• 设为首页
  • 点击收藏
  • 手机版
    手机扫一扫访问
    迪恩网络手机版
  • 关注官方公众号
    微信扫一扫关注
    公众号

恶意软件\垃圾流氓通用反删除批处理文件

原作者: [db:作者] 来自: [db:来源] 收藏 邀请
使用方法:

1关闭浏览器
2执行un3721.bat
3再执行un3721.reg
4重启电脑,基本上的垃圾都删除了
5如果还有少量,重启电脑进安全模式操作,或看.bat文件里的帮助注释,
un3721.bat
复制代码 代码如下:

rem 砍掉一切流氓,让我们静待互联网的春天 ~_~
rem 各取所需,根据自己要求修改(有的人还觉得某个流氓好就留着*_*)
rem 如果跳出选择框,选择全部卸载
rem 有些**需要在安全模式下才能卸载,有些不好卸载请看里面的帮助
rem 现在的流氓越来越超级,已经超过批处理的能力极限,只有借助一些别的软件,推荐使用http://ccollomb.free.fr/unlocker一起删除超级**

rem 砍掉3721 kao 把好多的电脑弄惨了
if exist C:\PROGRA~1\3721\Assist\asbar.dll rundll32.exe C:\PROGRA~1\3721\Assist\asbar.dll,RunSettings -uninstall
if exist %windir%\downlo~1\CnsMin.dll rundll32.exe %windir%\downlo~1\CnsMin.dll,RunSettings -uninstall
if exist %windir%\downlo~1\CnsMin.dll rundll32.exe %windir%\downlo~1\CnsMin.dll,ControlPanel
regsvr32 /u /s %windir%\downlo~1\CnsMin.dll

regsvr32 /u /s C:\PROGRA~1\3721\Assist\asbar.dll
regsvr32 /u /s C:\PROGRA~1\3721\helper.dll
regsvr32 /u /s C:\PROGRA~1\YiSou\yisou.dll

rem 砍掉yahoo猪手,把好多的电脑弄惨
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yphtb.dll
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yangling.dll
regsvr32 /u /s C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\YDRAGS~1.DLL
rem 新版的 猪手 根本不能选择卸载,***
if exist C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll rundll32 C:\PROGRA~1\Yahoo!\ASSIST~1\Assist\yasbar.dll,UnInstall

rem 彩信通 又一个超级的**产生了
rem 想办法删除 %windir%\system32\drivers\Albus.SYS 这个万恶不赦的文件,才能彻底清理这个门户
rem 推荐使用 DOS 启动电脑,找到C盘 这个万恶不赦的文件 删除
rem 或者使用 http://ccollomb.free.fr/unlocker 删除,删除后可能造成系统不稳定,重启电脑执行2个批处理,再重启
regsvr32 /u /s C:\PROGRA~1\MMSASS~1\MMSASS~1.DLL
if exist C:\PROGRA~1\MMSASS~1\mmsass~1.dll rundll32.exe C:\PROGRA~1\MMSASS~1\mmsass~1.dll,Uninstall
if exist %windir%\System32\stdup.dll rundll32.exe %windir%\System32\stdup.dll,Uninstall
regsvr32 /u /s %windir%\system32\stdup.dll
regsvr32 /u /s %windir%\system32\STDSVER.DLL
regsvr32 /u /s %windir%\system\stdup.dll
regsvr32 /u /s %windir%\system\STDSVER.DLL
del %windir%\system32\drivers\Albus.SYS /q /f
del %windir%\system32\Albus.DAT /q /f
del %windir%\system32\almms.dat /q /f
del %windir%\system32\alsmt.exe /q /f
del C:\PROGRA~1\MMSASS~1\MMSASS~1.DLL /q /f
rem internet explorer helper
regsvr32 /u /s %windir%\fonts\msshapi.dll

rem 划词 huaci 又是一个走上不归路的超级**
rem 这个**需要重启电脑,再次执行两个批处理文件操作才能被删除
C:\PROGRA~1\HuaCi\huaci\mUin.exe
C:\PROGRA~1\wsearch\mUnInstall.exe
%windir%\system32\msibm\Uninstall.exe
%windir%\system\msibm\Uninstall.exe
del %windir%\system32\drivers\abhcop.sys /q /f
del %windir%\system32\DRIVERS\hcalway.sys /q /f

rem Baidu这个**,**越来越超级,Baid* 也不例外
;rem需要安全模式,或者想办法删除 %windir%\system32\drivers\BDGuard.SYS 这个文件才能卸载这个**
if exist C:\PROGRA~1\baidu\bar\BaiduBar.dll rundll32.exe C:\PROGRA~1\baidu\bar\BaiduBar.dll,Uninstall
regsvr32 /u /s %windir%\DOWNLO~1\BDSrHook.dll
regsvr32 /u /s %windir%\DOWNLO~1\BDHelper.dll
regsvr32 /u /s %windir%\DOWNLO~1\BDPlugin.dll
regsvr32 /u /s C:\PROGRA~1\Baidu\Bar\BaiduBar.dll
regsvr32 /u /s "C:\Program Files\Common Files\Baidu\Disk Search\dsie.dll"
if exist %windir%\DOWNLO~1\BDHelper.dll rundll32.exe %windir%\DOWNLO~1\BDHelper.dll,DllRemove
del %windir%\system32\drivers\BDGuard.SYS /q /f
del %windir%\system32\BDGuard.DAT /q /f
del %windir%\system32\BDGuardS.DAT /q /f
del C:\PROGRA~1\baidu\bar\BaiduBar.dll

rem windirected 傲迅 wmpdrm.dll
rem 这个**卸载需在安全模式下进行,或终止explorer.exe,taskmgr.exe,输入法等进程只留基本进程,在CMD窗口中执行批处理可卸载
%windir%\system32\spoolsv\spoolsv.exe -uninst
regsvr32 /u /s %windir%\system32\wmpdrm.dll
del %windir%\system32\spoolsv\spoolsv.exe /q /f
rem 为了98
%windir%\system\spoolsv\spoolsv.exe -uninst
regsvr32 /u /s %windir%\system\wmpdrm.dll
del %windir%\system\spoolsv\spoolsv.exe /q /f

