贴出正常的 TermService 注册表项内容供参考:
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TermService]
"ErrorControl"=dword:00000001
"ObjectName"="LocalSystem"
"Start"=dword:00000002
"Description"="允许多位用户连接并控制一台机器,并且在远程计算机上显示桌面和应用程序。这是远程桌面(包括管理员的远程桌面)、快速用户转换、远程协助和终端服务器的基础结构。"
"DisplayName"="Terminal Services"
"DependOnService"=hex(7):52,00,50,00,43,00,53,00,53,00,00,00,00,00
"Type"=dword:00000020
"ImagePath"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\
74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,\
00,76,00,63,00,68,00,6f,00,73,00,74,00,20,00,2d,00,6b,00,20,00,44,00,43,00,\
6f,00,6d,00,4c,00,61,00,75,00,6e,00,63,00,68,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TermService\Parameters]
"ServiceDll"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,\
00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,\
74,00,65,00,72,00,6d,00,73,00,72,00,76,00,2e,00,64,00,6c,00,6c,00,00,00
"Certificate"=hex:01,00,00,00,01,00,00,00,01,00,00,00,06,00,5c,00,52,53,41,31,\
48,00,00,00,00,02,00,00,3f,00,00,00,01,00,01,00,41,16,a8,b4,5a,8f,f7,f3,4d,\
c2,52,e6,47,cd,82,9a,08,23,16,1e,fc,59,cf,15,13,3a,97,6f,b1,7c,a9,53,72,dc,\
96,63,ab,42,08,79,40,e8,70,29,c2,2a,f9,48,0b,5c,8e,96,a7,5f,82,de,6b,35,5d,\
30,c7,83,ae,c8,00,00,00,00,00,00,00,00,08,00,48,00,70,21,fd,d5,16,cf,3f,df,\
80,9b,0d,9f,95,39,c6,bb,f5,76,0f,37,da,31,7c,75,41,11,38,c9,38,70,29,99,2c,\
88,38,d0,34,44,e1,7e,ad,67,7d,f1,ac,56,c2,a9,14,6f,38,46,16,e3,83,a0,60,63,\
a4,5e,7d,99,e3,46,00,00,00,00,00,00,00,00
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TermService\Performance]
"Close"="CloseTSObject"
"Collect Timeout"=dword:000003e8
"Collect"="CollectTSObjectData"
"Open Timeout"=dword:000003e8
"Open"="OpenTSObject"
"Library"="perfts.dll"
"Last Counter"=dword:0000548e
"Last Help"=dword:0000548f
"First Counter"=dword:0000540e
"First Help"=dword:0000540f
"Object List"="21518 21640 21518 21640"
"Library Validation Code"=hex:00,c0,4a,4e,32,8a,ca,01,00,30,00,00,00,00,00,00
"WbemAdapFileSignature"=hex:f5,d1,57,f1,28,23,81,b9,d3,e6,83,68,2d,64,70,47
"WbemAdapFileTime"=hex:00,c0,4a,4e,32,8a,ca,01
"WbemAdapFileSize"=dword:00003000
"WbemAdapStatus"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TermService\Enum]
"0"="Root\\LEGACY_TERMSERVICE\\0000"
"Count"=dword:00000001
"NextInstance"=dword:00000001
--
Alexis Zhang
http://mvp.support.microsoft.com/profile/jie
http://blogs.itecn.net/blogs/alexis
推荐以 NNTP Bridge 桥接新闻组方式访问论坛以获取最佳用户体验。
本帖是回复帖,原帖作者是楼上的 "Alexis Zhang"
请执行 SFC /SCANNOW 检测一下系统文件完整性,然后尝试在其它正常的计算机中导出注册表项:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TermService