å¹²èç»ä½ å
¨é¨çä¼åç²¾é«å§ï¼
å å¿«å¼æºä¸å
³æºçé度ï¼
â éâå¼å§\è¿è¡âï¼é®å
¥Regeditï¼å±å¼HKEY_CURRENT_USER\Control Panel\Desktopï¼å°å符串å¼âHungAppTimeoutâçæ°å¼æ´æ¹ä¸º200ï¼åå°å符串å¼âWaitToKillAppTimeoutâçæ°å¼æ°æ®æ´æ¹ä¸º1000ï¼
â¡å¦å¨HKEY_LOCAL_MACHINE\System\CurrentControlSet\Controlä¸ï¼å°å符串å¼âHungAppTimeoutâçæ°å¼æ°æ®æ´æ¹ä¸º200ï¼å°å符串å¼âWaitToKillServiceTimeoutâçæ°å¼æ°æ®æ´æ¹ä¸ºã1000ãï¼
â¢ä½¿ç¨å¾®è½¯ Bootvis.exe ä¼åå¯å¨é度ãæ们å°å¾®è½¯å®æ¹ç½ç«å
ä¸è½½ bootVis.exeï¼ç¶å解ååè¿è¡bootvis.exeï¼ä¹åå¨Traceä¸énext bootådriver delaysçï¼æ¤åXPä¼éæ°å¯å¨ï¼å¹¶å°è®°å½å¯å¨æ°æ®äº§çæBINçæ件ãåå¨âfile\openä¸æå¼è¿ä¸ªæ件ï¼å¨Traceä¸éOptimize systemå³å¯ã
æ示ï¼æ¤ä¼åéæ¶é¢é¿ï¼è¯·èå¿çå¾
ã
æ¸
é¤æ³¨å表å
ä¸ç¨çDLLæ件ï¼
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãRegeditã\ãHKKEY_LOCAL_MACHINEã\ãSOFTWAREã\ãMicrosoftã\ãWindowsã\ãCurrentVersionã\ãExplorerã
å¢å ä¸ä¸ªæºç ãAlwaysUnloadDLLãé»è®¤å¼ä¸ºã1ã
å¦é»è®¤å¼è®¾å®ä¸ºã0ãå代表åç¨æ¤åè½
å 快宽é¢è¿æ¥é度ï¼
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãregeditã\å¨ãHKEY_LOCAL_MACHINEã\ãSOFTWAREã\ãPoliciesã\ãMicrosoftã \ãWindowsã
å¢å ä¸ä¸ªå为ãPschedãçæºç
å¨ãPschedãå³é¢çªå£å¢å ä¸ä¸ª Dword å¼ãNonBestEffortLimitãæ°å¼æ°æ®ä¸ºã0ã
ãä»
éç¨ç¨ Windows XP 家ç¨çæ¬ã
å å¿«èåæ¾ç¤ºé度ï¼
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãRegeditã\ãHKEY_CURRENT_USERã\ãControl Panelã\ãDesktopã\å°å符串å¼ãMenuShowDelayãçæ°å¼æ°æ®æ´æ¹ä¸ºã0ã
è°æ´åå¦è§å¾èåæ¾ç¤ºé度太快èä¸éåºè
å¯å°ãMenuShowDelayãçæ°å¼æ°æ®æ´æ¹ä¸ºã200ã
éæ°å¯å¨çæ ã
å å¿«èªå¨æ´æ°çï¼
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãRegeditã\ãHKEY_LOCAL_MACHINEã\ãSystemã\ãCurrentControlSetã\ãControlã\ãUpdateã\å° DwordãUpdateModeãçæ°å¼æ°æ®æ´æ¹ä¸ºã0ããéæ°å¯å¨çæã
å
³éå¯å¨æ¶å è½½ä¸éè¦çç¨åºï¼
å¦å¼æºæ¶æ太å¤çç¨åºè¦è¿è¡ä¼å½±åå¼æºçé度ï¼å
æ£æ¥åªäºäºæ¡£æ¡ä¼å¨å¼æºæ¶è¿è¡
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãmsconfigã\éãå¯å¨ã
å¨å¯å¨å
çç¨åºæ¯ä»£è¡¨å¼æºæ¶è¦è¿è¡çç¨åºï¼å¦éææ¶åæ¢è¿è¡æäºç¨åºä¾¿åæ¶å¨ãâ¡ãçãXã符å·ä¾¿å¯ï¼å¦æ³æ¢å¤å¼æºæ¶è¿è¡æ¤ç¨åºå¨ãâ¡ãå
å åãXã符å·ä¾¿å¯ã
åç¨ä¸éè¦çæå¡ï¼
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãservices.mscãæå¼æå¡çªå£
æ£æ¥å³è¾¹çªå£å°ä¸éè¦çæå¡å¨ãå¯å¨ç±»åãå
éãå·²ç¦æ¢ãï¼åå¨ãæå¡ç¶æãä¸éãåç¨ã
åç¨ CPU ç L2 Cache å å¿«æ´ä½æè½ï¼
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãRegeditã\ãHKEY_LOCAL_MACHINEã\ãSYSTEMã\ãCurrentControlSetã\ãControlã\ãSessionManagerã\å¨ãMemoryManagementãçå³è¾¹çªå£å°ãSecondLevelDataCacheãçæ°å¼æ°æ®æ´æ¹ä¸ºä¸ CPU L2 Cache ç¸åçåè¿å¶æ°å¼