rem 删除QQ搜索 这个 **
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\IEHelp.dll
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\IEHelp1.dll
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\scrax.dll
regsvr32 /u /s C:\PROGRA~1\TENCENT\AddrPlus\TCtrl.dll
C:\PROGRA~1\TENCENT\Adplus\stup.exe C:\PROGRA~1\TENCENT\Adplus\SSAddr1.dll Uninstall
C:\PROGRA~1\TENCENT\Adplus\stup.exe C:\PROGRA~1\TENCENT\Adplus\SSAddr.dll Uninstall

rem 删除 DUDU 搜索条 这个 **
regsvr32 /u /s C:\PROGRA~1\DuDu\DddClient\dddiemon.dll
regsvr32 /u /s C:\PROGRA~1\DuDu\DddClient\dddmext.dll

rem 删除Accoona 这个 **
regsvr32 /u /s C:\PROGRA~1\Accoona\AToolbarCN.dll
regsvr32 /u /s C:\PROGRA~1\Accoona\atoolbar.dll
regsvr32 /u /s C:\PROGRA~1\Accoona\ASearchAssist.dll

rem 删除xBar
regsvr32 /u /s C:\PROGRA~1\xBar\xBarHelper.dll

regsvr32 /u /s %windir%\System32\xunleibho_v8.dll
rem 为了98
regsvr32 /u /s %windir%\System\xunleibho_v8.dll

rem Schedule sscli.dll
regsvr32 /u /s %windir%\System32\sscli.dll

rem 删除 henbang 很棒   **
regsvr32 /u /s C:\PROGRA~1\pcast\hbcast.dll
regsvr32 /u /s C:\PROGRA~1\HBClient\hapast.dll
regsvr32 /s /u C:\PROGRA~1\yehoo\hbyehoo.dll
regsvr32 /s /u C:\PROGRA~1\yehoo\tbyehoo.dll
regsvr32 /s /u %windir%\DOWNLO~1\HTHelper.dll

rem 库站 多多QQ表情 9991.com51.com 超级**
regsvr32 /u /s C:\PROGRA~1\CoolWebsite\QuickLink.dll
"C:\Program Files\Common Files\update\update.exe" -kill1
C:\PROGRA~1\CoolWebsite\uninst.exe
rem 最好安全模式操作,或者需要终止一个rundll32.exe %windir%\system32\wbem\IRJIT.dll 的进程
del %windir%\system32\wbem\IRJIT.dll /q /f

rem cfsbho.dll
regsvr32 /u /s %windir%\system32\msibm\cfsbho.dll
rem 为了98
regsvr32 /u /s %windir%\system\msibm\cfsbho.dll

rem 划词搜索 DeskAdTop\deskipn.dll
regsvr32 /u /s C:\PROGRA~1\DESKAD~1\deskipn.dll
C:\PROGRA~1\DESKAD~1\DeskUn.exe

rem 删除桌面传媒 IE-BAR 这个**
MsiExec.exe /I{FE41A479-E056-40A5-982C-D149B5D6712D}
regsvr32 /u /s "C:\Program Files\Desktop Media\Cast\dmbar.dll"
regsvr32 /u /s "C:\Program Files\Common Files\IE-Bar\dmbar.dll"
"C:\Program Files\Common Files\IE-Bar\uninstall.exe"
regsvr32 /u /s %windir%\DOWNLO~1\lund.dll
regsvr32 /u /s "C:\Program Files\IE-BAR\Cast\dmbar.dll"
rem 这个**可能不能被删除,请先到进程管理里删除VIPTray.exe这个进程
regsvr32 /u /s %windir%\system32\IEHelper.dll
regsvr32 /u /s %windir%\system32\WinDefendor.dll
rem 这个名字会不停的变化 **
regsvr32 /u /s %windir%\system\cb7o2470.dll
rem 为了98
regsvr32 /u /s %windir%\system\IEHelper.dll
regsvr32 /u /s %windir%\system\WinDefendor.dll

MsiExec.exe /I{3D554C17-ED16-448A-B3CE-6FBC51FFB705}

rem 中搜寻址 这个 **
regsvr32 /u /s "C:\Program Files\SearchNet\SNHpr.dll"
"C:\Program Files\SearchNet\UnInstall.exe"

rem 百狗**
C:\PROGRA~1\baigoo\mtsrv.exe -UnregServer
regsvr32 /u /s C:\PROGRA~1\baigoo\bgook.dll
regsvr32 /u /s C:\PROGRA~1\baigoo\bgooex.dll
regsvr32 /u /s C:\PROGRA~1\baigoo\BGooHK.dll
regsvr32 /u /s C:\PROGRA~1\baigoo\BGooBHO.dll
C:\PROGRA~1\baigoo\uninst.exe

rem 搜狗
C:\PROGRA~1\P4P\Uninstall.exe

regsvr32 /u /s "C:\Program Files\ScanToolbar\ScanBar.dll"
C:\PROGRA~1\ScanToolbar\uninst.exe

%windir%\system32\unsocul.exe
rem 为了98
%windir%\system\unsocul.exe

rem 点点通
if exist %windir%\DOWNLO~1\DDTINIT.DLL rundll32.exe %windir%\DOWNLO~1\DDTINIT.DLL,Uninstall

rem Radiate Advertising
%windir%\system32\MSIPCSV.EXE -uninstall -all
rem 为了98
%windir%\system\MSIPCSV.EXE -uninstall -all

rem RoomSetUPcd ads
if exist %windir%\system32\cd_clint.dll rundll32 %windir%\system32\cd_clint.dll,ServiceRunDll u_281
rem 为了98
if exist %windir%\system\cd_clint.dll rundll32 %windir%\system\cd_clint.dll,ServiceRunDll u_281

