Advertisement
FadlyHdytllah

[PHP] Shell Finder Script

Feb 19th, 2020
2,134
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 5.81 KB | None | 0 0
  1. <?php
  2.  
  3. //Shell Finder Script
  4. //Scan for shells at any site
  5.  
  6. echo'
  7. <style>
  8. a{
  9. text-decoration:none;
  10. color: #009900;
  11. }
  12. body{
  13. color: #009900;
  14. }
  15. input[type=text] {
  16. padding: 3px;
  17. color: #009900;
  18. text-shadow: #777777 0px 0px 3px;
  19. border: 1px solid #007700;
  20. background: transparent;
  21. box-shadow: 0px 0px 4px #007700;
  22. padding: 3px;
  23. -webkit-border-radius: 4px;
  24. -moz-border-radius: 4px;
  25. border-radius: 4px;
  26. -webkit-box-shadow: rgb(85,85,85) 0px 0px 4px;
  27. -moz-box-shadow: rgb(85,85,85) 0px 0px 4px;
  28. }
  29. input[type=submit]:hover, input[type=text]:hover {
  30. color: #ffffff;
  31. text-shadow: #006600 0px 0px 4px;
  32. box-shadow: 0px 0px 4px #00dd00;
  33. border: 1px solid #00dd00;
  34. padding: 3px;
  35. -webkit-border-radius: 4px;
  36. -moz-border-radius: 4px;
  37. border-radius: 4px;
  38. -webkit-box-shadow: rgba(0,119,0) 0px 0px 4px;
  39. -moz-box-shadow: rgba(0,119,0) 0px 0px 4px;
  40. }
  41. input[type=submit] {
  42. padding: 3px;
  43. color: #00770;
  44. font-weight: bold;
  45. text-align: center;
  46. text-shadow: 0 1px rgba(255, 255, 255, 0.3);
  47. background: #aeaeae;
  48. background-clip: padding-box;
  49. border: 1px solid #284473;
  50. border-bottom-color: #223b66;
  51. border-radius: 4px;
  52. cursor: pointer;
  53. background-image: -webkit-linear-gradient(top, #eaeaea, #d0d0d0);
  54. background-image: -moz-linear-gradient(top, #eaeaea, #d0d0d0);
  55. background-image: -o-linear-gradient(top, #eaeaea, #d0d0d0);
  56. background-image: linear-gradient(to bottom, #eaeaea, #d0d0d0);
  57. -webkit-box-shadow: inset 0 1px rgba(255, 255, 255, 0.5), inset 0 0 7px rgba(255, 255, 255, 0.4), 0 1px 1px rgba(0, 0, 0, 0.15);
  58. box-shadow: inset 0 1px rgba(255, 255, 255, 0.5), inset 0 0 7px rgba(255, 255, 255, 0.4), 0 1px 1px rgba(0, 0, 0, 0.15);
  59. }
  60. </style>
  61. <body bgcolor=#222222>
  62. <center>
  63. <br><center><span style="font-weight:bold;text-shadow:0px 0px 10px #009900 ;font-size:30px; font-family:Lucida Console; color:#009900">Website Shell Finder</span><br><br>
  64. <img src="http://www11.0zz0.com/2014/08/22/21/592562836.png">
  65. <p align="center"></p><br>
  66. <form method="POST">
  67. </form><center>
  68. <form action="" method="post">
  69. <input name="target" type="text" size="100" value="http://site.org/"/><br>
  70. <br><br>
  71. <input name="scan" size="100" value="Start Scaning" type="submit">
  72. </form><br>';
  73.  
  74. set_time_limit(0);
  75.  
  76. if (isset($_POST["scan"])) {
  77.  
  78. $url = $_POST['traget'];
  79.  
  80. echo "<br /><span class='start'>Scanning ".$url."<br /><br /></span>";
  81. echo "Results:<br /><br />";
  82.  
