Windows Server ·

Win2003系统服务系统优化

Windows Registry Editor Version 5.00

;=======================================================================
;			Win2003系统服务系统优化
;          QQ:2016571396  2014.6.18
;          Http://www.fooher.com
;=======================================================================
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell]
@="none"

;给“我的电脑”的右键菜单中添加事件查看器
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\事件查看器]
@="事件查看器(&G)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\事件查看器\command]
@=hex(2):25,00,77,00,69,00,6e,00,64,00,69,00,72,00,25,00,5c,00,73,00,79,00,73,\
  00,74,00,65,00,6d,00,33,00,32,00,5c,00,6d,00,6d,00,63,00,2e,00,65,00,78,00,\
  65,00,20,00,2f,00,73,00,20,00,25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,\
  00,6f,00,6f,00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,\
  32,00,5c,00,65,00,76,00,65,00,6e,00,74,00,76,00,77,00,72,00,2e,00,6d,00,73,\
  00,63,00,20,00,2f,00,73,00,00,00

;给“我的电脑”的右键菜单中添加启动项查看
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\启动项查看]
@="启动项查看(&A)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\启动项查看\Command]
@="C:\\windows\\system32\\msconfig.exe"

;给“我的电脑”的右键菜单中添加计算机策略
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\本地安全策略]
@="计算机策略(&B)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\本地安全策略\Command]
@="C:\\windows\\system32\\mmc.exe C:\\windows\\system32\\secpol.msc"

;给“我的电脑”的右键菜单中添加注册表编辑
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\注册表编辑器]
@="注册表编辑(&Q)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\注册表编辑器\Command]
@="C:\\windows\\regedit.exe"

;给“我的电脑”的右键菜单中添加添加或删除
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\添加或删除]
@="添加或删除(&T)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\添加或删除\command]
@=rundll32.exe shell32.dll,Control_RunDLL appwiz.cpl

;给“我的电脑”的右键菜单中添加磁盘管理器
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\磁盘管理器]
@="磁盘管理器(&F)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\磁盘管理器\command]
@="C:\\windows\\system32\\mmc.exe C:\\windows\\system32\\diskmgmt.msc"

;给“我的电脑”的右键菜单中添加组策略编辑
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\组策略编辑器]
@="组策略编辑(&T)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\组策略编辑器\Command]
@="C:\\windows\\system32\\mmc.exe C:\\windows\\system32\\gpedit.msc"

;给“我的电脑”的右键菜单中添加计算机服务
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\计算机服务]
@="计算机服务(&G)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\计算机服务\command]
@=%windir%\system32\mmc.exe /s %SystemRoot%\system32\services.msc /s

;给“我的电脑”的右键菜单中添加计算机管理
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\计算机管理]
@=hex(2):a1,8b,97,7b,3a,67,a1,7b,06,74,28,00,26,00,45,00,29,00,00,00
"SuppressionPolicy"=dword:4000003c

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\计算机管理\command]
@=%windir%\system32\mmc.exe /s %windir%\system32\compmgmt.msc

;给“我的电脑”的右键菜单中添加设备管理器
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\设备管理器]
@="设备管理器(&Q)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\设备管理器\command]
@="mmc.exe C:\\WINDOWS\\SYSTEM32\\devmgmt.msc"

;给“我的电脑”的右键菜单中添加控制面板
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\面板控制中心]
@="面板控制中心(&C)"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\shell\面板控制中心\command]
@="rundll32.exe shell32.dll,Control_RunDLL"

;更改Windows登录窗口的标题栏信息
;[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
;"LogonPromt"="欢迎使用 Windows 由安陆疯娃信息港独立制作"
;"LegalNoticeCaption"="欢迎使用 Windows 由安陆疯娃信息港独立制作"
;"LegalNoticeText"="进入系统后。不要删除文件"
;"Welcome"="欢迎使用 Windows 由安陆疯娃信息港独立制作"

;在系统启动时运行可执行程序
;[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion]
;"System"="c:\\aaaaaaaaaaaaa.exe"

;让XP 使用传统搜索界面
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CabinetState]
"Use Search Asst"="no"

;优化NTFS系统-不保存最近访问更新
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\FileSystem]
"NtfsDisableLastAccessUpdate"=dword:00000001
;优化NTFS系统-禁止最近访问更新
"NtfsDisableLastAcessUpdate"="1"
;加快程序运行速度
"ConfigFileAllocSize"=dword:000001f4

;更改Windows系统安装目录 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Setup]
"ServicePackInstallType"=dword:00000000
"DriverCachePath"=%SystemRoot%\Driver Cache
"PrivateHash"=hex:af,87,fd,24,10,b8,50,15,99,fc,f7,e0,01,91,67,02
;"Installation Sources"=D:\本机驱动\声卡 D:\本机驱动\显卡\2KXP_INF G:\WINDOWS\VENT
"Installation Sources"=hex(7):44,00,3a,00,5c,00,2c,67,3a,67,71,9a,a8,52,5c,00,\
  f0,58,61,53,00,00,44,00,3a,00,5c,00,2c,67,3a,67,71,9a,a8,52,5c,00,3e,66,61,\
  53,5c,00,32,00,4b,00,58,00,50,00,5f,00,49,00,4e,00,46,00,00,00,47,00,3a,00,\
  5c,00,57,00,49,00,4e,00,44,00,4f,00,57,00,53,00,5c,00,56,00,45,00,4e,00,54,\
  00,00,00,00,00
"SourcePath"="G:\\WINDOWS\\VENT\\I386"
"ServicePackSourcePath"="G:\\WINDOWS\\VENT"
"CDInstall"=dword:00000001

;电脑注册信息飞翔园上网服务中心
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion]
"ProductName"="Microsoft Windows Server 2003"
"RegisteredOrganization"="运维天涯-关注互联网以及分享IT运维工作经验"
"RegisteredOwner"="运维天涯网站"
"SourcePath"="G:\\WINDOWS\\VENT\\I386"
"PathName"="C:\\WINDOWS"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{6096E38F-5AC1-4391-8EC4-75DFA92FB32F}]
"CLSID"="{1FBA04EE-3024-11D2-8F1F-0000F87ABD16}"
"Default Visible"="Yes"
"ButtonText"="运维天涯-关注互联网以及分享IT运维工作经验"
"Exec"="http://www.fooher.com"
"HotIcon"="C:\\WINDOWS\\system32\\A.ICO"
"Icon"="C:\\WINDOWS\\system32\\B.ICO"
"MenuStatusBar"="运维天涯-关注互联网以及分享IT运维工作经验"
"MenuText"="运维天涯"
"CLSID"="CLSID"="{1FBA04EE-3024-11D2-8F1F-0000F87ABD16}"