ä¾ï¼P4 1.6G ç L2 Cache 为 256Kbï¼æ°å¼æ°æ®æ´æ¹ä¸ºåè¿å¶æ°å¼ 256
æå
³ L2 Cache çæ°å¼å¹¶éå¦æäºä¸è´è´£ä»»çç½é¡µä¹±æè¿æ¥ï¼ä¾å¦ P4 1.6G ç L2 Cache 为 256Kbï¼ä½ P4 1.6GA ç L2 Cache 为 512Kb
读è
å¯ä»¥éè¿ç½ç»æ¥è¯¢å°æå
³ CPU ç L2 Cache çèµæã
å¨å¯å¨è®¡ç®æºæ¶è¿è¡ Defrag ç¨åº ï¼
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãRegeditã\ãHKEY_LOCAL_MACHINEã\ãSOFTWAREã\ãMicrosoftã\ãDfrgã\ãBootOptimizefunction ã
å°å符串å¼ãEnableã设å®ä¸ºãYãçäºå¼å¯ï¼è设å®ä¸ºãNãçäºå
³éã
åå°å¤éå¯å¨æ¶çå¾
æ¶é´ï¼
æ¹æ³ä¸ï¼ç¨ Notepad æå¼å¨ C:\ ç®å½ä¸ç boot.ini æ¡£æ¡ï¼å°å
容ãtimeoutãç设å®å¼ç±é¢è®¾ç 30 (ç§) æ¹ä¸ºè¦æ±çå¾
çç§æ°æ°åï¼åçã
æ¹æ³äºï¼ä¹å¯ä»¥éè¿ãå¼å§ã\ãè¿è¡ã\é®å
¥ãmsconfigãï¼æå¼boot.ini é项ï¼è¿è¡ç§æ°çä¿®æ¹ã
æ¹æ³ä¸ï¼å³é®ç¹å»âæççµèâï¼éæ©å±æ§\é«çº§\å¯å¨åæ
éæ¢å¤\设置ï¼å¨æ¤ä¿®æ¹å¯å¨çå¾
æ¶é´ã
å
³é XP å
设çç§ç¢åè½ï¼
å¦æä¸æç®ä½¿ç¨æ¤åè½å¯å°å
¶å
³éï¼å¯å å¿«ä½¿ç¨ Nero ç§å½è½¯ä»¶çé度ï¼å 为Windows XP çç§å½ç³»ç»ç± Roxio å
¬å¸æä¾ (å³ä¸ Easy Cd Creator åå
¬å¸)ã
å¨ãæ§å¶é¢æ¿ã\ã管çå·¥å
·ã\ãæå¡ã\å¨å³è¾¹çªå£éãIMAPI CD-Burning COM Serviceã\ãå¯å¨ç±»åã\éãå·²åç¨ã
å
³æºæ¶èªå¨å
³éåæ¢ååºç¨åºï¼
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãRegeditã\ãHKEY_USERSã\ã.DEFAULTã\ãControl Panelã\å¨ãDesktopãå³é¢çªå£å°ãAutoEndTasksãçæ°å¼èµææ¹ä¸ºã1ã
注éæéæ°å¯å¨å³å¯ã
移é¤Windows Messengerï¼
å
ç¨ Wordpad æå¼ X:\WINDOWS\inf ä¸ç sysoc.inf æ¡£æ¡
X=ï¼XPæå¨çç£çåºï¼
å°å
容ãmsmsgs=msgrocm.dll,OcEntry,msmsgs.inf,hide,7ã
æ´æ¹ä¸ºãmsmsgs=msgrocm.dll,OcEntry,msmsgs.inf,7ã
åæ¡£åéåº
ç¶åå¨ãæ§å¶é¢æ¿ã\ãæ·»å æå é¤ç¨åºã\ãæ·»å ï¼å é¤ Windows ç»ä»¶ã\ä¸éãWindows Messengerã\ãä¸ä¸æ¥ã\ãå®æãå便æå移é¤ã
åæ¢âç£ç空é´ä¸è¶³âçéç¥ ï¼
å½ç£ç驱å¨å¨ç容éå°äº 200MB æ¶ Windows XP 便ä¼ååºâç£ç空é´ä¸è¶³âçéç¥
å¦éåæ¢æ¤åè½,å¯æä¸é¢ç¨åºæ´æ¹ç»å½æ件
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãRegeditã\ãHKEY_LOCAL_MACHINEã\ãSoftwareã\ãMicrosoftã\ãWindowsã\ãCurrentVersionã\å¨ãPoliciesãä¸å¢å ä¸ä¸ªæºç åãExplorerã(å¦æå·²æ便ä¸ç¨å¢å )\å¨ãExplorerãå¢å ä¸ä¸ª DWORD å¼ãNoLowDiskSpaceChecksã
æ°å¼æ°æ®ä¸ºã1ã= åæ¢éç¥ï¼å¼æ°æ®ä¸ºã0ã= é»è®¤å¼å¯å¨éç¥
å
³é windows èªå¨æ´æ° ï¼
é¼ æ å³ç¹ãæççµèã\ãå
容ã\ãèªå¨æ´æ°ã
éâå
³éèªå¨æ´æ°ï¼æè¦æå¨æ´æ°æç计ç®æºâ
å
³éå¯å¨æ¶çªå£æ å¿ç»é¢ï¼
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãmsconfigã\éãboot.iniã
ç¶åå¨ãå¯å¨é项ãå
