SlideShare a Scribd company logo
1 of 1
Image Name                   PID Modules
========================= ====== =============================================
rundll32.exe                3848 ntdll.dll, kernel32.dll, msvcrt.dll,
                                 GDI32.dll, USER32.dll, IMAGEHLP.dll,
                                 ShimEng.dll, AcGenral.DLL, ADVAPI32.dll,
                                 RPCRT4.dll, Secur32.dll, WINMM.dll,
                                 ole32.dll, OLEAUT32.dll, MSACM32.dll,
                                 VERSION.dll, SHELL32.dll, SHLWAPI.dll,
                                 USERENV.dll, UxTheme.dll, IMM32.DLL,
                                 comctl32.dll, comctl32.dll, NETAPI32.dll,
                                 rtutils.dll, RASAPI32.dll, rasman.dll,
                                 WS2_32.dll, WS2HELP.dll, TAPI32.dll,
                                 MSCTF.dll, msctfime.ime, CLBCATQ.DLL,
                                 COMRes.dll, browseui.dll, browselc.dll
rundll32.exe                3856 ntdll.dll, kernel32.dll, msvcrt.dll,
                                 GDI32.dll, USER32.dll, IMAGEHLP.dll,
                                 ShimEng.dll, AcGenral.DLL, ADVAPI32.dll,
                                 RPCRT4.dll, Secur32.dll, WINMM.dll,
                                 ole32.dll, OLEAUT32.dll, MSACM32.dll,
                                 VERSION.dll, SHELL32.dll, SHLWAPI.dll,
                                 USERENV.dll, UxTheme.dll, IMM32.DLL,
                                 comctl32.dll, comctl32.dll, urlmon.dll,
                                 iertutil.dll, WININET.dll, Normaliz.dll,
                                 NETAPI32.dll, rtutils.dll, RASAPI32.dll,
                                 rasman.dll, WS2_32.dll, WS2HELP.dll,
                                 TAPI32.dll, MSCTF.dll, msctfime.ime,
                                 CLBCATQ.DLL, COMRes.dll, browseui.dll,
                                 browselc.dll, msfeeds.dll
rundll32.exe                4072 ntdll.dll, kernel32.dll, msvcrt.dll,
                                 GDI32.dll, USER32.dll, IMAGEHLP.dll,
                                 ShimEng.dll, AcGenral.DLL, ADVAPI32.dll,
                                 RPCRT4.dll, Secur32.dll, WINMM.dll,
                                 ole32.dll, OLEAUT32.dll, MSACM32.dll,
                                 VERSION.dll, SHELL32.dll, SHLWAPI.dll,
                                 USERENV.dll, UxTheme.dll, IMM32.DLL,
                                 comctl32.dll, comctl32.dll, NETAPI32.dll,
                                 rtutils.dll, RASAPI32.dll, rasman.dll,
                                 WS2_32.dll, WS2HELP.dll, TAPI32.dll,
                                 MSCTF.dll, msctfime.ime, CLBCATQ.DLL,
                                 COMRes.dll, browseui.dll, browselc.dll
rundll32.exe                4076 ntdll.dll, kernel32.dll, msvcrt.dll,
                                 GDI32.dll, USER32.dll, IMAGEHLP.dll,
                                 ShimEng.dll, AcGenral.DLL, ADVAPI32.dll,
                                 RPCRT4.dll, Secur32.dll, WINMM.dll,
                                 ole32.dll, OLEAUT32.dll, MSACM32.dll,
                                 VERSION.dll, SHELL32.dll, SHLWAPI.dll,
                                 USERENV.dll, UxTheme.dll, IMM32.DLL,
                                 comctl32.dll, comctl32.dll, urlmon.dll,
                                 iertutil.dll, WININET.dll, Normaliz.dll,
                                 NETAPI32.dll, rtutils.dll, RASAPI32.dll,
                                 rasman.dll, WS2_32.dll, WS2HELP.dll,
                                 TAPI32.dll, MSCTF.dll, msctfime.ime,
                                 CLBCATQ.DLL, COMRes.dll, browseui.dll,
                                 browselc.dll, msfeeds.dll

More Related Content

Similar to Rundll32test

Design and implementation_of_shellcodes
Design and implementation_of_shellcodesDesign and implementation_of_shellcodes
Design and implementation_of_shellcodes
Amr Ali
 

Similar to Rundll32test (12)

Fast detection of Android malware: machine learning approach
Fast detection of Android malware: machine learning approachFast detection of Android malware: machine learning approach
Fast detection of Android malware: machine learning approach
 
BSides IR in Heterogeneous Environment
BSides IR in Heterogeneous EnvironmentBSides IR in Heterogeneous Environment
BSides IR in Heterogeneous Environment
 
Design and implementation_of_shellcodes
Design and implementation_of_shellcodesDesign and implementation_of_shellcodes
Design and implementation_of_shellcodes
 
Interview with Dmitriy Vyukov - the author of Relacy Race Detector (RRD)
Interview with Dmitriy Vyukov - the author of Relacy Race Detector (RRD)Interview with Dmitriy Vyukov - the author of Relacy Race Detector (RRD)
Interview with Dmitriy Vyukov - the author of Relacy Race Detector (RRD)
 
みんなの知らないChrome appsの世界
みんなの知らないChrome appsの世界みんなの知らないChrome appsの世界
みんなの知らないChrome appsの世界
 
DEF CON 24 - Patrick Wardle - 99 problems little snitch
DEF CON 24 - Patrick Wardle - 99 problems little snitchDEF CON 24 - Patrick Wardle - 99 problems little snitch
DEF CON 24 - Patrick Wardle - 99 problems little snitch
 
Design and Implementation of Shellcodes.
Design and Implementation of Shellcodes.Design and Implementation of Shellcodes.
Design and Implementation of Shellcodes.
 
ROBOTIC AID FOR COMMANDO OPERATION
ROBOTIC AID FOR COMMANDO OPERATIONROBOTIC AID FOR COMMANDO OPERATION
ROBOTIC AID FOR COMMANDO OPERATION
 
Feldo: Function Event Listing and Dynamic Observing for Detecting and Prevent...
Feldo: Function Event Listing and Dynamic Observing for Detecting and Prevent...Feldo: Function Event Listing and Dynamic Observing for Detecting and Prevent...
Feldo: Function Event Listing and Dynamic Observing for Detecting and Prevent...
 
Understanding Modern Device Drivers
Understanding Modern Device DriversUnderstanding Modern Device Drivers
Understanding Modern Device Drivers
 
Cutting out Malware
Cutting out MalwareCutting out Malware
Cutting out Malware
 
PHPcon Poland - Static Analysis of PHP Code – How the Heck did I write so man...
PHPcon Poland - Static Analysis of PHP Code – How the Heck did I write so man...PHPcon Poland - Static Analysis of PHP Code – How the Heck did I write so man...
PHPcon Poland - Static Analysis of PHP Code – How the Heck did I write so man...
 

Rundll32test

  • 1. Image Name PID Modules ========================= ====== ============================================= rundll32.exe 3848 ntdll.dll, kernel32.dll, msvcrt.dll, GDI32.dll, USER32.dll, IMAGEHLP.dll, ShimEng.dll, AcGenral.DLL, ADVAPI32.dll, RPCRT4.dll, Secur32.dll, WINMM.dll, ole32.dll, OLEAUT32.dll, MSACM32.dll, VERSION.dll, SHELL32.dll, SHLWAPI.dll, USERENV.dll, UxTheme.dll, IMM32.DLL, comctl32.dll, comctl32.dll, NETAPI32.dll, rtutils.dll, RASAPI32.dll, rasman.dll, WS2_32.dll, WS2HELP.dll, TAPI32.dll, MSCTF.dll, msctfime.ime, CLBCATQ.DLL, COMRes.dll, browseui.dll, browselc.dll rundll32.exe 3856 ntdll.dll, kernel32.dll, msvcrt.dll, GDI32.dll, USER32.dll, IMAGEHLP.dll, ShimEng.dll, AcGenral.DLL, ADVAPI32.dll, RPCRT4.dll, Secur32.dll, WINMM.dll, ole32.dll, OLEAUT32.dll, MSACM32.dll, VERSION.dll, SHELL32.dll, SHLWAPI.dll, USERENV.dll, UxTheme.dll, IMM32.DLL, comctl32.dll, comctl32.dll, urlmon.dll, iertutil.dll, WININET.dll, Normaliz.dll, NETAPI32.dll, rtutils.dll, RASAPI32.dll, rasman.dll, WS2_32.dll, WS2HELP.dll, TAPI32.dll, MSCTF.dll, msctfime.ime, CLBCATQ.DLL, COMRes.dll, browseui.dll, browselc.dll, msfeeds.dll rundll32.exe 4072 ntdll.dll, kernel32.dll, msvcrt.dll, GDI32.dll, USER32.dll, IMAGEHLP.dll, ShimEng.dll, AcGenral.DLL, ADVAPI32.dll, RPCRT4.dll, Secur32.dll, WINMM.dll, ole32.dll, OLEAUT32.dll, MSACM32.dll, VERSION.dll, SHELL32.dll, SHLWAPI.dll, USERENV.dll, UxTheme.dll, IMM32.DLL, comctl32.dll, comctl32.dll, NETAPI32.dll, rtutils.dll, RASAPI32.dll, rasman.dll, WS2_32.dll, WS2HELP.dll, TAPI32.dll, MSCTF.dll, msctfime.ime, CLBCATQ.DLL, COMRes.dll, browseui.dll, browselc.dll rundll32.exe 4076 ntdll.dll, kernel32.dll, msvcrt.dll, GDI32.dll, USER32.dll, IMAGEHLP.dll, ShimEng.dll, AcGenral.DLL, ADVAPI32.dll, RPCRT4.dll, Secur32.dll, WINMM.dll, ole32.dll, OLEAUT32.dll, MSACM32.dll, VERSION.dll, SHELL32.dll, SHLWAPI.dll, USERENV.dll, UxTheme.dll, IMM32.DLL, comctl32.dll, comctl32.dll, urlmon.dll, iertutil.dll, WININET.dll, Normaliz.dll, NETAPI32.dll, rtutils.dll, RASAPI32.dll, rasman.dll, WS2_32.dll, WS2HELP.dll, TAPI32.dll, MSCTF.dll, msctfime.ime, CLBCATQ.DLL, COMRes.dll, browseui.dll, browselc.dll, msfeeds.dll