;============IE起始页================
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Default_Page_URL"="http://127.0.0.1"
"Start Page"="http://127.0.0.1"
"Search Page"="http://www.baidu.com"
"Search Bar"="http://www.google.cn/ie"
"Window Title"="运维天涯-关注互联网以及分享IT运维工作经验"
"Secondary Start Pages"=hex(7):68,00,74,00,74,00,70,00,3a,00,2f,00,2f,00,31,00,\
  32,00,37,00,2e,00,30,00,2e,00,30,00,2e,00,31,00,00,00,00,00
"Error Dlg Details Pane Open"="no"
"Disable Script Debugger"="yes"
;禁用IE中script错误报告
"Disable Script DebuggerIE"="yes"
;禁止显示友好http错误
"Friendly http errors"="No"
;禁止显示script错误通知
"Error Dlg Displayed On Every Error"="no"
;开启 IE 自动缩图功能
"Enable AutoImageResize"="yes"
;下载完成后自动关闭
"NotifyDownloadComplete"="no"
;在我的电脑显示状态栏
"StatusBarOther"=dword:00000001
"Friendly http errors"="yes"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchURL]
""="http://www.google.cn/keyword/%s"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search] 
"SearchAssistant"="http://www.google.cn/ie"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Windows]
"NoPopUpsOnBoot"=dword:00000001

[HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Control Panel]
"HomePage"=dword:00000001

;为Internet Explorer添加搜索引擎(以Microsoft Knowledge Base, Altavista, Google, MSN, FileMirrors为序)
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\MSKB]
@="http://support.microsoft.com/?kbid=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\AV]
@="http://www.altavista.com/sites/search/web?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\GGL]
@="http://www.google.com/search?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\MSN]
@="http://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\FM]
@="http://www.filemirrors.com/search.src?file=%s"
;Prevents Internet Explorer windows from being reused

;改IE下载位置
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer]
"Show_FullURL"=dword:00000001
"DownloadDirectory"="E:\\下载存放区"
"SmartDithering"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\MAIN\UrlTemplate]
"1"="www.%s.com"
"2"="www.%s.org"
"3"="www.%s.net"
"4"="www.%s.edu"

;禁止用户更改浏览器主页
[HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer\Control Panel\]
"HomePage"="1"

;把IE可同时下载数目增到10
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"MaxConnectionsPerServer"=dword:10
"MaxConnectionsPer1_0Server"=dword:10
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"MaxConnectionsPerServer"=dword:10
"MaxConnectionsPer1_0Server"=dword:10

;============IE起始页================

;锁定注册表
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
;锁定注册表
;"DisableRegistryTools"=dword:00000001
;不锁定注册表
;"DisableRegistryTools"=dword:00000000

;从开始菜单删除帮助
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
"NoSMHelp"=dword:00000001
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
"NoRemoteRecursiveEvents"=dword:00000001
"NoSMHelp"=dword:00000001
;关闭自动运行功能
"NoDriveTypeAutoRun"="1"
;禁止活动桌面(Active Desktop)功能
"NoActiveDesktop"=hex:01, 00,00,00
;删除“映射网络驱动器”和“断开网络驱动器
"NoNetConnectDisconnect"=dword:00000001
;隐藏开始菜单项目上的气球提示
"NoSMBalloonTip"=dword:00000001
;从开始菜单中删除移除 PC按钮
"NoStartMenuEjectPC"=dword:00000001
;从开始菜单中删除“我的音乐”图标
"NoStartMenuMyMusic"=dword:00000001
;从开始菜单中删除“图片收藏”图标
"NoSMMyPictures"=dword:00000001
;从开始菜单删除收藏夹
"NoFavoritesMenu"=dword:00000001
;去掉“Windows Update”菜单
"NoCommonGroups"=dword:00000001
;从开始菜单删除设置程序访问和默认图标
"NoSMConfigurePrograms"=dword:00000001
;从“我的电脑”删除共享文档文件夹
"NoSharedDocuments"=dword:00000001
;关闭缩略图的缓存
"NoThumbnailCache"=dword:00000001
;登陆时不显示隐藏欢迎屏幕
"NoWelcomeScreen"=dword:00000001
;关机时自动清除开始菜单的文档记录
"ClearRecentDocsOnEixt"=hex:01,00,00,00
;控制面板显示方式改为经典方式
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] 
"ForceClassicControlPanel"=dword:00000001 
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\FontSmoothing] 
"DefaultValue"=dword:00000001 
"DefaultApplied"=dword:00000001

;跳过internet连接向导
[HKEY_CURRENT_USER\Software\Microsoft\Internet Connection Wizard]
"Completed"=hex:01,00,00,00
"DesktopChanged"=dword:00000001

;禁止IE“发送信息到Internet”提示 
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3] 
"1601"=dword:00000000

;关闭桌面清理向导
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Desktop\CleanupWiz]
"NoRun"=dword:00000001

;使用最大传输单元(1500)
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Class\NetTrans]
"MaxMTU"=dword:5DC
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Class\Net]
"MaxMTU"=dword:5DC

;加速TCP/IP windows size(372300)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters]
"TCPWindowSize"=dword:5AE4C
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters]
"TCPWindowSize"=dword:5AE4C
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters]
"GlobalMaxTcpWindowSize"=dword:5AE4C

;系统失败
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CrashControl]
;不将事件写入系统日志
"LogEvent"=dword:00000000
;不发送管理警报
"SendAlert"=dword:00000000
;禁止自动重启
"AutoReboot"=dword:00000000
;不写入调试信息
"CrashDumpEnabled"=dword:00000000

;禁止Windows漫游气球提醒
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Tour]
"RunCount"=dword:00000000
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Applets\Tour]
"RunCount"=dword:00000000

;删除图标快捷方式的字样
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer]
"Link"=hex:00,00,00,00
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer]
"Link"=hex:00,00,00,00

;禁用杀毒软件提醒
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusDisableNotify"=dword:00000001
;禁用防火墙提醒
"FirewallDisableNotify"=dword:00000001
;禁用自动更新提醒
"UpdatesDisableNotify"=dword:00000001

;SP2验证码补丁
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Security]
"BlockXBM"=dword:00000000

;关闭系统还原
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000001
;关闭系统还原的配置界面
"DisableConfig"=dword:00000001

;关闭系统还原 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srservice]
"Start"=dword:00000004 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] 
"DisableSR"=dword:00000001
;关闭隐藏不活动的图标
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer]
"EnableAutoTray"=dword:00000000

;去除HappyTime(欢乐时光)威胁 这个不能删除,影响生成HTML功能,所以去掉
;[-HKEY_CLASSES_ROOT\CLSID\{06290BD5-48AA-11D2-8432-006008C3FBFC}]
;[-HKEY_CLASSES_ROOT\Scriptlet.TypeLib]

;不自动隐藏任务栏
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Position"=hex:2c,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,00,00,00,\
  00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
;自动隐藏任务栏
;"Position"=hex(3):2C,00,00,00,A0,00,00,00,00,00,00,00,80,02,00,00,58,02,00,\
;00,00,00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
;"CurrentState"=hex(3):04,00,00,40

