbho.dll
rem 划词搜索 DeskAdTop\deskipn.dll
regsvr32 /u /s C:\PROGRA~1\DESKAD~1\deskipn.dll
C:\PROGRA~1\DESKAD~1\DeskUn.exe
rem 删除桌面传媒 IE-BAR 这个**
MsiExec.exe /I{FE41A479-E056-40A5-982C-D149B5D6712D}
regsvr32 /u /s "C:\Program Files\Desktop Media\Cast\dmbar.dll"
regsvr32 /u /s "C:\Program Files\Common Files\IE-Bar\dmbar.dll"
"C:\Program Files\Common Files\IE-Bar\uninstall.exe"
regsvr32 /u /s %windir%\DOWNLO~1\lund.dll
regsvr32 /u /s "C:\Program Files\IE-BAR\Cast\dmbar.dll"
rem 这个**可能不能被删除,请先到进程管理里删除VIPTray.exe这个进程
regsvr32 /u /s %windir%\system32\IEHelper.dll
regsvr32 /u /s %windir%\system32\WinDefendor.dll
rem 这个名字会不停的变化 **
regsvr32 /u /s %windir%\system\cb7o2470.dll
rem 为了98
regsvr32 /u /s %windir%\system\IEHelper.dll
regsvr32 /u /s %windir%\system\WinDefendor.dll
MsiExec.exe /I{3D554C17-ED16-448A-B3CE-6FBC51FFB705}
rem 中搜寻址 这个 **
regsvr32 /u /s "C:\Program Files\SearchNet\SNHpr.dll"
"C:\Program Files\SearchNet\UnInstall.exe"
rem 百狗**
C:\PROGRA~1\baigoo\mtsrv.exe -UnregServer
regsvr32 /u /s C:\PROGRA~1\baigoo\bgook.dll
regsvr32 /u /s C:\PROGRA~1\baigoo\bgooex.dll
regsvr32 /u /s C:\PROGRA~1\baigoo\BGooHK.dll
regsvr32 /u /s C:\PROGRA~1\baigoo\BGooBHO.dll
C:\PROGRA~1\baigoo\uninst.exe
rem 搜狗
C:\PROGRA~1\P4P\Uninstall.exe
regsvr32 /u /s "C:\Program Files\ScanToolbar\ScanBar.dll"
C:\PROGRA~1\ScanToolbar\uninst.exe
%windir%\system32\unsocul.exe
rem 为了98
%windir%\system\unsocul.exe
rem 点点通
if exist %windir%\DOWNLO~1\DDTINIT.DLL rundll32.exe %windir%\DOWNLO~1\DDTINIT.DLL,Uninstall
rem Radiate Advertising
%windir%\system32\MSIPCSV.EXE -uninstall -all
rem 为了98
%windir%\system\MSIPCSV.EXE -uninstall -all
rem RoomSetUPcd ads
if exist %windir%\system32\cd_clint.dll rundll32 %windir%\system32\cd_clint.dll,ServiceRunDll u_281
rem 为了98
if exist %windir%\system\cd_clint.dll rundll32 %windir%\system\cd_clint.dll,ServiceRunDll u_281
rem 一个什么五笔
regsvr32 /u /s C:\PROGRA~1\COMMON~1\Wnwb\wnwbio.dll
rem wmicsmgr.dll
regsvr32 /u /s %windir%\system32\wmicsmgr.dll
regsvr32 /u /s %windir%\system\wmicsmgr.dll
rem 一个广告Navihelper.dll
regsvr32 /u /s %windir%\system32\Navihelper.dll
regsvr32 /u /s %windir%\system\Navihelper.dll
del %windir%\system32\host.dat /q /f
rem 好像是一个木马
regsvr32 /u /s %windir%\system32\RAdminl.dll
rem 为了98
regsvr32 /u /s %windir%\system\RAdminl.dll
rem 跳跳塘
rem 这个**可能不能被删除,请先到进程管理里终止webacc.exe这个进程
%windir%\system32\wbauninstall.exe
regsvr32 /u /s %windir%\system32\webacc.dll
regsvr32 /u /s %windir%\Downlo~1\c8s.dll
rem 为了98
%windir%\system\wbauninstall.exe
regsvr32 /u /s %windir%\system\webacc.dll
rem 好像什么便民
regsvr32 /u /s C:\PROGRA~1\xm\tbu3\xm.dll
rem 易趣购物
del %windir%\ebaylink.ico /q /f
rem msdc32.dll 一个木马 需要安全模式才能清除
del C:\PROGRA~1\COMMON~1\system\msdc32.dll /q /f
del %windir%\ .exe /q /f /as /ar /ah
rem YOK拦截助手
regsvr32 /u /s C:\PROGRA~1\YOK.com\BlockAdr\yokhad.dll
regsvr32 /u /s C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll
regsvr32 /u /s %windir%\system32\Navsmall.dll
regsvr32 /u /s %windir%\system\Navsmall.dll
C:\PROGRA~1\YOK.com\BlockAdr\Uninst.exe
rem 不知是什么流氓
regsvr32 /u /s %windir%\DOWNLO~1\vevnli.dll
rem ChajianHelper
regsvr32 /u /s %windir%\system32\SYSREA~1.DLL
regsvr32 /u /s %windir%\system\SYSREA~1.DLL
rem 不知是什么流氓
regsvr32 /u /s %windir%\system32\HelperService.dll
regsvr32 /u /s %windir%\system\HelperService.dll
regsvr32 /u /s %windir%\system32\mshlp.dll
regsvr32 /u /s %windir%\system\mshlp.dll
rem MyWebSearch 这个**,这个**产生的目录根本不定
if exist rundll32 C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsbar.dll rundll32 C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsbar.dll,O
rem 开心运程速递
regsvr32 /u /s %windir%\system32\obwbkya.dll
rem 为了98
regsvr32 /u /s %windir%\system\obwbkya.dll
regsvr32 /u /s %windir%\system32\shwasobj.dll
rem 为了98
regsvr32 /u /s %windir%\system\shwasobj.dll
C:\PROGRA~1\SDAstro\Uninst.exe
rem 这个文件名会不停的变化
regsvr32 /u /s C:\Docume~1\AllUse~1\Applic~1\Microsoft\IEHelper\IEHelper200631_8913.dll
rem Luobooshow
regsvr32 /u /s %windir%\system32\WinSC.dll
regsvr32 /u /s %windir%\system\WinSC.dll
rem caishow
regsvr32 /u /s "C:\Program Files\CaiShow Tech\CaiShow\BrowerHelper.dll"
regsvr32 /u /s %windir%\system32\wuwebex.dll
regsvr32 /u /s %windir%\system\wuwebex.dll
rem 酷桌面
regsvr32 /u /s %windir%\system32\CoolBho.dll
regsvr32 /u /s %windir%\system\CoolBho.dll
rem 青娱
regsvr32 /u /s %windir%\system\QYLWMP~1.OCX
regsvr32 /u /s %windir%\system\QYLRMP~1.OCX
regsvr32 /u /s %windir%\system\contextmenu.dll
regsvr32 /u /s C:\PROGRA~1\Qyule\\QYULEP~1.OCX
regsvr32 /u /s C:\PROGRA~1\Qyule\\dvfilter.ax
C:\PROGRA~1\Qyule\unins000.exe
rem NB46.com smflash.ocx 好像需要安全模式
regsvr32 /u /s "C:\Program Files\nb46.com\NB46Toolbar.dll"
regsvr32 /u /s %windir%\system32\smflash.ocx
regsvr32 /u /s %windir%\system\smflash.ocx
rem kuaiso toolsbar
regsvr32 /u /s "C:\Program Files\Micrsoft SearchBar\SearchBar.dll"
rem bbmao
regsvr32 /u /s "C:\Program Files\bbmao Toolbar\bbmao_tb_v1_0.dll"
rem 删除CDN 这个 **
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\wmhlpr.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\iesrch.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\cdniehlp.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\cdniehlp.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll
regsvr32 /u /s %windir%\system32\cdnns.dll
regsvr32 /u /s %windir%\System32\jklpif.dll
rem 为了98
regsvr32 /u /s %windir%\system\cdnns.dll
regsvr32 /u /s %windir%\System\jklpif.dll
rem CNNIC的反安装这里可能不好完全卸载,请单独到控制面板里"添加/删除"里卸载,或找到C:\PROGRA~1\CNNIC\Cdn\cdnunins.exe单独执行
C:\PROGRA~1\CNNIC\Cdn\cdnunins.exe
un3721.reg
复制代码 代码如下:
REGEDIT4
;rem 砍掉一切流氓,让我们静待互联网的春天 ~_~
;rem 各取所需,根据自己要求修改(有的人还觉得某个流氓好就留着*_*)
;rem 如果跳出选择框,选择全部卸载
;rem 有些**需要在安全模式下才能卸载,有些不好卸载请看里面的帮助
;rem 现在的流氓越来越超级,已经超过批处理的能力极限,只有借助一些别的软件,推荐使用http://ccollomb.free.fr/unlocker一起删除超级**
;rem 砍掉3721 kao 把好多的电脑弄惨了
;rem 砍掉yahoo猪手,把好多的电脑弄惨
;rem 新版的 猪手 根本不能选择卸载,***,这里可以被卸载的
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\粉碎文件]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.zschk]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Angling.AntiFish]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Angling.AntiFish.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Assist.EasyAssist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AutoLive.Live]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AutoLive.Live.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{141A5E19-BDCB-4E27-A3D7-9E16503BC05B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ADKiller.ADKillerObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ADKiller.ADKillerObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B0E7716-898E-48CC-9690-4E338E8DE1D3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38928D50-8A48-44C2-945F-D2F23F771410}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7CA83CF1-3AEA-42D0-A4E3-1594FC6E48B2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9EB2B422-C9EE-46C4-A471-1E79C7517B1D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ABEC6103-F6AC-43A3-834F-FB03FBA339A2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB936323-19FA-4521-BA29-ECA6A121BC78}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsMinHK.CnsHook]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsMinHK.CnsHook.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CoolBar.CoolBarObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CoolBar.CoolBarObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FFlash.FlashObjectInterface]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FFlash.FlashObjectInterface.