!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/alumni/inc/geshi/geshi/   drwxr-xr-x
Free 49.64 GB of 127.8 GB (38.84%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     oracle8.php (8.96 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?php
/*************************************************************************************
 * oracle8.php
 * -----------
 * Author: Guy Wicks (Guy.Wicks@rbs.co.uk)
 * Copyright: (c) 2004 Nigel McNie (http://qbnz.com/highlighter)
 * Release Version: 1.0.7.19
 * Date Started: 2004/06/04
 *
 * Oracle 8 language file for GeSHi
 *
 * CHANGES
 * -------
 * 2005/01/29 (1.0.0)
 *  -  First Release
 *
 * TODO (updated 2004/11/27)
 * -------------------------
 *
 *************************************************************************************
 *
 *     This file is part of GeSHi.
 *
 *   GeSHi is free software; you can redistribute it and/or modify
 *   it under the terms of the GNU General Public License as published by
 *   the Free Software Foundation; either version 2 of the License, or
 *   (at your option) any later version.
 *
 *   GeSHi is distributed in the hope that it will be useful,
 *   but WITHOUT ANY WARRANTY; without even the implied warranty of
 *   MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
 *   GNU General Public License for more details.
 *
 *   You should have received a copy of the GNU General Public License
 *   along with GeSHi; if not, write to the Free Software
 *   Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA  02111-1307  USA
 *
 ************************************************************************************/

$language_data = array (
    
'LANG_NAME' => 'Oracle 8 SQL',
    
'COMMENT_SINGLE' => array(=> '--'),
    
'COMMENT_MULTI' => array('/*' => '*/'),
    
'CASE_KEYWORDS' => GESHI_CAPS_UPPER,
    
'QUOTEMARKS' => array("'"'"''`'),
    
'ESCAPE_CHAR' => '\\',
    
'KEYWORDS' => array(
//Put your package names here - e.g. select distinct ''''|| lower(name) || ''',' from user_source;
        
=> array(
            ),

//Put your table names here - e.g. select distinct ''''|| lower(table_name) || ''',' from user_tables;
        
=> array(
            ),

//Put your view names here - e.g. select distinct ''''|| lower(view_name) || ''',' from user_views;
        
=> array(
            ),

//Put your table field names here - e.g. select distinct ''''|| lower(column_name) || ''',' from user_tab_columns;
        
=> array(
            ),
//Put ORACLE reserved keywords here (8.1.7).  I like mine uppercase.
        