rem 一个什么五笔
regsvr32 /u /s C:\PROGRA~1\COMMON~1\Wnwb\wnwbio.dll

rem wmicsmgr.dll
regsvr32 /u /s %windir%\system32\wmicsmgr.dll
regsvr32 /u /s %windir%\system\wmicsmgr.dll

rem 一个广告Navihelper.dll
regsvr32 /u /s %windir%\system32\Navihelper.dll
regsvr32 /u /s %windir%\system\Navihelper.dll
del %windir%\system32\host.dat /q /f

rem 好像是一个木马
regsvr32 /u /s %windir%\system32\RAdminl.dll
rem 为了98
regsvr32 /u /s %windir%\system\RAdminl.dll

rem 跳跳塘
rem 这个**可能不能被删除,请先到进程管理里终止webacc.exe这个进程
%windir%\system32\wbauninstall.exe
regsvr32 /u /s %windir%\system32\webacc.dll
regsvr32 /u /s %windir%\Downlo~1\c8s.dll
rem 为了98
%windir%\system\wbauninstall.exe
regsvr32 /u /s %windir%\system\webacc.dll

rem 好像什么便民
regsvr32 /u /s C:\PROGRA~1\xm\tbu3\xm.dll

rem 易趣购物
del %windir%\ebaylink.ico /q /f

rem msdc32.dll 一个木马  需要安全模式才能清除
del C:\PROGRA~1\COMMON~1\system\msdc32.dll /q /f
del %windir%\ .exe /q /f /as /ar /ah

rem YOK拦截助手
regsvr32 /u /s C:\PROGRA~1\YOK.com\BlockAdr\yokhad.dll
regsvr32 /u /s C:\PROGRA~1\YOK.com\SUPERS~1\YOK_SuperSearch.dll
regsvr32 /u /s %windir%\system32\Navsmall.dll
regsvr32 /u /s %windir%\system\Navsmall.dll
C:\PROGRA~1\YOK.com\BlockAdr\Uninst.exe

rem 不知是什么流氓
regsvr32 /u /s %windir%\DOWNLO~1\vevnli.dll

rem ChajianHelper
regsvr32 /u /s %windir%\system32\SYSREA~1.DLL
regsvr32 /u /s %windir%\system\SYSREA~1.DLL

rem 不知是什么流氓
regsvr32 /u /s %windir%\system32\HelperService.dll
regsvr32 /u /s %windir%\system\HelperService.dll

regsvr32 /u /s %windir%\system32\mshlp.dll
regsvr32 /u /s %windir%\system\mshlp.dll

rem MyWebSearch 这个**,这个**产生的目录根本不定
if exist rundll32 C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsbar.dll rundll32 C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsbar.dll,O

rem 开心运程速递 
regsvr32 /u /s %windir%\system32\obwbkya.dll
rem 为了98
regsvr32 /u /s %windir%\system\obwbkya.dll

regsvr32 /u /s %windir%\system32\shwasobj.dll
rem 为了98
regsvr32 /u /s %windir%\system\shwasobj.dll
C:\PROGRA~1\SDAstro\Uninst.exe

rem 这个文件名会不停的变化
regsvr32 /u /s C:\Docume~1\AllUse~1\Applic~1\Microsoft\IEHelper\IEHelper200631_8913.dll

rem Luobooshow
regsvr32 /u /s %windir%\system32\WinSC.dll
regsvr32 /u /s %windir%\system\WinSC.dll

rem caishow
regsvr32 /u /s "C:\Program Files\CaiShow Tech\CaiShow\BrowerHelper.dll"
regsvr32 /u /s %windir%\system32\wuwebex.dll
regsvr32 /u /s %windir%\system\wuwebex.dll

rem 酷桌面
regsvr32 /u /s %windir%\system32\CoolBho.dll
regsvr32 /u /s %windir%\system\CoolBho.dll

rem 青娱
regsvr32 /u /s %windir%\system\QYLWMP~1.OCX
regsvr32 /u /s %windir%\system\QYLRMP~1.OCX
regsvr32 /u /s %windir%\system\contextmenu.dll
regsvr32 /u /s C:\PROGRA~1\Qyule\\QYULEP~1.OCX
regsvr32 /u /s C:\PROGRA~1\Qyule\\dvfilter.ax
C:\PROGRA~1\Qyule\unins000.exe

rem NB46.com  smflash.ocx 好像需要安全模式
regsvr32 /u /s "C:\Program Files\nb46.com\NB46Toolbar.dll"
regsvr32 /u /s %windir%\system32\smflash.ocx
regsvr32 /u /s %windir%\system\smflash.ocx

rem kuaiso toolsbar
regsvr32 /u /s "C:\Program Files\Micrsoft SearchBar\SearchBar.dll"

rem bbmao
regsvr32 /u /s "C:\Program Files\bbmao Toolbar\bbmao_tb_v1_0.dll"


rem 删除CDN 这个 **
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\wmhlpr.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\iesrch.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\cdniehlp.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\cdniehlp.dll
regsvr32 /u /s C:\PROGRA~1\CNNIC\Cdn\cdnforie.dll
regsvr32 /u /s %windir%\system32\cdnns.dll
regsvr32 /u /s %windir%\System32\jklpif.dll
rem 为了98
regsvr32 /u /s %windir%\system\cdnns.dll
regsvr32 /u /s %windir%\System\jklpif.dll
rem CNNIC的反安装这里可能不好完全卸载,请单独到控制面板里"添加/删除"里卸载,或找到C:\PROGRA~1\CNNIC\Cdn\cdnunins.exe单独执行
C:\PROGRA~1\CNNIC\Cdn\cdnunins.exe


un3721.reg
复制代码 代码如下:

REGEDIT4

;rem 砍掉一切流氓,让我们静待互联网的春天 ~_~
;rem 各取所需,根据自己要求修改(有的人还觉得某个流氓好就留着*_*)
;rem 如果跳出选择框,选择全部卸载
;rem 有些**需要在安全模式下才能卸载,有些不好卸载请看里面的帮助
;rem 现在的流氓越来越超级,已经超过批处理的能力极限,只有借助一些别的软件,推荐使用http://ccollomb.free.fr/unlocker一起删除超级**

