Windows NT IZOXMIX7871CBCZ 6.3 build 9600 (Windows Server 2012 R2 Datacenter Edition) AMD64
Apache/2.4.58 (Win64) OpenSSL/3.1.3 PHP/8.2.12
: 172.23.17.241 | : 3.137.175.166
Cant Read [ /etc/named.conf ]
8.2.12
Administrator
www.github.com/MadExploits
Terminal
AUTO ROOT
Adminer
Backdoor Destroyer
Linux Exploit
Lock Shell
Lock File
Create User
CREATE RDP
PHP Mailer
BACKCONNECT
UNLOCK SHELL
HASH IDENTIFIER
CPANEL RESET
CREATE WP USER
README
+ Create Folder
+ Create File
[ C ]
C: /
Users /
Administrator /
AppData /
Local /
Temp /
[ HOME SHELL ]
Name
Size
Permission
Action
.sessions
[ DIR ]
drwxrwxrwx
2
[ DIR ]
drwxrwxrwx
.mad-root
0
B
-rw-rw-rw-
chrome_installer.log
1.12
KB
-rw-rw-rw-
dd_vcredist_amd64_202501131340...
16.05
KB
-rw-rw-rw-
dd_vcredist_amd64_202501131340...
125.2
KB
-rw-rw-rw-
dd_vcredist_amd64_202501131340...
131.02
KB
-rw-rw-rw-
phpFB82.tmp
61.12
KB
-rw-rw-rw-
pwnkit
10.99
KB
-rw-rw-rw-
Delete
Unzip
Zip
${this.title}
Close
Code Editor : dd_vcredist_amd64_20250113134013.log
[0308:0FBC][2025-01-13T13:40:13]i001: Burn v3.10.4.4718, Windows v6.3 (Build 9600: Service Pack 0), path: C:\Windows\Temp\{9C67BFBB-664A-439D-9704-1760DE1ADF72}\.cr\VCREDI~1.EXE [0308:0FBC][2025-01-13T13:40:13]i009: Command Line: '-burn.clean.room=C:\xampp\vcredist\VCREDI~1.EXE -burn.filehandle.attached=296 -burn.filehandle.self=304 /q' [0308:0FBC][2025-01-13T13:40:13]i000: Setting string variable 'WixBundleOriginalSource' to value 'C:\xampp\vcredist\VCREDI~1.EXE' [0308:0FBC][2025-01-13T13:40:13]i000: Setting string variable 'WixBundleOriginalSourceFolder' to value 'C:\xampp\vcredist\' [0308:0FBC][2025-01-13T13:40:13]i000: Setting string variable 'WixBundleLog' to value 'C:\Users\ADMINI~1\AppData\Local\Temp\dd_vcredist_amd64_20250113134013.log' [0308:0FBC][2025-01-13T13:40:13]i000: Setting string variable 'WixBundleName' to value 'Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29325' [0308:0FBC][2025-01-13T13:40:13]i000: Setting string variable 'WixBundleManufacturer' to value 'Microsoft Corporation' [0308:0DD4][2025-01-13T13:40:14]i000: Setting version variable 'WixBundleFileVersion' to value '14.28.29325.2' [0308:0FBC][2025-01-13T13:40:14]i100: Detect begin, 10 packages [0308:0FBC][2025-01-13T13:40:14]i000: Setting version variable 'windows_uCRT_DetectKey' to value '10.0.14393.2990' [0308:0FBC][2025-01-13T13:40:14]i000: Setting numeric variable 'windows_uCRT_DetectKeyExists' to value 1 [0308:0FBC][2025-01-13T13:40:14]i052: Condition '(VersionNT = v6.3 AND NOT VersionNT64) AND (windows_uCRT_DetectKeyExists AND windows_uCRT_DetectKey >= v10.0.10240.0)' evaluates to false. [0308:0FBC][2025-01-13T13:40:14]i052: Condition '(VersionNT = v6.3 AND VersionNT64) AND (windows_uCRT_DetectKeyExists AND windows_uCRT_DetectKey >= v10.0.10240.0)' evaluates to true. [0308:0FBC][2025-01-13T13:40:14]i052: Condition '(VersionNT = v6.2 AND NOT VersionNT64) AND (windows_uCRT_DetectKeyExists AND windows_uCRT_DetectKey >= v10.0.10240.0)' evaluates to false. [0308:0FBC][2025-01-13T13:40:14]i052: Condition '(VersionNT = v6.2 AND VersionNT64) AND (windows_uCRT_DetectKeyExists AND windows_uCRT_DetectKey >= v10.0.10240.0)' evaluates to false. [0308:0FBC][2025-01-13T13:40:14]i052: Condition '(VersionNT = v6.1 AND NOT VersionNT64) AND (windows_uCRT_DetectKeyExists AND windows_uCRT_DetectKey >= v10.0.10240.0)' evaluates to false. [0308:0FBC][2025-01-13T13:40:14]i052: Condition '(VersionNT = v6.1 AND VersionNT64) AND (windows_uCRT_DetectKeyExists