!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/mis/font/   drwxr-xr-x
Free 51.24 GB of 127.8 GB (40.09%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     THSarabunNew.php (4.83 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?php
$type 
'TrueType';
$name 'THSarabunNew';
$desc = array('Ascent'=>850,'Descent'=>-250,'CapHeight'=>476,'Flags'=>32,'FontBBox'=>'[-427 -421 947 836]','ItalicAngle'=>0,'StemV'=>70,'MissingWidth'=>692);
$up = -35;
$ut 30;
$cw = array(
    
chr(0)=>692,chr(1)=>692,chr(2)=>692,chr(3)=>692,chr(4)=>692,chr(5)=>692,chr(6)=>692,chr(7)=>692,chr(8)=>692,chr(9)=>692,chr(10)=>692,chr(11)=>692,chr(12)=>692,chr(13)=>692,chr(14)=>692,chr(15)=>692,chr(16)=>692,chr(17)=>692,chr(18)=>692,chr(19)=>692,chr(20)=>692,chr(21)=>692,
    
chr(22)=>692,chr(23)=>692,chr(24)=>692,chr(25)=>692,chr(26)=>692,chr(27)=>692,chr(28)=>692,chr(29)=>692,chr(30)=>692,chr(31)=>692,' '=>216,'!'=>147,'"'=>208,'#'=>403,'$'=>361,'%'=>585,'&'=>423,'\''=>120,'('=>190,')'=>190,'*'=>285,'+'=>411,
    
','=>162,'-'=>216,'.'=>162,'/'=>270,'0'=>362,'1'=>362,'2'=>362,'3'=>362,'4'=>362,'5'=>362,'6'=>362,'7'=>362,'8'=>362,'9'=>362,':'=>162,';'=>162,'<'=>411,'='=>411,'>'=>411,'?'=>283,'@'=>536,'A'=>400,
    
'B'=>378,'C'=>406,'D'=>431,'E'=>351,'F'=>351,'G'=>425,'H'=>441,'I'=>147,'J'=>264,'K'=>376,'L'=>353,'M'=>548,'N'=>441,'O'=>486,'P'=>378,'Q'=>487,'R'=>379,'S'=>352,'T'=>379,'U'=>466,'V'=>390,'W'=>588,
    
'X'=>418,'Y'=>366,'Z'=>424,'['=>196,'\\'=>262,']'=>196,'^'=>412,'_'=>352,'`'=>204,'a'=>344,'b'=>401,'c'=>331,'d'=>401,'e'=>374,'f'=>206,'g'=>311,'h'=>390,'i'=>143,'j'=>155,'k'=>316,'l'=>200,'m'=>601,
    
'n'=>390,'o'=>398,'p'=>401,'q'=>401,'r'=>217,'s'=>282,'t'=>238,'u'=>390,'v'=>341,'w'=>507,'x'=>318,'y'=>337,'z'=>321,'{'=>208,'|'=>153,'}'=>208,'~'=>416,chr(127)=>692,chr(128)=>406,chr(129)=>692,chr(130)=>692,chr(131)=>692,
    
chr(132)=>692,chr(133)=>479,chr(134)=>692,chr(135)=>692,chr(136)=>692,chr(137)=>692,chr(138)=>692,chr(139)=>692,chr(140)=>692,chr(141)=>692,chr(142)=>692,chr(143)=>692,chr(144)=>692,chr(145)=>247,chr(146)=>247,chr(147)=>370,chr(148)=>370,chr(149)=>216,chr(150)=>360,chr(151)=>720,chr(152)=>692,chr(153)=>692,
    
chr(154)=>692,chr(155)=>692,chr(156)=>692,chr(157)=>692,chr(158)=>692,chr(159)=>692,chr(160)=>216,chr(161)=>386,chr(162)=>378,chr(163)=>382,chr(164)=>393,chr(165)=>393,chr(166)=>408,chr(167)=>294,chr(168)=>367,chr(169)=>377,chr(170)=>380,chr(171)=>384,chr(172)=>519,chr(173)=>519,chr(174)=>425,chr(175)=>425,
    