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
;禁止高亮显示新安装的程序(开始菜单)
"Start_NotifyNewApps"=dword:00000000
;关闭分组相似任务栏按钮
"TaskbarGlomming"="dword:00000000"
;锁锭任务栏
"TaskbarSizeMove"=dword:00000000
;设置分组相似任务栏按钮的窗口数量 分5组dword:00000005  分15组dword:0000000f 
;分10组dword:0000000a
"TaskbarGroupSize"="dword:0000000f"
;打开资源管理器的状态栏
"ShowStatusBar"=dword:00000001
;开启在桌面上为图标标签使用阴影
"ListviewShadow"=dword:00000001
;关闭气球提示信息
"EnableBalloonTips"=dword:0000001
;关闭任务栏通知图标(hex(3):00,00,00,00   显示)
"NoTrayItemsDisplay"=hex(3):01,00,00,00
;在开始菜单显示"网上邻居"
"Start_ShowNetPlaces"=dword:0000001
;禁止在开始菜单显示"打印机和传真"
"Start_ShowPrinters"=dword:0000001
;禁止在开始菜单显示"帮助"
"Start_ShowHelp"=dword:0000001
;禁止在开始菜单显示"设定程序访问和默认值"
"Start_ShowSetProgramAccessAndDefaults"=dword:0000001
;禁止在开始菜单显示"设定程序访问和默认值"
"Start_ShowSetProgramAccessAndDefaults"=dword:0000001
;在桌面上显示所有的图标
"HideIcons"=dword:00000000
;使用 Windows 传统风格的文件夹
"WebView"=dword:00000000
"TaskbarAnimations"=dword:00000000
"ListviewWatermark"=dword:00000000
"ListviewAlphaSelect"=dword:00000001
"ShowCompColor"=dword:00000001
"HideFileExt"=dword:00000001
"DontPrettyPath"=dword:00000000
"ShowInfoTip"=dword:00000001
"Filter"=dword:00000000
"SuperHidden"=dword:00000000
"SeparateProcess"=dword:00000000
;开始显示管理工具
"StartMenuAdminTools"="YES"
;扩展控制面板
"CascadeControlPanel"="YES"
;扩展网络连接
"CascadeNetworkConnections"="YES"
;启动个性化菜单
"IntelliMenus"=dword:00000001
;不显示
"StartMenuLogoff"=dword:00000000
;不在开始显示小图标
"Start_LargeIcons"=dword:00000001
;层叠开始菜单(类似 Win95)
"StartMenuScrollPrograms"="NO"
;扩展打印机
"CascadePrinters"="NO"
;扩展控制面板
"CascadeControlPanel"="YES"
;扩展网络和拨号连接
"CascadeNetworkConnections"="YES"
;不显示扩展我的文档
"CascadeMyDocuments"="YES"
;启用拖放
"StartMenuChange"=dword:00000001
;显示运行
"StartMenuRun"=dword:00000001
"CascadeMyPictures"="NO"
;;显示文件夹
"StartMenuFavorites"=dword:00000001
;使用 Windows 传统风格的文件夹
"WebView"=dword:00000000
"DisableThumbnailCache"=dword:00000000
"ClassicViewState"=dword:00000000
"ShowInfoTip"=dword:00000001
"WebViewBarricade"=dword:00000001
"ShowSuperHidden"=dword:00000000
;不显示隐藏的文件和文件夹
"Hidden"=dword:00000002
;隐藏已知文件类型的扩展名
"HideFileExt"=dword:00000001
"ShowCompColor"=dword:00000001
"SeparateProcess"=dword:00000000
"PersistBrowsers"=dword:00000000
;在文件夹提示中显示文件大小信息
"FolderContentsInfoTip"=dword:00000001
;在资源管理器文件夹列表中显示简单文件夹查看
"FriendlyTree"=dword:00000001
;关闭自动搜索网络文件夹和打印机
"NoNetCrawling"=dword:00000001

;在我电脑中显示控制面板
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\HideMyComputerIcons]
"{21EC2020-3AEA-1069-A2DD-08002B30309D}"=dword:00000001

;显示完整路径
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CabinetState]
;在标题栏显示完整路径
"FullPath"=dword:00000001
;在地址栏显示完整路径
"FullPathAddress"=dword:00000001

;语言栏隐藏到任务拦
[HKEY_CURRENT_USER\Software\Microsoft\CTF\LangBar]
;最小化语言栏 (还原语言栏 "ShowStatus"=dword:00000000)
"ShowStatus"=dword:00000004
;关闭任务栏中的其它图标(开启dword:00000001)
"ExtraIconsOnMinimized"=dword:00000000

;禁止启动时候弹出错误信息
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Windows]
"NoPopUpsOnBoot"="1"
;不将事件写入系统日志
"LogEvent"=dword:00000000
;不发送管理警报
"SendAlert"=dword:00000000
;禁止自动重启
"AutoReboot"=dword:00000000
;不写入调试信息
"CrashDumpEnabled"=dword:00000000

;禁用ZIP功能
[-HKEY_CLASSES_ROOT\.zip\CompressedFolder]
[-HKEY_CLASSES_ROOT\CLSID\{E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CompressedFolder]
;关闭"压缩旧文件"功能
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VolumeCaches\Compress old files]

;去掉右键“新建”中的BMP、WAV等
[-HKEY_CLASSES_ROOT\.bfc\ShellNew]
[-HKEY_CLASSES_ROOT\.rtf\ShellNew]
[-HKEY_CLASSES_ROOT\.wav\ShellNew]
[-HKEY_CLASSES_ROOT\.psd\ShellNew]
[-HKEY_CLASSES_ROOT\.bmp\ShellNew]
[-HKEY_CLASSES_ROOT\.doc\ShellNew]
[-HKEY_CLASSES_ROOT\.xls\ShellNew]
[-HKEY_CLASSES_ROOT\.ppt\ShellNew]
[-HKEY_CLASSES_ROOT\.mdb\ShellNew]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.bfc\ShellNew]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.rar\ShellNew]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.rtf\ShellNew]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.zip\ShellNew]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.bmp\ShellNew]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.xls\Excel.Sheet.8\ShellNew]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\FlashFXP.exe]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\moviemk.exe]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\mspaint.exe]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\shimgvw.dll]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\wordpad.exe]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Applications\zipfldr.dll]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.ppt\PowerPoint.Show.8\ShellNew]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.mdb\Access.Application.11\ShellNew]

;开启小键盘指示灯 计算机用户登录前打开Num Lock键
[HKEY_USERS\.DEFAULT\Control Panel\Keyboard] 
"InitialKeyboardIndicators"="2" 
"KeyboardDelay"="1" 
"KeyboardSpeed"="31"

;当文件没有关联的打开程序时,禁止从网络上去搜索打开类型
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System]
"NoInternetOpenWith"=dword:00000001

;安装驱动时不搜索Windows Update
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DriverSearching]
"DontSearchWindowsUpdate"=dword:00000001
"DontPromptForWindowsUpdate"=dword:00000001

;关闭首次打开Windows Media Player 出现的授权窗口
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsMediaPlayer]
"GroupPrivacyAcceptance"=dword:00000001

;不要在关闭 Windows 对话框显示“安装更新并关机”选项
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Microsoft\Windows\WindowsUpdate\AU]
"NoAUShutdownOption"=dword:00000001

;加快搜索网上邻居的速度
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\RemoteComputer\NameSpace\{D6277990-4C6A-11CF-8D87-00AA0060F5BF}]

;彻底关闭华生医生Dr. Watson
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AeDebug]
"Auto"="0"
"Debugger"="drwtsn32 -p %ld -e %ld -g"
"UserDebuggerHotKey"=dword:00000000

;更改标准时间的名称
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\TimeZoneInformation]
"ActiveTimeBias"=hex:20,fe,ff,ff
"StandardName"="北京时间"
"DaylightName"="中国夏时制时间"
"Bias"=hex:20,fe,ff,ff
"StandardBias"=hex:00,00,00,00
"DaylightBias"=hex:c4,ff,ff,ff
"StandardStart"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00
"DaylightStart"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00

;在我电脑文件夹显示状态栏
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser]
"{01E04581-4EEE-11D0-BFE9-00AA005B4383}"=hex:81,45,e0,01,ee,4e,d0,11,bf,e9,00,\
  aa,00,5b,43,83,10,00,00,00,00,00,00,00,01,e0,32,f4,01,00,00,00
"ITBarLayout"=hex:11,00,00,00,5c,00,00,00,00,00,00,00,34,00,00,00,1b,00,00,00,\
  4a,00,00,00,01,00,00,00,20,07,00,00,a0,0f,00,00,05,00,00,00,62,05,00,00,26,\
  00,00,00,02,00,00,00,21,07,00,00,a0,0f,00,00,04,00,00,00,21,01,00,00,a0,0f,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
  00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00

;关闭Windows自动更新
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update]
"SetupWizardLaunchTime"="2007-12-30 05:14:38"
"AUOptions"=dword:00000001

;移除nForce SATA硬盘图标
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\System\nvata]
"disableRemovable"=dword:00000001

;记事本状态栏 换行 坐标
[HKEY_CURRENT_USER\Software\Microsoft\Notepad]
"StatusBar"=dword:00000001
"Wrap"=dword:00000001
"iWindowPosX"=dword:00000140
"iWindowPosY"=dword:0000002e

;48用记事本打开nfo文件
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nfo]
"Application"="NOTEPAD.EXE"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nfo\OpenWithList]
"a"="Explorer.exe"
"MRUList"="ba"
"b"="NOTEPAD.EXE"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.nfo\OpenWithProgids]
"MSInfo.Document"=hex(0):

;关闭Windows Error Reporting Service 报告错误服务
[HKEY_CURRENT_USER\Software\Microsoft\Windows\Windows Error Reporting]
"Disabled"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WerSvc]
"Start"=dword:00000004
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\WerSvc]
"Start"=dword:00000004

;解决右键变慢问题
[-HKEY_CLASSES_ROOT\Directory\Background\shellex\ContextMenuHandlers]
[HKEY_CLASSES_ROOT\Directory\Background\shellex\ContextMenuHandlers\New]
@="{D969A300-E7FF-11d0-A93B-00A0C90F2719}"

;注销后自动登陆
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"AutoAdminLogon"="1"
"ForceAutoLogon"="1"
"ShutdownWithoutLogon"="0"
"DefaultDomainName"="SERVER"
"DefaultUserName"="Administrator"
"AltDefaultUserName"="Administrator"
"AltDefaultDomainName"="SERVER"

;使系统支持135G以上的硬盘
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\atapi\Parameters]
"EnableBigLba"=dword:00000001

;把录音机的时间改为350秒
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Applets\Sound Recorder]
"BufferDeltaSeconds"=dword:15e

;Office 2003 优化
[-HKEY_CLASSES_ROOT\AppID\wisptis.EXE]
"AppID"="{7F429620-16D1-471E-A81A-114992148034}"

[-HKEY_CLASSES_ROOT\CLSID\{A5B020FD-E04B-4E67-B65A-E7DEED25B2CF}\LocalServer32]
@="C:\\WINDOWS\\system32\\WISPTIS.EXE"
"LocalServer32"=hex(7):26,00,69,00,67,00,41,00,56,00,6e,00,2d,00,7d,00,66,00,\
  28,00,5a,00,58,00,66,00,65,00,41,00,52,00,36,00,2e,00,6a,00,69,00,57,00,49,\
  00,53,00,50,00,48,00,69,00,64,00,64,00,65,00,6e,00,3e,00,4d,00,36,00,6d,00,\
  77,00,5d,00,70,00,7d,00,37,00,68,00,39,00,74,00,61,00,7b,00,45,00,78,00,72,\
  00,54,00,55,00,6e,00,4c,00,00,00,00,00

[-HKEY_CLASSES_ROOT\TypeLib\{773F1B9A-35B9-4E95-83A0-A210F2DE3B37}\1.0\0\win32]
@="C:\\WINDOWS\\system32\\WISPTIS.EXE"

;修改用户和公司的基本信息
[HKEY_CURRENT_USER\Software\Microsoft\MS Setup (ACME)\User Info]
"DefName"="运维天涯"
"DefCompany"="运维天涯-关注互联网以及分享IT运维工作经验"

;禁止显示“关闭事件跟踪程序”关闭Win2003的事件跟踪程序显示
[HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows NT\Reliability]
"ShutdownReasonOn"=dword:00000000
"ShutdownReasonUI"=dword:00000000

;删除启动/ 关机/登录/ 注销状态消息 
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\]
"DisableStatusMessages"="1"

;设定在退出系统后是否自动保存设置
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\]
"NoSaveSettings"="0"

;禁止用户在系统登录前按下Ctrl+Alt+Delete键
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system]
"disablecad"=dword:00000001

;自定义IE“链接”文件夹名称
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar]
"LinksFolderName"="湖北ぁ安陆"
;锁定IE工具栏
"Locked"=dword:00000001

;自定义IE“查看原文件”程序
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\View Source Editor\Editor Name\]
@="C:\\Program Files\\Notepad++\\notepad++.exe"

;缩短XP的开关机的等待时间 关闭程序仅等待1秒_程序出错时等待0.5秒
;关闭菜单阴影效果
[HKEY_CURRENT_USER\Control Panel\Desktop]
"UserPreferencesMask"=hex:b0,12,01,80
;打开菜单阴影效果
;"UserPreferencesMask"=hex:b0,32,07,80
"HungAppTimeout"="1000"
"MenuShowDelay"="0"
"WaitToKillAppTimeout"="5000"
"ActiveWndTrkTimeout"=dword:00000000
"CaretWidth"=dword:00000001
"CoolSwitch"="1"
"CoolSwitchColumns"="7"
"CoolSwitchRows"="3"
"CursorBlinkRate"="530"
"DragFullWindows"="0"
"DragHeight"="4"
"DragWidth"="4"
"FontSmoothingOrientation"=dword:00000001
"ForegroundFlashCount"=dword:00000003
"ForegroundLockTimeout"="0"
"GridGranularity"="0"
"PaintDesktopVersion"=dword:00000000
"Pattern"="(无)"
"ScreenSaverIsSecure"="0"
"ScreenSaveTimeOut"="600"
"ScreenSaveActive"="0"
"TileWallpaper"="0"
"UserPreferencesMask"=hex:b0,12,03,80
;打开 ClearType 效果
"FontSmoothingType"=dword:00000002
"FontSmoothing"="2"
;关闭屏幕保护程序
"SCRNSAVE.EXE"=""

[HKEY_CURRENT_USER\Software\Microsoft\Plus!\Themes\Apply]
"Screen saver"="1"
"Sound events"="1"
"Mouse pointers"="1"
"Desktop wallpaper"="1"
"Icons"="1"
"Colors"="1"
"Font names and styles"="1"
"Font and window sizes"="1"
"Rotate theme monthly"="1"

