Files
atomic-red-team/atomics/T1196/calc.cpp
T

13 lines
254 B
C++
Raw Normal View History

2019-08-28 10:53:05 -04:00
#include <stdio.h>
#include <Windows.h>
BOOL APIENTRY DllMain(HMODULE hModule, DWORD ul_reason_for_call, LPVOID
lpReserved)
{
// malicious code
if (ul_reason_for_call == DLL_PROCESS_ATTACH)
system("c:\\windows\\system32\\calc.exe");
return 0;
}