!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/mis/font/   drwxr-xr-x
Free 52.61 GB of 127.8 GB (41.17%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     THSarabunIT9Bold.php (4.84 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?php
$type 
'TrueType';
$name 'THSarabunPSK-Bold';
$desc = array('Ascent'=>850,'Descent'=>-250,'CapHeight'=>476,'Flags'=>32,'FontBBox'=>'[-466 -457 947 844]','ItalicAngle'=>0,'StemV'=>120,'MissingWidth'=>698);
$up = -35;
$ut 30;
$cw = array(
    
chr(0)=>698,chr(1)=>698,chr(2)=>698,chr(3)=>698,chr(4)=>698,chr(5)=>698,chr(6)=>698,chr(7)=>698,chr(8)=>698,chr(9)=>698,chr(10)=>698,chr(11)=>698,chr(12)=>698,chr(13)=>698,chr(14)=>698,chr(15)=>698,chr(16)=>698,chr(17)=>698,chr(18)=>698,chr(19)=>698,chr(20)=>698,chr(21)=>698,
    
chr(22)=>698,chr(23)=>698,chr(24)=>698,chr(25)=>698,chr(26)=>698,chr(27)=>698,chr(28)=>698,chr(29)=>698,chr(30)=>698,chr(31)=>698,' '=>226,'!'=>168,'"'=>291,'#'=>462,'$'=>367,'%'=>688,'&'=>486,'\''=>169,'('=>244,')'=>244,'*'=>343,'+'=>417,
    
','=>172,'-'=>226,'.'=>172,'/'=>276,'0'=>456,'1'=>456,'2'=>456,'3'=>456,'4'=>456,'5'=>456,'6'=>456,'7'=>456,'8'=>456,'9'=>456,':'=>172,';'=>172,'<'=>417,'='=>417,'>'=>417,'?'=>289,'@'=>572,'A'=>451,
    
'B'=>396,'C'=>432,'D'=>459,'E'=>358,'F'=>358,'G'=>454,'H'=>472,'I'=>163,'J'=>282,'K'=>411,'L'=>359,'M'=>574,'N'=>472,'O'=>518,'P'=>390,'Q'=>518,'R'=>395,'S'=>365,'T'=>421,'U'=>482,'V'=>422,'W'=>612,
    
'X'=>426,'Y'=>396,'Z'=>451,'['=>234,'\\'=>268,']'=>234,'^'=>418,'_'=>376,'`'=>210,'a'=>367,'b'=>435,'c'=>347,'d'=>435,'e'=>391,'f'=>254,'g'=>332,'h'=>423,'i'=>163,'j'=>171,'k'=>340,'l'=>213,'m'=>636,
    
'n'=>423,'o'=>412,'p'=>431,'q'=>431,'r'=>246,'s'=>296,'t'=>258,'u'=>418,'v'=>358,'w'=>480,'x'=>349,'y'=>361,'z'=>358,'{'=>255,'|'=>177,'}'=>255,'~'=>422,chr(127)=>698,chr(128)=>518,chr(129)=>698,chr(130)=>698,chr(131)=>698,
    
chr(132)=>698,chr(133)=>504,chr(134)=>698,chr(135)=>698,chr(136)=>698,chr(137)=>698,chr(138)=>698,chr(139)=>698,chr(140)=>698,chr(141)=>698,chr(142)=>698,chr(143)=>698,chr(144)=>698,chr(145)=>253,chr(146)=>253,chr(147)=>384,chr(148)=>384,chr(149)=>226,chr(150)=>335,chr(151)=>693,chr(152)=>698,chr(153)=>698,
    
chr(154)=>698,chr(155)=>698,chr(156)=>698,chr(157)=>698,chr(158)=>698,chr(159)=>698,chr(160)=>220,chr(161)=>391,chr(162)=>415,chr(163)=>431,chr(164)=>403,chr(165)=>403,chr(166)=>453,chr(167)=>318,chr(168)=>390,chr(169)=>405,chr(170)=>415,chr(171)=>431,chr(172)=>565,chr(173)=>565,chr(174)=>425,chr(175)=>425,
    