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{172862CD-9D35-40E7-BAF2-BA7ECF043B9C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1BB0ABBE-2D95-4847-B9D8-6F90DE3714C1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1D10645F-A553-426E-9923-C3ABF846EA41}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{48E688C8-609F-4B08-944E-3C7FAB99CD08}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7436DB12-1A7A-4D87-A4E0-713EC9D86050}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{924F5B3A-7A27-484A-B873-E855C9708667}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BE08F6BC-C3E6-4149-BEB1-CB449E1B372E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C3A9F7F8-8862-496A-B8A4-25D4140B7DBC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{19069804-2CF0-4357-B696-BA6E9AAD99EF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4158DB95-DE71-41FF-BEA1-2C3D1C679DF1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7354662F-CAA3-448B-BC01-04F55A2DCA35}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{95A9BBCA-4EC1-4A9E-91AA-1D9633C38D0E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A5ADEAE7-A8B4-4F94-9128-BF8D8DB5E927}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AAB6BCE3-1DF6-4930-9B14-9CA79DC8C267}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D4839331-534D-4D0C-875F-D25AF6A10CCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F97E75A4-0103-4F27-A752-327B600B1130}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ZsMod.AxObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ZsMod.AxObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17F1C8E8-B99B-4D85-927B-A0EE7290455A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19CE93DE-8334-42C6-B2CA-BFE3DF5196A3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C2EDD19-C2D5-4234-9339-785E5885B84D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2283BB66-A15D-4AC8-BA72-9C8C9F5A1691}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33BBE430-0E42-4F12-B075-8D21ACB10DCB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38928D50-8A48-44C2-945F-D2F23F771410}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{406F94F0-504F-4a40-8DFD-58B0666ABEBD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4558FA8B-C683-4BD9-BB43-90E086A4C113}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B57D035-8A78-4E5A-82DF-FD5DEE51E578}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EBCAF82-5BE7-4FC5-938F-9CD284587139}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F2C1A0A-622E-4D23-9870-6FB6D109C170}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{55C32FB0-B5DE-432D-B143-7CA84EA3F888}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57421194-58FB-49AE-9B4F-FD48869B9AD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59E99ADD-E926-40e8-BD6F-1532124A4AAA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62EED7C6-9F02-42f9-B634-98E2899E147B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6940DBA6-CEBB-46B6-8058-CB358295BCCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A915D6B-B187-4724-B753-F338D8A157C2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7992E7F8-5D81-4EAA-9E5F-6211215946E4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FC688E0-3F7D-4517-8C30-459C4211A8A1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C3C2C08-C494-4F52-AE94-85156A447D43}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A14600F7-E2AE-482D-9AFC-99CD4544DB4F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB9BF611-F86A-43C5-A467-625E22D7A309}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF53D70E-29DF-443A-92AA-9C314AF5871E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B56FF3E8-B0C2-45C9-AF3F-8E6C5F010B9F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C14F7681-33D8-11D3-A09B-00500402F30B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C459AB59-28A5-43A3-9D22-753F4C9586E6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CA1E3092-BC38-4FFC-AEAE-C8E8EEC70CA1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CEA8FC9F-3D3F-4486-B9DF-ADCEE875FFB2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D7C53E1A-7045-473C-933D-8228D1708947}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E3128A3A-C191-4149-8631-C632C8FC9919}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF4BA0B4-A877-45B3-B0BC-AD7A3CC22811}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F40FED3D-F813-42F4-A1AE-8E1D60472BF0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FA6DA3A4-87E4-4A45-9FD6-ED26089B7104}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE3ECAE7-0A37-4506-8A7D-3CC9A04D2CA8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF0E5DF6-2375-4499-A97F-74954384D8D2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{02DB2793-F3F8-42AB-9B03-19B25485BE29}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{924F5B3A-7A27-484A-B873-E855C9708667}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BE08F6BC-C3E6-4149-BEB1-CB449E1B372E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C43273A6-9085-41CF-8A84-3881363A7EB9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DD011DB1-0EAF-4D05-8650-BB99208C76B0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DF692509-D9EF-48A0-9CD0-3AA5B81F6F68}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\jpegfile\shellex\ContextMenuHandlers\Yahoo!Photo]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandButton]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandButton.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandReg]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandReg.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.ObjectBar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.ObjectBar.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{04D0FD01-C8FA-413B-AD83-519D10B93324}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{22242729-9EE0-4060-988D-BE2A9EFD8CD0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4158DB95-DE71-41FF-BEA1-2C3D1C679DF1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{51C76AB9-D876-46A8-A20D-F606EDDD69ED}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5517390C-60D1-4FFA-BD4C-81F8278AF29E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{58E9B715-3C97-4048-9CBE-A708E0AEB29E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7CFDAB57-D8CD-4465-BD15-48CFFCEE3DF2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8417D3DB-4004-4259-952D-A6EC64A1800E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{95E822B6-6B10-4E86-9603-6CECB6135867}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AAB6BCE3-1DF6-4930-9B14-9CA79DC8C267}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AE9A3F59-E2D2-4EE8-A279-F2B6AF336B8E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{CF67E74A-3C62-4867-9DFA-DD2374003333}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E816B7F9-96AB-4D4D-8DA4-B9D124959DA5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F8CC28B5-4042-4054-99CB-8855EFD0FAB7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.AsNoAdObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.AsNoAdObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.DragSearch]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.DragSearch.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.PhotoTb]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.PhotoTb.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YALive.Live]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YALive.Live.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YAssist.EasyAssist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YAssist.EasyAssist.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YRss.ExpBand]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YRss.ExpBand.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zschkfile]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\!CNS]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000000-0000-0001-0001-596BAEDD1289}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{507F9113-CD77-4866-BA92-0E86DA3D0B97}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{59BC54A2-56B3-44a0-93E5-432D58746E26}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{5D73EE86-05F1-49ed-B850-E423120EC338}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{E5D12C4E-7B4F-11D3-B5C9-0050045C3C96}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{ECF2E268-F28C-48d2-9AB7-8F69C11CCB71}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FD00D911-7529-4084-9946-A29F1BDF4FE5}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search]
