!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/alumni/inc/geshi/geshi/   drwxr-xr-x
Free 49.64 GB of 127.8 GB (38.84%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     sdlbasic.php (7.17 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?php
/*************************************************************************************
 * sdlbasic.php
 * ------------
 * Author: Roberto Rossi 
 * Copyright: (c) 2005 Roberto Rossi (http://rsoftware.altervista.org)
 * Release Version: 1.0.7.19
 * Date Started: 2005/08/19
 *
 * sdlBasic (http://sdlbasic.sf.net) language file for GeSHi.
 *
 * CHANGES
 * -------
 * 2005/08/19 (1.0.0)
 *  -  First Release
 *
 *************************************************************************************
 *
 *     This file is part of GeSHi.
 *
 *   GeSHi is free software; you can redistribute it and/or modify
 *   it under the terms of the GNU General Public License as published by
 *   the Free Software Foundation; either version 2 of the License, or
 *   (at your option) any later version.
 *
 *   GeSHi is distributed in the hope that it will be useful,
 *   but WITHOUT ANY WARRANTY; without even the implied warranty of
 *   MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
 *   GNU General Public License for more details.
 *
 *   You should have received a copy of the GNU General Public License
 *   along with GeSHi; if not, write to the Free Software
 *   Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA  02111-1307  USA
 *
 ************************************************************************************/
 