AND windows_uCRT_DetectKey >= v10.0.10240.0)' evaluates to false. [0308:0FBC][2025-01-13T13:40:14]i052: Condition '(VersionNT = v6.0 AND NOT VersionNT64) AND (windows_uCRT_DetectKeyExists AND windows_uCRT_DetectKey >= v10.0.10240.0)' evaluates to false. [0308:0FBC][2025-01-13T13:40:14]i052: Condition '(VersionNT = v6.0 AND VersionNT64) AND (windows_uCRT_DetectKeyExists AND windows_uCRT_DetectKey >= v10.0.10240.0)' evaluates to false. [0308:0FBC][2025-01-13T13:40:14]i101: Detected package: Windows81_x86, state: Absent, cached: None [0308:0FBC][2025-01-13T13:40:14]i101: Detected package: Windows81_x64, state: Present, cached: None [0308:0FBC][2025-01-13T13:40:14]i101: Detected package: Windows8_x86, state: Absent, cached: None [0308:0FBC][2025-01-13T13:40:14]i101: Detected package: Windows8_x64, state: Absent, cached: None [0308:0FBC][2025-01-13T13:40:14]i101: Detected package: Windows7_MSU_x86, state: Absent, cached: None [0308:0FBC][2025-01-13T13:40:14]i101: Detected package: Windows7_MSU_x64, state: Absent, cached: None [0308:0FBC][2025-01-13T13:40:14]i101: Detected package: WindowsVista_MSU_x86, state: Absent, cached: None [0308:0FBC][2025-01-13T13:40:14]i101: Detected package: WindowsVista_MSU_x64, state: Absent, cached: None [0308:0FBC][2025-01-13T13:40:14]i101: Detected package: vcRuntimeMinimum_x64, state: Absent, cached: None [0308:0FBC][2025-01-13T13:40:14]i101: Detected package: vcRuntimeAdditional_x64, state: Absent, cached: None [0308:0FBC][2025-01-13T13:40:14]i052: Condition 'VersionNT64 >= v6.0 OR (VersionNT64 = v5.2 AND ServicePackLevel >= 1)' evaluates to true. [0308:0FBC][2025-01-13T13:40:14]i199: Detect complete, result: 0x0 [0308:0FBC][2025-01-13T13:40:14]i200: Plan begin, 10 packages, action: Install [0308:0FBC][2025-01-13T13:40:14]i052: Condition 'VersionNT = v6.3 AND NOT VersionNT64' evaluates to false. [0308:0FBC][2025-01-13T13:40:14]w321: Skipping dependency registration on package with no dependency providers: Windows81_x86 [0308:0FBC][2025-01-13T13:40:14]i052: Condition 'VersionNT = v6.3 AND VersionNT64' evaluates to true. [0308:0FBC][2025-01-13T13:40:14]w321: Skipping dependency registration on package with no dependency providers: Windows81_x64 [0308:0FBC][2025-01-13T13:40:14]i052: Condition 'VersionNT = v6.2 AND NOT VersionNT64' evaluates to false. [0308:0FBC][2025-01-13T13:40:14]w321: Skipping dependency registration on package with no dependency providers: Windows8_x86 [0308:0FBC][2025-01-13T13:40:14]i052: Condition 'VersionNT = v6.2 AND VersionNT64' evaluates to false. [0308:0FBC][2025-01-13T13:40:14]w321: Skipping dependency registration on package with no dependency providers: Windows8_x64 [0308:0FBC][2025-01-13T13:40:14]i052: Condition 'VersionNT = v6.1 AND NOT VersionNT64' evaluates to false. [0308:0FBC][2025-01-13T13:40:14]w321: Skipping dependency registration on package with no dependency providers: Windows7_MSU_x86 [0308:0FBC][2025-01-13T13:40:14]i052: Condition 'VersionNT = v6.1 AND VersionNT64' evaluates to false. [0308:0FBC][2025-01-13T13:40:14]w321: Skipping dependency registration on package with no dependency providers: Windows7_MSU_x64 [0308:0FBC][2025-01-13T13:40:14]i052: Condition 'VersionNT = v6.0 AND NOT VersionNT64' evaluates to false. [0308:0FBC][2025-01-13T13:40:14]w321: Skipping dependency registration on package with no dependency providers: WindowsVista_MSU_x86 [0308:0FBC][2025-01-13T13:40:14]i052: Condition 'VersionNT = v6.0 AND