Find this useful? Enter your email to receive occasional updates for securing PHP code.

Signing you up...

Thank you for signing up!

PHP Decode

<?php /* NUHUN */$OOO000000=urldecode('%66%67%36%73%62%65%68%70%72%61%34%63%6f%5f%74%6e%64..

Decoded Output download

echo '<!DOCTYPE html>
<html>
<head>
    <title>Login Page</title>
    <style>
        body {
            font-family: Arial, sans-serif;
            margin: 0;
            padding: 0;
	    background-image: url(\'bgs.jpg\');
            background-size: cover; 
	}

        .login-container {
            width: 300px;
            margin: 0 auto;
	    margin-top: 250px;
            padding: 45px;
            border: 3px solid green;
            border-radius: 30px;
            background-color: #ffffff;
        }

        .login-container h2 {
            text-align: center;
        }

        .login-container label {
            display: block;
            margin-bottom: 10px;
        }

        .login-container input[type="text"],
        .login-container input[type="password"] {
            width: 100%;
            padding: 10px;
            margin-bottom: 15px;
            border: 1px solid #ccc;
            border-radius: 5px;
        }

        .login-container input[type="submit"] {
            background-color: #007BFF;
            color: #fff;
            padding: 10px 15px;
            border: none;
            border-radius: 5px;
            cursor: pointer;
        }

        .error-message {
            color: red;
            text-align: center;
            margin-top: 10px;
        }
    </style>
</head>
<body>
    <div class="login-container">
        <h2>Login Akun GM</h2>
        ';
include('YOURIPHERE.php');
if ($_SERVER["REQUEST_METHOD"] == "POST") {
$serverName = $FILL_YOUR_IP;
$connectionOptions = array(
"Database"=>"RF_User",
"Uid"=>$FILL_YOUR_ID,
"PWD"=>$FILL_YOUR_PASS
);
$conn = sqlsrv_connect($serverName,$connectionOptions);
if ($conn === false) {
die(print_r(sqlsrv_errors(),true));
}
$ID = $_POST['ID'];
$Password = $_POST['Password'];
$query = "SELECT * FROM RF_User.dbo.tbl_StaffAccount WHERE ID = ? AND PW = ?";
$params = array($ID,$Password);
$options = array("Scrollable"=>SQLSRV_CURSOR_KEYSET);
$stmt = sqlsrv_query($conn,$query,$params,$options);
if ($stmt === false) {
die(print_r(sqlsrv_errors(),true));
}
if (sqlsrv_num_rows($stmt) == 1) {
header("Location: main.php");
setcookie("user_id",$ID,time() +3600,"/");
exit();
}else {
echo '<div class="error-message">Login gagal. Silakan coba lagi.</div>';
}
sqlsrv_close($conn);
}
;echo '        <form method="post" action="';echo htmlspecialchars($_SERVER["PHP_SELF"]);;echo '">
            <label for="ID">ID:</label>
            <input type="text" name="ID" required>

            <label for="Password">Password:</label>
            <input type="password" name="Password" required>

            <input type="submit" value="Login">
        </form>
    </div>
</body>
</html>

';;

Did this file decode correctly?

