!c99Shell v. 1.0 pre-release build #16!

Software: Apache/2.2.3 (CentOS). PHP/5.1.6 

uname -a: Linux mx-ll-110-164-51-230.static.3bb.co.th 2.6.18-194.el5PAE #1 SMP Fri Apr 2 15:37:44
EDT 2010 i686
 

uid=48(apache) gid=48(apache) groups=48(apache) 

Safe-mode: OFF (not secure)

/var/www/html/stdalumni/installAlumni/   drwxr-xr-x
Free 52.36 GB of 127.8 GB (40.97%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     importDataEalumni_prototype.sql (8.09 KB)      -rw-r--r--
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
-- ก่อนนำไปใส่ ให้ตรวจสอบชื่อ ฐานข้อมูล Ealumni แบบเก่าและใหม่ INSERT IGNORE INTO registealumni.TypeAward SELECT * FROM ealumni.TypeAword; INSERT IGNORE INTO registealumni.Education SELECT * FROM ealumni.Education; INSERT IGNORE INTO registealumni.LevelAward (levelAwardId, levelAwardNameE, levelAwardNameT) SELECT levelawordId, levelawordNameE, levelawordNameT FROM ealumni.LevelAword; INSERT IGNORE INTO registealumni.ea_CurriculumConfig SELECT ccId, ccCode, ccName, ccStatus FROM regist.rg_CurriculumConfig; INSERT IGNORE INTO registealumni.LevelEdu SELECT * FROM ealumni.LevelEdu; INSERT IGNORE INTO registealumni.MajorEdu SELECT * FROM ealumni.MajorEdu; INSERT IGNORE INTO registealumni.ImportUpdate SELECT importId, '0', importDate, '' FROM ealumni.ImportUpdate; INSERT IGNORE INTO registealumni.MapProgram SELECT mapId, '0', programId_reg, programId_alumni FROM ealumni.MapProgram; INSERT IGNORE INTO registealumni.ea_CurriculumDetails (curId, curImproveY, curName, curNameE, curAbbr, curAbbrE, curStatus, curCcId, ccCode, ccName, curEdgId, edgName, edgNameE, edgAbbr, edgAbbrE, curElvId, levelName, levelNameEng, levelAbbr, levelAbbrEng, curAddType) SELECT curId, curImproveY, curName, curNameE, curAbbr, curAbbrE, curStatus, curCcId, ccCode, ccName, curEdgId, edgName, edgNameE, edgAbbr, edgAbbrE, curElvId, levelName, levelNameEng, levelAbbr, levelAbbrEng , 'R' AS curAddType FROM regist.rg_Curriculum LEFT JOIN regist.rg_CurriculumConfig ON curCcId=ccId LEFT JOIN regist.rg_EduDegree ON curEdgId=edgId LEFT JOIN peoplecenter.Level ON curElvId=levelId; INSERT IGNORE INTO registealumni.ea_EduDegree SELECT edgId, edgName, edgNameE, edgAbbr, edgAbbrE FROM regist.rg_EduDegree; INSERT IGNORE INTO registealumni.ea_Generation SELECT genId, genAcY, genNo, genCurId, genTmId FROM regist.rg_Generation; INSERT IGNORE INTO registealumni.ProgramAlumni SELECT * FROM ealumni.ProgramAlumni; INSERT IGNORE INTO registealumni.AlumniMain (alumniId, studentId, studentCode, levelId, programId, prefixId, studentName, studentSurname, studentNameEng, studentSurnameEng, creditAttempt, creditSatisfy, GPA, admitAcadYear, admitSemester, admitDate, finishDate, studentPassword, studentEmail, studentYear, studentStatus, officerId1, officerId2, financeStatus, updateUserId, updateDateTime, citizenId, graduateYear, genStatus, genNo, entryTypeId, entryTypeId2, studentSex, scholarId, preAdmitPositionId, totalPoint, honor, medal, exitExam, studentStatusTmp, importtoalumni, glantId, glantDate, glantreqDate, amAnsQn, amProgramAlumni) SELECT alumniId, studentId, studentCode, levelId, programId, prefixId, studentName, studentSurname, studentNameEng, studentSurnameEng, creditAttempt, creditSatisfy, GPA, admitAcadYear, admitSemester, admitDate, finishDate, studentPassword, studentEmail, studentYear, studentStatus, officerId1, officerId2, financeStatus, updateUserId, updateDateTime, citizenId, graduateYear, genStatus, genNo, entryTypeId, entryTypeId2, studentSex, scholarId, preAdmitPositionId, totalPoint, honor, medal, exitExam, studentStatusTmp, importtoalumni, glantId, glantDate, glantreqDate, 'N', NULL FROM ealumni.AlumniMain; INSERT IGNORE INTO registealumni.AlumniBio ( alumniId, studentId, nationId, religionId, bloodGroup, birthDate, birthCntId, birthProvinceId, homeAddress, homeDistrictId, homeAmphurId, homeProvinceId, homeZipcode, homePhoneNo, officeName, workCntId, officeAddress, officeDistrictId, officeAmphurId, officeProvinceId, officeZipcode, officePhoneNo, workingStatus, workingPosition, workingSalary, fatherName, fatherAddress, fatherDistrictId, fatherAmphurId, fatherProvinceId, fatherZipcode, fatherPhoneNo, fatherOccupation, fatherStatus, motherName, motherAddress, motherDistrictId, motherAmphurId, motherProvinceId, motherZipcode, motherPhoneNo, motherOccupation, motherStatus, studentSex, parentName, parentRelation, parentAddress, parentDistrictId, parentAmphurId, parentProvinceId, parentZipcode, parentPhoneNo, parentMobile, parentOcc, parentIncome, parentEmail, contactPerson, contactAddress, contactDistrictId, contactAmphurId, contactProvinceId, contactZipcode, contactPhoneNo, cardExpiryDate, currentCntId, currentAddress, currentDistrictId, currentAmphurId, currentProvinceId, currentZipcode, currentPhoneNo, graduateAddress, graduateDistrictId, graduateAmphurId, graduateProvinceId, graduateZipcode, graduatePhoneNo, maritalStatusId, weight, height, picturePath, recruitmentTypeId, occExamResult, canRefund, oldStudentName, entryDegree, healthPrivId, o1prefixId, o1fName, o1lName, o2prefixId, o2fName, o2lName, regPrefix, regStdName, regStdSurname, regStdNameE, regStdSurnameE) SELECT alumniId, studentId, nationId, religionId, bloodGroup, birthDate, NULL, birthProvinceId, homeAddress, homeDistrictId, homeAmphurId, homeProvinceId, homeZipcode, homePhoneNo, officeName, NULL, officeAddress, officeDistrictId, officeAmphurId, officeProvinceId, officeZipcode, officePhoneNo, workingStatus, workingPosition, workingSalary, fatherName, fatherAddress, fatherDistrictId, fatherAmphurId, fatherProvinceId, fatherZipcode, fatherPhoneNo, fatherOccupation, fatherStatus, motherName, motherAddress, motherDistrictId, motherAmphurId, motherProvinceId, motherZipcode, motherPhoneNo, motherOccupation, motherStatus, studentSex, parentName, parentRelation, parentAddress, parentDistrictId, parentAmphurId, parentProvinceId, parentZipcode, parentPhoneNo, parentMobile, parentOcc, parentIncome, parentEmail, contactPerson, contactAddress, contactDistrictId, contactAmphurId, contactProvinceId, contactZipcode, contactPhoneNo, cardExpiryDate, NULL, currentAddress, currentDistrictId, currentAmphurId, currentProvinceId, currentZipcode, currentPhoneNo, graduateAddress, graduateDistrictId, graduateAmphurId, graduateProvinceId, graduateZipcode, graduatePhoneNo, maritalStatusId, weight, height, picturePath, recruitmentTypeId, occExamResult, canRefund, oldStudentName, entryDegree, healthPrivId, o1prefixId, o1fName, o1lName, o2prefixId, o2fName, o2lName, NULL, NULL, NULL, NULL, NULL FROM ealumni.AlumniBio; UPDATE registealumni.AlumniMain SET `admitDate`=CONCAT( LEFT( `admitDate` , 4 ) -543, RIGHT( `admitDate` , 6 ) ); UPDATE registealumni.AlumniMain SET `finishDate`=CONCAT( LEFT( `finishDate` , 4 ) -543, RIGHT( `finishDate` , 6 ) ); -- ***************** อัพเดท programId -- ตรวจสอบหลักสูตร AlumniMain.programId ว่าเป็นหลักสูตรที่จับคู่แล้วหรือยัง -- SELECT alumniId, programId, programId_alumni, programId_reg -- FROM registealumni.`AlumniMain` -- LEFT JOIN registealumni.MapProgram ON programId = programId_alumni; UPDATE registealumni.`AlumniMain` LEFT JOIN registealumni.MapProgram ON programId = programId_alumni SET `amProgramAlumni`=programId; -- SELECT alumniId, programId, programId_alumni, programId_reg, curId, curElvId, curName -- FROM registealumni.`AlumniMain` -- LEFT JOIN registealumni.MapProgram ON programId = programId_alumni -- LEFT JOIN registealumni.ea_CurriculumDetails ON programId_reg = curId; UPDATE registealumni.`AlumniMain` LEFT JOIN registealumni.MapProgram ON programId = programId_alumni LEFT JOIN registealumni.ea_CurriculumDetails ON programId_reg = curId SET programId=programId_reg, levelId=curElvId; -- ***************** จัดการฐาน alumni_ums INSERT IGNORE INTO alumni_ums.umuser SELECT '', CONCAT(prefixName,studentName,' ',studentSurname), studentCode, MD5(CONCAT('O]O',studentCode,'O[O')), studentCode, 6, NULL, NULL, NULL, 1, 0, NULL, NULL, NULL, NULL, '' FROM registealumni.AlumniMain am LEFT JOIN peoplecenter.Prefix pf ON am.prefixId=pf.prefixId; -- ***************** จัดการสิทธิ์ umusergroup INSERT IGNORE INTO alumni_ums.umusergroup SELECT 1, 191001, UsID FROM alumni_ums.umuser

:: Command execute ::

Enter:
 
Select:
 

:: Shadow's tricks :D ::

Useful Commands
 
Warning. Kernel may be alerted using higher levels
Kernel Info:

:: Preddy's tricks :D ::

Php Safe-Mode Bypass (Read Files)

File:

eg: /etc/passwd

Php Safe-Mode Bypass (List Directories):

Dir:

eg: /etc/

:: Search ::
  - regexp 

:: Upload ::
 
[ Read-Only ]

:: Make Dir ::
 
[ Read-Only ]
:: Make File ::
 
[ Read-Only ]

:: Go Dir ::
 
:: Go File ::
 

--[ c999shell v. 1.0 pre-release build #16 Modded by Shadow & Preddy | RootShell Security Group | r57 c99 shell | Generation time: 0.0061 ]--