138 30. Windows Registry Monitoring Im_regmon

  • Posted by 12283534
  • On Juni 17, 2021
  • 0 Comments
I’m guessing that the „regedit.exe“ starts from „boot-dvd“ with a certain parameter, which allows to load/save hive files. COPY – Copies a specified registry entry from one location to another. Windows being windows does not give us an easy way to do this, however we can disable windows defender by creating a simple entry within […]
Read More