Merge pull request #26 from vysec/patch-1

Update Shell32.md
master
Oddvar Moe 2018-06-04 07:55:31 +02:00 committed by GitHub
commit a479f10830
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 6 additions and 3 deletions

View File

@ -5,13 +5,16 @@
```
rundll32.exe shell32.dll,Control_RunDLL payload.dll
rundll32.exe shell32.dll,ShellExec_RunDLL beacon.exe
rundll32.exe shell32.dll,ShellExec_RunDLL beacon.exe
rundll32.exe shell32.dll,OpenAs_RunDLL c:\temp\calc.hta
rundll32.exe shell32.dll,OpenAs_RunDLL c:\temp\calc.hta
rundll32.exe shell32.dll,ShellExec_RunDLLA beacon.exe
```
Acknowledgements:
* Pierre-Alexandre Braeken - @pabraeken (ShellExec_RunDLL + OpenAs_RunDLL)
* Pierre-Alexandre Braeken - @pabraeken (ShellExec_RunDLL)
* Vincent Yiu - @vysecurity (ShellExec_RunDLLA)
Code sample:
*