I managed to compile HijackThis+ #265
Replies: 4 comments 9 replies
-
Hi, E.g. all "Image File Execution Options" are present in O26 (https://dragokas.com/tools/help/hjt_tutorial.html#O26) Before making such a proposal, we require:
In its current form I can only add some Policy keys. |
Beta Was this translation helpful? Give feedback.
-
Okay then I should find new idea. I see some malwares are abusing Windows Setup registry but that's not so common sense. |
Beta Was this translation helpful? Give feedback.
-
Okay I finally find my goal. I want to detect this change. My method didn't give any errors and I didn't shared with you yet but it's not tested. Here is the going to detected change by program:` Private Sub LockRegistryKey(keyPath As String)
|
Beta Was this translation helpful? Give feedback.
-
Thank for notifying about Setup key. I'll take a closer look. |
Beta Was this translation helpful? Give feedback.
-
My next goal interagate: https://github.com/HydraDragonAntivirus/OpenSourceViruses/blob/main/suspiciousregchangesandtaskkils
Beta Was this translation helpful? Give feedback.
All reactions