VersionNT64' evaluates to false. [0308:0FBC][2025-01-13T13:40:14]w321: Skipping dependency registration on package with no dependency providers: WindowsVista_MSU_x64 [0308:0FBC][2025-01-13T13:40:14]i052: Condition '(VersionNT64)' evaluates to true. [0308:0FBC][2025-01-13T13:40:14]i000: Setting string variable 'WixBundleRollbackLog_vcRuntimeMinimum_x64' to value 'C:\Users\ADMINI~1\AppData\Local\Temp\dd_vcredist_amd64_20250113134013_000_vcRuntimeMinimum_x64_rollback.log' [0308:0FBC][2025-01-13T13:40:14]i000: Setting string variable 'WixBundleLog_vcRuntimeMinimum_x64' to value 'C:\Users\ADMINI~1\AppData\Local\Temp\dd_vcredist_amd64_20250113134013_000_vcRuntimeMinimum_x64.log' [0308:0FBC][2025-01-13T13:40:14]i052: Condition '(VersionNT64)' evaluates to true. [0308:0FBC][2025-01-13T13:40:14]i000: Setting string variable 'WixBundleRollbackLog_vcRuntimeAdditional_x64' to value 'C:\Users\ADMINI~1\AppData\Local\Temp\dd_vcredist_amd64_20250113134013_001_vcRuntimeAdditional_x64_rollback.log' [0308:0FBC][2025-01-13T13:40:14]i000: Setting string variable 'WixBundleLog_vcRuntimeAdditional_x64' to value 'C:\Users\ADMINI~1\AppData\Local\Temp\dd_vcredist_amd64_20250113134013_001_vcRuntimeAdditional_x64.log' [0308:0FBC][2025-01-13T13:40:14]i201: Planned package: Windows81_x86, state: Absent, default requested: Absent, ba requested: Absent, execute: None, rollback: None, cache: No, uncache: No, dependency: None [0308:0FBC][2025-01-13T13:40:14]i201: Planned package: Windows81_x64, state: Present, default requested: Present, ba requested: Present, execute: None, rollback: None, cache: No, uncache: No, dependency: None [0308:0FBC][2025-01-13T13:40:14]i201: Planned package: Windows8_x86, state: Absent, default requested: Absent, ba requested: Absent, execute: None, rollback: None, cache: No, uncache: No, dependency: None [0308:0FBC][2025-01-13T13:40:14]i201: Planned package: Windows8_x64, state: Absent, default requested: Absent, ba requested: Absent, execute: None, rollback: None, cache: No, uncache: No, dependency: None [0308:0FBC][2025-01-13T13:40:14]i201: Planned package: Windows7_MSU_x86, state: Absent, default requested: Absent, ba requested: Absent, execute: None, rollback: None, cache: No, uncache: No, dependency: None [0308:0FBC][2025-01-13T13:40:14]i201: Planned package: Windows7_MSU_x64, state: Absent, default requested: Absent, ba requested: Absent, execute: None, rollback: None, cache: No, uncache: No, dependency: None [0308:0FBC][2025-01-13T13:40:14]i201: Planned package: WindowsVista_MSU_x86, state: Absent, default requested: Absent, ba requested: Absent, execute: None, rollback: None, cache: No, uncache: No, dependency: None [0308:0FBC][2025-01-13T13:40:14]i201: Planned package: WindowsVista_MSU_x64, state: Absent, default requested: Absent, ba requested: Absent, execute: None, rollback: None, cache: No, uncache: No, dependency: None [0308:0FBC][2025-01-13T13:40:14]i201: Planned package: vcRuntimeMinimum_x64, state: Absent, default requested: Present, ba requested: Present, execute: Install, rollback: Uninstall, cache: Yes, uncache: No, dependency: Register [0308:0FBC][2025-01-13T13:40:14]i201: Planned package: vcRuntimeAdditional_x64, state: Absent, default requested: Present, ba requested: Present, execute: Install, rollback: Uninstall, cache: Yes, uncache: No, dependency: Register [0308:0FBC][2025-01-13T13:40:14]i299: Plan complete, result: 0x0 [0308:0FBC][2025-01-13T13:40:14]i300: Apply begin [0308:0FBC][2025-01-13T13:40:14]i010: Launching elevated engine process. [0308:0FBC][2025-01-13T13:40:15]i011: Launched elevated engine process. [0308:0FBC][2025-01-13T13:40:15]i012: Connected to elevated engine. [052C:03BC][2025-01-13T13:40:15]i358: Pausing automatic updates. [052C:03BC][2025-01-13T13:40:20]i359: Paused automatic updates. [052C:03BC][2025-01-13T13:40:20]i360: Creating a system restore point. [052C:03BC][2025-01-13T13:40:20]i362: System restore disabled, system restore point not created. [052C:03BC][2025-01-13T13:40:20]i370: Session begin, registration key: SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{33628a12-6787-4b9f-95a1-92449f69fae0}, options: 0x7, disable resume: No [052C:03BC][2025-01-13T13:40:20]i000: Caching bundle from: 'C:\Windows\Temp\{8F364ECF-BC9E-4A0F-BD75-C1660B5E90F1}\.be\VC_redist.x64.exe' to: 'C:\ProgramData\Package Cache\{33628a12-6787-4b9f-95a1-92449f69fae0}\VC_redist.x64.exe' [052C:03BC][2025-01-13T13:40:20]i320: Registering bundle dependency provider: VC,redist.x64,amd64,14.28,bundle, version: 14.28.29325.2 [052C:03BC][2025-01-13T13:40:20]i371: Updating session, registration key: SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{33628a12-6787-4b9f-95a1-92449f69fae0}, resume: Active, restart initiated: No, disable resume: No [052C:093C][2025-01-13T13:40:20]i305: Verified acquired payload: vcRuntimeMinimum_x64 at path: C:\ProgramData\Package Cache\.unverified\vcRuntimeMinimum_x64, moving to: C:\ProgramData\Package Cache\{7D0362D5-C699-4403-BC09-0C1DAD1D93AB}v14.28.29325\packages\vcRuntimeMinimum_amd64\vc_runtimeMinimum_x64.msi. [052C:093C][2025-01-13T13:40:20]i305: Verified acquired payload: cab5046A8AB272BF37297BB7928664C9503 at path: C:\ProgramData\Package Cache\.unverified\cab5046A8AB272BF37297BB7928664C9503, moving to: C:\ProgramData\Package Cache\{7D0362D5-C699-4403-BC09-0C1DAD1D93AB}v14.28.29325\packages\vcRuntimeMinimum_amd64\cab1.cab. [052C:093C][2025-01-13T13:40:20]i305: Verified acquired payload: vcRuntimeAdditional_x64 at path: C:\ProgramData\Package Cache\.unverified\vcRuntimeAdditional_x64, moving to: C:\ProgramData\Package Cache\{26AF0C35-55EC-4025-8D83-349E8FB1419F}v14.28.29325\packages\vcRuntimeAdditional_amd64\vc_runtimeAdditional_x64.msi. [052C:093C][2025-01-13T13:40:21]i305: Verified acquired payload: cab2C04DDC374BD96EB5C8EB8208F2C7C92 at path: C:\ProgramData\Package Cache\.unverified\cab2C04DDC374BD96EB5C8EB8208F2C7C92, moving to: C:\ProgramData\Package Cache\{26AF0C35-55EC-4025-8D83-349E8FB1419F}v14.28.29325\packages\vcRuntimeAdditional_amd64\cab1.cab. [052C:03BC][2025-01-13T13:40:21]i301: Applying execute package: vcRuntimeMinimum_x64, action: Install, path: C:\ProgramData\Package Cache\{7D0362D5-C699-4403-BC09-0C1DAD1D93AB}v14.28.29325\packages\vcRuntimeMinimum_amd64\vc_runtimeMinimum_x64.msi, arguments: ' MSIFASTINSTALL="7" NOVSUI="1"' [0308:0FBC][2025-01-13T13:40:23]i319: Applied execute package: vcRuntimeMinimum_x64, result: 0x0, restart: None [052C:03BC][2025-01-13T13:40:23]i325: Registering dependency: {33628a12-6787-4b9f-95a1-92449f69fae0} on package provider: Microsoft.VS.VC_RuntimeMinimumVSU_amd64,v14, package: vcRuntimeMinimum_x64 [052C:03BC][2025-01-13T13:40:23]i301: Applying execute package: vcRuntimeAdditional_x64, action: Install, path: C:\ProgramData\Package Cache\{26AF0C35-55EC-4025-8D83-349E8FB1419F}v14.28.29325\packages\vcRuntimeAdditional_amd64\vc_runtimeAdditional_x64.msi, arguments: ' MSIFASTINSTALL="7" NOVSUI="1"' [0308:0FBC][2025-01-13T13:40:23]i319: Applied execute package: vcRuntimeAdditional_x64, result: 0x0, restart: None [052C:03BC][2025-01-13T13:40:23]i325: Registering dependency: {33628a12-6787-4b9f-95a1-92449f69fae0} on package provider: Microsoft.VS.VC_RuntimeAdditionalVSU_amd64,v14, package: vcRuntimeAdditional_x64 [052C:03BC][2025-01-13T13:40:23]i372: Session end, registration key: SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{33628a12-6787-4b9f-95a1-92449f69fae0}, resume: ARP, restart: None, disable resume: No [052C:03BC][2025-01-13T13:40:23]i371: Updating session, registration key: SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{33628a12-6787-4b9f-95a1-92449f69fae0}, resume: ARP, restart initiated: No, disable resume: No [0308:0FBC][2025-01-13T13:40:23]i399: Apply complete, result: 0x0, restart: None, ba requested restart: No [0308:0FBC][2025-01-13T13:40:23]i500: Shutting down, exit code: 0x0 [0308:0FBC][2025-01-13T13:40:23]i410: Variable: SystemFolder = C:\Windows\system32\ [0308:0FBC][2025-01-13T13:40:23]i410: Variable: VersionNT = 6.3.0.0 [0308:0FBC][2025-01-13T13:40:23]i410: Variable: VersionNT64 = 6.3.0.0 [0308:0FBC][2025-01-13T13:40:23]i410: Variable: windows_uCRT_DetectKey = 10.0.14393.2990 [0308:0FBC][2025-01-13T13:40:23]i410: Variable: windows_uCRT_DetectKeyExists = 1 [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleAction = 5 [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleElevated = 1 [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleFileVersion = 14.28.29325.2 [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleInstalled = 0 [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleLog = C:\Users\ADMINI~1\AppData\Local\Temp\dd_vcredist_amd64_20250113134013.log [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleLog_vcRuntimeAdditional_x64 = C:\Users\ADMINI~1\AppData\Local\Temp\dd_vcredist_amd64_20250113134013_001_vcRuntimeAdditional_x64.log [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleLog_vcRuntimeMinimum_x64 = C:\Users\ADMINI~1\AppData\Local\Temp\dd_vcredist_amd64_20250113134013_000_vcRuntimeMinimum_x64.log [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleManufacturer = Microsoft Corporation [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleName = Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29325 [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleOriginalSource = C:\xampp\vcredist\VCREDI~1.EXE [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleOriginalSourceFolder = C:\xampp\vcredist\ [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleProviderKey = VC,redist.x64,amd64,14.28,bundle [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleRollbackLog_vcRuntimeAdditional_x64 = C:\Users\ADMINI~1\AppData\Local\Temp\dd_vcredist_amd64_20250113134013_001_vcRuntimeAdditional_x64_rollback.log [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleRollbackLog_vcRuntimeMinimum_x64 = C:\Users\ADMINI~1\AppData\Local\Temp\dd_vcredist_amd64_20250113134013_000_vcRuntimeMinimum_x64_rollback.log [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleSourceProcessFolder = C:\xampp\vcredist\ [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleSourceProcessPath = C:\xampp\vcredist\VCREDI~1.EXE [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleTag = [0308:0FBC][2025-01-13T13:40:23]i410: Variable: WixBundleVersion = 14.28.29325.2 [0308:0FBC][2025-01-13T13:40:23]i007: Exit code: 0x0, restarting: No
Close