!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/usr/sbin/   drwxr-xr-x
Free 52.29 GB of 127.8 GB (40.91%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     rpc.svcgssd (22.04 KB)      -rwxr-xr-x
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
ELF`4S4 (444444|M|MPPP EPPPHHH  PtdHHHQtd/lib/ld-linux.so.2GNU	G !@)GJOTqOA|CEKqXF/Bj|X;Izg
+=f " rv`vX2L2fPPfvW}@PD([>0@T:sIZ>F:c+]Uk__!FLLzV<sm+iE9X:aBoZ"KYdR R5T?R(<
64?
librpcsecgss.so.2__gmon_start___Jv_RegisterClasses_fini_initauthgss_set_debug_levellibgssapi.so.2gss_release_namegss_acquire_credgss_free_lucid_sec_contextgss_release_buffergss_delete_sec_contextgss_nt_service_namegss_export_lucid_sec_contextgss_accept_sec_contextgss_indicate_mechsgss_display_namegss_release_oid_setgss_display_statusgss_import_namelibdl.so.2libnfsidmap.so.0nfs4_gss_princ_to_grouplistnfs4_init_name_mappingnfs4_gss_princ_to_idslibldap-2.3.so.0libgssapi_krb5.so.2libkrb5.so.3libk5crypto.so.3libcom_err.so.2libc.so.6_IO_stdin_usedfflushexitstrrchrpipeclosedirsignalforkreallocabortcallocstrlenopenlogmemset__errno_locationchdirread__syslog_chkgetoptdup2poll__fprintf_chkfputcfputsmemcpyfclose__strtol_internal__vsnprintf_chkmallocopendir__ctype_b_locstderr__snprintf_chkdupfilenofwrite__memcpy_chkreaddir64__ctype_toupper_loc__cxa_finalizesetsidfopen64__strcat_chkstrerror__libc_start_maindirfdsysconffree__stack_chk_fail_edata__bss_start_endkrb5oidgssd_credslibgssapi_CITI_2GLIBC_2.1.3GLIBC_2.4GLIBC_2.2GLIBC_2.3GLIBC_2.3.4GLIBC_2.1GLIBC_2.0	Z R(
&+si		7ii
Cii
Mii
Wti	aii
mii
wP(Q8QDQhRpRRRR,Q0Q
4Q*<Q:@QCTQXQ\Q`QdQhQlQpQtQ	xQ
|QQQQQQQQQQQQQQQQQQQQQ Q!Q"Q#Q$Q%Q&Q'Q(Q)Q+Q,Q-R.R/R0R1R2R3R4R5 R6$R7(R8,R90R;4R<8R=<R>@R?DR@HRALRBPRCTRDXRE\RFU4/hhhhh  h($h0(h8p,h@`0hHP4hP@8hX0<h` @hhDhpHhxLhPhThXh\h`hdhhhplh`phPth@xh0|h hhhhhhhh h(h0h8ph@`hHPhP@hX0h` hhhphxhhhhhhhhph`hPh@h0h hhhhhh1^PTR"=P(PQV$ÐUS[ä=tX[ÐUVS~=|uWt$ )px9vxx9wƃ|[^]ÍUS.<tt$҃[]Ë$ÐU]M÷<u};uy9҉ыpt(D$$2	]u}]ËED$E$ߐU8]uΉ}].<E܍Q9w9sf]u}]ËE܉Fvuq9w9wщEAU܉2U9rET$4$D$U܋E1뢍'UWVSÝ;E}E$EeE1`D$E؍U܉D$EU$D$D$u؋tPD$D$$D$$Ue3Č[^_]ËFtiDD$$nE؋MD$E$D$1tt$D$$+`EEEEED$$G,EԍQ9‰E9
FAEE9EU;UAUAEUԋU99EEAUEPUPUPEQUEԋE99UF AUԍQ ;Uq9UhF$AA$EE9EUM;UDFA UA(;EUԋVU&9EQ$EԋUU̍Q,;U9EA(ЉU9EED$D$A$D$EEԋF,D$F($D$D$AF(EF,$ED$EEtkMV0ɉUMt2EEMU
U
EEM9Mu܍UԉUUMEE$fD$$Gt$oE$QT$D$E܉D$$|D$$/T$D$E܉D$$<$E$UN(E,E1+G_U(])6uu}}E|$4$u
Etu,D$$f]u}]Ít&|$4$1UWVSEt6u}EEeE1EED$E|D$EEEEE|$D$t$E$EEEED$||$}D$<$D$ED$~uzED$E$D$ED$dD$KMu4UtE<$D$bEe3Ĝ[^_]ÍvED$E$2븋EuD$D$D$D$D$4$Nt$u҉D$D$D$D$4$cub"fUX]E÷4uu}E$	EED$E̋4$D$ED$t7T$D$ED$$1]u}]Ðt&}4$D$D$D$ED$D$D$D$@uẺ<$D$[1댋t$D$ED$$+E؉EЉD$ED$<$D$uE$D$E؉D$D$"EЉ<$D$GhU8]Ef73u}9}
]u}]Í<$oUUT$UD$D$)T$t$$.x9~J<$.|8
utU<$D$D$D$<$a]D$D$<$u|$D$D$$US^/2UE҉uED$D$$[]ÐUWVUE28xUEEt. tE>A<v<EEu҅~\ UF:U^_]Ít&\uă~/ƒ80G0A0\WGbU:U^_]ÍUWVUE8҉Ux)2MEɉ„U
U^_]Í&\OGxUE„~EEEU
UЃ'D0U
D:'L0L:mƒ}EmuE)ELE9+ "v'UUM~
*]Ít&UWVS,E/0> u
> t<\tnE tE
t@E9E\NUΈEU9뷃> t}7EE,[^_]À~xuVUEEUM|NxMIHMEE9E
0EE؃0	}EE}NEFЈEӋEԉUDP}7}3VˆUUDB}7FEDB}7FN}܃0	V0	t&u< <
Et&M<7;M؋7&Uh]Ê-eE1Euu}}D$2t$$~}Ue3u>]u}]tED$D$D$4$‹E8u1t&U],uu$
t$4$ZD$$h]u]Í&'U(]EÇ,}}uD$$|$t$|$t$$]u}]ÐU8E]V',}D$EuE D$E썻D$E}#$E<$D$D$E)D$E|$4$D$ )D$E)Ƅ#t$D$$<]u}]
U8]EW+u}D$ED$E$u#E 7E4$D$D$E)D$Et$<$D$ )D$E)Ƅ#|$D$$s]u}]ÍU(]E×*uu}}D$D$D$D$D$$9~)]u}]ÍUWVSEV'*u"$UMUD$MD$E$HRMD$U$PtuMM)D$D$E$~WƋU8
uMD$Ut$$D$(D$[^_]Ã1[^_]6E$ID$U|$D$D$$1[^_]Nj$D$t$D$뿐USÿ($\D$X[]fUSÏ(E$D$zD$!$9t&L$qUH]o@(Mu}9qEEEEE̋Ẻt$<$D$0t|ntTf>ft^D$D$D$$%$t&rtvuEfE놃E|Et&l6D$/4$tpEԉ4$D$E؉D$E܉$,Mԅ,$%r:t&Y,$$Mu*$0X0~ߍD$$D$Ɖ$jD$4$ZD$4$J$ht$$t$$8D$$UЅt$9Eԅu90~/E$D$D$0$ǃ0LD$$V0$GED$,D$$$5`Ƌ$tD$D$|D$$$D$$럍D$$Ƌ$D$D$Ƌ$D$D$(eƋ$D$D$P?$GUH]Z$u}&|D$4$"u97$Mt$$D$)D$$$fEEE@E؍EEЍOEԋEfE$D$eED$D$$ƋE$E܋EԉD$-|tvuEEt<$t&닃}tE܉$l$D$]D$[t$D$$$UWVS"8tIEE썃8EEHEt%;MuE9ɋpExuًE[^_]Ã1[^_]ÐUWVSi"<@EUDž@$ܿeE1ؿD$D$F4$D$ԿD$ԿD$GT$4$D$ԿD$4$D$ԿE4$T$D$E4$D$ԿD$D$B4$D$ԿD$;ܿD$B4$D$ԿD$Կ4$T$$|D$<$Ttuؿ$D$D$ؿ+ؿ4$D$T$rtY4$U1Ue3<@[^_]$|$$D$D$뱍D$$4$댍D$$l
UWVS,EMD$$D$MZED$$huEM܍5EMԉE3Eؐt&EM܉D$EL$$M+MM^Eu1.&MD$,D$$;}t9)ЃuD$&D$E$;}uǃ}uvM2D$$f/)Ѓuэ1D$E$7~ыE؋MD$$ U~DXu1EM.DP@tщL$EԃMD$$;}uɋEMD$$EEE9E,[^_]ËM14M؋EL$$e&'UWVSí!}eE1EቅE҉Dž8D$DžDžDžDžDžDžDžxDž|DžpDžtDžDžDž$<$CT$CT$$wt2D$$LUe36![^_]ÐCCD$4$CD$t$OD$$D$D$D$ 4$D$$\D$$D$D$D$<D$$ADž<
t"xD$D$$CpD$D$D$<$t$tD$$LD$$0D$ D$ D$D$T$D$(D$$D$,(T$D$$|<<tGD$$D$D$<D$$M]D$h8D$DDž4$D$h=D$$@{hD$lD$@$@D$$T$84$D$D$HG$@D$D$HT$$Qh10T$HDžd\$`d4D$@D$J@$,D$$Dž<DT$D$D$f$K뱋h$D$D$f84$T$w|D$$9Dž D$1Dž\Dž`Džd,4$T$CCDžD$D$$D$$\Dž<
"@$D$4D$(5؉$@$T$D$pD$xD$(4$D$D$$4$Lr'D$4$PPD$$D$jPD$$P\$D$`D$P$dPD$$d~:\$$DD$P$u9d׋LPT$$PD$$D$P$P$<$t$$D$D$0D$$dD$C$4T$HCD$@$D$"xJd~
Dždd1D$D$CD$0$DždUWVSí,}l$otx$E4$tOED$BD$D$
$N‹E8t99Ut$t&4$Wu4$,[^_]$Up94$9},[^_]ÐU]Ít&'UWVSsE)E}Ut+1ƍED$ED$E$9}u߃[^_]ÐUS_@UVSm>p@tЋu[^]ÐUS[tY[ERROR: attempting to serialize context with unknown/unsupported mechanism oid
DEBUG: serialize_krb5_ctx: lucid version!