chr(176)=>343,chr(177)=>461,chr(178)=>532,chr(179)=>543,chr(180)=>391,chr(181)=>391,chr(182)=>378,chr(183)=>430,chr(184)=>335,chr(185)=>420,chr(186)=>428,chr(187)=>428,chr(188)=>381,chr(189)=>381,chr(190)=>447,chr(191)=>447,chr(192)=>425,chr(193)=>400,chr(194)=>375,chr(195)=>322,chr(196)=>378,chr(197)=>381,
    
chr(198)=>425,chr(199)=>335,chr(200)=>393,chr(201)=>438,chr(202)=>381,chr(203)=>427,chr(204)=>454,chr(205)=>387,chr(206)=>372,chr(207)=>391,chr(208)=>357,chr(209)=>0,chr(210)=>316,chr(211)=>316,chr(212)=>0,chr(213)=>0,chr(214)=>0,chr(215)=>0,chr(216)=>0,chr(217)=>0,chr(218)=>0,chr(219)=>692,
    
chr(220)=>692,chr(221)=>692,chr(222)=>692,chr(223)=>411,chr(224)=>203,chr(225)=>377,chr(226)=>237,chr(227)=>242,chr(228)=>244,chr(229)=>205,chr(230)=>399,chr(231)=>0,chr(232)=>0,chr(233)=>0,chr(234)=>0,chr(235)=>0,chr(236)=>0,chr(237)=>0,chr(238)=>0,chr(239)=>450,chr(240)=>449,chr(241)=>449,
    
chr(242)=>449,chr(243)=>449,chr(244)=>449,chr(245)=>449,chr(246)=>449,chr(247)=>449,chr(248)=>449,chr(249)=>449,chr(250)=>522,chr(251)=>697,chr(252)=>692,chr(253)=>692,chr(254)=>692,chr(255)=>692);
$enc 'cp874';
$diff '130 /.notdef /.notdef /.notdef 134 /.notdef /.notdef /.notdef /.notdef /.notdef /.notdef /.notdef 142 /.notdef 152 /.notdef /.notdef /.notdef /.notdef /.notdef 158 /.notdef /.notdef 161 /kokaithai /khokhaithai /khokhuatthai /khokhwaithai /khokhonthai /khorakhangthai /ngonguthai /chochanthai /chochingthai /chochangthai /sosothai /chochoethai /yoyingthai /dochadathai /topatakthai /thothanthai /thonangmonthothai /thophuthaothai /nonenthai /dodekthai /totaothai /thothungthai /thothahanthai /thothongthai /nonuthai /bobaimaithai /poplathai /phophungthai /fofathai /phophanthai /fofanthai /phosamphaothai /momathai /yoyakthai /roruathai /ruthai /lolingthai /luthai /wowaenthai /sosalathai /sorusithai /sosuathai /hohipthai /lochulathai /oangthai /honokhukthai /paiyannoithai /saraathai /maihanakatthai /saraaathai /saraamthai /saraithai /saraiithai /sarauethai /saraueethai /sarauthai /sarauuthai /phinthuthai /.notdef /.notdef /.notdef /.notdef /bahtthai /saraethai /saraaethai /saraothai /saraaimaimuanthai /saraaimaimalaithai /lakkhangyaothai /maiyamokthai /maitaikhuthai /maiekthai /maithothai /maitrithai /maichattawathai /thanthakhatthai /nikhahitthai /yamakkanthai /fongmanthai /zerothai /onethai /twothai /threethai /fourthai /fivethai /sixthai /seventhai /eightthai /ninethai /angkhankhuthai /khomutthai /.notdef /.notdef /.notdef /.notdef';
$uv = array(0=>array(0,128),128=>8364,133=>8230,145=>array(8216,2),147=>array(8220,2),149=>8226,150=>array(8211,2),160=>160,161=>array(3585,58),223=>array(3647,29));
$file 'THSarabunNew.z';
$originalsize 329108;
$subsetted true;
?>

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0152 ]--