Software: Apache. PHP/5.5.15 uname -a: Windows NT SVR-DMZ 6.1 build 7600 (Windows Server 2008 R2 Enterprise Edition) i586 SYSTEM Safe-mode: OFF (not secure) C:\Windows\Temp\ drwxrwxrwx |
Viewing file: reqproc_193496713.log (6.24 KB) -rw-rw-rw- Select action/file-type: (+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) | ReadFile the pipe for req_info Total bytes read for req_info=20 req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3 Reading new request format from the pipe calling ReadFile... Total bytes read by ReadFile=18528 pRequest->sprvm_rexec_info.sprvm_info_versio = 3 pRequest->sprvm_rexec_req_msg_cmd = sprvmGetInfo pRequest->sprvm_rexec_req_msg_num_args = 0 pRequest->sprvm_rexec_req_msg_arg = pRequest->sprvm_rexec_req_msg_num_envs = 0 09/16/10 16:20:14 Received a request from client sprvmGetInfo writing < > ExeStat 0, Category 0 After call to WriteFile. totalWritten=18768, cbWritten=18768 Failure in WriteFile [234] More data is available. ReadFile the pipe for req_info Total bytes read for req_info=20 req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3 Reading new request format from the pipe calling ReadFile... Total bytes read by ReadFile=26724 pRequest->sprvm_rexec_info.sprvm_info_versio = 3 pRequest->sprvm_rexec_req_msg_cmd = C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe pRequest->sprvm_rexec_req_msg_num_args = 2 pRequest->sprvm_rexec_req_msg_arg = -getspaceavail pRequest->sprvm_rexec_req_msg_arg[0] = -getspaceavail pRequest->sprvm_rexec_req_msg_arg[1] = C:\Users\ADMINI~1\AppData\Local\Temp\1\ pRequest->sprvm_rexec_req_msg_num_envs = 0 09/16/10 16:20:14 Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe args[0] = -getspaceavail args[1] = C:\Users\ADMINI~1\AppData\Local\Temp\1\ ---Started new thread--- 09/16/10 16:20:14 Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe Exe: exectask.exe, Path: C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\ args[0] = -getspaceavail args[1] = C:\Users\ADMINI~1\AppData\Local\Temp\1\ About to call spawn with cmd [C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe] writing < <CV_VAL>23070068736</CV_VAL><CV_VRES>0</CV_VRES><CV_LOG>Exectask:getspaceavail success</CV_LOG><CV_ERES>0</CV_ERES> > ExeStat 0, Category 0 After call to WriteFile. totalWritten=67920, cbWritten=67920 ReadFile the pipe for req_info Total bytes read for req_info=20 req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3 Reading new request format from the pipe calling ReadFile... Total bytes read by ReadFile=26724 pRequest->sprvm_rexec_info.sprvm_info_versio = 3 pRequest->sprvm_rexec_req_msg_cmd = C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe pRequest->sprvm_rexec_req_msg_num_args = 1 pRequest->sprvm_rexec_req_msg_arg = -getver pRequest->sprvm_rexec_req_msg_arg[0] = -getver pRequest->sprvm_rexec_req_msg_num_envs = 0 09/16/10 16:21:08 Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe args[0] = -getver ---Started new thread--- 09/16/10 16:21:08 Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe Exe: exectask.exe, Path: C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\ args[0] = -getver About to call spawn with cmd [C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe] writing < <CV_VRES>0</CV_VRES><CV_VAL>11.2.0.1.0.03_25_10</CV_VAL><CV_ERES>0</CV_ERES> > ExeStat 0, Category 0 After call to WriteFile. totalWritten=67920, cbWritten=67920 ReadFile the pipe for req_info Total bytes read for req_info=20 req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3 Reading new request format from the pipe calling ReadFile... Total bytes read by ReadFile=26724 pRequest->sprvm_rexec_info.sprvm_info_versio = 3 pRequest->sprvm_rexec_req_msg_cmd = C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe pRequest->sprvm_rexec_req_msg_num_args = 1 pRequest->sprvm_rexec_req_msg_arg = -getmemory pRequest->sprvm_rexec_req_msg_arg[0] = -getmemory pRequest->sprvm_rexec_req_msg_num_envs = 0 09/16/10 16:21:09 Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe args[0] = -getmemory ---Started new thread--- 09/16/10 16:21:09 Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe Exe: exectask.exe, Path: C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\ args[0] = -getmemory About to call spawn with cmd [C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe] writing < <CV_VAL>4289658880</CV_VAL><CV_VRES>0</CV_VRES><CV_LOG>Exectask: Memory size retrieval was successful</CV_LOG><CV_ERES>0</CV_ERES> > ExeStat 0, Category 0 After call to WriteFile. totalWritten=67920, cbWritten=67920 ReadFile the pipe for req_info Total bytes read for req_info=20 req_msg.sprvm_rexec_info.sprvm_info_version=3, SPRVM_VERSION=3 Reading new request format from the pipe calling ReadFile... Total bytes read by ReadFile=26724 pRequest->sprvm_rexec_info.sprvm_info_versio = 3 pRequest->sprvm_rexec_req_msg_cmd = C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe pRequest->sprvm_rexec_req_msg_num_args = 1 pRequest->sprvm_rexec_req_msg_arg = -getarchitecture pRequest->sprvm_rexec_req_msg_arg[0] = -getarchitecture pRequest->sprvm_rexec_req_msg_num_envs = 0 09/16/10 16:21:10 Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe args[0] = -getarchitecture ---Started new thread--- 09/16/10 16:21:10 Received a request from client C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe Exe: exectask.exe, Path: C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\ args[0] = -getarchitecture About to call spawn with cmd [C:\Users\ADMINI~1\AppData\Local\Temp\1\CVU_11.2.0.1.0_Administrator\exectask.exe] writing < <CV_VRES>0</CV_VRES><CV_VAL>64-bit</CV_VAL><CV_LOG>Exectask: Architecture retrieval was successful</CV_LOG><CV_ERES>0</CV_ERES> > ExeStat 0, Category 0 After call to WriteFile. totalWritten=67920, cbWritten=67920 |
:: Command execute :: | |
--[ c99shell v. 1.0 pre-release build #13 powered by Captain Crunch Security Team | http://ccteam.ru | Generation time: 0.0468 ]-- |