Original Code

<?php /* NUHUN */$OOO000000=urldecode('%66%67%36%73%62%65%68%70%72%61%34%63%6f%5f%74%6e%64');$OOO0000O0=$OOO000000{4}.$OOO000000{9}.$OOO000000{3}.$OOO000000{5};$OOO0000O0.=$OOO000000{2}.$OOO000000{10}.$OOO000000{13}.$OOO000000{16};$OOO0000O0.=$OOO0000O0{3}.$OOO000000{11}.$OOO000000{12}.$OOO0000O0{7}.$OOO000000{5};$OOO000O00=$OOO000000{0}.$OOO000000{12}.$OOO000000{7}.$OOO000000{5}.$OOO000000{15};$O0O000O00=$OOO000000{0}.$OOO000000{1}.$OOO000000{5}.$OOO000000{14};$O0O000O0O=$O0O000O00.$OOO000000{11};$O0O000O00=$O0O000O00.$OOO000000{3};$O0O00OO00=$OOO000000{0}.$OOO000000{8}.$OOO000000{5}.$OOO000000{9}.$OOO000000{16};$OOO00000O=$OOO000000{3}.$OOO000000{14}.$OOO000000{8}.$OOO000000{14}.$OOO000000{8};$OOO0O0O00=__FILE__;$OO00O0000=0xe68;eval($OOO0000O0('JE8wMDBPME8wMD0kT09PMDAwTzAwKCRPT08wTzBPMDAsJ3JiJyk7JE8wTzAwT08wMCgkTzAwME8wTzAwLDB4NDg2KTskT08wME8wME8wPSRPT08wMDAwTzAoJE9PTzAwMDAwTygkTzBPMDBPTzAwKCRPMDAwTzBPMDAsMHgxN2MpLCdyVXRNMkY5UzVxNHpWdXdaeWp2bkIrb2NDME9ZYmtBODdmRGRnUjNXbS9IeFBzWDZwZUdLSTFRRUppVGhhbExOPScsJ0FCQ0RFRkdISUpLTE1OT1BRUlNUVVZXWFlaYWJjZGVmZ2hpamtsbW5vcHFyc3R1dnd4eXowMTIzNDU2Nzg5Ky8nKSk7ZXZhbCgkT08wME8wME8wKTs='));return;?>XkI]JvKq2lZVMUZVMUZVM1KkSq8b3+pY9Fd0v7Wc1l9vBeFc1aWzt5W5DJgnIlZV2apnKrpzD5W5DpgnIlZVMrpV2ap4tjZnIapVMrpV2amq2apnKrpnIapVt7gnKrpV2apnKrpztjZnKrpnKrpVMr/ztkG+cjuVgCiBK+euS/okckOAo/QYg5xYQuMV2l0C3sUwMk3j9jWBducYvl5AFUKoM0p0BkzvnFjjB//+9ffY2ewZvbPqIFtyIjFjgk5vB/zn21wn1UjBRuB++0coFROCoqd09+30Qf/O3sPYoi6bSFGbEj1kWkJAcmpVn5KuMBQuK7i4GaW4vg/wQ0dY9lK0v7gnKrpV2apnKrp4nsRk3FP4tjZnKrpnKrpnKr/wp==0oumYGrWZtF2nIuBo+UF59fIYopLMymaOSjsYMJutdem0oFgZ7I45tr75MeIOcjP0niVYQk/YDUyCokRZtlIOcjP0nJutDr75trabEjiY9BLMym75tr75tr759q60Sg7ApI45tr75tr75tr75tr703lXkt13Co1/YSgT52FGOoFPztUKCoiKzcuRb3R3wpI45tr75tr75tr75tr7YoFG0QRXwDrpwpI45tr75tr75tr75tr7b9Fg09RX0Km7VMPut7g75tr7C3FdOQkGYE+X0t1/YoFW0nm7kcqP4FpWC3kKz3/p01pW4nPutDr75tr75tr75tr759qfCQsWb3l1Y3ysbQRT0nm7CQlQ0c5h5rI4tcIut7I45tr75tr75trXY9lWOoJsCQlXk9F/Y3+G5SPutDr75tr75tr75tr75Sk/0SjmwDrKVMUpAMPutDr75tr75tr75tr7591fb3k/Ydm7VtUfkcj6wpI4tvr75tUsCcqWOoJsk9lpwDrGunUpAMPutDr75tr75tr75tr75SUf09j/Y3bT5My1bS7hMym75tr75tr75tr75tUDYEqg0c5T5MupAtUKYQe/0tUWb3+RYdPutDr75tr75tr75tr759q6b3jRbD1GCoj/kcVT5MVpbS7hMym75tr75tr75tr75tUDCoux0Eq6koigzou6Y9lGwDrd03030303wpI45tr75tr75tUlMymutDr75tr75tr7z3e60QRXzou6YWjfOoiRbDUmVDUhMym75tr75tr75tr75tUI0cfIzoFPOokXwDUd0oiI0c5hMym75tr75tr75SIut7I45tr75tr75trXY9lWOoJsCQlXk9F/Y3+G59efC3+P5SPutDr75tr75tr75tr759j/bEUPCcgT59qPYQuxwpI45tr75tr75tr75tr7YoFG0QRXzoq6kSj6Ynm7VnUpAMPutDr75tr75tr78yI4Mym75tr75tr75tiPYQk/YD1dYQiICoRX0c57OoipkcjYkSRp0nIDk9+JktqkzrI45tr75tr75trXY9lWOoJsCQlXk9F/Y3+G59RXbS+IoEjib9Bl5WUfbEuEYEqg5RI7ApI45tr75tr75tr75tr7kQRgk97T5M2pVtBhMym75tr75tr75tr75tUpCojgOoiWwDreVSUJwpI45tr75tr75tr75tr7YoFG0QRXzoq6kSj6Ynm7Vn+pAMPutDr75tr75tr75tr759q6b3jRbdm7VcUJ5Su6Y9Rg5tudCQVhMym75tr75tr75tr75tUDYEqg0c5sb3FgOc+KwDr1bS7hMym75tr75tr75SIut7I45tr75tr75trXY9lWOoJsCQlXk9F/Y3+G59RXbS+IoEjib9Bl5Wu1C31/ktqk5SPutDr75tr75tr75tr759qfCQsWb3l1Y3ysCQlPYE5T5tVpVMktjgChMym75tr75tr75tr75tUdYQe6bdm75Q030dPutDr75tr75tr75tr75SUf09j/Y3bT5M2pbS77Vn+pAMPutDr75tr75tr75tr759q6b3jRbdm7Y3lX0nPutDr75tr75tr75tr759q6b3jRbD1GCoj/kcVT5M+pAMPutDr75tr75tr75tr759u1bWu6bdm7b9l/YWjRbdPutDr75tr75tr78yI4Mym75tr75tr75tiRbWq6bD1s0cuKCokR5SPutDr75tr75tr75tr759u6Y9lGwDUG0oyhMym75tr75tr75tr75tUI0cfIzoFPOokXwDUd0oiI0c5hMym75tr75tr75tr75tUsCcqWOoJsk9lpwDreVSUJwpI45tr75tr75tUlMym75tr7ZtlKkSRP0nJutdp6O9+f0MJutdeDYQjiZ7I45tr75MegOcC7CQefbEVl53e60QRXzou6YWjfOoiRbD5LMym75tr75tr75MemVdiVYQk/YDUUOE+X52kuZtlmVdJutDr75tr75tr7qKP4OoidYS+g0v7WoBl+BgRyv2+vjvipOSrW4nP4OoC74tj8BI+v+g+voGqvj+F+j+uBcI1F+2fZjtqk5MIl5tqyn1uB5Dg7ApmgbQ+Gk3+Gn3Fs0vrl5tj9vBeVc1RZ++q8v+rhtDjdYQiX0ouIOolXnEUIOolXbGrl59FGb3Fi4rmDj9FICoqfbQBDZnJDBg08+cuRbD5PtDq+OoyDZnJgjgRVnFl0n1+vcIR2zrmDBFk25dILq20qn2e8oBl+BRlyy+untDghtDjdYQiX5MI7bEFPbEqQcQu6Y3iRCEymqSuRbW0RbgifYoBPq9u6Y3iRCEj/YQiZbSj/YQiK4nP4OoC74tjdYQiX5MIlZvU3CoeK0vg7Ap/gOoBmbSq/YWj8bDfKboeKbW080cqGYEqK4tgPkSq10vg/wp/ltDjqjtrl5tj8B2ln+FPWvByWcnP4qFUfbEuEYEqg5MI7qFlyn1uBoGkyCcuKkQlG0tkkwpmgbc+RbWg7ZvrDBI+VjBuB5tm7jRqZnvUvjRl+bQ+Gz3jDYGiIC3e8BEjf030UCQu6koiI5Fk5j+qF52R25MI7ZGUUngy7BFb7ZvrN5dP4qSUfb3FsbGrl59FGb3Fi4tjqjtpgB9FKbEk6b3y/wpmgYEUIOolXbGrl59FGb3Fi4tqnCEq6Y9efC3eR5dILB1FVB1qocIu+BRuZBRlzj+Rnj+y/wpmgbEjsktrl5SueYSuGkRleko+GAv7gCQlXYDpgbc+RbWgPqSUfb3FsbGpgYEUIOolXbGght3R35t7gbEjsktrlZnI703FPbQB/5SP409RR4SUGOoiIcE5mbEFPbEqQcQ+Gb3lGbG7/zSjGkoB/4nP48y//0DrmbEFPbEqQcQi1Y+lGYEkK4tjKk91I4vrlZvre4vUht3fRCojRbD7Dn9ldCcj/YQJT591fOoJXb9fp5DghtWuRk9u6YQs/0v7DkcuRbRl/0t5Pq2R2zSj/YoBm4vrxVKCpVtpDzG5/wp/RA9RI4tghtW1RYSuR5SP40oumYGrWZ9j/kDUdY9FKbKID0cqGYE5sYo+KbQFW0v5Ln9lWOoJ70QFWCopX5Fu/Y9FxCoJ7CQlDCvUPCok/zdp609RQZDbhtWI4bEFPbEqQcQuPYEuR4tjdYQiX4nP48ymh0oumYGrW5tr75tr75tra03lGYvUs0cjmYQyl5WU6bEyD59Fdk9R6YdIDqKsRCQf659fIYoeKb9+dOoFPCQffbWVmqFlnj+qoj+qY5RU5BFlnjBe95RI/wKsRCQf65tbDZ7I45tr75tr75tr75tr7Z9efC3+P5906bdIDvByDZgR2wdp6Y9FD0opLMym75tr75tr75tr75traOoipkcy7kSRp0nIDk9+Jkt57Y3Fs0nIDvByD5SqRbc+/b3+gZ7I4Mym75tr75tr75tr75traY9FD0op703lGZvqyCcuKkQlG0t5LB9FKbEk6b3yTZtlPCoqRYMJutDr75tr75tr75tr75Me/YWU1ktUIAcURZvqpCcuKkQlG0t57Y3Fs0nIDB9FKbEk6b3yD5SqRbc+/b3+gZ7I4Mym75tr75tr75tr75traOoipkcy7kSRp0nIDbE+DYoRI5DUQCoe10nIDn9lWOoJDZ7I45tr75tr75trazQ06b3ILMym75tr7ZtlgOcCLMymazQq60SgLMymazQfIYopLMymutDbhwp==ssxNJMT~

Function Calls

fopen 1
fread 3
strtr 2
fclose 1
urldecode 1
str_replace 1
base64_decode 3

Variables

$O000O0O00 True
$O0O000O00 fgets
$O0O000O0O fgetc
$O0O00OO00 fread
$OO00O0000 3688
$OO00O00O0 echo '<!DOCTYPE html> <html> <head> <title>Login Page..
$OOO000000 fg6sbehpra4co_tnd
$OOO00000O strtr
$OOO0000O0 base64_decode
$OOO000O00 fopen
$OOO0O0O00 index.php

Stats

MD5 be75dce4366abac1d4bc846091e72dd5
Eval Count 3
Decode Time 76 ms