;DirectX 功能
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw]
"EmulationOnly"=dword:00000000

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Direct3D\Drivers]
"SoftwareOnly"=dword:00000000

[HKEY_CURRENT_USER\Software\Microsoft\DirectX Diagnostic Tool]
"DxDiag In DirectDraw"=dword:00000003

[HKEY_CURRENT_USER\Software\Microsoft\Direct3D\MostRecentApplication]
"Name"="dxdiag.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication]
"Name"="dxdiag.exe"
"ID"=dword:45d6976d

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control]
;加快XP开机及关机速度
"HungAppTimeout"="1000" 
"WaitToKillAppTimeout"="1000" 
;关机时自动结束任务
"AutoEndTasks"="0"
;加快菜单显示速度
"MenuShowDelay"="0"
;设置右键菜单的对齐方式(0左对齐;1右对齐) 
"MenuDropAlignment"="0"
;禁止系统屏幕保护程序使用密码
"ScreenSaveUsePassword"=dword:00000001
;设置桌面背景
;"Wallpaper"="D:\\我的文档\\My Documents\\Local Settings\\Application Data\\Microsoft\\Wallpaper1.bmp"
;"ConvertedWallpaper"="C:\\WINDOWS\\Resources\\Themes\\dzART LE512\\dzART LE512.jpg"
;"OriginalWallpaper"="D:\\我的文档\\My Documents\\Local Settings\\Application Data\\Microsoft\\Wallpaper1.bmp"

;设置命令行方式下的前景及背景颜色,注意:此功能只对cmd有效而对command无效
[HKEY_CURRENT_USER\Software\Microsoft\Command Processor\]
"DefaultColor"=dword:0000005e
;开启CMD下按Tab键自动完成功能
"CompletionChar"=dword:9

;更改Windows系统网页背景目录
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion]
"WallPaperDir"="D:\\我的文档\\Wallpaper"

;调整为最佳性能
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects]
"VisualFXSetting"=dword:00000002

;不加载多余的DLL文件 自动清除内存中多余的dll资料
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer]
"AlwaysUnloadDLL"=dword:00000001

[HKEY_CURRENT_USER\Control Panel\Desktop\WindowMetrics]
;关闭窗口的动画效果
"MinAnimate"="0"
;桌面图标 - 标题换行
"IconTitleWrap"="1"

;开启优化功能
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Dfrg\BootOptimizeFunction]
"Enable"="Y"

;开始菜单使用多页面显示 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"StartMenuScrollPrograms"="false"

;提高 Windows Media Player 的MP3编码能力
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Settings\MP3Encoding]
"HighRate"=dword:0002EE00
"LowRate"=dword:0000DAC0
"MediumHighRate"=dword:0001F400
"MediumRate"=dword:0000FA00

;自动接受Windows Media Player用户协议(EULA)(针对XPSP2第一次运行时) 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsMediaPlayer] 
"GroupPrivacyAcceptance"=dword:00000001

;减少开机滚动条滚动次数 启动预读和程序预读可以减少启动时间
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PrefetchParameters]
;减少开机滚动条滚动次数
"EnablePrefetcher"=dword:00000001
"VideoInitTime"=dword:000004a3
"EnablePrefetcher"=dword:00000003
"AppLaunchMaxNumPages"=dword:00000fa0
"AppLaunchMaxNumSections"=dword:000000aa
"AppLaunchTimerPeriod"=hex:80,69,67,ff,ff,ff,ff,ff
"BootMaxNumPages"=dword:0001f400
"BootMaxNumSections"=dword:00000ff0
"BootTimerPeriod"=hex:00,f2,d8,f8,ff,ff,ff,ff
"MaxNumActiveTraces"=dword:00000008
"MaxNumSavedTraces"=dword:00000008
"RootDirPath"="Prefetch"
"HostingAppList"="DLLHOST.EXE,MMC.EXE,RUNDLL32.EXE"
;改变子菜单显示时间
[HKEY_USERS\.DEFAULT\Control Panel\Desktop]
"MenuShowDelay"="20"
;禁止系统屏幕保护程序
"ScreenSaveActive"="1"
;更改登陆背景
"TileWallpaper"="1"
"Wallpaper"="C:\\windows\\system32\xplogo.bmp"
;让欢迎窗口更清晰
"FontSmoothing"="2"
"FontSmoothingType"=dword:00000002

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager]
"BootExecute"=hex(7):
"AutoChkTimeOut"=dword:00000000

;删除多余开机程序
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PHIME2002ASync"=-
"IMJPMIG8.1"=-
"PHIME2002A"=-

;允许为回收站重命名
[HKEY_CLASSES_ROOT\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\ShellFolder]
"Attributes"=hex:50,01,00,20
"CallForAttributes"=dword:00000000

;让Winodws进行最大限度搜索,包括隐藏文件夹 
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer]
"link"=hex:00,00,00,00
"SearchSystemDirs"=dword:00000001
"SearchHidden"=dword:00000001
"IncludeSubFolders"=dword:00000001

[HKEY_CURRENT_USER\Software\Microsoft\Search Assistant]
"UseAdvancedSearchAlways"=dword:00000001

;打开启动优化功能
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Dfrg\BootOptimizeFunction]
"Enable"="Y"

;关闭共享
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters]
"AutoShareServer"=dword:00000000
"AutoSharewks"=dword:00000000

;控制面板显示方式改为经典方式
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
"ForceClassicControlPanel"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\FontSmoothing]
"DefaultValue"=dword:00000001
"DefaultApplied"=dword:00000001

;加快局域网访问速度
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\RemoteComputer\NameSpace\{2227A280-3AEA-1069-A2DE-08002B30309D}]
"D6277990-4C6A-11CF-8D87-00AA0060F5BF"=- 
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\RemoteComputer\NameSpace\{D6277990-4C6A-11CF8D87- 00AA0060F5BF}]

;可以显示文件名加扩展名
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"HideFileExt"=dword:00000001
"Hidden"=dword:00000002

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"HideFileExt"=dword:00000001
"Hidden"=dword:00000002

;右键注册注销DLL文件
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\dllfile\shell\RegServer]
@="注册此DLL文件"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\dllfile\shell\RegServer\command]
@="regsvr32.exe \"%1\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\dllfile\shell\UnregRegServer]
@="注销此DLL文件"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\dllfile\shell\UnregRegServer\command]
@="regsvr32.exe /u \"%1\""