ERROR: unsupported lucid sec context version %d
prepare_krb5_rfc1964_buffer: serializing keys with enctype %d and length %d
ERROR: failed serializing krb5 context for kernel
ERROR: prepare_krb5_rfc_cfx_buffer: not implemented
WARN: failed to free lucid sec context
serialize_krb5_ctx: prepare_krb5_*_buffer failed (retcode = %d)
gss_export_lucid_sec_contextUnable to obtain list of supported mechanisms. Check that gss library is properly configured.
ERROR: GSS-API: error in %s(): %s - %s
Unable to obtain credentials for '%.*s'
(0x%08x)gss_import_namegss_acquire_cred*H+...
%d readline: read error: len %d errno %d (%s)
readline: read %d chars into buffer of size %d:
%s
Received SIGHUP... Ignoring.
exiting on signal %d
fvrnp://dev/nullnfsgssd_run returned!
usage: %s [-n] [-f] [-v] [-r]
ERROR: Problem with gssapi library
mydaemon: pipe() failed: errno %d (%s)
mydaemon: fork() failed: errno %d (%s)
mydaemon: chdir() failed: errno %d (%s)
mydaemon: dup() failed: errno %d (%s)
unable to obtain root (machine) credentials
do you have a keytab entry for nfs/<your.host>@<YOUR.REALM> in /etc/krb5.keytab?
rwfailed to open %s: %s
entering poll
leaving poll
error return from poll: %s
/proc/net/rpc/auth.rpcsec.init/channelbug: unexpected poll return %d
+9sending null reply
WARNING: open %s failed: %s
writing message: %slength %d
  %04x: %02x %02x   %chandling null request
in_handle: 
in_tok: 
get_ids: gss_display_namesname = %s
doing downcall
WARNING: downcall failed
WARNING: send_respsonse: message too long
WARNING: failed to write message
WARNING: handle_nullreq: failed reading request
WARNING: handle_nullreq: input handle has unexpected length %d
gss_accept_sec_context GSS_S_CONTINUE_NEEDED
WARNING: gss_accept_sec_context failed
handle_nullreq: gss_accept_sec_contextWARNING: get_ids: error allocating %d bytes for sname
WARNING: get_ids: error mapping mech to file for name '%s'
WARNING: get_ids: failed to map name '%s' to uid/gid: %s
WARNING: handle_nullreq: serialize_context_for_kernel failed
/proc/net/rpc/auth.rpcsec.context/channelWARNING: unable to open downcall channel %s: %s
finished handling null request
/proc/self/fd;<(L|l<Ll4TpL@Ld,0TtzR| tAB
FT @AB
IEdAB
C AB
FNFdAB
I rAB
FQF `AB
FTLIAB
A,AB
BL0AB
El0AB
49AB
F TAB
F\FRAB
FN _AB
FQF LAB
IX 4AB
FT XjAB
FQF|mAB
F0.AB
AD;AB
A,hD	FAB
FT (mAB
FQ(tqAB
C HzAB
ACCl02AB
CP	AB
C0AB
CPZs~
+
4?oh
HQtpooo2o	dR(P*:JZjz
*:JZjz
*:JZjz
*:JZjz
*:J	'B1B	'Bkrb51Bspkm3Elipkeyrpc.svcgssd.debug@͔.shstrtab.interp.note.ABI-tag.gnu.hash.dynsym.dynstr.gnu.version.gnu.version_r.rel.dyn.rel.plt.init.text.fini.rodata.eh_frame_hdr.eh_frame.ctors.dtors.jcr.data.rel.ro.dynamic.got.got.plt.data.bss.gnu_debuglink44HH !ohhH+3;o22HoW	ttp`	id@o``+u4?4?{P?P?r	HHIIPPPPPPPPPP(Q(Q HQHQ`R`R` RR`B RR

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ Read-Only ]

:: Make Dir ::
 
[ Read-Only ]
:: Make File ::
 
[ Read-Only ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0056 ]--