Other options allow protection of the following registry branches from modification (in the system profile as well as in all user profiles). Image File Execution Options: ·Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options User Drivers: ·Software\Microsoft\Windows NT\CurrentVersion\Drivers32 ·Software\Microsoft\Windows NT\CurrentVersion\Userinstallable.drivers Winlogon registry keys: ·Software\Microsoft\Windows NT\CurrentVersion\Winlogon, Userinit, Shell, UIHost, System, Taskman, GinaDLL Winlogon notifiers: ·Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify Windows registry startup keys: ·Software\Microsoft\Windows NT\CurrentVersion\Windows, AppInit_DLLs, LoadAppInit_DLLs, Load, Run, IconServiceLib Executable file associations: ·Software\Classes\.exe, .pif, .com, .bat, .cmd, .scr, .lnk (keys) ·Software\Classes\exefile, piffile, comfile, batfile, cmdfile, scrfile, lnkfile (keys) Software Restriction Policies (SRP): ·Software\Policies\Microsoft\Windows\Safer Browser Helper Objects for Internet Explorer (BHO): ·Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects Autorun of programs: ·Software\Microsoft\Windows\CurrentVersion\Run ·Software\Microsoft\Windows\CurrentVersion\RunOnce ·Software\Microsoft\Windows\CurrentVersion\RunOnceEx ·Software\Microsoft\Windows\CurrentVersion\RunOnce\Setup ·Software\Microsoft\Windows\CurrentVersion\RunOnceEx\Setup ·Software\Microsoft\Windows\CurrentVersion\RunServices ·Software\Microsoft\Windows\CurrentVersion\RunServicesOnce Autorun of policies: ·Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run Safe mode configuration: ·SYSTEM\ControlSetXXX\Control\SafeBoot\Minimal ·SYSTEM\ControlSetXXX\Control\SafeBoot\Network Session Manager parameters: ·System\ControlSetXXX\Control\Session Manager\SubSystems, Windows System services: ·System\CurrentControlXXX\Services
|