1.不要explorer,访问控制面板
基本不可能。因为很多UI都是explorer窗口显示的。
防火墙,网络,用户,程序卸载等。
下面这类弹出独立的对话框窗口的是可以不用(*.cpl)。
区域语言,鼠标,声音,具体网卡的属性设定等。
2.托盘图标隐藏
系统的设定的信息保存注册表,而且是很复杂的二进制流,
不是不能解析,PE用不到,所以就没有处理。
折叠是可以隐藏的,不是WinXShell自己设定的隐藏图标才可以,
时钟区域右键,通知图标设定。。。可以设置显示隐藏,
不过好像这个信息我没保存 ,所以再启动得再设定。。。
- [HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\TrayNotify]
- "IconStreams"=hex:14,00,00,00,07,00,00,00,01,00,01,00,35,00,00,00,14,00,00,00,\
- 7b,00,53,00,33,00,38,00,4f,00,53,00,34,00,30,00,34,00,2d,00,31,00,51,00,34,\
- 00,33,00,2d,00,34,00,32,00,53,00,32,00,2d,00,39,00,33,00,30,00,35,00,2d,00,\
- 36,00,37,00,51,00,52,00,30,00,4f,00,32,00,38,00,53,00,50,00,32,00,33,00,7d,\
- 00,5c,00,72,00,6b,00,63,00,79,00,62,00,65,00,72,00,65,00,2e,00,72,00,6b,00,\
- 72,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,8d,c1,00,00,00,\
- 00,00,00,02,00,00,00,e2,07,02,00,46,00,46,00,56,00,51,00,2d,00,46,00,59,00,\
- 42,00,45,00,52,00,0a,00,56,00,61,00,67,00,72,00,65,00,61,00,72,00,67,00,20,\
- 00,bf,8b,ee,95,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
- 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\
复制代码
3.系统信息的 分级,激活信息没有。
这些信息对PE没有用,而且也没调查这个信息怎么获取,
写个假的10.0也没啥意义,所以就没有。
需要自己改main.xml来添加。(label组件设置下bkimage)
4.密码验证
看输出一个有no password,并输出了Win Handle字样,另一个,
说明执行了结束SHELL窗口的代码了,但是没有获取到窗口信息,
窗口句柄为0x0,正常情况应该有个数据的。
我在WIN10和WIN7下都测试了,Shell_TrayWnd可以获取到的。
可否测试下,只用我的WinXShell.jcfg,或者把你的上传我试试看,
是不是合并的时候有什么地方变化了。 |