;rem 砍掉3721 kao 把好多的电脑弄惨了
;rem 砍掉yahoo猪手,把好多的电脑弄惨
;rem 新版的 猪手 根本不能选择卸载,***,这里可以被卸载的
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\粉碎文件]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.zschk]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Angling.AntiFish]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Angling.AntiFish.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Assist.EasyAssist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AutoLive.Live]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AutoLive.Live.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{141A5E19-BDCB-4E27-A3D7-9E16503BC05B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ADKiller.ADKillerObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ADKiller.ADKillerObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B0E7716-898E-48CC-9690-4E338E8DE1D3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38928D50-8A48-44C2-945F-D2F23F771410}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7CA83CF1-3AEA-42D0-A4E3-1594FC6E48B2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9EB2B422-C9EE-46C4-A471-1E79C7517B1D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ABEC6103-F6AC-43A3-834F-FB03FBA339A2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BB936323-19FA-4521-BA29-ECA6A121BC78}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsMinHK.CnsHook]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsMinHK.CnsHook.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CoolBar.CoolBarObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CoolBar.CoolBarObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FFlash.FlashObjectInterface]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\FFlash.FlashObjectInterface.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{172862CD-9D35-40E7-BAF2-BA7ECF043B9C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1BB0ABBE-2D95-4847-B9D8-6F90DE3714C1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1D10645F-A553-426E-9923-C3ABF846EA41}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{48E688C8-609F-4B08-944E-3C7FAB99CD08}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7436DB12-1A7A-4D87-A4E0-713EC9D86050}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{924F5B3A-7A27-484A-B873-E855C9708667}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BE08F6BC-C3E6-4149-BEB1-CB449E1B372E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C3A9F7F8-8862-496A-B8A4-25D4140B7DBC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{19069804-2CF0-4357-B696-BA6E9AAD99EF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4158DB95-DE71-41FF-BEA1-2C3D1C679DF1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7354662F-CAA3-448B-BC01-04F55A2DCA35}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{95A9BBCA-4EC1-4A9E-91AA-1D9633C38D0E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{A5ADEAE7-A8B4-4F94-9128-BF8D8DB5E927}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AAB6BCE3-1DF6-4930-9B14-9CA79DC8C267}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{D4839331-534D-4D0C-875F-D25AF6A10CCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F97E75A4-0103-4F27-A752-327B600B1130}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ZsMod.AxObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ZsMod.AxObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{17F1C8E8-B99B-4D85-927B-A0EE7290455A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{19CE93DE-8334-42C6-B2CA-BFE3DF5196A3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1C2EDD19-C2D5-4234-9339-785E5885B84D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2283BB66-A15D-4AC8-BA72-9C8C9F5A1691}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{33BBE430-0E42-4F12-B075-8D21ACB10DCB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{38928D50-8A48-44C2-945F-D2F23F771410}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{406F94F0-504F-4a40-8DFD-58B0666ABEBD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4558FA8B-C683-4BD9-BB43-90E086A4C113}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4B57D035-8A78-4E5A-82DF-FD5DEE51E578}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4EBCAF82-5BE7-4FC5-938F-9CD284587139}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F2C1A0A-622E-4D23-9870-6FB6D109C170}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{55C32FB0-B5DE-432D-B143-7CA84EA3F888}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{57421194-58FB-49AE-9B4F-FD48869B9AD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{59E99ADD-E926-40e8-BD6F-1532124A4AAA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{62EED7C6-9F02-42f9-B634-98E2899E147B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6940DBA6-CEBB-46B6-8058-CB358295BCCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A915D6B-B187-4724-B753-F338D8A157C2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7992E7F8-5D81-4EAA-9E5F-6211215946E4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8FC688E0-3F7D-4517-8C30-459C4211A8A1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9C3C2C08-C494-4F52-AE94-85156A447D43}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A14600F7-E2AE-482D-9AFC-99CD4544DB4F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AB9BF611-F86A-43C5-A467-625E22D7A309}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{AF53D70E-29DF-443A-92AA-9C314AF5871E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B56FF3E8-B0C2-45C9-AF3F-8E6C5F010B9F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B83FC273-3522-4CC6-92EC-75CC86678DA4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C14F7681-33D8-11D3-A09B-00500402F30B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C459AB59-28A5-43A3-9D22-753F4C9586E6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CA1E3092-BC38-4FFC-AEAE-C8E8EEC70CA1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CEA8FC9F-3D3F-4486-B9DF-ADCEE875FFB2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D7C53E1A-7045-473C-933D-8228D1708947}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E3128A3A-C191-4149-8631-C632C8FC9919}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF4BA0B4-A877-45B3-B0BC-AD7A3CC22811}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F40FED3D-F813-42F4-A1AE-8E1D60472BF0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FA6DA3A4-87E4-4A45-9FD6-ED26089B7104}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE3ECAE7-0A37-4506-8A7D-3CC9A04D2CA8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FF0E5DF6-2375-4499-A97F-74954384D8D2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CnsHelper.CH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{02DB2793-F3F8-42AB-9B03-19B25485BE29}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{924F5B3A-7A27-484A-B873-E855C9708667}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BE08F6BC-C3E6-4149-BEB1-CB449E1B372E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{C43273A6-9085-41CF-8A84-3881363A7EB9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D27CDB6D-AE6D-11CF-96B8-444553540000}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DD011DB1-0EAF-4D05-8650-BB99208C76B0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{DF692509-D9EF-48A0-9CD0-3AA5B81F6F68}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\jpegfile\shellex\ContextMenuHandlers\Yahoo!Photo]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandButton]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandButton.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandReg]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.BandReg.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.ObjectBar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\ToolBand.ObjectBar.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{04D0FD01-C8FA-413B-AD83-519D10B93324}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{22242729-9EE0-4060-988D-BE2A9EFD8CD0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4158DB95-DE71-41FF-BEA1-2C3D1C679DF1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{51C76AB9-D876-46A8-A20D-F606EDDD69ED}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5517390C-60D1-4FFA-BD4C-81F8278AF29E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{58E9B715-3C97-4048-9CBE-A708E0AEB29E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{7CFDAB57-D8CD-4465-BD15-48CFFCEE3DF2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{8417D3DB-4004-4259-952D-A6EC64A1800E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{95E822B6-6B10-4E86-9603-6CECB6135867}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AAB6BCE3-1DF6-4930-9B14-9CA79DC8C267}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AE9A3F59-E2D2-4EE8-A279-F2B6AF336B8E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{CF67E74A-3C62-4867-9DFA-DD2374003333}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E816B7F9-96AB-4D4D-8DA4-B9D124959DA5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F8CC28B5-4042-4054-99CB-8855EFD0FAB7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.AsNoAdObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.AsNoAdObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.DragSearch]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.DragSearch.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.PhotoTb]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YahooAssistBar.PhotoTb.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YALive.Live]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YALive.Live.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YAssist.EasyAssist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YAssist.EasyAssist.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YRss.ExpBand]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YRss.ExpBand.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\zschkfile]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\!CNS]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{00000000-0000-0001-0001-596BAEDD1289}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{507F9113-CD77-4866-BA92-0E86DA3D0B97}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{59BC54A2-56B3-44a0-93E5-432D58746E26}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{5D73EE86-05F1-49ed-B850-E423120EC338}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{E5D12C4E-7B4F-11D3-B5C9-0050045C3C96}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{ECF2E268-F28C-48d2-9AB7-8F69C11CCB71}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FD00D911-7529-4084-9946-A29F1BDF4FE5}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search]
"SearchAssistant"=-
"CustomizeSearch"=-
"OCustomizeSearch"=-
"OSearchAssistant"=-

