SlideShare a Scribd company logo
1 of 1
Image Name                   PID Modules
========================= ====== =============================================
rundll32.exe                3848 ntdll.dll, kernel32.dll, msvcrt.dll,
                                 GDI32.dll, USER32.dll, IMAGEHLP.dll,
                                 ShimEng.dll, AcGenral.DLL, ADVAPI32.dll,
                                 RPCRT4.dll, Secur32.dll, WINMM.dll,
                                 ole32.dll, OLEAUT32.dll, MSACM32.dll,
                                 VERSION.dll, SHELL32.dll, SHLWAPI.dll,
                                 USERENV.dll, UxTheme.dll, IMM32.DLL,
                                 comctl32.dll, comctl32.dll, NETAPI32.dll,
                                 rtutils.dll, RASAPI32.dll, rasman.dll,
                                 WS2_32.dll, WS2HELP.dll, TAPI32.dll,
                                 MSCTF.dll, msctfime.ime, CLBCATQ.DLL,
                                 COMRes.dll, browseui.dll, browselc.dll
rundll32.exe                3856 ntdll.dll, kernel32.dll, msvcrt.dll,
                                 GDI32.dll, USER32.dll, IMAGEHLP.dll,
                                 ShimEng.dll, AcGenral.DLL, ADVAPI32.dll,
                                 RPCRT4.dll, Secur32.dll, WINMM.dll,
                                 ole32.dll, OLEAUT32.dll, MSACM32.dll,
                                 VERSION.dll, SHELL32.dll, SHLWAPI.dll,
                                 USERENV.dll, UxTheme.dll, IMM32.DLL,
                                 comctl32.dll, comctl32.dll, urlmon.dll,
                                 iertutil.dll, WININET.dll, Normaliz.dll,
                                 NETAPI32.dll, rtutils.dll, RASAPI32.dll,
                                 rasman.dll, WS2_32.dll, WS2HELP.dll,
                                 TAPI32.dll, MSCTF.dll, msctfime.ime,
                                 CLBCATQ.DLL, COMRes.dll, browseui.dll,
                                 browselc.dll, msfeeds.dll
rundll32.exe                4072 ntdll.dll, kernel32.dll, msvcrt.dll,
                                 GDI32.dll, USER32.dll, IMAGEHLP.dll,
                                 ShimEng.dll, AcGenral.DLL, ADVAPI32.dll,
                                 RPCRT4.dll, Secur32.dll, WINMM.dll,
                                 ole32.dll, OLEAUT32.dll, MSACM32.dll,
                                 VERSION.dll, SHELL32.dll, SHLWAPI.dll,
                                 USERENV.dll, UxTheme.dll, IMM32.DLL,
                                 comctl32.dll, comctl32.dll, NETAPI32.dll,
                                 rtutils.dll, RASAPI32.dll, rasman.dll,
                                 WS2_32.dll, WS2HELP.dll, TAPI32.dll,
                                 MSCTF.dll, msctfime.ime, CLBCATQ.DLL,
                                 COMRes.dll, browseui.dll, browselc.dll
rundll32.exe                4076 ntdll.dll, kernel32.dll, msvcrt.dll,
                                 GDI32.dll, USER32.dll, IMAGEHLP.dll,
                                 ShimEng.dll, AcGenral.DLL, ADVAPI32.dll,
                                 RPCRT4.dll, Secur32.dll, WINMM.dll,
                                 ole32.dll, OLEAUT32.dll, MSACM32.dll,
                                 VERSION.dll, SHELL32.dll, SHLWAPI.dll,
                                 USERENV.dll, UxTheme.dll, IMM32.DLL,
                                 comctl32.dll, comctl32.dll, urlmon.dll,
                                 iertutil.dll, WININET.dll, Normaliz.dll,
                                 NETAPI32.dll, rtutils.dll, RASAPI32.dll,
                                 rasman.dll, WS2_32.dll, WS2HELP.dll,
                                 TAPI32.dll, MSCTF.dll, msctfime.ime,
                                 CLBCATQ.DLL, COMRes.dll, browseui.dll,
                                 browselc.dll, msfeeds.dll

More Related Content

Similar to Rundll32test

Fast detection of Android malware: machine learning approach
Fast detection of Android malware: machine learning approachFast detection of Android malware: machine learning approach
Fast detection of Android malware: machine learning approachYury Leonychev
 
