module

Malicious Windows Registration Entries (.reg) File

Disclosed
Aug 24, 1995

Description

This module creates a Windows Registration Entries (.reg) file which
adds the specified payload to the Windows Registry. The payload runs
upon Windows login for the current user. If the user has elevated
privileges when opening the file, the payload will run upon login
when any user logs in.

The user will receive a warning prompt to confirm Registry changes
when opening the file.
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.