Advertisement
ekasyahwan

KCshell Detect

Nov 4th, 2014
367
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 5.84 KB | None | 0 0
  1. <?php
  2. @set_time_limit(0);
  3. error_reporting(E_ERROR | E_WARNING | E_PARSE);
  4. $ip = $_SERVER['REMOTE_ADDR'];
  5. $hekerr = $_POST['notice'];
  6. $url = $_SERVER['SERVER_NAME'];
  7. echo "
  8. <!--
  9. Name : KCshell Detect
  10. Author : K3CEB0NG DEFACEMENTS
  11. Country : Indonesia
  12.  
  13. NOT FOR SALE
  14. -->
  15. <Center><notice><pre>
  16. -[ SystemR0ot Team ]-
  17. ____ __._________ _________.__ .__ .__ ________ __ __
  18. | |/ _|\_ ___ \ / _____/| |__ ____ | | | | \______ \ _____/ |_ ____ _____/ |_
  19. | < / \ \/ \_____ \ | | \_/ __ \| | | | | | \_/ __ \ __\/ __ \_/ ___\ __\
  20. | | \ \ \____/ \| Y \ ___/| |_| |__ | ` \ ___/| | \ ___/\ \___| |
  21. |____|__ \ \______ /_______ /|___| /\___ >____/____/ /_______ /\___ >__| \___ >\___ >__|
  22. \/ \/ \/ \/ \/ \/ \/ \/ \/
  23. Code By K3ceb0bng Defacements
  24. </pre></notice></Center>
  25. <style>
  26. box {
  27. margin: 0;
  28. background-color: #fff;
  29. border: 1px solid #fff;
  30. }
  31. textarea
  32. {
  33. font-size: 15px;
  34. font-family: Tahoma;
  35. color: #008300;
  36. border:solid 1px #008300;
  37. }
  38.  
  39. a {
  40. font-family: Tahoma;
  41. color:#008300;
  42. text-decoration:none;
  43. }
  44.  
  45. h1{
  46. font-family:Tahoma;
  47. color:#008300;
  48. }
  49. h2{
  50. font-family:Tahoma;
  51. color:#008300;
  52. display: block;
  53. -webkit-margin-before: 1em;
  54. -webkit-margin-after: 1em;
  55. -webkit-margin-start: 0px;
  56. -webkit-margin-end: 0px;
  57. font-size: 70%;
  58. }
  59. notice{
  60. font-family:Tahoma;
  61. color:#008300;
  62. display: block;
  63. -webkit-margin-before: 1em;
  64. -webkit-margin-after: 1em;
  65. -webkit-margin-start: 0px;
  66. -webkit-margin-end: 0px;
  67. font-size: 80%;
  68. }
  69. teks{
  70. font-family:Tahoma;
  71. color:#5A5252;
  72. display: block;
  73. -webkit-margin-before: 1em;
  74. -webkit-margin-after: 1em;
  75. -webkit-margin-start: 0px;
  76. -webkit-margin-end: 0px;
  77. font-size: 80%;
  78. }
  79. success{
  80. font-family:Tahoma;
  81. color:#5A5252;
  82. display: block;
  83. -webkit-margin-before: 1em;
  84. -webkit-margin-after: 1em;
  85. -webkit-margin-start: 0px;
  86. -webkit-margin-end: 0px;
  87. font-size: 80%;
  88. }
  89.  
  90. table {
  91. width:700px;
  92. }
  93.  
  94. td {
  95. font-family: Tahoma;
  96. width:50%;
  97. text-align:center;
  98. border:1px solid #008300;
  99. }
  100.  
  101. .input
  102. {
  103. color: #008300;
  104. border: solid 1px #008300;
  105. background:#FFFFFF;
  106. margin-top:3px;
  107. width:200px;
  108. }
  109. .input2
  110. {
  111. color: #008300;
  112. border: solid 1px #008300;
  113. background:#FFFFFF;
  114. margin-top:3px;
  115. width:300px;
  116. }
  117.  
  118. i {
  119. color:#008300;
  120. }
  121. </style>
  122. <form method='POST'>
  123. <title>KCshell Detect</title>
  124. <body text='#808080' bgcolor='#FFFFFF'>
  125. <center>
  126. <form method='post'>
  127. URL to site: <input type ='text' name='site' placeholder='http://$url/' class='input2' />
  128.  
  129. <input type = 'submit' value='Find' class='input'/>
  130. </form>";
  131.  