=> array(
            
'ABS',
            
'ACCESS',
            
'ACOS',
            
'ADD',
            
'ADD_MONTHS',
            
'ALL',
            
'ALTER',
            
'ANALYZE',
            
'AND',
            
'ANY',
            
'ARRAY',
            
'AS',
            
'ASC',
            
'ASCII',
            
'ASIN',
            
'ASSOCIATE',
            
'AT',
            
'ATAN',
            
'ATAN2',
            
'AUDIT',
            
'AUTHID',
            
'AVG',
            
'BEGIN',
            
'BETWEEN',
            
'BFILENAME',
            
'BINARY_INTEGER',
            
'BITAND',
            
'BODY',
            
'BOOLEAN',
            
'BULK',
            
'BY',
            
'CALL',
            
'CASCADE',
            
'CASE',
            
'CEIL',
            
'CHAR',
            
'CHAR_BASE',
            
'CHARTOROWID',
            
'CHECK',
            
'CHR',
            
'CLOSE',
            
'CLUSTER',
            
'COALESCE',
            
'COLLECT',
            
'COLUMN',
            
'COMMENT',
            
'COMMIT',
            
'COMPRESS',
            
'CONCAT',
            
'CONNECT',
            
'CONSTANT',
            
'CONSTRAINT',
            
'CONSTRAINTS',
            
'CONTEXT',
            
'CONTROLFILE',
            
'CONVERT',
            
'CORR',
            
'COS',
            
'COSH',
            
'COST',
            
'COUNT',
            
'COVAR_POP',
            
'COVAR_SAMP',
            
'CREATE',
            
'CUME_DIST',
            
'CURRENT',
            
'CURRVAL',
            
'CURSOR',
            
'DATABASE',
            
'DATE',
            
'DAY',
            
'DECIMAL',
            
'DECLARE',
            
'DECODE',
            
'DEFAULT',
            
'DELETE',
            
'DENSE_RANK',
            
'DEREF',
            
'DESC',
            
'DIMENSION',
            
'DIRECTORY',
            
'DISASSOCIATE',
            
'DISTINCT',
            
'DO',
            
'DROP',
            
'DUMP',
            
'ELSE',
            
'ELSIF',
            
'EMPTY_BLOB',
            
'EMPTY_CLOB',
            
'END',
            
'EXCEPTION',
            
'EXCLUSIVE',
            
'EXEC',
            
'EXECUTE',
            
'EXISTS',
            
'EXIT',
            
'EXP',
            
'EXPLAIN',
            
'EXTENDS',
            
'EXTRACT',
            
'FALSE',
            
'FETCH',
            
'FILE',
            
'FIRST_VALUE',
            
'FLOAT',
            
'FLOOR',
            
'FOR',
            
'FORALL',
            
'FROM',
            
'FUNCTION',
            
'GOTO',
            
'GRANT',
            
'GREATEST',
            
'GROUP',
            
'GROUPING',
            
'HAVING',
            
'HEAP',
            
'HEXTORAW',
            
'HOUR',
            
'IDENTIFIED',
            
'IF',
            
'IMMEDIATE',
            
'IN',
            
'INCREMENT',
            
'INDEX',
            
'INDEXTYPE',
            
'INDICATOR',
            
'INITCAP',
            
'INITIAL',
            
'INSERT',
            
'INSTR',
            
'INSTRB',
            
'INTEGER',
            
'INTERFACE',
            
'INTERSECT',
            
'INTERVAL',
            
'INTO',
            
'IS',
            
'ISOLATION',
            
'JAVA',
            
'KEY',
            
'LAG',
            
'LAST_DAY',
            
'LAST_VALUE',
            
'LEAD',
            
'LEAST',
            
'LENGTH',
            
'LENGTHB',
            
'LEVEL',
            
'LIBRARY',
            
'LIKE',
            
'LIMITED',
            
'LINK',
            
'LN',
            
'LOCK',
            
'LOG',
            
'LONG',
            
'LOOP',
            
'LOWER',
            
'LPAD',
            
'LTRIM',
            
'MAKE_REF',
            
'MATERIALIZED',
            
'MAX',
            
'MAXEXTENTS',
            
'MIN',
            
'MINUS',
            
'MINUTE',
            
'MLSLABEL',
            
'MOD',
            
'MODE',
            
'MODIFY',
            
'MONTH',
            
'MONTHS_BETWEEN',
            
'NATURAL',
            
'NATURALN',
            
'NEW',
            
'NEW_TIME',
            
'NEXT_DAY',
            
'NEXTVAL',
            
'NLS_CHARSET_DECL_LEN',
            
'NLS_CHARSET_ID',
            
'NLS_CHARSET_NAME',
            
'NLS_INITCAP',
            
'NLS_LOWER',
            
'NLS_UPPER',
            
'NLSSORT',
            
'NOAUDIT',
            
'NOCOMPRESS',
            
'NOCOPY',
            
'NOT',
            
'NOWAIT',
            
'NTILE',
            
'NULL',
            
'NULLIF',
            
'NUMBER',
            
'NUMBER_BASE',
            
'NUMTODSINTERVAL',
            
'NUMTOYMINTERVAL',
            
'NVL',
            
'NVL2',
            
'OCIROWID',
            
'OF',
            
'OFFLINE',
            
'ON',
            
'ONLINE',
            
'OPAQUE',
            
'OPEN',
            
'OPERATOR',
            
'OPTION',
            
'OR',
            
'ORDER',
            
'ORGANIZATION',
            
'OTHERS',
            
