!C99Shell v. 1.0 pre-release build #16!

Software: Apache/2.0.54 (Fedora). PHP/5.0.4 

uname -a: Linux mina-info.me 2.6.17-1.2142_FC4smp #1 SMP Tue Jul 11 22:57:02 EDT 2006 i686 

uid=48(apache) gid=48(apache) groups=48(apache)
context=system_u:system_r:httpd_sys_script_t
 

Safe-mode: OFF (not secure)

/home/mnnews/public_html/mina/mina/admin/   drwxr-xr-x
Free 3.89 GB of 27.03 GB (14.39%)
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     slanje.php (2.21 KB)      -rwxr-xr-x
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?


mysql_connect
(localhost, us10505a, proba);
   
mysql_select_db (db10505s);

$result = mysql_query ("SELECT  primalac, fajl, subject, text, id_mail FROM mail_spool");
ini_set("SMTP", "192.168.0.6");
if (
$row = mysql_fetch_array($result)) {

do {

global
$mime_boundary;

$mime_boundary = "<<<:" . md5(uniqid(mt_rand(), 1));
    


    
global
$fajl;

$fajl=$row["fajl"];

$attachment= ("/home/mnnews/public_html/mina/manage/fajlovi/$fajl");
$fp = fopen($attachment , "rb");
$data = fread($fp, filesize($attachment));
$data = chunk_split(base64_encode($data));
fclose($fp);

// dodaj MIME data

    
$lb="\n";
    
$message = $row["text"];
    
$mime_boundary = "<<<:" . md5(uniqid(mt_rand(), 1));    
    
$content = "This is a multi-part message in MIME format.".$lb.$lb;
    
$content.= "--".$mime_boundary.$lb;
    
$content.= "Content-Type: text/plain; charset=\"iso-8859-1\"".$lb;
    
$content.= "Content-Transfer-Encoding: 7bit".$lb.$lb;
    
$content.= $message.$lb;
    
$content.= "--".$mime_boundary.$lb;

    
$filename=$fajl;          
    
$content.= "Content-Disposition: attachment;".$lb;
    
$content.= "Content-Type: Application/ms-word;";
    
$content.= " name=\"".$filename."\"".$lb;
    
$content.= "Content-Transfer-Encoding: base64".$lb.$lb;
    
$content.= $data.$lb;
    
$content.= "--".$mime_boundary.$lb;





// finalna MIME granica
    
    
$email=$row["primalac"];
   
    
$to = $email;
    
$subject = $row["subject"];
    
$oznaka = $row["id_mail"];
    
   
    
$from = "MINA News Agency <mnnews@mnnews.net>";
    
$replyto= "mnnews@mnnews.net";
    
$header  = "From: $from $lb";
    
$header.= "Reply-to: $replyto $lb";

    
$header.= "MIME-Version: 1.0".$lb;
    
$header.= "Content-Type: multipart/mixed;".$lb;
    
$header.= " boundary=\"".$mime_boundary."\"".$lb;

    
mail($to, $subject, $content, $header);

    
$tUnixTime = time();
    
$sGMTMySqlString = gmdate("Y-m-d H:i:s", $tUnixTime);

    
$query1 = "INSERT INTO mail_log (email_log, date) VALUES ('$to', '$sGMTMySqlString')";
    
mysql_query($query1) ;

    
$sql = "DELETE FROM mail_spool where id_mail=$oznaka";

    
mysql_query($sql);



} while(
$row = mysql_fetch_array($result));

ini_restore("SMTP");


} else {}


?>

:: Command execute ::

Enter:
 
Select:
 

:: Search ::
  - regexp 

:: Upload ::
 
[ Read-Only ]

:: Make Dir ::
 
[ Read-Only ]
:: Make File ::
 
[ Read-Only ]

:: Go Dir ::
 
:: Go File ::
 

--[ c99shell v. 1.0 pre-release build #16 powered by Captain Crunch Security Team | http://ccteam.ru | Generation time: 0.0036 ]--