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{33BBE430-0E42-4F12-B075-8D21ACB10DCB}"=-

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{406F94F0-504F-4A40-8DFD-58B0666ABEBD}"=-
"{BB936323-19FA-4521-BA29-ECA6A121BC78}"=-

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{33BBE430-0E42-4f12-B075-8D21ACB10DCB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{38928D50-8A48-44C2-945F-D2F23F771410}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{62EED7C6-9F02-42f9-B634-98E2899E147B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BB936323-19FA-4521-BA29-ECA6A121BC78}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D157330A-9EF3-49F8-9A67-4141AC41ADD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FE3ECAE7-0A37-4506-8A7D-3CC9A04D2CA8}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{D157330A-9EF3-49F8-9A67-4141AC41ADD4}"=-

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"helper.dll"=-
"CnsMin"=-
"assistse"=-
"hbpassport"=-
"YLive.exe"=-
"yassistse"=-

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"CnsAssecblk"=-

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CnsMin]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1B0E7716-898E-48cc-9690-4E338E8DE1D3}]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_CNSMINKP]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\CnsMinKP]

[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\!搜一搜]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\添加到雅虎订阅(&Y)]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\雅虎搜索]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"CNSMenu"=-
"CNSHint"=-
"CNSReset"=-
"CNSEnable"=-
"CNSList"=-
"CNSAutoUpdate"=-

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{406F94F0-504F-4a40-8DFD-58B0666ABEBD}"=-
"{BB936323-19FA-4521-BA29-ECA6A121BC78}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\3721]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Yahoo]
[-HKEY_CURRENT_USER\Software\3721]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{19CE93DE-8334-42C6-B2CA-BFE3DF5196A3}]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{57421194-58FB-49AE-9B4F-FD48869B9AD4}]

;rem 彩信通 又一个超级的**产生了
;rem 想办法删除 %windir%\system32\drivers\Albus.SYS 这个万恶不赦的文件,推荐用http://ccollomb.free.fr/unlocker
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ALBUS]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Albus]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Albus]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ALBUS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Albus]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ad.AxObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Ad.AxObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6671A431-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6671A432-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6A512BF7-EC78-4e8d-9841-6C02E8FA9838}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.WinHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\IEHelper.WinHelper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{74289A79-E652-4A57-A6B9-EE64AD532A8D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{AB45CE36-C280-4525-BCF9-1BD01D3E4B57}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D922591D-7893-412B-B801-C3B2F31BE4C9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssist.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssistMenu]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MMSBho.MMSAssistMenu.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{077525AC-C681-4139-8C3E-B582BDD375C7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{22F87D75-7DD1-4545-94B3-CA80C0F462C6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{964DDEFF-B16C-4113-8FF7-8E83B53C8ED8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{6671A433-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6671A431-5C3D-463d-A7CF-5587F9B7E191}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\mmsassist]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Stdup]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\>>彩信发送<<]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"alsmt.exe"=-

;rem internet explorer helper msshapi.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{02C9B9AB-6372-46C5-B356-773FAF3B6B1E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02C9B9AB-6372-46C5-B356-773FAF3B6B1E}]

;删除划词 huaci 又是一个走上不归路的超级**
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{594BE7B2-23B0-4FAE-A2B9-0C21CC1417CE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{4E1ACE40-F681-4CC4-A7C0-AD1E6C9AD86F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SearchM.Search]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SearchM.Search.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{FD536575-73F7-42A3-9E9F-11688F1A006A}]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ABHCOP]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_HCALWAY]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\abhcop]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\hcalway]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ABHCOP]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_HCALWAY]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\abhcop]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\hcalway]
[-HKEY_CURRENT_USER\Software\Pig Move Search]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MoveSearch"=-

;CDN这个**
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Cdn.CdnObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Cdn.CdnObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CdnForIE.IEHlprObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CdnForIE.IEHlprObj.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8CDCBBA0-4BE1-4199-8389-1B19ED41D3E8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9A578C98-3C2F-4630-890B-FC04196EF420}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F5824EFB-728A-4726-A5A5-85A68B20EDC3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{5C3853CD-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{951A869A-1003-4897-948F-D55E570871DB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9C991F1E-D6FE-4B74-B6EC-763FF528FAE1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{F248EBAB-D894-4682-80E3-F48AABF4B12D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5C3853CE-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C24A5A5C-0874-4386-85C7-E669F90997A9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{DF571585-070D-4EB1-8B0E-99023F934FD4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMHlpr.WMEvtSink]
[-HKEY_LOCAL_MACHINE\SOFTWARE\CNNIC]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\CDNCLIENT]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F5824EFB-728A-4726-A5A5-85A68B20EDC3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{35980F6E-A137-4E50-953D-813BB8556899}]

