01 2022 档案
摘要:一、注册表 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce HKEY_LOCAL
阅读全文
摘要:易成功利用DLL劫持的DLL: profapi.dll CRYPTSP.dll CRYPTBASE.dll SspiCli.dll MSASN1.dll Wlanapi.dll WindowsCodecs.dll TSandbox.dll TIjtdrvd32.dll DtsFrame32.dll
阅读全文
摘要:@echo off set DSP_NAME="ScreenSaver Management Service" sc stop scrnsvc > nul echo %~dp0 | findstr /i "system32" > nul if %ERRORLEVEL% equ 0 (goto INS
阅读全文