!C99Shell v. 1.0 pre-release build #13!

Software: Apache. PHP/5.5.15 

uname -a: Windows NT SVR-DMZ 6.1 build 7600 (Windows Server 2008 R2 Enterprise Edition) i586 

SYSTEM 

Safe-mode: OFF (not secure)

C:\Users\root\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\   dr-xr-xr-x
Free 4.15 GB of 39.52 GB (10.49%)
Detected drives: [ a ] [ c ] [ d ] [ e ] [ f ]
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     Internet Explorer (No Add-ons).lnk (1.46 KB)      -rw-rw-rw-
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
Information:
Path C:\Users\root\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Size 1.46 KB
MD5 d82653d2d868901dc05af0ff8450e961
Perms-rw-rw-rw-
Create time 11/04/2013 11:10:37
Access time 11/04/2013 11:10:37
MODIFY time 11/04/2013 11:10:39

FULL HEXDUMP
00000000
00000018
00000030
00000048
00000060
00000078
00000090
000000A8
000000C0
000000D8
000000F0
00000108
00000120
00000138
00000150
00000168
00000180
00000198
000001B0
000001C8
000001E0
000001F8
00000210
00000228
00000240
00000258
00000270
00000288
000002A0
000002B8
000002D0
000002E8
00000300
00000318
00000330
00000348
00000360
00000378
00000390
000003A8
000003C0
000003D8
000003F0
00000408
00000420
00000438
00000450
00000468
00000480
00000498
000004B0
000004C8
000004E0
000004F8
00000510
00000528
00000540
00000558
00000570
00000588
000005A0
000005B8
000005D0
4C 00 00 00 01 14 02 00 00 00 00 00 C0 00 00 00 00 00 00 46 BF 00 00 00
20 00 00 00 BD FE 64 BB 13 04 CA 01 BD FE 64 BB 13 04 CA 01 61 61 D8 DA
20 04 CA 01 18 45 0A 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 8D 01 14 00 1F 50 E0 4F D0 20 EA 3A 69 10 A2 D8 08 00 2B 30
30 9D 19 00 2F 43 3A 5C 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 00 00 94 00 31 00 00 00 00 00 6F 42 E1 7A 11 00 50 52 4F 47 52 41 7E
32 00 00 7C 00 08 00 04 00 EF BE EE 3A 85 1A 6F 42 E1 7A 2A 00 00 00 8D
00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 52 00 00 00 00 00 50 00 72
00 6F 00 67 00 72 00 61 00 6D 00 20 00 46 00 69 00 6C 00 65 00 73 00 20
00 28 00 78 00 38 00 36 00 29 00 00 00 40 00 73 00 68 00 65 00 6C 00 6C
00 33 00 32 00 2E 00 64 00 6C 00 6C 00 2C 00 2D 00 32 00 31 00 38 00 31
00 37 00 00 00 18 00 68 00 31 00 00 00 00 00 7E 3D 7B BB 10 00 49 4E 54
45 52 4E 7E 31 00 00 50 00 08 00 04 00 EF BE EE 3A 85 1A 7E 3D 7B BB 2A
00 00 00 A9 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00
00 49 00 6E 00 74 00 65 00 72 00 6E 00 65 00 74 00 20 00 45 00 78 00 70
00 6C 00 6F 00 72 00 65 00 72 00 00 00 18 00 62 00 32 00 18 45 0A 00 EE
3A 2F 0A 20 00 69 65 78 70 6C 6F 72 65 2E 65 78 65 00 00 46 00 08 00 04
00 EF BE ED 3A 71 BD ED 3A 71 BD 2A 00 00 00 E1 35 00 00 00 00 01 00 00
00 00 00 00 00 00 00 00 00 00 00 00 00 69 00 65 00 78 00 70 00 6C 00 6F
00 72 00 65 00 2E 00 65 00 78 00 65 00 00 00 1C 00 00 00 64 00 00 00 1C
00 00 00 01 00 00 00 1C 00 00 00 2D 00 00 00 00 00 00 00 63 00 00 00 11
00 00 00 03 00 00 00 89 7A 80 66 10 00 00 00 00 43 3A 5C 50 72 6F 67 72
61 6D 20 46 69 6C 65 73 20 28 78 38 36 29 5C 49 6E 74 65 72 6E 65 74 20
45 78 70 6C 6F 72 65 72 5C 69 65 78 70 6C 6F 72 65 2E 65 78 65 00 00 26
00 40 00 22 00 25 00 77 00 69 00 6E 00 64 00 69 00 72 00 25 00 5C 00 53
00 79 00 73 00 74 00 65 00 6D 00 33 00 32 00 5C 00 69 00 65 00 34 00 75
00 69 00 6E 00 69 00 74 00 2E 00 65 00 78 00 65 00 22 00 2C 00 2D 00 37
00 33 00 38 00 50 00 2E 00 2E 00 5C 00 2E 00 2E 00 5C 00 2E 00 2E 00 5C
00 2E 00 2E 00 5C 00 2E 00 2E 00 5C 00 2E 00 2E 00 5C 00 2E 00 2E 00 5C
00 2E 00 2E 00 5C 00 2E 00 2E 00 5C 00 2E 00 2E 00 5C 00 50 00 72 00 6F
00 67 00 72 00 61 00 6D 00 20 00 46 00 69 00 6C 00 65 00 73 00 20 00 28
00 78 00 38 00 36 00 29 00 5C 00 49 00 6E 00 74 00 65 00 72 00 6E 00 65
00 74 00 20 00 45 00 78 00 70 00 6C 00 6F 00 72 00 65 00 72 00 5C 00 69
00 65 00 78 00 70 00 6C 00 6F 00 72 00 65 00 2E 00 65 00 78 00 65 00 15
00 25 00 48 00 4F 00 4D 00 45 00 44 00 52 00 49 00 56 00 45 00 25 00 25
00 48 00 4F 00 4D 00 45 00 50 00 41 00 54 00 48 00 25 00 08 00 20 00 2D
00 65 00 78 00 74 00 6F 00 66 00 66 00 10 00 00 00 05 00 00 A0 2A 00 00
00 C1 00 00 00 1C 00 00 00 0B 00 00 A0 EF 40 5A 7C FB A0 FC 4B 87 4A C0
F2 E0 B9 FA 8E C1 00 00 00 D8 01 00 00 09 00 00 A0 86 00 00 00 31 53 50
53 55 28 4C 9F 79 9F 39 4B A8 D0 E1 D4 2D E1 D5 F3 11 00 00 00 09 00 00
00 00 0B 00 00 00 FF FF 00 00 59 00 00 00 05 00 00 00 00 1F 00 00 00 23
00 00 00 4D 00 69 00 63 00 72 00 6F 00 73 00 6F 00 66 00 74 00 2E 00 49
00 6E 00 74 00 65 00 72 00 6E 00 65 00 74 00 45 00 78 00 70 00 6C 00 6F
00 72 00 65 00 72 00 2E 00 44 00 65 00 66 00 61 00 75 00 6C 00 74 00 00
00 00 00 00 00 00 00 BD 00 00 00 31 53 50 53 E0 85 9F F2 F9 4F 68 10 AB
91 08 00 2B 27 B3 D9 A1 00 00 00 06 00 00 00 00 1F 00 00 00 48 00 00 00
53 00 74 00 61 00 72 00 74 00 20 00 49 00 6E 00 74 00 65 00 72 00 6E 00
65 00 74 00 20 00 45 00 78 00 70 00 6C 00 6F 00 72 00 65 00 72 00 20 00
77 00 69 00 74 00 68 00 6F 00 75 00 74 00 20 00 41 00 63 00 74 00 69 00
76 00 65 00 58 00 20 00 63 00 6F 00 6E 00 74 00 72 00 6F 00 6C 00 73 00
20 00 6F 00 72 00 20 00 62 00 72 00 6F 00 77 00 73 00 65 00 72 00 20 00
65 00 78 00 74 00 65 00 6E 00 73 00 69 00 6F 00 6E 00 73 00 2E 00 00 00
00 00 00 00 89 00 00 00 31 53 50 53 E2 8A 58 46 BC 4C 38 43 BB FC 13 93
26 98 6D CE 6D 00 00 00 04 00 00 00 00 1F 00 00 00 2D 00 00 00 53 00 2D
00 31 00 2D 00 35 00 2D 00 32 00 31 00 2D 00 39 00 35 00 38 00 31 00 39
00 31 00 36 00 30 00 34 00 2D 00 36 00 32 00 36 00 30 00 38 00 32 00 39
00 36 00 32 00 2D 00 31 00 35 00 37 00 35 00 34 00 32 00 38 00 37 00 37
00 37 00 2D 00 31 00 30 00 30 00 35 00 00 00 00 00 00 00 00 00 00 00 00
00 60 00 00 00 03 00 00 A0 58 00 00 00 00 00 00 00 73 76 72 2D 64 6D 7A
00 00 00 00 00 00 00 00 00 92 D2 03 AE 65 86 F3 40 A0 C0 24 3C 5A 5A 6A
BA EF 54 E6 50 3E B6 DF 11 87 10 00 1D 09 66 66 5C 92 D2 03 AE 65 86 F3
40 A0 C0 24 3C 5A 5A 6A BA EF 54 E6 50 3E B6 DF 11 87 10 00 1D 09 66 66
5C 00 00 00 00
L00000000000000F000
 000ddaa
 E 0000000000000000
00000PO :i0+0
00/C:\0000000000000000
0000100000oBz0PROGRA~
200|000:oBz*000
00000000000000R00000P0r
0o0g0r0a0m0 0F0i0l0e0s0 
0(0x08060)000@0s0h0e0l0l
03020.0d0l0l0,0-02010801
070000h0100000~={0INT
ERN~100P000:~={*
0000000000000000000000
0I0n0t0e0r0n0e0t0 0E0x0p
0l0o0r0e0r0000b020E 0
:/  0iexplore.exe00F00
0:q:q*0005000000
0000000000000i0e0x0p0l0o
0r0e0.0e0x0e000000d000
000000000-0000000c000
000000zf0000C:\Progr
am Files (x86)\Internet 
Explorer\iexplore.exe00&
0@0"0%0w0i0n0d0i0r0%0\0S
0y0s0t0e0m03020\0i0e040u
0i0n0i0t0.0e0x0e0"0,0-07
03080P0.0.0\0.0.0\0.0.0\
0.0.0\0.0.0\0.0.0\0.0.0\
0.0.0\0.0.0\0.0.0\0P0r0o
0g0r0a0m0 0F0i0l0e0s0 0(
0x08060)0\0I0n0t0e0r0n0e
0t0 0E0x0p0l0o0r0e0r0\0i
0e0x0p0l0o0r0e0.0e0x0e0
0%0H0O0M0E0D0R0I0V0E0%0%
0H0O0M0E0P0A0T0H0%00 0-
0e0x0t0o0f0f000000*00
0000000 00@Z|KJ
00000 000001SP
SU(Ly9K-000 00
00 00000Y0000000000#
000M0i0c0r0o0s0o0f0t0.0I
0n0t0e0r0n0e0t0E0x0p0l0o
0r0e0r0.0D0e0f0a0u0l0t00
00000000001SPSOh
0+'0000000000H000
S0t0a0r0t0 0I0n0t0e0r0n0
e0t0 0E0x0p0l0o0r0e0r0 0
w0i0t0h0o0u0t0 0A0c0t0i0
v0e0X0 0c0o0n0t0r0o0l0s0
 0o0r0 0b0r0o0w0s0e0r0 0
e0x0t0e0n0s0i0o0n0s0.000
00000001SPSXFL8C
&mm0000000000-000S0-
010-050-02010-0905080109
010600040-06020600080209
06020-010507050402080707
070-01000005000000000000
0`00000X0000000svr-dmz
000000000e@$<ZZj
TP>0 ff\e
@$<ZZjTP>0 ff
\0000

HEXDUMP: [Full] [Preview]
Base64:
[Encode [+chunk [+chunk+quotes [Decode


:: Command execute ::

Enter:
 
Select:
 

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c99shell v. 1.0 pre-release build #13 powered by Captain Crunch Security Team | http://ccteam.ru | Generation time: 0.0312 ]--