!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/manage/Plan_pic/   drwxr-xr-x
Free 52.61 GB of 127.8 GB (41.16%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     20130602222427.doc (228 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
ࡱ>	[	Hbjbjv"ΐΐ^6:kk$P/bj"			aaaaaaa$ehxaQr"akk		iAb...k8		a.a..2Y,^	X!B
l[.aWb0b[i+~i\,^,^&iR^d.aa-lbi11:	

A2#*-C%44
#+1*'4
2   ".1320	#2"'4
2   4142#"22%8%5H!51
+224	+H'"4   2	*25H4@( 2414	B#"22%4@'
@%"#2
#4#L
#0@'%22#6414		'15H  7-25 !#2! 2556
-22#"L4@(   -22#"L4!L'%1

L   -2"8'1L									+%1*9#   "22%(2*#14		
1I55H 3 #8H5H 19 3'  7      
@#7H-   2#C
I@42#*2@7H-2#31					3'
1H'B!   1 
1H'B!
#2"
7H-1(6)2
1. *.4##0 2 #2
1H'2. 2"4#28'1L  AI'+2
3. 2"4#2"84L  1*8'##4. *.5#'##  #8*4#5. *.82!2(  D''H-6. *.@4#2  4!@*7. *.@4#2  A*1#L'18#0*L2#@#5"2#*--#2"'4
2 (2!!-.4)	
*2!2##0@!41
+2-9IH'"DI9I-
*2!2##'*-* 24A%0'4@#20+L'2!44DI9I-
*2!2#'2A2#"22%B"366'2!AH2#0+'H28%DI
*2!2#C+I2#"22%A-L#'! I''2!@!2#82 @-7I--2#7I22##42#I'"+1'C'2!@G!8)"L B""6!1H8##! #4"##!DI
*2!2#*#I2*1!1 2@7H-2#31DI
*2!2#1%8H!4##!31AH9I#1#42#DI
*2!2#@G9I3C2##0
8!#6)222#"22%DI
*2!2#A*'+2'2!#9I5H1*!1"!2C
IC2#C+I2#"22%DI
*2!2#'4@#20+L@-A%012@-DI@+!20*!

'18#0*L1H'D-2#*-  @7H-C+I9I@#5"
!5'2!#9I'2!@I2C@#7H-2#C
I@42#*2@7H-2#31	
#0+16'2!*31
-2#C
I@42#*2@7H-2#31
*2!2#3'2!#9I@#7H-2#C
I@42#*2@7H-2#31D#0"8LC
IDI 
%2#@#5"#9I5H2+'1

1. I28##! #4"##!- @2#C8H2A%0(14L(#5-'2!@G!8)"L (1.3)2. I2'2!#9I- !5'2!#9IA%0'2!@I2CC*2#0*31
 @5H"'1 A'4 A%0+%12#"22%4@'
A-L#'!7I2$)52#9A%I'"'2!@-7I--2# AH8%8
H''1"-
5'45H!5 2'0@*5H"A%0!51
+224 #'!1I#0*8 2A%011"5H!5%H-2#@%5H"A%-*1!A%0H-#0*8 2 (2.2) 
- !5'2!#9IA%0@I2CC#0'2#"22%4@'
A%02#3D#0"8LC
I (2.3)3. I21)021

2- *2!2#*7IA%0'4@#20+LI-!9%2A+%HI-!9%5H+%2+%2" (3.2)
- 3I-!9%A%0+%12DC
IC2#-I2-4A%0AID1
+2-"H2!5'42#
2 (3.3)
- 4'4@#20+L-"H2@G#0B"C
I-L'2!#9I2'4
2
5A%05H@5H"'I-#'!1IC
I#0*2#L@G2/ (3.4)4. I21)0'2!*1!1L#0+'H28%A%0'2!#14
-- !5'2!*2!#C2##11'  @
4'4
2
5A%04*1!1L-"H2*#I2*##L19IC
I#42#...(4.1)5. I21)02#'4@#20+L@
41'@% 2#*7H-*2# A%02#C
I@BB%"5*2#*@(- 2#*7H-*2# 2)2D"5H!5#0*44 2 1I1)02#*7H-*2#1I2#9 2#1 2#@5"...(5.3)6. I21)02#4142'4
2
5- *2!2#4141)02#"22%-"H2@G-L#'! B"#0"8LC
I(2*#LA%0(4%022#"22%A%0#0'2#4@'
 (6.1)	
2#12+#7-#1#8A2#*-C#1I5I
	2%2##0@!42#12#@#5"2#*-C#2"'4
25I 'H2 9I@#5""1D!H*2!2#*#I2*1!1 2C+I9IH'"@4'2!D'I'2CDI1I+!3C+IDII-!9%D!H#1'2!@G#4 6HC2#*219IH'"4@'
5H!5'2!442I2'2!4 2##1#9I -2#!LA%0$4##! A%0I-C
I@4C2#*2AH2F@7H-C+I#21
+2-9IH'" 9I@#5"@4'2!%1'C$4##!-9IH'"A%0@4'2!'41'%C2#3@4*219IH'" %1'9IH'"D!H9I'"  A%0D!H#21
+25HAI#4-9IH'" -51I@4C2#*2@G 2)2-1$)1I+! 6H9I@#5"!51
+2C2#*03(1LC+I9I-A%0*1*C2#3'2!@I2C1'2!+!2"-AH%0@4
	'1@7-5/@'%25H*-'18#0*L
@
4$4##!@#7H-/+1'I-2#*-
4##!
2#@#5"2#*-*7H-2#@#5"
2#*-/
A+%H@#5"#9I%2
9I@#5"2##0@!4%'452##0@!4%%
2##0@!48 !.. 56
16-17 .