;在文件夹选项添加
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer]
"IconUnderline"=hex(0):03,00,00,00
"Max Cached Icons"="1024"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Thickets]
"Text"="管理 Web 页和文件夹对"
"Type"="group"
"Bitmap"="C:\\Windows\\System32\\\\SHELL32.DLL,4"
"HelpID"="TBD"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Thickets\AUTO]
"RegPath"="Software\\Microsoft\\Windows\\CurrentVersion\\Explorer"
"Text"="作为单一文件显示和管理对"
"Type"="radio"
"CheckedValue"=dword:00000000
"ValueName"="NoFileFolderConnection"
"DefaultValue"=dword:00000000
"HKeyRoot"=dword:80000001
"HelpID"="TBD"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Thickets\NOHIDE]
"RegPath"="Software\\Microsoft\\Windows\\CurrentVersion\\Explorer"
"Text"="显示两部分但是作为单一文件进行管理"
"Type"="radio"
"CheckedValue"=dword:00000002
"ValueName"="NoFileFolderConnection"
"DefaultValue"=dword:00000000
"HKeyRoot"=dword:80000001
"HelpID"="TBD"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Thickets\NONE]
"RegPath"="Software\\Microsoft\\Windows\\CurrentVersion\\Explorer"
"Text"="显示两部分并分别进行管理"
"Type"="radio"
"CheckedValue"=dword:00000001
"ValueName"="NoFileFolderConnection"
"DefaultValue"=dword:00000000
"HKeyRoot"=dword:80000001
"HelpID"="TBD"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\ShowCompColor]
"Type"="checkbox"
"Text"="使用交替的颜色显示压缩的文件和文件夹"
"HKeyRoot"=dword:80000001
"RegPath"="Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\Advanced"
"ValueName"="ShowCompColor"
"CheckedValue"=dword:00000001
"UncheckedValue"=dword:00000000
"DefaultValue"=dword:00000000
"HelpID"="shell.hlp#51130"

;显示桌面系统图标
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Desktop]
"Type"="group"
"Text"="显示桌面系统图标"
"Bitmap"="C:\\Windows\\System32\\shell32.dll,4"
"HelpID"="shell.hlp#51140"

;在桌面上显示 我的文档
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Desktop\MyDocuments]
"RegPath"="Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\CLSID\\{450D8FBA-AD25-11D0-98A8-0800361B1103}\\ShellFolder"
"Text"="在桌面上显示“我的文档”"
"Type"="checkbox"
"ValueName"="Attributes"
"CheckedValue"=dword:f0400174
"UncheckedValue"=dword:f0500174
"DefaultValue"=dword:f0400174
"HKeyRoot"=dword:80000001
"HelpID"="shell.hlp#51141"

;在桌面上显示 我的电脑
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Desktop\MyComputer]
"RegPath"="Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\CLSID\\{20D04FE0-3AEA-1069-A2D8-08002B30309D}\\ShellFolder"
"Text"="在桌面上显示“我的电脑”"
"Type"="checkbox"
"ValueName"="Attributes"
"CheckedValue"=dword:f0400174
"UncheckedValue"=dword:f0500174
"DefaultValue"=dword:f0400174
"HKeyRoot"=dword:80000001
"HelpID"="shell.hlp#51141"

; 关闭休眠
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Power]
"HibernateEnable"=dword:00000000

;在桌面上显示 网上邻居
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Desktop\NetworkPlaces]
"RegPath"="Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\CLSID\\{208D2C60-3AEA-1069-A2D7-08002B30309D}\\ShellFolder"
"Text"="在桌面上显示“网上邻居”"
"Type"="checkbox"
"ValueName"="Attributes"
"CheckedValue"=dword:f0400174
"UncheckedValue"=dword:f0500174
"DefaultValue"=dword:f0400174
"HKeyRoot"=dword:80000001
"HelpID"="shell.hlp#51141"

;在桌面上显示 回收站
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Desktop\LJ]
"RegPath"="Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\CLSID\\{645FF040-5081-101B-9F08-00AA002F954E}\\ShellFolder"
"Text"="在桌面上显示“回收站”"
"Type"="checkbox"
"ValueName"="Attributes"
"CheckedValue"=dword:f0400174
"UncheckedValue"=dword:f0500174
"DefaultValue"=dword:f0400174
"HKeyRoot"=dword:80000001
"HelpID"="shell.hlp#51141"

;在桌面上显示 Internet Explorer
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Desktop\Internet Explorer]
"RegPath"="Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\CLSID\\{871C5380-42A0-1069-A2EA-08002B30309D}\\ShellFolder"
"Text"="在桌面上显示“Internet Explorer”"
"Type"="checkbox"
"ValueName"="Attributes"
"CheckedValue"=dword:f0400174
"UncheckedValue"=dword:f0500174
"DefaultValue"=dword:f0400174
"HKeyRoot"=dword:80000001
"HelpID"="shell.hlp#51141"

;修改系统终端口
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd\Tds\tcp]
;3389改7788
"PortNumber"=dword:00001e6c
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Terminal Server\WinStations\RDP-Tcp]
;3389改3390 "PortNumber"=dword:00000d3e
;3389改33641 "PortNumber"=dword:00008369
;3389改77210 "PortNumber"=dword:00012d9a
;3389改66471 "PortNumber"=dword:000103a7
;3389改8899 "PortNumber"=dword:000022c3
;3389改7788
"PortNumber"=dword:00001e6c

;开启四项硬件优化及加速
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\VXD\BIOS]
"CPUPriority"=dword:00000001
"PCIConcur"=dword:00000001
"FastDRAM"=dword:00000001
"AGPConcur"=dword:00000001

;修复AMD处理器的AGP内存分页问题 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management] 
"LargePageMinimum"=dword:ffffffff

;64用于windows不能自动设置硬盘或者光驱为DMA模式时,打开DMA模式 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4D36E96A-E325-11CE-BFC1-08002BE10318}\0001] 
"MasterDeviceTimingModeAllowed"=dword:ffffffff 
"SlaveDeviceTimingModeAllowed"=dword:ffffffff 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Class\{4D36E96A-E325-11CE-BFC1-08002BE10318}\0002] 
"MasterDeviceTimingModeAllowed"=dword:ffffffff 
"SlaveDeviceTimingModeAllowed"=dword:ffffffff

;虚拟内存设置为D盘D:\pagefile.sys 768 1536
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\Memory Management]
"PagingFiles"=hex(7):44,00,3a,00,5c,00,70,00,61,00,67,00,65,00,66,00,69,00,6c,\
  00,65,00,2e,00,73,00,79,00,73,00,20,00,37,00,36,00,38,00,20,00,31,00,35,00,\
  33,00,36,00,00,00,00,00
 "LargePageMinimum"=dword:00000000
  
;禁止改IP
[HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Network Connections]
;"NC_LanChangeProperties"=dword:00000000
;"NC_EnableAdminProhibits"=dword:00000001
;"NC_LanConnect"=dword:00000000
;允许改IP
"NC_LanChangeProperties"=dword:00000001
"NC_EnableAdminProhibits"=dword:00000001
"NC_LanConnect"=dword:00000001

;自动播放
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
;不播放
;"NoDriveAutoRun"=hex(3):FF,FF,FF,03
;自动播放D盘
;"NoDriveAutoRun"=hex(3):F7,FF,FF,03
;自动播放E盘
;"NoDriveAutoRun"=hex(3):EF,FF,FF,03
;自动播放F盘
;"NoDriveAutoRun"=hex(3):DF,FF,FF,03
;自动播放G盘
;"NoDriveAutoRun"=hex(3):BF,FF,FF,03
;自动播放H盘
;"NoDriveAutoRun"=hex(3):7F,FF,FF,03
;自动播放I盘
;;"NoDriveAutoRun"=hex(3):FF,FE,FF,03
;自动播放J盘
;"NoDriveAutoRun"=hex(3):FF,FD,FF,03
;自动播放D E盘
;"NoDriveAutoRun"=hex(3):E7,FF,FF,03
;自动播放D G盘
;"NoDriveAutoRun"=hex(3):B7,FF,FF,03