éãNOGUIBOOT]
éæ°å¼æºä¾¿æ²¡æäºçªå£æ å¿çç»é¢
ä½¿ç¨ Windows Media Player 9 ææ¾ DVD çï¼
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãDVDPlayã便ä¼åºç° Windows Media Player
æææ¾ VCD åå¼æä½ä¾¿å¯ææ¾ DVD äºï¼å½ç¶ä½ ä¸å®è¦æ DVDRom è£
ç½®
å¦æè¿åºç°é®é¢ï¼å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãregeditã\éãHKEY_CURRENT_USERã
\ãSoftwareã\ãMicrosoftã\ãMediaPlayerã\ãPlayerã\å¨ãSettingsãå³è¾¹çªå£
å¢å ä¸ä¸ªå符串å¼ãEnableDVDUIãæ°å¼æ°æ®ä¸ºãyesã
å
³éèªå¨éæ°å¯å¨åè½ï¼
å½ Windows XP éå°ä¸¥éé®é¢æ¶ä¾¿ä¼çªç¶éæ°å¼æºï¼æä¸æ´æ¹å¯ä»¥åæ¶æ¤åè½
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãregeditã\éãHKEY_LOCAL_MACHINEã\ãSYSTEMã
\ãCurrentControlSetã\ãControlã\ãCrashControlã\å°ãAutoRebootãdword å¼æ´æ¹ä¸ºã0ãéæ°å¼æºçæ
移é¤å
±äº«ææ¡£ï¼
é¤æ£å¸¸ãæçææ¡£ãåãå
±äº«æ档夹ãå¤ï¼æ¯ä¸ªç¨æ·é½ä¼æä¸ä¸ªç¬ç«ç活页夹ï¼
å¦ä¸è®¾å®ååªä¼ä¿çæç活页夹ï¼å
¶ä½çä¸ä¼æ¾ç¤ºåºæ¥
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãregeditã\éãHKEY_LOCAL_MACHINEã\ãSOFTWAREã
\ãMicrosoftã\ãWindowsã\ãCurrentVersionã\ãExplorerã\ãMyComputerã\ãNameSpaceã\å¨ãDelegateFoldersãä¸å é¤ã{59031a47-3f72-44a7-89c5-5595fe6b30ee}ãæºç
åæ¶ IE èªå¨ç¼©å¾åè½ï¼
Internet Explorer 6 å¨æµè§å¾çå¦å¤§åºå±å¹ï¼å¾ç便ä¼èªå¨ç¼©å°å¦éåæ¶è¿åè½å¯æå¦ä¸ä¿®æ¹ï¼
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãregeditã\ãHKEY_CURRENT_USERã\ãSoftwareã\ãMicrosoftã\ãInternet Explorerã\å¨ãMainãå¢å ä¸ä¸ªå符串å¼ãEnable AutoImageResizeãæ°æ®æ°å¼ä¸ºãNOã
让 IE6 å¯ä»¥åæ¶ä¸è½½è¶
è¿ä¸¤ä¸ªæ¡£æ¡ï¼
Internet Explorer 6 åæ¶æå¤åªå¯ä»¥ä¸è½½ä¸¤ä¸ªæ¡£æ¡ï¼
æä¸ä¿®æ¹å¯åæ¶ä¸è½½å¤è¾¾å个档æ¡
å¨ãå¼å§ã\ãè¿è¡ã\é®å
¥ãregeditã\ãHKEY_CURRENT_USERã\ã\Softwareã\ãMicrosoftã\ãWindowsã\ãCurrentVersionã\ãInternetSettingsã
å¨å³è¾¹çªå£å¢å ä¸å两个ãDwordãå¼
ãMaxConnectionsPer1_0Serverãæ°å¼èµæ为ã0000000aãå³åè¿å¶ã10ã
ãMaxConnectionsPerServerãæ°å¼èµæ为ã0000000aãå³åè¿å¶ã10ã
éæ°å¯å¨è®¡ç®æºçæ
[转å¸]æçWinXPä¼åä¹è·¯ãæ¨èã
转贴ãæçWinXPä¼åä¹è·¯ãæ¨èã
为äºè¾¾å°è¿ä¸ªç®çï¼æ们主è¦ä»å个æ¹é¢å
¥æï¼
1ãåå°ç£ç空é´å ç¨
2ãç»æ¢ä¸å¸¸ç¨çç³»ç»æå¡
3ãå®å
¨é®é¢
4ãå¦å¤ä¸äºæå·§
é¦å
é®ä¸ä¸ï¼ä½ æ¯ä¸æ¯å¾æ³æ¿æ´»XPï¼ä¸ãããåç¡®çè¯´ä½ æ¯ä¸æ¯æ³å¨msçç«ä¸è½å¤å级ãå¦æçæ¡æ¯è¯å®çè¯ï¼é£æ们就å
æ¥æ¢è®¨ä¸ä¸å®è£
çé®é¢ï¼ç®åæµè¡çV4ãV5ãV6çæ¬æè¿æ¯æ¯è¾æ¨èçï¼å°¤å
¶æ¯V5åV6è¿ä¸¤ä¸ªãå®è£
çè¿ç¨ä¸æ个åºåå·çé®é¢ï¼æå»ºè®®ä½ å
å¨æºåä¸ç®å¥½ï¼ç¶åç¨è¿ä¸ªåºåå·å®è£
ï¼é常è¿æ ·å®è£
çXPé½å¯ä»¥å°MSçç«ç¹èªç±æ´æ°ã
å¦æä½ æ¯å·²ç»å®è£
好çXPäºï¼ä½ç¨çåºåå·æ¯éå°å¤æµä¼ 人人é½ç¨çé£äºï¼ä¹æ²¡å
³ç³»ï¼æ们åé¢ä¼è¯´ç¨sysrepæ¥éæ°å°è£
çæ¶åä¼è§£å³åºåå·æ´æ¢çé®é¢ã
æåè®¾ä½ å·²ç»å®è£
å®XPäºï¼come on baby ~~
ä¸ãç¦èº«è¡å¨
1ãå¨åç§è½¯ç¡¬ä»¶å®è£
妥å½ä¹åï¼å
¶å®XPéè¦æ´æ°æ件çæ¶åå°±å¾å°äºãå é¤ç³»ç»å¤ä»½æ件å§ï¼å¼å§âè¿è¡âsfc.exe /purgecache è¿3xxMã
2ãå é¤é©±å¨å¤ä»½ï¼ %windows%\driver cache\i386ç®å½ä¸çdriver.cabæ件ï¼é常è¿ä¸ªæ件æ¯76Mã
3ãå¶æ²¡æçhelpçä¹ æ¯ï¼æ以ä¿çç%windows%\helpç®å½ä¸çä¸è¥¿å¯¹ææ¥è¯´æ¯ä¸ç§ä¼¤å®³ï¼åµåµãããé½å¹²æï¼è¿4xMã
4ãä¸ä¼å¨å级å®æåä½ è¿ä¼åç°%windows%\å¤äºè®¸å¤ç±»ä¼¼$NtUninstallQ311889$è¿äºç®å½ï¼é½å¹²æå§ï¼1x-3xMã
5ãæ£å¥½ç¡¬çä¸è¿æwin2000/serverçï¼æ以顺便æpagefile.sysæ件é½æåä¸ä¸ªå°æ¹ï¼æ§å¶é¢æ¿âç³»ç»âæ§è½âé«çº§âèæå
åâæ´æ¹ï¼æ³¨æè¦ç¹â设置âæä¼çæã
6ãå¸è½½ä¸å¸¸ç¨ç»ä»¶ï¼ç¨è®°äºæ¬ä¿®æ¹\%windows%\inf\sysoc.infï¼ç¨æ¥æ¾/æ¿æ¢åè½ï¼å¨æ¥æ¾æ¡ä¸è¾å
¥,hideï¼å
¨é¨æ¿æ¢ä¸ºç©ºãè¿æ ·ï¼å°±æææç,hideé½å»æäºï¼åçéåºååè¿è¡âæ·»å -å é¤ç¨åºâï¼å°±ä¼çè§âæ·»å /å é¤ Windows ç»ä»¶âä¸å¤åºä¸å°é项ï¼å é¤æ游æåï¼ç 表åçä¸ç¨çä¸è¥¿ã
7ãå é¤\windows\imeä¸ä¸ç¨çè¾å
¥æ³ï¼8xMãæéæ°å®è£
äºèªå·±ç¨çzrmè¾å
¥æ³ï¼èµ«èµ«ã
8ãå¦æå®å¨ç©ºé´ç´§å¼ ï¼å¯ç¨NTFSçå缩åè½ï¼è¿æ ·è¿ä¼å°ç¨2x% ç空é´ï¼ä¸è¿æ没ä½ã
9ãå
³äºç³»ç»è¿åï¼è¿ç ´åè½å¯¹æè¿æ ·å¸¸ä¸è½½ãæµè¯è½¯ä»¶ç人æ¥è¯´ç®ç´æ¯ç¾é¾ï¼ç¨é¼ æ å³å¥åå»æ¡é¢ä¸çâæççµèâï¼éæ©âå±æ§âï¼æ¾å°âç³»ç»è¿åâï¼éæ©âå¨ææ驱å¨å¨ä¸å
³éç³»ç»è¿åâåµåµï¼åå¯ä»¥ç空é´äºã
10ãè¿æå 个æ件ï¼æºå¤§çï¼ä¹æ²¡ä»ä¹ç¨ããããå¿äºåå ï¼ï¼ ï¼åå®è£
çç³»ç»å¯ä»¥ç¨æ¥æ¾åè½æ¥æ¾å¤§äº50Mçæ件æ¥ççï¼åºè¯¥è½æ¾å°çã
å¦æä½ è½æç
§ä¸é¢çè¿ç¨åå®ï¼ä½ çåæ¬1.4GçXPï¼å®å
¨å¯ä»¥åå°å°800以ä¸ã
äºãå é计å
WinXPçå¯å¨ä¼æ许å¤å½±åé度çåè½ï¼å°½ç®¡ms说已ç»ä½æä¼åå¤çè¿ï¼ä½å¯¹æ们æ¥è¯´è¿æ¯æ许å¤å¯å®å¶ä¹å¤ãæä¸è¬æ¯è¿æ ·æ¥åçã
1ãä¿®æ¹æ³¨å表çruné®ï¼åæ¶é£å 个ä¸å¸¸ç¨çä¸è¥¿ï¼æ¯å¦Windows Messenger ãå¯ç¨æ³¨å表管çå¨ï¼å¼å§âè¿è¡âRegeditâæ¾å°âHKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\MSMSGSâ /BACKGROUND è¿ä¸ªé®å¼ï¼å³é®âå é¤ï¼ä¸çæ¸
éå¤äºï¼é¡ºä¾¿æé£å 个ä»ä¹cfmonçé½å¹²æå§ã
2ãä¿®æ¹æ³¨å表æ¥åå°é¢è¯»åï¼åå°è¿åº¦æ¡çå¾
æ¶é´ï¼æææ¯è¿åº¦æ¡è·ä¸åå°±è¿å
¥ç»å½ç»é¢äºï¼å¼å§âè¿è¡âregeditå¯å¨æ³¨å表ç¼è¾å¨ï¼æ¾HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PrefetchParametersï¼ æä¸ä¸ªé®EnablePrefetcheræå®çæ°å¼æ¹ä¸ºâ1âå°±å¯ä»¥äºãå¦å¤ä¸å¸¸æ´æ¢ç¡¬ä»¶çæåå¯ä»¥å¨ç³»ç»å±æ§ä¸ææ»çº¿è®¾å¤ä¸é¢ç设å¤ç±»å设置为noneï¼æ ï¼ã
3ãå
³éç³»ç»å±æ§ä¸çç¹æï¼è¿å¯æ¯ç®åææçæéè¯æ¹ãç¹å»å¼å§âæ§å¶é¢æ¿âç³»ç»âé«çº§âæ§è½â设置âå¨è§è§ææä¸ï¼è®¾ç½®ä¸ºè°æ´ä¸ºæä½³æ§è½âç¡®å®å³å¯ãè¿æ ·æ¡é¢å°±ä¼åwin2000å¾ç¸ä¼¼çï¼æè¿æ¯æºå欢XPçèè²çªå£ï¼æ以å¨âå¨çªå£åæé®ä¸ä½¿ç¨è§è§æ ·å¼âæä¸å¾ï¼è¿æ ·æ¢è½çå°æ¼äº®çèè²çé¢ï¼åå¯ä»¥å å¿«é度ã
4ãæç¨Windows commadnerï¼Winraræ¥ç®¡çæ件ï¼Win XPçZIPæ¯æ对æèè¨è¿é¸¡èä¹ä¸å¦ï¼å 为ä¸ç®¡æéä¸éè¦ï¼å¼æºç³»ç»å°±æå¼ä¸ªzipæ¯æï¼æ¬æ¥å°±é²å°çç³»ç»èµæºåå°äºä¸åï¼ç¹å»å¼å§âè¿è¡ï¼æ²å
¥ï¼âregsvr32 /u zipfldr.dllâåå¼å·ä¸é´çï¼ç¶åå车确认å³å¯ï¼æåçæ å¿æ¯åºç°ä¸ªæ示çªå£ï¼å
容大è´ä¸ºï¼zipfldr.dllä¸çDll UnrgisterServeræåã
5ãæ®è¯´XPçä¸ä¸ªç³»ç»æå¡Qosï¼è¿ä¸ªè°åº¦è¦å ç¨ä¸å®çç½ç»å¸¦å®½ï¼åæè¿æ ·çä¸æ¯ä¸æç人æ¯æ æ³å¿åçï¼å»ææ¹æ³æ¯ï¼å¼å§èåâè¿è¡âé®å
¥ gpedit.msc ï¼åºç°âç»çç¥âçªå£ï¼ å±å¼ "管ç模æ¿âââç½ç»â ï¼ å±å¼ "QoS æ°æ®å
è°åº¦ç¨åº"ï¼ å¨å³è¾¹çªå³é®åå»âéå¶å¯ä¿ç带宽" ï¼å¨å±æ§ä¸çâ设置âä¸æâéå¶å¯ä¿ç带宽" ï¼éæ©âå·²ç¦ç¨âï¼ç¡®å®å³å¯ãå½ä¸è¿°ä¿®æ¹å®æ并åºç¨åï¼ç¨æ·å¨ç½ç»è¿æ¥çå±æ§å¯¹è¯æ¡å
çä¸è¬å±æ§æ ç¾æ ä¸å¦æè½å¤çå°"QoS Packet Schedulerï¼QoS æ°æ®å
è°åº¦ç¨åºï¼"ã说æä¿®æ¹æåï¼å¦å说æä¿®æ¹å¤±è´¥ï¼é¡ºä¾¿æç½ç»å±æ§ä¸çé£ä¸ªQos åè®®ä¹ä¸èµ·å¹²æï¼å¸è½½ï¼å§ã
6ãå¿«éæµè§å±åç½ç»çå
񄧮
é常æ
åµä¸ï¼Windows XPå¨è¿æ¥å
¶å®è®¡ç®æºæ¶ï¼ä¼å
¨é¢æ£æ¥å¯¹æ¹æºåä¸ææé¢å®çä»»å¡ï¼è¿ä¸ªæ£æ¥ä¼è®©ä½ çä¸30ç§éææ´å¤æ¶é´ãå»æçæ¹æ³æ¯å¼å§âè¿è¡âRegeditâå¨æ³¨å表ä¸æ¾å°HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Current Version\Explorer\RemoteComputer\NameSpaceãå¨æ¤é®å¼ä¸ï¼ä¼æ个{ D6277990-4C6A-11CF-8D87-00AA0060F5BF }é®ï¼æå®å æåï¼éæ°å¯å¨è®¡ç®æºï¼Windows XPå°±ä¸åæ£æ¥é¢å®ä»»å¡äºï¼hoho~~~ ï¼é度ææ¾æé«å¦ï¼
7ãå
³æè°è¯å¨Dr. Watson
æ好åä»win95年代å¼å§ä¸æ¬¡ä¹æ²¡ç¨è¿è¿ä¸è¥¿ï¼å¯ä»¥è¿æ ·åæ¶ï¼æå¼å表ï¼æ¾å°HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AeDebugåé®åæ¯ï¼åå»å¨å®ä¸é¢çAutoé®å¼å称ï¼å°å
¶âæ°å¼æ°æ®âæ¹ä¸º0ï¼æåæF5å·æ°ä½¿è®¾ç½®çæï¼è¿æ ·å°±åæ¶å®çè¿è¡äºã沿ç¨è¿ä¸ªæè·¯ï¼æ们å¯ä»¥æææå
·å¤è°è¯åè½çé项åæ¶ï¼æ¯å¦èå±æ¶åºç°çmemory.dmpï¼å¨âæççµèâå±æ§âé«çº§â设置âåå
¥è°è¯ä¿¡æ¯âéæ©æ âççã
8ã被æç»æ¢çæå¡å表以åç¸å
³è¯´æ
1)alerter é误è¦æ¥
2)automatic updates windows èªå¨æ´æ°
3)background intelligent transfer service 微软说使ç¨ç©ºé²çç½ç»å¸¦å®½ä¼ æ°æ®
4)clipbook ä¸è¿ç¨çµèæ¥å
±äº«åªè´´æ¿å
容ï¼æçè¿æ¯å
äºå§
5)Computer browser 说ä»ä¹è¦ç»´æ¤ç½ç»æ´æ°å表
6)DHCP client æä¸éè¦è¿ä¸è¥¿
7)Distributed link tracking client ä¿æå±åç½è¿æ¥æ´æ°çä¿¡æ¯ï¼å¶å¾å°ç¨å±åç½ï¼è¿ä¸è¥¿å ç¨4Må·¦å³å
åã
8)Distributed Transaction coordinator åè°xxxï¼åä¸é¢çå·®ä¸å¤
9)DNS Client æä¸éè¦è¿ä¸è¥¿
10)Error reporting service é误æ¥å
11)Event Log ç³»ç»æ¥å¿çºªå½
12)Fast user switching compatibility ç¨æ·åæ¢