1. -@42#*2@7H-2#31A%0'18#0*L-2#C
IAH%0@4DI9I-
2. #0+16'2!*31
-2#C
I@42#*25H9I-
3. '4@#20+L A%0162#*2@7H-2#31DI
9I-3
       C2#"22%4@'
  2#*7H-*2#B"2#C
I@42#*2@7H-2#31  !10C
I'9H1D12#*#I2*1!1 2@7H-2#31#0+'H2"22%19IH'"4@'
  1I*--"H25I!5*H'*1!1LA%0*1*86H1A%01  B"5HC2#*#I2*1!1 2#0+'H2"22%A%09IH'"3@GI-C
I2#*7H-*2#@G*7H-C4*1!1L  @7H-C+I@4%C22#31  %1)0-2#*7H-*2#6I-@G2#*7H-*2#5H!5%1)0@	20@7H-2#31  5H@46I#0+'H2"22%A%09IH'"@*5"H-
@7I-+2
1. Giving Recognition  @G2#A*C+I9IH'"@+G'H2 "22%#9I19IH'" A%0C+I'2!*31
19IH'" @
H
	  *'1*5H0 8-2#5 
2. Giving Information @G2#C+IH2'*2# I-!9% A%0I-@G#4AH9IH'" @
H 2#A039IH'"C+I#9I1*25H 
3. Offering Self @G2#@*-@-@7H-
H'"@+%7- @7H-#111
+2-9IH'" @
H
  4	101H-"9H@G@7H-8*1#9H  
  4	1"455H0#11@#7H-#2'-8   
4. Using Broad Opening Statement @G2#C
I3%H2''I2F @7H-@4B-2*C+I9IH'"@%7-+1'I-2#*2 @
H    
              8*!(#53%14-0D#-"9H0    
	    8*!(#5!5@#7H--0D#1'%C-"9H0   
 	    8*!(#5#9I*6-"H2D#0'15I  1I3 (5 25)
- 9I*-%H2'12"9I@#5"A%0-'18#0*L2#@#5"#9IA%0+1'I-2#@#5"#9I 
- @#4H3*9H2#@#5"#9IB"*8H!2!'2!#9I@4!A%022#I'I2!2%H'+I2-9I@#5" @5H"'1@42#*2@7H-2#31
1I*- (40 25)
- '@42#*2@7H-2#31B"9I*-A%09I@#5"#H'!1- 4#2"'452#A%0"1'-"H232!/39AH%0@4

- @-*2##0-2#'@#7H-@42#*2@7H-2#31



- @-*2##0-2#'@#7H-@42#*2@7H-2#31
- *8H!9I@#5" 3  2!@42#*2@7H-2#312'2!#9I@4!A%022#I'I2!2%H'+I2


- 2#C
I32!%2"@4A%0%2"4@5H"'1+1'I-5H*-
-  *1@2#!5*H'#H'!C2#- 4#2"A%0A%@%5H"@#5"#9I



- 9I@#5"8 #H'!A%@%5H"2'2!#9I@4! A%022#I'I2!2%H'+I2 AH"1"1'-"H239D!H9I-C2@4
- 9I@#5"*H'C+
H-32!DI 
-  9I@#5"C+I'2!*CC2##H'!A*'2!4@+G




