Technical Information
- '<SYSTEM32>\taskkill.exe' /fi "imagename eq chrome.exe" /f
- chrome.exe
- <SYSTEM32>\GroupPolicy\Machine\Registry.pol
- <SYSTEM32>\GroupPolicy\gpt.ini
- %HOMEPATH%\ntuser.pol
- <SYSTEM32>\GroupPolicy\User\Registry.pol
- %TEMP%\RarSFX0\setup.cmd
- %TEMP%\RarSFX0\gpo.txt
- %TEMP%\RarSFX0\jq.exe
- %TEMP%\RarSFX0\Apply_LGPO_Delta.exe
- %TEMP%\RarSFX0\jq.exe
- %TEMP%\RarSFX0\setup.cmd
- %TEMP%\RarSFX0\Apply_LGPO_Delta.exe
- %TEMP%\RarSFX0\gpo.txt
- ClassName: '' WindowName: ''
- ClassName: 'EDIT' WindowName: ''
- '%TEMP%\RarSFX0\Apply_LGPO_Delta.exe' gpo.txt
- '<SYSTEM32>\cmd.exe' /c dir /b /a:d %HOMEPATH%\..
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\RarSFX0\setup.cmd" "