13)help and support 帮å©
14)Human interface device access æ®è¯´æ¯æºè½è®¾å¤ããã
15)IMAPI CD-burning COM service å¶ä¸ç¨è¿ä¸ªå»ç¢
16)Indexing service ç´¢å¼ï¼ç´¢å¼ä»ä¹å¢ï¼
17)Internet Connection Firewall(ICF) ICFé²ç«å¢
18)IPSEC Services è¿ä¸ªæä¸æï¼ä½ æ³ç¥éé®Quackå»
19)Logical Disk manager administrative service é
ç½®ç£ç
20)messenger 好ånet send çä¸è¥¿ç¨çå°±æ¯è¿ä¸ªåè½
21)MS software shadow copy provider å·å¤å¶å¤ä»½ç
22)Net Logon æå¯ä¸æ³è®©é»å®¢è¿ç¨ç»å½è¿æ¥ï¼å
³ï¼
23)Netmeeting remote desktop sharing æä¸ç¨netmeeting
24)Network DDE å¨ææ°æ®äº¤æ¢ä¼ è¾
25)Network DDE DSDM åä¸é¢å·®ä¸å¤
26)Network Location Awareness å
³ï¼æçæºåä¸ä½å
񄧮
27)NTLM Security support providerï¼telnet åµåµï¼å
³ï¼
28)Performance logs and alert å°ç³»ç»ç¶æåæ¥å¿æåè¦å
29)Portable media serial number å
³ï¼
30)Print Spooler æå°æºï¼ä¸å¹¸çæ¯æçæºåä¸è¿æ¥Print ~
31) QoS RSVP å
³ï¼
32)Remote desktop help session manager è¿ç¨å¸®å©æå¡
33)remote Procedure Call LOCATOR 管çRPC
34)remote registry è¿ç¨ç®¡ç注å表
35)removable storage
36)routing and remote access æå¹²èç¦ç¨äºå®
37)security accounts manager æçç³»ç»åªæ¯ä¸ä¸ªå®¢æ·ç³»ç»ï¼ä¸ç¨iisã
38)smart card
39)smart card helper å
³ï¼ï¼ï¼
40)SSDP Discovery service æç¨ä¸å°è¿ä¸ª
41)system event notification å¦ææ¯æå¡å¨è¯å®è¦è®°å½ç
42)system restore service ç³»ç»è¿åæå¡
43)task scheduler windows 计åæå¡
44)Telephony æ¨å·æå¡ï¼æä¸æ¨å·è¿ä¸è¡åï¼
45)telnet
46)terminal services ç»ç«¯æå¡
47)uninterruptible power supply UPSï¼æ没æå
48)universal plug and play device host 太å
è¿äºç¹ï¼ç¨ä¸å°
49)upload manager å
³äºä¹è½ä¼ è¾æ件ç
50)volume shadow copy åæ¯å¤ä»½ï¼æ
51)webclient 没ç¨è¿
52)Windows Installer MSIæå¡ï¼æä¸ç´å
³çã
53)windows image acquisition (WIA) æ°ç 设å¤ç¨ç
54)windows management instrumentation driver extensions å
³äº
55)windows time æ¶é´æå¡
56)wireless zero configuration æ 线ç½ç»ï¼å¶ç¨ä¸å°ç
57)WMI perfromance adapter å
³ï¼
è¿éé¢çä¸äºæå¡æ¯åå¼å§å°±æ¯å
³çï¼ä½æå¿äºï¼æ以åªå¥½æç°å¨ç³»ç»ä¸å
³éçæå¡åºæ¬é½åäºåºæ¥ãä½ æ ¹æ®èªå·±çæ
åµé
æ
å¤çå§ã
ä¸ãæå®å
¨å
å¤äºä¸è°ï¼åºæ¬çå
±äº«è¿æ¯å¾å
³çï¼
ä¿®æ¹æ³¨å表为以ä¸ä¸¤ä¸ªæ ·å¼ï¼
å»é¤å
񄧮
ââââââââââââââââââââââ
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters]
"AutoShareServer"=dword:00000000
"AutoSharewks"=dword:00000000
ââââââââââââââââââââââ
å»é¤IPC$管ç
ââââââââââââââââââââââ
