!C99Shell v. 1.0 pre-release build #13!

Software: Apache. PHP/5.5.15 

uname -a: Windows NT SVR-DMZ 6.1 build 7600 (Windows Server 2008 R2 Enterprise Edition) i586 

SYSTEM 

Safe-mode: OFF (not secure)

E:\xampp\xampp\htdocs\login\   drwxrwxrwx
Free 8.8 GB of 239.26 GB (3.68%)
Detected drives: [ a ] [ c ] [ d ] [ e ] [ f ]
Home    Back    Forward    UPDIR    Refresh    Search    Buffer    Encoder    Tools    Proc.    FTP brute    Sec.    SQL    PHP-code    Update    Feedback    Self remove    Logout    


Viewing file:     functions.php (2.19 KB)      -rw-rw-rw-
Select action/file-type:
(+) | (+) | (+) | Code (+) | Session (+) | (+) | SDB (+) | (+) | (+) | (+) | (+) | (+) |
<?php

//function to get the date
function last_login()
{
    
$date gmdate("Y-m-d");
    return 
$date;
}

//function that sets the session variable
function sess_vars($base_dir$server$dbusername$dbpassword$db_name$table_name$user$pass$id)
{


    
//make connection to dbase
    
$connection = @mysql_connect($server$dbusername$dbpassword)
                or die(
mysql_error());
                
    
$db = @mysql_select_db($db_name,$connection)
                or die(
mysql_error());
                
    
$sql "SELECT * FROM $table_name WHERE username = '$user' and password = password('$pass')";

    
$result = @mysql_query($sql$connection) or die(mysql_error());



    
//get the number of rows in the result set
    
$num mysql_num_rows($result);

    
//set session variables if there is a match
    
if ($num != 0
    {
        while (
$sql mysql_fetch_object($result)) 
        {
            
$_SESSION[first_name]     = $sql -> firstname;
            
$_SESSION[last_name]     = $sql -> lastname
            
$_SESSION[user_name]     = $sql -> username;       
            
$_SESSION[password]     = $sql -> password;
            
$_SESSION[group1]         = $sql -> group1;
            
$_SESSION[group2]         = $sql -> group2;
            
$_SESSION[group3]         = $sql -> group3;
            
$_SESSION[pchange]        = $sql -> pchange;  
            
$_SESSION[email]         = $sql -> email;
            
$_SESSION[redirect]        = $sql -> redirect;
            
$_SESSION[verified]        = $sql -> verified;
            
$_SESSION[last_login]    = $sql -> last_login;
            
$_SESSION[id]            = $sql -> id;
        }
    }else{
        
$_SESSION[redirect] = "errorlogin.php";
//$_SESSION[redirect] = "$base_dir/errorlogin.php";
    
}


}

//functions that will determine if access is allowed
function allow_access($group)
{
    if (
$_SESSION[group1] == "$group|| $_SESSION[group2] == "$group|| $_SESSION[group3] == "$group||
        
$_SESSION[group1] == "Administrators" || $_SESSION[group2] == "Administrators" || $_SESSION[group3] == "Administrators" ||
        
$_SESSION[user_name] == "$group")
        {
            
$allowed "yes";
        }else{
            
$allowed "no";
        }
    return 
$allowed;
}

//function to check the length of the requested password
function password_check($min_pass$max_pass$pass)
{

    
$valid "yes";
    if (
$min_pass strlen($pass) || $max_pass strlen($pass))
    {
        
$valid "no";
    }

    return 
$valid;
}

?>

:: Command execute ::

Enter:
 
Select:
 

:: Search ::
  - regexp 

:: Upload ::
 
[ ok ]

:: Make Dir ::
 
[ ok ]
:: Make File ::
 
[ ok ]

:: Go Dir ::
 
:: Go File ::
 

--[ c99shell v. 1.0 pre-release build #13 powered by Captain Crunch Security Team | http://ccteam.ru | Generation time: 0.0156 ]--