"SearchAssistant"=-
"CustomizeSearch"=-
"OCustomizeSearch"=-
"OSearchAssistant"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{33BBE430-0E42-4F12-B075-8D21ACB10DCB}"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{406F94F0-504F-4A40-8DFD-58B0666ABEBD}"=-
"{BB936323-19FA-4521-BA29-ECA6A121BC78}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{33BBE430-0E42-4f12-B075-8D21ACB10DCB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{38928D50-8A48-44C2-945F-D2F23F771410}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{62EED7C6-9F02-42f9-B634-98E2899E147B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BB936323-19FA-4521-BA29-ECA6A121BC78}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE3ECAE7-0A37-4506-8A7D-3CC9A04D2CA8}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{D157330A-9EF3-49F8-9A67-4141AC41ADD4}"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"helper.dll"=-
"CnsMin"=-
"assistse"=-
"hbpassport"=-
"YLive.exe"=-
"yassistse"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"CnsAssecblk"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CnsMin]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1B0E7716-898E-48cc-9690-4E338E8DE1D3}]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CNSMINKP]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\CnsMinKP]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\!搜一搜]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\添加到雅虎订阅(&Y)]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\雅虎搜索]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"CNSMenu"=-
"CNSHint"=-
"CNSReset"=-
"CNSEnable"=-
"CNSList"=-
"CNSAutoUpdate"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{406F94F0-504F-4a40-8DFD-58B0666ABEBD}"=-
"{BB936323-19FA-4521-BA29-ECA6A121BC78}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\3721]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Yahoo]
[-HKEY_CURRENT_USER\Software\3721]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{19CE93DE-8334-42C6-B2CA-BFE3DF5196A3}]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{57421194-58FB-49AE-9B4F-FD48869B9AD4}]
;rem 彩信通 又一个超级的**产生了
;rem 想办法删除 %windir%\system32\drivers\Albus.SYS 这个万恶不赦的文件,推荐用http://ccollomb.free.fr/unlocker
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ALBUS]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Albus]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Albus]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ALBUS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Albus]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ad.AxObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ad.AxObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6671A431-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6671A432-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A512BF7-EC78-4e8d-9841-6C02E8FA9838}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.WinHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.WinHelper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{74289A79-E652-4A57-A6B9-EE64AD532A8D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AB45CE36-C280-4525-BCF9-1BD01D3E4B57}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D922591D-7893-412B-B801-C3B2F31BE4C9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssist.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssistMenu]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssistMenu.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{077525AC-C681-4139-8C3E-B582BDD375C7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{22F87D75-7DD1-4545-94B3-CA80C0F462C6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{964DDEFF-B16C-4113-8FF7-8E83B53C8ED8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{6671A433-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6671A431-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\mmsassist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Stdup]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\>>彩信发送<<]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"alsmt.exe"=-
;rem internet explorer helper msshapi.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02C9B9AB-6372-46C5-B356-773FAF3B6B1E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02C9B9AB-6372-46C5-B356-773FAF3B6B1E}]
;删除划词 huaci 又是一个走上不归路的超级**
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{594BE7B2-23B0-4FAE-A2B9-0C21CC1417CE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{4E1ACE40-F681-4CC4-A7C0-AD1E6C9AD86F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SearchM.Search]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SearchM.Search.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FD536575-73F7-42A3-9E9F-11688F1A006A}]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ABHCOP]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_HCALWAY]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\abhcop]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\hcalway]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ABHCOP]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_HCALWAY]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\abhcop]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\hcalway]
[-HKEY_CURRENT_USER\Software\Pig Move Search]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MoveSearch"=-
;CDN这个**
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Cdn.CdnObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Cdn.CdnObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CdnForIE.IEHlprObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CdnForIE.IEHlprObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8CDCBBA0-4BE1-4199-8389-1B19ED41D3E8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9A578C98-3C2F-4630-890B-FC04196EF420}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5824EFB-728A-4726-A5A5-85A68B20EDC3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5C3853CD-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{951A869A-1003-4897-948F-D55E570871DB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9C991F1E-D6FE-4B74-B6EC-763FF528FAE1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F248EBAB-D894-4682-80E3-F48AABF4B12D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5C3853CE-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C24A5A5C-0874-4386-85C7-E669F90997A9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{DF571585-070D-4EB1-8B0E-99023F934FD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMHlpr.WMEvtSink]
[-HKEY_LOCAL_MACHINE\SOFTWARE\CNNIC]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\CDNCLIENT]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F5824EFB-728A-4726-A5A5-85A68B20EDC3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{35980F6E-A137-4E50-953D-813BB8556899}]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cdnprot]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cdntran]
[-HKEY_CURRENT_USER\Software\CNNIC]
[-HKEY_CLASSES_ROOT\CLSID\{EED92A43-CFCE-4548-BD73-B0A405470ED5}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CdnCtr"=-
"renewup"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\CmdMapping]
"{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{EED92A43-CFCE-4548-BD73-B0A405470ED5}"=-
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\访问通用网址]
;去除stdup.dll这个**
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\StdService]
;rem Baidu这个** 越来越狠,Baid* 也不例外
;rem需要安全模式或者想办法删除 %windir%\system32\drivers\BDGuard.SYS 这个文件,才能卸载
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Baidu]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Baidu.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Tool]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Tool.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.BandIE]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.BandIE.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.DropTarget]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.DropTarget.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C76C055-ED6E-4535-A70F-CD476E727F67}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A7F05EE4-0426-454F-8013-C41E3596E9E9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE14F22E-BE14-4F08-A80F-F27BC3A67B2D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{464C8A26-31E9-411C-9583-5B858E631DCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{89FDCC4B-8D91-49B0-81A6-18BCFF582735}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{96249369-D3DC-4AE6-8A3B-E7109D46E98D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A294F8EB-86D9-4C4A-8B3E-909253761C64}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MimeFilter.AdFilter]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6AFC2761-1253-427C-9A56-385B4609BE1D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{B580CF65-E151-49C3-B73F-70B13FCA8E86}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
[-HKEY_CURRENT_USER\Software\Baidu]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度--网页搜索]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索MP3]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索图片]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索新闻]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索歌词]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索网页]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索贴吧]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-词典搜索]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BIE"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BaiduDS"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BDGUARD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BdGuard]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BDGUARD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\BdGuard]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BDGUARD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BdGuard]
;删除 SSAddr.dll Tencent地址搜索栏
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C7C23EF-A848-485B-873C-0ED954731014}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90B1ECB2-FC3B-49AE-A6BD-F5F11BF5C4AD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A57E074F-56D8-4A33-8112-AAC9693AA909}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B1A7C2CF-BF40-4597-8142-7615D74D0CC3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\TBH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157b}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{DEDEB80D-FA35-45d9-9460-4983E5A8AFE6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0C7C23EF-A848-485B-873C-0ED954731014}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\UrlSearchHooks]
"{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AddrPlus3"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Tencent\TBH]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\上传到QQ网络硬盘]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\添加到QQ自定义面板]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\添加到QQ表情]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\用QQ彩信发送该图片]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0C7C23EF-A848-485B-873C-0ED954731014}]
;删除QQIEHelper.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{54EBD53A-9BC1-480B-966A-843A333CA162}]
;删除病毒 IRJIT.DLL 库站 多多QQ表情 **
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D1BB7CF4-4463-4e91-88D7-ECC3CE0A13B7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0083DE51-EB2E-4521-A95C-735D8E563373}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QuickButton.QuickBtn]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\sss1.sss2.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{933DB9D6-9447-4EFE-ABA2-EAF3B309B44C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{1D901067-2529-4A9B-9B6B-7A1DB3A44CB5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D1BB7CF4-4463-4e91-88D7-ECC3CE0A13B7}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Update"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BNESS]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\BNESS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BNESS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\BNESS]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Lamp]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D1BB7CF4-4463-4E91-88D7-ECC3CE0A13B7}]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Universal Disk Manager]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MOBILL]
;删除Kugoo
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A9930D97-9CF0-42A0-A10D-4F28836579D5}]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\使用KuGoo3下载(&K)]
;删除网络这只蠢诸
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PigUpdate"=-
;rem 删除 henbang 很棒 **
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8AB6C00E-A068-44E9-953F-1BCFEEA2BB6A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21DAD172-D8C3-40CA-B7D3-E28AE7A5DB22}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AB6C00E-A068-44E9-953F-1BCFEEA2BB6A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BE0B5843-553A-48C2-9A42-258A1D791AFC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C7E302E-B015-4E6E-A761-C28D78F3BC5A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9AED6826-A68C-4AA0-A370-DE54C0D40788}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AAC356CF-178B-4612-B1DB-EE153846BF58}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HBHelper.HBActivex]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HBHelper.HBActivex.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RichMedia.BhoObject]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RichMedia.BhoObject.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{B6773538-228E-4D2F-9599-70DD9BBD2CB0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B6773538-228E-4D2F-9599-70DD9BBD2CB0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BC8F8692-D345-44E0-93FF-EFB1BA6AA962}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9660E66E-AF14-4946-8249-1A640BBABFCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HAPSpy.HAPClientSpy]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HAPSpy.HAPClientSpy.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{21DAD172-D8C3-40CA-B7D3-E28AE7A5DB22}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BE0B5843-553A-48C2-9A42-258A1D791AFC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\RichMedia]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{21DAD172-D8C3-40CA-B7D3-E28AE7A5DB22}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"hdp"=-
"hbpassport"=-
"RichMedia"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"mscfs"=-
"Iehelper"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1A199C20-DE2B-4838-AE3F-B5257ECE2B7E}]
;rem 搜狗
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.$p4p$]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\autolink.AutoLinkBHO]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\autolink.AutoLinkBHO.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{238D0F23-5DC9-45A6-9BE2-666160C324DD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{765035B3-5944-4A94-806B-20EE3415F26F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{941A4793-A705-4312-8DFC-C11CA05F397E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{E21BE468-5C18-43EB-B0CC-DB93A847D769}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{F1CDA468-8A08-449F-9FB8-461C3DED0E03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08B13A8E-EB71-4421-B417-4EC0995D5BFC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CA51D02-7739-43EA-8D9A-1E8AD4327B03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{238D0F23-5DC9-45A6-9BE2-666160C324DD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5AA23B9D-99C0-4A41-A25D-58E806766680}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{765035B3-5944-4A94-806B-20EE3415F26F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7FD094E7-C8B9-40BD-9F80-F20A7194D2E6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81B9A3D6-D79F-403E-939B-4F2BE8FD2A34}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8755CE6E-0BF7-4441-8751-FB728941B0B4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AB8528F-AC8B-416D-9B84-92D97729C195}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{941A4793-A705-4312-8DFC-C11CA05F397E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ACBF9EB9-48C5-4226-9967-2E3247A04510}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BAB1AC41-6FF7-4F2E-A04E-5C592CCFEA7D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D977D6A9-BE13-496D-9BE4-175DFAC12628}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DBBB7978-AF21-4EF4-9AD1-B2F4BC75696C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DEEE7FE9-3E06-43EE-B04D-18866CD0AD9C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E03667BC-5EDA-4FD8-992C-ED73265AFAA0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E21BE468-5C18-43EB-B0CC-DB93A847D769}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F1CDA468-8A08-449F-9FB8-461C3DED0E03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F20A9999-11DC-4071-87A9-35191DFDDAA6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F4FB516E-8F16-44FD-AB1D-260C32B7CF9A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompLoader.Loader]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Media Type\{e436eb83-524f-11ce-9f53-0020af0ba770}\{57428EC6-C2B2-44A2-AA9C-28F0B6A5C48E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SgSearchHook.SgUrlSearHook]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SoDAIEHelper.Catch]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\sogoutb.Detector]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Toolbar.BHOObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{8755CE6E-0BF7-4441-8751-FB728941B0B4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0CA51D02-7739-43EA-8D9A-1E8AD4327B03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Sohu R&D]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\P4P Service]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\P4P Service]
[-HKEY_CURRENT_USER\Software\Sohu R&D]
;
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\使用彩信超级自写发送到手机]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\使用新浪下载助手下载]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\发送图片到手机(&M)]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\收藏此页到新浪ViVi]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\新浪搜索]
;中搜寻址
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2A0176FE-008B-4706-90F5-BBA532A49731}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D1AFED83-9133-4660-8C8F-DAF1B4A3D5A8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E8D3778F-47D3-4F1F-9245-3D46856936E4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SNHpr.CSNHpr]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SNHpr.CSNHpr.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A0176FE-008B-4706-90F5-BBA532A49731}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\SearchNet]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ANFAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_JMEDIASERVICE]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Anfad]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\Remote Log]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\JMediaService]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Remote Log]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ANFAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_JMEDIASERVICE]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Anfad]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Remote Log]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\JMediaService]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Remote Log]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6A512BF7-EC78-4E8D-9841-6C02E8FA9838}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SearchNet_Up"=-
;rem 好像是开心运程 这个**
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SDAgentService]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MicrosoftRedirectionProgram"=-
"res"=-
;rem 易趣购物
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE60714F-AC17-427e-861A-FD60CBDF119A}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\CmdMapping]
"{EE60714F-AC17-427e-861A-FD60CBDF119A}"=-
;rem msdc32.dll 一个木马 需要安全模式才能清除
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run]
"ip_sec"=-
;rem 一个广告Navihelper.dll
[-HKEY_CURRENT_USER\AppID\NaviHelper.DLL]
[-HKEY_CURRENT_USER\NaviHelper.NaviHelperObj]
[-HKEY_CURRENT_USER\NaviHelper.NaviHelperObj.1]
[-HKEY_CURRENT_USER\CLSID\{3E422F49-1566-40D3-B43D-077EF739AC32}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3E422F49-1566-40D3-B43D-077EF739AC32}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"supdate2.dll"=-
[-HKEY_CLASSES_ROOT\Update2.Update2]
[-HKEY_CLASSES_ROOT\Update2.Update2.1]
[-HKEY_CLASSES_ROOT\CLSID\{ECF9C696-8018-41B4-8DAD-CFD1C732DC61}]
[-HKEY_CLASSES_ROOT\TypeLib\{752C3608-0BD6-4035-83D5-6CE383AED6B4}]
[-HKEY_CLASSES_ROOT\Interface\{C6AAD6FD-08D3-47F7-A8A2-1D7EF923DAD1}]
;rem 跳跳塘 这个**
;rem 这个**可能不能被删除,请先到进程管理里删除webacc.exe这个进程
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"webacc"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"webacc"=-
"mu071c"=-
;rem baigoo 这个** BG
[-HKEY_LOCAL_MACHINE\SOFTWARE\baigoo]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{40EF7CCC-71FE-4615-A0CA-D373F8C2AC88}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\MtSrv.EXE]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooEx.Update]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooEx.Update.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BHOHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BHOHelper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BrowserObject]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BrowserObject.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BGooBHO.Status]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BGooBHO.Status.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BGooSrv.HtmlPaser]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7905958A-18C2-4139-9957-AE6F2B754818}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7BDAF75A-0D6F-4F50-AFE9-333D08DF4005}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{808EAF87-61B8-4EEA-8B85-27480D1BDBEE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8816EA7A-5944-4277-B98E-2C0A46FB36E9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4A8976FE-144E-4742-8E49-D6CD3B140FD1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{690E010B-042A-4973-87A8-485DEB8BDF68}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9DC44A38-B772-47F8-A406-054F842EC7C5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7BDAF75A-0D6F-4F50-AFE9-333D08DF4005}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"bgoomain.exe"=-
;rem YOK拦截助手
;Navsmall.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1BC02872-BC5E-46BE-BA76-6B0170FE6BFE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter\text/html]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{972566B2-93BF-41AA-B06D-5F81DB7E38E1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3E2C12D-FACF-43BB-BE10-B1CDD497BFC9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C7FA2A99-D9AF-4112-B197-436016C2F72F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F869BB38-FFEF-4589-B986-610B7AD0ADA2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1A1798CC-9120-40B1-BA68-1D1415973232}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1E69A80B-B19A-49AD-805E-98447883BED3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3E42ACD2-B79D-4495-A6E5-9D972B19D815}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{871385F0-7E91-42D4-9B91-CD5611274531}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{261EE951-024F-4903-B880-ADA965E72885}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{628508EC-44AB-4990-B751-A3005D28053F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{972566B2-93BF-41AA-B06D-5F81DB7E38E1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F869BB38-FFEF-4589-B986-610B7AD0ADA2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SMS.SMSObject]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SMS.SMSObject.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.HttpFilter]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.HttpFilter.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBho]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBho.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBlockAdr]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBlockAdr.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Navsmall]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Yok]
[-HKEY_CURRENT_USER\Software\Yok]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar]
"{1E796980-9CC5-11D1-A83F-00C04FC99D61}"=-
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{972566B2-93BF-41AA-B06D-5F81DB7E38E1}]
;rem 不知是什么流氓
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D515F39-EBD0-0B9E-6719-2F8D8869AA61}]
[-HKEY_CLASSES_ROOT\CLSID\{8D515F39-EBD0-0B9E-6719-2F8D8869AA61}]
;rem 不知是什么流氓
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CE7C3CF0-4B15-11D1-ABED-709549C10000}]
[-HKEY_CLASSES_ROOT\CLSID\{CE7C3CF0-4B15-11D1-ABED-709549C10000}]
;rem VIPTray.exe 千橡这个** IE-BAR Desktop Media
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\BHORun.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\DelayLoad.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{65EF7AD4-1340-4A36-A097-95FF17E243E1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{84D34084-4E38-4683-A4DB-CA00646FEE8B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BHORun.BHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BHORun.BHelper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DelayLoad.LoadRun]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DelayLoad.LoadRun.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Dmbar.dmbar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Dmbar.dmbar.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DMBho.BrowserHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16358834-52FC-4981-9A79-BFECE7C08CD3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FCA37BA-7259-4BF1-878B-A39FA83BFBBB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D99E8F4-56B7-457B-9A92-61B5D247D263}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A6F2F95-3191-433B-8533-EB0B596A7BAC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2E37336-BFDB-409B-8D0E-6F013C438B20}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{265379DB-90F0-45DB-9B10-640DCB1145FD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7EB718DD-E41F-446A-9C1E-757F921168A0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{8C9377D3-D823-46A6-A8AC-B3913F9B6CA2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{25649A6A-637D-4416-9D03-98146330492A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{292D202F-E519-45F4-8D50-DE8513B87CE9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{86645AFC-0B33-4275-BFE6-FAE9FCD886D1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\IE-Bar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{1FCA37BA-7259-4BF1-878B-A39FA83BFBBB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2D99E8F4-56B7-457B-9A92-61B5D247D263}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F2E37336-BFDB-409B-8D0E-6F013C438B20}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\sharehelper]
[-HKEY_CURRENT_USER\Software\sharehelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\sharehelper]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VIPTray]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Te1net]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{1FCA37BA-7259-4BF1-878B-A39FA83BFBBB}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"DelayRun"=-
;rem ChajianHelper
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}]
;rem HelperService.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9E1E1371-9D8F-4421-81B9-F8D2E1773A59}]
;rem wmicsmgr.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"wmicsmgr"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{333872C4-92D6-4396-8542-64AB96518950}]
;SmartLinkService (SLService) - slmdmsr.exe
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SLService]
;rem 一个什么五笔
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED8DFC5C-10EF-45AB-9DC2-0639AFF5A270}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{CBC67CD5-855C-4A69-B450-A0508FDA5234}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C0CDC83C-FEA7-499F-9BE7-A9AB4EAED292}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Update.bho]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Update.bho.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ED8DFC5C-10EF-45AB-9DC2-0639AFF5A270}]
;rem MyWebSearch
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00A6FAF1-072E-44cf-8957-5838F569A31D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25560540-9571-4D7B-9389-0F166788785A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2EFF3CF7-99C1-4c29-BC2B-68E057E22340}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{84DA4FDF-A1CF-4195-8688-3E961F505983}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8E6F1832-9607-4440-8530-13BE7C4B1D14}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{938AA51A-996C-4884-98CE-80DD16A5C9DA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98D9753D-D73B-42D5-8C85-4469CDA897AB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9AFB8248-617F-460d-9366-D71CDEDA3179}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9FF05104-B030-46FC-94B8-81276E4E27DF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A9571378-68A1-443d-B082-284F960C6D17}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ADB01E81-3C79-4272-A0F1-7B2BE7A782DC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B813095C-81C0-4E40-AA14-67520372B987}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C9D7BE3E-141A-4C85-8CD6-32461F3DF2C7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CFF4CE82-3AA2-451F-9B77-7165605FB835}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D9FFFB27-D62A-4D64-8CEC-1FF006528805}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FunWebProducts.DataControl]
[HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive]
"{07B18EA9-A523-4961-B6BB-170DE4475CCA}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00A6FAF1-072E-44cf-8957-5838F569A31D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{07B18EA1-A523-4961-B6BB-170DE4475CCA}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MyWebSearch Email Plugin"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{00A6FAF6-072E-44cf-8957-5838F569A31D}"=-
; rem 开心运程速递 MEobjectSDT shwasobj.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4136C3F6-7636-49bf-A122-D4DA53B1ADDF}]
;rem MyIEHelper IEHelper_****.dll 这个文件名会不停的变化
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16A770A0-0E87-4278-B748-2460D64A8386}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.MyIEHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.MyIEHelper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A4BC2506-C00C-4D2E-B47F-0BB4C2C74CCF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2511DE40-34A3-4C6A-B1B2-C5C92A2F00BE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{16A770A0-0E87-4278-B748-2460D64A8386}]
; rem windirected 傲迅 wmpdrm.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"spoolsv"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\wmpdrm.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E674588-66B7-4E19-9D0E-2053B800F69F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{4A775183-9517-420E-9A13-D3DA47BB8A84}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8B200623-3FC5-4493-8B49-DC2AD4830AF4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmpdrm.cfsbho]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\wmpdrm.cfsbho.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E674588-66B7-4E19-9D0E-2053B800F69F}]
;rem ActiveBandObject.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ActiveBandObject.ActiveBHO]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ActiveBandObject.ActiveBHO.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63C55A7F-6E29-8D4F-5C76-4F850F28D13A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AB6EC1FC-83B0-4EF2-A128-785BAFC2A2B5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{2F80A49B-9FA3-4FA0-A964-4689B0C1B30B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{63C55A7F-6E29-8D4F-5C76-4F850F28D13A}]
;rem 划词搜索 deskipn.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08A312BB-5409-49FC-9347-54BB7D069AC6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9C1CE329-606F-4C0F-8A85-9C2818878AF3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MonitorIE.MonitorURL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MonitorIE.MonitorURL.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{647BB013-E900-473E-BC10-99CF3AC365AD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{08A312BB-5409-49FC-9347-54BB7D069AC6}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Desktop"=-
[-HKEY_CURRENT_USER\Software\DeskAdTop]
;WinSC.dll Luobooshow
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\SCIntruder.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{35A69597-0E2A-4100-A394-C6F6FC2535B9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0D8CA512-282E-4E3F-8970-F5EE879AF7FC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{566CB5F7-D9FA-4B01-8A1A-168F706CBE41}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{86DC8694-AACC-4CE6-B8EC-A75DEEDA698D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9ACEEE30-143F-471A-AA45-72B061FE7D60}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C5668031-4BDE-43D4-8766-8E9AAC16C56E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DED96F80-2B97-407C-8E09-D7233448753F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{172754B5-06E9-49D4-B1E0-7D821E23C5E8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1B631EF9-EBD4-4828-ABB2-1AFB96E2EA4E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{36F305A9-4451-4FDF-9274-28F21E2A2F14}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{B513A7FC-BC53-4077-ABE3-5BD321AF651D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BCC53A8C-67A7-4E8F-B971-D4668D1A7423}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C88FD25F-8D53-4E99-AEA0-18F22801CE8C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D1F6E94E-8EA1-4EC8-914C-138BC55AE104}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NewWebController.Intruder]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NewWebController.Intruder.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.DocumentEventsHandler]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.DocumentEventsHandler.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Magazines]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Magazines.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Service]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Service.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Settings]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.Settings.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.WindowEventsHandler]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SCIntruder.WindowEventsHandler.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5CD75223-E010-4BE9-9027-7A53533EA4F6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9ACEEE30-143F-471A-AA45-72B061FE7D60}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSService_v1.0"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Luobooshow"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\SCIntruder]
;rem caishow
[-HKEY_LOCAL_MACHINE\SOFTWARE\CaiShow]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\BrowerHelperMFC.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\Download.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\MMSFactory.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\MMSSend.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\ssoaddionalindical.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{18E8C855-FF2E-4BEB-B9D2-E7B25AF92A48}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{22A36E6E-07CB-4851-AA84-5FC1CA73A1DE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{37BC804E-E26B-4D09-836F-AC15FC0C253E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{88ABD365-12AE-44E7-8450-DA5C3653325B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{F375F726-23D3-4179-9CA2-54FE6E490879}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{FBB4D7BA-CCD3-457D-BEFF-F3B1757BD6B1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BrowerHelperMFC.CaiShowBH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BrowerHelperMFC.CaiShowBH.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{3C78B8E2-6C4D-11D1-ADE2-0000F8754B99}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E6E0B51-0300-4AE2-B6C4-F4EFE33A33B2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32F64094-A155-4554-8753-E5E267A8C002}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3AF40CB8-B3BA-4E2D-8968-4BF8DB172997}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3C78B8E2-6C4D-11D1-ADE2-0000F8754B99}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5673A7C0-95CC-4646-BB07-3BD71234CEF9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6ABB6C58-FEB7-43AE-946A-AF05D074F493}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DD6C4862-4BF9-48CE-BD27-9838E30D3DD5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Download.Download]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Download.Download.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{315420B2-E5C8-4E7B-B812-6676BA4F30CE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6CA6DE10-8705-4E1B-9117-BCFA5BECE14B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{CE98AD53-16F1-48D3-9208-1203AA19F77E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D32D8A55-A21A-4237-B8BB-5A5EBEE6746D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DBD14208-5F2F-40B8-8D97-6DE44C1D2E3D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F6CE85C8-99E7-49F5-A1A2-03FFC4FF09A5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSFactory.Send]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSFactory.Send.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSSend.Send]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSSend.Send.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\My.NetAccelerate]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ssoaddionalindical.Identify]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ssoaddionalindical.Identify.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1F805A43-0E95-4245-8EAF-9271D520722A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{73D53D7B-66DF-419B-9B44-CF3F42ADF5C9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{864F198D-6568-4686-B4F5-4A970B85E58B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{89A99589-82B0-4983-A882-E8D8DB3DA5C7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{CEBE027D-5423-41B8-AF51-9F1C22557CC6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D0581D47-E3CB-402D-B8A6-5F8561B2A36C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3AF40CB8-B3BA-4E2D-8968-4BF8DB172997}]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\用炫彩图铃发送该图片]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"caishowmanage"=-
;rem 酷桌面 Letscool.exe CoolBho.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\LetsCool]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Letscool.exe]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LetsCool"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LetsCool"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F0C15012-7DBD-4068-95A2-0A82DB03AC35}]
;rem Schedule sscli.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\At.Helper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\At.Helper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8B316DA1-9950-4926-B9EA-1AEC124AFA45}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8B316DA1-9950-4926-B9EA-1AEC124AFA45}]
;rem 青娱
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\QylUpload]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{EB86A239-96D9-4F34-BCCD-E1E13D09577B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2236FAB7-7BDD-4187-831B-C7D809CA2E24}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53AE3F49-4985-4245-9AFE-2D3A14DCF7CD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81B5C8FE-07BD-4020-B299-79C0BE1A3946}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E70FE57A-19AA-4A4C-B39A-408D49D73851}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EB86A239-96D9-4F34-BCCD-E1E13D09577B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EC987C58-81A2-4d2c-993D-D0E1945D7E7C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F349A88E-33CF-46E7-8091-6EF28491168D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Contextmenu.Upload]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Contextmenu.Upload.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0775F38B-6CF8-40B1-9A9D-43E6BFF4660D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{60F02175-7F65-4F3B-AC6B-CB842B921ECD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{82044DF3-E304-4034-B16D-2D5A83979744}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A188D411-8ED2-487E-9D25-2EACA8330956}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A32C5A11-AA68-4D61-8217-0953F704D3CA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BDD8A4E1-B6EE-4C4E-B6DA-0A1E627477DD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{E9DC930A-4AC3-4EED-98AB-E2097EDBACE9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QYULE.RMPLAYER]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QYULE.WMPLAYER.9]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QYULEPLAYER.QyulePlayerCtrl.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{72DB4BF2-6C70-4297-857C-4B2D9E1F452C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8F3B47E6-31BA-4089-8C23-683526E67984}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{905AA0BA-A402-4F56-9E39-3817EDD89786}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9AD54178-E7AE-4528-A79D-48D7E79202EE}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ClientQyule"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ClientQyule"=-
[-HKEY_CURRENT_USER\Software\Qyule]
[-HKEY_CURRENT_USER\Software\SmartClient]
;kuaiso toolsbar
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B07D1F6B-6B8C-4904-8EE8-5E5A2B4624B3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D57DF8CF-66B7-412C-A7D1-64B5F5F7FE27}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.XBTP03129]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.XBTP03129.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB03129.IEToolbar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB03129.IEToolbar.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB03129.XBTB03129]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB03129.XBTB03129.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B07D1F6B-6B8C-4904-8EE8-5E5A2B4624B3}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}"=-
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B07D1F6B-6B8C-4904-8EE8-5E5A2B4624B3}]
[-HKEY_CURRENT_USER\Software\XBTB03129]
;rem bbmao
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6AE02E1C-8859-4F57-9097-5A55A56A4CAF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{72BA415A-AE03-4279-ACAB-39A3DF73FD4E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{68A7C985-87D6-4635-B498-3290613C718E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.XBTP05676]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.XBTP05676.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB05676.IEToolbar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB05676.IEToolbar.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB05676.XBTB05676]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\XBTB05676.XBTB05676.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{6AE02E1C-8859-4F57-9097-5A55A56A4CAF}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72BA415A-AE03-4279-ACAB-39A3DF73FD4E}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform]
"bbmao Toolbar"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{6AE02E1C-8859-4F57-9097-5A55A56A4CAF}"=-
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6AE02E1C-8859-4F57-9097-5A55A56A4CAF}]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{72BA415A-AE03-4279-ACAB-39A3DF73FD4E}]
[-HKEY_CURRENT_USER\Software\bbmao]
[-HKEY_CURRENT_USER\Software\XBTB05676]
;rem NB46 smflash.ocx 好像需要安全模式
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1A50BDD0-01A6-4D58-958B-B9BC66789327}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{56E88004-7AF8-474C-BB30-76E0B7B2B003}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A09B9056-F52E-413F-AE1D-5371DFE0D7B9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\NB46Toolbar.CoNB46BHO]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F3E2C17E-E43F-4AD8-9232-15F33F95E044}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1A50BDD0-01A6-4D58-958B-B9BC66789327}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14A21378-5BB1-4BC4-95D5-5D3F51527F6F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{14A21378-5BB1-4BC4-95D5-5D3F51527F6F}]
下载此文件
相关文章
certutil - decode/encode BASE64/HEX strings.Print symbols by
Certutil is available on my WIN 7 and Vista machines by default.I think it should be also available for XP but I'm not 100% sure.2016-10-10
最新评论