!C99Shell v. 1.0 pre-release build #13!

Software: Apache. PHP/5.5.15 

uname -a: Windows NT SVR-DMZ 6.1 build 7600 (Windows Server 2008 R2 Enterprise Edition) i586 

SYSTEM 

Safe-mode: OFF (not secure)

C:\Windows\   drwxrwxrwx
Free 4.15 GB of 39.52 GB (10.5%)
Detected drives: [ a ] [ c ] [ d ] [ e ] [ f ]
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     hh.exe (16.5 KB)      -rwxrwxrwx
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
MZ@    !L!This program cannot be run in DOS mode.
$EGGG+GG:GG<GGG.G,GG&GG;GG>GGRichGPEdO[J"     *0Q@ #PP@pXp.textr `.data0@.pdata@ @@.rsrcP"@@.relocLp@@Bk[J([J5[JB+[JMADVAPI32.dllKERNEL32.dllmsvcrt.dllNTDLL.DLL\xxpoxp4x xx0xкx xxxxxxp(xx4xxxx(xpluju|susu`nuDjusuju@Fku{ju4nu nuPxju$#jupujuXO[J`12hhctrl.ocxdoWinMainR]A0ۙ6{%08lX-%04X-%04X-%02X%02X-%02X%02X%02X%02X%02X%02X}CLSID\%s\InprocServer32Software\Policies\Microsoft\Windows\SystemDisableHHDEPRSDS8E    ke/    hh.pdbLD$LL$ SVWH 3HHt    HvWx.HzLL$X3HxHH;wu 77zH _^[LD$SUVWATAUAVAWH(D$3HAMH%Wt Hu HuHt    HvrLLt H$LHLEL$L$3At`HtEAHA s
LLEA
ALHD ELLHuA80HH#HZL$HHxHH;w u@4+H    @4+zL+L,+FA    sQIvKMD$IMA 7Ht&Ll/AAEHtA s
LLEyzuH$HtL(MtM'H(A_A^A]A\_^][LI[Ik VWATAUAVHHH3H$oLE3M!hM!`$IMxHDLH0II8D$HH(l$xH0HH t$pHH|$hH\$`HDHDT$XHDIDD$PDL$HT$@H L$AV(HE3ɉL$8D\$0HD$(H$D$ L$H$+5L$LH$HP    H$H$AE3HHD$  H$H$L$HD$(H$E33҉$DŽ$HD$ us$D$H$uDItI;wEA=3I+HHtB)t AEIHuHuIͺzEuAH$HtDA3H$H3uL$I[@IkHIA^A]A\_^H\$UVWHHH3H$pHd$@E3IAyHE33D$8L\$@H DE3HL\$ uCHL$@HD$8LL$4HD$(HD$0H'E3HD$ Qu|$4u
9|$0u3io1HT$`HL$PLD$PxuJHHD$`E3H+HL$`HHt
t
HH+uHu    H+AzEx\HL$`HHuH HHt4HHHwHtHHHHH$pH3H$HĀ_^]H8vD kLDRHKH8H !HD$ >(H8Ht$H|$ATHd$ HL$@eH%0Hx33H=tH;u ]ڋeu
HhePuQBL%H=H|$8D$0I;suHHtщD$0HH|$8ޅtTUuHH hu    3HH=tH btE3AP3HH8H|$(t$ ? ws?tuj?t? w
HH|$(D$|$A
DEL3H [f=muW=|u Pja?"u 3D$ 5tHH|$(HH|$(T.= u     ̃=u L$IsI{IA\H(MZf9t3OHc HHȁ9PEuA= t= u3v93ytv    9\H rILLH M=u H 83H(H(wH(ffH; uHfuHH(H8csmu,xu&@ = t=!t="t=@u3H(H(H 3H(%L%8HMZf9t3HcH<H39PEu f9QLcA<E3LLA@EXJLEtQ L;r
AL;rAH(E;r3HH(LL VI^t"M+IIHt@$Ѓ3H(%%
3H3H;tBHt<MZf9u*9Q<|%y<sHcA<HH$8PEHEHH$3H$HH@SH 3<Ht(HHtf9H\ufx\tH [H\$WH HOHd$0H2-+H;t HH8vHL$0H\$0DI3DI3HL$8DI3L\$8L3HL#H3-+L;LDLILH\$@H _HL$HH 3LlL\$XE3HT$`HL$XHD$PH|$PtAHD$8HD$HHD$0HD$@HD$(H,HD$ LL$PLD$XHT$`3"H$HH$HHHHOH$HP&     HHD$hHHD$p3\H e    HHĈ%%%@SH EHLAALtA@McPLHcL#IcJHCHHKAt AHLL3IH [EH(MA8HIH(@UH HHHыH ]@UH HH3Ɂ8H ]b2P    td @ G" B    Bi"    "OO20