$language_data = array (
    
'LANG_NAME' => 'sdlBasic',
    
'COMMENT_SINGLE' => array(=> "'"=> "rem"=> "!"=> "#"),
    
'COMMENT_MULTI' => array(),
    
'CASE_KEYWORDS' => GESHI_CAPS_NO_CHANGE,
    
'QUOTEMARKS' => array('"'),
    
'ESCAPE_CHAR' => '',
    
'KEYWORDS' => array(
        
=> array(
    
'const''option''explicit''option''qbasic''include''argc',
    
'argv''command''command$''run''shell''end''os''declare',
    
'sub''function''return''while''wend''exit''while''end',
    
'while''continue''if''then''else''elseif''end''if',
    
'select''case''case''else''end''case''for''each''step',
    
'next''to''continue''dim''shared''common''lbound''bound',
    
'erase''asc''chr''chr$''insert''insert$''instr''lcase',
    
'lcase$''left''left$''len''length''ltrim''ltrim$''mid',
    
'mid$''replace''replace$''replacesubstr''replacesubstr$',
    
'reverse''reverse$''right''right$''rinstr''rtrim''rtrim$',
    
'space''space$''str''str$''strf''strf$''string''string$',
    
'tally''trim''trim$''typeof''typeof$''ucase''ucase$''val',
    
'abs''acos''andbit''asin''atan''bitwiseand''bitwiseor',
    
'bitwisexor''cos''exp''fix''floor''frac''hex''hex$''int',
    
'log''min''max''orbit''randomize''rnd''round''sgn''sin',
    
'sqr''tan''xorbit''open''as''file''input''close''output',
    
'append''eof''fileexists''filecopy''filemove''filerename',
    
'freefile''kill''loc''lof''readbyte''rename''seek',
    
'writebyte''chdir''dir''dir$''direxists''dirfirst''dirnext',
    
'mkdir''rmdir''print''date''date$''time''time$''ticks',
    
'data''read''reservebank''freebank''copybank''loadbank',
    
'savebank''setbank''sizebank''poke''doke''loke''peek''deek',
    
'leek''memcopy''setdisplay''setcaption''caption''displaywidth',
    
'displayheight''displaybpp''screen''directscreen''screenopen',
    
'screenclose''screenclone''screencopy''screenfade''screenfadein',
    
'screencrossfade''screenalpha''screenlock''screenunlock',
    
'screenrect''xscreenrect''yscreenrect''wscreenrect''hscreenrect',
    
'flagscreenrect''screenwidth''screenheight''offset''xoffset',
    
'yoffset''cls''screenswap''autoback''setautoback',
    
'dualplayfield''waitvbl''fps''rgb''enablepalette''color',
    
'palette''colorcycling''ink''point''dot''plot''line''box',
    
'bar''circle''fillcircle''ellipse''fillellipse''paint',
    
'loadimage''saveimage''loadsound''savesound''loadmusic',
    
'hotspot''setcolorkey''imageexists''imagewidth''imageheight',
    
'deleteimage''copyimage''setalpha''zoomimage''rotateimage',
    
'rotozoomimage''blt''pastebob''pasteicon''grab''spriteclip',
    
'sprite''deletesprite''xsprite''ysprite''spritewidth',
    
'spriteheight''frsprite''livesprite''spritehit''autoupdatesprite',
    
'updatesprite''setbob''bob''deletebob''xbob''ybob''bobwidth',
    
'bobheight''frbob''livebob''bobhit''autoupdatebob''updatebob',
    
'text''setfont''textrender''pen''paper''prints''locate',
    
'atx''aty''curson''cursoff''inputs''zoneinputs',
    
'isenabledsound''soundexists''deletesound''copysound',
    
'musicexists''playsound''volumesound''stopsound''pausesound',
    
'resumesound''vumetersound''positionsound''soundchannels',
    
'playmusic''positionmusic''stopmusic''fademusic''pausemusic',
    
'resumemusic''rewindmusic''volumemusic''speedmusic''numdrivescd',
    
'namecd''getfreecd''opencd''indrivecd''trackscd''curtrackcd',
    
'curframecd''playcd''playtrackscd''playtrackscd''playtrackscd',
    
'pausecd''resumecd''stopcd''ejectcd''closecd''tracktypecd',
    
'tracklengthcd''trackoffsetcd''key''inkey''waitkey''xmouse',
    
'ymouse''xmousescreen''ymousescreen''bmouse''changemouse',
    
'locatemouse''mouseshow''mousehide''mousezone''numjoysticks',
    
'namejoystick''numaxesjoystick''numballsjoystick''numhatsjoystick',
    
'numbuttonsjoystick''getaxisjoystick''gethatjoystick',
    
'getbuttonjoystick''xgetballjoystick''ygetballjoystick''joy',
    
'bjoy''wait''timer''isenabledsock''getfreesock''opensock',
    
'acceptsock''isserverready''connectsock''connectionreadysock',
    
'isclientready''losesock''peeksock''readsock''readbytesock',
    
'readlinesock''writesock''writebytesock''writelinesock',
    
'getremoteip''getremoteport''getlocalip' 
      
)
        ),
    
'SYMBOLS' => array(
        
'('')'
        
),
    
'CASE_SENSITIVE' => array(
        
GESHI_COMMENTS => false,
        
=> false
        
),
    
'STYLES' => array(
        
'KEYWORDS' => array(
            
=> 'color: #b1b100;'
            
),
        
'COMMENTS' => array(
            
=> 'color: #808080;',
            
=> 'color: #808080;',
            
=> 'color: #808080;',
            
=> 'color: #808080;'
            
),
        
'BRACKETS' => array(
            
=> 'color: #66cc66;'
            
),
        
'STRINGS' => array(
            
=> 'color: #ff0000;'
            
),
        
'NUMBERS' => array(
            
=> 'color: #cc66cc;'
            
),
        
'METHODS' => array(
            
=> 'color: #66cc66;'
            
),
        
'SYMBOLS' => array(
            
=> 'color: #66cc66;'
            
),
        
'ESCAPE_CHAR' => array(
            
=> 'color: #000099;'
            
),
        
'SCRIPT' => array(
            ),
        
'REGEXPS' => array(
            )
        ),
    
'OOLANG' => true,
    
'OBJECT_SPLITTERS' => array(
        
=> '.'
        
),
    
'REGEXPS' => array(
        ),
    
'STRICT_MODE_APPLIES' => GESHI_NEVER,
    
'SCRIPT_DELIMITERS' => array(
        ),
    
'HIGHLIGHT_STRICT_BLOCK' => array(
        )
);

?>

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0119 ]--