There is also a technique where they ask you to press: [Win + R] + [CRTL + V] + [ENTER] to verify that you are human.
This will install malware code that was put in the clipboard by using javascript.
yeah, you paste malicious code into the run window (basically a powershell) and then paste in code. pretty obvious most of the time
The "Run" app appears right after pressing Win+R, so this wouldn't work.
Letting javascript manipulate the clipboard was a mistake. Yet another "feature" that's added for apps but absolutely useless for the web.