shell bypass 403

UnknownSec Shell

C:/Windows/Panther/ [ drwxrwxrwx ]

name : diagwrn.xml
<xml xmlns:s="uuid:BDC6E3F0-6DA3-11d1-A2A3-00AA00C14882"
 xmlns:dt="uuid:C2F41010-65B3-11d1-A29F-00AA00C14882"
 xmlns:rs="urn:schemas-microsoft-com:rowset"
 xmlns:z="#RowsetSchema">
<s:Schema id="RowsetSchema">
<s:ElementType name="row" content="eltOnly" rs:updatable="true">
<s:AttributeType name="Cls" rs:number="0">
<s:datatype dt:type="string"/>
</s:AttributeType>
<s:AttributeType name="Sev" rs:number="1">
<s:datatype dt:type="int"/>
</s:AttributeType>
<s:AttributeType name="Maj" rs:number="2">
<s:datatype dt:type="string"/>
</s:AttributeType>
<s:AttributeType name="Min" rs:number="3">
<s:datatype dt:type="string"/>
</s:AttributeType>
<s:AttributeType name="LN" rs:number="4">
<s:datatype dt:type="int"/>
</s:AttributeType>
<s:AttributeType name="Fil" rs:number="5">
<s:datatype dt:type="string"/>
</s:AttributeType>
<s:AttributeType name="Fun" rs:number="6">
<s:datatype dt:type="string"/>
</s:AttributeType>
<s:AttributeType name="Uid" rs:number="7">
<s:datatype dt:type="int"/>
</s:AttributeType>
<s:AttributeType name="Msg" rs:number="8">
<s:datatype dt:type="string"/>
</s:AttributeType>
<s:AttributeType name="PID" rs:number="9">
<s:datatype dt:type="int"/>
</s:AttributeType>
<s:AttributeType name="TID" rs:number="10">
<s:datatype dt:type="int"/>
</s:AttributeType>
<s:AttributeType name="Con" rs:number="11">
<s:datatype dt:type="string"/>
</s:AttributeType>
<s:AttributeType name="Exe" rs:number="12">
<s:datatype dt:type="string"/>
</s:AttributeType>
<s:AttributeType name="Mod" rs:number="13">
<s:datatype dt:type="string"/>
</s:AttributeType>
<s:AttributeType name="Err" rs:number="14">
<s:datatype dt:type="int"/>
</s:AttributeType>
<s:AttributeType name="MD" rs:number="15">
<s:datatype dt:type="hexBinary"/>
</s:AttributeType>
<s:AttributeType name="DT" rs:number="16">
<s:datatype dt:type="dateTime"/>
</s:AttributeType>
</s:ElementType>
</s:Schema>
<rs:data>
<z:row Cls="D" Sev="50331648" Maj="Def" Min="Def" LN="1205" Fil="" Fun="ActionPlatform::GetValue" Uid="51314688" Msg="ActionPlatform::GetValue: Error from RegQueryValueEx on value SysprepMode under key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Setup\Sysprep; dwRet = 0x2" PID="744" TID="748" Con="" Exe="C:\Windows\system32\oobe\setup.exe" Mod="WinSetup.dll" Err="0" MD="" DT="2025-05-10T19:17:01"/>
<z:row Cls="D" Sev="50331648" Maj="Def" Min="Def" LN="1623" Fil="" Fun="SpecializeBcdStore" Uid="51249152" Msg="SpecializeBcdStore: The /detecthal switch could not be removed because it was not found." PID="744" TID="748" Con="" Exe="C:\Windows\system32\oobe\setup.exe" Mod="spbcd.dll" Err="0" MD="" DT="2025-05-10T19:17:11"/>
<z:row Cls="D" Sev="50331648" Maj="Def" Min="Def" LN="405" Fil="" Fun="UnattendLogWV" Uid="50331648" Msg="[setup.exe] WofEnumWimEntries failed: 0x80070001." PID="744" TID="748" Con="" Exe="C:\Windows\system32\oobe\setup.exe" Mod="reagent.dll" Err="0" MD="" DT="2025-05-10T19:17:11"/>
<z:row Cls="D" Sev="50331648" Maj="Def" Min="Def" LN="405" Fil="" Fun="UnattendLogWV" Uid="50331648" Msg="[setup.exe] WofEnumWimEntries failed: 0x80070001." PID="744" TID="748" Con="" Exe="C:\Windows\system32\oobe\setup.exe" Mod="reagent.dll" Err="0" MD="" DT="2025-05-10T19:17:12"/>
<z:row Cls="D" Sev="50331648" Maj="Def" Min="Def" LN="797" Fil="" Fun="ActionPlatform::DeleteValue" Uid="51314688" Msg="ActionPlatform::DeleteValue: Registry value DecompressOverride to be deleted does not exist under key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SideBySide" PID="744" TID="748" Con="" Exe="C:\Windows\system32\oobe\setup.exe" Mod="WinSetup.dll" Err="0" MD="" DT="2025-05-10T19:17:17"/>
<z:row Cls="D" Sev="50331648" Maj="Def" Min="Def" LN="797" Fil="" Fun="ActionPlatform::DeleteValue" Uid="51314688" Msg="ActionPlatform::DeleteValue: Registry value SysprepMode to be deleted does not exist under key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Setup\Sysprep" PID="744" TID="748" Con="" Exe="C:\Windows\system32\oobe\setup.exe" Mod="WinSetup.dll" Err="0" MD="" DT="2025-05-10T19:17:17"/>
<z:row Cls="D" Sev="50331648" Maj="Def" Min="Def" LN="618" Fil="" Fun="RunRegistryDlls" Uid="51314831" Msg="RunRegistryDlls:Registry key is either empty or malformed: SOFTWARE\Microsoft\Windows\CurrentVersion\Setup\SysPrepExternal\Specialize" PID="744" TID="748" Con="" Exe="C:\Windows\system32\oobe\setup.exe" Mod="WinSetup.dll" Err="0" MD="" DT="2025-05-10T19:17:17"/>
<z:row Cls="D" Sev="50331648" Maj="Def" Min="Def" LN="154" Fil="" Fun="Callback_SystemRestore" Uid="50725740" Msg="Callback_SystemRestore: Failed to set System Restore state. GLE is [126]" PID="744" TID="748" Con="" Exe="C:\Windows\system32\oobe\setup.exe" Mod="WinSetup.dll" Err="126" MD="" DT="2025-05-10T19:17:28"/>
</rs:data>
</xml>

© 2026 UnknownSec