  83. //Tambahin Lagi bro, Biar Kemungkinan Ketemunya Tinggi, Setinggi Harapan Aku Memiliki Dia > :(
  84. $shells = array("WSO.php","dz.php","cpanel.php","cpn.php","sql.php","mysql.php","madspot.php","cp.php","cpbt.php","sYm.php",
  85. "x.php","r99.php","lol.php","jo.php","wp.php","whmcs.php","shellz.php","d0main.php","d0mains.php","users.php",
  86. "Cgishell.pl","killer.php","changeall.php","2.php","Sh3ll.php","dz0.php","dam.php","user.php","dom.php","whmcs.php",
  87. "vb.zip","r00t.php","c99.php","gaza.php","1.php","wp.zip"."wp-content/plugins/disqus-comment-system/disqus.php",
  88. "d0mains.php","wp-content/plugins/akismet/akismet.php","madspotshell.php","Sym.php","c22.php","c100.php",
  89. "wp-content/plugins/akismet/admin.php#","wp-content/plugins/google-sitemap-generator/sitemap-core.php#",
  90. "wp-content/plugins/akismet/widget.php#","Cpanel.php","zone-h.php","tmp/user.php","tmp/Sym.php","cp.php",
  91. "tmp/madspotshell.php","tmp/root.php","tmp/whmcs.php","tmp/index.php","tmp/2.php","tmp/dz.php","tmp/cpn.php",
  92. "tmp/changeall.php","tmp/Cgishell.pl","tmp/sql.php","tmp/admin.php","cliente/downloads/h4xor.php",
  93. "whmcs/downloads/dz.php","L3b.php","d.php","tmp/d.php","tmp/L3b.php","wp-content/plugins/akismet/admin.php",
  94. "templates/rhuk_milkyway/index.php","templates/beez/index.php","admin1.php","upload.php","up.php","vb.zip","vb.rar",
  95. "admin2.asp","uploads.php","sa.php","sysadmins/","admin1/","administration/Sym.php","images/Sym.php",
  96. "/r57.php","/wp-content/plugins/disqus-comment-system/disqus.php","/shell.php","/sa.php","/admin.php","/b374k.php",
  97. "/sa2.php","/2.php","/gaza.php","/up.php","/upload.php","/uploads.php","/templates/beez/index.php","shell.php","/amad.php",
  98. "/t00.php","/dz.php","/site.rar","/Black.php","/site.tar.gz","/home.zip","/home.rar","/home.tar","/home.tar.gz",
  99. "/forum.zip","/forum.rar","/forum.tar","/forum.tar.gz","/test.txt","/ftp.txt","/user.txt","/site.txt","/error_log","/error",
  100. "/cpanel","/awstats","/site.sql","/vb.sql","/forum.sql","/backup.sql","/back.sql","/data.sql","wp.rar/",
  101. "wp-content/plugins/disqus-comment-system/disqus.php","asp.aspx","/templates/beez/index.php","tmp/vaga.php",
  102. "tmp/killer.php","whmcs.php","tmp/killer.php","tmp/domaine.pl","tmp/domaine.php","useradmin/",
  103. "tmp/d0maine.php","d0maine.php","tmp/sql.php","tmp/dz1.php","dz1.php","forum.zip","Symlink.php","Symlink.pl",
  104. "forum.rar","joomla.zip","joomla.rar","wp.php","buck.sql","sysadmin.php","images/c99.php", "xd.php", "c100.php",
  105. "spy.aspx","xd.php","tmp/xd.php","sym/root/home/","billing/killer.php","tmp/upload.php","tmp/admin.php",
  106. "Server.php","tmp/uploads.php","tmp/up.php","Server/","wp-admin/c99.php","tmp/priv8.php","priv8.php","cgi.pl/",
  107. "tmp/cgi.pl","downloads/dom.php","templates/ja-helio-farsi/index.php","webadmin.html","admins.php",
  108. "/wp-content/plugins/count-per-day/js/yc/d00.php", "admins/","admins.asp","admins.php","wp.zip");
  109.  
  110. //Start Scan
  111. foreach ($shells as $shell){
  112. $headers = get_headers("$url$shell"); //
  113.  
  114. if (eregi('200', $headers[0])) {
  115. //Result
  116. echo "<a href='$url$shell'>$url$shell</a> <span class='found'>Done :D</span><br /><br/><br/>"; //
  117. $dz = fopen('shells.txt', 'a+');
  118. $suck = "$url$shell";
  119. fwrite($dz, $suck."\n");
  120. }
  121. }
  122. //Result In Text File (shells.txt)
  123. echo "Shells Added to File [ <a href='./shells.txt' target='_blank'>shells.txt</a> ]</span>";
  124. }
  125. echo"</center>";
  126. echo"</body>";
  127. echo"</html>";
  128. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement