SovaRu
Junior Member | Редактировать | Профиль | Сообщение | Цитировать | Сообщить модератору Дополнительные правила в группу "Расположение автозагрузок-II" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*file\shell\runas\command\* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\VBA\Monitors\*; CLSID HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Windows\System\Scripts\*\* *\AppId\{????????-????-????-????-????????????}; DllSurrogate *\http\shell\open\ddeexec\* *\Software\Microsoft\Windows NT\CurrentVersion\Accessibility\ATs\* Common Startup *\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\*Shell Folders; Common Startup *\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\*Shell Folders; Common Start Menu *\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\*Shell Folders; Start Menu Common Startup *\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\*Shell Folders; Startup *classes\ftp\shell\open\command\* *\SOFTWARE\Classes\mailto\shell\open\command\* *\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\win.ini; load *\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\win.ini; run *\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\win.ini; winlogon *\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\system.ini\boot; shell *\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\Autorun.inf\* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders; Common Startup *\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS; IGDSearcherDLL *\SOFTWARE\Microsoft\Rpc\Extensions; RemoteRpcDll *\Software\Microsoft\Windows NT\CurrentVersion\Accessibility; Configuration *\Software\Microsoft\Windows\CurrentVersion\Internet Settings; ProxyServer *\Software\Microsoft\Windows\CurrentVersion\Internet Settings; ProxyEnable *\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Startup\* *\Software\Microsoft\Windows\CurrentVersion\Group Policy\State\Machine\Scripts\Startup\* *\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections; DefaultConnectionSettings *\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections; SavedLegacySettings *\SYSTEM\CONTROLSET???\Control; ServiceControlManagerExtension *\SYSTEM\CONTROLSET???\Control\LsaExtensionConfig\LsaSrv; Extensions Дополнительные правила в группу "Параметры безопасности" HKEY_LOCAL_MACHINE\System\ControlSet???\Control\EarlyLaunch\*\* HKEY_LOCAL_MACHINE\System\ControlSet???\Control\EarlyLaunch\*\ HKEY_LOCAL_MACHINE\SYSTEM\ControlSet???\Services\SharedAccess\Parameters\FirewallPolicy\*\* HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\*\* HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\*\ HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\*\* HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\*\ HKEY_LOCAL_MACHINE\SYSTEM\ControlSet???\Control\Network\*\* HKEY_LOCAL_MACHINE\SYSTEM\ControlSet???\Control\Network\*\ HKEY_LOCAL_MACHINE\SYSTEM\ControlSet???\Enum\Root\*\* HKEY_LOCAL_MACHINE\SYSTEM\ControlSet???\Enum\Root\*\ HKEY_LOCAL_MACHINE\SYSTEM\ControlSet???\services\*\* HKEY_LOCAL_MACHINE\SYSTEM\ControlSet???\services\*\ HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\* HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\ HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\*\* HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\*\ HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Security Center\Monitoring\*\* HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\*\* | Всего записей: 43 | Зарегистр. 04-12-2008 | Отправлено: 09:09 08-07-2012 | Исправлено: SovaRu, 11:29 08-07-2012 |
|