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"restrictanonymous"=dword:00000001
ââââââââââââââââââââââ
æè
å°ä¸é¢ä¸¤ä¸ªä¿åæ个.REGæ件ï¼ç¶ååå»å¯¼å
¥å°±å¯ä»¥äºã
顺便æä¸è¦è¸çç3721ä¹å±è½ï¼å¨hostsæ件ä¸å å
¥ï¼
127.0.0.1 cnsmin.3721.com
127.0.0.1
http://www.3721.net åãå
¶ä»æå·§
1ãç»é¼ æ å³é®å¢å 个å¤å¶å°.../移å¨å°...åè½
âââââââââââââââââââââ
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\shellex]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\Copy To]
@="{ C2FBB630-2971-11D1-A18C-00C04FD75D13 }"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\Move To]
@="{ C2FBB631-2971-11D1-A18C-00C04FD75D13 }"
ââââââââââââââââââââââââ
å°ä¸é¢å
容ä¿åæadd.regæ件ï¼ç¶ååå»å¯¼å
¥å°±å¯ä»¥äºã
2ãå
³äºé误æ¥åï¼KAO ï¼è¿ä¸è¥¿æå¾æå个微软å
è´¹çæµè¯åä¼¼çï¼ç¹å»æ§å¶é¢æ¿---->ç³»ç»---->é«çº§---->å³ä¸è§--->é误æ¥å---->ç¦ç¨é误æ±æ¥ââ>ç¡®å®ï¼
3ãåæ¶åç»æ¾ç¤ºï¼å³é®åå»ä»»å¡æ ç空ç½åºåï¼å¨å¼¹åºçèåä¸éæ©âå±æ§âï¼å¨å¼¹åºççªå£ä¸ï¼åæ¶âåç»ç¸ä¼¼ä»»å¡æ æé®âåé¢ç对é©ï¼ç¡®å®å°±å¯ä»¥äºã
4ãæ¾åç»å
¸çç»å½çªå£ï¼WinXPé»è®¤çç»å½çé¢è½ç¶æ¼äº®ï¼ä½å¦æä½ æ³ç¨ä¸ä¸ªå表ä¸æ²¡æçç¨æ·ç»å½ï¼ä½ ä¼åç°æ ä»ä¸æï¼æ¹åç»å
¸çªå£çæ¹æ³æ¯ï¼ç¹å»âå¼å§âââæ§å¶é¢æ¿âââç¨æ·è´¦æ·âââæ´æ¹ç¨æ·ç»å½æ注éçæ¹å¼ââæâ使ç¨æ¬¢è¿å±å¹âåé¢ç对é©åæ¶ï¼æåç¹âåºç¨é项âå°±OKå¦ã
5ãå°èªå·±æ常ç¨çè¾å
¥æ³è®¾ç½®ä¸ä¸ªå¿«æ·é®ï¼ç¹å»âå¼å§âââæ§å¶é¢æ¿âââåºååè¯è¨é项ââå¨å¼¹åºççªå£ä¸éæ©âè¯è¨âââ详ç»ä¿¡æ¯âââé®è®¾ç½®âå¨å¼¹åºççªå£ä¸æ¾å°èªå·±ç¨çè¾å
¥æ³ï¼ç¹âæ´æ¹æé®é¡ºåºââå¨è¿ééä¸ä¸ªå¿«æ·é®å°±å¯ä»¥äºã
6ãå
³é计ç®æºæ¶èªå¨ç»æä¸ååºçä»»å¡ï¼æ³¨å表ï¼HKEY_CURRENT_USER\Control Panel\Desktop ä¸çâAugoEndTasksâçé®å¼æ¹ä¸ºâ1â
7ãå
³éèªå¨æ´æ°ï¼å³é®åå»âæççµèâï¼ç¹å»å±æ§ï¼ç¹å»âèªå¨æ´æ°âï¼å¨âéç¥è®¾ç½®âä¸æ éæ©âå
³éèªå¨æ´æ°ãæå°æå¨æ´æ°è®¡ç®æºâä¸é¡¹ã
8ãåå°å¼æºç£çæ«æçå¾
æ¶é´ï¼å¼å§âè¿è¡ï¼é®å
¥âchkntfs/t:0â
ç¶åè¿æ¥å°msç«ç¹é¡ºä¾¿å级ä¸æ¬¡å°±ç®ä¼ååºæ¬å®æï¼å¯¹äºXPèè¨ï¼å¯ä»¥éç¨è®¸å¤å
é¨å½ä»¤æ¥ççä¼åæ
åµï¼æ¯å¦tasklist.exe /svc å¯ä»¥æ¥çç³»ç»æå¡å®é
使ç¨æ
åµã
ä¼åä¸ä¸ªç³»ç»ï¼æºéº»ç¦çãæ以æ们æä»ä¿åèµ·æ¥ï¼æ们ç¨Ghostçæ.GHOæ件ï¼è¿æ ·å°±å¯ä»¥æ¿ç»å«äººç«èä¸ä¸å¦ï¼å¨Ghostä¹åå
è¦ä½ä¸ä¸ªäºæ
ï¼æ¸
é¤ç³»ç»ç¡¬ä»¶ã注åçä¿¡æ¯ï¼å¦åå
éå°ä¸åçæºåä¸å°æ æ³å¯å¨ï¼å¨Winxpå®è£
çä¸æ¾Deploy.cab ä¸çsysprep.exeæ件ã
æ§è¡sysprep.exeï¼éæ©âéæ°å°è£
âï¼ä¸é¢çæ è®°ä¸å¯ä»¥éæ©âå·²æåæ¿æ´»âï¼è¿å¯ä»¥éæ©å°è£
å®æåæ¯å
³æºè¿æ¯éæ°å¯å¨ãå°è£
å®æåï¼æ们åç¨å¸¦æGhostçç³»ç»çå¯å¨ï¼ç¨Ghostæ¥çæå¤ä»½.GHOéåï¼å¤ä»½å®æï¼
å¨æ§è¡å°è£
åï¼éæ°å¼æºï¼XPä¼è®©æ们è¾å
¥åºåå·ï¼æä¸å¼å¤´ææå°çæ¢åºåå·çåæ³å°±æ¯è¿æ ·æ¢ã