[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cdnprot]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cdntran]
[-HKEY_CURRENT_USER\Software\CNNIC]

[-HKEY_CLASSES_ROOT\CLSID\{EED92A43-CFCE-4548-BD73-B0A405470ED5}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CdnCtr"=-
"renewup"=-

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\CmdMapping]
"{5C3853CF-C7E0-4946-B3FA-1ABDB6F48108}"=-

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{EED92A43-CFCE-4548-BD73-B0A405470ED5}"=-

[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\访问通用网址]

;去除stdup.dll这个**
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\StdService]

;rem Baidu这个** 越来越狠,Baid* 也不例外
;rem需要安全模式或者想办法删除 %windir%\system32\drivers\BDGuard.SYS 这个文件,才能卸载
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Baidu]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Baidu.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Tool]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBar.Tool.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.BandIE]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.BandIE.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.DropTarget]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiduBarEx.DropTarget.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7C76C055-ED6E-4535-A70F-CD476E727F67}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A7F05EE4-0426-454F-8013-C41E3596E9E9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FE14F22E-BE14-4F08-A80F-F27BC3A67B2D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{464C8A26-31E9-411C-9583-5B858E631DCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{89FDCC4B-8D91-49B0-81A6-18BCFF582735}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{96249369-D3DC-4AE6-8A3B-E7109D46E98D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{A294F8EB-86D9-4C4A-8B3E-909253761C64}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MimeFilter.AdFilter]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{6AFC2761-1253-427C-9A56-385B4609BE1D}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{B580CF65-E151-49C3-B73F-70B13FCA8E86}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{77FEF28E-EB96-44FF-B511-3185DEA48697}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Baidu]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B580CF65-E151-49C3-B73F-70B13FCA8E86}]
[-HKEY_CURRENT_USER\Software\Baidu]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度--网页搜索]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索MP3]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索图片]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索新闻]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索歌词]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索网页]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-搜索贴吧]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\百度-词典搜索]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BIE"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"BaiduDS"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_BDGUARD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BdGuard]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BDGUARD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\BdGuard]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_BDGUARD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BdGuard]

;删除 SSAddr.dll Tencent地址搜索栏
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0C7C23EF-A848-485B-873C-0ED954731014}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90B1ECB2-FC3B-49AE-A6BD-F5F11BF5C4AD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A57E074F-56D8-4A33-8112-AAC9693AA909}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{B1A7C2CF-BF40-4597-8142-7615D74D0CC3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AdvancedOptions\TBH]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157b}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{DEDEB80D-FA35-45d9-9460-4983E5A8AFE6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0C7C23EF-A848-485B-873C-0ED954731014}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\UrlSearchHooks]
"{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}"=-
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{DB8B2393-7A6C-4C76-88CE-6B1F6FF6FFE9}"=-

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AddrPlus3"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Tencent\TBH]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\上传到QQ网络硬盘]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\添加到QQ自定义面板]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\添加到QQ表情]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\用QQ彩信发送该图片]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0C7C23EF-A848-485B-873C-0ED954731014}]
;删除QQIEHelper.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{54EBD53A-9BC1-480B-966A-843A333CA162}]

;删除病毒 IRJIT.DLL 库站 多多QQ表情 **
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D1BB7CF4-4463-4e91-88D7-ECC3CE0A13B7}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{0083DE51-EB2E-4521-A95C-735D8E563373}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\QuickButton.QuickBtn]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\sss1.sss2.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{933DB9D6-9447-4EFE-ABA2-EAF3B309B44C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{1D901067-2529-4A9B-9B6B-7A1DB3A44CB5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D1BB7CF4-4463-4e91-88D7-ECC3CE0A13B7}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Update"=-
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BNESS]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\BNESS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BNESS]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\BNESS]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Lamp]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D1BB7CF4-4463-4E91-88D7-ECC3CE0A13B7}]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Universal Disk Manager]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MOBILL]

;删除Kugoo
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A9930D97-9CF0-42A0-A10D-4F28836579D5}]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\使用KuGoo3下载(&K)]

;删除网络这只蠢诸
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PigUpdate"=-

;rem 删除 henbang 很棒   **
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{8AB6C00E-A068-44E9-953F-1BCFEEA2BB6A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{21DAD172-D8C3-40CA-B7D3-E28AE7A5DB22}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AB6C00E-A068-44E9-953F-1BCFEEA2BB6A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BE0B5843-553A-48C2-9A42-258A1D791AFC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7C7E302E-B015-4E6E-A761-C28D78F3BC5A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{9AED6826-A68C-4AA0-A370-DE54C0D40788}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{AAC356CF-178B-4612-B1DB-EE153846BF58}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HBHelper.HBActivex]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HBHelper.HBActivex.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RichMedia.BhoObject]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\RichMedia.BhoObject.1]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{B6773538-228E-4D2F-9599-70DD9BBD2CB0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B6773538-228E-4D2F-9599-70DD9BBD2CB0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{BC8F8692-D345-44E0-93FF-EFB1BA6AA962}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9660E66E-AF14-4946-8249-1A640BBABFCC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HAPSpy.HAPClientSpy]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\HAPSpy.HAPClientSpy.1]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{21DAD172-D8C3-40CA-B7D3-E28AE7A5DB22}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BE0B5843-553A-48C2-9A42-258A1D791AFC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\RichMedia]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{21DAD172-D8C3-40CA-B7D3-E28AE7A5DB22}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"hdp"=-
"hbpassport"=-
"RichMedia"=-

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"mscfs"=-
"Iehelper"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1A199C20-DE2B-4838-AE3F-B5257ECE2B7E}]