chr(176)=>372,chr(177)=>492,chr(178)=>551,chr(179)=>576,chr(180)=>405,chr(181)=>405,chr(182)=>391,chr(183)=>438,chr(184)=>358,chr(185)=>433,chr(186)=>445,chr(187)=>445,chr(188)=>414,chr(189)=>414,chr(190)=>482,chr(191)=>482,chr(192)=>425,chr(193)=>417,chr(194)=>386,chr(195)=>329,chr(196)=>391,chr(197)=>399,
    
chr(198)=>425,chr(199)=>379,chr(200)=>403,chr(201)=>461,chr(202)=>399,chr(203)=>438,chr(204)=>468,chr(205)=>394,chr(206)=>385,chr(207)=>380,chr(208)=>340,chr(209)=>0,chr(210)=>336,chr(211)=>336,chr(212)=>0,chr(213)=>0,chr(214)=>0,chr(215)=>0,chr(216)=>0,chr(217)=>0,chr(218)=>0,chr(219)=>698,
    
chr(220)=>698,chr(221)=>698,chr(222)=>698,chr(223)=>389,chr(224)=>208,chr(225)=>395,chr(226)=>252,chr(227)=>269,chr(228)=>252,chr(229)=>209,chr(230)=>437,chr(231)=>0,chr(232)=>0,chr(233)=>0,chr(234)=>0,chr(235)=>0,chr(236)=>0,chr(237)=>0,chr(238)=>0,chr(239)=>450,chr(240)=>456,chr(241)=>456,
    
chr(242)=>456,chr(243)=>456,chr(244)=>456,chr(245)=>456,chr(246)=>456,chr(247)=>456,chr(248)=>456,chr(249)=>456,chr(250)=>525,chr(251)=>697,chr(252)=>698,chr(253)=>698,chr(254)=>698,chr(255)=>698);
$enc 'cp874';
$diff '130 /.notdef /.notdef /.notdef 134 /.notdef /.notdef /.notdef /.notdef /.notdef /.notdef /.notdef 142 /.notdef 152 /.notdef /.notdef /.notdef /.notdef /.notdef 158 /.notdef /.notdef 161 /kokaithai /khokhaithai /khokhuatthai /khokhwaithai /khokhonthai /khorakhangthai /ngonguthai /chochanthai /chochingthai /chochangthai /sosothai /chochoethai /yoyingthai /dochadathai /topatakthai /thothanthai /thonangmonthothai /thophuthaothai /nonenthai /dodekthai /totaothai /thothungthai /thothahanthai /thothongthai /nonuthai /bobaimaithai /poplathai /phophungthai /fofathai /phophanthai /fofanthai /phosamphaothai /momathai /yoyakthai /roruathai /ruthai /lolingthai /luthai /wowaenthai /sosalathai /sorusithai /sosuathai /hohipthai /lochulathai /oangthai /honokhukthai /paiyannoithai /saraathai /maihanakatthai /saraaathai /saraamthai /saraithai /saraiithai /sarauethai /saraueethai /sarauthai /sarauuthai /phinthuthai /.notdef /.notdef /.notdef /.notdef /bahtthai /saraethai /saraaethai /saraothai /saraaimaimuanthai /saraaimaimalaithai /lakkhangyaothai /maiyamokthai /maitaikhuthai /maiekthai /maithothai /maitrithai /maichattawathai /thanthakhatthai /nikhahitthai /yamakkanthai /fongmanthai /zerothai /onethai /twothai /threethai /fourthai /fivethai /sixthai /seventhai /eightthai /ninethai /angkhankhuthai /khomutthai /.notdef /.notdef /.notdef /.notdef';
$uv = array(0=>array(0,128),128=>8364,133=>8230,145=>array(8216,2),147=>array(8220,2),149=>8226,150=>array(8211,2),160=>160,161=>array(3585,58),223=>array(3647,29));
$file 'THSarabunIT9Bold.z';
$originalsize 43584;
$subsetted true;
?>

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0074 ]--