BSides IR in Heterogeneous Environment
BSides IR in Heterogeneous EnvironmentBSides IR in Heterogeneous Environment
BSides IR in Heterogeneous EnvironmentStefano Maccaglia
 
Design and implementation_of_shellcodes
Design and implementation_of_shellcodesDesign and implementation_of_shellcodes
Design and implementation_of_shellcodesAmr Ali
 
Interview with Dmitriy Vyukov - the author of Relacy Race Detector (RRD)
Interview with Dmitriy Vyukov - the author of Relacy Race Detector (RRD)Interview with Dmitriy Vyukov - the author of Relacy Race Detector (RRD)
Interview with Dmitriy Vyukov - the author of Relacy Race Detector (RRD)PVS-Studio
 
みんなの知らないChrome appsの世界
みんなの知らないChrome appsの世界みんなの知らないChrome appsの世界
みんなの知らないChrome appsの世界Yoichiro Tanaka
 
DEF CON 24 - Patrick Wardle - 99 problems little snitch
DEF CON 24 - Patrick Wardle - 99 problems little snitchDEF CON 24 - Patrick Wardle - 99 problems little snitch
DEF CON 24 - Patrick Wardle - 99 problems little snitchFelipe Prado
 
Design and Implementation of Shellcodes.
Design and Implementation of Shellcodes.Design and Implementation of Shellcodes.
Design and Implementation of Shellcodes.Sumutiu Marius
 
ROBOTIC AID FOR COMMANDO OPERATION
ROBOTIC AID FOR COMMANDO OPERATIONROBOTIC AID FOR COMMANDO OPERATION
ROBOTIC AID FOR COMMANDO OPERATIONShafi Pulikkal
 
Feldo: Function Event Listing and Dynamic Observing for Detecting and Prevent...
Feldo: Function Event Listing and Dynamic Observing for Detecting and Prevent...Feldo: Function Event Listing and Dynamic Observing for Detecting and Prevent...
Feldo: Function Event Listing and Dynamic Observing for Detecting and Prevent...Tzung-Bi Shih
 
Understanding Modern Device Drivers
Understanding Modern Device DriversUnderstanding Modern Device Drivers
Understanding Modern Device Driversasimkadav
 
PHPcon Poland - Static Analysis of PHP Code – How the Heck did I write so man...
PHPcon Poland - Static Analysis of PHP Code – How the Heck did I write so man...PHPcon Poland - Static Analysis of PHP Code – How the Heck did I write so man...
PHPcon Poland - Static Analysis of PHP Code – How the Heck did I write so man...Rouven Weßling
 

Similar to Rundll32test (12)

Fast detection of Android malware: machine learning approach
Fast detection of Android malware: machine learning approachFast detection of Android malware: machine learning approach
Fast detection of Android malware: machine learning approach
 
BSides IR in Heterogeneous Environment
BSides IR in Heterogeneous EnvironmentBSides IR in Heterogeneous Environment
BSides IR in Heterogeneous Environment
 
Design and implementation_of_shellcodes
Design and implementation_of_shellcodesDesign and implementation_of_shellcodes
Design and implementation_of_shellcodes
 
Interview with Dmitriy Vyukov - the author of Relacy Race Detector (RRD)
Interview with Dmitriy Vyukov - the author of Relacy Race Detector (RRD)Interview with Dmitriy Vyukov - the author of Relacy Race Detector (RRD)
Interview with Dmitriy Vyukov - the author of Relacy Race Detector (RRD)
 
みんなの知らないChrome appsの世界
みんなの知らないChrome appsの世界みんなの知らないChrome appsの世界
みんなの知らないChrome appsの世界
 
DEF CON 24 - Patrick Wardle - 99 problems little snitch
DEF CON 24 - Patrick Wardle - 99 problems little snitchDEF CON 24 - Patrick Wardle - 99 problems little snitch
DEF CON 24 - Patrick Wardle - 99 problems little snitch
 
Design and Implementation of Shellcodes.
Design and Implementation of Shellcodes.Design and Implementation of Shellcodes.
Design and Implementation of Shellcodes.
 
ROBOTIC AID FOR COMMANDO OPERATION
ROBOTIC AID FOR COMMANDO OPERATIONROBOTIC AID FOR COMMANDO OPERATION
ROBOTIC AID FOR COMMANDO OPERATION
 
Feldo: Function Event Listing and Dynamic Observing for Detecting and Prevent...
Feldo: Function Event Listing and Dynamic Observing for Detecting and Prevent...Feldo: Function Event Listing and Dynamic Observing for Detecting and Prevent...
Feldo: Function Event Listing and Dynamic Observing for Detecting and Prevent...
 