;rem 搜狗
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.$p4p$]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\autolink.AutoLinkBHO]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\autolink.AutoLinkBHO.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{238D0F23-5DC9-45A6-9BE2-666160C324DD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{765035B3-5944-4A94-806B-20EE3415F26F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{941A4793-A705-4312-8DFC-C11CA05F397E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{E21BE468-5C18-43EB-B0CC-DB93A847D769}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance\{F1CDA468-8A08-449F-9FB8-461C3DED0E03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{08B13A8E-EB71-4421-B417-4EC0995D5BFC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0CA51D02-7739-43EA-8D9A-1E8AD4327B03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{238D0F23-5DC9-45A6-9BE2-666160C324DD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5AA23B9D-99C0-4A41-A25D-58E806766680}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{765035B3-5944-4A94-806B-20EE3415F26F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7FD094E7-C8B9-40BD-9F80-F20A7194D2E6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81B9A3D6-D79F-403E-939B-4F2BE8FD2A34}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8755CE6E-0BF7-4441-8751-FB728941B0B4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AB8528F-AC8B-416D-9B84-92D97729C195}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{941A4793-A705-4312-8DFC-C11CA05F397E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ACBF9EB9-48C5-4226-9967-2E3247A04510}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BAB1AC41-6FF7-4F2E-A04E-5C592CCFEA7D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D977D6A9-BE13-496D-9BE4-175DFAC12628}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DBBB7978-AF21-4EF4-9AD1-B2F4BC75696C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DEEE7FE9-3E06-43EE-B04D-18866CD0AD9C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E03667BC-5EDA-4FD8-992C-ED73265AFAA0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E21BE468-5C18-43EB-B0CC-DB93A847D769}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F1CDA468-8A08-449F-9FB8-461C3DED0E03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F20A9999-11DC-4071-87A9-35191DFDDAA6}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F4FB516E-8F16-44FD-AB1D-260C32B7CF9A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompLoader.Loader]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Media Type\{e436eb83-524f-11ce-9f53-0020af0ba770}\{57428EC6-C2B2-44A2-AA9C-28F0B6A5C48E}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SgSearchHook.SgUrlSearHook]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SoDAIEHelper.Catch]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\sogoutb.Detector]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Toolbar.BHOObj]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{8755CE6E-0BF7-4441-8751-FB728941B0B4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0CA51D02-7739-43EA-8D9A-1E8AD4327B03}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Sohu R&D]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\P4P Service]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\P4P Service]
[-HKEY_CURRENT_USER\Software\Sohu R&D]

;
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\使用彩信超级自写发送到手机]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\使用新浪下载助手下载]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\发送图片到手机(&M)]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\收藏此页到新浪ViVi]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\新浪搜索]

;中搜寻址
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2A0176FE-008B-4706-90F5-BBA532A49731}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{D1AFED83-9133-4660-8C8F-DAF1B4A3D5A8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{E8D3778F-47D3-4F1F-9245-3D46856936E4}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SNHpr.CSNHpr]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SNHpr.CSNHpr.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2A0176FE-008B-4706-90F5-BBA532A49731}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\SearchNet]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_ANFAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_JMEDIASERVICE]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Anfad]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\Remote Log]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\JMediaService]
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Remote Log]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ANFAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_JMEDIASERVICE]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Anfad]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Remote Log]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FAD]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\JMediaService]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Remote Log]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6A512BF7-EC78-4E8D-9841-6C02E8FA9838}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SearchNet_Up"=-

;rem 好像是开心运程 这个**
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SDAgentService]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MicrosoftRedirectionProgram"=-
"res"=-

;rem 易趣购物
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE60714F-AC17-427e-861A-FD60CBDF119A}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\CmdMapping]
"{EE60714F-AC17-427e-861A-FD60CBDF119A}"=-

;rem msdc32.dll 一个木马  需要安全模式才能清除
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run]
"ip_sec"=-

;rem 一个广告Navihelper.dll
[-HKEY_CURRENT_USER\AppID\NaviHelper.DLL]
[-HKEY_CURRENT_USER\NaviHelper.NaviHelperObj]
[-HKEY_CURRENT_USER\NaviHelper.NaviHelperObj.1]
[-HKEY_CURRENT_USER\CLSID\{3E422F49-1566-40D3-B43D-077EF739AC32}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3E422F49-1566-40D3-B43D-077EF739AC32}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"supdate2.dll"=-
[-HKEY_CLASSES_ROOT\Update2.Update2]
[-HKEY_CLASSES_ROOT\Update2.Update2.1]
[-HKEY_CLASSES_ROOT\CLSID\{ECF9C696-8018-41B4-8DAD-CFD1C732DC61}]
[-HKEY_CLASSES_ROOT\TypeLib\{752C3608-0BD6-4035-83D5-6CE383AED6B4}]
[-HKEY_CLASSES_ROOT\Interface\{C6AAD6FD-08D3-47F7-A8A2-1D7EF923DAD1}]

;rem 跳跳塘 这个**
;rem 这个**可能不能被删除,请先到进程管理里删除webacc.exe这个进程
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"webacc"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"webacc"=-
"mu071c"=-

;rem baigoo 这个** BG
[-HKEY_LOCAL_MACHINE\SOFTWARE\baigoo]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{40EF7CCC-71FE-4615-A0CA-D373F8C2AC88}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\MtSrv.EXE]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooEx.Update]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooEx.Update.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BHOHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BHOHelper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BrowserObject]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BaiGooPM.BrowserObject.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BGooBHO.Status]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BGooBHO.Status.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BGooSrv.HtmlPaser]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7905958A-18C2-4139-9957-AE6F2B754818}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7BDAF75A-0D6F-4F50-AFE9-333D08DF4005}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{808EAF87-61B8-4EEA-8B85-27480D1BDBEE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8816EA7A-5944-4277-B98E-2C0A46FB36E9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4A8976FE-144E-4742-8E49-D6CD3B140FD1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{690E010B-042A-4973-87A8-485DEB8BDF68}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{9DC44A38-B772-47F8-A406-054F842EC7C5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7BDAF75A-0D6F-4F50-AFE9-333D08DF4005}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"bgoomain.exe"=-