Windows XPææ°åºç¨æ巧大èè
Windows XPææ°åºç¨æ巧大èè
1.æ¢å¤EXEæ件å
³è
EXEæ件å
³èåºéé常ç麻ç¦ï¼
å 为è¿ç§æ
åµçåºç°å¤æ¯ç±äºç
æ¯å¼èµ·çï¼èææ¯è½¯ä»¶ç主æ件é½æ¯EXEæ件ï¼æ¢ç¶EXEæ件å
³èåºéï¼åæè½è¿è¡å¾äºææ¯è½¯ä»¶å¢ï¼è¿å¥½XPæä¾äºå®å
¨æ¨¡å¼ä¸çå½ä»¤è¡å·¥å
·ä¾æ们使ç¨ï¼å¯ä»¥å©ç¨å½ä»¤è¡å·¥å
·æ¥è§£å³è¿ä¸ªé®é¢ã
å¨å®å
¨æ¨¡å¼ä¸è¾å
¥ï¼assoc<ç©ºæ ¼>.exe=exefile<å车>ï¼å±å¹ä¸å°æ¾ç¤ºâ.exe=exefileâãç°å¨å
³éå½ä»¤æ示符çªå£ï¼æCtrl+Alt+Delç»åé®è°åºâWindowså®å
¨âçªå£ï¼æâå
³æºâæé®åéæ©âéæ°å¯å¨âé项ï¼ææ£å¸¸æ¨¡å¼å¯å¨Windowsåï¼ææçEXEæ件é½è½æ£å¸¸è¿è¡äºï¼
3.æ´æ¹Windows XPåºåå·
å¨Windows XPå®è£
å®æ¯ä»¥åï¼
å¯è½ç±äºæäºåå ä½ åæ³å¨å·²ç»å®è£
å®æ¯çWindows XPä¸æ´æ¹åºåå·ï¼è¯¥æä¹åå¢ï¼ä½¿ç¨æ¿æ´»å导å¯ä»¥æ»¡è¶³ä½ çè¦æ±ãå¼å§ä¹åï¼å¼ºçå»ºè®®ä½ å¨ä¿®æ¹ä¹åä½ä¸ä¸ªç³»ç»è¿åç¹ï¼ä»¥å
误æä½å¼èµ·ä¸å¿
è¦ç麻ç¦ã
ç¹å»âå¼å§âââè¿è¡âï¼è¾å
¥regeditåå车ï¼æå¼æ³¨å表ç¼è¾å¨ï¼å®ä½å°HKEY_LOCAL_MACHINEï¼¼Softwareï¼¼Microsoftï¼¼WindowsNTï¼¼Current Versionï¼¼WPAEventsï¼å¨å³è¾¹å³é®åå»OOBETimerï¼ç¶åéæ©ä¿®æ¹ï¼è³å°ä¿®æ¹ä¸ä¸ªåèï¼ç¡®å®ä¿åã
ç¹å»âå¼å§âââè¿è¡âï¼è¾å
¥%systemroot%ï¼¼system32ï¼¼oobeï¼¼msoobe.exe /aï¼éæ©éè¿çµè¯æ¿æ´»ä»¥åç¹å»âä¸ä¸æ¥âï¼ç¹å»ä¿®æ¹åºåå·ï¼è¾å
¥æ°çåºåå·ä»¥åéæ©âæ´æ°âï¼å¦æéåå°åä¸ä¸ªç»é¢ï¼é£ä¹éæ©ç¨åæ¿æ´»ï¼å¹¶éæ°å¯å¨ï¼åå¤åé¢çæ¥éª¤ç´å°ä¿®æ¹æå为æ¢ï¼éæ°æ¿æ´»ãç¹å»ç¡®å®ï¼å®è£
SP1ã
å¦æä½ å®è£
SP1以åä¸è½éæ°å¯å¨ï¼é£ä¹å¯å¨çæ¶åæF8ï¼éæ©ä½¿ç¨âæåä¸æ¬¡æ£ç¡®çé
ç½®âï¼ç¶åéå¤ä»¥ä¸æµç¨ãæ¬æ¹æ³éç¨äºWindows XP Professionalã
4.å°EFSé项添å è³å¿«æ·èå
Windows XPæé
å¤çå å¯æ件系ç»(EFS)ï¼å¯å¸®å©æ¨é对åå¨å¨NTFSç£çå·ä¸çæ件åæ件夹æ§è¡å å¯æä½ãå¦ææ¨å·²å°è¿ä¸ªæ件å å¯/解å¯é项添å è³å¿«æ·èåï¼é£ä¹ï¼å½ç¨æ·å³é®åå»æä¸åå¨äºNTFSç£çå·ä¸çæ件ææ件夹æ¶ï¼å å¯æ解å¯é项便ä¼åºç°å¨éåå¼¹åºçå¿«æ·èåä¸ã请注æWindows XP Home Edition(家ç¨ç)并æªæä¾EFSç¹æ§ã
å¦æ¬²å°EFSé项添å è³å¿«æ·èåï¼è¯·ä¾æ¬¡æ§è¡ä¸åæä½æ¥éª¤ï¼å¨âè¿è¡â对è¯æ¡å
è¾å
¥regeditï¼å±å¼æ³¨å表è³ä¸ååé®ï¼HKEY_LOCAL_MACHINEï¼¼SOFTWAREï¼¼Microsoftï¼¼Windowsï¼¼CurrentVersionï¼¼Exporerï¼¼Advancedï¼å¨âç¼è¾âèåä¸æåâæ°å»ºâï¼å¹¶åå»âDWORDå¼âï¼è¾å
¥EncryptionContextMenu为åéåï¼å¹¶å°è¯¥åéèµå¼ä¸º1ã为确ä¿å¯¹æ³¨å表è¿è¡ä¿®æ¹ï¼åºå¨èªå·±ç计ç®æºä¸æ¥æ管çåå¸å·ã
5.XPéç¨æ¡é¢æ¼æ´è§£å³åæ³
Windows XPæä¾äºè¿ç¨æ¡é¢åè½ï¼ç®å被è¯å®åå¨è®¾è®¡ç¼ºé·ï¼å¯è½å¯¼è´æ»å»è
å¾å°ç³»ç»è¿ç¨æ¡é¢çè´¦æ·ä¿¡æ¯ï¼æå©äºå
¶è¿ä¸æ¥æ»å»ãå½è¿æ¥å»ºç«çæ¶åï¼ç¨Windows XPè¿ç¨æ¡é¢æè´¦æ·å以ææåéç»è¿æ¥å®ç客æ·ç«¯ãåéçè´¦æ·åä¸ä¸å®æ¯è¿ç«¯ä¸»æºçç¨æ·è´¦å·ï¼èæ¯æ常被客æ·ç«¯ä½¿ç¨çè´¦æ·åï¼ç½ç»ä¸çå
æ¢ç¨åºå¯è½ä¼æè·å°è¿äºè´¦æ·ä¿¡æ¯ã
解å³æ¹æ³ï¼å°