|
JS/Offensive.reg Content:
REGEDIT4
-HKEY_CURRENT_USER\Software\Microsoft\Windows\
CurrentVersion\Policies\Explorer]
-HKEY_CURRENT_USER\Software\Microsoft\Windows\
CurrentVersion\Policies\System]
-HKEY_CURRENT_USER\Software\Microsoft\Windows\
CurrentVersion\Policies\WinOldApp]
-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\
CurrentVersion\RunServices]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\
CurrentVersion\Policies\Explorer]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\
CurrentVersion\Policies\System]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\
CurrentVersion\RunServices]
"LoadPowerProfile"="Rundll32.exe powrprof.dll,LoadCurrentPwrScheme"
[HKEY_CLASSES_ROOT\exefile\shell\open\command]
@="\"%1\" %*"
Actions
Remove Keys':
-HKEY_CURRENT_USER\Software\Microsoft\Windows\
CurrentVersion\Policies\Explorer]
-HKEY_CURRENT_USER\Software\Microsoft\Windows\
CurrentVersion\Policies\System]
-HKEY_CURRENT_USER\Software\Microsoft\Windows\
CurrentVersion\Policies\WinOldApp]
-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\
CurrentVersion\RunServices]
Add Key's:
[HKEY_CURRENT_USER\Software\Microsoft\Windows\
CurrentVersion\Policies\Explorer]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\
CurrentVersion\Policies\System]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\
CurrentVersion\RunServices]
"LoadPowerProfile"="Rundll32.exe powrprof.dll,LoadCurrentPwrScheme"
Recreate standard Windows execution for '.exe'
files.
[HKEY_CLASSES_ROOT\exefile\shell\open\command]
@="\"%1\" %*"
|