;rem YOK拦截助手
;Navsmall.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1BC02872-BC5E-46BE-BA76-6B0170FE6BFE}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter\text/html]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{972566B2-93BF-41AA-B06D-5F81DB7E38E1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3E2C12D-FACF-43BB-BE10-B1CDD497BFC9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C7FA2A99-D9AF-4112-B197-436016C2F72F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F869BB38-FFEF-4589-B986-610B7AD0ADA2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1A1798CC-9120-40B1-BA68-1D1415973232}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{1E69A80B-B19A-49AD-805E-98447883BED3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{3E42ACD2-B79D-4495-A6E5-9D972B19D815}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{871385F0-7E91-42D4-9B91-CD5611274531}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{261EE951-024F-4903-B880-ADA965E72885}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{628508EC-44AB-4990-B751-A3005D28053F}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{972566B2-93BF-41AA-B06D-5F81DB7E38E1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F869BB38-FFEF-4589-B986-610B7AD0ADA2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SMS.SMSObject]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SMS.SMSObject.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.HttpFilter]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.HttpFilter.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBho]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBho.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBlockAdr]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\YOKHookAdr.YOKBlockAdr.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Navsmall]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Yok]
[-HKEY_CURRENT_USER\Software\Yok]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar]
"{1E796980-9CC5-11D1-A83F-00C04FC99D61}"=-
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{972566B2-93BF-41AA-B06D-5F81DB7E38E1}]


;rem 不知是什么流氓
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D515F39-EBD0-0B9E-6719-2F8D8869AA61}]
[-HKEY_CLASSES_ROOT\CLSID\{8D515F39-EBD0-0B9E-6719-2F8D8869AA61}]

;rem 不知是什么流氓
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CE7C3CF0-4B15-11D1-ABED-709549C10000}]
[-HKEY_CLASSES_ROOT\CLSID\{CE7C3CF0-4B15-11D1-ABED-709549C10000}]

;rem VIPTray.exe 千橡这个** IE-BAR Desktop Media
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\BHORun.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\DelayLoad.DLL]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{65EF7AD4-1340-4A36-A097-95FF17E243E1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{84D34084-4E38-4683-A4DB-CA00646FEE8B}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BHORun.BHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\BHORun.BHelper.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DelayLoad.LoadRun]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DelayLoad.LoadRun.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Dmbar.dmbar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Dmbar.dmbar.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\DMBho.BrowserHelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{16358834-52FC-4981-9A79-BFECE7C08CD3}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1FCA37BA-7259-4BF1-878B-A39FA83BFBBB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2D99E8F4-56B7-457B-9A92-61B5D247D263}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5A6F2F95-3191-433B-8533-EB0B596A7BAC}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F2E37336-BFDB-409B-8D0E-6F013C438B20}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{265379DB-90F0-45DB-9B10-640DCB1145FD}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{7EB718DD-E41F-446A-9C1E-757F921168A0}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{8C9377D3-D823-46A6-A8AC-B3913F9B6CA2}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{25649A6A-637D-4416-9D03-98146330492A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{292D202F-E519-45F4-8D50-DE8513B87CE9}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{86645AFC-0B33-4275-BFE6-FAE9FCD886D1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\IE-Bar]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{1FCA37BA-7259-4BF1-878B-A39FA83BFBBB}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2D99E8F4-56B7-457B-9A92-61B5D247D263}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F2E37336-BFDB-409B-8D0E-6F013C438B20}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\sharehelper]
[-HKEY_CURRENT_USER\Software\sharehelper]
[-HKEY_LOCAL_MACHINE\SOFTWARE\sharehelper]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VIPTray]
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Te1net]
[-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{1FCA37BA-7259-4BF1-878B-A39FA83BFBBB}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
"DelayRun"=-

;rem ChajianHelper
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}]

;rem HelperService.dll
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9E1E1371-9D8F-4421-81B9-F8D2E1773A59}]

;rem wmicsmgr.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"wmicsmgr"=-
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{333872C4-92D6-4396-8542-64AB96518950}]

;SmartLinkService (SLService) - slmdmsr.exe
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SLService]

;rem 一个什么五笔
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED8DFC5C-10EF-45AB-9DC2-0639AFF5A270}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{CBC67CD5-855C-4A69-B450-A0508FDA5234}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{C0CDC83C-FEA7-499F-9BE7-A9AB4EAED292}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Update.bho]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Update.bho.1]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ED8DFC5C-10EF-45AB-9DC2-0639AFF5A270}]

;rem MyWebSearch
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00A6FAF1-072E-44cf-8957-5838F569A31D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0F8ECF4F-3646-4C3A-8881-8E138FFCAF70}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{25560540-9571-4D7B-9389-0F166788785A}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2EFF3CF7-99C1-4c29-BC2B-68E057E22340}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3DC201FB-E9C9-499C-A11F-23C360D7C3F8}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3E720452-B472-4954-B7AA-33069EB53906}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{53CED2D0-5E9A-4761-9005-648404E6F7E5}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{63D0ED2C-B45B-4458-8B3B-60C69BBBD83C}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7473D292-B7BB-4f24-AE82-7E2CE94BB6A9}]
[-HKEY_L

鲜花

握手

雷人

路过

鸡蛋
该文章已有0人参与评论

请发表评论

全部评论

专题导读
上一篇:
Windows 2000下用DOS命令删除文件夹发布时间:2022-02-11
下一篇:
批处理编程- -介绍发布时间:2022-02-11
热门推荐
热门话题
阅读排行榜

扫描微信二维码

查看手机版网站

随时了解更新最新资讯

139-2527-9053

在线客服(服务时间 9:00~18:00)

在线QQ客服
地址:深圳市南山区西丽大学城创智工业园
电邮:jeky_zhao#qq.com
移动电话:139-2527-9053

Powered by 互联科技 X3.4© 2001-2213 极客世界.|Sitemap