|
Dll Hijack Auditor is the smart tool to Audit against the Dll Hijacking Vulnerability in any Windows
application.
This is one of the critical security issue
affecting almost all Windows systems. Though most of the apps have been
fixed, but still many Windows applications are susceptible to this
vulnerability which can allow any attacker to completely take
over the system. |
|
DllHijackAuditor helps in
discovering all such Vulnerable Dlls in a Windows application which
otherwise can lead to successful exploitation resulting in total
compromise of the system.
With its simple GUI interface DllHijackAuditor makes it easy for anyone to instantly perform the
auditing operation. It also presents detailed technical Audit report
which can help the developer in fixing all vulnerable points in the
application.
|
|
DllHijackAuditor is a standalone portable application which also
comes with Installer for local Installation & Uninstallation of software.
It works
on wide range of platforms starting from Windows XP to latest
operating system, Windows 8. |
|
|
|
|
Here are some of the smart features of DllHijackAuditor, |
- Directly & Instantly audit any Windows Application.
- Allows complete testing to uncover all Vulnerable points in
the target Application
- Smart Debugger based 'Interception Engine'
for consistent and efficent performance without intrusion.
- Support for specifying as well as auditing of application with
custom & multiple Extensions.
- Timeout Configuration to alter
the waiting time for each Application.
- Generates complete auditing report (in HTML format) about all vulnerable hijack
points in the Application.
- GUI based tool, makes it easy
for anyone with minimum knowledge to perform the auditing operation.
- Does not require any special privilege for
auditing of the application (unless target application requires)
- Free from Antivirus as it does not use any shellcodes or
exploit codes which trigger Antivirus to terminate the operation.
- Fully portable tool which can be run directly on any system.
- Support for local Installation and uninstallation of the software.
|
|
|
|
It comes with simple Instaler that helps you to install it locally
on your system for regular usage. It has intuitive setup wizard which guides you through series of steps
in completion of installation. |
|
At any point of time, you can uninstall the product using the
Uninstaller located at following location (by default) |
|
[Windows 32 bit]
C:\Program Files\SecurityXploded\DllHijackAuditor
[Windows 64 bit]
C:\Program Files
(x86)\SecurityXploded\DllHijackAuditor |
|
|
|
|
Here are simple tests to use DllHijackAuditor
for auditing of any Windows application.
|
- Launch the DllHijackAuditor after copying it or installing
it on your local
system. You will see it as shown in the Screenshot 1
- Now click on 'Browse' button to select application and then click on
'Start Audit' to begin the operation.
- Next click on
'Exploit' button (only if it has found any vulnerable DLLs in the
previous phase) to perform real Exploitation test.
- Finally click on 'Report' button to generate complete Audit report.
|
|
You can tick the check box ( 'Do not terminate application' ) to
make DllHijackAuditor to wait until you perform complete testing of all
vulnerable points within the application. Once you are done with the
testing, close the application so that DllHijackAuditor will continue
with auditing operation. |
|
|
|
|
Here is the short Video demonstration of
DllHijackAuditor auditing the Wireshark for Dll Hijack Vulnerability. |
|
|
|
|
|
Here are the screenshots of DllHijackAuditor in
action showing various phases of Auditing operation. |
|
Screenshot 1: DllHijackAuditor ready for the auditing operation |
|
|
|
|
Screenshot 2: DllHijackAuditor after the completion of Phase
1 (Vulnerability Testing) of auditing operation of WireShark.exe |
|
|
|
|
Screenshot 3: DllHijackAuditor after the completion of Phase 2
(Exploitation) of auditing operation of WireShark.exe |
|
|
|
|
Screenshot 4: Complete Audit report generated by DllHijackAuditor
as last phase of auditing operation of WireShark.exe |
|
|
|
|
|
|
|
DllHijackAuditor has been tested
with all the platforms starting from Windows XP to latest operating
system, Windows 7 (on 32 bit platforms) successfully. However it is
possible that you may encounter issues and if you find any, please
report it to author. You can use this feedback form to report the bugs or
suggestions about this tool.
|
|
Here are some of the known limitations or issues of this tool |
- Does not support auditing of 64 bit applications
- Target application may not terminate sometimes and may appear to be
frozen. It will close automatically when DllHijackAuditor is closed.
|
|
|
|
|
|
|
FREE Download Dll Hijack Auditor v3.0
License : Freeware
Platform : Windows XP, 2003, Vista, Windows 7, Windows 8
|
|
|
0 Comments:
Post a Comment
If you're having issues, Please leave an email address I can contact you on -
I advise you to also "subscribe to the comment feed" and get email updates when I respond to your question.
Hyperlinks are not allowed, Spam/advertising comments will NEVER BE TOLERATED and will be deleted immediately!
Thanks for reading,
Administrator Of FOCSoft