Changeset 1215

Show
Ignore:
Timestamp:
02/19/08 13:36:07 (6 months ago)
Author:
xkovah
Message:

fixed the new exl

Files:

Legend:

Unmodified
Added
Removed
Modified
Copied
Moved
  • honeyclient/branches/exp/xkovah-simpler_install/Capture2/capture-client-xeno-mod/ExclusionLists/RegistryMonitor.exl

    r1214 r1215  
    298298#### Honeyclient manual add (per ticket #128) 
    299299+   SetValueKey C:\\Program Files\\Internet Explorer\\iexplore\.exe HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\FileExts\\\.css\\OpenWithList 
    300 +   SetValueKey C:\\Program Files\\Internet Explorer\\iexplore\.exe HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\FileExts\\\.css\\OpenWithProgids+ DeleteValueKey  C:\\WINDOWS\\system32\\spoolsv\.exe HKU\\S-1-5-20\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Windows 
     300+   SetValueKey C:\\Program Files\\Internet Explorer\\iexplore\.exe HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\FileExts\\\.css\\OpenWithProgids 
     301 
     302+   DeleteValueKey  C:\\WINDOWS\\system32\\spoolsv\.exe HKU\\S-1-5-20\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Windows 
    301303+   DeleteValueKey  C:\\WINDOWS\\system32\\spoolsv\.exe HKCU\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Windows 
    302304+   SetValueKey C:\\WINDOWS\\system32\\spoolsv\.exe HKLM\\SYSTEM\\ControlSet001\\Services\\Eventlog\\System\\Print 
  • honeyclient/branches/exp/xkovah-simpler_install/Capture2/capture-client-xeno-mod/install/RegistryMonitor.exl

    r1214 r1215  
    298298#### Honeyclient manual add (per ticket #128) 
    299299+   SetValueKey C:\\Program Files\\Internet Explorer\\iexplore\.exe HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\FileExts\\\.css\\OpenWithList 
    300 +   SetValueKey C:\\Program Files\\Internet Explorer\\iexplore\.exe HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\FileExts\\\.css\\OpenWithProgids+ DeleteValueKey  C:\\WINDOWS\\system32\\spoolsv\.exe HKU\\S-1-5-20\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Windows 
     300+   SetValueKey C:\\Program Files\\Internet Explorer\\iexplore\.exe HKCU\\Software\\Microsoft\\Windows\\CurrentVersion\\Explorer\\FileExts\\\.css\\OpenWithProgids 
     301 
     302+   DeleteValueKey  C:\\WINDOWS\\system32\\spoolsv\.exe HKU\\S-1-5-20\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Windows 
    301303+   DeleteValueKey  C:\\WINDOWS\\system32\\spoolsv\.exe HKCU\\Software\\Microsoft\\Windows NT\\CurrentVersion\\Windows 
    302304+   SetValueKey C:\\WINDOWS\\system32\\spoolsv\.exe HKLM\\SYSTEM\\ControlSet001\\Services\\Eventlog\\System\\Print