'OUT',
            
'OUTLINE',
            
'PACKAGE',
            
'PARTITION',
            
'PCTFREE',
            
'PERCENT_RANK',
            
'PLAN',
            
'PLS_INTEGER',
            
'POSITIVE',
            
'POSITIVEN',
            
'POWER',
            
'PRAGMA',
            
'PRIMARY',
            
'PRIOR',
            
'PRIVATE',
            
'PRIVILEGES',
            
'PROCEDURE',
            
'PROFILE',
            
'PUBLIC',
            
'RAISE',
            
'RANGE',
            
'RANK',
            
'RATIO_TO_REPORT',
            
'RAW',
            
'RAWTOHEX',
            
'REAL',
            
'RECORD',
            
'REF',
            
'REFTOHEX',
            
'REGR_AVGX',
            
'REGR_AVGY',
            
'REGR_COUNT',
            
'REGR_INTERCEPT',
            
'REGR_R2',
            
'REGR_SLOPE',
            
'REGR_SXX',
            
'REGR_SXY',
            
'REGR_SYY',
            
'RELEASE',
            
'RENAME',
            
'REPLACE',
            
'RESOURCE',
            
'RETURN',
            
'RETURNING',
            
'REVERSE',
            
'REVOKE',
            
'ROLE',
            
'ROLLBACK',
            
'ROUND',
            
'ROW',
            
'ROW_NUMBER',
            
'ROWID',
            
'ROWIDTOCHAR',
            
'ROWNUM',
            
'ROWS',
            
'ROWTYPE',
            
'RPAD',
            
'RTRIM',
            
'SAVEPOINT',
            
'SCHEMA',
            
'SECOND',
            
'SEGMENT',
            
'SELECT',
            
'SEPERATE',
            
'SEQUENCE',
            
'SESSION',
            
'SET',
            
'SHARE',
            
'SIGN',
            
'SIN',
            
'SINH',
            
'SIZE',
            
'SMALLINT',
            
'SOUNDEX',
            
'SPACE',
            
'SQL',
            
'SQLCODE',
            
'SQLERRM',
            
'SQRT',
            
'START',
            
'STATISTICS',
            
'STDDEV',
            
'STDDEV_POP',
            
'STDDEV_SAMP',
            
'STOP',
            
'SUBSTR',
            
'SUBSTRB',
            
'SUBTYPE',
            
'SUCCESSFUL',
            
'SUM',
            
'SYNONYM',
            
'SYS_CONTEXT',
            
'SYS_GUID',
            
'SYSDATE',
            
'SYSTEM',
            
'TABLE',
            
'TABLESPACE',
            
'TAN',
            
'TANH',
            
'TEMPORARY',
            
'THEN',
            
'TIME',
            
'TIMESTAMP',
            
'TIMEZONE_ABBR',
            
'TIMEZONE_HOUR',
            
'TIMEZONE_MINUTE',
            
'TIMEZONE_REGION',
            
'TIMING',
            
'TO',
            
'TO_CHAR',
            
'TO_DATE',
            
'TO_LOB',
            
'TO_MULTI_BYTE',
            
'TO_NUMBER',
            
'TO_SINGLE_BYTE',
            
'TRANSACTION',
            
'TRANSLATE',
            
'TRIGGER',
            
'TRIM',
            
'TRUE',
            
'TRUNC',
            
'TRUNCATE',
            
'TYPE',
            
'UI',
            
'UID',
            
'UNION',
            
'UNIQUE',
            
'UPDATE',
            
'UPPER',
            
'USE',
            
'USER',
            
'USERENV',
            
'USING',
            
'VALIDATE',
            
'VALUE',
            
'VALUES',
            
'VAR_POP',
            
'VAR_SAMP',
            
'VARCHAR',
            
'VARCHAR2',
            
'VARIANCE',
            
'VIEW',
            
'VSIZE',
            
'WHEN',
            
'WHENEVER',
            
'WHERE',
            
'WHILE',
            
'WITH',
            
'WORK',
            
'WRITE',
            
'YEAR',
            
'ZONE'
            
)
        ),
    
'SYMBOLS' => array(
        
'('')''=''<''>''|'
        
),
    
'CASE_SENSITIVE' => array(
        
GESHI_COMMENTS => false,
        
=> false
        
),
    
'STYLES' => array(
        
'KEYWORDS' => array(
            
=> 'color: #993333; font-weight: bold; text-transform: uppercase;'
            
),
        
'COMMENTS' => array(
            
=> 'color: #808080; font-style: italic;',
            
=> 'color: #808080; font-style: italic;'
            
),
        
'ESCAPE_CHAR' => array(
            
=> 'color: #000099; font-weight: bold;'
            
),
        
'BRACKETS' => array(
            
=> 'color: #66cc66;'
            
),
        
'STRINGS' => array(
            
=> 'color: #ff0000;'
            
),
        
'NUMBERS' => array(
            
=> 'color: #cc66cc;'
            
),
        
'METHODS' => array(
            
=> 'color: #ff0000;'
            
),
        
'SYMBOLS' => array(
            
=> 'color: #66cc66;'
            
),
        
'SCRIPT' => array(
            ),
        
'REGEXPS' => array(
            )
        ),
    
'URLS' => array(
        ),

    
'OOLANG' => false,
    
'OBJECT_SPLITTERS' => array(
        ),
    
'REGEXPS' => array(
        ),
    
'STRICT_MODE_APPLIES' => GESHI_NEVER,
    
'SCRIPT_DELIMITERS' => array(
        ),
    
'HIGHLIGHT_STRICT_BLOCK' => array(
        )
);

?>

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0126 ]--