;自动播放F G盘
"NoDriveAutoRun"=hex(3):9F,FF,FF,03

;去掉“Windows XP”自动更新功能
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
;去掉“Windows XP”自动更新功能
"NoCommonGroups"=dword:00000001
;禁止跟踪损坏的快捷方式
"NoResolveTrack"=dword:00000001
;强制开始菜单使用典型菜单
"NoSimpleStartMenu"=dword:00000001
;禁止跟踪损坏的快捷方式
"NoResolveTrack"=dword:00000001
;关闭光盘自动运行
"NoDriveAutoRun"=hex:ff,ff,ff,03
"NoDriveTypeAutoRun"=dword:00000091
;关闭硬盘空间不足时发出警告
"NoLowDiskSpaceChecks"=dword:00000001
;不管你如何修改桌面配置,重启Windows后都将恢复原来的桌面
"NoSaveSettings"="hex:01, 00,00,00"
;去除"单击这里开始"箭头
"NoStartBanner"="hex:01, 00,00,00"

;在我电脑里显示控制面板
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\HideMyComputerIcons]
"{21EC2020-3AEA-1069-A2DD-08002B30309D}"=dword:00000000

;我的电脑显示在最上面
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{450D8FBA-AD25-11D0-98A8-0800361B1103}]
;"SortOrderIndex"=dword:00000054
;我的文档显示在最上面
"SortOrderIndex"=dword:00000048

;------记住文件夹个数400个  450个000001c2  500个000001f4
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam]
"Bag MRU Size"=dword:00000190
[HKEY_CURRENT_USER\Software\Microsoft\Windows\Shell]
"Bag MRU Size"=dword:00000190
;------记住文件夹个数400个

;在资源管理器中使用经典搜索窗口
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\CabinetState]
"Use Search Asst"="no"

;彻底关闭Dr_Warson
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AeDebug] 
"Auto"="0" 

;移去开始中帮助菜单 
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] 
"NoSMHelp"=dword:00000001 
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] 
"NoSMHelp"=dword:000000 

;禁用错误报告,但在发生严重错误时通知我 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PCHealth\ErrorReporting] 
"DoReport"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{94CD3A94-6777-44D6-A017-8128D63CAED5}]
"MTU"=dword:000005dc

[HKEY_CURRENT_USER\Software\Microsoft\MediaPlayer\Player\Settings]
"EnableDVDUI"="yes"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\VXD\MSTCP]
"NameSrvQueryTimeout"="3000"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Update]
"UpdateMode"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\SecurePipeServers\winreg]
"RemoteRegAccess"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Infodelivery\Restrictions]
"NoJITSetup"=dword:00000001

;启用Guest 账号
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa]
"forceguest"=dword:00000001
"everyoneincludesanonymous"=dword:00000000
"limitblankpassworduse"=dword:00000001

;删除默认共享
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters]
"AutoShareServer"=dword:00000000
"AutoSharewks"=dword:00000000

;关闭时间校对服务
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time]
"Start"=dword:00000004

;取消防火墙病毒监视提示
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL]
"CheckedValue"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Dfrg\BootOptimizeFunction]
"Enable"="Y"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\CrashControl]
"AutoReboot"=dword:00000000

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableRegistryTools"=dword:00000000

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer]
"NoLowDiskSpaceChecks"=dword:00000000

;管理您的服务器不显示
[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\srvWiz]
""=dword:00000000

;Messenger不随Outlook启动 
[HKEY_LOCAL_MACHINE\Software\Microsoft\Outlook Express] 
"Hide Messenger"=dword:00000002

;当你删除Messenger时修正减慢Outlook启动的问题,并且禁止了动画屏幕 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB7199AB-79BF-11d2-8D94-0000F875C541}\InProcServer32] 
"ThreadingModel"="Apartment" 
@="" 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB7199AB-79BF-11d2-8D94-0000F875C541}\LocalServer32] 
"ThreadingModel"="Apartment" 
@=""

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\tips]
"Show"=dword:00000000

;72不让Messenger在每次系统启动时不知不觉的启动 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Messenger\Client] 
"PreventAutoRun"=dword:00000001

;防止messenger每6分钟新添加下载 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MessengerService\Policies] 
"DisableCrossPromo"=hex:80

;在Outlook中禁止Messenger分类 
[HKEY_LOCAL_MACHINE\Software\Microsoft\Outlook Express] 
"Hide Messenger"=dword:00000002

;在Outlook 2003中禁止Messenger分类 
[HKEY_CURRENT_USER\Software\Policies\Microsoft\Office\11.0\Outlook\InstantMessaging] 
"ForceDisableIM"=dword:00000001

;开启DOS提示符下按Tab键自动完成功能 
[HKEY_CURRENT_USER\Software\Microsoft\Command Processor] 
"CompletionChar"=dword:9

;激活屏幕截图功能 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw] 
"EnablePrintScreen"=dword:1

;禁止“搜索狗”、使用高级搜索 
[HKEY_CURRENT_USER\Software\Microsoft\Search Assistant] 
"Actor"="" 
"SocialUI"=dword:00000000 
"UsageCount"=dword:00000000 
"UseAdvancedSearchAlways"=dword:00000001

;搜索所有文件类型 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\ContentIndex] 
"FilterFilesWithUnknownExtensions"=dword:00000001

;在DOS中支持长文件名 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Command Processor] 
"CompletionChar"=dword:00000009

;启用蜂鸣(打开开机音乐) 
[HKEY_CURRENT_USER\Control Panel\Sound] 
"Beep"="yes" 
"ExtendedSounds"="yes"

;停用“利用空闲时自动整理磁盘碎片”
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\OptimalLayout]
"EnableAutoLayout"="0"

;不显示管理你的服务器
[HKEY_CURRENT_USER\SessionInformation]
"ProgramCount"=dword:00000003

;将内存优化为程序
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager]
"BootExecute"=hex(7):

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update]
"AUOptions"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OLEAUT]
"VarConversionLocaleSetting"=dword:00000002

;135端口主要用于使用
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole]
"EnableDCOM"="N"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Rpc]
"DCOM Protocols"=hex(7):

;445端口控制在局域网中轻松访问各种共享文件夹或打印机,服务器上一般不开启
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\NetBT\Parameters]
"SMBDeviceEnabled"=dword:00000000

;IPC空连接可以使连接者与目标建立一个空连接百无需用户名和密码
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Lsa]
"restrictanonymous"=dword:00000001

;配置Backlog,提高网络半发性及网络的处理能力
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AFD\Parameters]
"EnableDynamicBacklog"=dword:00000001
"MinimumDynamicBacklog"=dword:0000000e
"MaximumDynamicBacklog"=dword:00000000