Understanding Modern Device Drivers
Understanding Modern Device DriversUnderstanding Modern Device Drivers
Understanding Modern Device Drivers
 
Cutting out Malware
Cutting out MalwareCutting out Malware
Cutting out Malware
 
PHPcon Poland - Static Analysis of PHP Code – How the Heck did I write so man...
PHPcon Poland - Static Analysis of PHP Code – How the Heck did I write so man...PHPcon Poland - Static Analysis of PHP Code – How the Heck did I write so man...
PHPcon Poland - Static Analysis of PHP Code – How the Heck did I write so man...
 

Rundll32test

  • 1. Image Name PID Modules ========================= ====== ============================================= rundll32.exe 3848 ntdll.dll, kernel32.dll, msvcrt.dll, GDI32.dll, USER32.dll, IMAGEHLP.dll, ShimEng.dll, AcGenral.DLL, ADVAPI32.dll, RPCRT4.dll, Secur32.dll, WINMM.dll, ole32.dll, OLEAUT32.dll, MSACM32.dll, VERSION.dll, SHELL32.dll, SHLWAPI.dll, USERENV.dll, UxTheme.dll, IMM32.DLL, comctl32.dll, comctl32.dll, NETAPI32.dll, rtutils.dll, RASAPI32.dll, rasman.dll, WS2_32.dll, WS2HELP.dll, TAPI32.dll, MSCTF.dll, msctfime.ime, CLBCATQ.DLL, COMRes.dll, browseui.dll, browselc.dll rundll32.exe 3856 ntdll.dll, kernel32.dll, msvcrt.dll, GDI32.dll, USER32.dll, IMAGEHLP.dll, ShimEng.dll, AcGenral.DLL, ADVAPI32.dll, RPCRT4.dll, Secur32.dll, WINMM.dll, ole32.dll, OLEAUT32.dll, MSACM32.dll, VERSION.dll, SHELL32.dll, SHLWAPI.dll, USERENV.dll, UxTheme.dll, IMM32.DLL, comctl32.dll, comctl32.dll, urlmon.dll, iertutil.dll, WININET.dll, Normaliz.dll, NETAPI32.dll, rtutils.dll, RASAPI32.dll, rasman.dll, WS2_32.dll, WS2HELP.dll, TAPI32.dll, MSCTF.dll, msctfime.ime, CLBCATQ.DLL, COMRes.dll, browseui.dll, browselc.dll, msfeeds.dll rundll32.exe 4072 ntdll.dll, kernel32.dll, msvcrt.dll, GDI32.dll, USER32.dll, IMAGEHLP.dll, ShimEng.dll, AcGenral.DLL, ADVAPI32.dll, RPCRT4.dll, Secur32.dll, WINMM.dll, ole32.dll, OLEAUT32.dll, MSACM32.dll, VERSION.dll, SHELL32.dll, SHLWAPI.dll, USERENV.dll, UxTheme.dll, IMM32.DLL, comctl32.dll, comctl32.dll, NETAPI32.dll, rtutils.dll, RASAPI32.dll, rasman.dll, WS2_32.dll, WS2HELP.dll, TAPI32.dll, MSCTF.dll, msctfime.ime, CLBCATQ.DLL, COMRes.dll, browseui.dll, browselc.dll rundll32.exe 4076 ntdll.dll, kernel32.dll, msvcrt.dll, GDI32.dll, USER32.dll, IMAGEHLP.dll, ShimEng.dll, AcGenral.DLL, ADVAPI32.dll, RPCRT4.dll, Secur32.dll, WINMM.dll, ole32.dll, OLEAUT32.dll, MSACM32.dll, VERSION.dll, SHELL32.dll, SHLWAPI.dll, USERENV.dll, UxTheme.dll, IMM32.DLL, comctl32.dll, comctl32.dll, urlmon.dll, iertutil.dll, WININET.dll, Normaliz.dll, NETAPI32.dll, rtutils.dll, RASAPI32.dll, rasman.dll, WS2_32.dll, WS2HELP.dll, TAPI32.dll, MSCTF.dll, msctfime.ime, CLBCATQ.DLL, COMRes.dll, browseui.dll, browselc.dll, msfeeds.dll