Дополнительные правила MD одним файлом v1.5 (для всех версий) [more=прочти]
Дополнительные правила в группу "Расположение автозагрузок-II" HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*file\shell\runas\command\*
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\VBA\Monitors\*; CLSID
HKEY_CURRENT_USER\SOFTWARE\Policies\Microsoft\Windows\System\Scripts\*\*
*\AppId\{????????-????-????-????-????????????}; DllSurrogate
*\http\shell\open\ddeexec\*
*\Software\Microsoft\Windows NT\CurrentVersion\Accessibility\ATs\*
Common Startup *\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\*Shell Folders; Common Startup
*\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\*Shell Folders; Common Start Menu
*\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\*Shell Folders; Start Menu
Common Startup *\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\*Shell Folders; Startup
*classes\ftp\shell\open\command\*
*\SOFTWARE\Classes\mailto\shell\open\command\*
*\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\win.ini; load
*\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\win.ini; run
*\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\win.ini; winlogon
*\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\system.ini\boot; shell
*\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\Autorun.inf\*
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders; Common Startup
*\SOFTWARE\Microsoft\Windows\CurrentVersion\BITS; IGDSearcherDLL
*\SOFTWARE\Microsoft\Rpc\Extensions; RemoteRpcDll
*\Software\Microsoft\Windows NT\CurrentVersion\Accessibility; Configuration
*\Software\Microsoft\Windows\CurrentVersion\Internet Settings; ProxyServer
*\Software\Microsoft\Windows\CurrentVersion\Internet Settings; ProxyEnable
*\Software\Microsoft\Windows\CurrentVersion\Group Policy\Scripts\Startup\*
*\Software\Microsoft\Windows\CurrentVersion\Group Policy\State\Machine\Scripts\Startup\*
*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections; DefaultConnectionSettings
*\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections; SavedLegacySettings
*\SYSTEM\CONTROLSET???\Control; ServiceControlManagerExtension
*\SYSTEM\CONTROLSET???\Control\LsaExtensionConfig\LsaSrv; Extensions
Дополнительные правила в группу "Параметры безопасности" HKEY_LOCAL_MACHINE\System\ControlSet???\Control\EarlyLaunch\*\*
HKEY_LOCAL_MACHINE\System\ControlSet???\Control\EarlyLaunch\*\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet???\Services\SharedAccess\Parameters\FirewallPolicy\*\*
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\*
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\*\*
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\*\
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\*\*
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\SystemCertificates\*\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet???\Control\Network\*\*
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet???\Control\Network\*\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet???\Enum\Root\*\*
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet???\Enum\Root\*\
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet???\services\*\*
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet???\services\*\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\*
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\*\
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\*\*
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\*\
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Security Center\Monitoring\*\*
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\*\*
[/more]
http://dl.dropbox.com/u/39341929/Rules/general_rules/more_rules_v1.5.dat Добавлено: Portable http://dl.dropbox.com/u/39341929/MD_portable/MD_portable_rus_2.8.0.1_edit_1.5.exe P.S. В сборке ip база от пользователя
ajapaja