'1@7-5/@'%25H*-'18#0*L
@
4$4##!@#7H-/+1'I-2#*-
4##!
2#@#5"2#*-*7H-2#@#5"
2#*-/
A+%H@#5"#9I%2
9I@#5"2##0@!4%'452##0@!4%%
2##0@!48 !.. 56
16-17 .1. -@42#*2@7H-2#31A%0'18#0*L-2#C
IAH%0@4DI9I-
2. #0+16'2!*31
-2#C
I@42#*25H9I-
3. '4@#20+L A%0162#*2@7H-2#31DI
9I-5. Using General Lead  @G2#C
I3%H2'31H'FD 5H0
H'"#08IA%09CC+I9IH'"9H-DC#55H9IH'"@5"D @
H   0     A%I'-"H2D#H-D%H00   
6. Reflecting  @G2#*0I-39+#7-'2!#9I*6-9IH'"C*4H5H9IH'"9 @7H-C+I9IH'"DID#H#-39--5#1I A%0#9I1@-56I @
H  
I29IH'"%H2''H2  H-1A!H4I!D @2D!H#1!A%I'    
"22%%H2'I3'H2    8#9I*6I-"C5HH-1A!H4I8D 
7. Accepting  @G2#"-!#19IH'"A%0*4H5H9IH'"9 B"2#"1+I2#1 +#7-#11@	"F D!H%H2'BIA"I AHC5H5I2#"-!#1D!HDI+!2"'2!'H2"22%0I-@+GI'"@*!-D 2#"1+I2#1@G2#-AH9IH'"'H2 "22%@I2CC'2!#9I*6-9IH'" C*4H5H@29 A%0I-2#C+I@29H-D
8. Sharing Observation @G2#-%H2'6*4H5H"22%*1@@+GC1'9IH'" @
H 
         9H228B#@!7H-96*2!5       
          '15I9+I228D!HH-"*
7H  
9. Acknowledge the patient s feeling @G2##1#9I'2!#9I*6-9IH'" A%0"-!#1'H22#5H9IH'"!5'2!#9I*6@
H5I@G5H"-!#1 D!H@G*4H5H44AH-"H2C  @
H   
9IH'"%H2''H2    5H5H!5AHA%+I2 H22A%F     "22%%H2''H2    8#9I*6D!H%- 1"0-"9HB#"22%  
10. Using silence (*:ĬzbG-2hmvhW5B*CJ OJQJ\^JaJ ph5hmvhmv5B*CJ,OJQJ\^JaJ,o(ph/h-5B*CJ,OJQJ\^JaJ,o(ph/hqB15B*CJ,OJQJ\^JaJ,o(ph2hmvhmv5B*CJ,OJQJ\^JaJ,ph/hQ6hQ65B*CJOJQJ\^JaJph)hQ65B*CJ,OJQJ\^JaJ,phKjhQ6hQ65B*CJ,OJQJU\^J_HaJ,mHnHphtHu*4		
8lnBkd$$Ifln
t44
laytdp	$Ifgddpgd6Y 
58p	@xHP@@@@@@@@@@@@@@@@@gdmvgdmv$a$gdmv:@FHJNP^dоeN9N)hmvB*CJ OJQJ^JaJ o(ph,hmvhmvB*CJ OJQJ^JaJ ph2hmvhmv5B*CJ OJQJ\^JaJ ph)hW5B*CJ OJQJ\^JaJ ph)hmvhWB*CJ OJQJ^JaJ ph)hWB*CJ OJQJ^JaJ o(ph#hWB*CJ OJQJ^JaJ ph,hmvhWB*CJ OJQJ^JaJ ph/hW5B*CJ OJQJ\^JaJ o(ph			2	4	j	n		ϻw`F4"#h-h-CJ OJQJ^JaJ #hWB*CJ OJQJ^JaJ ph2hmvhW5B*CJ OJQJ\^JaJ ph,hmvhmvB*CJ OJQJ^JaJ ph/h-hWB*CJ OJQJ^JaJ o(ph)hkB*CJ OJQJ^JaJ o(ph,h-hWB*CJ OJQJ^JaJ ph&hWB*CJ OJQJ^JaJ ph)hWB*CJ OJQJ^JaJ o(ph5hWhW5B*CJ OJQJ\^JaJ o(ph						

4
6
8
L
N
P
^
ѹчp[ч[F+5hmvhmv5B*CJ OJQJ\^JaJ o(ph)hmvB*CJ OJQJ^JaJ o(ph)hmvhmvB*CJ OJQJ^JaJ ph,hmvhmvB*CJ OJQJ^JaJ ph2hmvhmv5B*CJ OJQJ\^JaJ ph/h-hWB*CJ OJQJ^JaJ o(ph/h-hm\B*CJ OJQJ^JaJ o(ph/hW5B*CJ OJQJ\^JaJ o(ph,hW5B*CJ OJQJ\^JaJ o(ph^
b
d
f
p
t
v






{iO7")hPBB*CJ OJQJ^JaJ o(ph/hW5B*CJ OJQJ\^JaJ o(ph2hmvh6Y5B*CJ OJQJ\^JaJ ph#hmvB*CJ OJQJ^JaJ ph)hz>B*CJ OJQJ^JaJ o(ph,h-hmvB*CJ OJQJ^JaJ ph2h-hmv5B*CJ OJQJ\^JaJ ph,hmvhmvB*CJ OJQJ^JaJ ph#h!B*CJ OJQJ^JaJ ph)h}B*CJ OJQJ^JaJ o(ph




68սwbN3&hWB*CJ OJQJ^JaJ o(ph5hWhW5B*CJ OJQJ\^JaJ o(ph&h6YB*CJ OJQJ^JaJ o(ph)hWB*CJ OJQJ^JaJ o(ph,hmvh6YB*CJ OJQJ^JaJ ph)hmvh6YB*CJ OJQJ^JaJ ph2hmvh6Y5B*CJ OJQJ\^JaJ ph/hW5B*CJ OJQJ\^JaJ o(ph)hPBB*CJ OJQJ^JaJ o(ph)hB*CJ OJQJ^JaJ o(ph8>nt .2>HLN\`lvz
bool(false)

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0063 ]--