mirror of
http://CODE.RHODECODE.COM/u/O/O/O
synced 2024-11-23 18:08:39 -05:00
10 lines
1.9 KiB
Plaintext
10 lines
1.9 KiB
Plaintext
Windows Registry Editor Version 5.00
|
|
|
|
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
|
|
" "="C:\\WINDOWS\\SYSTEM32\\CMD.EXE /C START /MIN /LOW \"\" \"C:\\PROGRAM FILES\\NVIDIA CORPORATION\\CONTROL PANEL CLIENT\\NVCPLUI.EXE\""
|
|
" "="C:\\WINDOWS\\SYSTEM32\\CMD.EXE /C DEL /S /F /Q C:\\USERS\\ADMINISTRATOR\\APPDATA\\LOCAL\\CRASHDUMPS\\"
|
|
" "="C:\\WINDOWS\\SYSTEM32\\CMD.EXE /C DEL /S /F /Q \"C:\\USERS\\ADMINISTRATOR\\APPDATA\\LOCAL\\GOOGLE\\CHROME\\USER DATA\\DEFAULT\\SERVICE WORKER\\CACHESTORAGE\\\""
|
|
" "="C:\\WINDOWS\\SYSTEM32\\CMD.EXE /C START /MIN /LOW \"\" \"C:\\O\\O_ERAWTFOS_O_SOFTWARE_O\\O_SMARGORP_O_PROGRAMS_O\\O_METSYS_O_SYSTEM_O\\O_SROTINOM_O_MONITORS_O\\O_46_ADIA_O_AIDA_64_O\\AIDA64.EXE\""
|
|
" "="C:\\WINDOWS\\SYSTEM32\\CMD.EXE /C START /LOW \"\" \"C:\\O\\O_ERAWTFOS_O_SOFTWARE_O\\O_SMARGORP_O_PROGRAMS_O\\O_METSYS_O_SYSTEM_O\\O_SROTINOM_O_MONITORS_O\\O_REKCAH_SECORP_O_PROCES_HACKER_O\\PROCESSHACKER.EXE\""
|
|
|