;通过优化改选项可提高系统防御SYN攻击的能力
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services]
"SynAttackProtect"=dword:00000001
"EnableDeadGWDetect"=dword:00000000
"EnablePMTUDiscovery"=dword:00000000
"NoNameReleaseOnDemand"=dword:00000001
"KeepAliveTime"=dword:000493e0
"PerformRouterDiscovery"=dword:00000000
"EnableICMPRedirects"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters]
;禁止路由发现功能,ICMP路由通告报文可以被用来增加路由表纪录,可能导致攻击
"PerformRouterDiscovery"=dword:00000000
;检查是否禁止IP源路由,建议丢弃所有接受的源路由包
"DisableIPSourceRouting"=dword:00000002
;禁止TCPIP协议栈IGMP栈堆溢出本地拒绝服务攻击
"IGMPLevel"=dword:00000000
;抵御SNMP攻击,检查无效网关,以便优化网络
"EnableDeadGWDetect"=dword:00000000
;抵御SNMP攻击,检查有可能用以攻击的ICMP重定向报文
"EnableICMPRedirects"=dword:00000000
;通过优化设置SYN-ACK等待时间,可提高系统的网络性能
"TcpMaxConnectResponseRetransmissions"=dword:00000002
;通过优化改选项可提高系统防御SYN攻击的能力
"SynAttackProtect"=dword:00000002
"TCPMaxPortsExhausted"=dword:00000005
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces]
"PerformRouterDiscovery"=dword:00000000

;检查是否禁止显示上次登录用户名
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"DontDisplayLastUserName"=dword:00000001

;禁用粘滞键的快捷方式
[HKEY_CURRENT_USER\Control Panel\Accessibility\StickyKeys]
"Flags"="506"

;限制IPC$的远程默认共享(如:C:$,D:$,E:$,QAdmin$)
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\lanmanserver\parameters]
"AutoShareServer"=dword:00000000
"AutoShareWks"=dword:00000000

;在程序组中显示管理工具
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"StartMenuAdminTools"="YES"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"StartMenuAdminTools"="YES"


;默认按钮字体颜色
[HKEY_CURRENT_USER\Control Panel\Colors]
"Hilight"="10 36 106"
"Menu"="212 208 190"
"ActiveBorder"="212 208 200"
"ActiveTitle"="10 36 106"
"AppWorkSpace"="128 128 128"
"Background"="58 110 165"
"ButtonAlternateFace"="181 181 181"
"ButtonDkShadow"="64 64 64"
"ButtonFace"="212 208 200"
"ButtonHilight"="255 255 255"
"ButtonLight"="212 208 200"
"ButtonShadow"="128 128 128"
"ButtonText"="0 0 0"
"GradientActiveTitle"="166 202 240"
"GradientInactiveTitle"="192 192 192"
"GrayText"="128 128 128"
"HilightText"="255 255 255"
"HotTrackingColor"="0 0 128"
"InactiveBorder"="212 208 200"
"InactiveTitle"="128 128 128"
"InactiveTitleText"="212 208 200"
"InfoText"="0 0 0"
"InfoWindow"="255 255 225"
"MenuText"="0 0 0"
"Scrollbar"="212 208 200"
"TitleText"="255 255 255"
"Window"="255 255 255"
"WindowFrame"="0 0 0"
"WindowText"="0 0 0"
"MenuHilight"="210 210 255"
"MenuBar"="212 208 200"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\ComboBoxAnimation]
"DefaultValue"=dword:00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\ComboBoxAnimation]
"DefaultApplied"=dword:00000000

;滑动任务栏按钮 - 关闭
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\TaskbarAnimations]
"DefaultValue"=dword:00000000
"DefaultByAlphaTest"=dword:00000000
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\TaskbarAnimations]
"DefaultApplied"=dword:00000000
"DefaultValue"=dword:00000000
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"TaskbarAnimations"=dword:00000000

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\ListBoxSmoothScrolling]
"DefaultValue"=dword:00000000
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\ListBoxSmoothScrolling]
"DefaultApplied"=dword:00000000

;平滑屏幕字体边缘
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\FontSmoothing]
"DefaultValue"=dword:00000001
"DefaultByFontTest"=dword:00000001
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\FontSmoothing]
"DefaultApplied"=dword:00000001
"DefaultValue"=dword:00000001

[HKEY_USERS\.DEFAULT\Control Panel\Desktop]
"FontSmoothing"="2"
"FontSmoothingType"=dword:00000002
"ForegroundFlashCount"=dword:00000003
"ForegroundLockTimeout"=dword:00000000
"SmoothScroll"=dword:00000000

;为每种文件夹类型使用一种背景图片
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\ListviewWatermark]
"DefaultValue"=dword:00000001
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\ListviewWatermark]
"DefaultApplied"=dword:00000001
"DefaultValue"=dword:00000001
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"ListviewWatermark"=dword:00000001

;显示半透明的选择长方形
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\ListviewAlphaSelect]
"DefaultValue"=dword:00000001
"DefaultByAlphaTest"=dword:00000001
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\ListviewAlphaSelect]
"DefaultApplied"=dword:00000001
"DefaultValue"=dword:00000001
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"ListviewAlphaSelect"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\SelectionFade]
"DefaultValue"=dword:00000000
"DefaultByAlphaTest"=dword:00000000
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\SelectionFade]
"DefaultApplied"=dword:00000000
"DefaultValue"=dword:00000000

;在菜单下显示阴影 - 关闭
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\DropShadow]
"DefaultValue"=dword:00000000
"DefaultByAlphaTest"=dword:00000000
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\DropShadow]
"DefaultApplied"=dword:00000000
"DefaultValue"=dword:00000000
;
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\MenuAnimation]
"DefaultValue"=dword:00000000
"DefaultByAlphaTest"=dword:00000000
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\MenuAnimation]
"DefaultApplied"=dword:00000000
"DefaultValue"=dword:00000000

;在鼠标指针下显示阴影
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\CursorShadow]
"DefaultValue"=dword:00000001
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\CursorShadow]
"DefaultApplied"=dword:00000001
"DefaultValue"=-

;在桌面上为图标标签使用阴影
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\ListviewShadow]
"DefaultValue"=dword:00000001
"DefaultByAlphaTest"=dword:00000001
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\ListviewShadow]
"DefaultApplied"=dword:00000001
"DefaultValue"=dword:00000001
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"ListviewShadow"=dword:00000001

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\AnimateMinMax]
"DefaultValue"=dword:00000000
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\AnimateMinMax]
"DefaultApplied"=dword:00000000

;拖拉时显示窗体内容
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\DragFullWindows]
"DefaultValue"=dword:00000001
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\DragFullWindows]
"DefaultApplied"=dword:00000001
"DefaultValue"=- 
[HKEY_CURRENT_USER\Control Panel\Desktop]
"DragFullWindows"="1"

;文件夹显示常见任务
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\WebView]
"DefaultApplied"=dword:00000001
"DefaultValue"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VisualEffects\WebView]
"DefaultValue"=dword:00000001
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"WebView"=dword:00000001

[-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"vmware-tray.exe"="\"C:\\Program Files (x86)\\VMware\\VMware Workstation\\vmware-tray.exe\""
"au3tool"="C:\\Program Files\\AUTOIT\\AU3TOOL.exe"

;Made By 运维天涯
;E-Mail:Hanktod@sina.com
;博客:Http://www.fooher.com
;QQ:2016571396  2009.10.1

 

评论已关闭