  132. $site = $_POST['site'];
  133. $list = array(
  134. 'wso.php',
  135. 'xmlrpc.php',
  136. '404.php',
  137. 'b374k.php',
  138. 'C99.php',
  139. 'R57.php',
  140. '1nj3ct0r.php',
  141. 'k1mc1l.php',
  142. 'becak.php',
  143. 'Dz.php',
  144. 'ok.php',
  145. 'sec.php',
  146. 'wp-rss.php',
  147. 'xmlrc.php',
  148. 'mirror.php',
  149. 'help.php',
  150. 'shell.php',
  151. 'cpn.php',
  152. 'sql.php',
  153. 'mysql.php',
  154. 'config.??php',
  155. 'configuration.php',
  156. 'madspot.php',
  157. 'Sh3ll.php',
  158. '1.php',
  159. '-.php',
  160. '2.php',
  161. '3.php',
  162. '4.php',
  163. '5.php',
  164. '6.php',
  165. '7.php',
  166. 'privat.php',
  167. 'jumping.php',
  168. 'indo.php',
  169. 'ina.php',
  170. 'm.php',
  171. '8.php',
  172. '9.php',
  173. 'a.php',
  174. 'lol.php',
  175. 'gua.php',
  176. 'ganteng.php',
  177. 'sh3ll.php',
  178. '1337.php',
  179. 'shell.asp',
  180. 'shell.aspx',
  181. 'sj.phtml',
  182. 'x.php',
  183. 'index2.php',
  184. 'index.php',
  185. 'utama.php',
  186. 'r0ot.php',
  187. 'r00t.php',
  188. 'w00t.php',
  189. 'root.php',
  190. 'woot.php',
  191. 'r0k.php',
  192. 'abc.php',
  193. 'egy.php',
  194. 'syrian_shell.php',
  195. 'settings.php',
  196. 'tmp.php',
  197. 'cyber.php',
  198. 'fuck.php',
  199. 'sempak.php',
  200. 'jancok.php',
  201. 'mimpiindah.php',
  202. 'hmei7.php',
  203. 'lol.php',
  204. 'lo.php',
  205. 'd4rk.php',
  206. 'index1.php',
  207. 'nkr.php',
  208. 'xd.php',
  209. 'M4r0c.php',
  210. 'kc.php',
  211. 'k3ceb0ng.php',
  212. 'indonesia.php',
  213. 'ind.php',
  214. 'id.php',
  215. 'okay.php',
  216. '4ever.php',
  217. 'v4team.php',
  218. 'offline.php',
  219. 'p8.php',
  220. 'rr57.php',
  221. 'myshell.php',
  222. 'yourshell.php',
  223. 'sheller.php',
  224. 'mysheller.php',
  225. 'priv8.php',
  226. '911.php',
  227. 'sa.php',
  228. 'readme.php',
  229. 'info.php',
  230. 'egyshell.php',
  231. 'Sym.php',
  232. 'c22.php',
  233. 'wp-config.php',
  234. 'xmlrc.php',
  235. 'configuration.php',
  236. 'g.php',
  237. '0day.php',
  238. 'L3b.php',
  239. 'd.php',
  240. 'sado.php',
  241. 'admin1.php',
  242. 'upload.php',
  243. 'up.php',
  244. 'uploads.php',
  245. 'sa.php',
  246. 'shell.php',
  247. 'sa.php',
  248. 't00.php',
  249. 'admin.php',
  250. 'sa2.php',
  251. '2.php',
  252. 'gaza.php',
  253. 'up.php',
  254. 'sakti.php',
  255. 'wp.php',
  256. 'admins.php',
  257. 'k0nt0l.php',
  258. 'jembut.php',
  259. '73mbut.php',
  260. 'AnonGhost.php',
  261. 'tbncyber.php',
  262. 'dhaus.php',
  263. 'Dhanush.php',
  264. 'ws0.php',
  265. 'info.php',
  266. 'test.php',
  267. 'ops.php',
  268. 'a.php',
  269. 'c.php',
  270. 'error.php',
  271. '0maine.php',
  272. 'tmp/sql.php',
  273. 'X.php',
  274. '123.php',
  275. 'm.php',
  276. 'b.php',
  277. 'tmp/dz1.php',
  278. 'dz1.php',
  279. 'a.php',
  280. 'z.php',
  281. 'e.php',
  282. 'r.php',
  283. 't.php',
  284. 'y.php',
  285. 'u.php',
  286. 'i.php',
  287. 'o.php',
  288. 'p.php',
  289. 'q.php',
  290. 's.php',
  291. 'd.php',
  292. 'f.php',
  293. 'g.php',
  294. 'h.php',
  295. 'j.php',
  296. 'k.php',
  297. 'l.php',
  298. 'm.php',
  299. 'w.php',
  300. 'x.php',
  301. 'c.php',
  302. 'v.php',
  303. 'b.php',
  304. 'n.php',
  305. '10.php',
  306. '12.php',
  307. '11.php',
  308. '1234.php',
  309. );
  310. if(isset($site)){
  311.  
  312. foreach($list as $path => $test) {
  313. $ch = curl_init();
  314. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  315. curl_setopt($ch, CURLOPT_HEADER, 1);
  316. curl_setopt($ch, CURLOPT_URL, $site.$test);
  317. $result = curl_exec($ch);
  318. curl_close($ch);
  319. //print $url;
  320. echo "<pre>";
  321. if (preg_match("/Cwd|password|File manager|username|pass|user/", $result)){
  322. echo "<a href='$site$test' target='_blank'>$site$test</a> --> <font color='green'>Ditemukan Shell</font><br>";
  323. }
  324. else if (preg_match("/Cwd|password|File manager|Modify time/", $result)) {
  325. echo "<a href='$site$test' target='_blank'>$site$test</a> --> <font color='green'>Ditemukan Shell</font><br>";
  326. }
  327. else {
  328. echo "<a href='$site$test' target='_blank'>$site$test</a> --> <font color='red'>Tidak Ditemukan</font><br>";
  329. echo "</pre>";
  330. }
  331. }
  332. }
  333. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement