Find this useful? Enter your email to receive occasional updates for securing PHP code.
Signing you up...
Thank you for signing up!
PHP Decode
<?php gotoK3AvQ; gp4L2:$key=hash("\x73\150\141\62\x35\66",$gucluhosting,true); gotoSQ..
Decoded Output download
<?php
gotoK3AvQ;
gp4L2:$key=hash("sha256",$gucluhosting,true);
gotoSQQyn;
GOGdy:$baglantigelsin="123ivmekansohbet";
gotogp4L2;
x13k1:include "inc/twenty-four.php";
gotoBGmyF;
BGmyF:function decrypt_and_run($encrypted_code,$key,$iv) {
if(!extension_loaded("openssl")) {
echo "OpenSSL uzants kurulu deil. Ltfen OpenSSL uzantsn ykleyin ve tekrar deneyin.<br>";
return;
}
$decoded_encrypted_code=base64_decode($encrypted_code);
$decrypted_code=openssl_decrypt($decoded_encrypted_code,"AES-256-CBC",$key,0,$iv);
if($decrypted_code===false) {
echo "Kodlar zlemedi. sohbettemasi.com ile iletiime gein!<br>";
echo "OpenSSL Hatas: ".openssl_error_string()."<br>";
return;
}
eval("?>".$decrypted_code);
}
gotovAZ4o;
vAZ4o:if(defined("ENCRYPTED_CODE")&&ENCRYPTED_CODE) {
decrypt_and_run(ENCRYPTED_CODE,$key,$iv);
}
else {
echo "ifreli kod eksik veya tanmlanmam. Ltfen geerli bir ifreli kod saladnzdan emin olun.<br>";
}
gotoJTvHJ;
K3AvQ:$gucluhosting="mekansohbet";
gotoGOGdy;
SQQyn:$iv=substr(hash("md5",$baglantigelsin,true),0,16);
gotox13k1;
JTvHJ:?>
Did this file decode correctly?
Original Code
<?php
gotoK3AvQ;
gp4L2:$key=hash("\x73\150\141\62\x35\66",$gucluhosting,true);
gotoSQQyn;
GOGdy:$baglantigelsin="\61\62\x33\151\x76\x6d\145\x6b\141\156\x73\x6f\x68\142\145\164";
gotogp4L2;
x13k1:include "\x69\x6e\143\x2f\164\167\145\x6e\164\171\x2d\x66\157\x75\x72\56\160\x68\160";
gotoBGmyF;
BGmyF:function decrypt_and_run($encrypted_code,$key,$iv) {
if(!extension_loaded("\157\x70\x65\156\x73\163\x6c")) {
echo "\117\x70\x65\x6e\123\123\114\x20\165\172\141\x6e\x74\304\261\163\304\xb1\x20\153\165\x72\x75\154\165\x20\x64\145\304\x9f\x69\154\56\x20\114\xc3\274\x74\146\145\x6e\40\117\160\x65\x6e\123\x53\x4c\x20\165\x7a\x61\x6e\164\304\261\x73\304\261\x6e\304\xb1\40\x79\303\274\153\154\145\171\151\x6e\x20\x76\145\x20\164\145\153\x72\x61\162\x20\x64\x65\x6e\x65\171\x69\x6e\56\74\142\x72\x3e";
return;
}
$decoded_encrypted_code=base64_decode($encrypted_code);
$decrypted_code=openssl_decrypt($decoded_encrypted_code,"\101\105\123\55\x32\65\66\55\x43\x42\x43",$key,0,$iv);
if($decrypted_code===false) {
echo "\x4b\157\x64\154\x61\162\40\xc3\xa7\303\xb6\x7a\xc3\274\154\x65\155\x65\144\x69\56\40\163\157\150\142\x65\164\x74\145\155\141\163\151\x2e\x63\x6f\x6d\x20\151\154\x65\x20\x69\154\x65\x74\x69\xc5\237\x69\x6d\x65\40\147\145\303\xa7\x69\x6e\41\x3c\142\x72\76";
echo "\x4f\160\x65\x6e\123\123\114\40\x48\x61\164\141\x73\xc4\xb1\72\40".openssl_error_string()."\x3c\142\162\x3e";
return;
}
eval("\77\76".$decrypted_code);
}
gotovAZ4o;
vAZ4o:if(defined("\x45\116\103\x52\131\x50\124\x45\104\137\103\117\x44\105")&&ENCRYPTED_CODE) {
decrypt_and_run(ENCRYPTED_CODE,$key,$iv);
}
else {
echo "\xc5\236\x69\x66\162\x65\154\151\40\x6b\157\x64\40\145\153\163\151\153\40\x76\145\171\141\x20\x74\x61\x6e\xc4\xb1\x6d\154\141\x6e\155\141\155\304\261\xc5\x9f\x2e\40\114\xc3\xbc\164\x66\x65\156\40\x67\145\xc3\247\145\x72\x6c\151\40\142\x69\162\x20\xc5\237\x69\x66\x72\145\154\x69\40\x6b\x6f\x64\x20\163\141\304\x9f\154\x61\144\xc4\261\xc4\x9f\304\xb1\156\xc4\261\x7a\x64\141\156\x20\x65\155\x69\x6e\40\x6f\154\165\x6e\56\x3c\142\x72\76";
}
gotoJTvHJ;
K3AvQ:$gucluhosting="\x6d\x65\153\141\x6e\x73\157\x68\x62\145\x74";
gotoGOGdy;
SQQyn:$iv=substr(hash("\x6d\144\x35",$baglantigelsin,true),0,16);
gotox13k1;
JTvHJ:?>
Function Calls
None |
Stats
MD5 | aff06f0bed3a59ef57aa2ce6a6eab0b4 |
Eval Count | 0 |
Decode Time | 359 ms |