4
2p  2 p ` 0    B     p`P0, TK4JB p `$"!450p`P$"p#%$,&0$'d%x%%%P%%%%%&&:(&(
(''''''r'^'T(@'.'&''&&&&&&&&&~&p&X&H&:&&h(mRegQueryValueExAnRegQueryValueExW`RegOpenKeyExAaRegOpenKeyExW0RegCloseKeyADVAPI32.dllhFreeLibrarySetProcessDEPPolicy"ExpandEnvironmentStringsALGetProcAddress>LoadLibraryAHeapSetInformationKERNEL32.dllR_vsnprintfq__getmainargsS__C_specific_handlerR_XcptFilter_exit_ismbblead_cexit exit_acmdlnl_initterm_amsg_exit__setusermatherr_commode_fmode__set_app_typemsvcrt.dll0?terminate@@YAXXZSleepjGetStartupInfoWSetUnhandledExceptionFilterGetModuleHandleWQueryPerformanceCounterGetTickCountGetCurrentThreadIdGetCurrentProcessIdGetSystemTimeAsFileTimeTerminateProcessGetCurrentProcessUnhandledExceptionFilter&RtlVirtualUnwindRtlLookupFunctionEntryRtlCaptureContextmemset2-+] f},#d8#lP#t#"O"X'"0B""""]"d#c #l !$#!"#$"A""G"c""i"""8Pxe 8P    h    x                    kUX(Y`h0h\QMUI<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<!-- Copyright (c) Microsoft Corporation -->
<assembly 
    xmlns="urn:schemas-microsoft-com:asm.v1" 
    xmlns:asmv3="urn:schemas-microsoft-com:asm.v3"
    manifestVersion="1.0"
    >
<assemblyIdentity
    version="5.1.0.0"
    processorArchitecture="amd64"
    name="Microsoft.Windows.Help.HH"
    type="win32"
/>
<description>Microsoft HTML Help Executable</description>

<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
    <security>
        <requestedPrivileges>
            <requestedExecutionLevel
                level="asInvoker"
                uiAccess="false"
            />
        </requestedPrivileges>
    </security>
</trustInfo>
    <asmv3:application>
        <asmv3:windowsSettings xmlns="http://schemas.microsoft.com/SMI/2005/WindowsSettings">
            <dpiAware>true</dpiAware>
        </asmv3:windowsSettings>
    </asmv3:application>
</assembly>

( @wwwwwwwx  wwwx  wwwxwwwx   𻻻pwwwwwpp ppp?@888?( p00 w 00w7wpw;p;@7 wwpx;;p330??(0`
ʦ """)))UUUMMMBBB999|PP3f3333f333ff3fffff3f3f̙f3333f3333333333f3333333f3f33ff3f3f3f3333f3333333f3̙33333f333ff3ffffff3f33f3ff3f3f3ffff3fffffffff3fffffff3f̙ffff3ff333f3ff33fff33f3ff̙3f3f3333f333ff3fffff̙̙3̙f̙̙̙3f̙3f3f3333f333ff3fffff3f3f̙3ffffffffff!___www8888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888888880???????  (00\4VS_VERSION_INFO@@?StringFileInfo040904B0LCompanyNameMicrosoft Corporationh FileDescriptionMicrosoft HTML Help Executablel&FileVersion6.1.7600.16385 (win7_rtm.090713-1255)0InternalNameHH 1.41.LegalCopyright Microsoft Corporation. All rights reserved.6OriginalFilenameHH.exe4
ProductNameHTML HelpBProductVersion6.1.7600.16385DVarFileInfo$Translation    b(rSp-oKc/3 5Tk MUIMUIen-USxСء

:: Command execute ::

Enter:
 
Select:
 

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c99shell v. 1.0 pre-release build #13 powered by Captain Crunch Security Team | http://ccteam.ru | Generation time: 0.0156 ]--