31 lines
333 B
Markdown
31 lines
333 B
Markdown
|
## Pcwutl.dll
|
||
|
|
||
|
* Functions: Execute
|
||
|
|
||
|
```
|
||
|
rundll32.exe pcwutl.dll,LaunchApplication calc.exe
|
||
|
```
|
||
|
|
||
|
Acknowledgements:
|
||
|
* Matt harr0ey - @harr0ey
|
||
|
|
||
|
Code sample:
|
||
|
*
|
||
|
|
||
|
Resources:
|
||
|
* https://twitter.com/harr0ey/status/989617817849876488
|
||
|
|
||
|
Full path:
|
||
|
```
|
||
|
c:\windows\system32\Pcwutl.dll
|
||
|
c:\windows\sysWOW64\Pcwutl.dll
|
||
|
```
|
||
|
|
||
|
Notes:
|
||
|
|
||
|
|
||
|
|
||
|
Detection:
|
||
|
|
||
|
|